REKLAMA

Addition.txt

samoczynne przekierowanie na http://nova.rambler.ru

Proszę Po odinstalowaniu starego wgrałem na nowo adobe reader 11


Pobierz plik - link do postu

Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 15-03-2017
Uruchomiony przez Karolina (02-04-2017 16:04:31)
Uruchomiony z C:\Users\Karolina\Downloads
Windows 7 Home Premium Service Pack 1 (X64) (2015-05-28 15:28:47)
Tryb startu: Normal
==========================================================


==================== Konta użytkowników: =============================

Administrator (S-1-5-21-2658245198-3005051595-1530724498-500 - Administrator - Disabled)
Gość (S-1-5-21-2658245198-3005051595-1530724498-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2658245198-3005051595-1530724498-1002 - Limited - Enabled)
Karolina (S-1-5-21-2658245198-3005051595-1530724498-1000 - Administrator - Enabled) = & gt; C:\Users\Karolina

==================== Centrum zabezpieczeń ========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie.)

AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Zainstalowane programy ======================

(W fixlist dozwolone tylko załączanie programów adware z flagą " Hidden " w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)

µTorrent (HKU\S-1-5-21-2658245198-3005051595-1530724498-1000\...\uTorrent) (Version: 3.4.9.43085 - BitTorrent Inc.)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe Reader XI - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.00 - Adobe Systems Incorporated)
Badanie mające na celu poprawę produktów HP Deskjet 3540 series (HKLM\...\{90680BE5-EE85-45AB-B520-B26F03455BF6}) (Version: 32.2.188.47710 - Hewlett-Packard Co.)
CloneDVD 7 Ultimate 7.0.0.15 (HKLM-x32\...\CloneDVD 7 Ultimate_is1) (Version: - Copyright (C) 2003-2013 CloneDVD Studio.)
Free Video Flip and Rotate (HKLM-x32\...\Free Video Flip and Rotate_is1) (Version: 2.2.14.118 - DVDVideoSoft Ltd.)
GeoGebra 5 (HKLM-x32\...\GeoGebra 5) (Version: 5.0.123.0 - International GeoGebra Institute)
Google Chrome (HKLM-x32\...\{157F97DF-A001-36FB-A90C-55949FA130CA}) (Version: 57.0.2987.133 - Google, Inc.)
Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden
HP Deskjet 3540 series — podstawowe oprogramowanie urządzenia (HKLM\...\{09A6295E-F212-4D88-8AC7-D728EBC1D036}) (Version: 32.2.188.47710 - Hewlett-Packard Co.)
HP Deskjet 3540 series Pomoc (HKLM-x32\...\{327F1AB6-8DD7-4F5D-9227-3D8B9CFBF1C1}) (Version: 30.0.0 - Hewlett Packard)
HP FWUpdateEDO2 (HKLM-x32\...\{415FA9AD-DA10-4ABE-97B6-5051D4795C90}) (Version: 1.2.0.0 - Hewlett-Packard)
HP LaserJet P1500 series (HKLM-x32\...\HP LaserJet P1500 series) (Version: - )
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Support Assistant (HKLM-x32\...\{61EB474B-67A6-47F4-B1B7-386851BAB3D0}) (Version: 8.3.50.9 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM-x32\...\{CF153513-D2C7-4652-8464-31FDAD2891E9}) (Version: 12.5.32.203 - Hewlett-Packard Company)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
hppMSRedist (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden
hppusgP1500 (x32 Version: 1.1.0.1 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Nazwa firmy)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Internet Manager (HKLM-x32\...\{A9E5EDA7-2E6C-49E7-924B-A32B89C24A04}) (Version: 1.0.0.1 - ZTE Corporation)
Kodi (HKU\S-1-5-21-2658245198-3005051595-1530724498-1000\...\Kodi) (Version: - XBMC-Foundation)
MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
MiKTeX 2.9 (HKU\S-1-5-21-2658245198-3005051595-1530724498-1000\...\MiKTeX 2.9) (Version: 2.9 - MiKTeX.org)
MrvlUsgTracking (HKLM-x32\...\{A82D052A-0806-42DF-80CD-1730A1AC0ED3}) (Version: 1.0.7 - Marvell)
MrvlUsgTracking64 (HKLM\...\{42F0FD29-7EB3-4CAA-AF10-BC2619B96D80}) (Version: 1.0.1 - Marvell Semiconductor Pvt Ltd)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.8.2 - Notepad++ Team)
Opera Stable 29.0.1795.60 (HKLM-x32\...\Opera 29.0.1795.60) (Version: 29.0.1795.60 - Opera Software ASA)
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.)
Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Program TOSHIBA HDD/SSD Alert (HKLM-x32\...\InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}) (Version: 3.1.64.6 - TOSHIBA Corporation)
Program TOSHIBA HDD/SSD Alert (Version: 3.1.64.6 - TOSHIBA Corporation) Hidden
Program TOSHIBA HDD/SSD Alert (x32 Version: 3.1.64.6 - TOSHIBA Corporation) Hidden
Realtek WLAN Driver (HKLM-x32\...\{9D3D8C60-A55F-4fed-B2B9-173001290E16}) (Version: 2.00.0016 - REALTEK Semiconductor Corp.)
Replay Music 7 (7.0.1.54) (HKLM-x32\...\Replay Music 7) (Version: 7.0.1.54 - Applian Technologies)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.51.0 - SAMSUNG Electronics Co., Ltd.)
Skype™ 7.30 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.30.105 - Skype Technologies S.A.)
System TL+ - angielsko-polski, wyd.4 (HKLM-x32\...\System TL+ - angielsko-polski, wyd.4) (Version: - )
Video Rotator V2.5 (HKLM-x32\...\{EC0FD3E2-A241-4D37-BF16-7815EC1E7A29}_is1) (Version: - VideoRotator.com)
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.4.7.0 - Elaborate Bytes)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN)
vs2015_redist x86 (x32 Version: 1.0.0.0 - Realnetworks) Hidden
Wielki słownik angielsko-polski i polsko-angielski PWN-OXFORD (HKLM-x32\...\{1035B082-201E-466E-9084-D096589C05CD}) (Version: 3.0.0 - WN PWN SA)

==================== Niestandardowe rejestracje CLSID (filtrowane): ==========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Zaplanowane zadania (filtrowane) =============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

Task: {065F6DF1-FA5A-4A0F-BEA4-99558F28C94D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator = & gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2017-03-02] (HP Inc.)
Task: {3288EF54-924C-450A-868F-47D2DE10154D} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) = & gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-11-07] (HP Inc.)
Task: {46BC614B-4DDC-4876-AFDB-8AE97CE69164} - System32\Tasks\Adobe Acrobat Update Task = & gt; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-09-23] (Adobe Systems Incorporated)
Task: {5A09E39A-8949-4B91-B006-6A0C90431241} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report = & gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-12-21] (HP Inc.)
Task: {5AEC4816-21F1-4572-8E97-86240DEF079D} - System32\Tasks\HPCeeScheduleForKarolina = & gt; C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard)
Task: {6F3FB72B-0D52-4314-A069-82059C1A9C04} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis = & gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-12-07] (HP Inc.)
Task: {75D56059-3463-404A-B66A-4605546176C9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater = & gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-12-07] (HP Inc.)
Task: {7718C310-E741-4C32-911C-4600F3545A54} - System32\Tasks\GoogleUpdateTaskMachineCore = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-28] (Google Inc.)
Task: {78ACA38D-0131-4B07-8A9A-E14092372BD3} - System32\Tasks\GoogleUpdateTaskMachineUA = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-28] (Google Inc.)
Task: {9A6E4E89-BD3E-4D8A-A8BE-88540733CB01} - System32\Tasks\AVAST Software\Avast settings backup = & gt; C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-01-27] (AVAST Software)
Task: {B7A7C515-B756-45D4-9CF6-8B328F11E140} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B = & gt; schtasks
Task: {BE2E5BD5-3AF5-40B2-A2B5-E8B9B5DE964B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start = & gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-12-07] (HP Inc.)
Task: {BE678006-D086-482E-8DB6-DCF4E0CEAE1F} - System32\Tasks\HPCustParticipation HP Deskjet 3540 series = & gt; C:\Program Files\HP\HP Deskjet 3540 series\Bin\HPCustPartic.exe [2014-03-06] (Hewlett-Packard Co.)
Task: {C1558282-2612-4C75-8BC5-1A0A7C2F1F8F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan = & gt; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2017-03-10] (HP Inc.)

(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)

Task: C:\Windows\Tasks\HPCeeScheduleForKarolina.job = & gt; C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Skróty =============================

(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)

==================== Załadowane moduły (filtrowane) ==============

2010-02-05 17:44 - 2010-02-05 17:44 - 00079192 _____ () C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosIPCWraper.dll
2017-04-02 16:03 - 2008-05-27 23:17 - 00003584 _____ () C:\Users\Karolina\Downloads\SmitfraudFix\Policies.exe
2016-01-18 20:53 - 2016-01-18 07:50 - 00110952 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll
2016-01-18 20:53 - 2016-01-18 07:50 - 00253800 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\collector.dll
2016-01-18 20:53 - 2016-01-18 07:50 - 00295272 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\stat.dll
2016-01-18 20:53 - 2016-01-18 07:50 - 00104296 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll
2016-01-18 20:53 - 2016-01-18 07:50 - 00020328 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll
2016-01-18 20:53 - 2016-01-18 07:50 - 00044392 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll
2017-03-31 05:19 - 2017-03-29 04:04 - 02187096 _____ () C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\libglesv2.dll
2017-03-31 05:19 - 2017-03-29 04:04 - 00086360 _____ () C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\libegl.dll
2007-10-12 09:37 - 2007-10-12 09:37 - 00339968 _____ () C:\Program Files (x86)\PWN\WSPWNOUP2007\VhtmlP8W.dll
2007-10-12 09:37 - 2007-10-12 09:37 - 00086016 _____ () C:\Program Files (x86)\PWN\WSPWNOUP2007\VHTMLAdd8W.dll
2007-10-12 09:37 - 2007-10-12 09:37 - 00217088 _____ () C:\Program Files (x86)\PWN\WSPWNOUP2007\WinTools8W.dll
2007-10-12 09:37 - 2007-10-12 09:37 - 00045056 _____ () C:\Program Files (x86)\PWN\WSPWNOUP2007\DibTools8W.dll
2007-10-12 09:37 - 2007-10-12 09:37 - 00007680 _____ () C:\Program Files (x86)\PWN\WSPWNOUP2007\Excepts8W.dll
2007-10-12 09:37 - 2007-10-12 09:37 - 00114688 _____ () C:\Program Files (x86)\PWN\WSPWNOUP2007\wgdib.dll
2007-10-12 09:37 - 2007-10-12 09:37 - 00020480 _____ () C:\Program Files (x86)\PWN\WSPWNOUP2007\DibVFile8W.dll
2007-10-12 09:37 - 2007-10-12 09:37 - 00038400 _____ () C:\Program Files (x86)\PWN\WSPWNOUP2007\vol8w.dll
2007-10-12 09:37 - 2007-10-12 09:37 - 00163840 _____ () C:\Program Files (x86)\PWN\WSPWNOUP2007\Config8W.dll
2007-10-12 09:37 - 2007-10-12 09:37 - 00151552 _____ () C:\Program Files (x86)\PWN\WSPWNOUP2007\DataBase8W.dll
2007-10-12 09:37 - 2007-10-12 09:37 - 00020992 _____ () C:\Program Files (x86)\PWN\WSPWNOUP2007\vplsort8W.dll
2007-10-30 17:25 - 2007-10-30 17:25 - 00057344 _____ () C:\Program Files (x86)\PWN\WSPWNOUP2007\VHook8W.dll

==================== Alternate Data Streams (filtrowane) =========

(Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.)


==================== Tryb awaryjny (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość " AlternateShell " zostanie przywrócona.)


==================== Powiązania plików (filtrowane) ===============

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.)


==================== Internet Explorer - Witryny zaufane i z ograniczeniami ===============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)


==================== Hosts - zawartość: ===============================

(Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)

2009-07-14 04:34 - 2017-04-02 12:28 - 00000035 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Inne obszary ============================

(Obecnie brak automatycznej naprawy dla tej sekcji.)

HKU\S-1-5-21-2658245198-3005051595-1530724498-1000\Control Panel\Desktop\\Wallpaper - & gt;
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System = & gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Zapora systemu Windows [funkcja włączona]

==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==


==================== Reguły Zapory systemu Windows (filtrowane) ===============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

FirewallRules: [{0ABAE7D7-6654-4F56-B8BB-E24E678C0CDB}] = & gt; (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{290A5510-403D-4AFB-A586-E593F1478A7C}] = & gt; (Allow) C:\Program Files\HP\HP Deskjet 3540 series\Bin\DeviceSetup.exe
FirewallRules: [{660EB460-CB8D-41A2-AB5B-A13C4406CD24}] = & gt; (Allow) LPort=5357
FirewallRules: [{DB61C458-82C6-4793-878B-9369110A8145}] = & gt; (Allow) C:\Program Files\HP\HP Deskjet 3540 series\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{27ADC0B2-5394-4139-BE91-6DCE32C23B47}] = & gt; (Allow) C:\Windows\System32\spool\drivers\x64\3\HP1006MC.EXE
FirewallRules: [{84102EC4-FDC8-4532-AE1C-31C2A6278210}] = & gt; (Allow) C:\Windows\System32\spool\drivers\x64\3\HP1006MC.EXE
FirewallRules: [{29ECA3E3-9740-4B12-A8C9-4A0DEC90083A}] = & gt; (Allow) C:\Users\Karolina\AppData\Local\Temp\7zS5C12\Setup.exe
FirewallRules: [{6D982CC5-4010-4360-BCFF-08A9E0F83CF1}] = & gt; (Allow) C:\Users\Karolina\AppData\Local\Temp\7zS5C12\Setup.exe
FirewallRules: [TCP Query User{01C841EE-8395-4769-A85E-51339DD7C9F1}C:\program files (x86)\stepmania\program\stepmania-sse2.exe] = & gt; (Allow) C:\program files (x86)\stepmania\program\stepmania-sse2.exe
FirewallRules: [UDP Query User{267ED09E-1479-4F15-9BEF-C290AC8BA8CD}C:\program files (x86)\stepmania\program\stepmania-sse2.exe] = & gt; (Allow) C:\program files (x86)\stepmania\program\stepmania-sse2.exe
FirewallRules: [TCP Query User{06670517-EE5C-4759-BB90-E0AF616071A6}C:\program files (x86)\kodi\kodi.exe] = & gt; (Allow) C:\program files (x86)\kodi\kodi.exe
FirewallRules: [UDP Query User{D6D02B59-20FD-4957-8EA9-0E1563E0D30C}C:\program files (x86)\kodi\kodi.exe] = & gt; (Allow) C:\program files (x86)\kodi\kodi.exe
FirewallRules: [{30414EB7-E44D-48CA-AD53-748AB735EC22}] = & gt; (Allow) C:\Program Files (x86)\Applian Technologies\Replay Music 7\jrmp.exe
FirewallRules: [{6A19CC6A-4563-4954-8378-F17F7A5460DB}] = & gt; (Allow) C:\Program Files (x86)\Applian Technologies\Replay Music 7\jrmp.exe
FirewallRules: [{DF61867B-A9D9-49C3-8202-1542F9A21687}] = & gt; (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{5DD3CC5D-471E-4220-8990-CC6BAC524CFF}] = & gt; (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{10EA860B-80A0-425A-9848-357FEBD27053}] = & gt; (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{31D10F70-7583-4B20-9E2C-A89DDA176768}] = & gt; (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6CBF6832-AFD1-4C4F-8AB6-055E26BFA469}] = & gt; (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{F35210B7-4AE6-4B6D-882D-AAD0BE7D230D}] = & gt; (Allow) C:\Users\Karolina\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{AE925D5A-1511-46A0-83AA-13BEEBBCC20E}C:\program files (x86)\kodi17\kodi.exe] = & gt; (Allow) C:\program files (x86)\kodi17\kodi.exe
FirewallRules: [UDP Query User{095D0726-5510-4A4D-A8C2-89D23E825FCD}C:\program files (x86)\kodi17\kodi.exe] = & gt; (Allow) C:\program files (x86)\kodi17\kodi.exe
FirewallRules: [{CFBD5B1B-F29B-40CE-8046-7AE71EABE1FB}] = & gt; (Allow) C:\Program Files (x86)\Pearness\Application\chrome.exe
FirewallRules: [{EA213A93-5233-4BDE-915A-01AC054603B7}] = & gt; (Allow) C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe
FirewallRules: [{44C5EE22-AAAF-41AF-ABB0-76110D3290CC}] = & gt; (Allow) C:\Program Files (x86)\Firefox\Firefox.exe
FirewallRules: [{962FC1D2-F1BE-40EA-B1CE-3B96E41E8506}] = & gt; (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{01360CAC-B0C7-4BF4-B7EB-68BA9934BD33}] = & gt; (Allow) C:\Users\Karolina\AppData\Local\MicrosoftHelper\bin\Y2Go.exe
FirewallRules: [{2BBA30A2-266E-423E-8F1E-5AB2BAA66E9F}] = & gt; (Allow) C:\Users\Karolina\AppData\Local\MicrosoftHelper\bin\Y2Go.exe
FirewallRules: [{5179C5F1-469A-446E-A299-60FE69CC0602}] = & gt; (Allow) C:\Windows\system32\rundll32.exe
FirewallRules: [{78D30D6B-9158-4198-8422-DE1028CDA259}] = & gt; (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{9838F570-D80F-40E2-BF24-72EA76EE3148}] = & gt; (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{3FE6E990-5CF5-4BFD-B676-74A3E5F2CE5E}] = & gt; (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{6E6FC10F-9E49-41E3-B567-87881E579FDE}] = & gt; (Allow) C:\Windows\System32\rundll32.exe

==================== Punkty Przywracania systemu =========================


==================== Wadliwe urządzenia w Menedżerze urządzeń =============

Name: pcouffin device ...
Description: pcouffin device ...
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click " Update Driver " , which starts the Hardware Update wizard.


==================== Błędy w Dzienniku zdarzeń: =========================

Dziennik Aplikacja:
==================
Error: (04/02/2017 03:49:26 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation; Opis = Zaplanowany punkt kontrolny; Błąd = 0x80070422).

Error: (04/02/2017 03:49:17 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: )
Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu:
0x80070005

Error: (04/02/2017 01:17:44 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: )
Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu:
0x80070005

Error: (04/02/2017 12:52:50 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\msiexec.exe /V; Opis = Installed Adobe Reader XI - Polish.; Błąd = 0x80070422).

Error: (04/02/2017 12:52:45 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\msiexec.exe /V; Opis = Installed Adobe Reader XI - Polish.; Błąd = 0x80070422).

Error: (04/02/2017 12:33:46 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (04/02/2017 12:32:27 PM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005.

Error: (04/02/2017 12:27:22 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query " SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 99 " could not be reactivated in namespace " //./root/CIMV2 " because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (04/02/2017 12:26:08 PM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005.

Error: (04/02/2017 12:19:37 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: )
Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu:
0x80070005


Dziennik System:
=============
Error: (04/02/2017 03:49:17 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Usługa Grupowanie sieci równorzędnej zależy od usługi Protokół rozpoznawania nazw równorzędnych, której nie można uruchomić z powodu następującego błędu:
%%-2140993535

Error: (04/02/2017 03:49:17 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Usługa Protokół rozpoznawania nazw równorzędnych zakończyła działanie; wystąpił następujący błąd:
%%-2140993535

Error: (04/02/2017 03:49:17 PM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: Chmura protokołu rozpoznawania nazw równorzędnych nie została uruchomiona, ponieważ tworzenie tożsamości domyślnej nie powiodło się; kod błędu: 0x80630801.

Error: (04/02/2017 03:49:15 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Usługa Protokół rozpoznawania nazw równorzędnych zakończyła działanie; wystąpił następujący błąd:
%%-2140993535

Error: (04/02/2017 03:49:15 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Usługa Grupowanie sieci równorzędnej zależy od usługi Protokół rozpoznawania nazw równorzędnych, której nie można uruchomić z powodu następującego błędu:
%%-2140993535

Error: (04/02/2017 03:49:15 PM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: Chmura protokołu rozpoznawania nazw równorzędnych nie została uruchomiona, ponieważ tworzenie tożsamości domyślnej nie powiodło się; kod błędu: 0x80630801.

Error: (04/02/2017 03:49:11 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Usługa Protokół rozpoznawania nazw równorzędnych zakończyła działanie; wystąpił następujący błąd:
%%-2140993535

Error: (04/02/2017 03:49:11 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Usługa Grupowanie sieci równorzędnej zależy od usługi Protokół rozpoznawania nazw równorzędnych, której nie można uruchomić z powodu następującego błędu:
%%-2140993535

Error: (04/02/2017 03:49:11 PM) (Source: PNRPSvc) (EventID: 102) (User: )
Description: Chmura protokołu rozpoznawania nazw równorzędnych nie została uruchomiona, ponieważ tworzenie tożsamości domyślnej nie powiodło się; kod błędu: 0x80630801.

Error: (04/02/2017 03:49:08 PM) (Source: atikmdag) (EventID: 10261) (User: )
Description: Display is not active


CodeIntegrity:
===================================
Date: 2017-04-02 09:04:02.340
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2017-04-02 09:04:02.309
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2017-03-23 21:54:05.585
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

Date: 2017-03-23 21:48:05.244
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

Date: 2017-03-23 21:36:59.248
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

Date: 2017-03-23 21:19:21.979
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

Date: 2017-03-23 20:40:26.576
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

Date: 2017-03-23 20:24:48.114
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

Date: 2017-03-23 20:12:12.875
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.

Date: 2017-03-23 06:32:10.363
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.


==================== Statystyki pamięci ===========================

Procesor: Intel(R) Core(TM) i3 CPU M 330 @ 2.13GHz
Procent pamięci w użyciu: 61%
Całkowita pamięć fizyczna: 3957.61 MB
Dostępna pamięć fizyczna: 1506.06 MB
Całkowita pamięć wirtualna: 7913.41 MB
Dostępna pamięć wirtualna: 5108.03 MB

==================== Dyski ================================

Drive c: () (Fixed) (Total:233.17 GB) (Free:21.13 GB) NTFS
Drive d: (Data) (Fixed) (Total:232.49 GB) (Free:183.94 GB) NTFS

==================== MBR & Tablica partycji ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 3C5BD536)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=233.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=232.5 GB) - (Type=07 NTFS)

==================== Koniec Addition.txt ============================