Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 21-10-2017 Uruchomiony przez Grzybal (21-10-2017 17:58:35) Uruchomiony z C:\Users\Grzybal\Downloads Windows 7 Home Premium Service Pack 1 (X64) (2015-12-27 22:19:39) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-4159757306-1998596358-3979832127-500 - Administrator - Disabled) Gość (S-1-5-21-4159757306-1998596358-3979832127-501 - Limited - Disabled) Grzybal (S-1-5-21-4159757306-1998596358-3979832127-1000 - Administrator - Enabled) => C:\Users\Grzybal HomeGroupUser$ (S-1-5-21-4159757306-1998596358-3979832127-1002 - Limited - Enabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Bitdefender Ochrona antywirusowa (Enabled - Up to date) {3FB17364-4FCC-0FA7-6BBF-973897395371} AS: Bitdefender Moduł antyszpiegowski (Enabled - Up to date) {84D09280-69F6-0029-510F-AC4AECBE19CC} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Bitdefender Zapora Sieciowa (Enabled) {078AF241-05A3-0EFF-40E0-3E0D69EA140A} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-4159757306-1998596358-3979832127-1000\...\uTorrent) (Version: 3.5.0.44050 - BitTorrent Inc.) Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.1.102.64 - Adobe Systems Incorporated) Aktualizacje NVIDIA 2.11.4.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 2.11.4.1 - NVIDIA Corporation) Hidden Apple Application Support (32-bit) (HKLM-x32\...\{7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F}) (Version: 4.1.2 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{691F30EB-9009-475A-B8A9-E1BF39598FD5}) (Version: 4.1.2 - Apple Inc.) Assassin's Creed III (HKLM-x32\...\Uplay Install 54) (Version: - Ubisoft) Assetto Corsa v1.5 (HKLM\...\YXNzZXR0b2NvcnNh_is1) (Version: 1 - ) Bandicam (HKLM-x32\...\Bandicam) (Version: 3.3.3.1209 - Bandicam.com) Bandicam MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version: - Bandicam.com) Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 21.0.25.59 - Bitdefender) Bitdefender Device Management (HKLM\...\Bitdefender Device Management) (Version: 22.0.10.141 - Bitdefender) Bitdefender Total Security (HKLM\...\Bitdefender) (Version: 22.0.12.161 - Bitdefender) CCleaner (HKLM\...\CCleaner) (Version: 5.15 - Piriform) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.2.0.0114 - Disc Soft Ltd) DiRT Rally (HKLM\...\ZGlydHJhbGx5_is1) (Version: 1 - ) GOG.com Heroes of Might and Magic 3 (HKLM\...\{1d3c859c-1028-4822-b0a7-da4f7bbc18bc}.sdb) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 61.0.3163.100 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Heroes of Might and Magic 3 Complete (HKLM-x32\...\GOGPACKHOMM3COMPLETE_is1) (Version: 2.0.0.16 - GOG.com) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.4229 - Intel Corporation) Katalog Mikoda 2.4.1 (HKLM-x32\...\Katalog Mikoda_is1) (Version: - ATM MIKODA) League of Legends (HKLM-x32\...\{5DE67937-45D5-45E4-923C-0B7F7EC929A7}) (Version: 3.0.1 - Riot Games) Hidden League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) LG PC Suite (HKLM-x32\...\LG PC Suite) (Version: 5.3.25.20150529 - LG Electronics) LG United Mobile Drivers (HKLM-x32\...\{4DE95ED9-0A29-4C4F-8463-35857CF9BA36}) (Version: 3.14.1 - LG Electronics) Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech) Microsoft .NET Framework 4.7 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.02053 - Microsoft Corporation) Microsoft .NET Framework 4.7 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.7.02053 - Microsoft Corporation) Microsoft PowerPoint 2010 (HKLM-x32\...\Office14.POWERPOINT) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Need For Speed Most Wanted Black Edition version 1.3.0.0 (HKLM-x32\...\Need For Speed Most Wanted Black Edition_is1) (Version: 1.3.0.0 - Mr DJ) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 372.90 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 372.90 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation) NVIDIA Sterownik graficzny 372.90 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 372.90 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) Panel sterowania NVIDIA 372.90 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 372.90 - NVIDIA Corporation) Hidden Richard Burns Rally (HKLM-x32\...\{92C7D009-A464-4948-A980-7A3E28CB2F49}) (Version: 1.00.000 - ) Savu Mouse (HKLM-x32\...\{6F4B8EA6-4546-4160-A05F-0706F7DC1EFF}) (Version: 1.1.9 - ROCCAT GmbH) SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 2.11.4.1 - NVIDIA Corporation) Hidden Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype™ 7.29 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.29.102 - Skype Technologies S.A.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TP-LINK TL-WN727N Driver (HKLM-x32\...\{52C7E8B3-A21E-460B-A9EC-5B6CBB8635CE}) (Version: 1.3.1 - TP-LINK) Uplay (HKLM-x32\...\Uplay) (Version: 26.1 - Ubisoft) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) WinRAR 5.30 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers1: [BDFVCtxMenuExt] -> {9E96C1F5-0EFA-4348-9460-15D6802C70AA} => C:\Program Files\Bitdefender\Bitdefender Security\bdfvsctx.dll [2017-09-14] (Bitdefender) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2015-11-18] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2015-11-18] (Alexander Roshal) ContextMenuHandlers1-x32: [_Movavivc11] -> {1C604495-4D32-476e-8D7E-FBF50F6C80BF} => -> Brak pliku ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers4: [BDFVCtxMenuExt] -> {9E96C1F5-0EFA-4348-9460-15D6802C70AA} => C:\Program Files\Bitdefender\Bitdefender Security\bdfvsctx.dll [2017-09-14] (Bitdefender) ContextMenuHandlers5: [BDFVCtxMenuExt] -> {9E96C1F5-0EFA-4348-9460-15D6802C70AA} => C:\Program Files\Bitdefender\Bitdefender Security\bdfvsctx.dll [2017-09-14] (Bitdefender) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2015-06-01] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2016-09-17] (NVIDIA Corporation) ContextMenuHandlers6: [BDFVCtxMenuExt] -> {9E96C1F5-0EFA-4348-9460-15D6802C70AA} => C:\Program Files\Bitdefender\Bitdefender Security\bdfvsctx.dll [2017-09-14] (Bitdefender) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2015-11-18] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2015-11-18] (Alexander Roshal) ContextMenuHandlers6-x32: [_Movavivc11] -> {1C604495-4D32-476e-8D7E-FBF50F6C80BF} => -> Brak pliku ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {032880C9-E359-412E-9C61-4E2489CBE28F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-07-06] (Google Inc.) Task: {09093303-AAB2-481B-99C3-2FB14BF5BA2C} - System32\Tasks\{B1585224-CC54-49F5-9063-14AC0E131D87} => C:\Users\Grzybal\Downloads\bitdefender_windows_a945b8d1-fca0-4364-bf85-26b8d0dcdaf8.exe [2017-10-19] () <==== UWAGA Task: {1E5E0672-6B53-454C-AFC1-4FB49E0F4C6F} - System32\Tasks\{A2523A79-D1CC-4496-AB93-C5A3EA46A809} => C:\Users\Grzybal\Downloads\bitdefender_windows_a945b8d1-fca0-4364-bf85-26b8d0dcdaf8.exe [2017-10-19] () <==== UWAGA Task: {3EC86D2C-9D13-44E3-A12F-90351BCE9F76} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-07-06] (Google Inc.) Task: {410BC3BC-2B08-43BA-849E-734502968620} - System32\Tasks\{482366B3-4FA0-422B-BE76-CF2D805F05FF} => C:\Users\Grzybal\Downloads\bitdefender_windows_a945b8d1-fca0-4364-bf85-26b8d0dcdaf8.exe [2017-10-19] () <==== UWAGA Task: {53C3C486-0DA3-4188-8821-E7787D730CC9} - System32\Tasks\GrzybalRemailsFlabbergastsV2 => rundll32.exe MisplayRoughhew.dll,main 7 1 <==== UWAGA Task: {77801501-1303-44EA-9A9D-5B9E8A7D1EA8} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-02-12] (Piriform Ltd) Task: {B6E64170-EF6E-4010-A42E-D1150DA701BA} - System32\Tasks\{0D14A31F-123A-4119-B49B-5FF4917C0247} => C:\Windows\system32\pcalua.exe -a C:\Users\Grzybal\Desktop\RBRTM088Inst.exe -d C:\Users\Grzybal\Desktop Task: {D7A46F5A-3392-4B8D-9DE2-041676425D28} - System32\Tasks\{79F63CA7-BA14-4F09-9783-2037A9D00601} => C:\Windows\system32\pcalua.exe -a "C:\Users\Grzybal\Desktop\l\RBRTM087EInst (2).exe" -d C:\Users\Grzybal\Desktop\l Task: {DD5CC38C-32D7-4AAA-8508-A45D2134C8A7} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe [2017-06-21] (Bitdefender) Task: {DE72F68C-6D88-4B6D-9F60-85D6650ED3FC} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-07-13] (AVAST Software) Task: {E3049601-D25B-4C9F-95BA-78F38F1758EC} - System32\Tasks\{A6EDC723-F780-43B7-91BC-A966D9D14495} => C:\Windows\system32\pcalua.exe -a "E:\Richard Burns Rally\RichardBurnsRally.exe" -d "E:\Richard Burns Rally" Task: {EADCCD11-E787-4C9B-9B96-24C7B7D7070B} - System32\Tasks\{EA4EFD3F-532D-49EA-B24A-99E2E489B741} => E:\Richard Burns Rally\RichardBurnsRally.exe [2004-10-18] () Task: {FA7F40D7-AF94-4A55-84FF-57D86CA7651B} - System32\Tasks\{C1A38995-315B-4D99-ADB1-41AA7F8CA6CA} => C:\Windows\system32\pcalua.exe -a "E:\Richard Burns Rally ONLINE\RichardBurnsRally.exe" -d "E:\Richard Burns Rally ONLINE" (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ==================== Załadowane moduły (filtrowane) ============== 2017-10-19 12:00 - 2013-09-03 14:29 - 000111832 _____ () C:\Program Files\Bitdefender\Bitdefender Security\bdmetrics.dll 2017-10-19 12:00 - 2017-02-07 12:34 - 001008448 _____ () C:\Program Files\Bitdefender\Bitdefender Security\otengines_001_001\ashttpbr.mdl 2017-10-19 12:00 - 2017-02-07 12:34 - 000541952 _____ () C:\Program Files\Bitdefender\Bitdefender Security\otengines_001_001\ashttpdsp.mdl 2017-10-19 12:00 - 2017-02-07 12:34 - 003243920 _____ () C:\Program Files\Bitdefender\Bitdefender Security\otengines_001_001\ashttpph.mdl 2017-10-19 12:00 - 2017-02-07 12:34 - 001544568 _____ () C:\Program Files\Bitdefender\Bitdefender Security\otengines_001_001\ashttprbl.mdl 2015-12-28 01:35 - 2016-09-17 00:57 - 000134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-11-06 16:58 - 2016-06-15 03:14 - 000369208 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll 2016-11-06 16:58 - 2016-06-15 03:14 - 001148984 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll 2016-11-06 16:58 - 2016-06-15 03:14 - 003613240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll 2015-12-28 01:36 - 2016-06-15 03:14 - 000289848 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll 2016-11-06 16:58 - 2016-06-15 03:14 - 001990200 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll 2016-11-06 16:58 - 2016-06-15 03:14 - 002667576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll 2016-11-06 16:58 - 2016-06-15 03:14 - 001842232 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll 2016-11-06 16:58 - 2016-06-15 03:14 - 000208952 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll 2016-11-06 16:58 - 2016-06-15 03:14 - 000035896 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll 2016-11-06 16:58 - 2016-06-15 03:14 - 000921656 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll 2017-09-28 00:58 - 2017-09-21 09:29 - 004022616 _____ () C:\Program Files (x86)\Google\Chrome\Application\61.0.3163.100\libglesv2.dll 2017-09-28 00:58 - 2017-09-21 09:29 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\61.0.3163.100\libegl.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: ========================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2016-09-24 17:56 - 2017-10-21 17:21 - 000000923 _____ C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 genuine.microsoft.com 127.0.0.1 mpa.one.microsoft.com 127.0.0.1 sls.microsoft.com ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-4159757306-1998596358-3979832127-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Grzybal\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == MSCONFIG\startupreg: BCSSync => "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun MSCONFIG\startupreg: iTunesHelper => MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" MSCONFIG\startupreg: ROCCAT Savu Gaming Mouse => "C:\Program Files (x86)\ROCCAT\Savu Mouse\Savu Monitor.exe" /Automation MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: Steam => "E:\Steam\steam.exe" -silent MSCONFIG\startupreg: uTorrent => "C:\Users\Grzybal\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{AE001D43-8BAE-4199-A5D0-03DE630CB197}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{EEED5FCC-507E-45BA-85B8-97071EB3F485}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{5F5D0ECB-DD9F-4501-A2A9-52F9558EF8D6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{A43D3A1F-C2F7-4EFB-8ABF-AAE5E9DF8161}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{BF77D00B-2533-46AD-A32A-2170780FC185}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{2D4AA988-8409-4B50-BBB4-151AF228D840}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{44F05314-A8E6-4BDE-B163-58BC4A2FABB6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{5048BD11-23BD-4395-86D3-35989240F781}] => (Allow) E:\Steam\Steam.exe FirewallRules: [{7AE029EE-8352-4CA4-925E-56114B13D946}] => (Allow) E:\Steam\Steam.exe FirewallRules: [{5E09A6CC-1DA9-4FB9-959D-8EED0799ACE1}] => (Allow) C:\Users\Grzybal\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{5958F21B-BBE1-4D5C-9F1E-21A5C2E29B66}] => (Allow) C:\Users\Grzybal\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B16642B7-3956-4A36-8C6A-245313B71EEF}] => (Allow) C:\Users\Grzybal\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{A5E975E8-C916-47A6-BABE-AEC677BF087B}] => (Allow) C:\Users\Grzybal\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{E151E73D-5DF5-4210-BFE1-CC8EE36056FB}] => (Allow) C:\Users\Grzybal\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{FC027178-6F74-48C5-AC64-EB6C6EF58625}] => (Allow) C:\Users\Grzybal\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{43F7A357-7AEE-4FD6-AF26-C80B7E0C4647}] => (Allow) E:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{2395D37B-0379-411B-B540-F4ED8F0EDA37}] => (Allow) E:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{82BBDBCC-CAF6-4EAA-AF40-BDC55A196F42}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{D8B50CB6-7970-4D93-B985-CF3A33E3F927}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{69EE5E91-B309-4BAC-846A-B96431D300E3}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{2D87ABF6-00FB-444B-B728-A279709215A4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{A1A208C9-E9E9-40D8-83E1-3F2705977D80}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{B8B69D92-FAD7-4BB5-BAB4-A9BC7ACD35D9}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{90B75485-D92E-46A1-B73F-62A443B2B882}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{E70AD162-0DD1-4219-AC6F-9681769D2E78}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{D840CC85-406B-4985-A1F7-6B819BDF68E6}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{66632CE1-7D92-4876-9B0E-FC04E5C0F41A}E:\lfs drift - kopia\lfs.exe] => (Allow) E:\lfs drift - kopia\lfs.exe FirewallRules: [UDP Query User{1EB165F4-AFAD-427C-8EA4-A2F9D686CCE8}E:\lfs drift - kopia\lfs.exe] => (Allow) E:\lfs drift - kopia\lfs.exe FirewallRules: [TCP Query User{D5866538-A6E9-49A0-A32E-600B828E2E23}E:\lfs drift - kopia\lfslazy.exe] => (Allow) E:\lfs drift - kopia\lfslazy.exe FirewallRules: [UDP Query User{1AAF6D9B-CB7D-415D-848C-08F2C5E01184}E:\lfs drift - kopia\lfslazy.exe] => (Allow) E:\lfs drift - kopia\lfslazy.exe FirewallRules: [{8E9E66C9-E28E-4BC6-AFC8-84029D24FF0E}] => (Allow) E:\Need For Speed Most Wanted\speed.exe FirewallRules: [{F50CE6FB-BAA5-428E-B722-28B7CB405CBC}] => (Allow) E:\Need For Speed Most Wanted\speed.exe FirewallRules: [{F2EEFCA5-F769-4B12-9112-7B1FE33E11E2}] => (Allow) E:\Assassin's Creed III\AC3SP.exe FirewallRules: [{DE48EB0E-2EAC-4664-92AE-1BA84DF55E26}] => (Allow) E:\Assassin's Creed III\AC3SP.exe FirewallRules: [{A8F050D9-4081-4A72-B5B0-BB784234AC0B}] => (Allow) E:\Assassin's Creed III\AC3MP.exe FirewallRules: [{F3C1FD3F-7DCB-48C9-B718-ECCCDADB2730}] => (Allow) E:\Assassin's Creed III\AC3MP.exe FirewallRules: [{A22C3A02-42D3-4117-9F22-E89100037E55}] => (Allow) E:\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{289934A7-9333-4E5F-9233-C2EC34C9A235}] => (Allow) E:\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{C5092052-136E-4C23-96F4-6AAE7E16A7E8}] => (Allow) E:\Steam\steamapps\common\Grid\grid.exe FirewallRules: [{AE934F8C-4372-4FC0-A041-96613CF6B1C2}] => (Allow) E:\Steam\steamapps\common\Grid\grid.exe FirewallRules: [TCP Query User{123A2D8B-8944-45CC-AD80-8F144E352BFA}E:\initial d\lfs.exe] => (Allow) E:\initial d\lfs.exe FirewallRules: [UDP Query User{4C58DA82-8D65-4D50-86D7-013738EF1D23}E:\initial d\lfs.exe] => (Allow) E:\initial d\lfs.exe FirewallRules: [TCP Query User{00CF59C5-B8AF-458A-A16D-CAF2A38C0544}E:\initial d\lfslazy.exe] => (Allow) E:\initial d\lfslazy.exe FirewallRules: [UDP Query User{C1B50B35-45E1-4A4E-A699-4B214A120370}E:\initial d\lfslazy.exe] => (Allow) E:\initial d\lfslazy.exe FirewallRules: [TCP Query User{03B00020-7B5B-4621-BEA2-79EE63FB4ADB}E:\assetto corsa\acs.exe] => (Block) E:\assetto corsa\acs.exe FirewallRules: [UDP Query User{1B1C9E12-2C5F-4D85-8556-6185EAC4CAE5}E:\assetto corsa\acs.exe] => (Block) E:\assetto corsa\acs.exe FirewallRules: [TCP Query User{DD7032AE-79E3-4831-80FF-7A68407A6C88}E:\assetto corsa\acs.exe] => (Block) E:\assetto corsa\acs.exe FirewallRules: [UDP Query User{0430A5B9-12CE-4D3F-B565-8DC1A9821496}E:\assetto corsa\acs.exe] => (Block) E:\assetto corsa\acs.exe FirewallRules: [{3783F806-43C3-4787-A03D-50EAABD283D5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Punkty Przywracania systemu ========================= 25-09-2017 14:59:12 Zaplanowany punkt kontrolny 04-10-2017 19:59:32 Zaplanowany punkt kontrolny 11-10-2017 01:23:57 Windows Update 15-10-2017 16:29:04 Removed QuickTime 7 15-10-2017 16:34:24 Usunięte Atheros Communications Inc.(R) AR81Family Gigabit/Fast D{V2 15-10-2017 16:41:43 Removed Bonjour 15-10-2017 16:42:09 Removed Apple Software Update 15-10-2017 16:42:26 Removed Apple Mobile Device Support 15-10-2017 16:42:50 Removed iTunes 19-10-2017 11:31:48 Windows Update ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= Name: Kontroler Ethernet Description: Kontroler Ethernet Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (10/21/2017 05:38:19 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "C:\Windows\System32\systemcpl.dll". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="*",publicKeyToken="436865772d574741",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (10/21/2017 05:21:42 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/21/2017 04:56:52 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: setup.exe_unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x598d7ae1 Nazwa modułu powodującego błąd: NVI2.DLL, wersja: 2.1002.255.2203, sygnatura czasowa: 0x598d7c25 Kod wyjątku: 0x40000015 Przesunięcie błędu: 0x00282680 Identyfikator procesu powodującego błąd: 0x1610 Godzina uruchomienia aplikacji powodującej błąd: 0x01d34a7c7aa2d694 Ścieżka aplikacji powodującej błąd: C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\setup.exe Ścieżka modułu powodującego błąd: C:\Program Files\NVIDIA Corporation\Installer2\CoreTemp.{7F833C61-643E-4DE2-B21F-E47A1162293B}\NVI2.DLL Identyfikator raportu: 121f74d9-b670-11e7-890f-c971603555a7 Error: (10/21/2017 04:53:21 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/21/2017 04:23:15 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla „C:\Program Files (x86)\LG Electronics\LG PC Suite\LGPCSuite.exe”. Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Składnik 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Error: (10/21/2017 04:20:20 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/21/2017 04:11:02 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla „C:\Program Files (x86)\LG Electronics\LG PC Suite\LGPCSuite.exe”. Błąd w pliku manifestu lub w pliku zasad „” w wierszu . Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Składnik 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Error: (10/20/2017 01:00:15 PM) (Source: Windows Activation Technologies) (EventID: 3) (User: ) Description: Błąd testu kondycji: hr = 0x8004FE22, StanKondycji: 0x0000000000002000 Error: (10/20/2017 12:57:09 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (10/19/2017 05:10:11 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Dziennik System: ============= Error: (10/21/2017 05:20:09 PM) (Source: Schannel) (EventID: 4119) (User: ZARZĄDZANIE NT) Description: Odebrano następujący alert krytyczny: 70. Error: (10/21/2017 05:20:09 PM) (Source: Schannel) (EventID: 4119) (User: ZARZĄDZANIE NT) Description: Odebrano następujący alert krytyczny: 70. Error: (10/21/2017 05:20:06 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) Management and Security Application User Notification Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (10/21/2017 05:20:06 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (10/21/2017 05:20:06 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa NVIDIA Streamer Network Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (10/21/2017 05:20:06 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Wondershare Application Framework Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (10/21/2017 05:20:06 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Bitdefender Product Agent Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (10/21/2017 05:20:06 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa NVIDIA Streamer Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (10/21/2017 05:20:06 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa NVIDIA Network Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (10/21/2017 05:20:06 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa NVIDIA Stereoscopic 3D Driver Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. CodeIntegrity: =================================== Date: 2017-01-07 15:45:46.926 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2017-01-07 15:15:11.210 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2017-01-07 13:49:23.699 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2017-01-07 11:46:05.795 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2017-01-07 11:35:34.218 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2017-01-07 02:58:12.150 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2017-01-06 23:41:22.655 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2017-01-06 23:12:00.917 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2017-01-06 22:26:39.018 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2017-01-06 20:34:39.843 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-2400 CPU @ 3.10GHz Procent pamięci w użyciu: 31% Całkowita pamięć fizyczna: 8174.61 MB Dostępna pamięć fizyczna: 5636.12 MB Całkowita pamięć wirtualna: 16347.41 MB Dostępna pamięć wirtualna: 13549.79 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:244.14 GB) (Free:170.91 GB) NTFS ==>[dysk z komponentami startowymi (pozyskano odczytując BCD)] Drive d: () (Fixed) (Total:292.97 GB) (Free:161.89 GB) NTFS Drive e: (GRY) (Fixed) (Total:394.4 GB) (Free:191.15 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 3E1AA276) Partition 1: (Active) - (Size=244.1 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=293 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=394.4 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================