Proszę, ogarnąłem dopiero teraz. Sory za problem, ale nie ogarnąłem po prostu.
Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 04-10-2016
Uruchomiony przez Tobiasz (08-10-2016 18:01:43)
Uruchomiony z C:\Users\Tobiasz\Downloads
Windows 7 Professional Service Pack 1 (X64) (2016-03-13 14:56:00)
Tryb startu: Normal
==========================================================
==================== Konta użytkowników: =============================
Administrator (S-1-5-21-755553489-1009707766-3857223682-500 - Administrator - Disabled)
Gość (S-1-5-21-755553489-1009707766-3857223682-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-755553489-1009707766-3857223682-1003 - Limited - Enabled)
Szkoła (S-1-5-21-755553489-1009707766-3857223682-1001 - Limited - Enabled) = & gt; C:\Users\Szkoła
Tobiasz (S-1-5-21-755553489-1009707766-3857223682-1000 - Administrator - Enabled) = & gt; C:\Users\Tobiasz
UpdatusUser (S-1-5-21-755553489-1009707766-3857223682-1005 - Limited - Enabled) = & gt; C:\Users\UpdatusUser
==================== Centrum zabezpieczeń ========================
(Załączenie wejścia w fixlist spowoduje jego usunięcie.)
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Zainstalowane programy ======================
(W fixlist dozwolone tylko załączanie programów adware z flagą " Hidden " w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)
µTorrent (HKU\S-1-5-21-755553489-1009707766-3857223682-1000\...\uTorrent) (Version: 3.4.7.42330 - BitTorrent Inc.)
Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.17) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.17 - Adobe Systems Incorporated)
Aktualizacje NVIDIA 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Brother MFL-Pro Suite DCP-1510 series (HKLM-x32\...\{90C24B16-9C28-44AB-8C63-BB9822218E18}) (Version: 1.0.0.0 - Brother Industries, Ltd.)
CCleaner (HKLM\...\CCleaner) (Version: 5.18 - Piriform)
FIFA 15 (HKLM-x32\...\FIFA 15_R.G. Mechanics_is1) (Version: - R.G. Mechanics, ProZorg_tm)
FileZilla Client 3.18.0 (HKU\S-1-5-21-755553489-1009707766-3857223682-1000\...\FileZilla Client) (Version: 3.18.0 - Tim Kosse)
GIMP 2.8.16 (HKLM\...\GIMP-2_is1) (Version: 2.8.16 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
HP Support Assistant (HKLM-x32\...\{79C54A05-F146-4EA0-8A70-D4EFE6181E52}) (Version: 8.1.40.3 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM-x32\...\{2AD02988-163A-45E2-AC71-530B080D1A73}) (Version: 12.0.30.473 - HP)
Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2712 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{3015F546-6C3E-4E6A-B564-BCDF88C0BA2A}) (Version: 2.1.1.0153 - Intel Corporation)
Java 8 Update 91 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218091F0}) (Version: 8.0.910.14 - Oracle Corporation)
Malwarebytes Anti-Malware wersja 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com)
Mozilla Firefox 49.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 49.0.1 (x86 pl)) (Version: 49.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 49.0.1.6109 - Mozilla)
Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.9.2 - Notepad++ Team)
Nox APP Player (HKLM-x32\...\Nox) (Version: 3.7.1.0 - Duodian Technology Co. Ltd.)
NVIDIA Sterownik graficzny 306.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 306.97 - NVIDIA Corporation)
Obsługa programów Apple (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Oprogramowanie Intel® PROSet/Wireless (HKLM-x32\...\{4c8b7360-62a2-4339-b745-41323055d0bb}) (Version: 18.20.0 - Intel Corporation)
Panel sterowania NVIDIA 306.97 (Version: 306.97 - NVIDIA Corporation) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.48.823.2011 - Realtek)
Sammy Suricate (HKLM-x32\...\Sammy Suricate) (Version: - )
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.27.0 - SAMSUNG Electronics Co., Ltd.)
SixaxisPairTool 0.3.0 (HKLM-x32\...\SixaxisPairTool_is1) (Version: 0.3.0 - Dancing Pixel Studios)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH)
Unity Web Player (HKU\S-1-5-21-755553489-1009707766-3857223682-1000\...\UnityWebPlayer) (Version: 5.3.4f1 - Unity Technologies ApS)
UsbFix (HKLM-x32\...\Usbfix) (Version: 8.282 - www.SOSVirus.Net)
Vegas Pro 13.0 (64-bit) (HKLM\...\{D0360940-CCC6-11E3-B9C6-F04DA23A5C58}) (Version: 13.0.310 - Sony)
Windows Driver Package - BigNox Corporation (VBoxUSB) USB (09/16/2015 4.3.12) (HKLM\...\76B144D15273552931249392EDB13C0BBD52C84E) (Version: 09/16/2015 4.3.12 - BigNox Corporation)
Windows Driver Package - BigNox Corporation VBoxUSBMon System (09/16/2015 4.3.12) (HKLM\...\39F54A37125643D2E1E90FA7D81F36ACC9441510) (Version: 09/16/2015 4.3.12 - BigNox Corporation)
Windows Driver Package - BigNox Corporation XQHDrv System (09/16/2015 4.3.12) (HKLM\...\0147813640F7AF69F569581EE672B6BE1E71798E) (Version: 09/16/2015 4.3.12 - BigNox Corporation)
WinRAR 5.31 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
Worms 3D (HKLM-x32\...\{8874FD36-7C9D-4573-8956-E368D6753D90}) (Version: 1.1 - Team17)
==================== Niestandardowe rejestracje CLSID (filtrowane): ==========================
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
==================== Zaplanowane zadania (filtrowane) =============
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
Task: {02873D08-27A4-42C2-9C50-EC863AADF3EC} - System32\Tasks\GoogleUpdateTaskMachineUA = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-03-13] (Google Inc.)
Task: {0C0B4C94-2AD3-4DB3-9429-5685448914E1} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack = & gt; C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {21A681F9-833E-4B58-9503-1A9D042DE5ED} - System32\Tasks\DriverMaxAgent = & gt; C:\Program Files (x86)\Innovative Solutions\DriverMax\drivermax.exe
Task: {4108F073-88BE-4C3B-8CC9-535F523BCD9C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn = & gt; C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {5099C683-B04F-43B6-A622-22198AD89F93} - System32\Tasks\{346736AD-CF4D-4206-AD70-F7BA873FC2CA} = & gt; pcalua.exe -a C:\Users\Tobiasz\Desktop\sp57538.exe -d C:\Users\Tobiasz\Desktop
Task: {5F4E03F5-41D7-420E-8C39-110742524558} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis = & gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-09-28] (Hewlett-Packard Company)
Task: {81DBBECA-29F5-4C29-94EB-3C05F423BF1A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater = & gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2015-11-13] (Hewlett-Packard)
Task: {A43FDDC6-FF4E-4EFD-A7F8-8BE2FF729DE0} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat = & gt; C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
Task: {C7F15797-BA3D-4B50-890F-141698EC2A4F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start = & gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-09-28] (Hewlett-Packard Company)
Task: {CEEB872F-C3F1-4E7D-A4F1-8604B44DEB71} - System32\Tasks\{6831E39D-148C-42BE-9B6E-C9A59D76F56B} = & gt; pcalua.exe -a C:\Users\Tobiasz\Downloads\HPSupportSolutionsFramework-12.0.30.473.exe -d C:\Users\Tobiasz\Downloads
Task: {F3073C0A-359E-48E9-BAEF-7FA6516018AE} - System32\Tasks\GoogleUpdateTaskMachineCore = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-03-13] (Google Inc.)
(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
Task: C:\Windows\Tasks\Adobe Acrobat Update Task.job = & gt; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job = & gt; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\DriverToolkit Autorun.job = & gt; C:\Program Files (x86)\DriverToolkit\DriverToolkit.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d1ab904593bf10.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d1ebeba0a4cf48.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Skróty =============================
(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)
==================== Załadowane moduły (filtrowane) ==============
2016-05-27 14:19 - 2016-05-27 14:19 - 00052912 _____ () C:\Program Files\FileZilla FTP Client\fzshellext_64.dll
==================== Alternate Data Streams (filtrowane) =========
(Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.)
==================== Tryb awaryjny (filtrowane) ===================
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość " AlternateShell " zostanie przywrócona.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys = & gt; " " = " Driver "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys = & gt; " " = " Driver "
==================== Powiązania plików (filtrowane) ===============
(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.)
==================== Internet Explorer - Witryny zaufane i z ograniczeniami ===============
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)
==================== Hosts - zawartość: ==========================
(Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)
2009-07-14 04:34 - 2016-09-22 18:21 - 00000923 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 genuine.microsoft.com
127.0.0.1 mpa.one.microsoft.com
127.0.0.1 sls.microsoft.com
==================== Inne obszary ============================
(Obecnie brak automatycznej naprawy dla tej sekcji.)
HKU\S-1-5-21-755553489-1009707766-3857223682-1000\Control Panel\Desktop\\Wallpaper - & gt; C:\Users\Tobiasz\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.20
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System = & gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Zapora systemu Windows [funkcja wyłączona]
==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==
MSCONFIG\startupreg: KiesAirMessage = & gt; C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
MSCONFIG\startupreg: KiesPreload = & gt; C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload
MSCONFIG\startupreg: KiesTrayAgent = & gt; C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
MSCONFIG\startupreg: uTorrent = & gt; " C:\Users\Tobiasz\AppData\Roaming\uTorrent\uTorrent.exe " /MINIMIZED
==================== Reguły Zapory systemu Windows (filtrowane) ===============
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
FirewallRules: [SPPSVC-In-TCP] = & gt; (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] = & gt; (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{EF8B62FD-5907-434F-A547-87B6A2EB935F}] = & gt; (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{2E536EF7-C470-4E6D-B523-78A1C645B74E}] = & gt; (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{FB861672-65AC-45B9-A7D3-C128FBBC9C4C}] = & gt; (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{288A8ED7-4F2B-406A-8C99-F1E124F9AE82}] = & gt; (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{EBC8ED67-D448-4145-B3B6-DEF9229A2CE2}] = & gt; (Allow) F:\Steam\Steam.exe
FirewallRules: [{EC2FF749-F146-442A-89E5-F20CA332E33F}] = & gt; (Allow) F:\Steam\Steam.exe
FirewallRules: [{AE63A03A-DCB4-4434-9F0F-F1217329BDE4}] = & gt; (Allow) F:\Steam\bin\steamwebhelper.exe
FirewallRules: [{584AAD4F-26C9-4B6A-921B-1466C21190E5}] = & gt; (Allow) F:\Steam\bin\steamwebhelper.exe
FirewallRules: [{FC140FE5-E79D-47C5-B50C-D49F04427F00}] = & gt; (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{56C6DF11-4970-4768-8F20-01E27BED4E61}] = & gt; (Allow) C:\Users\Tobiasz\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{4A4F9215-65F1-4F88-8F3A-4256E26EB4DB}] = & gt; (Allow) C:\Users\Tobiasz\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{77262DFE-CF5E-4282-BF8B-DFD142AAC372}] = & gt; (Allow) C:\Users\Tobiasz\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{A110E2EF-7144-4316-84CF-62BB6CDD24C8}] = & gt; (Allow) C:\Users\Tobiasz\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{1BAF5868-AFCF-40B1-A56D-0E54B7DB8B17}] = & gt; (Allow) C:\Users\Tobiasz\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{1D9CC03D-D52A-47F2-968E-4ACF94668D07}] = & gt; (Allow) C:\Users\Tobiasz\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{EB118C7C-F5B4-4F38-B839-EFE2EDBC9220}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{5C9F1036-1DF3-4330-A884-BA6C0CF80C26}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{4BAFE4B8-8225-4379-85A9-78DD4A44CB44}] = & gt; (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{F5E3EB55-42E2-47ED-9C6E-B42B03021B11}] = & gt; (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{D7F1EC73-CB3A-45ED-BF70-44B4BA6522CB}] = & gt; (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [{D0C4CB07-566C-44CA-B71F-5D92DDAA4B1B}] = & gt; (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{7EFEE07B-D6B3-4150-A313-DFA0D770D769}] = & gt; (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [TCP Query User{7EFB067E-0BC6-483F-96EF-73613C79B282}C:\program files\winhttrack\winhttrack.exe] = & gt; (Allow) C:\program files\winhttrack\winhttrack.exe
FirewallRules: [UDP Query User{62ED9FE6-5836-4D0D-97FC-23F34B0CEBAA}C:\program files\winhttrack\winhttrack.exe] = & gt; (Allow) C:\program files\winhttrack\winhttrack.exe
FirewallRules: [TCP Query User{E2BC0DFA-5A91-4114-B16C-AE9DCCC7893D}F:\outlast\binaries\win64\olgame.exe] = & gt; (Allow) F:\outlast\binaries\win64\olgame.exe
FirewallRules: [UDP Query User{371B5D7C-AEB0-462D-807F-ED0163C3F962}F:\outlast\binaries\win64\olgame.exe] = & gt; (Allow) F:\outlast\binaries\win64\olgame.exe
FirewallRules: [TCP Query User{FC2C48B1-F051-493C-BDF8-7F77777D4E98}C:\users\tobiasz\appdata\local\{8708d842-de71-fba9-4168-a1db20dcb7ca}\syshost.exe] = & gt; (Block) C:\users\tobiasz\appdata\local\{8708d842-de71-fba9-4168-a1db20dcb7ca}\syshost.exe
FirewallRules: [UDP Query User{3FA46010-C5AA-479E-AFF3-09F69D0B67F0}C:\users\tobiasz\appdata\local\{8708d842-de71-fba9-4168-a1db20dcb7ca}\syshost.exe] = & gt; (Block) C:\users\tobiasz\appdata\local\{8708d842-de71-fba9-4168-a1db20dcb7ca}\syshost.exe
FirewallRules: [{6EE9D50F-9885-48FF-BA0E-0F604CE46748}] = & gt; (Allow) F:\Nox\bin\Nox.exe
FirewallRules: [{D3432C01-66A4-4146-BBB5-BDD1A0F70DAB}] = & gt; (Allow) C:\Program Files\Bignox\BigNoxVM\RTNoxVMHandle.exe
FirewallRules: [{54A722AC-AE70-4D4B-9948-7A6F16807AE3}] = & gt; (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Punkty Przywracania systemu =========================
14-06-2016 21:17:54 Removed Oracle VM VirtualBox 5.0.20
14-06-2016 21:20:45 Removed VMware Player
14-06-2016 21:23:49 Removed Validity WBF DDK
15-06-2016 23:03:17 Windows Update
18-06-2016 23:11:50 Zainstalowane Worms 3D
13-07-2016 02:12:05 Windows Update
08-08-2016 12:13:57 Instalacja pakietu sterownika urządzenia: BigNox Corporation Kontrolery uniwersalnej magistrali szeregowej
11-08-2016 23:07:51 Windows Update
16-08-2016 16:43:41 Instalacja pakietu sterownika urządzenia: BigNox Corporation Kontrolery uniwersalnej magistrali szeregowej
18-08-2016 12:46:28 Windows Update
16-09-2016 21:00:02 Windows Update
20-09-2016 23:19:14 Windows Update
==================== Wadliwe urządzenia w Menedżerze urządzeń =============
Name: Kontroler Uniwersalnej magistrali szeregowej (USB)
Description: Kontroler Uniwersalnej magistrali szeregowej (USB)
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click " Update Driver " , which starts the Hardware Update wizard.
Name: Urządzenie PCI
Description: Urządzenie PCI
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click " Update Driver " , which starts the Hardware Update wizard.
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click " Update Driver " , which starts the Hardware Update wizard.
Name: Kontroler magistrali zarządzania systemem
Description: Kontroler magistrali zarządzania systemem
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click " Update Driver " , which starts the Hardware Update wizard.
==================== Błędy w Dzienniku zdarzeń: =========================
Dziennik Aplikacja:
==================
Error: (03/27/2016 12:14:43 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program DunDefGame.exe w wersji 1.0.0.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji.
Identyfikator procesu: 120c
Godzina rozpoczęcia: 01d187abfdb3ef1f
Godzina zakończenia: 0
Ścieżka aplikacji: F:\Steam\steamapps\common\Dungeon Defenders 2\DunDef2\Binaries\Win32\DunDefGame.exe
Identyfikator raportu:
Error: (03/25/2016 10:20:28 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (03/25/2016 03:59:44 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (03/21/2016 07:10:10 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (03/18/2016 09:31:30 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: bms.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x5547ecfa
Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x00000000
Identyfikator procesu powodującego błąd: 0x13b4
Godzina uruchomienia aplikacji powodującej błąd: 0x01d1814cc0913067
Ścieżka aplikacji powodującej błąd: F:\Torrenty\3DMGAME-Black.Mesa.Early.Access.Cracked-3DM\Black Mesa\bms.exe
Ścieżka modułu powodującego błąd: unknown
Identyfikator raportu: 033fb757-ed40-11e5-be87-685d4397222c
Error: (03/18/2016 05:19:25 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (03/18/2016 04:34:34 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (03/18/2016 04:33:14 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (03/17/2016 05:50:42 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (03/16/2016 11:55:45 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: CamtasiaStudio.exe, wersja: 8.6.0.2054, sygnatura czasowa: 0x55d3d620
Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.19160, sygnatura czasowa: 0x56bcd51f
Kod wyjątku: 0xc0000374
Przesunięcie błędu: 0x000cf70b
Identyfikator procesu powodującego błąd: 0x1818
Godzina uruchomienia aplikacji powodującej błąd: 0x01d17fcbeff48291
Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\TechSmith\Camtasia Studio 8\CamtasiaStudio.exe
Ścieżka modułu powodującego błąd: C:\Windows\SysWOW64\ntdll.dll
Identyfikator raportu: d516a465-ebc1-11e5-be46-685d4397222c
Dziennik System:
=============
Error: (09/08/2016 03:51:01 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego:
VBoxNetAdp
Error: (09/08/2016 03:50:54 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Usługa Harmonogram zadań zależy od usługi Dziennik zdarzeń systemu Windows, której nie można uruchomić z powodu następującego błędu:
Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia.
Error: (09/07/2016 09:35:30 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego:
VBoxNetAdp
Error: (09/07/2016 09:35:23 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Usługa Harmonogram zadań zależy od usługi Dziennik zdarzeń systemu Windows, której nie można uruchomić z powodu następującego błędu:
Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia.
Error: (09/07/2016 09:33:20 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego:
VBoxNetAdp
Error: (09/07/2016 09:33:14 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Usługa Harmonogram zadań zależy od usługi Dziennik zdarzeń systemu Windows, której nie można uruchomić z powodu następującego błędu:
Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia.
Error: (03/26/2016 12:37:26 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi PlugPlay.
Error: (03/25/2016 03:59:25 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Poprzednie zamknięcie systemu przy 02:11:50 na 2016-03-25 było nieoczekiwane.
Error: (03/24/2016 02:58:30 PM) (Source: Disk) (EventID: 11) (User: )
Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1.
Error: (03/24/2016 02:58:29 PM) (Source: Disk) (EventID: 11) (User: )
Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1.
CodeIntegrity:
===================================
Date: 2016-09-11 12:50:12.118
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-09-10 23:55:42.996
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-09-10 22:08:47.666
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-09-10 21:49:46.690
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-09-10 21:26:39.802
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-09-10 19:47:27.985
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-09-10 19:42:19.491
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-09-10 18:38:16.077
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-09-10 18:20:23.712
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-09-10 17:30:39.044
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
==================== Statystyki pamięci ===========================
Procesor: Intel(R) Core(TM) i5-3210M CPU @ 2.50GHz
Procent pamięci w użyciu: 44%
Całkowita pamięć fizyczna: 3995.31 MB
Dostępna pamięć fizyczna: 2209.84 MB
Całkowita pamięć wirtualna: 7988.8 MB
Dostępna pamięć wirtualna: 6019.42 MB
==================== Dyski ================================
Drive c: () (Fixed) (Total:353.52 GB) (Free:247.98 GB) NTFS
Drive d: (Recovery) (Fixed) (Total:22.64 GB) (Free:2.41 GB) NTFS == & gt; [system z komponentami startowymi (pozyskano odczytując dysk)]
Drive f: (Nowy) (Fixed) (Total:322.18 GB) (Free:287.56 GB) NTFS
Drive g: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.08 GB) FAT32
Drive h: (SONY_16X) (Removable) (Total:14.46 GB) (Free:14.46 GB) FAT32
==================== MBR & Tablica partycji ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: 49DD1F75)
Partition 1: (Not Active) - (Size=993 KB) - (Type=42)
Partition 2: (Active) - (Size=199 MB) - (Type=42)
Partition 3: (Not Active) - (Size=353.5 GB) - (Type=42)
Partition 4: (Not Active) - (Size=344.9 GB) - (Type=42)
========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 14.5 GB) (Disk ID: ADC95A52)
Partition 1: (Not Active) - (Size=14.5 GB) - (Type=0C)
==================== Koniec Addition.txt ============================