REKLAMA

Addition_05-02-2017 21.52.16.txt

Komputer bardzo wolno działa - prośba o analizę logów FRST

Witam,bardzo prosze o sprawdzenie log-ów z Frst poniewaz komputer bardzo muli i wszystko trwa wieki.


Pobierz plik - link do postu

Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 05-02-2017
Uruchomiony przez pawel (05-02-2017 21:48:21)
Uruchomiony z C:\Users\pawel\Downloads
Windows 7 Home Premium Service Pack 1 (X64) (2014-04-13 09:57:07)
Tryb startu: Normal
==========================================================


==================== Konta użytkowników: =============================

Administrator (S-1-5-21-2416977680-1910873838-3357786379-500 - Administrator - Disabled)
Gość (S-1-5-21-2416977680-1910873838-3357786379-501 - Limited - Enabled) = & gt; C:\Users\Gość
HomeGroupUser$ (S-1-5-21-2416977680-1910873838-3357786379-1002 - Limited - Enabled)
pawel (S-1-5-21-2416977680-1910873838-3357786379-1000 - Administrator - Enabled) = & gt; C:\Users\pawel

==================== Centrum zabezpieczeń ========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie.)

AV: ESET Smart Security 10.0.386.2 (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET Smart Security 10.0.386.2 (Enabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Zapora osobista ESET (Enabled) {D426EE12-AE7E-4602-F40F-BBCA8137EB0B}

==================== Zainstalowane programy ======================

(W fixlist dozwolone tylko załączanie programów adware z flagą " Hidden " w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)

AC3Filter 2.6.0b (HKLM-x32\...\AC3Filter_is1) (Version: 2.6.0b - Alexander Vigovsky)
Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 1.0.1306 - CyberLink Corp.)
Acer Crystal Eye Webcam (x32 Version: 1.0.1306 - CyberLink Corp.) Hidden
Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3004 - Acer Incorporated)
Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3002 - Acer Incorporated)
Acer GameZone Console (HKLM-x32\...\{C97623E2-0614-4845-B199-8E8BEC8E131C}_is1) (Version: 6.1.0.40497 - Oberon Media, Inc.)
Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.03.3004 - Acer Incorporated)
Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0413.2011 - Acer Incorporated)
Acer Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3503 - Acer Incorporated)
Acer VCM (HKLM-x32\...\{047F790A-7A2A-4B6A-AD02-38092BA63DAC}) (Version: 4.05.3004 - Acer Incorporated)
Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.0.7220 - Adobe Systems Inc.)
Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.2.152.32 - Adobe Systems Incorporated)
Adobe Flash Player 10 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 10.0.22.87 - Adobe Systems Incorporated)
Adobe Reader 9.1 MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-A91000000001}) (Version: 9.1.0 - Adobe Systems Incorporated)
AOMEI Partition Assistant Pro Edition 5.6 (HKLM-x32\...\AOMEI Partition Assistant Pro Edition 5.6_is1) (Version: - M.A.G.)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.39 - Atheros Communications Inc.)
ATI Catalyst Install Manager (HKLM\...\{4292776A-4F23-E108-83B2-2C27398E8BCF}) (Version: 3.0.804.0 - ATI Technologies, Inc.)
AVG PC TuneUp 2014 (pl-PL) (x32 Version: 14.0.1001.380 - AVG) Hidden
Bejeweled 2 Deluxe (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110265407}) (Version: - Oberon Media)
Belles Beauty Boutique (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112623650}) (Version: - Oberon Media)
Bing Bar (HKLM-x32\...\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}) (Version: 7.0.610.0 - Microsoft Corporation)
BrowseMark (HKLM\...\BrowseMark) (Version: 2014.04.23.094323 - BrowseMark) & lt; ==== UWAGA
Browser-Security (HKLM-x32\...\Browser-Security) (Version: 1.2.0.0 - Vondos Media GmbH) & lt; ==== UWAGA
ccc-core-static (x32 Version: 2011.0111.1350.24756 - Nazwa firmy) Hidden
Chicken Invaders 3 (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112531267}) (Version: - Oberon Media)
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.6.0 - Conexant)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dream Day First Home (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}) (Version: - Oberon Media)
EaseUS Partition Master 10.2 (HKLM-x32\...\EaseUS Partition Master_is1) (Version: - EaseUS)
EaseUS Todo Backup Free 8.2 (HKLM-x32\...\EaseUS Todo Backup_is1) (Version: 8.2 - CHENGDU YIWO Tech Development Co., Ltd)
ESET Smart Security (HKLM\...\{B3C1CDAD-D203-4722-9A34-19AEB949DF2A}) (Version: 10.0.386.2 - ESET, spol. s r.o.)
ETDWare PS/2-X64 8.0.6.0_WHQL (HKLM\...\Elantech) (Version: 8.0.6.0 - ELAN Microelectronic Corp.)
Farm Frenzy 3 Ice Age (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-118399487}) (Version: - Oberon Media)
Flip Words (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110109903}) (Version: - Oberon Media)
Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Gadu-Gadu 10 (HKLM-x32\...\Gadu-Gadu 10) (Version: - GG Network S.A.)
Galapago (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111307457}) (Version: - Oberon Media)
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria fotogràfica del Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie foto Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
GL USB2.0 UVC Camera Device (HKLM-x32\...\{9897BBD8-013A-49F3-928E-866A59B6E00C}) (Version: 1.0.0.0 - Genesys Logic)
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3006 - Acer Incorporated)
Internet Manager (HKLM-x32\...\Internet Manager) (Version: 22.001.18.11.49 - Huawei Technologies Co.,Ltd)
Java 3D 1.5.1 (HKLM-x32\...\{32A9C5B3-D166-4C6D-A11E-A54473151000}) (Version: 1.5.1 - Sun Microsystems, Inc.)
Java 3D 1.5.1 (x64) (HKLM\...\{64A9C5B3-D166-4C6D-A11E-A54473151000}) (Version: 1.5.1 - Sun Microsystems, Inc.)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java Advanced Imaging 1.1.2 Demo (HKLM-x32\...\Java Advanced Imaging 1.1.2 Demo) (Version: - )
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
K-Lite Codec Pack 10.8.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.8.5 - )
Launch Manager (HKLM-x32\...\LManager) (Version: 5.1.4 - Acer Inc.)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Mozilla Firefox 43.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 43.0.1 (x86 pl)) (Version: 43.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 43.0.1.5828 - Mozilla)
MyWinLocker (Version: 4.0.14.11 - Egis Technology Inc.) Hidden
MyWinLocker 4 (x32 Version: 4.0.14.11 - Egis Technology Inc.) Hidden
MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.11 - Egis Technology Inc.)
MyWinLocker Suite (x32 Version: 4.0.14.11 - Egis Technology Inc.) Hidden
newsXpresso (HKLM-x32\...\InstallShield_{613C0AC5-3A67-4B94-8B13-9176AD83F5BF}) (Version: 1.0.0.40 - esobi Inc.)
newsXpresso (x32 Version: 1.0.0.40 - esobi Inc.) Hidden
Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation)
Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Pošta Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30127 - Realtek Semiconductor Corp.)
Shredder (Version: 2.0.8.7 - Egis Technology Inc.) Hidden
Shredder (x32 Version: 2.0.8.7 - Egis Technology Inc.) Hidden
Skype™ 7.21 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.21.100 - Skype Technologies S.A.)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Splash PRO EX 1.13.0 with Action! (RePack) (HKLM-x32\...\{EA2B3F94-0DF4-4695-AD68-392E0BF22BC1}_is1) (Version: - )
Sprill and Ritchie (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-117932650}) (Version: - Oberon Media)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
web control version 1.0.0.2 (HKLM-x32\...\{7DEBACD4-13DE-46DF-974F-F3F264D1E897}_is1) (Version: 1.0.0.2 - )
Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3102 - Acer Incorporated)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
WinRAR 5.20 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)
WMV9/VC-1 Video Playback (Version: 1.00.0000 - ATI Technologies Inc.) Hidden
World of Goo (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-116672750}) (Version: - Oberon Media)
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden
Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden

==================== Niestandardowe rejestracje CLSID (filtrowane): ==========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Zaplanowane zadania (filtrowane) =============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

Task: {2BF078C1-51A2-48BA-917C-45235B70DA02} - System32\Tasks\{FD0B6230-ACE3-4BEC-B0E3-0885A1263878} = & gt; pcalua.exe -a " D:\ct łokiec\CDVIEWER.EXE " -d " D:\ct łokiec "

(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)


==================== Skróty =============================

(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)

==================== Załadowane moduły (filtrowane) ==============

2011-03-14 16:27 - 2011-03-14 16:27 - 00346976 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe
2016-02-08 10:36 - 2011-06-17 12:04 - 00224096 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe
2015-05-07 20:11 - 2014-12-15 00:03 - 00241704 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
2009-01-22 00:45 - 2009-01-22 00:45 - 01401856 _____ () C:\Program Files (x86)\EgisTec MyWinLocker\x64\LIBEAY32.dll
2016-01-20 19:17 - 2010-04-27 18:02 - 00069632 _____ () C:\Program Files (x86)\GLPCCamera\monitorpad.exe
2015-05-07 20:11 - 2014-12-14 23:53 - 00098856 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CodeLog.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 01296424 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\libxml2.dll
2015-05-07 20:12 - 2014-12-14 23:53 - 00060968 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\zlib1.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00017448 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CompressFile.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00088616 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBGetRemoteNetInfo.dll
2015-05-07 20:11 - 2015-03-14 10:53 - 00107560 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActivationOnline.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00077864 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\logsys.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00030248 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DiskSearchImg.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00068136 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\MountImg.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00158248 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ImgFile.dll
2015-05-07 20:11 - 2015-03-14 10:54 - 00281128 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DsImgFile.dll
2015-05-07 20:11 - 2015-03-14 10:54 - 00072232 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CheckImg.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00139816 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\vhdvmdk.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00037416 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\BootDriver.dll
2015-05-07 20:11 - 2015-03-14 10:54 - 00759848 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ExImage.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00193064 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBackupSize.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00407080 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidImage.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00148008 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumDisk.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00076840 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FatLib.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00207912 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSLib.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00024616 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\GetDriverInfo.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00020520 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CorrectMbr.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00032296 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumTapeDevice.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00034856 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbTapeBrowse.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00064040 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\RegLib.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00022568 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AccountManager.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00115752 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NasOperator.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00194088 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBrowser.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00077864 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CloudOperator.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00037928 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActiveOnline.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00135720 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\VMConfig.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00020008 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidDeviceManager.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00043048 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbDataSwap.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00096808 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBFireWall.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00353832 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DeviceManager.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00027176 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DeviceAdapter.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00137256 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Device.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00146984 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Partition.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00050216 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FileSystemAnalyser.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00061992 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FATFileSystemAnalyser.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00089640 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Common.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00056360 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSFileSystemAnalyser.dll
2016-02-08 10:36 - 2009-01-10 11:32 - 00011362 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\mingwm10.dll
2016-02-08 10:36 - 2009-06-22 19:42 - 00043008 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\libgcc_s_dw2-1.dll
2016-02-08 10:36 - 2010-05-05 09:47 - 02415104 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtCore4.dll
2016-02-08 10:36 - 2010-02-10 15:10 - 01148416 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtNetwork4.dll
2015-05-07 20:11 - 2014-12-14 23:53 - 00223784 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\SmartBackup.dll

==================== Alternate Data Streams (filtrowane) =========

(Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.)

AlternateDataStreams: C:\ProgramData\Temp:8173A019 [131]

==================== Tryb awaryjny (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość " AlternateShell " zostanie przywrócona.)


==================== Powiązania plików (filtrowane) ===============

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.)


==================== Internet Explorer - Witryny zaufane i z ograniczeniami ===============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)


==================== Hosts - zawartość: ===============================

(Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Inne obszary ============================

(Obecnie brak automatycznej naprawy dla tej sekcji.)

HKU\S-1-5-21-2416977680-1910873838-3357786379-1000\Control Panel\Desktop\\Wallpaper - & gt; C:\Users\pawel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System = & gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Zapora systemu Windows [funkcja włączona]

==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==


==================== Reguły Zapory systemu Windows (filtrowane) ===============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

FirewallRules: [{94C7004F-4408-4EB6-985E-3370F19D2117}] = & gt; C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [{E3284795-7183-4C0B-A399-B9D8B34DAA75}] = & gt; C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [{120D4269-C085-4FF8-9537-B9EF65CBC94B}] = & gt; C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{BD966842-A07E-4D14-8F9F-C4741E97331B}] = & gt; LPort=2869
FirewallRules: [{342CF93F-1797-4E44-931D-70A57AC48F6A}] = & gt; LPort=1900
FirewallRules: [{0F8DC261-AD56-48BC-822A-60E4A3D9305F}] = & gt; C:\Program Files (x86)\Windows Live\Mesh\MOE.exe
FirewallRules: [{7D7633E0-12A5-4DAC-A22C-28B91D96FF17}] = & gt; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe
FirewallRules: [{4E94FAA7-75DB-4028-93C0-719AFD2C85EF}] = & gt; C:\Program Files (x86)\Acer\Acer VCM\VC.exe
FirewallRules: [TCP Query User{7327A900-794F-4479-9158-2BE6C3C48CA8}C:\program files (x86)\gadu-gadu 10\gg.exe] = & gt; C:\program files (x86)\gadu-gadu 10\gg.exe
FirewallRules: [UDP Query User{FEE23C2F-C368-49D0-BCB4-AEAE96E4E491}C:\program files (x86)\gadu-gadu 10\gg.exe] = & gt; C:\program files (x86)\gadu-gadu 10\gg.exe
FirewallRules: [TCP Query User{06DF1E05-F03A-4545-B29B-EE8B85BA5572}C:\program files (x86)\gadu-gadu 10\gg.exe] = & gt; C:\program files (x86)\gadu-gadu 10\gg.exe
FirewallRules: [UDP Query User{4D7C588F-4605-41AD-B367-4BFF536166C5}C:\program files (x86)\gadu-gadu 10\gg.exe] = & gt; C:\program files (x86)\gadu-gadu 10\gg.exe
FirewallRules: [{F51196B8-736A-4023-AC68-2E6F29150E26}] = & gt; C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{BA1F45A8-72D0-4836-8CC4-2D3BC5AD9EF4}] = & gt; C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe
FirewallRules: [{A217F4E2-7B45-42FC-95B0-577B6DDB8144}] = & gt; C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe
FirewallRules: [{90642B99-05E0-4029-A83D-4C028BFFEBA0}] = & gt; C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe
FirewallRules: [{240CE137-F807-4C61-A49F-6828656AB2CF}] = & gt; C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe
FirewallRules: [{CF7471AF-A5D7-429D-A679-4CB24D0D460B}] = & gt; C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
FirewallRules: [{66191315-175D-441A-9274-565401C2B083}] = & gt; C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
FirewallRules: [{37DDEDBF-CAF8-4316-8B18-B4131A23D7D4}] = & gt; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe
FirewallRules: [{A2257525-DE64-4A86-AC62-827D13DF5984}] = & gt; C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
FirewallRules: [{D19FA5C4-3293-4B8B-8FAB-C5BC864E41C3}] = & gt; C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
FirewallRules: [{6F9C6DD1-E662-4520-BBCB-FF22A71C97EE}] = & gt; C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{ABCF3AA8-1305-459B-9167-9D16DAB53A49}] = & gt; C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{68CD54FC-9055-4869-A50A-E6E95BE560D1}C:\users\pawel\appdata\local\temp\rar$exa0.429\ipcameratool.exe] = & gt; C:\users\pawel\appdata\local\temp\rar$exa0.429\ipcameratool.exe
FirewallRules: [UDP Query User{C899EF47-6311-493C-B12D-0DC89D9DCF82}C:\users\pawel\appdata\local\temp\rar$exa0.429\ipcameratool.exe] = & gt; C:\users\pawel\appdata\local\temp\rar$exa0.429\ipcameratool.exe
FirewallRules: [TCP Query User{F239766E-877D-436A-A1A9-179B0753B2B7}C:\users\pawel\appdata\local\temp\rar$exa0.024\ipcameratool.exe] = & gt; C:\users\pawel\appdata\local\temp\rar$exa0.024\ipcameratool.exe
FirewallRules: [UDP Query User{5CCB8C16-2B6B-48BE-B0CF-776F3A77A6E1}C:\users\pawel\appdata\local\temp\rar$exa0.024\ipcameratool.exe] = & gt; C:\users\pawel\appdata\local\temp\rar$exa0.024\ipcameratool.exe
FirewallRules: [{C7F1178E-AE2F-4810-A3D0-FCBDF5ECD5E4}] = & gt; C:\users\pawel\appdata\local\temp\rar$exa0.024\ipcameratool.exe
FirewallRules: [{4EE6A228-FAB7-4D4D-84EE-3F42BE0936E2}] = & gt; C:\users\pawel\appdata\local\temp\rar$exa0.024\ipcameratool.exe
FirewallRules: [TCP Query User{EEF8ECA5-E88E-4610-B392-1DFA9B73BBEF}C:\ipcclient\ipcc.exe] = & gt; C:\ipcclient\ipcc.exe
FirewallRules: [UDP Query User{E8E3B7E7-DC7D-4A77-BA87-764AA9304C02}C:\ipcclient\ipcc.exe] = & gt; C:\ipcclient\ipcc.exe
FirewallRules: [TCP Query User{F9B146CC-7C5D-4BEF-9F4E-BE7BC15F7E81}C:\users\pawel\appdata\local\temp\rar$exa0.530\ipcameratool.exe] = & gt; C:\users\pawel\appdata\local\temp\rar$exa0.530\ipcameratool.exe
FirewallRules: [UDP Query User{EC108042-73D9-44A9-B0B1-2BF77C987716}C:\users\pawel\appdata\local\temp\rar$exa0.530\ipcameratool.exe] = & gt; C:\users\pawel\appdata\local\temp\rar$exa0.530\ipcameratool.exe
FirewallRules: [TCP Query User{3F6CF610-22B8-433D-806C-E8ACFBC2E034}C:\users\pawel\desktop\plyta wanscan\jw & hw series\search tool(wanscam)\ipcameratool.exe] = & gt; C:\users\pawel\desktop\plyta wanscan\jw & hw series\search tool(wanscam)\ipcameratool.exe
FirewallRules: [UDP Query User{F670FCB2-EDA7-4214-8BC7-8BC16BB09050}C:\users\pawel\desktop\plyta wanscan\jw & hw series\search tool(wanscam)\ipcameratool.exe] = & gt; C:\users\pawel\desktop\plyta wanscan\jw & hw series\search tool(wanscam)\ipcameratool.exe
FirewallRules: [{3A6CD220-F77F-4526-BA67-B8D3A2170B35}] = & gt; C:\Program Files (x86)\Deskshare\IP Camera Viewer 3\IP Camera Viewer.exe
FirewallRules: [{EBBC939F-4416-494A-8D65-43138EB8D1AD}] = & gt; C:\Program Files (x86)\Deskshare\IP Camera Viewer 3\IP Camera Viewer.exe
FirewallRules: [TCP Query User{01D59870-745A-4F76-86B1-3337373D3EEC}C:\users\pawel\desktop\wanscam\ipcc.exe] = & gt; C:\users\pawel\desktop\wanscam\ipcc.exe
FirewallRules: [UDP Query User{CB64ED69-EB1F-4CB1-A839-DCB1398F564B}C:\users\pawel\desktop\wanscam\ipcc.exe] = & gt; C:\users\pawel\desktop\wanscam\ipcc.exe
FirewallRules: [{E7D60099-3E8E-4ADE-AE86-ABDEC2DC8EFD}] = & gt; C:\users\pawel\desktop\wanscam\ipcc.exe
FirewallRules: [{98883242-2DA1-4CFA-9B23-EF3A7B712DD3}] = & gt; C:\users\pawel\desktop\wanscam\ipcc.exe

==================== Punkty Przywracania systemu =========================

05-02-2017 18:52:15 Zainstalowane Acer Updater
05-02-2017 19:37:30 Installed Microsoft Office Enterprise 2007

==================== Wadliwe urządzenia w Menedżerze urządzeń =============

Name: Teredo Tunneling Pseudo-Interface
Description: Karta tunelowania Teredo firmy Microsoft
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click " Update Driver " to update the drivers for this device.
On the " General Properties " tab of the device, click " Troubleshoot " to start the troubleshooting wizard.


==================== Błędy w Dzienniku zdarzeń: =========================

Dziennik Aplikacja:
==================
Error: (02/05/2017 07:05:48 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (02/05/2017 06:06:50 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (02/05/2017 05:58:50 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (02/05/2017 05:56:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (11/06/2016 09:49:57 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (11/05/2016 07:23:48 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/18/2016 06:53:54 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/18/2016 08:18:53 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (09/17/2016 07:55:16 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (08/30/2016 01:03:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: IPCC.exe, wersja: 1.2.2.8, sygnatura czasowa: 0x55371668
Nazwa modułu powodującego błąd: PPPP_API.dll, wersja: 0.0.0.0, sygnatura czasowa: 0x541243eb
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x00005587
Identyfikator procesu powodującego błąd: 0xe68
Godzina uruchomienia aplikacji powodującej błąd: 0x01d202b6718a4e0e
Ścieżka aplikacji powodującej błąd: C:\IPCClient\IPCC.exe
Ścieżka modułu powodującego błąd: C:\IPCClient\PPPP_API.dll
Identyfikator raportu: bc129e8d-6ea9-11e6-adf7-b870f4a9cf16


Dziennik System:
=============
Error: (02/05/2017 09:42:08 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Usługa Protokół rozpoznawania nazw równorzędnych zakończyła działanie; wystąpił następujący błąd:
%%-2140993535

Error: (02/05/2017 09:42:08 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Usługa Grupowanie sieci równorzędnej zależy od usługi Protokół rozpoznawania nazw równorzędnych, której nie można uruchomić z powodu następującego błędu:
%%-2140993535

Error: (02/05/2017 09:42:08 PM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: Chmura protokołu rozpoznawania nazw równorzędnych nie została uruchomiona, ponieważ tworzenie tożsamości domyślnej nie powiodło się; kod błędu: 0x80630801.

Error: (02/05/2017 09:42:05 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Usługa Protokół rozpoznawania nazw równorzędnych zakończyła działanie; wystąpił następujący błąd:
%%-2140993535

Error: (02/05/2017 09:42:05 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Usługa Grupowanie sieci równorzędnej zależy od usługi Protokół rozpoznawania nazw równorzędnych, której nie można uruchomić z powodu następującego błędu:
%%-2140993535

Error: (02/05/2017 09:42:05 PM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: Chmura protokołu rozpoznawania nazw równorzędnych nie została uruchomiona, ponieważ tworzenie tożsamości domyślnej nie powiodło się; kod błędu: 0x80630801.

Error: (02/05/2017 09:36:27 PM) (Source: cdrom) (EventID: 11) (User: )
Description: Sterownik wykrył błąd kontrolera na \Device\CdRom0.

Error: (02/05/2017 09:34:54 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Usługa Protokół rozpoznawania nazw równorzędnych zakończyła działanie; wystąpił następujący błąd:
%%-2140993535

Error: (02/05/2017 09:34:54 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Usługa Grupowanie sieci równorzędnej zależy od usługi Protokół rozpoznawania nazw równorzędnych, której nie można uruchomić z powodu następującego błędu:
%%-2140993535

Error: (02/05/2017 09:34:54 PM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: Chmura protokołu rozpoznawania nazw równorzędnych nie została uruchomiona, ponieważ tworzenie tożsamości domyślnej nie powiodło się; kod błędu: 0x80630801.


==================== Statystyki pamięci ===========================

Procesor: AMD C-50 Processor
Procent pamięci w użyciu: 45%
Całkowita pamięć fizyczna: 3818.9 MB
Dostępna pamięć fizyczna: 2065.43 MB
Całkowita pamięć wirtualna: 7636.01 MB
Dostępna pamięć wirtualna: 5959.7 MB

==================== Dyski ================================

Drive c: (Acer) (Fixed) (Total:57.31 GB) (Free:10.08 GB) NTFS
Drive d: () (Fixed) (Total:61.35 GB) (Free:47.42 GB) NTFS

==================== MBR & Tablica partycji ==================

========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 09E963D2)
Partition 1: (Active) - (Size=600 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=57.3 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=61.3 GB) - (Type=07 NTFS)

==================== Koniec Addition.txt ============================