• Ogłoszenie:

Win8 wolna praca i wyskakujące reklamy

Bezpieczeństwo systemów, usuwanie wirusów, dobieranie programów antywirusowych. Obowiązkowe logi w tym dziale: trzy z FRST + Gmer.

Win8 wolna praca i wyskakujące reklamy

Postprzez Rudesmen 20 Lip 2016, 12:06

reklama
Cześć
Problem z komputerem jest taki ze działa bardzo wolno i w przeglądarce czesto otwierają się nowe okna z reklamami. Poniżej zamieszczam logi i proszę o pomoc.
Kod: Zaznacz wszystko
Rezultat skanowania skrótów użytkowników (x64) Wersja: 18-07-2016
Uruchomiony przez Krystian (2016-07-19 23:50:05)
Uruchomiony z C:\Users\Krystian\Desktop
Tryb startu: Normal

==================== Skróty =============================

(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)





Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader 5.0 CE.lnk -> C:\Program Files (x86)\Adobe\Acrobat 5.0 CE\Reader\AcroRd32.exe (Adobe Systems Incorporated)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Camera.lnk -> C:\Windows\Camera\Camera.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote.lnk -> C:\Program Files (x86)\Evernote_TLauncher\Evernote.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileManager.lnk -> C:\Windows\FileManager\FileManager.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotosApp.lnk -> C:\Windows\FileManager\PhotosApp.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spotify.lnk -> C:\Program Files (x86)\Spotify\SpotifyLauncher.exe (Spotify Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Store.lnk -> C:\Windows\WinStore\WinStore.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Czytaj.to (Readme).lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Readme 3.0.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Deinstalacja programu Heroes of Might and Magic V - Dzikie Hordy.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Edytor map.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\bin\H5_MapEditor.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Heroes of Might and Magic V - Dzikie Hordy.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\bin\H5_Game.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Podręcznik do gry.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Game Manual 3.0.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Uaktualnienia.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\bin\UpgradeLauncher.exe (Nival Interactive)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Zawartość stworzona przez fanów\Instrukcja stworzona przez fanów.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\FanDocuments\Heroes5_Manual_3.0.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Zawartość stworzona przez fanów\Koło talentów.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\FanDocuments\Skillwheel.exe (Aurelain)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Linki\Strona internetowa developera.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Web\Developer.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Linki\Strona internetowa gry.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Web\Game.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Linki\Strona internetowa Wydawcy.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Web\Publisher.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Instrukcje\Generator losowych map.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Editor Documentation\HOMM5_RMG_Tutorial.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Instrukcje\Kampanie graczy.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Editor Documentation\HOMM5_Users_Campaign_Editor.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Instrukcje\Powtórki dialogów.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Editor Documentation\HOMM5_Dialogs_Replay.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Instrukcje\Powtórki walk.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Editor Documentation\HOMM5_Combat_Replay.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Instrukcje\Tryb obserwatora.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Editor Documentation\HOMM5_Spectator_Mode.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Instrukcje\Instrukcje Edytora\Funkcje Skryptów.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Editor Documentation\HOMM5_Script_Functions.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Instrukcje\Instrukcje Edytora\ID Skryptów.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Editor Documentation\HOMM5_IDs_for_Scripts.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Instrukcje\Instrukcje Edytora\Kody (cheats).lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Editor Documentation\HOMM5_CheatCodes.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Instrukcje\Instrukcje Edytora\Nowe funkcje skryptów.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Editor Documentation\HOMM5_A2_Script_Functions.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Instrukcje\Instrukcje Edytora\Nowe ID skryptów.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Editor Documentation\HOMM5_A2_IDs_for_Scripts.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Instrukcje\Instrukcje Edytora\Pojedynki własne.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Editor Documentation\HOMM5_Preset_Editor.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Instrukcje\Instrukcje Edytora\Poradnik do Edytora.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Editor Documentation\HOMM5_Editor_Practical_Guide.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Instrukcje\Instrukcje Edytora\Poziom bohatera i doświadczenie.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Editor Documentation\HOMM5_Hero_Level_and_Experience.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Instrukcje\Instrukcje Edytora\Teoria Edytora.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Editor Documentation\HOMM5_Editor_Theory.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Desktop Assist.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Desktop Assist\TosDesktopAssist.exe (TOSHIBA)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Display Utility.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartView.exe (TOSHIBA)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Password Utility.lnk -> C:\Program Files (x86)\TOSHIBA\PasswordUtility\TosPU.exe (TOSHIBA)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\Start Screen Option.lnk -> C:\Program Files\TOSHIBA\Start Screen Option\TosSSO.exe (TOSHIBA)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\System Settings.lnk -> C:\Program Files (x86)\TOSHIBA\System Setting\TOSHIBASystemSetting.exe (Toshiba Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Support\PC Health Monitor.lnk -> C:\Program Files\TOSHIBA\TPHM\TPCHViewer.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Support\Recovery Media Creator.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Recovery Media Creator\TRMCLcher.exe (Toshiba Information Equipment(Hangzhou)Co.,LTD)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Support\Service Station.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Multimedia\DTS Sound.lnk -> C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\APO3GUI.exe (DTS, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Multimedia\TOSHIBA VIDEO PLAYER.lnk -> C:\Program Files (x86)\TOSHIBA\TOSHIBA VIDEO PLAYER\SMILauncher.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Team17\Worms 3D\Usuń grę Worms 3D.lnk -> C:\Program (Brak pliku)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Team17\Worms 3D\Worms 3D.lnk -> C:\Program Files (x86)\Team17 Software Ltd\Worms3D\Launcher.exe (Team17 Software Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Team17\Worms 3D\Dokumentacja\Instrukcja użytkownika.lnk -> C:\Program Files (x86)\Team17 Software Ltd\Worms3D\Instrukcja\instrukcja.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Team17\Worms 3D\Dokumentacja\Plik CzytajTo.lnk -> C:\Program Files (x86)\Team17 Software Ltd\Worms3D\readme.html ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Team17\Worms 3D\Dokumentacja\Poradnik do gry.lnk -> C:\Program Files (x86)\Team17 Software Ltd\Worms3D\Instrukcja\Poradnik.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Easy Transfer.lnk -> C:\Windows\System32\migwiz\migwiz.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk -> C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\javacpl.exe (Oracle Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Get Help.lnk -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\java.exe (Oracle Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visit Java.com.lnk -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\java.exe (Oracle Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone\Hearthstone.lnk -> C:\Program Files (x86)\Hearthstone\Hearthstone Beta Launcher.exe (Blizzard Entertainment)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fizzy\Swords and Sandals 2\Swords and Sandals 2.lnk -> C:\Program Files (x86)\Fizzy\Swords and Sandals 2\swords_sandals2_downloadable.exe (Brak pliku)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fizzy\Swords and Sandals 2\Uninstall.lnk -> C:\Program Files (x86)\Fizzy\Swords and Sandals 2\uninst.exe (Brak pliku)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios\Twierdza Krzyżowiec Extreme\Instrukcja.lnk -> C:\Program Files (x86)\Firefly Studios\Stronghold Crusader\manual\manual_en.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios\Twierdza Krzyżowiec Extreme\Readme.lnk -> C:\Program Files (x86)\Firefly Studios\Stronghold Crusader\readme.doc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios\Twierdza Krzyżowiec Extreme\Twierdza Krzyżowiec Extreme.lnk -> C:\Program Files (x86)\Firefly Studios\Stronghold Crusader\Stronghold_Crusader_Extreme.exe ( )
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios\Twierdza Krzyżowiec Extreme\Twierdza Krzyżowiec.lnk -> C:\Program Files (x86)\Firefly Studios\Stronghold Crusader\Stronghold Crusader.exe ( )
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Electronic Arts\Rejestracja produktu Electronic Arts\Rejestracja produktu Electronic Arts.lnk -> C:\Program Files (x86)\Electronic Arts\Electronic Arts Product Registration\EAPR.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DTS, Inc\DTS Sound.lnk -> C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\APO3GUI.exe (DTS, Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6 v48\Counter-Strike 1.6 v48.lnk -> C:\Gry\Counter-Strike 1.6 v48\Counter-Strike 1.6.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6 v43\Counter-Strike 1.6 v43.lnk -> C:\Gry\Counter-Strike 1.6 v43\Counter-Strike 1.6.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda.net Launcher\Bethesda.net Launcher.lnk -> C:\Program Files (x86)\Bethesda.net Launcher\BethesdaNetUpdater.exe (Bethesda Softworks)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda.net Launcher\Uninstall Bethesda.net Launcher.lnk -> C:\Program Files (x86)\Bethesda.net Launcher\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net\Battle.net.lnk -> C:\Program Files (x86)\Battle.net\Battle.net.exe (Blizzard Entertainment)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Quick Stream\AMD Quick Stream.lnk -> C:\Program Files\AMD Quick Stream\AMDQuickStream.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\AMD Catalyst Control Center.lnk -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (ATI Technologies Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk -> C:\Windows\System32\SoundRecorder.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk -> C:\Program Files\Windows Journal\Journal.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk -> C:\Users\Krystian\Documents ()
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk -> C:\Users\Krystian\Pictures ()
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-304
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Help.lnk -> C:\Windows\HelpPane.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows.Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\Links\Desktop.lnk -> C:\Users\Krystian\Desktop ()
Shortcut: C:\Users\Krystian\Links\Downloads.lnk -> C:\Users\Krystian\Downloads ()
Shortcut: C:\Users\Krystian\Links\GG dysk (krystek144-_mail_com).lnk -> C:\Users\Krystian\GG dysk (krystek144-_mail_com) ()
Shortcut: C:\Users\Krystian\Links\GG dysk (krystianmilczarek22@wp.pl).lnk -> C:\Users\Krystian\GG dysk (krystianmilczarek22@wp.pl) ()
Shortcut: C:\Users\Krystian\Links\GG dysk.lnk -> C:\Users\Krystian\GG dysk ()
Shortcut: C:\Users\Krystian\Links\RecentPlaces.lnk -> System Folder
Shortcut: C:\Users\Krystian\Favorites\GG dysk (krystek144-_mail_com).lnk -> C:\Users\Krystian\GG dysk (krystek144-_mail_com) ()
Shortcut: C:\Users\Krystian\Favorites\GG dysk (krystianmilczarek22@wp.pl).lnk -> C:\Users\Krystian\GG dysk (krystianmilczarek22@wp.pl) ()
Shortcut: C:\Users\Krystian\Favorites\GG dysk.lnk -> C:\Users\Krystian\GG dysk ()
Shortcut: C:\Users\Krystian\Documents\Heroes of the Storm\T_58779268_282@2.lnk -> C:\Users\Krystian\Documents\Heroes of the Storm\Accounts\417609805\2-Hero-1-7266680 ()
Shortcut: C:\Users\Krystian\Desktop\GG dysk (krystek144-_mail_com).lnk -> C:\Users\Krystian\GG dysk (krystek144-_mail_com) ()
Shortcut: C:\Users\Krystian\Desktop\GG dysk.lnk -> C:\Users\Krystian\GG dysk ()
Shortcut: C:\Users\Krystian\Desktop\zdjęcia II\10731174_647443945371358_3410501867548629184_n.jpg — skrót.lnk -> C:\Users\Krystian\Downloads\10731174_647443945371358_3410501867548629184_n.jpg ()
Shortcut: C:\Users\Krystian\Desktop\zdjęcia II\11075153_846786135393329_1649703685_n.jpg — skrót.lnk -> C:\Users\Krystian\Downloads\11075153_846786135393329_1649703685_n.jpg ()
Shortcut: C:\Users\Krystian\Desktop\programy\DAEMON Tools Lite.lnk -> C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (Brak pliku)
Shortcut: C:\Users\Krystian\Desktop\programy\GameRanger.lnk -> C:\Users\Krystian\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (GameRanger Technologies)
Shortcut: C:\Users\Krystian\Desktop\programy\TOSHIBA Services.lnk -> C:\ProgramData\Toshiba\TSP\ToshibaServices.ico ()
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\Acrobat Reader 5.0 CE.lnk -> C:\Program Files (x86)\Adobe\Acrobat 5.0 CE\Reader\AcroRd32.exe (Adobe Systems Incorporated)
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\Battle.net.lnk -> C:\Program Files (x86)\Battle.net\Battle.net.exe (Blizzard Entertainment)
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\Counter-Strike 1.6 v48.lnk -> C:\Gry\Counter-Strike 1.6 v48\Counter-Strike 1.6.exe ()
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\Drakensang Online.lnk -> C:\Program Files (x86)\Drakensang Online\thinclient.exe (Bigpoint GmbH)
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\Gameforge Live.lnk -> C:\Program Files (x86)\GameforgeLive\GameforgeLive.exe (Brak pliku)
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\GG dysk (krystianmilczarek22@wp.pl).lnk -> C:\Users\Krystian\GG dysk (krystianmilczarek22@wp.pl) ()
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\GG.lnk -> C:\Users\Krystian\AppData\Local\GG\Application\gghub.exe (GG Network S.A.)
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\Heroes of the Storm.lnk -> C:\Program Files (x86)\Heroes of the Storm\Heroes of the Storm.exe (Brak pliku)
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\Kosz — skrót (2).lnk -> System Folder
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\Kosz — skrót.lnk -> System Folder
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\Launch One System Care.lnk -> C:\Program Files (x86)\OneSystemCare\OneSystemCare.exe (Brak pliku)
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\OpenFM.lnk -> C:\Users\Krystian\AppData\Local\OpenFM\Application\openfm.exe ()
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Brak pliku)
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\Spotify.lnk -> C:\Program Files (x86)\Spotify\SpotifyLauncher.exe (Spotify Ltd)
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\TeamSpeak 3 Client.lnk -> C:\Users\Krystian\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe (TeamSpeak Systems GmbH)
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\Worms 3D.lnk -> C:\Program Files (x86)\Team17 Software Ltd\Worms3D\Launcher.exe (Team17 Software Ltd)
Shortcut: C:\Users\Krystian\Desktop\Nowy folder (2)\µTorrent.lnk -> C:\Users\Krystian\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
Shortcut: C:\Users\Krystian\Desktop\nid for srit\Skrót do speed.exe.lnk -> H:\nfsmostwanted\RELOADED_NFSMW\speed.exe (Brak pliku)
Shortcut: C:\Users\Krystian\Desktop\Gry\Heroes of Might and Magic III - Złota Edycja.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic III - Zlota Edycja\player.exe (Brak pliku)
Shortcut: C:\Users\Krystian\Desktop\Gry\Heroes of Might and Magic V - Dzikie Hordy.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\bin\H5_Game.exe ()
Shortcut: C:\Users\Krystian\Desktop\Gry\Twierdza Krzyżowiec Extreme.lnk -> C:\Program Files (x86)\Firefly Studios\Stronghold Crusader\Stronghold_Crusader_Extreme.exe ( )
Shortcut: C:\Users\Krystian\Desktop\Gry\Twierdza Krzyżowiec.lnk -> C:\Program Files (x86)\Firefly Studios\Stronghold Crusader\Stronghold Crusader.exe ( )
Shortcut: C:\Users\Krystian\Desktop\Cs\Counter-Strike 1.6 v43.lnk -> C:\Gry\Counter-Strike 1.6 v43\Counter-Strike 1.6.exe ()
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -> C:\Users\Krystian\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameRanger.lnk -> C:\Users\Krystian\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (GameRanger Technologies)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GG.lnk -> C:\Users\Krystian\AppData\Local\GG\Application\gghub.exe (GG Network S.A.)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenFM.lnk -> C:\Users\Krystian\AppData\Local\OpenFM\Application\openfm.exe ()
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client\TeamSpeak 3 Client.lnk -> C:\Users\Krystian\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe (TeamSpeak Systems GmbH)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client\Uninstall.lnk -> C:\Users\Krystian\AppData\Local\TeamSpeak 3 Client\Uninstall.exe (TeamSpeak Systems GmbH)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-304
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Help.lnk -> C:\Windows\HelpPane.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows.Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Drakensang Online\Drakensang Online.lnk -> C:\Program Files (x86)\Drakensang Online\thinclient.exe (Bigpoint GmbH)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Drakensang Online\Uninstall.lnk -> C:\Program Files (x86)\Drakensang Online\Uninstall.exe ()
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\SendTo\Transfer plików Bluetooth.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\GG.lnk -> C:\Users\Krystian\AppData\Local\GG\Application\ggapp.exe (GG Network S.A.)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Pełne czyszczenie śmieci.lnk -> C:\Program Files (x86)\Elex-tech\YAC\iStart.exe (Brak pliku)
Shortcut: C:\Users\Krystian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\YAC.lnk -> C:\Program Files (x86)\Elex-tech\YAC\iStart.exe (Brak pliku)
Shortcut: C:\Users\Krystian\AppData\Local\OpenFM\Application\openfm.lnk -> C:\Users\Krystian\AppData\Local\OpenFM\Application\openfm.exe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\set_1076774695_pl.lnk -> C:\U
ytkownicy\Krystian\AppData\Local\Packages\windows.immersivecontrolpanel_cw5n1h2txyewy\LocalState\Indexed\Settings\pl-PL\AAA_SettingsPagePCSystemBluetooth.settingcontent-ms (Brak pliku)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\set_1349822051_pl.lnk -> C:\U
ytkownicy\Krystian\AppData\Local\Packages\windows.immersivecontrolpanel_cw5n1h2txyewy\LocalState\Indexed\Settings\pl-PL\AAA_SettingsPagePCDiskSpace.settingcontent-ms (Brak pliku)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\set_1818532532_pl.lnk -> C:\U
ytkownicy\Krystian\AppData\Local\Packages\windows.immersivecontrolpanel_cw5n1h2txyewy\LocalState\Indexed\Settings\pl-PL\Classic_{A3C2D653-DD00-40F1-8E53-796F9BA1EE01}.settingcontent-ms (Brak pliku)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\set_1831432044_pl.lnk -> C:\U
ytkownicy\Krystian\AppData\Local\Packages\windows.immersivecontrolpanel_cw5n1h2txyewy\LocalState\Indexed\Settings\pl-PL\Classic_{60C811E8-C857-404E-98BB-EE5D83C1DF5A}.settingcontent-ms (Brak pliku)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\set_2085188527_pl.lnk -> C:\U
ytkownicy\Krystian\AppData\Local\Packages\windows.immersivecontrolpanel_cw5n1h2txyewy\LocalState\Indexed\Settings\pl-PL\AAA_SystemSettings_Device_Add.settingcontent-ms (Brak pliku)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\set_2219422569_pl.lnk -> C:\U
ytkownicy\Krystian\AppData\Local\Packages\windows.immersivecontrolpanel_cw5n1h2txyewy\LocalState\Indexed\Settings\pl-PL\AAA_SystemSettings_Radio_DeviceList.settingcontent-ms (Brak pliku)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\set_2846494135_pl.lnk -> C:\U
ytkownicy\Krystian\AppData\Local\Packages\windows.immersivecontrolpanel_cw5n1h2txyewy\LocalState\Indexed\Settings\pl-PL\AAA_SettingsGroupAppSizesList.settingcontent-ms (Brak pliku)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\set_3675407062_pl.lnk -> C:\U
ytkownicy\Krystian\AppData\Local\Packages\windows.immersivecontrolpanel_cw5n1h2txyewy\LocalState\Indexed\Settings\pl-PL\Classic_{DD338333-7000-45CC-A84D-64680D6E683D}.settingcontent-ms (Brak pliku)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_1039349799_pl.lnk -> 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
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_1610389720_pl.lnk -> 0x4C0000000114020000000000C000000000000046800000000000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000045000000090000A03900000031535053E0859FF2F94F6810AB9108002B27B3D91D00000002000000001F000000050000006B006F0073007A0000000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_1644208746_pl.lnk -> 0x4C0000000114020000000000C00000000000004680000000000000000000000000000000000000000000000000000000000000000000000000000000010000000000000000000000000000006D000000090000A06100000031535053E0859FF2F94F6810AB9108002B27B3D94500000002000000001F0000001A0000006D006300610066006500650020007300650063007500720069007400790020007300630061006E00200070006C00750073000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_1837593447_pl.lnk -> 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
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_1962053946_pl.lnk -> 0x4C0000000114020000000000C000000000000046800000000000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000069000000090000A05D00000031535053E0859FF2F94F6810AB9108002B27B3D94100000002000000001F0000001800000067006F006F0067006C00650020006300680072006F006D006500200075006E0069006E007300740061006C006C000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_2611560166_pl.lnk -> 䰀 ĔȀ  쀀  F耀                   Ā       蘂 ऀ 䄀 ㅓ偓鿲累栐ꮑࠀ⬧동─ Ȁ 
bluetooth   9Ȁ1卐卸杈祯䳞䶼反奃ᆯ餝Ȁ  ἀ ԁ 笀∀猀椀稀攀琀栀爀攀猀栀漀氀搀∀㨀 Ⰰ∀眀攀戀∀㨀嬀笀∀䌀伀一匀吀∀㨀ⴀ㈀⸀㜀㤀㘀㤀㈀ ㌀㌀㜀㄀ 㜀㘀㈀紀崀Ⰰ∀愀瀀瀀猀∀㨀嬀笀∀䌀伀一匀吀∀㨀ⴀ㔀⸀ 㤀㈀㤀㌀㌀㌀ 㐀㈀㐀㘀㄀㐀紀崀Ⰰ∀搀漀挀甀洀攀渀琀猀∀㨀嬀笀∀䌀伀一匀吀∀㨀ⴀ㘀⸀㘀㠀㘀㔀㄀㐀㠀㠀 㠀㠀㌀㘀㤀紀崀Ⰰ∀猀攀琀琀椀渀最猀∀㨀嬀笀∀䌀伀一匀吀∀㨀㄀⸀㌀㄀㠀㈀㜀㄀  ㄀㤀㠀㠀㤀㜀紀崀Ⰰ∀洀甀猀椀挀∀㨀嬀笀∀䌀伀一匀吀∀㨀ⴀ㘀⸀㘀㠀㘀㔀㄀㐀㠀㠀 㠀㠀㌀㘀㤀紀崀Ⰰ∀瀀栀漀琀漀猀愀渀搀瘀椀搀攀漀猀∀㨀嬀笀∀䌀伀一匀吀∀㨀ⴀ㘀⸀㘀㠀㘀㔀㄀㐀㠀㠀 㠀㠀㌀㘀㤀紀崀紀       
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_267314168_pl.lnk -> 䰀 ĔȀ  쀀  F耀                   Ā       䴀 ऀ 䄀 ㅓ偓鿲累栐ꮑࠀ⬧동─ Ȁ 
senseplus       
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_2707137659_pl.lnk -> 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
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_278507635_pl.lnk -> 0x4C0000000114020000000000C000000000000046800000000000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000049000000090000A03D00000031535053E0859FF2F94F6810AB9108002B27B3D92100000002000000001F000000080000007000610069006E00740069006E000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_280948867_pl.lnk -> 䰀 ĔȀ  쀀  F耀                   Ā       唀 ऀ 䤀 ㅓ偓鿲累栐ꮑࠀ⬧동ⴀ Ȁ 
control java       
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_2850936081_pl.lnk -> 0x4C0000000114020000000000C000000000000046800000000000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000071000000090000A06500000031535053E0859FF2F94F6810AB9108002B27B3D94900000002000000001F0000001C00000072006F00620069006E00200068006F006F00640020006C006500670065006E00640061002000730068006500720077006F006F0064000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_2953223049_pl.lnk -> 0x4C0000000114020000000000C00000000000004680000000000000000000000000000000000000000000000000000000000000000000000000000000010000000000000000000000000000006D000000090000A06100000031535053E0859FF2F94F6810AB9108002B27B3D94500000002000000001F00000019000000680065006100720074006800730074006F006E00650020006400650063006B00200074007200610063006B006500720000000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_3166170953_pl.lnk -> 0x4C0000000114020000000000C000000000000046800000000000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000049000000090000A03D00000031535053E0859FF2F94F6810AB9108002B27B3D92100000002000000001F000000070000006D006500740069006E00320000000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_3312665876_pl.lnk -> 0x4C0000000114020000000000C000000000000046800000000000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000065000000090000A05900000031535053E0859FF2F94F6810AB9108002B27B3D93D00000002000000001F0000001500000062006C007500650074006F006F00740068002000770020006C006100700074006F0070006900650000000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_3373635068_pl.lnk -> 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
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_3809692688_pl.lnk -> 0x4C0000000114020000000000C000000000000046800000000000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000061000000090000A05500000031535053E0859FF2F94F6810AB9108002B27B3D93900000002000000001F0000001300000062006C007500650074006F006F0074006800200077004201050163007A006E0069006B0000000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_385942201_pl.lnk -> 0x4C0000000114020000000000C000000000000046800000000000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000065000000090000A05900000031535053E0859FF2F94F6810AB9108002B27B3D93D00000002000000001F00000015000000700072007A007900770072006100630061006E00690065002000730079007300740065006D00750000000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_3916812391_pl.lnk -> 0x4C0000000114020000000000C000000000000046800000000000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000079000000090000A06D00000031535053E0859FF2F94F6810AB9108002B27B3D95100000002000000001F0000002000000062006C007500650074006F006F00740068002000770069006E0064006F00770073002000380020006A0061006B00200077004201050163007A00790007010000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_4140679254_pl.lnk -> 0x4C0000000114020000000000C000000000000046800000000000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000045000000090000A03900000031535053E0859FF2F94F6810AB9108002B27B3D91D00000002000000001F000000060000005000610069006E0074000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_429393571_pl.lnk -> 0x4C0000000114020000000000C0000000000000468000000000000000000000000000000000000000000000000000000000000000000000000000000001000000000000000000000000000000A2000000090000A06500000031535053E0859FF2F94F6810AB9108002B27B3D94900000002000000001F0000001B00000075007300740061007700690065006E006900610020007A00610070006F00720079002000730069006500630069006F007700650000000000000000003100000031535053786748796F4CDE4DBC53CD594311AF991500000002000000001F0000000100000000000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_528370355_pl.lnk -> 0x4C0000000114020000000000C00000000000004680000000000000000000000000000000000000000000000000000000000000000000000000000000010000000000000000000000000000005D000000090000A05100000031535053E0859FF2F94F6810AB9108002B27B3D93500000002000000001F000000120000007A006D00690061006E006100200068006100730042016100200077006900660069000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_591471017_pl.lnk -> 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
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_78936287_pl.lnk -> 0x4C0000000114020000000000C00000000000004680000000000000000000000000000000000000000000000000000000000000000000000000000000010000000000000000000000000000004D000000090000A04100000031535053E0859FF2F94F6810AB9108002B27B3D92500000002000000001F000000090000006900700063006F006E0066006900670000000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_820962926_pl.lnk -> 0x4C0000000114020000000000C000000000000046800000000000000000000000000000000000000000000000000000000000000000000000000000000100000000000000000000000000000049000000090000A03D00000031535053E0859FF2F94F6810AB9108002B27B3D92100000002000000001F0000000700000063007300200031002E00360000000000000000000000000000000000
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\ConnectedSearch\History\txt_875092253_pl.lnk -> 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
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\WildTangentGames.-GamesApp-_qt5r5pa5dyg8m\WTGames.lnk -> C:\Program Files\WindowsApps\WildTangentGames.-GamesApp-_1.0.3.28_x86__qt5r5pa5dyg8m ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\sMedioforToshiba.TOSHIBAMediaPlayerbysMedioTrueLin_679ekb9hp1h62\App.lnk -> C:\Program Files\WindowsApps\sMedioforToshiba.TOSHIBAMediaPlayerbysMedioTrueLin_3.1.1.33_x64__679ekb9hp1h62 ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Skyscanner.Skyscanner_623c9he0pwcym\App.lnk -> Tile and icon assets
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.ZuneVideo_8wekyb3d8bbwe\Microsoft.ZuneVideo.lnk -> C:\Program Files\WindowsApps\Microsoft.ZuneVideo_2.6.446.0_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.ZuneMusic_8wekyb3d8bbwe\Microsoft.ZuneMusic.lnk -> C:\Program Files\WindowsApps\Microsoft.ZuneMusic_2.6.672.0_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.XboxLIVEGames_8wekyb3d8bbwe\Microsoft.XboxLIVEGames.lnk -> C:\Program Files\WindowsApps\Microsoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsSoundRecorder_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsScan_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsReadingList_8wekyb3d8bbwe\Microsoft.WindowsReadingList.lnk -> Tile and icon assets
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.Calendar.lnk -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.Mail.lnk -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.People.lnk -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsCalculator_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsAlarms_8wekyb3d8bbwe\App.lnk -> Tile and icon assets
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.SkypeApp_kzf8qxf38zg5c\App.lnk -> Tile and icon assets
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.Reader_8wekyb3d8bbwe\Microsoft.Reader.lnk -> C:\Program Files\WindowsApps\Microsoft.Reader_6.4.9926.18339_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.HelpAndTips_8wekyb3d8bbwe\HelpAndTips.lnk -> C:\Program Files\WindowsApps\Microsoft.HelpAndTips_6.3.9654.20559_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.FreshPaint_8wekyb3d8bbwe\Microsoft.FreshPaint.lnk -> C:\Program Files\WindowsApps\Microsoft.FreshPaint_2.0.15133.0_x86__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingWeather_8wekyb3d8bbwe\App.lnk -> C:\Program Files\WindowsApps\Microsoft.BingWeather_3.0.4.344_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingTravel_8wekyb3d8bbwe\AppexTravel.lnk -> C:\Program Files\WindowsApps\Microsoft.BingTravel_3.0.4.336_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingSports_8wekyb3d8bbwe\AppexSports.lnk -> C:\Program Files\WindowsApps\Microsoft.BingSports_3.0.4.345_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingNews_8wekyb3d8bbwe\AppexNews.lnk -> C:\Program Files\WindowsApps\Microsoft.BingNews_3.0.4.344_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingMaps_8wekyb3d8bbwe\AppexMaps.lnk -> C:\Program Files\WindowsApps\Microsoft.BingMaps_2.1.3230.2048_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingHealthAndFitness_8wekyb3d8bbwe\AppexHealthAndFitness.lnk -> C:\Program Files\WindowsApps\Microsoft.BingHealthAndFitness_3.0.4.336_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingFoodAndDrink_8wekyb3d8bbwe\AppexFoodAndDrink.lnk -> C:\Program Files\WindowsApps\Microsoft.BingFoodAndDrink_3.0.4.336_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingFinance_8wekyb3d8bbwe\AppexFinance.lnk -> C:\Program Files\WindowsApps\Microsoft.BingFinance_3.0.4.344_x64__8wekyb3d8bbwe ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\McAfeeInc.04.McAfeeSecurityAdvisorforToshiba_m0mgz90br52t0\McAfeeCentral.lnk -> C:\Program Files\WindowsApps\McAfeeInc.04.McAfeeSecurityAdvisorforToshiba_4.5.148.1_x64__m0mgz90br52t0 ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Evernote.Skitch_q4d96b2w5wcc2\App.lnk -> C:\Program Files\WindowsApps\Evernote.Skitch_2.4.2000.1918_neutral__q4d96b2w5wcc2 ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Evernote.Evernote_q4d96b2w5wcc2\App.lnk -> C:\Program Files\WindowsApps\Evernote.Evernote_3.3.0.102_x86__q4d96b2w5wcc2 ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\EnnovaResearch.ToshibaPlaces_3s2an63h56yee\Places.Tapas.UI.Main.lnk -> C:\Program Files\WindowsApps\EnnovaResearch.ToshibaPlaces_2.2.38.0_x64__3s2an63h56yee ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\E9594ECD.Vod.pl_c1gk75f6080hw\App.lnk -> C:\Program Files\WindowsApps\E9594ECD.Vod.pl_2.0.0.2_neutral__c1gk75f6080hw ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\E9594ECD.OnetNews_c1gk75f6080hw\App.lnk -> C:\Program Files\WindowsApps\E9594ECD.OnetNews_2.0.0.7_neutral__c1gk75f6080hw ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\DeviceDoctor.7ZipOpener_mkdtfchztkfbm\App.lnk -> C:\Program Files\WindowsApps\DeviceDoctor.7ZipOpener_1.1.0.35_neutral__mkdtfchztkfbm ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\ArtifexMundi.NightmaresfromtheDeepTheCursedHeart_xmkq9zz36w32m\App.lnk -> C:\Users\Krystian\AppData\Local\Temp\ArtifexMundi.NightmaresfromtheDeepTheCursedHeart_xmkq9zz36w32m\App-l.png (Brak pliku)
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\AMZNMobileLLC.KindleforWindows8_stfe6vwa9jnbp\com.amazon.kindle.lnk -> C:\Program Files\WindowsApps\AMZNMobileLLC.KindleforWindows8_2.1.0.2_neutral__stfe6vwa9jnbp ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\Amazon.com.Amazon_343d40qqvtj1t\App.lnk -> Tile and icon assets
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\7E440FBB.DoodleGodFreeforToshiba_pvm5kvqj2rwym\App.lnk -> C:\Program Files\WindowsApps\7E440FBB.DoodleGodFreeforToshiba_2.0.0.48_x64__pvm5kvqj2rwym ()
Shortcut: C:\Users\Krystian\AppData\Local\Microsoft\Windows\Application Shortcuts\33215634.RadioZET_93pm5em6fk0sr\App.lnk -> C:\Program Files\WindowsApps\33215634.RadioZET_1.0.0.161_x64__93pm5em6fk0sr ()
Shortcut: C:\Users\Krystian\AppData\Local\GG\Application\gg.lnk -> C:\Users\Krystian\AppData\Local\GG\Application\gghub.exe (GG Network S.A.)
Shortcut: C:\Users\Public\Desktop\Bethesda.net Launcher.lnk -> C:\Program Files (x86)\Bethesda.net Launcher\BethesdaNetUpdater.exe (Bethesda Softworks)
Shortcut: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\Public\Desktop\Hearthstone.lnk -> C:\Program Files (x86)\Hearthstone\Hearthstone Beta Launcher.exe (Blizzard Entertainment)
Shortcut: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Public\Desktop\Skype.lnk -> C:\Windows\Installer\{6A0549A9-1B96-498C-ACBC-3943001FEB19}\SkypeIcon.exe ()




ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office15\FIRSTRUN.EXE (Microsoft Corporation) -> /OEM
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> -sta {C90FB8CA-3295-4462-A721-2935E83694BA}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WildTangent Games App - toshiba.lnk -> C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe (WildTangent) -> /src gamesmenu /dp toshibaemea
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\Zarejestruj grę.lnk -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic V - Dzikie Hordy\registration\RegistrationReminder.exe () -> -g Heroes of Might & Magic 5 - Tribes of the East -i 2579 -l Polish
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Manual.lnk -> C:\Program Files (x86)\TOSHIBA\Manuals\TREXLauncher.exe (TOSHIBA) -> Manual
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Toshiba Tempro.lnk -> C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe (Toshiba Europe GmbH) -> /startUI
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\eco Utility.lnk -> C:\Program Files\TOSHIBA\Teco\TecoResident.exe (TOSHIBA Corporation) -> /UI
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Utilities\TOSHIBA Hotkey.lnk -> C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe (TOSHIBA Corporation) -> /Setting
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Support\Additional Information.lnk -> C:\Program Files (x86)\TOSHIBA\Addendum\TREXLauncher.exe (TOSHIBA) -> Additional Information
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA\Support\Manual.lnk -> C:\Program Files (x86)\TOSHIBA\Manuals\TREXLauncher.exe (TOSHIBA) -> Manual
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /7
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee\McAfee SecurityCenter.lnk -> C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.) -> /desktopicon /platui
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\javacpl.exe (Oracle Corporation) -> -tab about
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\javacpl.exe (Oracle Corporation) -> -tab update
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Casual Games.lnk -> C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=000d96f5-8034-4b74-a429-b6f0b04c75f4 /src gamesmenuoem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Enthusiast Games.lnk -> C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=26352374-af55-4b53-b07b-6b0288ed97df /src gamesmenuoem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Family Games.lnk -> C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=d58eecb0-0816-11de-8c30-0800200c9a66 /src gamesmenuoem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Kids Games.lnk -> C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=3eda1e54-8889-41f5-a649-5a306789b7ef /src gamesmenuoem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All MMO Games.lnk -> C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=c3c636e0-1b04-11de-8c30-0800200c9a66 /src gamesmenuoem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\More Games - WildTangent.lnk -> C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - main\provider.exe (WildTangent) -> /id=977b5905-4d14-47f1-bbbf-7b92f596695d /src gamesmenuoem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\WildTangent Games App - toshiba.lnk -> C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe (WildTangent) -> /src gamesmenu /dp toshibaemea
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios\Twierdza Krzyżowiec Extreme\Odinstaluj grę.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{8C3727F2-8E37-49E4-820C-03B1677F53B6}\setup.exe (Macrovision Corporation) -> -runfromtemp -l0x0009 -removeonly
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Electronic Arts\Rejestracja produktu Electronic Arts\Usuń.lnk -> C:\Program Files (x86)\Common Files\InstallShield\Driver\7\Intel 32\IDriver.exe () -> /M{D7D50E0C-27DD-4999-BC05-E026B580F93A} /l1045
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\Help.lnk -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.exe (ATI Technologies Inc.) -> Start Help -help
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{fb65380e-3812-44f7-bbec-128e82369adf}\PlayTasks\0\Jewel Quest Solitaire 2.lnk -> C:\Program Files (x86)\WildGames\Jewel Quest Solitaire 2\jewelquestsolitaire2-WT.exe (WildTangent, Inc.) -> /launchgc /src gameexplorer
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{e7ba0ac0-94a2-4b33-ac4a-125fc2e1127a}\PlayTasks\0\Island Tribe.lnk -> C:\Program Files (x86)\WildGames\Island Tribe\islandtribe-WT.exe (WildTangent, Inc.) -> /launchgc /src gameexplorer
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{d8addf57-a369-460f-8a5c-2f240d8e33b7}\PlayTasks\0\Virtual Villagers 4 - The Tree of Life.lnk -> C:\Program Files (x86)\WildGames\Virtual Villagers 4 - The Tree of Life\virtualvillagers4thetreeoflife-WT.exe (WildTangent, Inc.) -> /launchgc /src gameexplorer
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{d58eecb0-0816-11de-8c30-0800200c9a66}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=d58eecb0-0816-11de-8c30-0800200c9a66 /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{c3c636e0-1b04-11de-8c30-0800200c9a66}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=c3c636e0-1b04-11de-8c30-0800200c9a66 /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{b87f2bde-5d44-4e86-bd37-a71616b35ea6}\PlayTasks\0\Bejeweled 3.lnk -> C:\Program Files (x86)\WildGames\Bejeweled 3\bejeweled3-WT.exe (WildTangent, Inc.) -> /launchgc /src gameexplorer
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{977b5905-4d14-47f1-bbbf-7b92f596695d}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - main\provider.exe (WildTangent) -> /id=977b5905-4d14-47f1-bbbf-7b92f596695d /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{951226E3-26FC-40BC-8085-3677B1128F59}\PlayTasks\0\Polar Bowler.lnk -> C:\Program Files (x86)\WildGames\Polar Bowler\Polar-WT.exe (WildTangent, Inc.) -> /launchgc /src gameexplorer
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{84ba8969-d7e3-4583-8dfe-a60b6c57b826}\PlayTasks\0\Empress of the Deep - The Darkest Secret.lnk -> C:\Program Files (x86)\WildGames\Empress of the Deep - The Darkest Secret\empressofthedeepdarkestsecret-WT.exe (WildTangent, Inc.) -> /launchgc /src gameexplorer
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{74e6d22f-cb18-4829-9d0a-ed768ab6d91e}\PlayTasks\0\Peggle Nights.lnk -> C:\Program Files (x86)\WildGames\Peggle Nights\pegglenights-WT.exe (WildTangent, Inc.) -> /launchgc /src gameexplorer
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{6E7DD52D-205E-4D6D-AF6A-0C34703DFA61}\PlayTasks\0\Chuzzle Deluxe.lnk -> C:\Program Files (x86)\WildGames\Chuzzle Deluxe\Chuzzle Deluxe-WT.exe (WildTangent, Inc.) -> /launchgc /src gameexplorer
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{5efc38bb-2dab-4442-8e97-38975fa121af}\PlayTasks\0\Magic Academy.lnk -> C:\Program Files (x86)\WildGames\Magic Academy\Magic Academy-WT.exe (WildTangent, Inc.) -> /launchgc /src gameexplorer
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{5ae0d760-ddcf-4247-85df-eacefd518e86}\PlayTasks\0\Plants vs. Zombies - Game of the Year.lnk -> C:\Program Files (x86)\WildGames\Plants vs Zombies - Game of the Year\plantsvszombies-WT.exe (WildTangent, Inc.) -> /launchgc /src gameexplorer
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{3eda1e54-8889-41f5-a649-5a306789b7ef}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=3eda1e54-8889-41f5-a649-5a306789b7ef /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{26352374-af55-4b53-b07b-6b0288ed97df}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=26352374-af55-4b53-b07b-6b0288ed97df /src gameexploreroem
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{1447c6c0-8a7b-4b3f-a3b2-cbc9cb3ff16d}\PlayTasks\0\Aloha TriPeaks.lnk -> C:\Program Files (x86)\WildGames\Aloha TriPeaks\alohatripeaks-WT.exe (WildTangent, Inc.) -> /launchgc /src gameexplorer
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{000d96f5-8034-4b74-a429-b6f0b04c75f4}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\TOSHIBA Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=000d96f5-8034-4b74-a429-b6f0b04c75f4 /src gameexploreroem
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> /e,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\Krystian\Desktop\Nowy folder (2)\Additional Information.lnk -> C:\Program Files (x86)\TOSHIBA\Addendum\TREXLauncher.exe (TOSHIBA) -> Additional Information
ShortcutWithArgument: C:\Users\Krystian\Desktop\Nowy folder (2)\Manual.lnk -> C:\Program Files (x86)\TOSHIBA\Manuals\TREXLauncher.exe (TOSHIBA) -> Manual
ShortcutWithArgument: C:\Users\Krystian\Desktop\Nowy folder (2)\McAfee Security Center.lnk -> C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.) -> /desktopicon /platui
ShortcutWithArgument: C:\Users\Krystian\Desktop\Nowy folder (2)\WildTangent Games App - toshiba.lnk -> C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe (WildTangent) -> /src desktop /dp toshibaemea
ShortcutWithArgument: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter Strike 1.6 HD v48\Counter Strike 1.6 HD v48.lnk -> C:\Gry\Counter Strike 1.6 HD v48\hl.exe (Valve) -> -steam -game cstrike -noipx -nojoy -noforcemparms -noforcemaccel
ShortcutWithArgument: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Krystian\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk -> C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.) -> /sendto:
ShortcutWithArgument: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> /e,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}
ShortcutWithArgument: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Krystian\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\Krystian\AppData\Local\Microsoft\Windows\GameExplorer\{b87f2bde-5d44-4e86-bd37-a71616b35ea6}\PlayTasks\0\Bejeweled 3.lnk -> C:\Program Files (x86)\WildGames\Bejeweled 3\bejeweled3-WT.exe (WildTangent, Inc.) -> /launchgc /src gameexplorer


InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Team17\Worms 3D\Internet\Forum dyskusyjne Gram.pl.url -> URL: hxxp://www.gram.pl/forum
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Team17\Worms 3D\Internet\Pomoc techniczna CD Projekt.url -> URL: hxxp://www.gram.pl/pomoc
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Team17\Worms 3D\Internet\Sklep Gram.pl.url -> URL: hxxp://www.gram.pl/sklep
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Team17\Worms 3D\Internet\www.gram.pl.url -> URL: hxxp://www.gram.pl
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Team17\Worms 3D\Internet\www.team17.com.url -> URL: hxxp://www.team17.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Get Help.url -> URL: hxxp://java.com/help
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visit Java.com.url -> URL: hxxp://java.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios\Twierdza Krzyżowiec Extreme\Oficjalna strona gry.url -> URL: hxxp://www.strongholdlegends.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios\Twierdza Krzyżowiec Extreme\Rejestracja gry.url -> URL: hxxp://www.kompania.cenega.pl/profile.php?action=gameregister.start
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios\Twierdza Krzyżowiec Extreme\Strona 2K Games.url -> URL: hxxp://www.2kgames.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios\Twierdza Krzyżowiec Extreme\Strona Firefly Studios.url -> URL: hxxp://www.fireflyworlds.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios\Twierdza Krzyżowiec Extreme\Strona Stronghold Kingdoms.url -> URL: hxxp://www.strongholdkingdoms.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios\Twierdza Krzyżowiec Extreme\Linki\Kompania Graczy.url -> URL: hxxp://www.kompania.cenega.pl
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios\Twierdza Krzyżowiec Extreme\Linki\Pomoc techniczna.url -> URL: hxxp://www.cenega.pl/pomoc.php
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios\Twierdza Krzyżowiec Extreme\Linki\Sklep internetowy.url -> URL: hxxp://www.sklep.cenega.pl
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios\Twierdza Krzyżowiec Extreme\Linki\Strona firmy Cenega Poland.url -> URL: hxxp://www.cenega.pl
InternetURL: C:\Users\Default\Favorites\eBay.url -> URL: file:///C:/Program%20Files%20(x86)/eBay/DesktopShortcut/redirect-fav.html
InternetURL: C:\Users\Default\Favorites\Skyscanner.url -> URL: hxxp://www.jdoqocy.com/click-5960933-11395747
InternetURL: C:\Users\Default\Favorites\Spotify.url -> URL: hxxp://www.spotify.com/toshiba
InternetURL: C:\Users\Default\Favorites\Toshiba Services.url -> URL: hxxp://www.toshibastore.com/iefav
InternetURL: C:\Users\Default\Favorites\Toshiba Support.url -> URL: hxxp://pc-support.toshiba-europe.com/
InternetURL: C:\Users\Default\Favorites\Toshiba Webpage.url -> URL: hxxp://www.toshiba.eu/eu/Countries/Toshiba-EMEA/
InternetURL: C:\Users\Krystian\Favorites\Bing.url -> URL: hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\Krystian\Favorites\eBay.url -> URL: file:///C:/Program%20Files%20(x86)/eBay/DesktopShortcut/redirect-fav.html
InternetURL: C:\Users\Krystian\Favorites\Skyscanner.url -> URL: hxxp://www.jdoqocy.com/click-5960933-11395747
InternetURL: C:\Users\Krystian\Favorites\Spotify.url -> URL: hxxp://www.spotify.com/toshiba
InternetURL: C:\Users\Krystian\Favorites\Toshiba Services.url -> URL: hxxp://www.toshibastore.com/iefav
InternetURL: C:\Users\Krystian\Favorites\Toshiba Support.url -> URL: hxxp://pc-support.toshiba-europe.com/
InternetURL: C:\Users\Krystian\Favorites\Toshiba Webpage.url -> URL: hxxp://www.toshiba.eu/eu/Countries/Toshiba-EMEA/
InternetURL: C:\Users\Krystian\Desktop\[Uncanny] o duchach\Więcej torrentów !!!.url -> URL: hxxp://www.torrki.pl/
InternetURL: C:\Users\Krystian\Desktop\[AgusiQ-TorrentS.pl] The.Assassin.2015.480P.NAPISY PL-OzW [AgusiQ]\AgusiQ Zaprasza.url -> URL: hxxp://agusiq-torrents.pl/
InternetURL: C:\Users\Krystian\Desktop\filmy xd\Ucieczka Z Piekła - Sin Nombre 2009 [DVDRip.RMVB-Mr.Boss] [Lektor PL] [Ekipa TnT] [www.tnt24.info]\Ucieczka Z Piekła [Mr.Boss] [Ekipa TnT].url -> BASEURL: hxxp://tnttorrent.info/account.php?refferal=Mr.Boss URL: hxxp://tnttorrent.info/account.php?refferal=Mr.Boss
InternetURL: C:\Users\Krystian\Desktop\filmy xd\The.Collector\Wiecej  fajnych torrentow i warezow zapraszam.url -> BASEURL: hxxp://maxi-torrents.pl/ URL: hxxp://maxi-torrents.pl/
InternetURL: C:\Users\Krystian\Desktop\filmy xd\Noc Kawalerow\WWW.Maxi-Torrents.Pl.url -> BASEURL: hxxp://maxi-torrents.pl/ URL: hxxp://maxi-torrents.pl/
InternetURL: C:\Users\Krystian\Desktop\filmy xd\Filmy\[FILEKING.PL] Noc.oczyszczenia.2013.PL [AgusiQ]\Open.url -> URL: hxxp://fileking.pl/

==================== Koniec  Shortcut.txt =============================

Kod: Zaznacz wszystko
Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 18-07-2016
Uruchomiony przez Krystian (2016-07-19 23:46:22)
Uruchomiony z C:\Users\Krystian\Desktop
Windows 8.1 (Update) (X64) (2014-11-22 18:09:17)
Tryb startu: Normal
==========================================================


==================== Konta użytkowników: =============================

Administrator (S-1-5-21-1300712628-2164108268-1970492725-500 - Administrator - Disabled)
Gość (S-1-5-21-1300712628-2164108268-1970492725-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1300712628-2164108268-1970492725-1005 - Limited - Enabled)
Krystian (S-1-5-21-1300712628-2164108268-1970492725-1001 - Administrator - Enabled) => C:\Users\Krystian

==================== Centrum zabezpieczeń ========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Zainstalowane programy ======================

(W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)

µTorrent (HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\uTorrent) (Version: 3.4.5.41202 - BitTorrent Inc.)
Adobe Acrobat 5.0 CE (HKLM-x32\...\Adobe Acrobat 5.0) (Version: 5.0 - Adobe Systems, Inc.)
Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated)
Adobe Flash Player 22 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated)
Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 4.8.1245.73583 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (x32 Version: 4.8.1245.73583 - Alcor Micro Corp.) Hidden
Aloha TriPeaks (x32 Version: 2.2.0.98 - WildTangent) Hidden
ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 8.100.303.509 - Alps Electric)
AMD Catalyst Install Manager (HKLM\...\{5D42947B-E961-C0B5-5A70-EA0F753331EB}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.)
AMD Quick Stream (HKLM\...\{E9EED4AE-682B-4501-9574-D09A21717599}_is1) (Version: 3.4.4.2 - AppEx Networks)
Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Atheros)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Bethesda.net Launcher (HKLM-x32\...\{3448917E-E4FE-4E30-9502-9FD52EABB6F5}_is1) (Version: 1.0 - Bethesda Softworks)
CCleaner (HKLM\...\CCleaner) (Version: 5.02 - Piriform)
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Counter-Strike 1.6 v43 (HKLM-x32\...\{1BD2212B-8287-4F33-A6DC-903D423AB814}_is1) (Version: v43 - CSSetti.pl)
Counter-Strike 1.6 v48 (HKLM-x32\...\{3340BC0B-F0E2-429A-8348-59C3481EA06E}_is1) (Version: v48 - CSSetti.pl)
Drakensang Online (HKLM-x32\...\Drakensang Online) (Version:  - )
DTS Sound (HKLM-x32\...\{2DFA9084-CEB3-4A48-B9F7-9038FEF1B8F4}) (Version: 1.01.2700 - DTS, Inc.)
Electronic Arts Product Registration (HKLM-x32\...\InstallShield_{D7D50E0C-27DD-4999-BC05-E026B580F93A}) (Version: 1.01.0000 - Electronic Arts)
Electronic Arts Product Registration (x32 Version: 1.01.0000 - Electronic Arts) Hidden
Empress of the Deep - The Darkest Secret (x32 Version: 2.2.0.98 - WildTangent) Hidden
Evernote (HKLM-x32\...\Evernote) (Version: 1.0.0 - Evernote Launcher by Toshiba Europe GmbH)
GameRanger (HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\GameRanger) (Version:  - GameRanger Technologies)
GG (HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\GG) (Version: 12 - GG Network S.A.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 51.0.2704.103 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Heroes of Might and Magic V - Dzikie Hordy (HKLM-x32\...\{ACC75323-DB4A-4f7f-9AF3-1D1DEFF2D1B5}_is1) (Version:  - Ubisoft)
Heroes of Might and Magic V - Tribes of the East (HKLM-x32\...\{ACC75323-DB4A-4F7F-9AF3-1D1DEFF2D1B5}) (Version:  - )
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version:  - Blizzard Entertainment)
IDT Audio Driver (HKLM\...\{588A747E-CFF6-46B3-9207-CD754F9473AF}) (Version: 6.10.6491.0 - IDT)
IGG Web3D Player version 1.0.0.38 (HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\IGG Web3D Player_is1) (Version: 1.0.0.38 - IGG, Inc.)
Island Tribe (x32 Version: 2.2.0.98 - WildTangent) Hidden
Java 8 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218071F0}) (Version: 8.0.710.15 - Oracle Corporation)
Jewel Quest Solitaire 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Magic Academy (x32 Version: 2.2.0.98 - WildTangent) Hidden
McAfee SecurityCenter (HKLM-x32\...\MSC) (Version: 14.0.4121 - McAfee, Inc.)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.189 - McAfee, Inc.)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{929CE49F-1CA7-4CF3-A9A1-6D757443C63F}) (Version: 1.2.0241 - Microsoft Corporation)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{d07b0db5-8dad-40e1-be90-88026298a46b}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{2749c485-3a8b-4533-92ff-7cf6e8221cff}) (Version: 11.0.61030.0 - Microsoft Corporation)
Mozilla Firefox 47.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 47.0 (x86 pl)) (Version: 47.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 47.0.0.5999 - Mozilla)
NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation)
OEM Application Profile (HKLM-x32\...\{70D5F822-F4C4-33D9-7EEC-2A4AF4EA7BDC}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
OpenFM (HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\OpenFM) (Version: 2 - GG Network S.A.)
Peggle Nights (x32 Version: 2.2.0.98 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.306 - Qualcomm Atheros)
Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.21 - Qualcomm Atheros Inc.)
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.3.0.9150 - Microsoft Corporation)
Skype™ 7.9 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.9.103 - Skype Technologies S.A.)
Spotify (HKLM-x32\...\Spotify) (Version: 0.8.5.1333.g822e0de8 - Spotify AB)
Stronghold Crusader Extreme (HKLM-x32\...\{8C3727F2-8E37-49E4-820C-03B1677F53B6}) (Version: 1.20.0000 - Firefly Studios)
System Requirements Lab (HKLM-x32\...\{8DCAB1D8-F20C-4733-9B5F-646DDFEB59C9}) (Version: 6.1.1.0 - Husdawg, LLC)
System Requirements Lab Detection (HKLM-x32\...\{C1B6FF62-BBE1-40D4-868C-72DE8F441F88}) (Version: 6.1.6.0 - Husdawg, LLC)
TeamSpeak 3 Client (HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
TOSHIBA Addendum (HKLM-x32\...\{C1569944-FAD6-4B3B-85E5-C213C2FF8EFC}) (Version: 1.00 - TOSHIBA)
TOSHIBA Desktop Assist (HKLM\...\{95CCACF0-010D-45F0-82BF-858643D8BC02}) (Version: 1.02.01.6407 - Toshiba Corporation)
TOSHIBA Display Utility (HKLM\...\{5F6AC07E-50EF-422E-B56E-6521E5B35139}) (Version: 1.1.12.0 - Toshiba Corporation)
TOSHIBA eco Utility (HKLM\...\{5944B9D4-3C2A-48DE-931E-26B31714A2F7}) (Version: 2.2.0.6404 - Toshiba Corporation)
TOSHIBA Function Key (HKLM\...\{16562A90-71BC-41A0-B890-D91B0C267120}) (Version: 1.1.0001.6403 - Toshiba Corporation)
TOSHIBA Manuals (HKLM-x32\...\{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}) (Version: 10.10 - TOSHIBA)
TOSHIBA Password Utility (HKLM-x32\...\InstallShield_{78931270-BC9E-441A-A52B-73ECD4ACFAB5}) (Version: 3.00.346 - Toshiba Corporation)
TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 1.9.09.6400 - Toshiba Corporation)
TOSHIBA Recovery Media Creator (HKLM-x32\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 3.1.02.55065006 - Toshiba Corporation)
TOSHIBA Service Station (HKLM\...\{FBFCEEA5-96EA-4C8E-9262-43CBBEBAE413}) (Version: 2.6.8 - Toshiba Corporation)
TOSHIBA Start Screen Option (HKLM\...\{06B71035-F19F-4F76-9875-FFCCD4FC3F83}) (Version: 1.00.00.6403 - Toshiba Corporation)
TOSHIBA System Driver (HKLM-x32\...\{1E6A96A1-2BAB-43EF-8087-30437593C66C}) (Version: 1.00.0030 - Toshiba Corporation)
TOSHIBA System Settings (HKLM-x32\...\{05A55927-DB9B-4E26-BA44-828EBFF829F0}) (Version: 1.1.2.32001 - Toshiba Corporation)
Toshiba TEMPRO (HKLM-x32\...\{F76F5214-83A8-4030-80C9-1EF57391D72A}) (Version: 4.5.0 - Toshiba Europe GmbH)
TOSHIBA VIDEO PLAYER (HKLM\...\{FF07604E-C860-40E9-A230-E37FA41F103A}) (Version: 5.3.27.102 - Toshiba Corporation)
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.3.0 - WildTangent)
WildTangent Games App (Toshiba Games) (x32 Version: 4.0.9.7 - WildTangent) Hidden
Worms 3D (HKLM-x32\...\{8874FD36-7C9D-4573-8956-E368D6753D90}) (Version: 1.1 - Team17 Software Ltd)

==================== Niestandardowe rejestracje CLSID (filtrowane): ==========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

CustomCLSID: HKU\S-1-5-21-1300712628-2164108268-1970492725-1001_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Krystian\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll (GG Network S.A.)

==================== Zaplanowane zadania (filtrowane) =============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

Task: {0A23803E-2339-449C-8EB1-ADF103F0F34E} - System32\Tasks\TOSHIBA\Service Station => C:\Program Files\TOSHIBA\Toshiba Service Station\ToshibaServiceStation.exe [2013-07-31] (TOSHIBA Corporation)
Task: {0F1466BB-3622-4923-BD73-A96EB354F7F8} - System32\Tasks\{12846640-CD76-40B0-B4F3-D2AF0B40E8F1} => pcalua.exe -a C:\Users\Krystian\AppData\Roaming\omiga-plus\UninstallManager.exe -c  -ptid=cor <==== UWAGA
Task: {10E26D8E-4470-4030-9864-0F6702E3ADB7} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent
Task: {1D00B6FA-2B6E-4C57-83FE-77A0E53FE4E9} - System32\Tasks\DNSVALDOSTA => dnsvaldosta.exe <==== UWAGA
Task: {3E2603BD-238E-4A4E-9533-CA7CFE569B85} - System32\Tasks\Toshiba\CommonNotifier => C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe [2013-07-19] (Toshiba Europe GmbH)
Task: {64C5BA11-C421-4559-9DCE-2221B48E06E4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-03] (Google Inc.)
Task: {7140A7B4-25A6-4F62-AB00-1D4BFDD86B1F} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_209_pepper.exe [2016-07-17] (Adobe Systems Incorporated)
Task: {7BFA2B9E-611A-4121-B4C2-9632FE6CD8C8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-03] (Google Inc.)
Task: {7EE8149E-EEED-4671-B061-A1BEED31BD73} - System32\Tasks\{B1DED474-8F6A-415B-97E8-79D635240F21} => pcalua.exe -a C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_296_Plugin.exe -c -maintain plugin
Task: {8F6FFF77-C18D-4672-94EC-2686B6DD3883} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-01-20] (Piriform Ltd)
Task: {BFCEF0F8-3760-438F-8653-FFC19F48FF57} - System32\Tasks\{A882490A-5767-47DD-B939-34A40384106D} => pcalua.exe -a C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_296_pepper.exe -c -maintain pepperplugin
Task: {C77F4CBC-7C7F-44F7-B142-56331528DCC4} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-17] (Adobe Systems Incorporated)
Task: {ECEF413B-0204-4653-875D-B76F1F4E70BA} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-07-19] (Microsoft Corporation)

(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)

Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_209_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Skróty =============================

(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)

==================== Załadowane moduły (filtrowane) ==============

2013-03-27 22:53 - 2013-03-27 22:53 - 00163168 _____ () C:\Program Files (x86)\TOSHIBA\PasswordUtility\GFNEXSrv.exe
2013-08-31 05:47 - 2013-08-31 05:47 - 00099328 _____ () C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe
2013-09-10 22:54 - 2013-09-10 22:54 - 00019792 _____ () C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
2015-07-03 10:45 - 2015-07-03 10:45 - 00183296 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\ErrorReporting.dll
2016-06-20 13:01 - 2016-06-15 11:15 - 01745560 _____ () C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.103\libglesv2.dll
2016-06-20 13:00 - 2016-06-15 11:15 - 00091288 _____ () C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.103\libegl.dll

==================== Alternate Data Streams (filtrowane) =========

(Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.)

AlternateDataStreams: C:\ProgramData\TEMP:56E2E879 [116]

==================== Tryb awaryjny (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McNaiAnn => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service"

==================== Powiązania plików (filtrowane) ===============

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.)


==================== Internet Explorer - Witryny zaufane i z ograniczeniami ===============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)


==================== Hosts - zawartość: ===============================

(Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)

2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts


==================== Inne obszary ============================

(Obecnie brak automatycznej naprawy dla tej sekcji.)

HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Krystian\Desktop\Nowy folder\images.jpg
DNS Servers: 82.163.142.5 - 95.211.158.132
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Zapora systemu Windows [funkcja włączona]

==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==

(Obecnie brak automatycznej naprawy dla tej sekcji.)

HKLM\...\StartupApproved\Run: => "Apoint"
HKLM\...\StartupApproved\Run: => "TecoResident"
HKLM\...\StartupApproved\Run: => "TCrdMain"
HKLM\...\StartupApproved\Run: => "TSSSrv"
HKLM\...\StartupApproved\Run32: => "StartCCC"
HKLM\...\StartupApproved\Run32: => "1.TPUReg"
HKLM\...\StartupApproved\Run32: => "AmIcoSinglun64"
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\StartupApproved\StartupFolder: => "Pokemon - Sapphire Version (U) (V1.1).lnk"
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\StartupApproved\Run: => "GG"
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\StartupApproved\Run: => "DAEMON Tools Lite"
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\StartupApproved\Run: => "Spotify Web Helper"

==================== Reguły Zapory systemu Windows (filtrowane) ===============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{6FDC00F8-9C0C-4CC5-90CE-A82D73666BD5}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{FE4EBCDF-B359-44CA-83EA-04B64185CC8B}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{797A79E4-3C0F-470B-A927-B9D2BDAB9CC7}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{18AEEB2C-F16E-4487-9591-19606F492382}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{A30E18A6-C541-48EE-9B20-D01C28B8A16B}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{41FCC20C-D09D-44FA-B4E8-8157BE7309F6}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{56B42909-F5C2-4C69-9D8A-FA0714F85482}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{4B4F9BFF-BB9D-4C53-A16F-E0E6647AE15A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{389E252F-7492-4210-883E-A8D14CDEEE89}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{E64C94E9-6466-409B-BE63-B442BBCCC4F9}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{EBC5EE66-9F18-4CAD-B5A6-CC4B7A9D1C5C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dizzel\Dizzel.exe
FirewallRules: [{D32920C2-7924-448D-821C-FE5CC15CA27A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dizzel\Dizzel.exe
FirewallRules: [{8CE48CB0-8C3B-4078-A7D9-51AA8A3702BF}] => (Allow) C:\Program Files (x86)\Empire Interactive\FlatOut Ultimate Carnage\Fouc.exe
FirewallRules: [{22EEA294-9D3E-4A71-BD53-21DD6A47E6F8}] => (Allow) C:\Program Files (x86)\Empire Interactive\FlatOut Ultimate Carnage\Fouc.exe
FirewallRules: [{75B0EFED-71EB-4FF4-852F-EA43174DA285}] => (Allow) C:\Users\Krystian\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{43167BEC-77ED-480F-8C7B-59EA7BB3E73A}] => (Allow) C:\Users\Krystian\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{A06D24EF-0FB5-463A-A4BC-5460D8510B7A}] => (Allow) C:\Program Files (x86)\Firefly Studios\Stronghold Crusader\Stronghold Crusader.exe
FirewallRules: [{3927A605-21CF-4DA6-A998-6312725CAF3E}] => (Allow) C:\Program Files (x86)\Firefly Studios\Stronghold Crusader\Stronghold Crusader.exe
FirewallRules: [{1488C1E9-5385-48E3-8417-06D460627A60}] => (Allow) C:\Program Files (x86)\Firefly Studios\Stronghold Crusader\Stronghold_Crusader_Extreme.exe
FirewallRules: [{88AF7CAB-54E1-415A-8A5E-0EE0034F248E}] => (Allow) C:\Program Files (x86)\Firefly Studios\Stronghold Crusader\Stronghold_Crusader_Extreme.exe
FirewallRules: [{5D44F5CC-2764-45CA-A35E-F357AF13B0CC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{1E26B90A-B691-43BC-9460-23E9BB451F2E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{F2A490E8-13B3-456A-A241-DB2F6114089F}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{BA3C2A92-B82B-4C8C-BD71-87607EFFABB6}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{49D5B6E5-697E-49CD-A3B9-552A52EE60AE}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
FirewallRules: [{D13C9075-F594-442B-9943-ED97B1608099}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
FirewallRules: [TCP Query User{158EB504-41D3-4356-973E-F2E53648E06D}C:\gry\counter-strike 1.6 v48\hl.exe] => (Block) C:\gry\counter-strike 1.6 v48\hl.exe
FirewallRules: [UDP Query User{ECABFFA9-F16C-4D52-BC86-19851D9589D9}C:\gry\counter-strike 1.6 v48\hl.exe] => (Block) C:\gry\counter-strike 1.6 v48\hl.exe
FirewallRules: [TCP Query User{79FB6BF2-C618-4FAE-84F2-81E4D6335A84}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{0C9F17E0-9E36-4A48-BB89-5A4CF764CCFD}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [TCP Query User{CCF8BBE7-9268-4398-B741-EB482EFD6D57}C:\program files (x86)\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{46D79C83-B9FE-4844-9064-C5294A6DA9AD}C:\program files (x86)\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{100EBE63-EA27-4F1A-8AA3-961991D554A3}C:\gry\counter-strike 1.6 v43\hl.exe] => (Block) C:\gry\counter-strike 1.6 v43\hl.exe
FirewallRules: [UDP Query User{D1D81F8C-8812-4A7F-AD13-80DC1CD1431E}C:\gry\counter-strike 1.6 v43\hl.exe] => (Block) C:\gry\counter-strike 1.6 v43\hl.exe
FirewallRules: [TCP Query User{BBA2E078-96E4-43CD-B7E1-26BBD4E922CB}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{01CC6C2F-5D8A-4A8F-BA5A-45FC2FC5002E}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{10303163-6DE7-4D9E-979A-AB60ABFB0B47}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Punkty Przywracania systemu =========================

20-05-2016 14:27:15 Windows Update
24-05-2016 12:10:02 Windows Update
30-05-2016 21:31:48 Windows Update
04-07-2016 23:56:05 Windows Update
19-07-2016 22:54:49 Windows Update

==================== Wadliwe urządzenia w Menedżerze urządzeń =============


==================== Błędy w Dzienniku zdarzeń: =========================

Dziennik Aplikacja:
==================
Error: (07/19/2016 08:38:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program LiveComm.exe w wersji 17.5.9600.20911 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania.

Identyfikator procesu: 14ec

Godzina rozpoczęcia: 01d1e1dabf1caea0

Godzina zakończenia: 4294967295

Ścieżka aplikacji: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe

Identyfikator raportu: 7dd015b2-4ddf-11e6-82dc-20256439f892

Pełna nazwa pakietu powodującego błąd: microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe

Identyfikator aplikacji względem pakietu powodującego błąd: ppleae38af2e007f4358a809ac99a64a67c1

Error: (07/19/2016 08:35:18 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: BIALY)
Description: Aktywacja aplikacji microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.

Error: (07/19/2016 08:34:54 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 90080108

Error: (07/19/2016 03:35:16 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program LiveComm.exe w wersji 17.5.9600.20911 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania.

Identyfikator procesu: 1584

Godzina rozpoczęcia: 01d1e1c1a4c892d6

Godzina zakończenia: 4294967295

Ścieżka aplikacji: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe

Identyfikator raportu: 994a91b1-4db5-11e6-82dc-20256439f892

Pełna nazwa pakietu powodującego błąd: microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe

Identyfikator aplikacji względem pakietu powodującego błąd: ppleae38af2e007f4358a809ac99a64a67c1

Error: (07/19/2016 02:31:22 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program LiveComm.exe w wersji 17.5.9600.20911 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania.

Identyfikator procesu: e34

Godzina rozpoczęcia: 01d1e128b601f70f

Godzina zakończenia: 4294967295

Ścieżka aplikacji: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe

Identyfikator raportu: ab171143-4dac-11e6-82dc-20256439f892

Pełna nazwa pakietu powodującego błąd: microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe

Identyfikator aplikacji względem pakietu powodującego błąd: ppleae38af2e007f4358a809ac99a64a67c1

Error: (07/19/2016 02:27:15 PM) (Source: Adaptive Sleep Service) (EventID: 0) (User: )
Description: State Machine Error: State: Suspended, Undefined event: 19/7/2016 14:27:13 - Saving

Error: (07/18/2016 05:56:32 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program LiveComm.exe w wersji 17.5.9600.20911 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania.

Identyfikator procesu: 10f8

Godzina rozpoczęcia: 01d1e109bbd376da

Godzina zakończenia: 4294967295

Ścieżka aplikacji: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe

Identyfikator raportu: 28ad5c14-4d00-11e6-82dc-20256439f892

Pełna nazwa pakietu powodującego błąd: microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe

Identyfikator aplikacji względem pakietu powodującego błąd: ppleae38af2e007f4358a809ac99a64a67c1

Error: (07/18/2016 05:23:52 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program LiveComm.exe w wersji 17.5.9600.20911 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania.

Identyfikator procesu: 1414

Godzina rozpoczęcia: 01d1e107a37c0db7

Godzina zakończenia: 4294967295

Ścieżka aplikacji: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe

Identyfikator raportu: 98cb95e7-4cfb-11e6-82dc-20256439f892

Pełna nazwa pakietu powodującego błąd: microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe

Identyfikator aplikacji względem pakietu powodującego błąd: ppleae38af2e007f4358a809ac99a64a67c1

Error: (07/18/2016 05:08:50 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program LiveComm.exe w wersji 17.5.9600.20911 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania.

Identyfikator procesu: 5b8

Godzina rozpoczęcia: 01d1e1058aee6d2e

Godzina zakończenia: 4294967295

Ścieżka aplikacji: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe

Identyfikator raportu: 7f777e57-4cf9-11e6-82dc-20256439f892

Pełna nazwa pakietu powodującego błąd: microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe

Identyfikator aplikacji względem pakietu powodującego błąd: ppleae38af2e007f4358a809ac99a64a67c1

Error: (07/18/2016 04:38:56 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program LiveComm.exe w wersji 17.5.9600.20911 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania.

Identyfikator procesu: 688

Godzina rozpoczęcia: 01d1e10159fe1842

Godzina zakończenia: 4294967295

Ścieżka aplikacji: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe

Identyfikator raportu: 528e74ee-4cf5-11e6-82dc-20256439f892

Pełna nazwa pakietu powodującego błąd: microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe

Identyfikator aplikacji względem pakietu powodującego błąd: ppleae38af2e007f4358a809ac99a64a67c1


Dziennik System:
=============
Error: (07/19/2016 11:24:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi McAfee Platform Services z powodu następującego błędu:
%%2 = Nie można odnaleźć określonego pliku.


Error: (07/19/2016 11:24:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi McAfee VirusScan Announcer z powodu następującego błędu:
%%2 = Nie można odnaleźć określonego pliku.


Error: (07/19/2016 11:24:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi McAfee Home Network z powodu następującego błędu:
%%2 = Nie można odnaleźć określonego pliku.


Error: (07/19/2016 11:22:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi McAfee Proxy Service z powodu następującego błędu:
%%2 = Nie można odnaleźć określonego pliku.


Error: (07/19/2016 11:22:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi McAfee Personal Firewall Service z powodu następującego błędu:
%%2 = Nie można odnaleźć określonego pliku.


Error: (07/19/2016 11:22:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi McAfee AP Service z powodu następującego błędu:
%%2 = Nie można odnaleźć określonego pliku.


Error: (07/19/2016 11:22:29 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi SPDRIVER_1489.0.0.0 z powodu następującego błędu:
%%3 = System nie może odnaleźć określonej ścieżki.


Error: (07/19/2016 11:20:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi McAfee Platform Services z powodu następującego błędu:
%%2 = Nie można odnaleźć określonego pliku.


Error: (07/19/2016 11:20:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi McAfee VirusScan Announcer z powodu następującego błędu:
%%2 = Nie można odnaleźć określonego pliku.


Error: (07/19/2016 11:20:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi McAfee Home Network z powodu następującego błędu:
%%2 = Nie można odnaleźć określonego pliku.



CodeIntegrity:
===================================
  Date: 2016-03-16 17:58:51.285
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-03-16 17:58:44.704
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-03-16 17:58:44.383
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-03-16 16:25:52.213
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-03-16 16:25:46.009
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-03-16 16:25:45.829
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-03-16 16:25:45.577
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-03-16 16:25:34.073
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-03-16 16:25:25.955
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.

  Date: 2016-03-16 16:25:12.011
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements.


==================== Statystyki pamięci ===========================

Procesor: AMD E1-2100 APU with Radeon(TM) HD Graphics
Procent pamięci w użyciu: 47%
Całkowita pamięć fizyczna: 3523.07 MB
Dostępna pamięć fizyczna: 1853.06 MB
Całkowita pamięć wirtualna: 4163.07 MB
Dostępna pamięć wirtualna: 2363.27 MB

==================== Dyski ================================

Drive c: (TI31252900A) (Fixed) (Total:454.64 GB) (Free:319.23 GB) NTFS

==================== MBR & Tablica partycji ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 00000000)

Partition: GPT.

==================== Koniec  Addition.txt ============================

Kod: Zaznacz wszystko
Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 18-07-2016
Uruchomiony przez Krystian (administrator)  BIALY (19-07-2016 23:40:21)
Uruchomiony z C:\Users\Krystian\Desktop
Załadowane profile: Krystian (Dostępne profile: Krystian)
Platform: Windows 8.1 (Update) (X64) Język: Polski (Polska)
Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome)
Tryb startu: Normal
Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
() C:\Program Files (x86)\TOSHIBA\PasswordUtility\GFNEXSrv.exe
() C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
() C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Toshiba Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\1.6.1008.0\McCSPServiceHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe


==================== Rejestr (filtrowane) ===========================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM\...\Run: [] => [X]
HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [688472 2013-07-23] (Alps Electric Co., Ltd.)
HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-08-18] (TOSHIBA Corporation)
HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [178016 2013-08-21] (TOSHIBA Corporation)
HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296520 2013-09-12] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [354144 2013-08-14] (TOSHIBA Corporation)
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\Run: [GG] => C:\Users\Krystian\AppData\Local\GG\Application\gghub.exe [4078144 2015-04-16] (GG Network S.A.)
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7404312 2015-01-20] (Piriform Ltd)
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\Run: [uTorrent] => C:\Users\Krystian\AppData\Roaming\uTorrent\updates\3.4.5_41202.exe [1822048 2015-11-11] (BitTorrent Inc.)
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\Run: [Spotify Web Helper] => C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe [1199576 2013-11-29] (Spotify Ltd)
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\Run: [Innkeeper] => C:\Users\Krystian\AppData\Local\Innkeeper\Update.exe --processStart Innkeeper.exe --process-start-args="-startup"
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\MountPoints2: {a327a4bd-b21c-11e4-8283-28e34788df99} - "E:\_AUTORUN\AUTORUN.EXE"
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  Brak pliku
GroupPolicy: Ograniczenia - Chrome <======= UWAGA
CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA

==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{32557DAE-AC00-4709-A397-975F97586427}: [NameServer] 82.163.142.5,95.211.158.132
Tcpip\..\Interfaces\{32557DAE-AC00-4709-A397-975F97586427}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://toshiba.eu/symbaloo_c
SearchScopes: HKLM -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM-x32 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\.DEFAULT -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\.DEFAULT -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = hxxp://v9.com/web?type=ds&ts=1450272893&from=zzgbkk123&uid=toshibaxmq01abf050_z3miw0mwtxxz3miw0mwt&z=5a89392a2ff6a2d2ee96cf8g4zfw8efoam2obbftfg&q={searchTerms}
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-19 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-19 -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = hxxp://v9.com/web?type=ds&ts=1450272893&from=zzgbkk123&uid=toshibaxmq01abf050_z3miw0mwtxxz3miw0mwt&z=5a89392a2ff6a2d2ee96cf8g4zfw8efoam2obbftfg&q={searchTerms}
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-20 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-20 -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = hxxp://v9.com/web?type=ds&ts=1450272893&from=zzgbkk123&uid=toshibaxmq01abf050_z3miw0mwtxxz3miw0mwt&z=5a89392a2ff6a2d2ee96cf8g4zfw8efoam2obbftfg&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1300712628-2164108268-1970492725-1001 -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1300712628-2164108268-1970492725-1001 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1300712628-2164108268-1970492725-1001 -> {C2056728-AF40-47EC-BFF1-D0F65ACECEB8} URL =
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
BHO-x32: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Adobe\Acrobat 5.0 CE\Reader\ActiveX\AcroIEHelper.ocx [2001-04-16] ()
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll [2016-02-03] (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll [2016-02-03] (Oracle Corporation)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-04-20] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-04-20] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-04-20] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-04-20] (McAfee, Inc.)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\MSC\McSnIePl64.dll [2015-08-21] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2015-08-21] (McAfee, Inc.)

FireFox:
========
FF ProfilePath: C:\Users\Krystian\AppData\Roaming\Mozilla\Firefox\Profiles\yi1pjfvw.default
FF NewTab: about:blank
FF SelectedSearchEngine: Google
FF Homepage: about:blank
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-17] ()
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-08-21] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-17] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.71.2 -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\dtplugin\npDeployJava1.dll [2016-02-03] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.71.2 -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\plugin2\npjp2.dll [2016-02-03] (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-08-21] ()
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-12] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-12] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2014-11-15] ()
FF Plugin HKU\S-1-5-21-1300712628-2164108268-1970492725-1001: @g2.com/iggweb3dupdater -> C:\Users\Krystian\AppData\Roaming\IGG\Web3D\1.0.0.38\NPIGGWeb3DUpdater.dll [2012-04-19] (IGG)
FF Plugin HKU\S-1-5-21-1300712628-2164108268-1970492725-1001: @g2.com/joyconnectshell -> C:\Users\Krystian\AppData\Roaming\IGG\Web3D\1.0.0.38\NPJoyConnectShell.dll [2012-04-19] (IGG)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2001-09-10] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Krystian\AppData\Roaming\Mozilla\Firefox\Profiles\yi1pjfvw.default\searchplugins\google-.xml [2016-03-16]
FF Extension: McAfee WebAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2016-07-17]
FF Extension: xRocket Toolbar - C:\Users\Krystian\AppData\Roaming\Mozilla\Firefox\Profiles\yi1pjfvw.default\Extensions\arthurj8283@gmail.com [2016-03-16] [Brak podpisu cyfrowego]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Firefox\Extensions: [arthurj8283@gmail.com] - C:\Users\Krystian\AppData\Roaming\Mozilla\Firefox\Profiles\yi1pjfvw.default\extensions\arthurj8283@gmail.com
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi

Chrome:
=======
CHR HomePage: Default -> about:blank
CHR StartupUrls: Default -> "about:blank"
CHR DefaultSearchURL: Default -> hxxps://pl.search.yahoo.com/search?fr=mcafee_uninternational&type=C215PL642D20150201&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR Profile: C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentacje Google) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-12] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Dokumenty Google) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-14] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Dysk Google) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-14] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (YouTube) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Google Search) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]
CHR Extension: (Arkusze Google) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-14] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (SiteAdvisor) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2016-05-31]
CHR Extension: (Dokumenty Google offline) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-02]
CHR Extension: (AdBlock) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-02-14] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Channel Sub Box for YouTube™) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhbmojliagbancdcmookpmaaoipjifmc [2015-07-17]
CHR Extension: (Google Wallet) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-22] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Gmail) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-29]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-05-28]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-05-28]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25]

==================== Usługi (filtrowane) ========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [99328 2013-08-31] () [Brak podpisu cyfrowego]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [312448 2013-10-01] (Windows (R) Win 7 DDK provider) [Brak podpisu cyfrowego]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation)
R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [19792 2013-09-10] ()
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-11-20] (WildTangent)
R2 GFNEXSrv; C:\Program Files (x86)\TOSHIBA\PasswordUtility\GFNEXSrv.exe [163168 2013-03-27] ()
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [163592 2016-04-20] (McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.6.1008.0\McCSPServiceHost.exe [1694152 2015-07-23] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [639456 2015-07-17] (McAfee, Inc.)
R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232656 2015-06-29] (McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [373704 2015-07-15] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [254792 2015-06-29] (McAfee, Inc.)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [3191392 2014-05-15] (INCA Internet Co., Ltd.)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [339456 2013-08-16] (IDT, Inc.) [Brak podpisu cyfrowego]
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [116088 2013-07-19] (Toshiba Europe GmbH)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
S2 HomeNetSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McAPExe; "C:\Program Files\McAfee\MSC\McAPExe.exe" [X]
S2 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McNaiAnn; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 mcpltsvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McProxy; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]

===================== Sterowniki (filtrowane) ==========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R3 AmdAS4; C:\Windows\System32\drivers\AmdAS4.sys [17504 2013-02-06] (Advanced Micro Devices, INC.)
R2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [219360 2013-04-18] (AppEx Networks Corporation)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3858944 2013-10-24] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [138240 2013-06-22] (Advanced Micro Devices)
S3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [132608 2015-01-30] (Microsoft Corporation)
S3 BthHFAud; C:\Windows\System32\drivers\BthHfAud.sys [32768 2014-10-08] (Microsoft Corporation)
S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [77536 2015-07-02] (McAfee, Inc.)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [207208 2015-05-19] (McAfee, Inc.)
R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [412440 2015-07-02] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [347800 2015-07-02] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [80920 2015-07-02] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [496888 2015-07-02] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [875928 2015-07-02] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [529080 2015-06-28] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [109728 2015-06-28] (McAfee, Inc.)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [45728 2016-03-15] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [344704 2015-07-02] (McAfee, Inc.)
R2 PEGAGFN; C:\Program Files (x86)\TOSHIBA\PasswordUtility\PEGAGFN.sys [14344 2009-09-11] (PEGATRON)
S3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [1936088 2013-07-31] (Realtek Semiconductor Corporation                           )
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [32624 2013-08-19] (Windows (R) Win 7 DDK provider)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)
S2 SPDRIVER_1489.0.0.0; .\JSDriver\1489.0.0.0\jsdrv.sys [X]

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Jeden miesiąc - utworzone pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2016-07-19 23:40 - 2016-07-19 23:41 - 00023253 _____ C:\Users\Krystian\Desktop\FRST.txt
2016-07-19 23:39 - 2016-07-19 23:40 - 00000000 ____D C:\FRST
2016-07-19 23:33 - 2016-07-19 23:34 - 02391552 _____ (Farbar) C:\Users\Krystian\Desktop\FRST64.exe
2016-07-18 00:00 - 2016-07-18 00:00 - 00000000 ____D C:\Users\Krystian\AppData\LocalLow\Blizzard Entertainment
2016-07-04 23:02 - 2016-05-19 01:15 - 01379040 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-07-04 23:02 - 2016-05-18 22:35 - 01097216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-07-02 14:49 - 2016-05-14 22:01 - 00363104 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-07-02 14:49 - 2016-05-14 22:01 - 00320720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2016-07-02 14:49 - 2016-05-14 01:07 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2016-07-02 14:49 - 2016-05-13 23:58 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2016-07-02 14:49 - 2016-05-13 23:45 - 00802816 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-07-02 14:49 - 2016-05-13 23:35 - 00286208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2016-07-02 14:49 - 2016-05-13 23:26 - 00631808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2016-06-22 15:01 - 2016-06-22 15:01 - 00000000 ____D C:\Users\Krystian\AppData\Local\CEF
2016-06-22 15:01 - 2016-06-22 15:01 - 00000000 ____D C:\Users\Krystian\AppData\Local\Bethesda.net Launcher
2016-06-22 14:59 - 2016-06-26 11:49 - 00000000 ____D C:\Program Files (x86)\Bethesda.net Launcher
2016-06-22 14:59 - 2016-06-22 14:59 - 00001179 _____ C:\Users\Public\Desktop\Bethesda.net Launcher.lnk
2016-06-22 14:59 - 2016-06-22 14:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda.net Launcher
2016-06-22 14:57 - 2016-06-22 14:58 - 12895592 _____ (Bethesda Softworks ) C:\Users\Krystian\Downloads\BethesdaNetLauncher_Setup.exe

==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2016-07-19 23:27 - 2014-11-22 20:18 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1300712628-2164108268-1970492725-1001
2016-07-19 23:23 - 2016-02-03 22:07 - 00001064 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-07-19 23:22 - 2014-11-22 20:30 - 00000000 __RDO C:\Users\Krystian\SkyDrive
2016-07-19 23:22 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-07-19 23:21 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2016-07-19 23:18 - 2016-04-08 22:16 - 00000992 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-07-19 23:05 - 2014-11-24 20:17 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-07-19 22:57 - 2014-11-26 15:09 - 00000000 ____D C:\Windows\system32\MRT
2016-07-19 22:57 - 2014-11-26 15:08 - 142482544 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-07-19 22:56 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp
2016-07-19 22:54 - 2014-11-22 20:07 - 00000000 ____D C:\Users\Krystian
2016-07-19 22:52 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\Inf
2016-07-19 22:32 - 2014-11-22 20:24 - 00003984 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{56288D7F-6EAE-4129-B0EB-8CCC0FCA0A98}
2016-07-19 20:53 - 2014-02-17 22:15 - 00065536 _____ C:\Windows\system32\spu_storage.bin
2016-07-19 15:35 - 2015-08-02 23:02 - 00000000 ____D C:\Users\Krystian\AppData\Local\Battle.net
2016-07-19 15:20 - 2016-02-03 22:07 - 00001068 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-07-17 23:56 - 2015-08-03 15:31 - 00000000 ____D C:\Program Files (x86)\Hearthstone
2016-07-17 23:25 - 2016-04-08 22:16 - 00003956 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2016-07-17 23:25 - 2014-11-24 20:17 - 00003818 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-07-17 22:14 - 2015-08-02 23:01 - 00000000 ____D C:\Program Files (x86)\Battle.net
2016-07-17 22:06 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\Macromed
2016-07-17 22:05 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2016-07-11 16:08 - 2016-01-17 20:53 - 01285632 ___SH C:\Users\Krystian\Desktop\Thumbs.db
2016-07-07 02:39 - 2015-01-18 18:56 - 00485032 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-07-05 16:34 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-07-05 16:34 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2016-06-20 13:30 - 2016-02-03 22:09 - 00002232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-06-20 13:29 - 2016-02-03 22:09 - 00002220 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-06-19 19:50 - 2015-02-01 23:53 - 00000000 ____D C:\Program Files (x86)\McAfee
2016-06-19 19:49 - 2016-06-13 18:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-06-19 19:49 - 2015-07-18 10:48 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service

==================== Pliki w katalogu głównym wybranych folderów =======

2015-02-02 00:30 - 2015-02-02 00:30 - 0007597 _____ () C:\Users\Krystian\AppData\Local\Resmon.ResmonCfg

==================== Bamital & volsnap =================

(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)

C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo
C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo
C:\Windows\explorer.exe => Plik podpisany cyfrowo
C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo
C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo
C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo
C:\Windows\system32\services.exe => Plik podpisany cyfrowo
C:\Windows\system32\User32.dll => Plik podpisany cyfrowo
C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo
C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo
C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo
C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo
C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo
C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo


LastRegBack: 2016-07-04 23:57

==================== Koniec  FRST.txt ============================

Kod: Zaznacz wszystko
GMER 2.2.19882 - http://www.gmer.net
Rootkit scan 2016-07-20 12:06:01
Windows 6.2.9200  x64 \Device\Harddisk0\DR0 -> \Device\0000002e TOSHIBA_MQ01ABF050 rev.AM003M 465,76GB
Running: 3v23w1rs.exe; Driver: C:\Users\Krystian\AppData\Local\Temp\fxldqpod.sys


---- Threads - GMER 2.2 ----

Thread  C:\Windows\system32\csrss.exe [644:668]                                                                                                                                                      fffff9600096d2d0
Thread  C:\Windows\System32\skydrive.exe [3736:452]                                                                                                                                                  00007ffe630f9b10

---- Registry - GMER 2.2 ----

Reg     HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\Kernel\RNG@RNGAuxiliarySeed                                                                                                            -8861670
Reg     HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\28e34788df99                                                                                                                 
Reg     HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\28e34788df99@8c71f87b6dc7                                                                                                     0xE5 0x1B 0x12 0xD5 ...
Reg     HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\28e34788df99@3022700006df                                                                                                     0x90 0x03 0x4F 0xD9 ...
Reg     HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\28e34788df99@00116748a65c                                                                                                     0xB5 0xD2 0xB9 0x39 ...
Reg     HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Epoch@Epoch                                                                                                                              14893
Reg     HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Epoch2@Epoch                                                                                                                             5062
Reg     HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{32557DAE-AC00-4709-A397-975F97586427}@LeaseObtainedTime                                                                  1468966947
Reg     HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{32557DAE-AC00-4709-A397-975F97586427}@T1                                                                                 1468970547
Reg     HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{32557DAE-AC00-4709-A397-975F97586427}@T2                                                                                 1468973247
Reg     HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{32557DAE-AC00-4709-A397-975F97586427}@LeaseTerminatesTime                                                                1468974147
Reg     HKCU\Software\Microsoft\Windows\CurrentVersion\GWX\Usage@UsageTime                                                                                                                           0x57 0xA3 0x2B 0x34 ...
Reg     HKCU\Software\Microsoft\Windows\CurrentVersion\Live\Roaming\PolicyData@PolicyDocumentLastRefresh                                                                                             0x58 0x8F 0xA4 0xB7 ...
Reg     HKCU\Software\Microsoft\Windows\CurrentVersion\Live\Roaming\PolicyData@CloudSettingsDirtyMarks                                                                                               562
Reg     HKCU\Software\Microsoft\Windows\CurrentVersion\Live\Roaming\PolicyData@CloudUsertileDirtyMarks                                                                                               562
Reg     HKCU\Software\Microsoft\Windows\CurrentVersion\SettingSync\SyncData\Namespace\windows\remotesyncdummyid@PendingOperations                                                                    0

---- Disk sectors - GMER 2.2 ----

Disk    \Device\Harddisk0\DR0                                                                                                                                                                        unknown MBR code

---- Files - GMER 2.2 ----

File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\AppHang_microsoft.window_d985446cd537a1927634679ff9132e5a1e84e6_b393a731_cab_1c3073b1                                      0 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\AppHang_microsoft.window_d985446cd537a1927634679ff9132e5a1e84e6_b393a731_cab_1c3073b1\memory.hdmp                          3709052 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\AppHang_microsoft.window_d985446cd537a1927634679ff9132e5a1e84e6_b393a731_cab_1c3073b1\Report.wer                           5220 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\AppHang_microsoft.window_d985446cd537a1927634679ff9132e5a1e84e6_b393a731_cab_1c3073b1\triagedump.dmp                       294190 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\AppHang_microsoft.window_d985446cd537a1927634679ff9132e5a1e84e6_b393a731_cab_1c3073b1\WER7097.tmp.WERInternalMetadata.xml  6056 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_2ef2a5e1b05ac8f37aa185c2d9495ecb1fa9a1e_00000000_cab_1c88c514                                              0 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_42c9c6304488a3b85eb393e069b446f302974c1_00000000_cab_1d5cb034                                              0 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_46f6d0d37353cb5a7326660c4f7bc96cd7ecb18_00000000_cab_1c88b4a8                                              0 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_75fb4786e8ad195b0352db331325226a7b7171_00000000_cab_1c88b9f8                                               0 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_86efed80c248238348bf42911454ff8596aae9_00000000_cab_1c2cb7a6                                               0 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_86efed80c248238348bf42911454ff8596aae9_00000000_cab_1c2cb7a6\DMIB257.tmp.log.xml                           17252 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_86efed80c248238348bf42911454ff8596aae9_00000000_cab_1c2cb7a6\Report.wer                                    2636 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_9ef12771755840dd6f77ad954379e71442dcacb_00000000_cab_1c2cc199                                              0 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_9ef12771755840dd6f77ad954379e71442dcacb_00000000_cab_1c2cc199\Report.wer                                   1894 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_a0a9cabed1f29415ff27a46138f3db59e47e3756_00000000_cab_1c2cc5fe                                             0 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_a0a9cabed1f29415ff27a46138f3db59e47e3756_00000000_cab_1c2cc5fe\Report.wer                                  2360 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_b5a9a939c912b03c70a86bfa72f629e8b124c7e7_00000000_cab_1c88c7d3                                             0 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_b5a9a939c912b03c70a86bfa72f629e8b124c7e7_00000000_cab_1c88c7d3\Report.wer                                  1918 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_c475b9db5387b8ae919c124a7423a64341377b6_00000000_cab_1c88cb4d                                              0 bytes
File    C:\Users\Krystian\AppData\Local\Microsoft\Windows\WER\ReportQueue\NonCritical_x64_c475b9db5387b8ae919c124a7423a64341377b6_00000000_cab_1c88cb4d\Report.wer                                   2384 bytes

---- EOF - GMER 2.2 ----
Awatar użytkownika
Rudesmen
~user
 
Posty: 541
Dołączenie: 11 Lis 2004, 21:19
Miejscowość: Gorzów Wlkp.
Pochwały: 13



Win8 wolna praca i wyskakujące reklamy

Postprzez ordynat 20 Lip 2016, 17:38

Otwórz Notatnik i wklej w nim:
Tcpip\..\Interfaces\{32557DAE-AC00-4709-A397-975F97586427}: [NameServer] 82.163.142.5,95.211.158.132
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Brak pliku
GroupPolicy: Ograniczenia - Chrome <======= UWAGA
CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
SearchScopes: HKLM -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL =
SearchScopes: HKU\.DEFAULT -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = hxxp://v9.com/web?type=ds&ts=1450272893&from=zzgbkk123&uid=toshibaxmq01abf050_z3miw0mwtxxz3miw0mwt&z=5a89392a2ff6a2d2ee96cf8g4zfw8efoam2obbftfg&q={searchTerms}
SearchScopes: HKU\S-1-5-19 -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = hxxp://v9.com/web?type=ds&ts=1450272893&from=zzgbkk123&uid=toshibaxmq01abf050_z3miw0mwtxxz3miw0mwt&z=5a89392a2ff6a2d2ee96cf8g4zfw8efoam2obbftfg&q={searchTerms}
SearchScopes: HKU\S-1-5-20 -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = hxxp://v9.com/web?type=ds&ts=1450272893&from=zzgbkk123&uid=toshibaxmq01abf050_z3miw0mwtxxz3miw0mwt&z=5a89392a2ff6a2d2ee96cf8g4zfw8efoam2obbftfg&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1300712628-2164108268-1970492725-1001 -> {C2056728-AF40-47EC-BFF1-D0F65ACECEB8} URL =
CHR DefaultSearchURL: Default -> hxxps://pl.search.yahoo.com/search?fr=mcafee_uninternational&type=C215PL642D20150201&p={searchTerms}
S2 HomeNetSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McAPExe; "C:\Program Files\McAfee\MSC\McAPExe.exe" [X]
S2 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McNaiAnn; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 mcpltsvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McProxy; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 SPDRIVER_1489.0.0.0; .\JSDriver\1489.0.0.0\jsdrv.sys [X]
HKLM\...\Run: [] => [X]
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST.exe
Uruchom FRST i kliknij przycisk Fix (NAPRAW).

Potem zrób nowy log FRST - już bez Addition, i bez Shortcut.
.
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866



Win8 wolna praca i wyskakujące reklamy

Postprzez Rudesmen 21 Lip 2016, 01:52

Dziękuję bardzo, nanpewno jest już lepiej. Przeglądarka działa szybciej i bez reklam.

Kod: Zaznacz wszystko
Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 20-07-2016
Uruchomiony przez Krystian (administrator)  BIALY (21-07-2016 01:47:17)
Uruchomiony z C:\Users\Krystian\Desktop
Załadowane profile: Krystian (Dostępne profile: Krystian)
Platform: Windows 8.1 (Update) (X64) Język: Polski (Polska)
Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome)
Tryb startu: Normal
Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
() C:\Program Files (x86)\TOSHIBA\PasswordUtility\GFNEXSrv.exe
() C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
() C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(Toshiba Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\1.6.1008.0\McCSPServiceHost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\LocationNotifications.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe


==================== Rejestr (filtrowane) ===========================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [688472 2013-07-23] (Alps Electric Co., Ltd.)
HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-08-18] (TOSHIBA Corporation)
HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [178016 2013-08-21] (TOSHIBA Corporation)
HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296520 2013-09-12] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [354144 2013-08-14] (TOSHIBA Corporation)
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\Run: [GG] => C:\Users\Krystian\AppData\Local\GG\Application\gghub.exe [4078144 2015-04-16] (GG Network S.A.)
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7404312 2015-01-20] (Piriform Ltd)
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\Run: [uTorrent] => C:\Users\Krystian\AppData\Roaming\uTorrent\updates\3.4.5_41202.exe [1822048 2015-11-11] (BitTorrent Inc.)
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\Run: [Spotify Web Helper] => C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe [1199576 2013-11-29] (Spotify Ltd)
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\Run: [Innkeeper] => C:\Users\Krystian\AppData\Local\Innkeeper\Update.exe --processStart Innkeeper.exe --process-start-args="-startup"
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\...\MountPoints2: {a327a4bd-b21c-11e4-8283-28e34788df99} - "E:\_AUTORUN\AUTORUN.EXE"

==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{32557DAE-AC00-4709-A397-975F97586427}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1300712628-2164108268-1970492725-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://toshiba.eu/symbaloo_c
SearchScopes: HKLM-x32 -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM-x32 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\.DEFAULT -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-19 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-20 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1300712628-2164108268-1970492725-1001 -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1300712628-2164108268-1970492725-1001 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
BHO-x32: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Adobe\Acrobat 5.0 CE\Reader\ActiveX\AcroIEHelper.ocx [2001-04-16] ()
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll [2016-02-03] (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll [2016-02-03] (Oracle Corporation)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-07-11] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-07-11] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-07-11] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-07-11] (McAfee, Inc.)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\MSC\McSnIePl64.dll [2015-08-21] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2015-08-21] (McAfee, Inc.)

FireFox:
========
FF ProfilePath: C:\Users\Krystian\AppData\Roaming\Mozilla\Firefox\Profiles\yi1pjfvw.default
FF NewTab: about:blank
FF SelectedSearchEngine: Google
FF Homepage: about:blank
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-17] ()
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-08-21] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-17] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.71.2 -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\dtplugin\npDeployJava1.dll [2016-02-03] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.71.2 -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\plugin2\npjp2.dll [2016-02-03] (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-08-21] ()
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-12] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-12] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2014-11-15] ()
FF Plugin HKU\S-1-5-21-1300712628-2164108268-1970492725-1001: @g2.com/iggweb3dupdater -> C:\Users\Krystian\AppData\Roaming\IGG\Web3D\1.0.0.38\NPIGGWeb3DUpdater.dll [2012-04-19] (IGG)
FF Plugin HKU\S-1-5-21-1300712628-2164108268-1970492725-1001: @g2.com/joyconnectshell -> C:\Users\Krystian\AppData\Roaming\IGG\Web3D\1.0.0.38\NPJoyConnectShell.dll [2012-04-19] (IGG)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2001-09-10] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Krystian\AppData\Roaming\Mozilla\Firefox\Profiles\yi1pjfvw.default\searchplugins\google-.xml [2016-03-16]
FF Extension: McAfee WebAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2016-05-24]
FF Extension: xRocket Toolbar - C:\Users\Krystian\AppData\Roaming\Mozilla\Firefox\Profiles\yi1pjfvw.default\Extensions\arthurj8283@gmail.com [2016-03-16] [Brak podpisu cyfrowego]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Firefox\Extensions: [arthurj8283@gmail.com] - C:\Users\Krystian\AppData\Roaming\Mozilla\Firefox\Profiles\yi1pjfvw.default\extensions\arthurj8283@gmail.com
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi

Chrome:
=======
CHR HomePage: Default -> about:blank
CHR StartupUrls: Default -> "about:blank"
CHR Profile: C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentacje Google) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-12] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Dokumenty Google) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-14] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Dysk Google) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-14] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (YouTube) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Google Search) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]
CHR Extension: (Arkusze Google) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-14] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (SiteAdvisor) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2016-05-31]
CHR Extension: (Dokumenty Google offline) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-02]
CHR Extension: (AdBlock) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-02-14] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Channel Sub Box for YouTube™) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhbmojliagbancdcmookpmaaoipjifmc [2015-07-17]
CHR Extension: (Google Wallet) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-22] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Gmail) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-29]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-05-28]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-05-28]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25]

==================== Usługi (filtrowane) ========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [99328 2013-08-31] () [Brak podpisu cyfrowego]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [312448 2013-10-01] (Windows (R) Win 7 DDK provider) [Brak podpisu cyfrowego]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation)
R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [19792 2013-09-10] ()
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-11-20] (WildTangent)
R2 GFNEXSrv; C:\Program Files (x86)\TOSHIBA\PasswordUtility\GFNEXSrv.exe [163168 2013-03-27] ()
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [163592 2016-07-11] (McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.6.1008.0\McCSPServiceHost.exe [1694152 2015-07-23] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [639456 2015-07-17] (McAfee, Inc.)
R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232656 2015-06-29] (McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [373704 2015-07-15] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [254792 2015-06-29] (McAfee, Inc.)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [3191392 2014-05-15] (INCA Internet Co., Ltd.)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [339456 2013-08-16] (IDT, Inc.) [Brak podpisu cyfrowego]
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [116088 2013-07-19] (Toshiba Europe GmbH)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
S2 HomeNetSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McAPExe; "C:\Program Files\McAfee\MSC\McAPExe.exe" [X]
S2 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McNaiAnn; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 mcpltsvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McProxy; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]

===================== Sterowniki (filtrowane) ==========================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R3 AmdAS4; C:\Windows\System32\drivers\AmdAS4.sys [17504 2013-02-06] (Advanced Micro Devices, INC.)
R2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [219360 2013-04-18] (AppEx Networks Corporation)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3858944 2013-10-24] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [138240 2013-06-22] (Advanced Micro Devices)
S3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [132608 2015-01-30] (Microsoft Corporation)
S3 BthHFAud; C:\Windows\System32\drivers\BthHfAud.sys [32768 2014-10-08] (Microsoft Corporation)
S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [77536 2015-07-02] (McAfee, Inc.)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [207208 2015-05-19] (McAfee, Inc.)
R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [412440 2015-07-02] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [347800 2015-07-02] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [80920 2015-07-02] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [496888 2015-07-02] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [875928 2015-07-02] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [529080 2015-06-28] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [109728 2015-06-28] (McAfee, Inc.)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [46240 2016-06-06] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [344704 2015-07-02] (McAfee, Inc.)
R2 PEGAGFN; C:\Program Files (x86)\TOSHIBA\PasswordUtility\PEGAGFN.sys [14344 2009-09-11] (PEGATRON)
S3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [1936088 2013-07-31] (Realtek Semiconductor Corporation                           )
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [32624 2013-08-19] (Windows (R) Win 7 DDK provider)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Jeden miesiąc - utworzone pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2016-07-21 01:47 - 2016-07-21 01:47 - 00000000 ____D C:\Users\Krystian\Desktop\FRST-OlderVersion
2016-07-21 01:26 - 2016-07-21 01:30 - 00005191 _____ C:\Users\Krystian\Desktop\Fixlog.txt
2016-07-19 23:53 - 2016-07-19 23:53 - 00380928 _____ C:\Users\Krystian\Desktop\3v23w1rs.exe
2016-07-19 23:50 - 2016-07-19 23:50 - 00088710 _____ C:\Users\Krystian\Desktop\Shortcut.txt
2016-07-19 23:46 - 2016-07-19 23:50 - 00039653 _____ C:\Users\Krystian\Desktop\Addition.txt
2016-07-19 23:40 - 2016-07-21 01:47 - 00021666 _____ C:\Users\Krystian\Desktop\FRST.txt
2016-07-19 23:39 - 2016-07-21 01:47 - 00000000 ____D C:\FRST
2016-07-19 23:33 - 2016-07-21 01:47 - 02393600 _____ (Farbar) C:\Users\Krystian\Desktop\FRST64.exe
2016-07-18 00:00 - 2016-07-18 00:00 - 00000000 ____D C:\Users\Krystian\AppData\LocalLow\Blizzard Entertainment
2016-07-04 23:02 - 2016-05-19 01:15 - 01379040 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-07-04 23:02 - 2016-05-18 22:35 - 01097216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-07-02 14:49 - 2016-05-14 22:01 - 00363104 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-07-02 14:49 - 2016-05-14 22:01 - 00320720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2016-07-02 14:49 - 2016-05-14 01:07 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2016-07-02 14:49 - 2016-05-13 23:58 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2016-07-02 14:49 - 2016-05-13 23:45 - 00802816 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-07-02 14:49 - 2016-05-13 23:35 - 00286208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2016-07-02 14:49 - 2016-05-13 23:26 - 00631808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2016-06-22 15:01 - 2016-06-22 15:01 - 00000000 ____D C:\Users\Krystian\AppData\Local\CEF
2016-06-22 15:01 - 2016-06-22 15:01 - 00000000 ____D C:\Users\Krystian\AppData\Local\Bethesda.net Launcher
2016-06-22 14:59 - 2016-06-26 11:49 - 00000000 ____D C:\Program Files (x86)\Bethesda.net Launcher
2016-06-22 14:59 - 2016-06-22 14:59 - 00001179 _____ C:\Users\Public\Desktop\Bethesda.net Launcher.lnk
2016-06-22 14:59 - 2016-06-22 14:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda.net Launcher
2016-06-22 14:57 - 2016-06-22 14:58 - 12895592 _____ (Bethesda Softworks ) C:\Users\Krystian\Downloads\BethesdaNetLauncher_Setup.exe

==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2016-07-21 01:47 - 2014-11-22 20:18 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1300712628-2164108268-1970492725-1001
2016-07-21 01:45 - 2016-02-03 22:07 - 00001064 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-07-21 01:44 - 2016-01-17 20:53 - 01285632 ___SH C:\Users\Krystian\Desktop\Thumbs.db
2016-07-21 01:43 - 2014-11-22 20:30 - 00000000 __RDO C:\Users\Krystian\SkyDrive
2016-07-21 01:43 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp
2016-07-21 01:42 - 2015-02-02 14:26 - 00000008 __RSH C:\ProgramData\ntuser.pol
2016-07-21 01:42 - 2015-02-01 23:53 - 00000000 ____D C:\Program Files (x86)\McAfee
2016-07-21 01:42 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-07-21 01:41 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2016-07-21 01:27 - 2016-02-03 22:07 - 00001068 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-07-21 01:27 - 2014-11-22 20:24 - 00003984 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{56288D7F-6EAE-4129-B0EB-8CCC0FCA0A98}
2016-07-21 01:27 - 2013-08-22 17:36 - 00000000 ___HD C:\Windows\system32\GroupPolicy
2016-07-21 01:27 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\SysWOW64\GroupPolicy
2016-07-20 15:50 - 2014-02-17 22:15 - 00065536 _____ C:\Windows\system32\spu_storage.bin
2016-07-20 12:06 - 2014-11-24 20:17 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-07-20 00:23 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\Inf
2016-07-19 23:18 - 2016-04-08 22:16 - 00000992 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-07-19 22:57 - 2014-11-26 15:09 - 00000000 ____D C:\Windows\system32\MRT
2016-07-19 22:57 - 2014-11-26 15:08 - 142482544 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-07-19 22:54 - 2014-11-22 20:07 - 00000000 ____D C:\Users\Krystian
2016-07-19 15:35 - 2015-08-02 23:02 - 00000000 ____D C:\Users\Krystian\AppData\Local\Battle.net
2016-07-17 23:56 - 2015-08-03 15:31 - 00000000 ____D C:\Program Files (x86)\Hearthstone
2016-07-17 23:25 - 2016-04-08 22:16 - 00003956 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2016-07-17 23:25 - 2014-11-24 20:17 - 00003818 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-07-17 22:14 - 2015-08-02 23:01 - 00000000 ____D C:\Program Files (x86)\Battle.net
2016-07-17 22:06 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\Macromed
2016-07-17 22:05 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2016-07-07 02:39 - 2015-01-18 18:56 - 00485032 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-07-05 16:34 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-07-05 16:34 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness

==================== Pliki w katalogu głównym wybranych folderów =======

2015-02-02 00:30 - 2015-02-02 00:30 - 0007597 _____ () C:\Users\Krystian\AppData\Local\Resmon.ResmonCfg

==================== Bamital & volsnap =================

(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)

C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo
C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo
C:\Windows\explorer.exe => Plik podpisany cyfrowo
C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo
C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo
C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo
C:\Windows\system32\services.exe => Plik podpisany cyfrowo
C:\Windows\system32\User32.dll => Plik podpisany cyfrowo
C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo
C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo
C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo
C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo
C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo
C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo


LastRegBack: 2016-07-04 23:57

==================== Koniec  FRST.txt ============================
Awatar użytkownika
Rudesmen
~user
 
Posty: 541
Dołączenie: 11 Lis 2004, 21:19
Miejscowość: Gorzów Wlkp.
Pochwały: 13



Win8 wolna praca i wyskakujące reklamy

Postprzez ordynat 21 Lip 2016, 08:14

W nowym logu nie ma już oznak tej izraelskiej infekcji.

Otwórz Notatnik i wklej w nim:
S2 HomeNetSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McAPExe; "C:\Program Files\McAfee\MSC\McAPExe.exe" [X]
S2 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McNaiAnn; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 mcpltsvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
S2 McProxy; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]
CHR Extension: (Prezentacje Google) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-12] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Dokumenty Google) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-14] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Dysk Google) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-14] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Arkusze Google) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-14] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (AdBlock) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-02-14] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Google Wallet) - C:\Users\Krystian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-22] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST.exe
Uruchom FRST i kliknij przycisk Fix (NAPRAW).

Jeśli będzie OK, to będziemy kończyć:
Otwórz Notatnik i wklej w nim:
DeleteQuarantine:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST. Uruchom FRST i kliknij w Fix (NAPRAW).
przez SHIFT+DEL usuń pozostały folder C:\FRST.
.
ordynat
~user
 
Posty: 4765
Dołączenie: 02 Kwi 2010, 11:18
Pochwały: 866




Powróć do Bezpieczeństwo

Kto jest na forum

Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 36 gości