ADVERTISEMENT

Addition.txt

Jak usunąć YOURSITES 123? Szukam instrukcji do stworzenia fixa

Witam, Mnie niestety też dopadło to coś Jest jakas instruckja do tworzenia fixa ?


Download file - link to post

Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:09-12-2015
Uruchomiony przez Małgorzata (2015-12-11 21:23:50)
Uruchomiony z C:\Users\Małgorzata\Downloads
Windows 8.1 Pro (X64) (2014-12-28 15:21:22)
Tryb startu: Normal
==========================================================


==================== Konta użytkowników: =============================

Administrator (S-1-5-21-2880306748-461257826-4214308910-500 - Administrator - Disabled)
Gość (S-1-5-21-2880306748-461257826-4214308910-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2880306748-461257826-4214308910-1009 - Limited - Enabled)
Małgorzata (S-1-5-21-2880306748-461257826-4214308910-1001 - Administrator - Enabled) = & gt; C:\Users\Małgorzata

==================== Centrum zabezpieczeń ========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Zainstalowane programy ======================

(W fixlist dozwolone tylko załączanie programów adware z flagą " Hidden " w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)

µTorrent (HKLM-x32\...\uTorrent) (Version: 3.0.0 - )
Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.235 - Adobe Systems Incorporated)
AMD Catalyst Install Manager (HKLM\...\{8D003401-9F9A-FD55-2D11-F75FD23F0CE7}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.)
AMD VISION Engine Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.3.2223 - AVAST Software)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd)
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
GG (HKU\S-1-5-21-2880306748-461257826-4214308910-1001\...\GG) (Version: 12 - GG Network S.A.)
globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden & lt; ==== UWAGA
Heroes of Might and Magic III - Złota Edycja (HKLM-x32\...\{8B743AA0-53B2-11D2-808A-00600895FB43}) (Version: 1.0 - )
HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)
Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation)
K-Lite Mega Codec Pack 10.9.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.9.0 - )
KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 3.9.1.134 - PandoraTV)
Malwarebytes Anti-Malware wersja 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Metric Collection SDK (x32 Version: 1.1.0012.00 - Lenovo Group Limited) Hidden
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41105.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Mozilla Firefox 42.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 42.0 (x86 pl)) (Version: 42.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 42.0.0.5780 - Mozilla)
NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - )
Need For Speed™ World (HKLM-x32\...\{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1) (Version: 1.0.0.1599 - Electronic Arts)
OEM Application Profile (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
OpenFM (HKU\S-1-5-21-2880306748-461257826-4214308910-1001\...\OpenFM) (Version: 2 - GG Network S.A.)
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.)
Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation)
Qualcomm Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Qualcomm Atheros)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.3.730.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6714 - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.2.9200.29040 - Realtek Semiconductor Corp.)
Scooby-Doo(TM), Terror Kamiennego Smoka (HKLM-x32\...\{BE31C725-53F4-495E-B0C0-4983EA2525C0}) (Version: - )
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Setup (HKLM-x32\...\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}) (Version: - ) & lt; ==== UWAGA
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
SopCast 3.9.6 (HKLM-x32\...\SopCast) (Version: 3.9.6 - www.sopcast.com)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.5.3.3 - Synaptics Incorporated)
The Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.0.631 - Electronic Arts)
TuneUp Utilities Language Pack (pl-PL) (x32 Version: 13.0.2020.84 - TuneUp Software) Hidden
Warblade (HKLM-x32\...\Warblade_is1) (Version: - EMV Software)
WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)

==================== Niestandardowe rejestracje CLSID (filtrowane): ==========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

CustomCLSID: HKU\S-1-5-21-2880306748-461257826-4214308910-1001_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 - & gt; C:\Users\Małgorzata\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll (GG Network S.A.)

==================== Punkty Przywracania systemu =========================

21-11-2015 19:46:43 Zaplanowany punkt kontrolny
30-11-2015 18:08:51 Zaplanowany punkt kontrolny
10-12-2015 19:25:43 Windows Update

==================== Hosts - zawartość: ===============================

(Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)

2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts


==================== Zaplanowane zadania (filtrowane) =============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

Task: {0A5BB866-56B6-4B0B-BF46-B095184ADF17} - System32\Tasks\{00FA56CA-5BDF-4215-BB6C-E5E82199122B} = & gt; Firefox.exe hxxp://ui.skype.com/ui/0/7.1.0.105/pl/abandoninstall?page=tsProgressBar
Task: {0CF0B1A2-400B-42F4-8014-C2749B8B9E84} - System32\Tasks\{228DC587-9312-4B6B-A4D1-6CF497CBB58A} = & gt; Firefox.exe hxxp://ui.skype.com/ui/0/7.3.0.101/pl/abandoninstall?page=tsMain
Task: {26C851DB-56DC-4A90-A302-4A6C6E079EF4} - System32\Tasks\AutoKMS = & gt; C:\Windows\AutoKMS\AutoKMS.exe [2014-12-28] ()
Task: {30AC1257-24C3-49BC-80FB-306A17870774} - System32\Tasks\{16887A05-0204-4C3D-BA39-DA29AD55C23F} = & gt; pcalua.exe -a C:\Users\Małgorzata\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=ima
Task: {39FA4CA1-CC83-47DE-8860-F6860409DFD2} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB = & gt; C:\Windows\system32\MRT.exe [2015-12-11] (Microsoft Corporation)
Task: {40FD02FF-D4B0-4DE4-9597-957D074F5B60} - System32\Tasks\Adobe Flash Player Updater = & gt; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-10] (Adobe Systems Incorporated)
Task: {5ABBFF81-2EF0-4340-83A1-6EEF72108443} - System32\Tasks\avast! Emergency Update = & gt; C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-07-21] (AVAST Software)
Task: {6E3AC1CD-77C0-47F0-B95E-E11BE48A8F10} - System32\Tasks\{CE2D1201-2B6F-4FD2-A718-F1C11955E9D4} = & gt; pcalua.exe -a C:\Users\Małgorzata\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=cornl
Task: {A36D0EF7-2A54-4909-ADD7-200262BAB09A} - \Inst_Rep - & gt; Brak pliku & lt; ==== UWAGA
Task: {A90E91F1-1488-43E5-AACD-87622F0B69CF} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 = & gt; C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-08] (Lenovo)
Task: {C9A726BD-BE03-43A5-BFD4-4987778DC369} - System32\Tasks\{A8D40AA2-4F20-4658-9B0D-CAA29138F071} = & gt; Firefox.exe hxxp://ui.skype.com/ui/0/7.2.0.103/pl/go/help.faq.installer?LastError=1603
Task: {DDC388BB-37A5-4875-A795-8AB2F3635CB1} - System32\Tasks\{B8A00A42-61D6-4BA6-AF8E-5DEC7E06EE3D} = & gt; Firefox.exe hxxp://ui.skype.com/ui/0/7.1.0.105/pl/abandoninstall?page=tsProgressBar
Task: {FC353D7A-7CAC-422D-B63C-A05E8480E0B0} - System32\Tasks\AVAST Software\Avast settings backup = & gt; C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2015-12-03] (AVAST Software)

(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job = & gt; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\BDs9KcKHhiGGMXh.job = & gt; C:\Users\Ma�gorzata\AppData\Roaming\BDs9KcKHhiGGMXh.exe & lt; ==== UWAGA
Task: C:\Windows\Tasks\CEJYRE.job = & gt; C:\Users\Ma�gorzata\AppData\Roaming\CEJYRE.exe & lt; ==== UWAGA
Task: C:\Windows\Tasks\k33WU4iVamn1omGgH1TMVN4g.job = & gt; C:\Users\Ma�gorzata\AppData\Roaming\k33WU4iVamn1omGgH1TMVN4g.exe & lt; ==== UWAGA
Task: C:\Windows\Tasks\pyYgHp5WOdltE3g.job = & gt; C:\Users\Ma�gorzata\AppData\Roaming\pyYgHp5WOdltE3g.exe & lt; ==== UWAGA
Task: C:\Windows\Tasks\XAPEKCH.job = & gt; C:\Users\Ma�gorzata\AppData\Roaming\XAPEKCH.exe & lt; ==== UWAGA

==================== Skróty =============================

(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)

ShortcutWithArgument: C:\Users\Małgorzata\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - & gt; C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) - & gt; hxxp://www.yoursites123.com/?type=sc & ts=1449653398 & z=ec47e175d163be9dbd9bb2ag7z1zbt1q9wececat8b & from=ient07021 & uid=HitachiXHTS547550A9E384_J2150050FMURLCFMURLCX & lt; ==== UWAGA
ShortcutWithArgument: C:\Users\Małgorzata\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WorldofTanks\WorldofTanks.lnk - & gt; C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) - & gt; hxxp://www.yoursites123.com/?type=sc & ts=1449653398 & z=ec47e175d163be9dbd9bb2ag7z1zbt1q9wececat8b & from=ient07021 & uid=HitachiXHTS547550A9E384_J2150050FMURLCFMURLCX & lt; ==== UWAGA
ShortcutWithArgument: C:\Users\Małgorzata\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk - & gt; C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) - & gt; hxxp://www.yoursites123.com/?type=sc & ts=1449653398 & z=ec47e175d163be9dbd9bb2ag7z1zbt1q9wececat8b & from=ient07021 & uid=HitachiXHTS547550A9E384_J2150050FMURLCFMURLCX & lt; ==== UWAGA
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk - & gt; C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) - & gt; hxxp://www.yoursites123.com/?type=sc & ts=1449653398 & z=ec47e175d163be9dbd9bb2ag7z1zbt1q9wececat8b & from=ient07021 & uid=HitachiXHTS547550A9E384_J2150050FMURLCFMURLCX & lt; ==== UWAGA
ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk - & gt; C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) - & gt; hxxp://www.yoursites123.com/?type=sc & ts=1449653398 & z=ec47e175d163be9dbd9bb2ag7z1zbt1q9wececat8b & from=ient07021 & uid=HitachiXHTS547550A9E384_J2150050FMURLCFMURLCX & lt; ==== UWAGA

==================== Załadowane moduły (filtrowane) ==============

2013-08-26 01:28 - 2013-08-26 01:28 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2013-08-26 01:28 - 2013-08-26 01:28 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2015-07-21 07:33 - 2015-07-21 07:33 - 00102864 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-07-21 07:32 - 2015-07-21 07:32 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-12-09 10:37 - 2015-12-09 10:37 - 02803200 _____ () C:\Program Files\AVAST Software\Avast\defs\15120804\algo.dll
2015-12-11 20:58 - 2015-12-11 20:58 - 02803200 _____ () C:\Program Files\AVAST Software\Avast\defs\15121102\algo.dll
2015-07-21 07:33 - 2015-07-21 07:33 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll

==================== Alternate Data Streams (filtrowane) =========

(Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.)

AlternateDataStreams: C:\ProgramData\TEMP:56E2E879

==================== Tryb awaryjny (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość " AlternateShell " zostanie przywrócona.)


==================== EXE - Powiązania (filtrowane) ===============

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.)


==================== Internet Explorer - Witryny zaufane i z ograniczeniami ===============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)

IE trusted site: HKU\S-1-5-21-2880306748-461257826-4214308910-1001\...\localhost - & gt; localhost
IE trusted site: HKU\S-1-5-21-2880306748-461257826-4214308910-1001\...\webcompanion.com - & gt; hxxp://webcompanion.com

==================== Inne obszary ============================

(Obecnie brak automatycznej naprawy dla tej sekcji.)

HKU\S-1-5-21-2880306748-461257826-4214308910-1001\Control Panel\Desktop\\Wallpaper - & gt; D:\Zdjęcia\Sandra\12189148_1248033248555976_1954368828971849930_n.jpg
DNS Servers: 192.168.1.254 - 8.8.8.8
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System = & gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Zapora systemu Windows [funkcja włączona]

==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==

(Obecnie brak automatycznej naprawy dla tej sekcji.)

HKLM\...\StartupApproved\Run32: = & gt; " SmartWeb "
HKU\S-1-5-21-2880306748-461257826-4214308910-1001\...\StartupApproved\StartupFolder: = & gt; " SmartWeb.lnk "
HKU\S-1-5-21-2880306748-461257826-4214308910-1001\...\StartupApproved\Run: = & gt; " Web Companion "

==================== Reguły Zapory systemu Windows (filtrowane) ===============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

FirewallRules: [vm-monitoring-nb-session] = & gt; (Allow) LPort=139
FirewallRules: [TCP Query User{BF54F20C-C967-48C6-BB5C-13698471F218}C:\program files (x86)\skype\phone\skype.exe] = & gt; (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{FABAEF3E-8589-4298-BD2A-AEB0D40C3B22}C:\program files (x86)\skype\phone\skype.exe] = & gt; (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{AEEC52F2-B9A7-444F-BFC1-25B91B5C2E71}] = & gt; (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{7B529CE8-AE68-401E-A926-A0BBD0AB61E9}] = & gt; (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{3415F446-870B-49B1-880F-D302CE19C021}] = & gt; (Allow) C:\Program Files (x86)\Qualcomm Atheros\Driver\otp_patch_for_installer\nart.exe
FirewallRules: [TCP Query User{CD1B10CF-C7C2-48F0-B434-4D6C8DB06CB5}C:\programdata\electronic arts\need for speed world\data\nfsw.exe] = & gt; (Allow) C:\programdata\electronic arts\need for speed world\data\nfsw.exe
FirewallRules: [UDP Query User{925FC8A1-06A1-4AA2-8D36-CC2F5D1236D9}C:\programdata\electronic arts\need for speed world\data\nfsw.exe] = & gt; (Allow) C:\programdata\electronic arts\need for speed world\data\nfsw.exe
FirewallRules: [{FAB17C54-DC62-414E-A8CB-7D7B981C3F27}] = & gt; (Block) C:\programdata\electronic arts\need for speed world\data\nfsw.exe
FirewallRules: [{48BD6CFB-DE2E-49B3-9C36-C4D0284A666F}] = & gt; (Block) C:\programdata\electronic arts\need for speed world\data\nfsw.exe
FirewallRules: [{362630EC-9F01-4024-A62A-FC9C1A333E9F}] = & gt; (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [{E7FEC87C-85B8-4749-8C39-B9392B8BB29A}] = & gt; (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [{0AEB40F1-8181-4540-91E2-03DFF056E8F3}] = & gt; (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{5B24D692-F30F-435C-A894-0623BFEFF561}] = & gt; (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{3767B76E-DCF0-423C-9078-8F071CC4B20C}] = & gt; (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
FirewallRules: [{69062DE2-940D-4F2A-B1E2-764E77B3EBC2}] = & gt; (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
FirewallRules: [{D0F440D2-0CA1-4AC9-80E8-A995B8C276F5}] = & gt; (Allow) C:\ProgramData\Battle.net\Agent\Agent.3668\Agent.exe
FirewallRules: [{3916AE7A-D239-465D-82E7-D1DE3CB854CD}] = & gt; (Allow) C:\ProgramData\Battle.net\Agent\Agent.3668\Agent.exe
FirewallRules: [{3DD801C4-E906-4027-BC0B-EE870BC9844E}] = & gt; (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe
FirewallRules: [{D3779D1A-4310-4F2E-A17D-FE4E16C964C3}] = & gt; (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe
FirewallRules: [{E99AAD8A-59AB-4984-8F6F-7CB53F0DE6C0}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{DC316732-5CBB-4296-A640-E3CD27C271C8}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{D101FA5D-7862-4395-8DE9-77AC4134DA87}D:\sniper elite\sniperelite.exe] = & gt; (Allow) D:\sniper elite\sniperelite.exe
FirewallRules: [UDP Query User{D0C9856D-6E67-45E4-AD98-84DDDF2C1BFB}D:\sniper elite\sniperelite.exe] = & gt; (Allow) D:\sniper elite\sniperelite.exe
FirewallRules: [{BF68592E-9D63-4692-9D8E-73DE977C4CD3}] = & gt; (Block) D:\sniper elite\sniperelite.exe
FirewallRules: [{00EDBD20-56D7-4650-9A80-09CD2BE5930F}] = & gt; (Block) D:\sniper elite\sniperelite.exe
FirewallRules: [TCP Query User{424D1D39-F3C0-4C0B-B3A4-1C9B1A0BC36B}D:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe] = & gt; (Allow) D:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe
FirewallRules: [UDP Query User{F57C7512-E22A-4C03-98EB-EB764B3D0D20}D:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe] = & gt; (Allow) D:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe
FirewallRules: [TCP Query User{50AA86DB-D34D-4FD3-8233-CFF4CE217441}C:\windows\syswow64\dplaysvr.exe] = & gt; (Allow) C:\windows\syswow64\dplaysvr.exe
FirewallRules: [UDP Query User{4A2A9977-4518-4EE8-9344-9A4E21CBB83A}C:\windows\syswow64\dplaysvr.exe] = & gt; (Allow) C:\windows\syswow64\dplaysvr.exe
FirewallRules: [{7E25175E-C8C0-4519-8C53-462D1D772EE5}] = & gt; (Block) C:\windows\syswow64\dplaysvr.exe
FirewallRules: [{CE969067-8C27-4C1F-A66D-F28D9D83C0C3}] = & gt; (Block) C:\windows\syswow64\dplaysvr.exe
FirewallRules: [{29B0D88B-DC0C-4B41-BAAB-87772CDB1EF5}] = & gt; (Block) D:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe
FirewallRules: [{F4F5F3DB-5702-4A66-8FB0-3F918CE57589}] = & gt; (Block) D:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe
FirewallRules: [TCP Query User{AF59ECD7-12C1-41B2-97F9-CEE89514E4D2}C:\program files (x86)\mozilla firefox\firefox.exe] = & gt; (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{F243C73A-E952-42E2-9BA4-9FFF46BBB5B4}C:\program files (x86)\mozilla firefox\firefox.exe] = & gt; (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [TCP Query User{C7DF26CC-8B48-4E80-802D-A68AC6AC2FE4}C:\program files (x86)\sopcast\sopcast.exe] = & gt; (Allow) C:\program files (x86)\sopcast\sopcast.exe
FirewallRules: [UDP Query User{BC3A2165-81F5-4DBF-BA67-22DF623BF95D}C:\program files (x86)\sopcast\sopcast.exe] = & gt; (Allow) C:\program files (x86)\sopcast\sopcast.exe
FirewallRules: [{7694FED5-B9C6-4D0F-BDEC-254C3CB8D493}] = & gt; (Block) C:\program files (x86)\sopcast\sopcast.exe
FirewallRules: [{3423F600-8256-466F-BD53-3E4244590DCF}] = & gt; (Block) C:\program files (x86)\sopcast\sopcast.exe
FirewallRules: [TCP Query User{A44F7101-DAA3-4E62-AC0C-BF0933C17E70}C:\users\małgorzata\downloads\nowy folder\rocknesx.exe] = & gt; (Allow) C:\users\małgorzata\downloads\nowy folder\rocknesx.exe
FirewallRules: [UDP Query User{36B7F10C-BF74-4B72-A348-1DF682A22596}C:\users\małgorzata\downloads\nowy folder\rocknesx.exe] = & gt; (Allow) C:\users\małgorzata\downloads\nowy folder\rocknesx.exe
FirewallRules: [TCP Query User{95D8341E-BDDE-4286-9C15-46A8929569DC}C:\windows\syswow64\dpnsvr.exe] = & gt; (Allow) C:\windows\syswow64\dpnsvr.exe
FirewallRules: [UDP Query User{E8F95EC6-5738-45D6-91A1-AC77E7962231}C:\windows\syswow64\dpnsvr.exe] = & gt; (Allow) C:\windows\syswow64\dpnsvr.exe
FirewallRules: [{A3203A03-C93D-4754-A290-E383804A2249}] = & gt; (Block) C:\users\małgorzata\downloads\nowy folder\rocknesx.exe
FirewallRules: [{D4C7AE83-4749-4D3C-B6B5-DD58633BC4CE}] = & gt; (Block) C:\users\małgorzata\downloads\nowy folder\rocknesx.exe
FirewallRules: [{842FB2FE-694A-4D2F-A50F-05C9DA640E1A}] = & gt; (Block) C:\windows\syswow64\dpnsvr.exe
FirewallRules: [{1DB4D0DA-D91D-45AD-99AC-A1D63921A2C5}] = & gt; (Block) C:\windows\syswow64\dpnsvr.exe
FirewallRules: [TCP Query User{41500FFF-2DD9-4068-9F87-6BC7CBFE016F}C:\games\call of duty world at war\codwaw.exe] = & gt; (Allow) C:\games\call of duty world at war\codwaw.exe
FirewallRules: [UDP Query User{18323408-E05C-43FF-B551-4172675C88C0}C:\games\call of duty world at war\codwaw.exe] = & gt; (Allow) C:\games\call of duty world at war\codwaw.exe
FirewallRules: [{24ADCCCA-E821-4358-AE95-0F5F386FF471}] = & gt; (Block) C:\games\call of duty world at war\codwaw.exe
FirewallRules: [{8B164107-F092-475F-8B66-712188214170}] = & gt; (Block) C:\games\call of duty world at war\codwaw.exe
FirewallRules: [TCP Query User{AB345F3D-9EFA-441C-B53E-EDA5D5ABAC76}D:\call of duty black ops ii\t6sp.exe] = & gt; (Allow) D:\call of duty black ops ii\t6sp.exe
FirewallRules: [UDP Query User{8075C64C-C92F-4F90-9512-5C681CA2AB03}D:\call of duty black ops ii\t6sp.exe] = & gt; (Allow) D:\call of duty black ops ii\t6sp.exe
FirewallRules: [{CC574704-67E0-4AE1-944D-26C2CFDEFF8E}] = & gt; (Block) D:\call of duty black ops ii\t6sp.exe
FirewallRules: [{5FD0319A-7E00-496F-98D3-D9E6F8D14C11}] = & gt; (Block) D:\call of duty black ops ii\t6sp.exe
FirewallRules: [{A454A30C-BE74-4DAA-9AE8-1C561B187F4F}] = & gt; (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{D0043E1B-C4B3-4DE9-A873-0E03452E040F}] = & gt; (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [TCP Query User{F4DD2622-3D70-472E-9764-DDE31D1EB963}D:\call of duty black ops ii\t6mp.exe] = & gt; (Allow) D:\call of duty black ops ii\t6mp.exe
FirewallRules: [UDP Query User{1F067A90-1B37-476C-8D82-E8E7083C9A9F}D:\call of duty black ops ii\t6mp.exe] = & gt; (Allow) D:\call of duty black ops ii\t6mp.exe
FirewallRules: [{0B83CF87-C95C-481D-9416-BB607D5606F4}] = & gt; (Block) D:\call of duty black ops ii\t6mp.exe
FirewallRules: [{386D3184-BE40-44D5-8219-4618029674DC}] = & gt; (Block) D:\call of duty black ops ii\t6mp.exe
FirewallRules: [{E8C62AED-C0F1-4DDA-8CBA-D0B1C0060D04}] = & gt; (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe
FirewallRules: [{CE512540-85FC-44D7-BBDE-EFF286D093BC}] = & gt; (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{FE2444DA-10F2-4069-B330-556DFEA8944C}C:\users\małgorzata\desktop\armeniusmt2-18.08\armeniusmt2.exe] = & gt; (Block) C:\users\małgorzata\desktop\armeniusmt2-18.08\armeniusmt2.exe
FirewallRules: [UDP Query User{73B808AF-6A1D-40AE-8D61-1AB9524E5B21}C:\users\małgorzata\desktop\armeniusmt2-18.08\armeniusmt2.exe] = & gt; (Block) C:\users\małgorzata\desktop\armeniusmt2-18.08\armeniusmt2.exe
FirewallRules: [{BE7F3476-881F-4245-826F-918A08361B7F}] = & gt; (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{7641B207-242B-4DBB-A6D4-3627C352CF06}] = & gt; (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [TCP Query User{7AB0F0A9-BF40-4634-9D45-88FA17D97B57}D:\origin\armeniusmt2-18.08\armeniusmt2.exe] = & gt; (Block) D:\origin\armeniusmt2-18.08\armeniusmt2.exe
FirewallRules: [UDP Query User{2C4D32D1-8B7A-4A29-BCEC-FFE01158A42C}D:\origin\armeniusmt2-18.08\armeniusmt2.exe] = & gt; (Block) D:\origin\armeniusmt2-18.08\armeniusmt2.exe
FirewallRules: [TCP Query User{FBFEA8F9-2B5A-4B8E-8C9D-DFB84C53FAAA}D:\call of duty black ops ii\t6zm.exe] = & gt; (Allow) D:\call of duty black ops ii\t6zm.exe
FirewallRules: [UDP Query User{E6A4C103-6F1E-4291-BAF6-E3B79EC69E21}D:\call of duty black ops ii\t6zm.exe] = & gt; (Allow) D:\call of duty black ops ii\t6zm.exe
FirewallRules: [{978A91B2-BA32-4128-A47E-13B93E8EC71B}] = & gt; (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe
FirewallRules: [{1F81E9BF-E8DC-4870-AE7E-36603097CC2A}] = & gt; (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe
FirewallRules: [{93060813-807D-48DC-8EED-34841EE03391}] = & gt; (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe
FirewallRules: [{E515BF1A-CD75-4C04-A499-93F38CC43CD2}] = & gt; (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe
FirewallRules: [{633DEA0D-EF5A-4156-8360-900DFB1316BC}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{43134618-7BAD-4789-A50B-050B09625F5B}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe

==================== Wadliwe urządzenia w Menedżerze urządzeń =============

Name: Realtek PCIe FE Family Controller
Description: Realtek PCIe FE Family Controller
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Realtek
Service: RTL8168
Problem: : Your computer's system firmware does not include enough information to properly configure and use this device. To use this device, contact your computer manufacturer to obtain a firmware or BIOS update. (Code 35)
Resolution: The Multiprocessor System (MPS) table, which stores the resource assignments for the BIOS, is missing an entry for your device and needs to be updated.
Obtain a new BIOS from the system vendor.


==================== Błędy w Dzienniku zdarzeń: =========================

Dziennik Aplikacja:
==================
Error: (12/10/2015 07:25:48 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program warblade.exe w wersji 0.0.0.0 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania.

Identyfikator procesu: 16f0

Godzina rozpoczęcia: 01d1337766956b55

Godzina zakończenia: 2661

Ścieżka aplikacji: D:\Warblade\warblade.exe

Identyfikator raportu: 678fe45e-9f6b-11e5-82bc-20689d9679cf

Pełna nazwa pakietu powodującego błąd:

Identyfikator aplikacji względem pakietu powodującego błąd:

Error: (12/10/2015 07:25:45 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury ConvertStringSidToSid(S-1-5-21-2880306748-461257826-4214308910-500.bak). hr = 0x80070539, Struktura identyfikatora zabezpieczenia jest nieprawidłowa.
.


Operacja:
Zdarzenie OnIdentify
Zbieranie danych modułu zapisującego

Kontekst:
Kontekst wykonywania: Shadow Copy Optimization Writer
Identyfikator klasy modułu zapisującego: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f}
Nazwa modułu zapisującego: Shadow Copy Optimization Writer
Identyfikator wystąpienia modułu zapisującego: {8a22b9d9-f12d-4cbc-b555-28123e00f68d}

Error: (12/10/2015 11:01:53 AM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: ZARZĄDZANIE NT)
Description: There was an error with the Windows Location Provider database

Error: (12/08/2015 10:08:57 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: GOŚKA)
Description: Aktywacja aplikacji microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.

Error: (12/08/2015 10:08:52 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: GOŚKA)
Description: Aktywacja aplikacji microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.

Error: (12/08/2015 10:08:52 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: GOŚKA)
Description: Aktywacja aplikacji microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.

Error: (12/08/2015 10:08:52 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: GOŚKA)
Description: Aktywacja aplikacji microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.

Error: (12/08/2015 10:08:52 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: GOŚKA)
Description: Aktywacja aplikacji microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.

Error: (12/07/2015 04:35:37 PM) (Source: ATIeRecord) (EventID: 16391) (User: )
Description: ATI EEU maximum number of session has been surpassed

Error: (12/07/2015 04:28:20 PM) (Source: ATIeRecord) (EventID: 16391) (User: )
Description: ATI EEU maximum number of session has been surpassed


Dziennik System:
=============
Error: (12/10/2015 04:49:07 PM) (Source: DCOM) (EventID: 10010) (User: GOŚKA)
Description: {D63B10C5-BB46-4990-A94F-E40B9D520160}

Error: (12/10/2015 04:49:07 PM) (Source: DCOM) (EventID: 10010) (User: GOŚKA)
Description: {D63B10C5-BB46-4990-A94F-E40B9D520160}

Error: (12/10/2015 04:49:07 PM) (Source: DCOM) (EventID: 10010) (User: GOŚKA)
Description: {D63B10C5-BB46-4990-A94F-E40B9D520160}

Error: (12/10/2015 04:49:04 PM) (Source: DCOM) (EventID: 10010) (User: GOŚKA)
Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}

Error: (12/10/2015 04:49:04 PM) (Source: DCOM) (EventID: 10010) (User: GOŚKA)
Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}

Error: (12/10/2015 04:49:04 PM) (Source: DCOM) (EventID: 10010) (User: GOŚKA)
Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}

Error: (12/10/2015 04:49:03 PM) (Source: DCOM) (EventID: 10010) (User: GOŚKA)
Description: {D63B10C5-BB46-4990-A94F-E40B9D520160}

Error: (12/10/2015 04:49:03 PM) (Source: DCOM) (EventID: 10010) (User: GOŚKA)
Description: {D63B10C5-BB46-4990-A94F-E40B9D520160}

Error: (12/10/2015 04:49:02 PM) (Source: DCOM) (EventID: 10010) (User: GOŚKA)
Description: {D63B10C5-BB46-4990-A94F-E40B9D520160}

Error: (12/10/2015 04:49:02 PM) (Source: DCOM) (EventID: 10010) (User: GOŚKA)
Description: {D63B10C5-BB46-4990-A94F-E40B9D520160}


==================== Statystyki pamięci ===========================

Procesor: AMD E1-1200 APU with Radeon(tm) HD Graphics
Procent pamięci w użyciu: 44%
Całkowita pamięć fizyczna: 3674.27 MB
Dostępna pamięć fizyczna: 2041.32 MB
Całkowita pamięć wirtualna: 4314.27 MB
Dostępna pamięć wirtualna: 2493.32 MB

==================== Dyski ================================

Drive c: () (Fixed) (Total:331.23 GB) (Free:88.91 GB) NTFS
Drive d: (DANE) (Fixed) (Total:119.5 GB) (Free:73.9 GB) NTFS
Drive e: (RECOVERY) (Fixed) (Total:14.25 GB) (Free:1.84 GB) NTFS == & gt; [system z komponentami startowymi (pozyskano odczytując dysk)]
Drive h: (Sims3) (CDROM) (Total:5.56 GB) (Free:0 GB) UDF

==================== MBR & Tablica partycji ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 1FB83FB5)

Partition: GPT.

==================== Koniec Addition.txt ============================