Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 20-08-2017 Uruchomiony przez Kuba (21-08-2017 13:38:45) Uruchomiony z C:\Users\Kuba\Desktop\Download Windows 10 Pro Wersja 1703 (X64) (2017-04-08 16:32:57) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-3141807934-2690009970-3073972120-500 - Administrator - Disabled) => C:\Users\Administrator Gość (S-1-5-21-3141807934-2690009970-3073972120-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3141807934-2690009970-3073972120-1002 - Limited - Enabled) Konto domyślne (S-1-5-21-3141807934-2690009970-3073972120-503 - Limited - Disabled) Kuba (S-1-5-21-3141807934-2690009970-3073972120-1001 - Administrator - Enabled) => C:\Users\Kuba ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe Flash Player 25 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 25.0.0.127 - Adobe Systems Incorporated) Adobe Flash Player 26 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 26.0.0.151 - Adobe Systems Incorporated) Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.5.195 - Adobe Systems, Inc.) AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.) Asystent uaktualnienia do systemu Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17384 - Microsoft Corporation) Audacity 2.1.2 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team) AVG Web TuneUp (HKLM-x32\...\AVG Web TuneUp) (Version: 4.2.9.726 - AVG Technologies) Bloody5 (HKLM-x32\...\Bloody3) (Version: 15.06.0005 - Bloody) BlueStacks App Player (HKLM-x32\...\BlueStacks) (Version: 2.7.320.8504 - BlueStack Systems, Inc.) Catalyst Control Center Next Localization BR (HKLM\...\{585A6A74-1DED-8DA0-32F1-F5EFA485DFB1}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{A0649E20-C57C-DCFA-AE1B-1CE1CB9D98A8}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{35F79A5D-00E2-8C19-D929-2E85DEA4252D}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{2CEBB6AA-EC39-DFF2-1F5B-9A98301C4DAB}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{F05F0B6E-9999-55D0-C323-D06DF0E2B59F}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{CBABB5FD-BD69-8969-729A-5659E11D9518}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{98527BF3-A8E0-B8CF-7297-436B714FC576}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{D6CD1B25-53E6-C2F8-FA99-F89138A9C86F}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{487C3865-3005-F04A-FBA4-F4239E02A847}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{D80AD200-548C-B62B-32AE-BF3CD7AA7EA2}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{D21BFF5C-51AA-4C15-1C91-6A1087FDC373}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{04F0FFCB-D9A5-2332-2697-CA47C0424AF2}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{47F2FFDC-3D6A-CED6-0B54-6E7082D5B29B}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{5608D1B6-6483-9FA3-7297-C2CFC3FCE747}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{1FCA484A-5A9E-9C91-F050-257D1F311A0C}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{D8FB03AE-A326-0C12-AC47-B898FE73FA94}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{F7876D2E-CDCD-CE53-0E88-995B57A94B58}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{3BAB5AC8-EF35-FED0-BCEB-9306D05EDE1C}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{746E086C-023A-A79C-DBE1-062E773FF6C8}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{1C44BB26-1941-DB44-D5E8-C455F89EE6E6}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{BE7F26CB-6E91-7673-7130-80C36FBF13DE}) (Version: 2016.0226.1531.27895 - Advanced Micro Devices, Inc.) Hidden Classic Shell (HKLM\...\{383BB30A-B4A7-4666-9A83-22CFA8640097}) (Version: 4.3.0 - IvoSoft) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) dBpoweramp DSP Effects (HKLM-x32\...\dBpoweramp DSP Effects) (Version: Release 11 - Illustrate) Discord (HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.) EAC eSports (HKLM\...\Steam App 282660) (Version: - EasyAntiCheat Ltd) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 60.0.3112.101 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 5.1.2.0 - Hi-Rez Studios) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) Java 8 Update 131 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180131F0}) (Version: 8.0.1310.11 - Oracle Corporation) Killing Floor (HKLM\...\Steam App 1250) (Version: - Tripwire Interactive) League of Legends (HKLM-x32\...\{B2777235-FDF0-4371-9D1E-0CD24DFE3579}) (Version: 4.2.1 - Riot Games) Hidden League of Legends (HKLM-x32\...\League of Legends 4.2.1) (Version: 4.2.1 - Riot Games) Lightshot-5.4.0.10 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.4.0.10 - Skillbrains) Malwarebytes (wersja 3.1.2.1733) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.1.2.1733 - Malwarebytes) Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{58FED865-4F13-408D-A5BF-996019C4B936}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{1B876496-B3A2-4D22-9B12-B608A3FD4B8B}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (x64) (HKLM\...\{A6BA243E-85A3-4635-A269-32949C98AC7F}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{6C026A91-640F-4A23-8B68-05D589CC6F18}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{2F7DBBE6-8EBC-495C-9041-46A772F4E311}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{43A5C316-9521-49C3-B9B6-FCE5E1005DF0}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{D411E9C9-CE62-4DBF-9D92-4CB22B750ED5}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{54C5041B-0E91-4E92-8417-AAA12493C790}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL Language Service (HKLM-x32\...\{04DD7AF4-A6D3-4E30-9BB9-3B3670719234}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2014 Express LocalDB (HKLM\...\{AB8DE9BA-19E1-446A-BCFA-6B3DA9751E21}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 Management Objects (HKLM-x32\...\{2774595F-BC2A-4B12-A25B-0C37A37049B0}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 Management Objects (x64) (HKLM\...\{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 Transact-SQL ScriptDom (HKLM\...\{020CDFE0-C127-4047-B571-37C82396B662}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 T-SQL Language Service (HKLM-x32\...\{47D08E7A-92A1-489B-B0BF-415516497BCE}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - enu (12.0.41012.0) (HKLM-x32\...\{AC8E0CF4-42A1-4151-B684-97CF6FD726CF}) (Version: 12.0.41012.0 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - enu (12.0.30919.1) (HKLM-x32\...\{6781FF9B-E87D-4A03-9373-A55A288B83FA}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2012 (HKLM-x32\...\{070C38AC-05CE-43DF-9A20-141332F6AB2B}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2012 (x64) (HKLM\...\{05FF8209-C4F1-4C77-BC28-791653156D20}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{8C06D6DB-A391-4686-B050-99CC522A7843}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{4AEB505C-95E1-4964-9B64-8D27F3186D30}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x64 8.0.50727.4053 False (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x64 8.0.50727.42 False (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x64 8.0.51011 False (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x64 8.0.56336 False (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x64 8.0.57102 False (HKLM\...\{f0cbd694-71ce-4391-9690-5da93b2f0445}) (Version: 8.0.57102 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x64 8.0.58298 False (HKLM\...\{f45b48a7-f616-4211-b927-17cab6a96613}) (Version: 8.0.58298 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x64 8.0.59192 False (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x64 8.0.61000 (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x86 8.0.50727.4053 False (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x86 8.0.50727.42 False (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x86 8.0.51011 False (HKLM-x32\...\{a0fe116e-9a8a-466f-aee0-625cb7c207e3}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x86 8.0.56336 False (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x86 8.0.57103 False (HKLM-x32\...\{d8fea624-4f2c-432d-9a54-6eee9cd1a77e}) (Version: 8.0.57103 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x86 8.0.58299 False (HKLM-x32\...\{052bac4a-6f79-46d4-a024-1ce1b4f73cd4}) (Version: 8.0.58299 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x86 8.0.59193 False (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 False (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022.0 False (HKLM\...\{D04659D1-EB2D-3DE5-A833-837A623CCCF7}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022.218 False (HKLM\...\{BBBE35B2-9349-3C48-BD3D-F574B17C7924}) (Version: 9.0.21022.218 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30411 False (HKLM\...\{D93AC9C8-B6CF-391E-BD2F-48AF4727476C}) (Version: 9.0.30411 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 False (HKLM\...\{4FFA2088-8317-3B14-93CD-4C699DB37843}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.0 False (HKLM\...\{2DFD8316-9EF1-3210-908C-4CB61961C1AC}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 False (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4048 False (HKLM\...\{91415F19-4C22-3609-A105-92ED3522D83C}) (Version: 9.0.30729.4048 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 False (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148.0 False (HKLM\...\{EE936C7A-EA40-31D5-9B65-8E3E089C3828}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.5570 False (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 False (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.0 False (HKLM-x32\...\{DCB46B42-723F-350E-B18A-449BC6C21636}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 False (HKLM-x32\...\{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}) (Version: 9.0.21022.218 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 False (HKLM-x32\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 False (HKLM-x32\...\{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.0 False (HKLM-x32\...\{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 False (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4048 False (HKLM-x32\...\{5B1F2843-B379-3FF2-B0D3-64DD143ED53A}) (Version: 9.0.30729.4048 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 False (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.0 False (HKLM-x32\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.5570 False (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x64 10.0.30319 False (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.30319 False (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 False Eng (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 False Eng (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{1a63c099-febd-4eaf-83ad-a82ea4fdac49}) (Version: 12.0.30501.0 - Корпорация Майкрософт) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 False Eng (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 False (HKLM-x32\...\{2af972c7-13b0-4978-92a8-fee26a4fb4e9}) (Version: 12.0.21005.1 - Корпорация Майкрософт) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 False Eng (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{b55f7208-e02b-4828-ac78-59c73ddf5bc7}) (Version: 12.0.30501.0 - Корпорация Майкрософт) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 False Eng (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual Studio Community 2015 (HKLM-x32\...\{50b32652-69d2-4b93-9316-edcd12067b8b}) (Version: 14.0.23107.10 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.63.14 - Black Tree Gaming) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.9 - Notepad++ Team) Opera Stable 43.0.2442.991 (HKLM-x32\...\Opera 43.0.2442.991) (Version: 43.0.2442.991 - Opera Software) ParkControl (HKLM-x32\...\ParkControl) (Version: 1.0.3.2 - Bitsum) Prerequisites for SSDT (HKLM-x32\...\{21373064-AD95-48DB-A32E-0D9E08EF7355}) (Version: 12.0.2000.8 - Microsoft Corporation) Prerequisites for SSDT (HKLM-x32\...\{35C1D9D6-87C0-46A3-B1B4-EDBCC063221C}) (Version: 11.1.3000.0 - Microsoft Corporation) Raptr (HKLM-x32\...\Raptr) (Version: 5.2.7-r116720-release - Raptr, Inc) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7687 - Realtek Semiconductor Corp.) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games) Skyrim Script Extender (SKSE) (HKLM\...\Steam App 365720) (Version: - The SKSE Team) SoftPerfect RAM Disk 3.4.7 (HKLM\...\{33A14ED9-0340-4193-BEDB-B95BC8196182}_is1) (Version: - SoftPerfect) Spotify (HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\Spotify) (Version: 1.0.60.492.gbb40dab8 - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Stronghold HD (HKLM\...\Steam App 40950) (Version: - FireFly Studios) SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1244 - SUPERAntiSpyware.com) swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TeamSpeak 3 Client (HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\TeamSpeak 3 Client) (Version: 3.1.5 - TeamSpeak Systems GmbH) The Elder Scrolls V: Skyrim (HKLM\...\Steam App 72850) (Version: - Bethesda Game Studios) Unity Web Player (HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\UnityWebPlayer) (Version: 5.3.3f1 - Unity Technologies ApS) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Kuba\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64\FileSyncShell64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Kuba\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64\FileSyncShell64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Kuba\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64\FileSyncShell64.dll => Brak pliku ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> Brak pliku ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> Brak pliku ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> Brak pliku ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30] (IvoSoft) ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30] (IvoSoft) ContextMenuHandlers1: [###MegaContextMenuExt] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Brak pliku ContextMenuHandlers1: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll -> Brak pliku ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2015-04-15] () ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext.dll [2015-02-15] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext32.dll [2015-02-15] (Alexander Roshal) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2016-02-26] (Advanced Micro Devices, Inc.) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes) ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\WINDOWS\system32\StartMenuHelper64.dll [2016-07-30] (IvoSoft) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext.dll [2015-02-15] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRar\rarext32.dll [2015-02-15] (Alexander Roshal) ContextMenuHandlers1_S-1-5-21-3141807934-2690009970-3073972120-1001: [GGDriveMenu] -> [CC]{E68D0A55-3C40-4712-B90D-DCFA93FF2534} => -> Brak pliku ContextMenuHandlers5_S-1-5-21-3141807934-2690009970-3073972120-1001: [GGDriveMenu] -> {E68D0A55-3C40-4712-B90D-DCFA93FF2534} => -> Brak pliku ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {10B70C4B-34D8-4C24-AFB9-1132CBF2A204} - System32\Tasks\AeroGlass => C:\Users\Kuba\Desktop\AeroGlass10240\AeroGlass\AeroGlass_x86.exe Task: {11BD5D07-2BE9-4902-A1FD-32A9C06551E6} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Brak pliku <==== UWAGA Task: {1FBABAED-A353-4BE3-96D1-0154E744DBAA} - System32\Tasks\SUPERAntiSpyware Scheduled Task bc632668-2c9b-4fa3-8581-ffc09ea5b19b => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com) Task: {2B80FDB7-E08B-40FE-94FF-88E46A7D38A3} - System32\Tasks\Opera scheduled Autoupdate 1473250356 => C:\Program Files (x86)\Opera\launcher.exe [2017-02-20] (Opera Software) Task: {308A6449-7360-40E3-BB7D-88CEE63F8643} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-08-21] (Adobe Systems Incorporated) Task: {52BD0EE1-9473-412C-BEE2-D7A1031FF090} - System32\Tasks\AutoKMS => C:\WINDOWS\AutoKMS\AutoKMS.exe [2017-02-23] () Task: {52FB5928-25A7-48B0-921D-454C1C880846} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA Task: {6A6AAD83-19E7-4A4E-A697-18D813BA33C1} - System32\Tasks\ASC9_SkipUac_Kuba => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe Task: {70443772-CFB0-4377-9F91-80C688E9B64F} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Brak pliku <==== UWAGA Task: {712DD885-0454-45ED-900D-E0557B2E7B0A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA Task: {82B906C8-40CF-4DD8-8942-FFD344E27684} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA Task: {836EABDC-4F1A-412B-8138-51287D908073} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA Task: {85201F32-1B0C-4B11-BF1A-5C1412DB76D1} - System32\Tasks\SUPERAntiSpyware Scheduled Task 09614ae6-5337-47c7-9f2b-8e13a5ba752e => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com) Task: {9C97B830-653E-4E1B-BE64-8792104E0647} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA Task: {A2FC6FB0-544C-4AA8-BE50-390237B2BE2F} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA Task: {A38E990F-2E69-4FC8-AA61-D742BBC59138} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-03-21] (Advanced Micro Devices, Inc.) Task: {A70DA6D8-E623-4D90-86AB-62E59D18218F} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\MpCmdRun.exe Task: {A9F3AB46-AC14-4031-BF2F-BA026BD15AF1} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_26_0_0_151_pepper.exe [2017-08-21] (Adobe Systems Incorporated) Task: {B0E0AC39-2824-4A36-BDA3-D5B41B3740F0} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK Task: {B0E3E5E6-C9C0-4536-A5BD-A5ABC909B496} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Brak pliku <==== UWAGA Task: {C235E0CB-DCB6-4054-B93B-E3F9ABF6DD25} - System32\Tasks\Safer-Networking\Spybot Anti-Beacon\Refresh Anti-Beacon immunization => C:\Program Files (x86)\Spybot Anti-Beacon\SDAntiBeacon.exe Task: {C5943687-CFE5-42D0-AA6E-4D9F2D231F6C} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA Task: {C5DA627A-7CB5-43E4-92C9-A9F52481E0BB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-08-21] (Google Inc.) Task: {CA3CD480-87CE-4CC9-9C3D-FF000E20DC9D} - \ASC10_SkipUac_Kuba -> Brak pliku <==== UWAGA Task: {CDCF63A2-971D-44EF-AA3E-8CE6E84D9468} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA Task: {E134DDFD-69F8-4D55-8923-9400690CC4DC} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA Task: {E3AED036-80EC-407C-A002-99EC91B35DCA} - System32\Tasks\update-S-1-5-21-3141807934-2690009970-3073972120-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (TODO: ) Task: {E83A454E-4744-4CFA-9DA8-0C1806DA7EB8} - System32\Tasks\Driver Booster SkipUAC (Kuba) => C:\Program Files (x86)\IObit\Driver Booster\4.3.0\DriverBooster.exe Task: {ED42EB2A-4002-4A01-84EA-0423B901F9E1} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (TODO: ) Task: {F1CFAC28-FEDF-4774-BC55-D133D21672B5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-08-21] (Google Inc.) Task: {F8A4A57E-28EE-40A2-9DCC-2CF6B071230C} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\ASC9_SkipUac_Kuba.job => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe Task: C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task 09614ae6-5337-47c7-9f2b-8e13a5ba752e.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe Task: C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task bc632668-2c9b-4fa3-8581-ffc09ea5b19b.job => C:\Program Files\SUPERAntiSpyware\SASTask.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe Task: C:\WINDOWS\Tasks\update-S-1-5-21-3141807934-2690009970-3073972120-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\Kuba\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\jksofficial33@gmail.com - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 1" ==================== Załadowane moduły (filtrowane) ============== 2017-03-18 22:58 - 2017-03-18 22:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2017-03-18 22:59 - 2017-03-20 05:59 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-07-20 10:06 - 2017-08-21 12:43 - 000173848 _____ () C:\Users\Kuba\AppData\Local\TeamSpeak 3 Client\quazip.dll 2017-04-03 13:19 - 2017-04-03 13:19 - 000019736 _____ () C:\Users\Kuba\AppData\Local\TeamSpeak 3 Client\libEGL.DLL 2017-04-03 13:19 - 2017-04-03 13:19 - 001980696 _____ () C:\Users\Kuba\AppData\Local\TeamSpeak 3 Client\libGLESv2.dll 2017-07-20 10:06 - 2017-08-21 12:43 - 000124696 _____ () C:\Users\Kuba\AppData\Local\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2017-07-20 10:06 - 2017-08-21 12:43 - 000149784 _____ () C:\Users\Kuba\AppData\Local\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2017-08-21 12:44 - 2017-08-21 12:44 - 006282240 _____ () C:\Users\Kuba\AppData\Roaming\TS3Client\plugins\rp_soundboard_win64.dll 2017-07-27 01:10 - 2017-07-27 01:10 - 000479744 _____ () C:\Users\Kuba\AppData\Roaming\TS3Client\plugins\soundboard.dll 2017-07-20 13:41 - 2017-07-20 13:41 - 000157696 _____ () C:\Users\Kuba\AppData\Roaming\TS3Client\plugins\gamepad_joystick_win64.dll 2017-07-21 20:34 - 2017-07-21 20:34 - 000345880 _____ () C:\Users\Kuba\AppData\Roaming\TS3Client\plugins\clientquery_plugin_win64.dll 2017-08-21 11:49 - 2017-08-11 09:40 - 002692952 _____ () C:\Program Files (x86)\Google\Chrome\Application\60.0.3112.101\swiftshader\libglesv2.dll 2017-08-21 11:49 - 2017-08-11 09:40 - 000137048 _____ () C:\Program Files (x86)\Google\Chrome\Application\60.0.3112.101\swiftshader\libegl.dll 2017-08-21 10:58 - 2017-08-04 23:19 - 000678176 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2017-08-21 10:58 - 2017-08-16 00:46 - 002504480 _____ () C:\Program Files (x86)\Steam\video.dll 2017-08-21 10:58 - 2016-09-01 03:02 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll 2017-08-21 10:57 - 2016-01-27 09:49 - 002549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2017-08-21 10:57 - 2016-01-27 09:49 - 000491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2017-08-21 10:57 - 2016-01-27 09:49 - 000332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2017-08-21 10:57 - 2016-01-27 09:49 - 000442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2017-08-21 10:57 - 2016-01-27 09:49 - 000485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2017-08-21 10:58 - 2016-09-01 03:02 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2017-08-21 10:58 - 2016-09-01 03:02 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2017-08-21 10:58 - 2017-08-16 00:46 - 000885024 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2017-08-21 10:57 - 2017-05-17 03:54 - 000678176 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll 2017-08-21 10:57 - 2017-07-18 00:50 - 073115424 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll 2017-08-21 10:57 - 2015-09-25 01:52 - 000119208 _____ () C:\Program Files (x86)\Steam\winh264.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\008k.com -> 008k.com IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\00hq.com -> 00hq.com IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\0190-dialers.com -> 0190-dialers.com IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\01i.info -> 01i.info IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\05p.com -> 05p.com IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\0calories.net -> 0calories.net IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\0cj.net -> 0cj.net IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\0scan.com -> 0scan.com IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\1-domains-registrations.com -> 1-domains-registrations.com IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\1-se.com -> 1-se.com IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\1001movie.com -> 1001movie.com IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\1001night.biz -> 1001night.biz IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\100gal.net -> 100gal.net IE restricted site: HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\100sexlinks.com -> 100sexlinks.com Wykryto więcej niż wyliczono: 4788 witryn. ==================== Hosts - zawartość: ========================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 04:34 - 2017-06-27 21:24 - 000002819 _____ C:\WINDOWS\system32\Drivers\etc\hosts 0.0.0.0 choice.microsoft.com 0.0.0.0 choice.microsoft.com.nstac.net 0.0.0.0 df.telemetry.microsoft.com 0.0.0.0 oca.telemetry.microsoft.com 0.0.0.0 oca.telemetry.microsoft.com.nsatc.net 0.0.0.0 redir.metaservices.microsoft.com 0.0.0.0 reports.wes.df.telemetry.microsoft.com 0.0.0.0 services.wes.df.telemetry.microsoft.com 0.0.0.0 settings-sandbox.data.microsoft.com 0.0.0.0 settings-win.data.microsoft.com 0.0.0.0 sqm.df.telemetry.microsoft.com 0.0.0.0 sqm.telemetry.microsoft.com 0.0.0.0 sqm.telemetry.microsoft.com.nsatc.net 0.0.0.0 telecommand.telemetry.microsoft.com 0.0.0.0 telecommand.telemetry.microsoft.com.nsatc.net 0.0.0.0 telemetry.appex.bing.net 0.0.0.0 telemetry.microsoft.com 0.0.0.0 telemetry.urs.microsoft.com 0.0.0.0 vortex-sandbox.data.microsoft.com 0.0.0.0 vortex-win.data.microsoft.com 0.0.0.0 vortex.data.microsoft.com 0.0.0.0 watson.telemetry.microsoft.com 0.0.0.0 watson.telemetry.microsoft.com.nsatc.net 0.0.0.0 watson.ppe.telemetry.microsoft.com 0.0.0.0 wes.df.telemetry.microsoft.com 0.0.0.0 vortex-bn2.metron.live.com.nsatc.net 0.0.0.0 vortex-cy2.metron.live.com.nsatc.net 0.0.0.0 watson.live.com 0.0.0.0 watson.microsoft.com 0.0.0.0 feedback.search.microsoft.com ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Kuba\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\{60dd0605-3de0-4657-a7d6-e5f3374d0902}.jpg HKU\S-1-5-21-3141807934-2690009970-3073972120-500\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\Control Panel\Desktop\\Wallpaper -> DNS Servers: 62.179.1.60 - 62.179.1.61 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == MSCONFIG\Services: ACTION_SVC => 3 MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: AdvancedSystemCareService8 => 2 MSCONFIG\Services: AdvancedSystemCareService9 => 2 MSCONFIG\Services: AMD External Events Utility => 2 MSCONFIG\Services: avgfws => 2 MSCONFIG\Services: avgsvc => 2 MSCONFIG\Services: avgwd => 2 MSCONFIG\Services: BEService => 3 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: Hamachi2Svc => 2 MSCONFIG\Services: HiPatchService => 2 MSCONFIG\Services: HuaweiHiSuiteService64.exe => 3 MSCONFIG\Services: IMFservice => 2 MSCONFIG\Services: LiveUpdateSvc => 2 MSCONFIG\Services: LMIGuardianSvc => 2 MSCONFIG\Services: MBAMScheduler => 3 MSCONFIG\Services: MBAMService => 3 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: Origin Client Service => 3 MSCONFIG\Services: PlaysService => 2 MSCONFIG\Services: Razer Game Scanner Service => 3 MSCONFIG\Services: RzKLService => 3 MSCONFIG\Services: SkypeUpdate => 2 MSCONFIG\Services: Steam Client Service => 3 MSCONFIG\Services: vToolbarUpdater40.2.9 => 2 MSCONFIG\startupfolder: C:^Users^Kuba^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^chrome.com.url => C:\Windows\pss\chrome.com.url.Startup MSCONFIG\startupfolder: C:^Users^Kuba^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^SHU.lnk => C:\Windows\pss\SHU.lnk.Startup MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCEPServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: Advanced SystemCare 8 => MSCONFIG\startupreg: Advanced SystemCare 9 => "C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe" /Auto MSCONFIG\startupreg: CCleaner Monitoring => MSCONFIG\startupreg: GG => MSCONFIG\startupreg: IObit Malware Fighter => "C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" /autostart MSCONFIG\startupreg: LogMeIn Hamachi Ui => MSCONFIG\startupreg: PlaysTV => "c:\program files (x86)\raptr inc\playstv\playstv_launcher.exe" --startup MSCONFIG\startupreg: Raptr => MSCONFIG\startupreg: RTHDVCPL => "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s MSCONFIG\startupreg: Skype => MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Kuba\AppData\Roaming\Spotify\SpotifyWebHelper.exe" MSCONFIG\startupreg: StartCCC => "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" HKLM\...\StartupApproved\Run: => "SecurityHealth" HKLM\...\StartupApproved\Run: => "RAMDiskForWorkstations" HKLM\...\StartupApproved\Run32: => "AvgUi" HKLM\...\StartupApproved\Run32: => "AVG_UI" HKLM\...\StartupApproved\Run32: => "PlaysTV" HKLM\...\StartupApproved\Run32: => "Raptr" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "Lightshot" HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\StartupApproved\StartupFolder: => "ZenMate.bat" HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\StartupApproved\StartupFolder: => "Twitch.lnk" HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\StartupApproved\Run: => "Advanced SystemCare 9" HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\StartupApproved\Run: => "WTFast Tray" HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\StartupApproved\Run: => "f.lux" HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\StartupApproved\Run: => "CyberGhost" HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\StartupApproved\Run: => "BlueStacks Agent" HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\StartupApproved\Run: => "Discord" HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\StartupApproved\Run: => "SteamServerBrowser" HKU\S-1-5-21-3141807934-2690009970-3073972120-1001\...\StartupApproved\Run: => "Overwolf" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [UDP Query User{11FC44D3-61C1-4DE4-9EEC-DEF998B7BFEC}D:\program files\strogino cs portal\counter-strike global offensive\csgo.exe] => (Allow) D:\program files\strogino cs portal\counter-strike global offensive\csgo.exe FirewallRules: [TCP Query User{ECF5C9D6-0418-42CC-8AD6-15FBEA01C3FA}D:\program files\strogino cs portal\counter-strike global offensive\csgo.exe] => (Allow) D:\program files\strogino cs portal\counter-strike global offensive\csgo.exe FirewallRules: [{23DBD129-C6A5-4D85-99DA-1EC597E90016}] => (Block) C:\program files (x86)\steam\steamapps\common\skyrim\server\sfs2x\sfs2x-standalone.exe FirewallRules: [{E8CC3091-E89C-45DF-8DF9-D46823926286}] => (Block) C:\program files (x86)\steam\steamapps\common\skyrim\server\sfs2x\sfs2x-standalone.exe FirewallRules: [UDP Query User{39180379-E082-4398-BA11-51A2744E8200}C:\program files (x86)\steam\steamapps\common\skyrim\server\sfs2x\sfs2x-standalone.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\skyrim\server\sfs2x\sfs2x-standalone.exe FirewallRules: [TCP Query User{D6B03AA7-F91B-4948-A315-3C976887DC47}C:\program files (x86)\steam\steamapps\common\skyrim\server\sfs2x\sfs2x-standalone.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\skyrim\server\sfs2x\sfs2x-standalone.exe FirewallRules: [{7411996D-B9C4-46D5-888D-3D5BA12C413B}] => (Allow) C:\Program Files (x86)\Opera\43.0.2442.991\opera.exe FirewallRules: [{846AF723-87F4-4192-AF46-14AD989AE6D2}] => (Allow) C:\Program Files (x86)\Opera\43.0.2442.806\opera.exe FirewallRules: [{F508350E-DA38-496F-88D8-5350B16EFFFF}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{B62D3B0B-CC82-481E-9482-235214890ECE}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{CA2915A7-7580-47C4-9C98-E7E4FB45C98F}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{FA9AA689-8FD8-4BD2-A625-6747638EFA50}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{8D551C7A-F7BD-4409-8921-6184981C2309}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{DCB9D94C-0741-4C5A-B549-B372048CF78F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [UDP Query User{355A589C-90DC-4B30-A10C-FF1E523C72E6}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe FirewallRules: [TCP Query User{2193BE8A-08B4-41A2-936A-4CE4955D2F81}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe FirewallRules: [UDP Query User{55D545F5-D548-4F6B-A125-AC14A1D8039D}D:\program files (x86)\counter strike source\hl2.exe] => (Allow) D:\program files (x86)\counter strike source\hl2.exe FirewallRules: [TCP Query User{9FC7A143-2408-4B9D-96D7-50BF08345640}D:\program files (x86)\counter strike source\hl2.exe] => (Allow) D:\program files (x86)\counter strike source\hl2.exe FirewallRules: [UDP Query User{0509E904-2D55-4C49-99CA-2ED9CC5F9A81}C:\program files (x86)\java\jre1.8.0_101\bin\java.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_101\bin\java.exe FirewallRules: [TCP Query User{DD80302E-47AE-4B63-BCCF-C08CFABCBA1D}C:\program files (x86)\java\jre1.8.0_101\bin\java.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_101\bin\java.exe FirewallRules: [{AFA03FC3-AB50-4844-AE76-1C4C1AB6FE0F}] => (Block) C:\program files (x86)\java\jre1.8.0_101\bin\javaw.exe FirewallRules: [{BE0001BA-217A-4ABD-8460-4BDD48562C9E}] => (Block) C:\program files (x86)\java\jre1.8.0_101\bin\javaw.exe FirewallRules: [UDP Query User{DF6328BE-B5D4-4F2A-848C-24C8A7A7F565}C:\program files (x86)\java\jre1.8.0_101\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_101\bin\javaw.exe FirewallRules: [TCP Query User{3DD3AFDA-B50F-4796-8091-CD298E3FC611}C:\program files (x86)\java\jre1.8.0_101\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_101\bin\javaw.exe FirewallRules: [{84715788-DC22-4C34-9542-E36375B2B7F9}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{F793D736-C092-4DE3-8938-9A572EDA5B6D}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{F0AE00F3-4FDA-4306-95FF-0D6B4F31E346}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{DCD7FB2A-2D24-4F04-A127-9BA343EFA379}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{F5D8D443-4D29-4C3A-8E30-BA76E34487A7}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{838CB533-3BFB-4909-97E3-95B9FCEEBEB3}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{3B8C6F25-34AE-4380-A43C-B71C159920E3}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{9F204AF8-1704-4661-8757-C945061CC7DD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [TCP Query User{609B25BE-F80C-4270-8F91-78F441123C44}C:\users\kuba\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\kuba\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{3C9D59EC-0370-4708-8E4D-B2385103A166}C:\users\kuba\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\kuba\appdata\roaming\spotify\spotify.exe FirewallRules: [{3BBB0CA7-B535-474E-98F9-968AF194F0D4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{68F8C96E-5C39-4F4B-A97D-CE294909BE85}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{E00119F5-33D6-49B8-AB2D-09211A77BD7E}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{30125854-62A0-44A3-B0E5-E11B572CB5AC}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [TCP Query User{5090E241-35B8-4544-8364-202AA7AD0900}D:\gry\counter-strike 1.6 v43\hl.exe] => (Allow) D:\gry\counter-strike 1.6 v43\hl.exe FirewallRules: [UDP Query User{A8BAA2D4-B5E6-4683-A282-0A6C67A37AEB}D:\gry\counter-strike 1.6 v43\hl.exe] => (Allow) D:\gry\counter-strike 1.6 v43\hl.exe FirewallRules: [TCP Query User{6373F695-0B83-445C-8E2C-54015BEDEADC}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe FirewallRules: [UDP Query User{76A9C7C5-1853-4D96-B9E5-ACB4963A05AF}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe FirewallRules: [{454CF261-CEE6-4409-9765-DA76F5C28B82}] => (Allow) C:\Users\Kuba\Desktop\Stronghold Crusader\stronghold crusader.exe FirewallRules: [{1A236F8C-7ABE-44FA-8ADA-0B36F6E850A9}] => (Allow) D:\Program Files\steamapps\common\KillingFloor\System\KillingFloor.exe FirewallRules: [{C1882719-4A4F-4D2D-AA27-80796A9819D4}] => (Allow) D:\Program Files\steamapps\common\KillingFloor\System\KillingFloor.exe FirewallRules: [{F2613B3A-B3A5-448A-9EEB-24ED77DC617C}] => (Allow) D:\Program Files\steamapps\common\Starbound\win64\starbound.exe FirewallRules: [{70D06E12-2093-49BF-998E-2C7AF8F872E4}] => (Allow) D:\Program Files\steamapps\common\Starbound\win64\starbound.exe FirewallRules: [{955048ED-61AB-4A1B-BC76-503B388A2900}] => (Allow) D:\Program Files\steamapps\common\Starbound\win64\starbound_server.exe FirewallRules: [{976D6752-AD91-49BB-AE76-73E911B1E095}] => (Allow) D:\Program Files\steamapps\common\Starbound\win64\starbound_server.exe FirewallRules: [{2D06CB0A-6C96-4188-A26E-94B5F1106477}] => (Allow) D:\Program Files\steamapps\common\Starbound\win64\mod_uploader.exe FirewallRules: [{1B91D942-FBA3-4499-886A-A7FA5120F51D}] => (Allow) D:\Program Files\steamapps\common\Starbound\win64\mod_uploader.exe FirewallRules: [{BA1C4B0F-1F5F-40BB-BE16-830A00C940B2}] => (Allow) D:\Program Files\steamapps\common\Starbound\win32\starbound.exe FirewallRules: [{DC64DE38-2CFE-4472-BD58-781D2DB26FB8}] => (Allow) D:\Program Files\steamapps\common\Starbound\win32\starbound.exe FirewallRules: [{FE5256F6-8111-4AD1-9477-2F788EBF1365}] => (Allow) D:\Program Files\steamapps\common\EasyAntiCheat\EasyAntiCheat.exe FirewallRules: [{45441AD8-CC7A-4128-97DB-96679951BE1C}] => (Allow) D:\Program Files\steamapps\common\EasyAntiCheat\EasyAntiCheat.exe FirewallRules: [TCP Query User{90A76514-1C22-4948-94B4-06C64449707F}D:\games\counter-strike source\hl2.exe] => (Allow) D:\games\counter-strike source\hl2.exe FirewallRules: [UDP Query User{293CC715-B0CE-4AFA-9F0E-DC0BFC54CEDF}D:\games\counter-strike source\hl2.exe] => (Allow) D:\games\counter-strike source\hl2.exe FirewallRules: [{4D6B75D1-E793-4266-AA2B-52297FA90954}] => (Block) D:\games\counter-strike source\hl2.exe FirewallRules: [{787CF943-67D3-4076-9C21-695858E5D79C}] => (Block) D:\games\counter-strike source\hl2.exe FirewallRules: [TCP Query User{E349F9FB-643A-4C40-80B6-A17C57BC37F6}D:\gry\counter strike source klasyczny\hl2.exe] => (Allow) D:\gry\counter strike source klasyczny\hl2.exe FirewallRules: [UDP Query User{89BA6DEE-425D-4DE4-B8E0-D718E6B0EE43}D:\gry\counter strike source klasyczny\hl2.exe] => (Allow) D:\gry\counter strike source klasyczny\hl2.exe FirewallRules: [{C70A5010-69FF-46C2-AF40-FEDD806868C1}] => (Block) D:\gry\counter strike source klasyczny\hl2.exe FirewallRules: [{54AB6BFF-62F1-4A3E-B02D-5AFC3B93C456}] => (Block) D:\gry\counter strike source klasyczny\hl2.exe FirewallRules: [{A269D74A-A3B5-477D-BDB0-3FB4FAE3A60A}] => (Allow) D:\Program Files (x86)\Rockstar Games\Grand Theft Auto San Andreas\gta_sa.exe FirewallRules: [{05581054-CCB2-4CB4-A6D6-265C60212530}] => (Allow) D:\Program Files (x86)\Rockstar Games\Grand Theft Auto San Andreas\gta_sa.exe FirewallRules: [{2C8FA97F-D092-4423-A665-BD823E5FD991}] => (Allow) D:\Program Files\steamapps\common\Stronghold\Stronghold.exe FirewallRules: [{D08F7D6C-979F-44F5-8FC3-A774360CD6DB}] => (Allow) D:\Program Files\steamapps\common\Stronghold\Stronghold.exe FirewallRules: [{B936D1CC-DC12-4962-8535-77A55413F2C5}] => (Allow) D:\Program Files\steamapps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{09078417-2AFD-4703-80CA-F9E7A5E4885A}] => (Allow) D:\Program Files\steamapps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{CD36258C-74A1-4E28-B50C-86EFC40C78E6}] => (Allow) D:\Program Files\steamapps\common\Skyrim\skse_steam_boot.exe FirewallRules: [{0BC93ADF-0736-448C-9308-4097A2697A49}] => (Allow) D:\Program Files\steamapps\common\Skyrim\skse_steam_boot.exe FirewallRules: [{06B6204C-A773-4889-ADF4-902758F65EA4}] => (Allow) D:\Program Files\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe FirewallRules: [{26021D6F-A92A-4FCC-B1AC-D55CCA1ADCB9}] => (Allow) D:\Program Files\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe FirewallRules: [TCP Query User{54ADF3B5-2DCF-44D5-BF7D-2F8C8D58F44F}D:\program files\steamapps\common\smite\binaries\win32\smite.exe] => (Allow) D:\program files\steamapps\common\smite\binaries\win32\smite.exe FirewallRules: [UDP Query User{F67CBDC6-7476-4BBA-8887-ACCAADECD975}D:\program files\steamapps\common\smite\binaries\win32\smite.exe] => (Allow) D:\program files\steamapps\common\smite\binaries\win32\smite.exe FirewallRules: [{D1A675DE-135B-42D6-9C40-B101DF81B3C4}] => (Allow) D:\Program Files\steamapps\common\Shadow Warrior\dx11\launcher.exe FirewallRules: [{435EAEAD-A6CF-4ECD-976B-8B36B7EA66C2}] => (Allow) D:\Program Files\steamapps\common\Shadow Warrior\dx11\launcher.exe FirewallRules: [{3C4F8A90-F0E8-4503-B6F9-15749B15F49A}] => (Allow) D:\Program Files\steamapps\common\Shadow Warrior\sw.exe FirewallRules: [{B2E2878A-7022-48D7-BEB2-0350A7282EB7}] => (Allow) D:\Program Files\steamapps\common\Shadow Warrior\sw.exe FirewallRules: [TCP Query User{B4F1E91C-30D3-4BE3-AF62-6C2CC406F31F}C:\program files (x86)\java\jre1.8.0_131\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_131\bin\javaw.exe FirewallRules: [UDP Query User{53E8A156-4FDC-4FBD-A11D-1C608F2E2767}C:\program files (x86)\java\jre1.8.0_131\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_131\bin\javaw.exe FirewallRules: [{DC51C072-3C66-4E56-BA74-8A5C2C575C1A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Punkty Przywracania systemu ========================= 11-07-2017 20:02:38 Windows Update 09-08-2017 13:27:10 Windows Update 09-08-2017 13:29:05 Windows Update 12-08-2017 19:20:33 Removed Mumble 1.2.19 18-08-2017 21:17:42 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 21-08-2017 00:23:03 Operacja przywracania ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Mysz Microsoft PS/2 Description: Mysz Microsoft PS/2 Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (08/21/2017 01:19:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: AutoKMS.exe, wersja: 2.5.3.0, sygnatura czasowa: 0x54c2b458 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 10.0.15063.483, sygnatura czasowa: 0xaa6457d1 Kod wyjątku: 0xe0434352 Przesunięcie błędu: 0x0000000000069e08 Identyfikator procesu powodującego błąd: 0x568 Godzina uruchomienia aplikacji powodującej błąd: 0x01d31a6e65579654 Ścieżka aplikacji powodującej błąd: C:\WINDOWS\AutoKMS\AutoKMS.exe Ścieżka modułu powodującego błąd: C:\WINDOWS\System32\KERNELBASE.dll Identyfikator raportu: b5fa7bbc-eae7-49da-886c-8a9e9fc2d441 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (08/21/2017 01:19:12 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Aplikacja: AutoKMS.exe Wersja architektury: v4.0.30319 Opis: proces został przerwany z powodu nieobsłużonego wyjątku. Informacje o wyjątku: System.FormatException w System.DateTimeParse.Parse(System.String, System.Globalization.DateTimeFormatInfo, System.Globalization.DateTimeStyles) w ..(.) w ..(.) w ..() Error: (08/21/2017 01:15:44 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: uTorrent.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x55a7b084 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 10.0.15063.483, sygnatura czasowa: 0xc3955624 Kod wyjątku: 0x0eedfade Przesunięcie błędu: 0x000eb802 Identyfikator procesu powodującego błąd: 0x1e44 Godzina uruchomienia aplikacji powodującej błąd: 0x01d31a6eaa0b9bf0 Ścieżka aplikacji powodującej błąd: C:\Users\Kuba\Desktop\Download\uTorrent.exe Ścieżka modułu powodującego błąd: C:\WINDOWS\System32\KERNELBASE.dll Identyfikator raportu: 6896d101-9dab-4c14-8534-c7e5fdb65c8e Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (08/21/2017 01:15:25 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: uTorrent.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x55a7b084 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc00001a5 Przesunięcie błędu: 0x02a9a286 Identyfikator procesu powodującego błąd: 0x1e44 Godzina uruchomienia aplikacji powodującej błąd: 0x01d31a6eaa0b9bf0 Ścieżka aplikacji powodującej błąd: C:\Users\Kuba\Desktop\Download\uTorrent.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu: 48b33c09-1b60-4536-8ead-6439b296f529 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (08/21/2017 01:14:31 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0xC004F074 Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=NetworkAvailable Error: (08/21/2017 01:14:06 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0xC004F074 Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (08/21/2017 12:44:44 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: ts3client_win64.exe, wersja: 3.1.6.0, sygnatura czasowa: 0x59942e77 Nazwa modułu powodującego błąd: Qt5Core.dll, wersja: 5.6.2.0, sygnatura czasowa: 0x58da253a Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000002067a6 Identyfikator procesu powodującego błąd: 0x41c Godzina uruchomienia aplikacji powodującej błąd: 0x01d31a6a6818cf59 Ścieżka aplikacji powodującej błąd: C:\Users\Kuba\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe Ścieżka modułu powodującego błąd: C:\Users\Kuba\AppData\Local\TeamSpeak 3 Client\Qt5Core.dll Identyfikator raportu: f5744e2b-1614-4c84-b25b-0dd93890bff2 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (08/21/2017 12:12:33 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury QueryFullProcessImageNameW. hr = 0x8007001f, Urządzenie dołączone do komputera nie działa. . Operacja: Wykonywanie operacji asynchronicznej Kontekst: Stan bieżący: DoSnapshotSet Error: (08/21/2017 12:09:52 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddLegacyDriverFiles: Unable to back up image of binary Protokół LLDP (Link-Layer Discovery Protocol) firmy Microsoft. System Error: Odmowa dostępu. . Error: (08/21/2017 12:05:53 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: AutoKMS.exe, wersja: 2.5.3.0, sygnatura czasowa: 0x54c2b458 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 10.0.15063.483, sygnatura czasowa: 0xaa6457d1 Kod wyjątku: 0xe0434352 Przesunięcie błędu: 0x0000000000069e08 Identyfikator procesu powodującego błąd: 0x66c Godzina uruchomienia aplikacji powodującej błąd: 0x01d31a648f871214 Ścieżka aplikacji powodującej błąd: C:\WINDOWS\AutoKMS\AutoKMS.exe Ścieżka modułu powodującego błąd: C:\WINDOWS\System32\KERNELBASE.dll Identyfikator raportu: 22c67e25-33ad-4821-a100-c56e1b83eb32 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Dziennik System: ============= Error: (08/21/2017 01:12:40 PM) (Source: NETLOGON) (EventID: 3095) (User: ) Description: Ten komputer jest skonfigurowany jako członek grupy roboczej, a nie domeny. W tej konfiguracji usługa Netlogon nie musi być uruchamiana. Error: (08/21/2017 01:12:37 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi CldFlt z powodu następującego błędu: Żądanie nie jest obsługiwane. Error: (08/21/2017 12:02:20 PM) (Source: NETLOGON) (EventID: 3095) (User: ) Description: Ten komputer jest skonfigurowany jako członek grupy roboczej, a nie domeny. W tej konfiguracji usługa Netlogon nie musi być uruchamiana. Error: (08/21/2017 12:02:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi CldFlt z powodu następującego błędu: Żądanie nie jest obsługiwane. Error: (08/21/2017 12:00:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Hi-Rez Studios Authenticate and Update Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (08/21/2017 12:00:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa AMD External Events Utility niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (08/21/2017 12:00:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa SQL Server VSS Writer niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (08/21/2017 12:00:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Instalator modułów systemu Windows niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/21/2017 11:00:01 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Steam Client Service z powodu następującego błędu: Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. Error: (08/21/2017 11:00:01 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Steam Client Service. CodeIntegrity: =================================== Date: 2017-06-23 22:09:39.141 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\SysWOW64\aepic.dll because the set of per-page image hashes could not be found on the system. Date: 2017-06-23 22:09:36.209 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\SysWOW64\aepic.dll because the set of per-page image hashes could not be found on the system. Date: 2017-06-01 15:15:38.477 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\SysWOW64\aepic.dll because the set of per-page image hashes could not be found on the system. Date: 2017-06-01 15:15:36.821 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\SysWOW64\aepic.dll because the set of per-page image hashes could not be found on the system. Date: 2017-04-26 18:47:08.547 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\dllhost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Metin2\GameGuard\npggNT64.des that did not meet the Microsoft signing level requirements. Date: 2017-04-26 13:13:17.843 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\dllhost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Metin2\GameGuard\npggNT64.des that did not meet the Microsoft signing level requirements. Date: 2017-04-25 22:57:17.949 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\dllhost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Metin2\GameGuard\npggNT64.des that did not meet the Microsoft signing level requirements. Date: 2017-04-24 20:34:46.291 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\dllhost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Metin2\GameGuard\npggNT64.des that did not meet the Microsoft signing level requirements. Date: 2017-04-24 19:05:51.213 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\dllhost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Metin2\GameGuard\npggNT64.des that did not meet the Microsoft signing level requirements. Date: 2017-04-24 18:28:11.339 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\dllhost.exe) attempted to load \Device\HarddiskVolume1\Program Files (x86)\Metin2\GameGuard\npggNT64.des that did not meet the Microsoft signing level requirements. ==================== Statystyki pamięci =========================== Procesor: Pentium(R) Dual-Core CPU E5700 @ 3.00GHz Procent pamięci w użyciu: 76% Całkowita pamięć fizyczna: 3071.24 MB Dostępna pamięć fizyczna: 712.15 MB Całkowita pamięć wirtualna: 12283.24 MB Dostępna pamięć wirtualna: 9420.18 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:367.65 GB) (Free:219.92 GB) NTFS ==>[dysk z komponentami startowymi (pozyskano odczytując BCD)] Drive d: (Nowy) (Fixed) (Total:97.66 GB) (Free:71.4 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: F31AF31A) Partition 1: (Active) - (Size=367.7 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=450 MB) - (Type=27) Partition 3: (Not Active) - (Size=97.7 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================