Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 20.06.2018
- Uruchomiony przez Mateusz (28-06-2018 14:28:34)
- Uruchomiony z C:\Users\Mateusz\AppData\Local\Temp\scoped_dir5664_31868
- Windows 7 Professional (X64) (2018-04-09 12:32:18)
- Tryb startu: Normal
- ==========================================================
- ==================== Konta użytkowników: =============================
- Administrator (S-1-5-21-934283215-2510224925-2283949953-500 - Administrator - Disabled)
- Gość (S-1-5-21-934283215-2510224925-2283949953-501 - Limited - Disabled)
- HomeGroupUser$ (S-1-5-21-934283215-2510224925-2283949953-1002 - Limited - Enabled)
- Mateusz (S-1-5-21-934283215-2510224925-2283949953-1000 - Administrator - Enabled) => C:\Users\Mateusz
- ==================== Centrum zabezpieczeń ========================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie.)
- AV: AVG Antivirus (Enabled - Up to date) {C50510DE-367A-330C-FD5C-556ACFB11243}
- AS: AVG Antivirus (Enabled - Up to date) {7E64F13A-1040-3C82-C7EC-6E18B43658FE}
- AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- ==================== Zainstalowane programy ======================
- (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)
- . . (HKLM\...\{3D383E25-72E7-4F09-AA1C-9ADE6A2EF42F}) (Version: 7.1 - Intel) Hidden
- . . . (HKLM-x32\...\{0C9A6167-6560-4085-9C35-EDB1AE105328}) (Version: 3.2.0.9 - Intel) Hidden
- Adobe Flash Player 30 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 30.0.0.113 - Adobe Systems Incorporated)
- AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 18.5.1 - Advanced Micro Devices, Inc.)
- AVG AntiVirus FREE (HKLM-x32\...\AVG Antivirus) (Version: 18.4.3056 - AVG Technologies)
- Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.64.49.0 - Conexant)
- Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.8000.17 - Dolby Laboratories Inc)
- Energy Management (HKLM-x32\...\{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 7.0.3.4 - Lenovo) Hidden
- Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 7.0.3.4 - Lenovo)
- Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
- HD Tune Pro 5.50 (HKLM-x32\...\HD Tune Pro_is1) (Version: - EFD Software)
- Intel(R) Computing Improvement Program (HKLM\...\{699E6891-25C3-443A-9B8E-80C74F0172C8}) (Version: 2.1.03413 - Intel Corporation)
- Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4889 - Intel Corporation)
- Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.0.0.1083 - Intel Corporation)
- Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation)
- Intel® Driver & Support Assistant (HKLM-x32\...\{4d839fe1-a8d3-4edc-b0ca-844394309856}) (Version: 3.2.0.9 - Intel)
- Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
- Lenovo Bluetooth with Enhanced Data Rate Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.4000 - Broadcom Corporation)
- Lenovo EasyCamera (HKLM-x32\...\{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332}) (Version: 3.13.301.1 - Vimicro)
- Lenovo pointing device (HKLM\...\Elantech) (Version: 11.4.14.1 - ELAN Microelectronic Corp.)
- Lenovo_Wireless_Driver (HKLM-x32\...\{36CE10BD-A076-4DE3-A8A7-2F61E3FB2E6A}) (Version: 6.20.55.14 - Lenovo)
- Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation)
- Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
- Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
- Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
- Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
- Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
- Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24123 (HKLM-x32\...\{2cbcedbb-f38c-48a3-a3e1-6c6fd821a7f4}) (Version: 14.0.24123.0 - Microsoft Corporation)
- Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24123 (HKLM-x32\...\{206898cc-4b41-4d98-ac28-9f9ae57f91fe}) (Version: 14.0.24123.0 - Microsoft Corporation)
- Mozilla Firefox 60.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 60.0.2 (x86 pl)) (Version: 60.0.2 - Mozilla)
- Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 59.0.2 - Mozilla)
- OEM Application Profile (HKLM-x32\...\{70D5F822-F4C4-33D9-7EEC-2A4AF4EA7BDC}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
- Opera Stable 53.0.2907.110 (HKLM-x32\...\Opera 53.0.2907.110) (Version: 53.0.2907.110 - Opera Software)
- Pakiet sterowników systemu Windows - Lenovo (ACPIVPC) System (12/15/2011 7.1.0.1) (HKLM\...\99841829BE839365AA67B2AD0E50D371F59F8A1E) (Version: 12/15/2011 7.1.0.1 - Lenovo)
- PowerXpressHybrid (HKLM-x32\...\{51FDC2DE-0917-46B7-EAEC-5377504701DE}) (Version: 1.00.0000 - Nazwa firmy) Hidden
- PX Profile Update (HKLM-x32\...\{688E032B-2432-CB57-7716-B734EF6995AE}) (Version: 1.00.1. - AMD) Hidden
- Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.12 - Qualcomm Atheros Communications Inc.)
- Realtek Card Reader (HKLM-x32\...\{F0A8BF4A-972F-41E0-9800-1EFE3BF28266}) (Version: 6.2.9200.39044 - Realtek Semiconductor Corp.)
- Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
- Tibia (HKU\S-1-5-21-934283215-2510224925-2283949953-1000\...\Tibia) (Version: - CipSoft GmbH)
- Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
- WinRAR 5.50 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)
- ==================== Niestandardowe rejestracje CLSID (filtrowane): ==========================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku
- ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files (x86)\AVG\Antivirus\ashShA64.dll [2018-05-17] (AVG Technologies CZ, s.r.o.)
- ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-09-13] (Alexander Roshal)
- ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-09-13] (Alexander Roshal)
- ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku
- ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2018-05-16] (Advanced Micro Devices, Inc.)
- ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku
- ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2018-01-12] (Intel Corporation)
- ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files (x86)\AVG\Antivirus\ashShA64.dll [2018-05-17] (AVG Technologies CZ, s.r.o.)
- ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-09-13] (Alexander Roshal)
- ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-09-13] (Alexander Roshal)
- ==================== Zaplanowane zadania (filtrowane) =============
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- Task: {37085DB6-3353-4354-8700-0781EFDBFDB6} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
- Task: {4B2B82B8-7B1C-4FA9-B106-2EDD3A8E4757} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [2018-06-26] (AVG Technologies CZ, s.r.o.)
- Task: {5459F01E-C1B6-4275-BB9E-898E7C083CCA} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [2017-07-13] (Intel Corporation)
- Task: {77058BB2-36AF-49B7-B9CF-7E080AAF8FB5} - System32\Tasks\Opera scheduled Autoupdate 1523279524 => C:\Program Files\Opera\launcher.exe [2018-06-26] (Opera Software)
- Task: {77105C6D-1DA5-42D9-A87E-5C1425E62140} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-06-10] (Adobe Systems Incorporated)
- Task: {8D7AEEFE-9A6C-40E7-BDCA-3DE839CD8853} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\Windows\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
- Task: {91664C28-3482-458F-97B8-AD37218C98DF} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [2018-05-16] (Advanced Micro Devices, Inc.)
- Task: {B14563A1-C7DE-4769-8C51-D709164C5FAD} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [2017-07-13] (Intel Corporation)
- Task: {C9272CEA-030F-49B8-9754-B6B099A27731} - System32\Tasks\Antivirus Emergency Update => C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe [2018-05-17] (AVG Technologies CZ, s.r.o.)
- Task: {CAAC7852-2B4D-47B4-BA93-88396715F8DD} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\dvrcmd.exe [2018-05-16] (Advanced Micro Devices, Inc.)
- (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
- ==================== Skróty & WMI ========================
- (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)
- ==================== Załadowane moduły (filtrowane) ==============
- 2008-12-20 03:20 - 2018-04-09 14:45 - 000054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\HookLib.dll
- 2012-03-10 16:30 - 2018-04-09 14:45 - 001509936 _____ () C:\Program Files (x86)\Lenovo\Energy Management\EMWpfUI.dll
- 2012-03-08 15:40 - 2018-04-09 14:45 - 000011096 _____ () C:\Program Files (x86)\Lenovo\Energy Management\pl-PL\EMWpfUI.resources.dll
- 2008-12-20 03:20 - 2018-04-09 14:45 - 000054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\kbdhook.dll
- 2018-01-11 01:25 - 2018-01-11 01:25 - 000182544 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
- 2018-01-11 01:25 - 2018-01-11 01:25 - 000168208 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\Common.dll
- 2018-01-11 01:25 - 2018-01-11 01:25 - 000014096 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\Config.dll
- 2018-01-11 01:25 - 2018-01-11 01:25 - 000044816 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\AnalyzerTask.dll
- 2018-01-11 01:25 - 2018-01-11 01:25 - 000267024 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\analyzer.dll
- 2018-01-12 17:45 - 2018-01-12 17:45 - 000384040 _____ () C:\Windows\system32\igfxTray.exe
- 2018-05-17 15:31 - 2018-05-17 15:31 - 000738032 _____ () c:\Program Files (x86)\AVG\Antivirus\x64\vaarclient.dll
- 2018-05-17 15:31 - 2018-05-17 15:31 - 001067248 _____ () C:\Program Files (x86)\AVG\Antivirus\x64\ffl2.dll
- 2018-05-17 15:31 - 2018-05-17 15:31 - 000595696 _____ () c:\Program Files (x86)\AVG\Antivirus\x64\StreamBack.dll
- 2018-06-27 11:53 - 2018-06-27 11:52 - 101453912 _____ () C:\Program Files\Opera\53.0.2907.110\opera_browser.dll
- 2018-06-27 11:52 - 2018-06-27 11:52 - 004447832 _____ () C:\Program Files\Opera\53.0.2907.110\libglesv2.dll
- 2018-06-27 11:52 - 2018-06-27 11:52 - 000100440 _____ () C:\Program Files\Opera\53.0.2907.110\libegl.dll
- 2018-05-17 15:31 - 2018-05-17 15:31 - 000481008 _____ () C:\Program Files (x86)\AVG\Antivirus\streamback.dll
- 2018-05-17 15:31 - 2018-05-17 15:31 - 000886512 _____ () C:\Program Files (x86)\AVG\Antivirus\ffl2.dll
- 2018-05-17 15:31 - 2018-05-17 15:31 - 000925936 _____ () C:\Program Files (x86)\AVG\Antivirus\anen.dll
- 2018-05-17 15:31 - 2018-05-17 15:31 - 000983792 _____ () C:\Program Files (x86)\AVG\Antivirus\shepherdsync.dll
- 2018-05-17 15:31 - 2018-05-17 15:31 - 000520944 _____ () C:\Program Files (x86)\AVG\Antivirus\gui_cache.dll
- 2018-06-28 14:04 - 2018-06-28 14:04 - 005838576 _____ () C:\Program Files (x86)\AVG\Antivirus\defs\18062806\algo.dll
- 2018-04-09 16:10 - 2018-04-09 16:10 - 067127976 _____ () C:\Program Files (x86)\AVG\Antivirus\libcef.dll
- 2018-06-28 12:21 - 2018-06-08 23:38 - 000788256 _____ () C:\Program Files (x86)\Steam\SDL2.dll
- 2018-06-28 12:19 - 2018-06-08 23:42 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll
- 2018-06-28 12:19 - 2018-06-08 23:40 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
- 2018-06-28 12:19 - 2018-06-08 23:40 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
- 2018-06-28 12:21 - 2018-06-09 01:39 - 002632992 _____ () C:\Program Files (x86)\Steam\video.dll
- 2018-06-28 12:19 - 2018-06-08 23:40 - 005137696 _____ () C:\Program Files (x86)\Steam\libavcodec-57.dll
- 2018-06-28 12:19 - 2018-06-08 23:40 - 000847136 _____ () C:\Program Files (x86)\Steam\libavutil-55.dll
- 2018-06-28 12:19 - 2018-06-08 23:40 - 000695584 _____ () C:\Program Files (x86)\Steam\libavformat-57.dll
- 2018-06-28 12:19 - 2018-06-08 23:40 - 000351520 _____ () C:\Program Files (x86)\Steam\libavresample-3.dll
- 2018-06-28 12:19 - 2018-06-08 23:40 - 000783648 _____ () C:\Program Files (x86)\Steam\libswscale-4.dll
- 2018-06-28 12:21 - 2018-06-09 01:38 - 000979744 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
- 2018-06-28 12:19 - 2018-06-08 23:40 - 000266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
- 2018-06-28 12:19 - 2018-06-08 23:39 - 000788256 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll
- 2018-06-28 12:19 - 2018-06-08 23:39 - 083524384 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
- 2018-06-28 12:19 - 2018-06-08 23:42 - 000119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
- 2018-06-28 12:21 - 2018-06-08 23:39 - 002253600 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\swiftshader\libglesv2.dll
- 2018-06-28 12:19 - 2018-06-08 23:39 - 000109856 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\swiftshader\libegl.dll
- ==================== Alternate Data Streams (filtrowane) =========
- (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.)
- AlternateDataStreams: C:\Users\Public\AppData:CSM [478]
- ==================== Tryb awaryjny (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.)
- ==================== Powiązania plików (filtrowane) ===============
- (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.)
- ==================== Internet Explorer - Witryny zaufane i z ograniczeniami ===============
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)
- ==================== Hosts - zawartość: ===============================
- (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)
- 2009-07-14 04:34 - 2018-06-28 13:42 - 000000027 _____ C:\Windows\system32\Drivers\etc\hosts
- 127.0.0.1 localhost
- ==================== Inne obszary ============================
- (Obecnie brak automatycznej naprawy dla tej sekcji.)
- HKU\S-1-5-21-934283215-2510224925-2283949953-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
- DNS Servers: 192.168.0.1
- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
- Zapora systemu Windows [funkcja włączona]
- ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==
- ==================== Reguły Zapory systemu Windows (filtrowane) ===============
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
- FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
- FirewallRules: [{CC899A5D-CCB4-4C50-8CB8-E8A211BDBE81}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
- FirewallRules: [{1E6DC5A0-65B6-40F4-9D6F-D346730E82F2}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
- FirewallRules: [{B60358DB-2EC7-4D50-BD01-466A16206B93}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
- FirewallRules: [{24868364-7A7C-405D-B799-DD0043AC73BF}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
- FirewallRules: [{DE2D3614-11A6-4529-A508-D3C444D52FD6}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
- FirewallRules: [{D762F182-422A-49B2-AA86-86559B0916D3}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
- FirewallRules: [TCP Query User{F58C9E6C-D81E-4076-B9ED-514EE3FE24AD}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
- FirewallRules: [UDP Query User{82CA5FAF-1BA4-4107-9977-8FB041C33B80}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
- FirewallRules: [TCP Query User{6F06706F-2FBF-4C4F-B6D4-1CADDD1E490E}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
- FirewallRules: [UDP Query User{FFE19A4B-C611-4771-AF8D-C8986C109891}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
- FirewallRules: [TCP Query User{844DA17E-7898-4374-BBE5-2F9E62FCDED2}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
- FirewallRules: [UDP Query User{8C7E4B0A-A102-4950-825B-F3ECF3367451}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
- FirewallRules: [{ED1B124E-39D7-48EA-B3A7-BED57E2DE857}] => (Allow) C:\Program Files\Opera\53.0.2907.99\opera.exe
- FirewallRules: [{9C9E6CE2-B35C-41A2-8524-9EFEEB77401E}] => (Allow) C:\Program Files\Opera\53.0.2907.110\opera.exe
- FirewallRules: [{50F72F8B-85B5-4E44-A3C2-F07BD277A0D2}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
- FirewallRules: [{0938D83C-8F76-48FE-B049-C445F434B53E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
- FirewallRules: [{6A83EA87-953C-4110-AAA3-237147E8374F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- FirewallRules: [{9DCB3E18-546C-4665-93D4-33542AD27F8C}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- ==================== Punkty Przywracania systemu =========================
- 09-04-2018 15:22:28 Intel® Driver & Support Assistant
- 09-04-2018 15:43:18 Installed Microsoft Office Enterprise 2007
- 23-05-2018 20:58:53 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24123
- 23-05-2018 20:59:26 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24123
- 23-05-2018 21:39:00 Zainstalowany program DirectX
- 23-05-2018 21:41:22 Zainstalowany program DirectX
- 10-06-2018 19:50:17 Zaplanowany punkt kontrolny
- 28-06-2018 12:44:57 Zainstalowany program DirectX
- 28-06-2018 12:52:29 Zainstalowany program DirectX
- 28-06-2018 12:59:35 Zainstalowany program DirectX
- ==================== Wadliwe urządzenia w Menedżerze urządzeń =============
- ==================== Błędy w Dzienniku zdarzeń: =========================
- Dziennik Aplikacja:
- ==================
- Error: (06/28/2018 02:08:39 PM) (Source: ESENT) (EventID: 412) (User: )
- Description: wuaueng.dll (1052) SUS20ClientDataStore: Nie można odczytać nagłówka pliku dziennika C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Błąd -546.
- Error: (06/28/2018 02:08:39 PM) (Source: ESENT) (EventID: 412) (User: )
- Description: wuaueng.dll (1052) SUS20ClientDataStore: Nie można odczytać nagłówka pliku dziennika C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Błąd -546.
- Error: (06/28/2018 02:08:39 PM) (Source: ESENT) (EventID: 412) (User: )
- Description: wuaueng.dll (1052) SUS20ClientDataStore: Nie można odczytać nagłówka pliku dziennika C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Błąd -546.
- Error: (06/28/2018 02:08:39 PM) (Source: ESENT) (EventID: 412) (User: )
- Description: wuaueng.dll (1052) SUS20ClientDataStore: Nie można odczytać nagłówka pliku dziennika C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Błąd -546.
- Error: (06/28/2018 02:08:39 PM) (Source: ESENT) (EventID: 412) (User: )
- Description: wuaueng.dll (1052) SUS20ClientDataStore: Nie można odczytać nagłówka pliku dziennika C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Błąd -546.
- Error: (06/28/2018 02:08:39 PM) (Source: ESENT) (EventID: 412) (User: )
- Description: wuaueng.dll (1052) SUS20ClientDataStore: Nie można odczytać nagłówka pliku dziennika C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Błąd -546.
- Error: (06/28/2018 02:08:35 PM) (Source: ESENT) (EventID: 412) (User: )
- Description: wuaueng.dll (1052) SUS20ClientDataStore: Nie można odczytać nagłówka pliku dziennika C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Błąd -546.
- Error: (06/28/2018 02:08:35 PM) (Source: ESENT) (EventID: 412) (User: )
- Description: wuaueng.dll (1052) SUS20ClientDataStore: Nie można odczytać nagłówka pliku dziennika C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log. Błąd -546.
- Dziennik System:
- =============
- Error: (06/28/2018 02:07:37 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
- Description: Usługa Windows Update zawiesiła się podczas uruchamiania.
- Error: (06/28/2018 02:01:02 PM) (Source: DCOM) (EventID: 10010) (User: )
- Description: Serwer {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} nie zarejestrował się w modelu DCOM w wymaganym czasie.
- Error: (06/28/2018 01:43:00 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
- Description: Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie.
- Error: (06/28/2018 01:42:27 PM) (Source: Application Popup) (EventID: 1060) (User: )
- Description: Ładowanie sterownika \??\C:\ComboFix\catchme.sys zostało zablokowane z powodu niezgodności z tym systemem. Skontaktuj się z dostawcą oprogramowania w celu uzyskania zgodnej wersji sterownika.
- Error: (06/28/2018 01:40:53 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
- Description: Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie.
- Error: (06/28/2018 01:20:40 PM) (Source: BTHUSB) (EventID: 17) (User: )
- Description: W lokalnym adapterze Bluetooth wystąpił nieokreślony błąd. Adapter nie będzie używany. Sterownik został usunięty z pamięci.
- Error: (06/28/2018 01:18:07 PM) (Source: DCOM) (EventID: 10010) (User: )
- Description: Serwer {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} nie zarejestrował się w modelu DCOM w wymaganym czasie.
- Error: (06/28/2018 12:54:34 PM) (Source: Schannel) (EventID: 4102) (User: ZARZĄDZANIE NT)
- Description: Podczas próby uzyskania dostępu do prywatnego klucza uwierzytelnień SSL klient wystąpił błąd krytyczny. Kod błędu zwrócony przez moduł kryptograficzny: 0x8009030d. Stan błędu wewnętrznego: 10003.
- CodeIntegrity:
- ===================================
- Date: 2018-06-28 14:24:28.738
- Description:
- Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
- Date: 2018-06-28 14:02:04.138
- Description:
- Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
- Date: 2018-06-28 13:56:20.734
- Description:
- Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
- Date: 2018-06-28 13:42:56.369
- Description:
- Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
- Date: 2018-06-28 13:42:27.219
- Description:
- Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
- Date: 2018-06-28 13:42:27.210
- Description:
- Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
- Date: 2018-06-28 13:34:30.348
- Description:
- Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
- Date: 2018-06-28 13:20:32.284
- Description:
- Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system.
- ==================== Statystyki pamięci ===========================
- Procesor: Intel(R) Core(TM) i5-4210M CPU @ 2.60GHz
- Procent pamięci w użyciu: 91%
- Całkowita pamięć fizyczna: 2486.36 MB
- Dostępna pamięć fizyczna: 206.09 MB
- Całkowita pamięć wirtualna: 4970.87 MB
- Dostępna pamięć wirtualna: 1199.93 MB
- ==================== Dyski ================================
- Drive c: () (Fixed) (Total:270.45 GB) (Free:207.72 GB) NTFS
- Drive d: () (Fixed) (Total:195.21 GB) (Free:194.88 GB) NTFS
- \\?\Volume{21d2fa56-3bf1-11e8-8166-806e6f6e6963}\ (Zastrzeżone przez system) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS
- ==================== MBR & Tablica partycji ==================
- ========================================================
- Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 88300280)
- Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
- Partition 2: (Not Active) - (Size=195.2 GB) - (Type=07 NTFS)
- Partition 3: (Not Active) - (Size=270.4 GB) - (Type=07 NTFS)
- ==================== Koniec Addition.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement