sadasdsdds
Transkrypt
sadasdsdds
sadasdsdds OTL Extras logfile created on: 2016-11-01 14:42:36 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Michał\Downloads 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.18500) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 7,88 Gb Total Physical Memory | 5,69 Gb Available Physical Memory | 72,23% Memory free 9,13 Gb Paging File | 6,94 Gb Available in Paging File | 75,99% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86) Drive C: | 188,07 Gb Total Space | 134,47 Gb Free Space | 71,50% Space Free | Partition Type: NTFS Drive D: | 537,80 Gb Total Space | 512,73 Gb Free Space | 95,34% Space Free | Partition Type: NTFS Drive F: | 184,09 Gb Total Space | 183,83 Gb Free Space | 99,86% Space Free | Partition Type: NTFS Computer Name: MICHAL | User Name: Michał | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\WINDOWS\SysNativeundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\WINDOWS\system32undll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32undll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- C:\Users\Michał\AppData\Roaming\efo\efo.exe "%1" Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- C:\Users\Michał\AppData\Roaming\efo\efo.exe "%1" Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = [binary data] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{2403C8E4-9343-496D-9232-9A01070493CF}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86) vidia corporation etservice vnetworkservice.exe | "{305BA2AB-1014-4B00-9F74-AC91607AC4E0}" = lport=47984 | protocol=6 | dir=in | app=c:\program files vidia corporation vstreamsrv vstreamnetworkservice.exe | "{3C8087F0-D069-459F-A86F-7C140DB04A38}" = lport=47995 | protocol=17 | dir=in | app=c:\program files vidia corporation vstreamsrv vstreamer.exe | "{52686F62-7640-477C-9FBA-FC537EEA0943}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86) vidia corporation etservice vnetworkservice.exe | "{73C3C263-4373-4C20-AD87-A94FB780D2DC}" = lport=35043 | protocol=6 | dir=in | app=c:\program files vidia corporation vstreamsrv vstreamer.exe | "{9DF568BF-1BE4-40F8-B58A-90F91C8AEB20}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{C1F6BB62-5A75-4A81-837D-7CEBAA523637}" = lport=47998 | protocol=17 | dir=in | app=c:\program files vidia corporation vstreamsrv vstreamuseragent.exe | "{D9FDE7C5-91CF-4946-B79E-C7E264DA859C}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{DB7428E6-F20E-4892-9057-2E1C1BB5A2FE}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | "{FF1F01B8-A9EB-4798-98C0-B1FB53B475A7}" = lport=5353 | protocol=17 | dir=in | app=c:\program files vidia corporation vstreamsrv vstreamnetworkservice.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{029D1A33-C63A-4FF9-83BE-66174807035B}" = dir=out | name=@{microsoft.bingtravel_1.7.0.26_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{030DBDF3-F421-43CF-8935-29E5623C4B30}" = dir=in | name=pinball fx2 | "{0ABEBB5B-8C5D-4CA5-938E-5032E19C89B3}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | "{0BDB794E-E7D4-46A9-914D-A3B9DA2BC89C}" = dir=in | name=sonicwall mobile connect | "{0D8EFF76-4A3C-492E-B744-1A66E95FAC70}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd10\powerdvd10.exe | "{111F21D5-7207-4C34-A020-8A014822F65B}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd10\powerdvd cinema\powerdvdcinema10.exe | "{1641D0C4-23D5-47EE-941A-B1C33806ED22}" = dir=out | name=skype | "{181A603D-2702-4F67-8323-CC47C6809386}" = dir=in | name=onenote | "{187DFAD6-045A-47C2-B566-9B5D46F475C1}" = dir=out | name=@{microsoft.skypeapp_1.3.0.112_x86__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/manifest_display_name} | "{1B5343B1-4750-4D10-A86E-C7485BBDBDD3}" = dir=out | name=@{microsoft.bingmaps_2.1.3230.2048_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{1BD51E15-3F84-40B1-943A-F04C80C415C4}" = dir=in | name=@{microsoft.windowscommunicationsapps_16.4.4406.1205_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/res ources/communicationspackagename} | "{1CACCC32-17C8-4380-AD7E-835F08924E7B}" = dir=out | name=sonicwall mobile connect | "{22BA3D8E-65B2-4247-B664-694CEBABF3C9}" = dir=out | name=@{microsoft.zunemusic_2.6.672.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{2460887A-1C85-48A6-9F19-00642DF258E2}" = dir=out | name=@{microsoft.bingweather_1.7.0.26_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{295DB273-2FCF-4AE7-B2D5-F2D10792B7A8}" = dir=out | name=windows_ie_ac_001 | "{296B9AA7-3D9F-4D89-B1C5-1DF61B39E2CF}" = dir=out | name=@{microsoft.xboxlivegames_1.1.134.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{2A9B17E1-0758-46E2-B7CD-D8DA73C3C41F}" = dir=in | app=c:\program files\intel corporation\intel widi\widiapp.exe | "{38E82B0A-6F66-401A-9DE9-86B40F476415}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe | "{3D4F81C4-EFE4-4BCD-AA54-EDBDDEEE006E}" = dir=out | name=onenote | "{401A5B3D-9E00-4C2A-AE27-B8BDE4DBF46F}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn | "{4C3EBE4B-9038-450F-A693-5D05313C1DB9}" = dir=in | name=@{microsoft.skypeapp_1.3.0.112_x86__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/manifest_display_name} | "{4CC4CA00-4943-4FDB-8025-94928308B5B3}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe | "{4D3AC965-0F5B-4624-941F-507B94ABD75B}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.4.336_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} | "{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstoreesources.pri?ms-resource://winstore/resources/displayname} | "{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect | "{5DBBEE28-8A07-47D4-BABD-CB7892E117EE}" = dir=out | name=@{microsoft.zunevideo_2.6.446.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect | "{61178FFB-2ABB-4520-91B9-18BBB2B7FB99}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/re sources/communicationspackagename} | "{63450B89-28B0-41C7-8DF5-D3C85F8ECD21}" = dir=in | name=f5 vpn | "{6BBC0B48-B2AF-44AD-980A-91EC7B31238E}" = dir=in | name=check point vpn | "{72D7C0D9-256F-43DE-BBFF-2F91409C94DC}" = dir=out | name=@{microsoft.windowscommunicationsapps_16.4.4406.1205_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/res ources/communicationspackagename} | "{75095BC4-389A-4AAD-9F11-0D3A09FE38B4}" = dir=out | name=@{microsoft.bingsports_1.8.0.51_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{754A8F4C-86D0-4259-B42C-84EA980F7BDA}" = dir=out | name=f5 vpn | "{76370CCD-4290-45C8-BE4F-6229BA0E1937}" = dir=out | name=pinball fx2 | "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstoreesources.pri?ms-resource://winstore/resources/displayname} | "{947BC84B-8FCF-4556-B2C7-6B625ABA7B39}" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "{96F7EE3F-8A71-4C0E-99CB-0499B74C2BCB}" = dir=out | name=@{magix.musicmakerjam_2.3.1051.1_x64__a2t3txkz9j1jw?ms-resource://magix.musicmakerjam/resources/app_name} | "{981D6181-965B-46C1-B9D6-D2013568C1E1}" = dir=out | name=@{microsoft.zunemusic_1.1.144.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} | "{99874274-9AAA-487B-AFEE-E87C723268D0}" = dir=out | name=@{microsoft.bingtravel_3.0.4.336_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/brandedapptitle} | "{9D4E745B-B3A6-4626-961A-8246D3DFA7C2}" = dir=out | name=@{microsoft.zunevideo_1.1.134.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} | "{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstoreesources.pri?ms-resource://winstore/resources/displayname} | "{9E48D3ED-1650-461E-8F1F-FB3324198D4F}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.4.336_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} | "{A1C40A5F-EA15-45E4-8BAB-F4EFA4B74681}" = dir=out | name=windows_ie_ac_001 | "{A3A7D3B7-F26E-49EC-B4E0-76E87DE14409}" = dir=out | name=@{microsoft.bingsports_3.0.4.345_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/brandedapptitle} | "{ABFA45CF-7E4B-4BCA-808C-233487EB8912}" = dir=out | name=juniper networks junos pulse | "{ADC0FC65-8188-45D3-B8D9-7F8646D0602C}" = dir=out | name=@{microsoft.reader_6.2.9200.20623_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{AF702977-4330-41DC-B7EB-971528C7BDD5}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{B100B74B-C27A-4471-A8DE-A3241ED13257}" = dir=out | name=- games app - | "{B63927E7-ADF6-4C8E-859C-A348E1ED3156}" = dir=out | name=@{microsoft.bingmaps_1.5.1.240_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{B789D9EA-2E82-4F91-BE45-988D952D0B19}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{BB719435-253A-496E-ADC6-B4178291B708}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.21234_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagena me} | "{BE4186C6-6E3F-419D-BEF8-48A45B16B16D}" = dir=out | name=@{microsoft.bingweather_3.0.4.344_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/brandedapptitle} | "{BF6DA576-2661-425B-8C5C-FA344A287203}" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "{BF7B75FD-9C22-4729-A655-A928809E48D0}" = dir=out | name=check point vpn | "{BFF697CC-489C-409F-A026-73D125463169}" = dir=out | name=@{microsoft.bingfinance_1.7.0.38_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{C02CB47F-AD97-41A1-916A-9403FC813F42}" = dir=in | name=juniper networks junos pulse | "{C21FE600-1719-4090-A045-B1136CEDC3CD}" = dir=out | name=@{microsoft.bingnews_3.0.4.344_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/brandedapptitle} | "{C4E4FA81-C40A-4BCD-AA19-680F4D75BDCD}" = dir=out | name=@{microsoft.bingnews_1.7.0.38_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{CB10941A-F78C-41DA-8F58-44DDA659FE23}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{CB4D1BB4-D097-4B0B-AFD5-E32E78DECB2C}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/re sources/communicationspackagename} | "{D0D12BF1-2685-4E47-9814-F06FD7A9BC33}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{D0D7CB50-DE5A-4350-BB80-745B6DAB505E}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.21234_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagena me} | "{D4437EAE-70DD-4619-AB98-41AA45BB587F}" = dir=out | name=windows_ie_ac_001 | "{D61BE6CE-479B-4331-9261-9091AD0B86E4}" = dir=out | name=fresh paint | "{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn | "{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn | "{DF19D204-941C-4056-90D9-0E98CDEBE20F}" = dir=in | name=@{magix.musicmakerjam_2.3.1051.1_x64__a2t3txkz9j1jw?ms-resource://magix.musicmakerjam/resources/app_name} | "{E32C49B0-EC75-460B-8D9C-FD200EB6A2F0}" = dir=out | name=@{microsoft.bingfinance_3.0.4.344_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/brandedapptitle} | "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstoreesources.pri?ms-resource://winstore/resources/displayname} | "{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn | "{EE583A72-93CD-4C12-9C5D-799FB23B624B}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{F60817D2-5FB1-4A5A-A553-ABDC704BDBBD}" = dir=in | name=@{microsoft.reader_6.2.9200.20623_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client | "{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client | "{FFD60544-8D03-45FE-A0C9-FED628CF78FA}" = dir=in | name=skype | "TCP Query User{97B08505-0749-4BF7-963A-BF0A8A95F17F}C:\users\michał\appdataoaming\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\users\michał\appdataoaming\utorrent\utorrent.exe | "UDP Query User{9C8047C1-22E5-4C06-B4CE-45351909754C}C:\users\michał\appdataoaming\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\users\michał\appdataoaming\utorrent\utorrent.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1334eac7-d6ef-4177-8780-05c963853cd3}" = Intel(R) PRO/Wireless Driver "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{2315B23D-3E21-4920-837D-AE6460934ECB}" = FIFA 09 "{23D486D4-FBE0-40F3-A245-E4D56D094764}" = Intel(R) WiDi "{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64) "{7288D4E1-8050-4B81-B9EC-F812D17AD693}" = Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2010 "{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 "{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}" = ASUS Power4Gear Hybrid "{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel" = Ansel "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 375.63 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 375.63 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.11.4.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus Update 2.11.4.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.16.0318 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 2.11.4.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService" = NVIDIA GeForce Experience Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer" = NVIDIA Display Container "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS" = NVIDIA Display Container LS "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 2.11.4.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = SHIELD Wireless Controller Driver "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.40 "{D3415F15-8C15-328C-933C-9075E60843CA}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK "{D61F48DA-627B-404E-9315-32A651B18B64}" = Intel® PROSet/Wireless WiFi Software "{DA2600C1-6BDF-4FD1-1211-148929CC1385}" = Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology "{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64 "{EF79C448-6946-4D71-8134-03407888C054}" = Shared C Run-time for x64 "{F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}" = Intel® Trusted Connect Service Client "5AB9160B769DD2E134ADCB8010377DECA2479378" = Windows Driver Package - ASUS (ATP) Mouse (11/09/2012 1.0.0.153) "CPUID HWMonitor_is1" = CPUID HWMonitor 1.30 "DAEMON Tools Lite" = DAEMON Tools Lite "Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) "Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK" = Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) "TeamSpeak 3 Client" = TeamSpeak 3 Client "VulkanRT1.0.26.0" = Vulkan Run Time Libraries 1.0.26.0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0454BB9A-2A7A-4214-BDFF-937F7A711A44}" = Windows Live Communications Platform "{0969AF05-4FF6-4C00-9406-43599238DE0D}" = ASUS Splendid Video Enhancement Technology "{0DF95460-2887-4011-9344-1959CDF18ADC}" = Photo Common "{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 "{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}" = ASUS LifeFrame3 "{2315B23D-3E21-4920-837D-AE6460934ECB}" = FIFA 09 "{2A078A2B-E2C8-43A3-862C-DC57090AB7C2}" = Movie Maker "{30F99474-EBE3-4134-A02B-F6CD38CFE243}" = Photo Gallery "{49110532-D289-4BFF-807C-45B782E66A7C}" = Photo Common "{4CCBD1F4-CEEC-452A-9CB8-46564B501315}" = Windows Live UX Platform "{4D3286A6-F6AB-498A-82A4-E4F040529F3D}" = ASUS Smart Gesture "{56232E3D-7EA9-45E0-A371-26CD80510AF7}" = Windows Live UX Platform Language Pack "{5ECB4963-1089-457F-AE22-D08CDCF9D974}" = League of Legends "{63824BC0-B747-43F3-9863-1066D64AD919}" = Photo Gallery "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}" = Windows Live PIMT Platform "{6CEA775F-E70A-4D72-A3B4-1EB3A5AD4B5C}" = Windows Live Essentials "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{749F674B-2674-47E8-879C-5626A06B2A91}" = ASUS InstantOn "{7595CAD2-87D0-4D01-AC02-3FDD3A891BB8}" = Galeria fotografii "{797DC296-ADC5-4A08-8CBC-AEB0D6F4B249}" = Windows Live Essentials "{7E9A63B3-8572-4A4B-9F87-3C2A873BBC55}" = Windows Live UX Platform Language Pack "{7f51bdb9-ee21-49ee-94d6-90afc321780e}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{857BC375-BCFB-474E-9BD9-7EBB18EC55E0}" = Windows Live Essentials "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}" = Windows Live SOXE Definitions "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110 "{8E6E8CBB-8E58-493C-943F-4664F5F2FEDB}" = Movie Maker "{8F21291E-0444-4B1D-B9F9-4370A73E346D}" = WinFlash "{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2010 "{90140000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2010 "{90140000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2010 "{90140000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2010 "{90140000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2010 "{90140000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2010 "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2010 "{90140000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2010 "{90140000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2010 "{90140000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2010 "{90140000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2010 "{90140000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2010 "{90150000-0138-0409-0000-0000000FF1CE}" = Microsoft Office "{9093B0D5-EA59-4C9E-A2E3-CC130138DFCD}" = Fotogaléria "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader "{9EDF46F0-2D4E-4C00-B2B6-0660666E9F60}" = Movie Maker "{A035950F-15BA-41C0-9D8F-165FC0536012}" = Movie Maker "{A1FBD2B3-6768-472D-BA46-C00EACBCE16C}" = Fotogalerie "{A47EA9D4-BB87-415E-9239-28860434E5A0}" = Movie Maker "{A7E73DE5-E5FD-4923-9D88-E09ECD1F3545}" = Podstawowe programy Windows Live "{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}" = ASUS USB Charger Plus "{AA82E5EF-70C2-41CB-8432-309078304CBB}" = Photo Common "{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}" = ATK Package "{AC76BA86-7AD7-FFFF-7B44-AA0000000001}" = Adobe Reader X MUI "{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}" = Windows Live Installer "{C4D82144-B2D5-4A0E-A470-16F13EBC5BCB}" = Windows Live Essentials "{C67BC332-A59A-4D40-977F-664F60AB21D8}" = Photo Common "{c9967fbd-e3c3-4ed0-992a-5b33260f2944}" = Oprogramowanie Intel® PROSet/Wireless "{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}" = Windows Live Photo Common "{DC06C90B-C5BE-42F6-B74D-A9503170998C}" = ASUS Product Demo Movie "{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = ASUSDVD "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E18F981B-401C-4D90-BC57-D8903564D558}" = Windows Live UX Platform Language Pack "{E50E3DBC-46AA-4827-B2A6-F995D81DF526}" = Fotótár "{EB91007A-0110-42A6-B869-2709955A9B2A}" = Photo Common "{ED6C77F9-4D7E-447C-9EC0-9A212D075535}" = Movie Maker "{F09DD76B-D3D3-4558-B5BC-F1EEA6E00162}" = Windows Live UX Platform Language Pack "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F21F0424-B2FF-40BF-A984-9E0D7FB4C97E}" = Windows Live UX Platform Language Pack "{f65db027-aff3-4070-886a-0d87064aabb1}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 "{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 "{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}" = ASUS Live Update "{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) SDK for OpenCL - CPU Only Runtime Package "{FE7C0B3D-50B9-4951-BE78-A321CBF86552}" = Windows Live SOXE "Adobe Flash Player NPAPI" = Adobe Flash Player 23 NPAPI "Adventure Island_is1" = Adventure Island "ASUS WebStorage" = ASUS WebStorage Sync Agent "HD Tune_is1" = HD Tune 2.55 "InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = ASUSDVD "League of Legends 4.1.2" = League of Legends "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware wersja 2.2.1.1043 "Mozilla Firefox 49.0.2 (x86 pl)" = Mozilla Firefox 49.0.2 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "MyBitCast" = MyBitCast 2.0 "Office14.PROPLUS" = Microsoft Office Professional Plus 2010 "Opera 41.0.2353.46" = Opera Stable 41.0.2353.46 "WinLiveSuite" = Windows Live Essentials "WinRAR archiver" = WinRAR 5.31 (32-bit) [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "CodeBlocks" = CodeBlocks "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 2016-10-03 08:29:34 | Computer Name = Michal | Source = Microsoft-Windows-LocationProvider | ID = 2006 Description = Error - 2016-10-04 16:03:36 | Computer Name = Michal | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2016-10-09 08:04:23 | Computer Name = Michal | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2016-10-13 05:09:05 | Computer Name = Michal | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2016-10-17 15:49:40 | Computer Name = Michal | Source = Microsoft-Windows-LocationProvider | ID = 2006 Description = Error - 2016-10-19 09:00:29 | Computer Name = Michal | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2016-10-22 12:01:11 | Computer Name = Michal | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2016-10-23 07:02:44 | Computer Name = Michal | Source = Customer Experience Improvement Program | ID = 1008 Description = Error - 2016-10-24 18:11:18 | Computer Name = Michal | Source = Application Hang | ID = 1002 Description = Program rads_user_kernel.exe w wersji 0.0.0.0 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 16d8 Godzina rozpoczęcia: 01d22e4384bd4230 Godzina zakończenia: 2 Ścieżka aplikacji: D:\lol\RADS\systemads_user_kernel.exe raportu: c80f3805-9a36-11e6-be89-685d439f1e91 Identyfikator Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error - 2016-10-26 07:42:41 | Computer Name = Michal | Source = Customer Experience Improvement Program | ID = 1008 Description = [ System Events ] Error - 2016-09-22 12:04:40 | Computer Name = Michal | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 23:02:18 na ?2016-?09-?21 było nieoczekiwane. Error - 2016-09-22 14:31:38 | Computer Name = Michal | Source = Ntfs | ID = 55 Description = Wykryto uszkodzenie w strukturze systemu plików woluminu OS. W strukturze indeksu systemu plików znaleziono uszkodzenie. Numer odwołania do pliku: 0x200000001aa67. Nazwa pliku: „\Windows\System32\config". Atrybut uszkodzonego indeksu: „:$I30:$INDEX_ALLOCATION". Error - 2016-09-25 13:00:26 | Computer Name = Michal | Source = DCOM | ID = 10010 Description = Error - 2016-09-28 04:36:37 | Computer Name = Michal | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 21:59:12 na ?2016-?09-?27 było nieoczekiwane. Error - 2016-09-29 15:06:58 | Computer Name = Michal | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 21:59:21 na ?2016-?09-?28 było nieoczekiwane. Error - 2016-09-29 15:51:05 | Computer Name = Michal | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 21:06:58 na ?2016-?09-?29 było nieoczekiwane. Error - 2016-10-03 08:39:35 | Computer Name = Michal | Source = Ntfs | ID = 55 Description = Wykryto uszkodzenie w strukturze systemu plików woluminu OS. W strukturze indeksu systemu plików znaleziono uszkodzenie. Numer odwołania do pliku: 0x200000001aa67. Nazwa pliku: „\Windows\System32\config". Atrybut uszkodzonego indeksu: „:$I30:$INDEX_ALLOCATION". Error - 2016-10-09 13:48:24 | Computer Name = Michal | Source = EventLog | ID = 6008 Description = Poprzednie zamknięcie systemu przy 14:26:42 na ?2016-?10-?09 było nieoczekiwane. Error - 2016-10-14 08:55:17 | Computer Name = Michal | Source = DCOM | ID = 10010 Description = Error - 2016-10-14 08:55:19 | Computer Name = Michal | Source = DCOM | ID = 10010 Description = < End of report > Zrodlo: http://wklej.se/qwe12356777