Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 12-08-2017 Uruchomiony przez Dariusz (15-08-2017 16:11:52) Uruchomiony z E:\Pobrane Windows 7 Professional Service Pack 1 (X64) (2017-05-26 14:56:04) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-3797897795-4203202906-2028366355-500 - Administrator - Disabled) Dariusz (S-1-5-21-3797897795-4203202906-2028366355-1000 - Administrator - Enabled) => C:\Users\Dariusz Gość (S-1-5-21-3797897795-4203202906-2028366355-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3797897795-4203202906-2028366355-1002 - Limited - Enabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-3797897795-4203202906-2028366355-1000\...\uTorrent) (Version: 3.5.0.43916 - BitTorrent Inc.) Adobe Flash Player 26 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 26.0.0.151 - Adobe Systems Incorporated) AIDA64 Extreme v5.30 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 5.30 - FinalWire Ltd.) AIMP (HKLM-x32\...\AIMP) (Version: v4.13.1897, 26.06.2017 - AIMP DevTeam) AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.8 - Advanced Micro Devices, Inc.) Backup and Sync from Google (HKLM-x32\...\{6CB949F1-4495-48F6-A815-26F6CABA85D7}) (Version: 3.35.5978.2967 - Google, Inc.) Catalyst Control Center Next Localization BR (HKLM\...\{1952141C-925C-3551-CF63-D552C69D38A5}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{756DFEF5-31C4-4A41-9D49-928F586DE575}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{4CF1C729-BFB6-2222-71C4-78E14DD5A30A}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{CF5D35A2-4053-5A5F-94DA-AC037AD6AF6E}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{30ADF840-07E0-3C58-C753-B2E939CA4365}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{03C73F5F-59A6-21C5-62AE-48CA73D0516A}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{B4302BDF-03F1-957B-2A04-E31002B35299}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{52F3A739-BB11-6446-A1B1-37EF29B921D4}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{D25C1ABD-8818-0E6D-CF06-AF3E853BA332}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{A2620A07-084A-4388-7B98-3CE4CE50C907}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{F71103B5-959C-1ACD-A721-DA5F67E4EFD0}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{B47D8BDA-79C1-CC28-DBDD-06159FEACF90}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{AE9A6A29-ECDC-FAAD-080E-95039E94D057}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{55BCD1A6-34BC-01BC-0F8A-0DAF747C35C3}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{67146918-33C6-300D-37D6-D669B49EF971}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{3C2EE547-5128-597C-8CBB-8D730AB03372}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{44D46987-602A-2629-0A2F-009C8D209D66}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{A9A77529-0BB7-0AFA-2FDF-E7F78A00EC74}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{DB8D2EFA-1414-FEE5-DA5C-B2790128D797}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{24D3A60E-F5B2-42DD-6FBA-19205286FBFB}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{5CC68216-1F69-C104-7550-3712EB07B4A8}) (Version: 2017.0720.1902.32426 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.32 - Piriform) Cool Edit Pro 2.1 (HKLM-x32\...\Cool Edit Pro 2.1) (Version: - ) Cry of Fear (HKLM\...\Steam App 223710) (Version: - Team Psykskallar) DiRT 4 (HKLM\...\Steam App 421020) (Version: - Codemasters) Dodatek Zapisywanie jako PDF lub XPS firmy Microsoft dla programów pakietu Microsoft Office 2007 (HKLM-x32\...\{90120000-00B2-0415-0000-0000000FF1CE}) (Version: 12.0.4518.1020 - Microsoft Corporation) f.lux (HKU\S-1-5-21-3797897795-4203202906-2028366355-1000\...\Flux) (Version: - ) GIMP 2.8.22 (HKLM\...\GIMP-2_is1) (Version: 2.8.22 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 60.0.3112.90 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 3.0.5.69 - Intel Corporation) JetClean (HKLM-x32\...\BlueSprig_JetClean_is1) (Version: 1.5.0 - BlueSprig) Live! Cam Sync HD VF0770 Driver (1.00.02.00) (HKLM\...\Creative VF0770) (Version: - Creative Technology Ltd.) Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech) Max Payne 3 (HKLM\...\Steam App 204100) (Version: - Rockstar Studios) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 55.0.1 (x64 pl) (HKLM\...\Mozilla Firefox 55.0.1 (x64 pl)) (Version: 55.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 55.0 - Mozilla) MXGP2 - The Official Motocross Videogame (HKLM\...\Steam App 400800) (Version: - Milestone S.r.l.) Odkurzacz (HKLM-x32\...\Odkurzacz 14.3_is1) (Version: 14.3.0.4600 - FranmoSoftware - Maciej Opaliński) OpenFM (HKU\S-1-5-21-3797897795-4203202906-2028366355-1000\...\OpenFM) (Version: 4.0.0.1 - Grupa Wirtualna Polska) PerfectDisk Professional (HKLM\...\{C4E01CDC-0063-493C-B383-9C4FCF7A89F7}) (Version: 14.0.890 - Raxco Software Inc.) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.) Revo Uninstaller 2.0.3 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.3 - VS Revo Group, Ltd.) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.1.9 - Rockstar Games) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.4 - TeamSpeak Systems GmbH) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) VLC media player (HKLM\...\VLC media player) (Version: 2.2.6 - VideoLAN) Vulkan Run Time Libraries 1.0.51.0 (HKLM\...\VulkanRT1.0.51.0) (Version: 1.0.51.0 - LunarG, Inc.) WinRAR 5.40 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) WinTools.net Premium version 16.7.1 (HKLM-x32\...\{AA9A6236-EE61-41B7-A7EC-5F4496409D55}_is1) (Version: 16.7.1 - WinTools Software Engineering, Ltd.) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-06-21] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-06-21] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-06-21] (Google) ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll [2017-06-26] (AIMP DevTeam) ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-06-21] (Google) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-09-19] (Alexander Roshal) ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll [2017-06-26] (AIMP DevTeam) ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-06-21] (Google) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2017-07-20] (Advanced Micro Devices, Inc.) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {3ADED55D-A50B-4900-BFF2-56F214696046} - System32\Tasks\JetCleanLoginCheckUpdate => C:\Program Files (x86)\BlueSprig\JetClean\AutoUpdate.exe [2013-05-14] (BlueSprig) Task: {68A1224C-BCD8-4B51-8AA4-B50461CD7883} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-06-30] (Piriform Ltd) Task: {9C6AB316-AEFD-485E-870D-2C8D1C9178CA} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [2017-07-20] (Advanced Micro Devices, Inc.) Task: {B5F4C660-5835-4ED3-98DA-80F6F1DA4AB7} - \e-pity2016a_styczen -> Brak pliku <==== UWAGA Task: {D469057E-6BA4-4E41-8816-173DB876BCB0} - \e-pity2016a_kwiecien -> Brak pliku <==== UWAGA Task: {F8690A99-879C-4D03-A3B1-1ECCED7CCA21} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-08-08] (Adobe Systems Incorporated) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2017-08-11 19:49 - 2017-08-02 09:39 - 003824472 _____ () C:\Program Files (x86)\Google\Chrome\Application\60.0.3112.90\libglesv2.dll 2017-08-11 19:49 - 2017-08-02 09:39 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\60.0.3112.90\libegl.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) HKU\S-1-5-21-3797897795-4203202906-2028366355-1000\Software\Classes\regfile: regedit.exe "%1" <==== UWAGA ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: =============================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-3797897795-4203202906-2028366355-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Dariusz\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 217.172.224.160 - 89.231.1.206 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == MSCONFIG\startupreg: Start WingMan Profiler => C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{63D79621-FDAF-4062-80E1-3BC390F2FECB}] => (Allow) C:\Users\Dariusz\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B2ADF21E-CBDE-41A9-B33B-C3E2A6A172B0}] => (Allow) C:\Users\Dariusz\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{588FDC81-71D5-4CBF-86A5-050F56D22F25}] => (Allow) C:\Users\Dariusz\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{02ADF3E8-B604-4B45-8151-C00D5B8B3190}] => (Allow) C:\Users\Dariusz\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{98DD3038-069F-40CF-B00D-24AEF59280A4}] => (Allow) C:\Users\Dariusz\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{E0C4FFB7-FFED-4999-9900-BF3DAFB86DC8}] => (Allow) C:\Users\Dariusz\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{D1F36EFE-AF91-46ED-A080-C45B93D3908B}] => (Allow) D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{E62894CB-E866-47D2-856D-4495A19110D4}] => (Allow) D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{BA5C77E7-9334-4D85-B14F-2F96763744E3}] => (Allow) D:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{200ED2AC-1D99-4291-A961-5973EEDDCEB1}] => (Allow) D:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{8CDE1C05-7CDC-4458-978C-C2A9B3AA1FC2}] => (Allow) D:\SteamLibrary\steamapps\common\Rise of the Tomb Raider\ROTTR.exe FirewallRules: [{10B1AC41-206E-4573-932B-F607FCFA92A7}] => (Allow) D:\SteamLibrary\steamapps\common\Rise of the Tomb Raider\ROTTR.exe FirewallRules: [{C79E135A-CDDD-42CE-A613-167AD43ED6A0}] => (Allow) D:\SteamLibrary\steamapps\common\Stronghold Crusader 2\bin\win32_release\Crusader2.exe FirewallRules: [{F504D179-5FCF-46BE-926F-889D0B2C5743}] => (Allow) D:\SteamLibrary\steamapps\common\Stronghold Crusader 2\bin\win32_release\Crusader2.exe FirewallRules: [{7E6D5164-FA69-4A4F-BCEB-A0CF2E9DF796}] => (Allow) D:\SteamLibrary\steamapps\common\DiRT 4\dirt4.exe FirewallRules: [{F32FD417-2F21-496E-9B63-93C3F2308A99}] => (Allow) D:\SteamLibrary\steamapps\common\DiRT 4\dirt4.exe FirewallRules: [TCP Query User{05521E88-6919-4E43-972D-53C68A208AB3}D:\steamlibrary\steamapps\common\half-life\hl.exe] => (Allow) D:\steamlibrary\steamapps\common\half-life\hl.exe FirewallRules: [UDP Query User{48F3FE23-F2AB-4B85-B121-04B9F90F5495}D:\steamlibrary\steamapps\common\half-life\hl.exe] => (Allow) D:\steamlibrary\steamapps\common\half-life\hl.exe FirewallRules: [{E7D8FD46-AD53-4885-8007-2FBE039EE082}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{77DF0877-5BEB-45B1-B9DE-DBB14A15F440}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{B4A2EEB9-DA54-472D-A459-919D99B5C7BA}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{96B27063-0906-4F26-9DD5-9779FAF9F8E9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{B76AFA99-28DE-4D64-880E-C93BF8C8F039}] => (Allow) D:\SteamLibrary\steamapps\common\MXGP2 - The Official Motocross Videogame\MXGP_2X64.exe FirewallRules: [{255FED41-86FD-4CD5-930B-F8D03BFD77FE}] => (Allow) D:\SteamLibrary\steamapps\common\MXGP2 - The Official Motocross Videogame\MXGP_2X64.exe FirewallRules: [{D6BBFDD2-A8BB-47DD-8880-582E84A77F5C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{BE3B33F8-B68C-48A6-A497-BF85E4F18EBF}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{83523006-208A-4F15-8D1C-DE6F629BFA59}] => (Allow) D:\SteamLibrary\steamapps\common\Cry of Fear\CoFLaunchApp.exe FirewallRules: [{5D9FC1CD-8231-4934-8A5D-55C19602FF89}] => (Allow) D:\SteamLibrary\steamapps\common\Cry of Fear\CoFLaunchApp.exe FirewallRules: [TCP Query User{2267166A-0D48-4D03-BCBC-216CE896A751}D:\steamlibrary\steamapps\common\cry of fear\cof.exe] => (Allow) D:\steamlibrary\steamapps\common\cry of fear\cof.exe FirewallRules: [UDP Query User{6A0F5201-B2EF-4D08-8267-15080A07B9B4}D:\steamlibrary\steamapps\common\cry of fear\cof.exe] => (Allow) D:\steamlibrary\steamapps\common\cry of fear\cof.exe FirewallRules: [{8ED899E5-2F23-4928-B8CA-9A2FD1007E7E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{0F52E2D7-80CA-4DB4-8917-282BCB884C6F}] => (Allow) D:\SteamLibrary\steamapps\common\Max Payne 3\Max Payne 3\MaxPayne3.exe FirewallRules: [{EC93077A-43B0-42D9-B7A6-C740FAE03A76}] => (Allow) D:\SteamLibrary\steamapps\common\Max Payne 3\Max Payne 3\MaxPayne3.exe ==================== Punkty Przywracania systemu ========================= UWAGA: Przywracanie systemu jest wyłączone ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Kontroler magistrali zarządzania systemem Description: Kontroler magistrali zarządzania systemem Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Port drukarki (LPT1) Description: Port drukarki Class Guid: {4d36e978-e325-11ce-bfc1-08002be10318} Manufacturer: (Standardowe typy portów) Service: Parport Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Port komunikacyjny (COM1) Description: Port komunikacyjny Class Guid: {4d36e978-e325-11ce-bfc1-08002be10318} Manufacturer: (Standardowe typy portów) Service: Serial Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Realtek PCIe GBE Family Controller Description: Realtek PCIe GBE Family Controller Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Realtek Service: RTL8167 Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (08/15/2017 04:09:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (08/15/2017 03:27:21 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (08/15/2017 01:20:36 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (08/15/2017 01:18:58 PM) (Source: PerfNet) (EventID: 2004) (User: ) Description: Nie można otworzyć obiektu wydajności usługi Server. Pierwsze cztery bajty (DWORD) sekcji danych Data zawierają kod stanu. Error: (08/15/2017 01:13:35 PM) (Source: PerfNet) (EventID: 2004) (User: ) Description: Nie można otworzyć obiektu wydajności usługi Server. Pierwsze cztery bajty (DWORD) sekcji danych Data zawierają kod stanu. Error: (08/15/2017 10:49:51 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (08/14/2017 02:48:32 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (08/13/2017 12:58:44 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (08/13/2017 10:22:39 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (08/11/2017 11:28:23 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program cof.exe w wersji 1.1.1.1 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: aa8 Godzina rozpoczęcia: 01d312e8ab1da2ed Godzina zakończenia: 125 Ścieżka aplikacji: D:\SteamLibrary\steamapps\common\Cry of Fear\cof.exe Identyfikator raportu: fe0aeb81-7edb-11e7-8d3a-8986b21b0725 Dziennik System: ============= Error: (08/15/2017 04:09:24 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Dostawca grupy domowej zależy od usługi Publikacja zasobów odnajdowania funkcji, której nie można uruchomić z powodu następującego błędu: Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Error: (08/15/2017 04:09:06 PM) (Source: volmgr) (EventID: 46) (User: ) Description: Inicjowanie zrzutu awaryjnego nie powiodło się! Error: (08/15/2017 04:08:37 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa AMD External Events Utility niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (08/15/2017 03:27:33 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Dostawca grupy domowej zależy od usługi Publikacja zasobów odnajdowania funkcji, której nie można uruchomić z powodu następującego błędu: Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Error: (08/15/2017 03:27:09 PM) (Source: volmgr) (EventID: 46) (User: ) Description: Inicjowanie zrzutu awaryjnego nie powiodło się! Error: (08/15/2017 01:20:48 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Dostawca grupy domowej zależy od usługi Publikacja zasobów odnajdowania funkcji, której nie można uruchomić z powodu następującego błędu: Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Error: (08/15/2017 01:20:22 PM) (Source: volmgr) (EventID: 46) (User: ) Description: Inicjowanie zrzutu awaryjnego nie powiodło się! Error: (08/15/2017 10:50:01 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Dostawca grupy domowej zależy od usługi Publikacja zasobów odnajdowania funkcji, której nie można uruchomić z powodu następującego błędu: Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Error: (08/15/2017 10:49:40 AM) (Source: volmgr) (EventID: 46) (User: ) Description: Inicjowanie zrzutu awaryjnego nie powiodło się! Error: (08/14/2017 08:08:39 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Dostawca grupy domowej zależy od usługi Publikacja zasobów odnajdowania funkcji, której nie można uruchomić z powodu następującego błędu: Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. CodeIntegrity: =================================== Date: 2017-07-30 23:09:39.433 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\usbaapl64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-07-30 23:09:39.395 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\usbaapl64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i3-4130 CPU @ 3.40GHz Procent pamięci w użyciu: 21% Całkowita pamięć fizyczna: 7644.85 MB Dostępna pamięć fizyczna: 6007.78 MB Całkowita pamięć wirtualna: 7643.04 MB Dostępna pamięć wirtualna: 5879.85 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:50.28 GB) (Free:22.91 GB) NTFS Drive d: () (Fixed) (Total:280.46 GB) (Free:23.8 GB) NTFS Drive e: () (Fixed) (Total:600.66 GB) (Free:459.69 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 0FDCEFB8) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=50.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=881.1 GB) - (Type=OF Extended) ==================== Koniec Addition.txt ============================