Skocz do zawartości
  • 👋 Witaj na MPCForum!

    Przeglądasz forum jako gość, co oznacza, że wiele świetnych funkcji jest jeszcze przed Tobą! 😎

    • Pełny dostęp do działów i ukrytych treści
    • Możliwość pisania i odpowiadania w tematach
    • System prywatnych wiadomości
    • Zbieranie reputacji i rozwijanie swojego profilu
    • Członkostwo w jednej z największych społeczności graczy

    👉 Dołączenie zajmie Ci mniej niż minutę – a zyskasz znacznie więcej!

    Zarejestruj się teraz
  • 0

dll nie może znaleźć określonego systemu podczas startu


Szymon2727

Pytanie

Opublikowano

­Podczas włączania systemu pojawia się wpis: Wystąpił problem podczas uruchamiania CalibreBrassiere.dll

 

Nie można znaleźć określonego modułu.

 

O co z tym chodzi? Szukałem w google i pusto jest na ten temat.

pyhvh7E.png


 


10 odpowiedzi na to pytanie

Rekomendowane odpowiedzi

Opublikowano

Pomieszały Ci się trochę logi :P Wstawiłeś 2x Fixlog, 2x Shortcut i kawałek FRST :P

 

FRST już jest taki urwany.

 

 

 

Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:05-03-2016 01
Uruchomiony przez hp (2016-03-18 21:38:02)
Uruchomiony z C:\Users\hp\Downloads
Windows 10 Home (X64) (2015-08-06 11:54:25)
Tryb startu: Normal
==========================================================
 
 
==================== Konta użytkowników: =============================
 
Administrator (S-1-5-21-1315851758-1348891091-2830217532-500 - Administrator - Disabled) => C:\Users\Administrator
Gość (S-1-5-21-1315851758-1348891091-2830217532-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1315851758-1348891091-2830217532-1008 - Limited - Enabled)
hp (S-1-5-21-1315851758-1348891091-2830217532-1002 - Administrator - Enabled) => C:\Users\hp
Konto domyślne (S-1-5-21-1315851758-1348891091-2830217532-503 - Limited - Disabled)
 
==================== Centrum zabezpieczeń ========================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie.)
 
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG AntiVirus Free Edition (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Free Edition (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}
 
==================== Zainstalowane programy ======================
 
(W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)
 
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 17.0.0.144 - Adobe Systems Incorporated)
Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.182 - Adobe Systems Incorporated)
Adobe Flash Player 21 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 21.0.0.182 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.6.156 - Adobe Systems, Inc.)
Age of Wonders II Tron Czarnoksiężnika (HKLM-x32\...\Age of Wonders II Tron Czarnoksiężnika) (Version:  - )
Akamai NetSession Interface (HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\Akamai) (Version:  - Akamai Technologies, Inc)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Catalyst Install Manager (HKLM\...\{F2A7CE36-57BF-5C86-952D-90DBF3746D82}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
AssaultCube v1.2.0.2 (HKLM-x32\...\AssaultCube) (Version: 1.2.0.2 - )
AutoIt v3.3.14.2 (HKLM-x32\...\AutoItv3) (Version: 3.3.14.2 - AutoIt Team)
AVG (HKLM\...\AvgZen) (Version: 1.41.1.56922 - AVG Technologies)
AVG (Version: 16.41.7442 - AVG Technologies) Hidden
AVG 2016 (Version: 16.0.4542 - AVG Technologies) Hidden
AVG Protection (HKLM\...\AVG) (Version: 2016.41.7442 - AVG Technologies)
AVG Zen (Version: 1.41.29 - AVG Technologies) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform)
CodeBlocks (HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\CodeBlocks) (Version: 13.12 - The Code::Blocks Team)
Counter-Strike 1.6 v23 (HKLM-x32\...\{6A8BC91F-83AF-4CA0-AA88-06B6FD071444}_is1) (Version: v23 - CSSetti.pl)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company)
Factorio version 0.11.22 (HKLM\...\Factorio_is1) (Version:  - )
FMW 1 (Version: 1.62.2 - AVG Technologies) Hidden
Galeria fotografii (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.6317.4309 - Hewlett-Packard)
Java 8 Update 66 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418066F0}) (Version: 8.0.660.18 - Oracle Corporation)
LabelPrint (x32 Version: 2.50.0000 - Nazwa firmy) Hidden
Malwarebytes Anti-Malware wersja 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.6 - Notepad++ Team)
OEM Application Profile (HKLM-x32\...\{C89A97B6-F991-EBB5-77B7-927BCF420EBE}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Opera Stable 36.0.2130.32 (HKLM-x32\...\Opera 36.0.2130.32) (Version: 36.0.2130.32 - Opera Software)
Origin (HKLM-x32\...\Origin) (Version: 9.4.11.2806 - Electronic Arts, Inc.)
Podstawowe programy Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
PriceFountain (HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\PriceFountain) (Version:  - ) <==== UWAGA
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
Qualcomm Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Qualcomm Atheros)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.10.1226.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{0D61A55C-3ADC-409F-BF5B-A1766D1F5944}) (Version: 6.2.9200.29053 - Realtek Semiconductor Corp.)
Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.)
Sparta (HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\Sparta) (Version:  - Sparta) <==== UWAGA
STOPzilla AntiVirus 7 (HKLM-x32\...\{F2EC8AA8-9B41-4628-A263-CDB2A7479E7F}) (Version: 7.0.3.102 - iS3, Inc.)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.12.95 - Synaptics Incorporated)
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.15.55.1020 - Electronic Arts Inc.)
Transformice (x32 Version: 1.0.0 - UNKNOWN) Hidden
Unity Web Player (HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\UnityWebPlayer) (Version: 4.6.0f3 - Unity Technologies ApS)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Warlords Battlecry III (HKLM-x32\...\Warlords Battlecry III_is1) (Version:  - )
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
Wyprawa na Północ (HKLM-x32\...\Wyprawa na Północ) (Version:  - )
 
==================== Niestandardowe rejestracje CLSID (filtrowane): ==========================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
CustomCLSID: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\FileCoAuth.exe (Microsoft Corporation)
 
==================== Zaplanowane zadania (filtrowane) =============
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
Task: {00FED1E9-63D9-4421-9B91-B6D7ACB4F166} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-06-24] (Realtek Semiconductor)
Task: {0A9C6661-7B22-4781-A0DF-B4F251F64E53} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe
Task: {196C4330-C20D-4E3F-A13A-4A7315F79AA6} - System32\Tasks\{F50898BC-DDCC-4A00-BC52-3416A09F3E66} => pcalua.exe -a C:\Users\hp\AppData\Roaming\WarThunder\Uninstaller.exe -c /Run /ePN:0W1T1C0T1M2Y1G1Q1P1C
Task: {34F7BD45-3996-4C41-8800-78BEABAFDD80} - System32\Tasks\{A4E83DE3-04BB-441D-93B3-D9D7D8347C36} => pcalua.exe -a "C:\Program Files (x86)\CodeBlocks\uninstall.exe"
Task: {3ACB1760-5DC0-4F67-B1F3-8A638E346BAF} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-06-08] (Oracle Corporation)
Task: {483EA44D-F9B4-450B-98E9-6A29B3429DE4} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-11] (Adobe Systems Incorporated)
Task: {4D6E55F3-D41C-45C7-B6D0-6623F78549A8} - System32\Tasks\{30C8F203-41B7-4524-8401-5841B2EB8E50} => pcalua.exe -a C:\Users\hp\Downloads\forge-1.8-11.14.0.1299-installer-win.exe -d C:\Users\hp\Downloads
Task: {4E692CDA-7E00-4D09-B56E-208CBBC22911} - System32\Tasks\{E7BCE9F3-580A-4510-869D-71A69F2188FC} => pcalua.exe -a C:\Users\hp\Downloads\forge-1.7.10-10.13.2.1291-installer-win.exe -d C:\Users\hp\Downloads
Task: {5319FE13-BEAA-49B0-88D4-48676DF6CC3D} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-03-16] (Microsoft Corporation)
Task: {56BFFDA1-46B3-4338-909D-1CB627978848} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {7145D5D9-0C6E-4BF8-9FF5-03EBF0544DEE} - System32\Tasks\{E3F052C0-D343-46DE-BDD9-129101056371} => pcalua.exe -a E:\start.exe -d E:\
Task: {789658A1-578F-4160-835A-1C00275BC055} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\WINDOWS\system32\MRT.exe [2016-03-16] (Microsoft Corporation)
Task: {7F8FF043-EB1B-4A7B-9836-CEFAAC7E156E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe
Task: {90D3FA19-6489-41B1-827B-FCB3D232BFBC} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe
Task: {ABA5ED9B-3BFF-4C81-99B3-28688B05D7F8} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSFUpdaterRedux => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe
Task: {CA10130E-A786-4016-BC89-82344435A96E} - System32\Tasks\Opera scheduled Autoupdate 1451996041 => C:\Program Files (x86)\Opera\launcher.exe [2016-03-14] (Opera Software)
Task: {D12C8DC9-F948-4430-BF21-CFA473B96E3A} - System32\Tasks\HPCeeScheduleForhp => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard)
Task: {E0B36CC8-3990-40D2-964E-033D25425181} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-11-16] (Piriform Ltd)
Task: {F5F4DA7B-2DE3-426F-8DDC-57F0B8436335} - System32\Tasks\{06E90150-142F-4F2D-92AE-ACBB61B7FC65} => pcalua.exe -a E:\start.exe -d E:\
 
(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
 
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForhp.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
 
==================== Skróty =============================
 
(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)
 
Shortcut: C:\Users\hp\Desktop\Gry\AssaultCube.lnk -> C:\Program Files (x86)\AssaultCube\assaultcube.bat ()
 
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sparta\Sparta.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://plarium.com/play/en/sparta/navy_pl?adCampaign=88078&clickID=0AyE0D0BtAtDtA0AzztA0E0A0Bzy0F0B&publisherID=107
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Sparta.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://plarium.com/play/en/sparta/navy_pl?adCampaign=88078&clickID=0AyE0D0BtAtDtA0AzztA0E0A0Bzy0F0B&publisherID=107
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WarThunder.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://mmotraffic.com/catalog/goplay/1000932/MTE3NjYvLy8xMDAwOTMy/?subid=3&click_id=1af3709e90d96257224c8bf441aa84545752646a
 
==================== Załadowane moduły (filtrowane) ==============
 
2015-08-06 12:40 - 2015-08-06 12:40 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll
2016-01-27 17:06 - 2016-03-11 20:50 - 01216584 ____N () C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
2015-08-21 22:09 - 2015-08-21 22:09 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2015-08-19 09:27 - 2015-08-11 10:14 - 00404480 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll
2016-02-22 17:35 - 2016-02-22 17:35 - 00192584 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\loggingserver.exe
2015-10-01 14:50 - 2015-09-17 07:48 - 02494712 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-10-01 14:50 - 2015-09-17 07:48 - 02494712 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-10-02 21:14 - 2015-09-17 06:48 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-12-08 19:48 - 2015-11-25 05:20 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-12-08 19:47 - 2015-11-25 05:17 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-12-08 19:47 - 2015-11-25 05:17 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-10-01 14:50 - 2015-09-17 06:43 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 12:00 - 2015-07-10 12:00 - 00215352 _____ () c:\windows\system32\WerEtw.dll
2016-02-22 17:35 - 2016-02-22 17:35 - 00533576 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\log4cplusU.dll
2016-01-27 16:12 - 2016-01-27 16:11 - 40500224 _____ () C:\Program Files (x86)\AVG\UiDll\2171\libcef.dll
 
==================== Alternate Data Streams (filtrowane) =========
 
(Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.)
 
AlternateDataStreams: C:\ProgramData\Temp:56E2E879 [118]
 
==================== Tryb awaryjny (filtrowane) ===================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SBAMSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SBAMSvc => ""="Service"
 
==================== EXE - Powiązania (filtrowane) ===============
 
(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.)
 
 
==================== Internet Explorer - Witryny zaufane i z ograniczeniami ===============
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)
 
IE trusted site: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\aeriagames.com -> hxxps://aeriagames.com
IE trusted site: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\aeriagames.com -> hxxp://aeriagames.com
 
==================== Hosts - zawartość: ===============================
 
(Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)
 
2013-08-22 14:25 - 2016-03-18 21:30 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts
 
127.0.0.1       localhost
 
==================== Inne obszary ============================
 
(Obecnie brak automatycznej naprawy dla tej sekcji.)
 
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Zapora systemu Windows [funkcja włączona]
 
==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==
 
(Obecnie brak automatycznej naprawy dla tej sekcji.)
 
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\StartupApproved\Run: => "Akamai NetSession Interface"
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\StartupApproved\Run: => "uTorrent"
 
==================== Reguły Zapory systemu Windows (filtrowane) ===============
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{1B410C55-8EEB-4C03-BB22-FAAC65D68DB3}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{C8415FCA-EC06-4FC3-9DB0-F288A2AA2EF9}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{F0320353-2452-4052-AE91-2BE3E292664B}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{67023FD1-2132-45FE-BE39-8F638754AB87}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [uDP Query User{8D6729F8-A744-4CDF-A836-216F05B10C79}C:\windows\syswow64\dpnsvr.exe] => (Allow) C:\windows\syswow64\dpnsvr.exe
FirewallRules: [TCP Query User{74AF62B2-F609-4AFB-8E5D-DC429617A164}C:\windows\syswow64\dpnsvr.exe] => (Allow) C:\windows\syswow64\dpnsvr.exe
FirewallRules: [uDP Query User{EFA47B39-4581-4C98-A33F-4933A3AB4632}C:\program files (x86)\wnp\game.exe] => (Allow) C:\program files (x86)\wnp\game.exe
FirewallRules: [TCP Query User{F795EDDE-4D78-4AFC-AE61-2395A4F34E0F}C:\program files (x86)\wnp\game.exe] => (Allow) C:\program files (x86)\wnp\game.exe
FirewallRules: [{C0AEC127-A5C3-43DF-B3D4-03AA8C839CE0}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{27E8CB92-6A82-4E33-B48F-BCF5ECD10E6E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{1801BA58-F358-43B3-9700-F3CB272AA377}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{CE2BE3FF-F337-4BDA-8E98-CDFAEFDC418C}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{FFA5055E-823C-4467-B765-D9F58714142E}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{84E95A32-4D11-40F6-9506-DB77A88B8141}] => (Allow) LPort=2869
FirewallRules: [{13328496-CB8C-4DA9-B1E8-30E07C1B19AB}] => (Allow) LPort=1900
FirewallRules: [{763645DE-93C1-47D5-8F87-67DB4B318B40}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{688FFD18-7A19-4ED5-8332-6B7EB263F645}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{3DDECD65-A245-4ED6-A11C-781BD3B8AD87}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{41F6005A-7FD4-4CD9-B4A0-C20AE5B6CD0A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{9060E69F-E4A1-40FE-84FB-840EA7DD20BD}C:\users\hp\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\hp\appdata\local\akamai\netsession_win.exe
FirewallRules: [uDP Query User{070976C8-28E6-4572-9EB6-C0A9A0423F6B}C:\users\hp\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\hp\appdata\local\akamai\netsession_win.exe
FirewallRules: [TCP Query User{6C76ECBE-4106-4229-8941-EEDA3768EE4F}C:\users\hp\appdata\local\id software\quakelive\quakelive.exe] => (Allow) C:\users\hp\appdata\local\id software\quakelive\quakelive.exe
FirewallRules: [uDP Query User{CACD0C87-3E41-4902-BA03-2849C59F5088}C:\users\hp\appdata\local\id software\quakelive\quakelive.exe] => (Allow) C:\users\hp\appdata\local\id software\quakelive\quakelive.exe
FirewallRules: [TCP Query User{AB59F03B-1B09-4835-B993-1A0AEB5C938B}C:\users\hp\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\hp\appdata\local\akamai\netsession_win.exe
FirewallRules: [uDP Query User{D17EB984-8EB4-413D-B161-5347A3CA2E95}C:\users\hp\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\hp\appdata\local\akamai\netsession_win.exe
FirewallRules: [TCP Query User{F9C7FFDA-4249-432D-B349-24477478E288}C:\program files\java\jre1.8.0_66\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [uDP Query User{D8719C14-1E0F-4E78-93C9-8CB3A5D473E3}C:\program files\java\jre1.8.0_66\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [{655E4D4B-0849-4038-9327-06CD1228AD85}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [{5ADEEC2A-A8F4-42FA-B6C4-B230FD981407}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [TCP Query User{FEDAD48A-2988-47E3-BF54-424C5D5CF07F}C:\program files\java\jre1.8.0_66\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [uDP Query User{60384E57-8948-4F89-BE84-94AC8E0077A5}C:\program files\java\jre1.8.0_66\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [{9CE55BAB-4CB8-4529-9757-D9AB842A51C1}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{A259D78B-02D0-46E8-A591-776E6977CCFE}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{3F80FAFF-A64E-403A-B702-4B5577BF6B42}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe
FirewallRules: [{46F29F4F-1B80-457E-986B-DC74DE18E257}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe
FirewallRules: [{13F9A667-206D-4EA5-96A3-111FF26111C1}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{5B55EB52-8DE4-4AF9-9D35-3A0DFC2D3C20}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{86630E4B-37E2-4E43-8D7C-BA9135F7BBD1}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{B2F10519-A7B8-458B-AA7E-785D1E30053C}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{BE53C7DF-B36C-4D07-8AEA-2B9987D70022}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe
FirewallRules: [{1F4EE679-3249-4C2D-AD49-6E2F6BA6EEA9}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe
FirewallRules: [TCP Query User{F6E56C37-9862-4B6F-B0FC-EBF581D6F721}C:\gry\counter-strike 1.6 v23\hl.exe] => (Block) C:\gry\counter-strike 1.6 v23\hl.exe
FirewallRules: [uDP Query User{97A8E5BE-D9F0-48BF-8091-4BBB9C77AD43}C:\gry\counter-strike 1.6 v23\hl.exe] => (Block) C:\gry\counter-strike 1.6 v23\hl.exe
FirewallRules: [TCP Query User{A2476D76-8AA3-429A-8654-5B3CEC297051}C:\gry\counter-strike 1.6 v23\hl.exe] => (Block) C:\gry\counter-strike 1.6 v23\hl.exe
FirewallRules: [uDP Query User{AE4D33A3-7351-468B-84EA-60BD512951C0}C:\gry\counter-strike 1.6 v23\hl.exe] => (Block) C:\gry\counter-strike 1.6 v23\hl.exe
 
==================== Punkty Przywracania systemu =========================
 
10-03-2016 15:49:49 Windows Update
11-03-2016 23:18:44 Installed Safari
16-03-2016 18:21:46 Windows Update
 
==================== Wadliwe urządzenia w Menedżerze urządzeń =============
 
 
==================== Błędy w Dzienniku zdarzeń: =========================
 
Dziennik Aplikacja:
==================
Error: (03/18/2016 09:34:13 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program FRST64.exe w wersji 5.3.2016.1 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w oknie Zabezpieczenia i konserwacja w Panelu sterowania.
 
Identyfikator procesu: 558
 
Godzina rozpoczęcia: 01d181557971c16b
 
Godzina zakończenia: 4294967295
 
Ścieżka aplikacji: C:\Users\hp\Downloads\FRST64.exe
 
Identyfikator raportu: c596beab-ed48-11e5-8352-a4db303a83ea
 
Pełna nazwa pakietu powodującego błąd: 
 
Identyfikator aplikacji względem pakietu powodującego błąd:
 
Error: (03/17/2016 06:06:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: hphp)
Description: Aktywacja aplikacji Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.
 
Error: (03/17/2016 05:40:25 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program RimWorld914Win.exe w wersji 4.6.3.21464 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w oknie Zabezpieczenia i konserwacja w Panelu sterowania.
 
Identyfikator procesu: 49c
 
Godzina rozpoczęcia: 01d1806b6cb26c2c
 
Godzina zakończenia: 180
 
Ścieżka aplikacji: C:\Users\hp\Desktop\Gry\Mods\RimWorld914Win.exe
 
Identyfikator raportu: ec634776-ec5e-11e5-834e-a4db303a83ea
 
Pełna nazwa pakietu powodującego błąd: 
 
Identyfikator aplikacji względem pakietu powodującego błąd:
 
Error: (03/17/2016 04:39:52 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program hl.exe w wersji 1.1.1.1 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w oknie Zabezpieczenia i konserwacja w Panelu sterowania.
 
Identyfikator procesu: 1638
 
Godzina rozpoczęcia: 01d18063364b2b02
 
Godzina zakończenia: 1153
 
Ścieżka aplikacji: C:\Gry\Counter-Strike 1.6 v23\hl.exe
 
Identyfikator raportu: 7ad3536a-ec56-11e5-834e-a4db303a83ea
 
Pełna nazwa pakietu powodującego błąd: 
 
Identyfikator aplikacji względem pakietu powodującego błąd:
 
Error: (03/17/2016 01:59:52 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program CCleaner64.exe w wersji 5.12.0.5431 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w oknie Zabezpieczenia i konserwacja w Panelu sterowania.
 
Identyfikator procesu: 1050
 
Godzina rozpoczęcia: 01d1804cd08c01f2
 
Godzina zakończenia: 270
 
Ścieżka aplikacji: C:\Program Files\CCleaner\CCleaner64.exe
 
Identyfikator raportu: 216d9a6c-ec40-11e5-834e-a4db303a83ea
 
Pełna nazwa pakietu powodującego błąd: 
 
Identyfikator aplikacji względem pakietu powodującego błąd:
 
Error: (03/16/2016 10:42:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: hphp)
Description: Aktywacja aplikacji Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.
 
Error: (03/16/2016 10:24:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: AUDIODG.EXE, wersja: 10.0.10240.16384, sygnatura czasowa: 0x559f3a8d
Nazwa modułu powodującego błąd: ntdll.dll, wersja: 10.0.10240.16683, sygnatura czasowa: 0x56ad9704
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x00000000000954bd
Identyfikator procesu powodującego błąd: 0x1704
Godzina uruchomienia aplikacji powodującej błąd: 0xAUDIODG.EXE0
Ścieżka aplikacji powodującej błąd: AUDIODG.EXE1
Ścieżka modułu powodującego błąd: AUDIODG.EXE2
Identyfikator raportu: AUDIODG.EXE3
Pełna nazwa pakietu powodującego błąd: AUDIODG.EXE4
Identyfikator aplikacji względem pakietu powodującego błąd: AUDIODG.EXE5
 
Error: (03/16/2016 06:37:23 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: hphp)
Description: Aktywacja aplikacji Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App nie powiodła się. Błąd: -2147023169. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.
 
Error: (03/16/2016 06:22:01 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się.
 
Details:
AddLegacyDriverFiles: Unable to back up image of binary Protokół LLDP (Link-Layer Discovery Protocol) firmy Microsoft.
 
System Error:
Odmowa dostępu.
.
 
Error: (03/16/2016 05:32:51 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: LogonUI.exe, wersja: 10.0.10240.16384, sygnatura czasowa: 0x559f398c
Nazwa modułu powodującego błąd: Windows.UI.Logon.dll, wersja: 10.0.10240.16724, sygnatura czasowa: 0x56cc44d2
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x000000000014ca5a
Identyfikator procesu powodującego błąd: 0x538
Godzina uruchomienia aplikacji powodującej błąd: 0xLogonUI.exe0
Ścieżka aplikacji powodującej błąd: LogonUI.exe1
Ścieżka modułu powodującego błąd: LogonUI.exe2
Identyfikator raportu: LogonUI.exe3
Pełna nazwa pakietu powodującego błąd: LogonUI.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: LogonUI.exe5
 
 
Dziennik System:
=============
Error: (03/18/2016 09:36:15 PM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}
 
Error: (03/18/2016 09:32:06 PM) (Source: volmgr) (EventID: 46) (User: )
Description: Inicjowanie zrzutu awaryjnego nie powiodło się!
 
Error: (03/18/2016 09:31:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Synchronizuj hosta_Session1 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 10000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.
 
Error: (03/18/2016 09:29:40 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.
 
Error: (03/18/2016 09:29:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa IconMan_R niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.
 
Error: (03/18/2016 09:29:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Bufor wydruku niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.
 
Error: (03/18/2016 09:29:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa AVG WatchDog niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.
 
Error: (03/18/2016 09:29:34 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa AVG Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.
 
Error: (03/18/2016 09:29:19 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Usługa Przeglądarka komputera zależy od usługi Serwer, której nie można uruchomić z powodu następującego błędu: 
%%1062
 
Error: (03/18/2016 09:29:19 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Usługa Serwer zakończyła działanie; wystąpił następujący specyficzny dla niej błąd: 
%%2182
 
 
CodeIntegrity:
===================================
  Date: 2016-03-18 14:57:03.298
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:57:03.210
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:57:02.359
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:57:02.191
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:56:07.600
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:56:07.479
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:56:05.534
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:56:05.463
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:56:05.383
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:56:05.305
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
 
==================== Statystyki pamięci =========================== 
 
Procesor: AMD E1-1500 APU with Radeon HD Graphics
Procent pamięci w użyciu: 38%
Całkowita pamięć fizyczna: 3682.26 MB
Dostępna pamięć fizyczna: 2278.53 MB
Całkowita pamięć wirtualna: 3682.26 MB
Dostępna pamięć wirtualna: 2373.33 MB
 
==================== Dyski ================================
 
Drive c: (Windows) (Fixed) (Total:448.28 GB) (Free:391.66 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)]
Drive d: (RECOVERY) (Fixed) (Total:15.44 GB) (Free:1.57 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)]
 
==================== MBR & Tablica partycji ==================
 
========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 3F33811E)
 
Partition: GPT.
 
==================== Koniec  Addition.txt ============================

 

­

pyhvh7E.png


 


Opublikowano

Mnóstwo oprogramowania adware, nieporządzanych programów oraz zdezaktualizowane dodatki. 

PriceFountain (HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\PriceFountain) (Version:  - ) <==== UWAGA

 

Sparta (HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\Sparta) (Version:  - Sparta) <==== UWAGA

 

Java 8 Update 66 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418066F0}) (Version: 8.0.660.18 - Oracle Corporation)

 

Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)

 

Masa błędnych (?) tasków

 

Task: {11BABF2A-1E30-4271-B9C0-EF00893463DA} - System32\Tasks\hpHangoversPhenomenalV2 => Rundll32.exe CalibreBrassiere.dll,main 7 1 <==== UWAGA

 

Task: {2375F142-C280-446E-89D6-5C3022A6F96E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA

Task: {320A8EB4-3A32-45BD-8E3C-AA23B5A07680} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA

 

Task: {96D2B08B-21FA-4AD3-B1E9-45A43D743044} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA

[...]

 

I wiele, wiele innych dziwnych rzeczy. 

 

Czyszczenie:

 

Closeprocesses:
Task: {11BABF2A-1E30-4271-B9C0-EF00893463DA} - System32\Tasks\hpHangoversPhenomenalV2 => Rundll32.exe CalibreBrassiere.dll,main 7 1 <==== UWAGA
Task: {18A7F580-16F9-4717-9539-B9B86B38A4DE} - System32\Tasks\{BC0BB449-2C3E-411F-8285-29B00F93622A} => pcalua.exe -a C:\Users\hp\AppData\Roaming\omiga-plus\UninstallManager.exe -c  -ptid=smt <==== UWAGA
Task: {2375F142-C280-446E-89D6-5C3022A6F96E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA
Task: {320A8EB4-3A32-45BD-8E3C-AA23B5A07680} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
Task: {474B9C67-972B-421B-847C-2203597E9430} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA
Task: {86581700-799E-4301-9819-1D7F50967D2E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA
Task: {96D2B08B-21FA-4AD3-B1E9-45A43D743044} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA
Task: {BC8D6B9F-97FC-400F-A55B-7549DE0A4AE7} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA
Task: {D6E10140-96BE-4C38-A81A-934180E4E664} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA
Task: {E4B5A16C-9A16-4689-94FA-03B888533344} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
Task: {F2360F4B-6B35-4344-94E0-C9B6D11E8295} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA
Task: {F3F01B4B-911E-44A0-87C3-F0DD9F416B29} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
Task: {FC771E1E-82CD-4567-AA8A-5FC2E6245402} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA
 
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Classes\.exe: exefile =>  <===== UWAGA
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Classes\exefile:  <===== UWAGA
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  Brak pliku
GroupPolicy: Ograniczenia - Chrome <======= UWAGA
CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130982262859764776&GUID=AA20B454-0B88-4845-82B9-55C9C7FC6663
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130982262859792890&GUID=AA20B454-0B88-4845-82B9-55C9C7FC6663
SearchScopes: HKLM -> {7E98812C-C8BA-4A6B-8035-B2C5A443EC34} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {7E98812C-C8BA-4A6B-8035-B2C5A443EC34} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={86E28FD8-076A-4C46-940F-1061373A2258}&mid=e9be97ca724647cda291759276de54a5-9081c6e61451e5b6ea64969974d75647542e60f2〈=pl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2016-01-27 17:06:19&v=4.2.5.441&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> {7E98812C-C8BA-4A6B-8035-B2C5A443EC34} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={86E28FD8-076A-4C46-940F-1061373A2258}&mid=e9be97ca724647cda291759276de54a5-9081c6e61451e5b6ea64969974d75647542e60f2〈=pl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2016-01-27 17:06:19&v=4.2.5.441&pid=wtu&sg=&sap=dsp&q={searchTerms}
BHO-x32: Brak nazwy -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Brak pliku
Toolbar: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> Brak nazwy - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  Brak pliku
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
 
 
 
CMD: dir /a "C:\Users\hp\appdata\Local"
CMD: dir /a "C:\Users\hp\appdata\Roaming"
CMD: dir /a "C:\Users\hp\appdata\Locallow"
CMD: dir /a "C:\Program Files (x86)"
CMD: dir /a "C:\Program Files"
CMD: dir /a "C:\ProgramData"
RemoveProxy:
Hosts:
EmptyTemp:
Fix zapisz jako FIXLIST.TXT umieść go obok FRST i kliknij FIX/Napraw. Po restarcie systemu utworzy się plik FIXLOG.TXT który umieścisz na forum oraz wykonaj nowe logi FRST.
Opublikowano

Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja:05-03-2016 01

Uruchomiony przez hp (2016-03-18 15:07:09)
Uruchomiony z C:\Users\hp\Downloads
Windows 10 Home (X64) (2015-08-06 11:54:25)
Tryb startu: Normal
==========================================================
 
 
==================== Konta użytkowników: =============================
 
Administrator (S-1-5-21-1315851758-1348891091-2830217532-500 - Administrator - Disabled) => C:\Users\Administrator
Gość (S-1-5-21-1315851758-1348891091-2830217532-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1315851758-1348891091-2830217532-1008 - Limited - Enabled)
hp (S-1-5-21-1315851758-1348891091-2830217532-1002 - Administrator - Enabled) => C:\Users\hp
Konto domyślne (S-1-5-21-1315851758-1348891091-2830217532-503 - Limited - Disabled)
 
==================== Centrum zabezpieczeń ========================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie.)
 
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG AntiVirus Free Edition (Disabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Free Edition (Disabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}
 
==================== Zainstalowane programy ======================
 
(W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)
 
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 17.0.0.144 - Adobe Systems Incorporated)
Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.182 - Adobe Systems Incorporated)
Adobe Flash Player 21 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 21.0.0.182 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.6.156 - Adobe Systems, Inc.)
Age of Wonders II Tron Czarnoksiężnika (HKLM-x32\...\Age of Wonders II Tron Czarnoksiężnika) (Version:  - )
Akamai NetSession Interface (HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\Akamai) (Version:  - Akamai Technologies, Inc)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Catalyst Install Manager (HKLM\...\{F2A7CE36-57BF-5C86-952D-90DBF3746D82}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
AssaultCube v1.2.0.2 (HKLM-x32\...\AssaultCube) (Version: 1.2.0.2 - )
AutoIt v3.3.14.2 (HKLM-x32\...\AutoItv3) (Version: 3.3.14.2 - AutoIt Team)
AVG (HKLM\...\AvgZen) (Version: 1.41.1.56922 - AVG Technologies)
AVG (Version: 16.41.7442 - AVG Technologies) Hidden
AVG 2016 (Version: 16.0.4542 - AVG Technologies) Hidden
AVG Protection (HKLM\...\AVG) (Version: 2016.41.7442 - AVG Technologies)
AVG Zen (Version: 1.41.29 - AVG Technologies) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform)
CodeBlocks (HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\CodeBlocks) (Version: 13.12 - The Code::Blocks Team)
Counter-Strike 1.6 v23 (HKLM-x32\...\{6A8BC91F-83AF-4CA0-AA88-06B6FD071444}_is1) (Version: v23 - CSSetti.pl)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company)
Factorio version 0.11.22 (HKLM\...\Factorio_is1) (Version:  - )
FMW 1 (Version: 1.62.2 - AVG Technologies) Hidden
Galeria fotografii (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.6317.4309 - Hewlett-Packard)
Java 8 Update 66 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418066F0}) (Version: 8.0.660.18 - Oracle Corporation)
LabelPrint (x32 Version: 2.50.0000 - Nazwa firmy) Hidden
Malwarebytes Anti-Malware wersja 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.6 - Notepad++ Team)
OEM Application Profile (HKLM-x32\...\{C89A97B6-F991-EBB5-77B7-927BCF420EBE}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Opera Stable 36.0.2130.32 (HKLM-x32\...\Opera 36.0.2130.32) (Version: 36.0.2130.32 - Opera Software)
Origin (HKLM-x32\...\Origin) (Version: 9.4.11.2806 - Electronic Arts, Inc.)
Podstawowe programy Windows Live (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
PriceFountain (HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\PriceFountain) (Version:  - ) <==== UWAGA
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
Qualcomm Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Qualcomm Atheros)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.10.1226.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{0D61A55C-3ADC-409F-BF5B-A1766D1F5944}) (Version: 6.2.9200.29053 - Realtek Semiconductor Corp.)
Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.)
Sparta (HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\Sparta) (Version:  - Sparta) <==== UWAGA
STOPzilla AntiVirus 7 (HKLM-x32\...\{F2EC8AA8-9B41-4628-A263-CDB2A7479E7F}) (Version: 7.0.3.102 - iS3, Inc.)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.12.95 - Synaptics Incorporated)
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.15.55.1020 - Electronic Arts Inc.)
Transformice (x32 Version: 1.0.0 - UNKNOWN) Hidden
Unity Web Player (HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\UnityWebPlayer) (Version: 4.6.0f3 - Unity Technologies ApS)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Warlords Battlecry III (HKLM-x32\...\Warlords Battlecry III_is1) (Version:  - )
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
Wyprawa na Północ (HKLM-x32\...\Wyprawa na Północ) (Version:  - )
 
==================== Niestandardowe rejestracje CLSID (filtrowane): ==========================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
CustomCLSID: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\FileCoAuth.exe (Microsoft Corporation)
 
==================== Zaplanowane zadania (filtrowane) =============
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
Task: {00FED1E9-63D9-4421-9B91-B6D7ACB4F166} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2015-06-24] (Realtek Semiconductor)
Task: {0A9C6661-7B22-4781-A0DF-B4F251F64E53} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe
Task: {11BABF2A-1E30-4271-B9C0-EF00893463DA} - System32\Tasks\hpHangoversPhenomenalV2 => Rundll32.exe CalibreBrassiere.dll,main 7 1 <==== UWAGA
Task: {18A7F580-16F9-4717-9539-B9B86B38A4DE} - System32\Tasks\{BC0BB449-2C3E-411F-8285-29B00F93622A} => pcalua.exe -a C:\Users\hp\AppData\Roaming\omiga-plus\UninstallManager.exe -c  -ptid=smt <==== UWAGA
Task: {196C4330-C20D-4E3F-A13A-4A7315F79AA6} - System32\Tasks\{F50898BC-DDCC-4A00-BC52-3416A09F3E66} => pcalua.exe -a C:\Users\hp\AppData\Roaming\WarThunder\Uninstaller.exe -c /Run /ePN:0W1T1C0T1M2Y1G1Q1P1C
Task: {2375F142-C280-446E-89D6-5C3022A6F96E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA
Task: {320A8EB4-3A32-45BD-8E3C-AA23B5A07680} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
Task: {34F7BD45-3996-4C41-8800-78BEABAFDD80} - System32\Tasks\{A4E83DE3-04BB-441D-93B3-D9D7D8347C36} => pcalua.exe -a "C:\Program Files (x86)\CodeBlocks\uninstall.exe"
Task: {3ACB1760-5DC0-4F67-B1F3-8A638E346BAF} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-06-08] (Oracle Corporation)
Task: {474B9C67-972B-421B-847C-2203597E9430} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA
Task: {483EA44D-F9B4-450B-98E9-6A29B3429DE4} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-11] (Adobe Systems Incorporated)
Task: {4D6E55F3-D41C-45C7-B6D0-6623F78549A8} - System32\Tasks\{30C8F203-41B7-4524-8401-5841B2EB8E50} => pcalua.exe -a C:\Users\hp\Downloads\forge-1.8-11.14.0.1299-installer-win.exe -d C:\Users\hp\Downloads
Task: {4E692CDA-7E00-4D09-B56E-208CBBC22911} - System32\Tasks\{E7BCE9F3-580A-4510-869D-71A69F2188FC} => pcalua.exe -a C:\Users\hp\Downloads\forge-1.7.10-10.13.2.1291-installer-win.exe -d C:\Users\hp\Downloads
Task: {5319FE13-BEAA-49B0-88D4-48676DF6CC3D} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-03-16] (Microsoft Corporation)
Task: {56BFFDA1-46B3-4338-909D-1CB627978848} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {7145D5D9-0C6E-4BF8-9FF5-03EBF0544DEE} - System32\Tasks\{E3F052C0-D343-46DE-BDD9-129101056371} => pcalua.exe -a E:\start.exe -d E:\
Task: {789658A1-578F-4160-835A-1C00275BC055} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\WINDOWS\system32\MRT.exe [2016-03-16] (Microsoft Corporation)
Task: {7F8FF043-EB1B-4A7B-9836-CEFAAC7E156E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe
Task: {86581700-799E-4301-9819-1D7F50967D2E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA
Task: {90D3FA19-6489-41B1-827B-FCB3D232BFBC} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe
Task: {96D2B08B-21FA-4AD3-B1E9-45A43D743044} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA
Task: {ABA5ED9B-3BFF-4C81-99B3-28688B05D7F8} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSFUpdaterRedux => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe
Task: {BC8D6B9F-97FC-400F-A55B-7549DE0A4AE7} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA
Task: {CA10130E-A786-4016-BC89-82344435A96E} - System32\Tasks\Opera scheduled Autoupdate 1451996041 => C:\Program Files (x86)\Opera\launcher.exe [2016-03-14] (Opera Software)
Task: {D12C8DC9-F948-4430-BF21-CFA473B96E3A} - System32\Tasks\HPCeeScheduleForhp => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard)
Task: {D6E10140-96BE-4C38-A81A-934180E4E664} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA
Task: {E0B36CC8-3990-40D2-964E-033D25425181} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-11-16] (Piriform Ltd)
Task: {E4B5A16C-9A16-4689-94FA-03B888533344} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
Task: {F2360F4B-6B35-4344-94E0-C9B6D11E8295} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA
Task: {F3F01B4B-911E-44A0-87C3-F0DD9F416B29} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
Task: {F5F4DA7B-2DE3-426F-8DDC-57F0B8436335} - System32\Tasks\{06E90150-142F-4F2D-92AE-ACBB61B7FC65} => pcalua.exe -a E:\start.exe -d E:\
Task: {FC771E1E-82CD-4567-AA8A-5FC2E6245402} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA
 
(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
 
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForhp.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
 
==================== Skróty =============================
 
(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)
 
Shortcut: C:\Users\hp\Desktop\Gry\AssaultCube.lnk -> C:\Program Files (x86)\AssaultCube\assaultcube.bat ()
 
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sparta\Sparta.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://plarium.com/play/en/sparta/navy_pl?adCampaign=88078&clickID=0AyE0D0BtAtDtA0AzztA0E0A0Bzy0F0B&publisherID=107
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Sparta.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://plarium.com/play/en/sparta/navy_pl?adCampaign=88078&clickID=0AyE0D0BtAtDtA0AzztA0E0A0Bzy0F0B&publisherID=107
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WarThunder.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://mmotraffic.com/catalog/goplay/1000932/MTE3NjYvLy8xMDAwOTMy/?subid=3&click_id=1af3709e90d96257224c8bf441aa84545752646a
 
==================== Załadowane moduły (filtrowane) ==============
 
2015-08-06 12:40 - 2015-08-06 12:40 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll
2016-01-27 17:06 - 2016-03-11 20:50 - 01216584 ____N () C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
2015-08-21 22:09 - 2015-08-21 22:09 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2015-08-19 09:27 - 2015-08-11 10:14 - 00404480 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll
2016-02-22 17:35 - 2016-02-22 17:35 - 00192584 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\loggingserver.exe
2015-10-01 14:50 - 2015-09-17 07:48 - 02494712 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-10-01 14:50 - 2015-09-17 07:48 - 02494712 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-10-02 21:14 - 2015-09-17 06:48 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-12-08 19:48 - 2015-11-25 05:20 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-12-08 19:47 - 2015-11-25 05:17 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-12-08 19:47 - 2015-11-25 05:17 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-10-01 14:50 - 2015-09-17 06:43 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 12:00 - 2015-07-10 17:34 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2015-07-10 12:00 - 2015-07-10 12:00 - 00215352 _____ () c:\windows\system32\WerEtw.dll
2016-02-22 17:35 - 2016-02-22 17:35 - 00533576 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\log4cplusU.dll
2016-03-16 18:36 - 2016-03-14 09:14 - 63828520 _____ () C:\Program Files (x86)\Opera\36.0.2130.32\opera.dll
2016-03-16 18:37 - 2016-03-14 09:14 - 00080424 _____ () C:\Program Files (x86)\Opera\36.0.2130.32\win10_utils.DLL
2016-03-16 18:36 - 2016-03-14 09:14 - 02134568 _____ () C:\Program Files (x86)\Opera\36.0.2130.32\libglesv2.dll
2016-03-16 18:36 - 2016-03-14 09:14 - 00082472 _____ () C:\Program Files (x86)\Opera\36.0.2130.32\libegl.dll
2016-01-27 16:12 - 2016-01-27 16:11 - 40500224 _____ () C:\Program Files (x86)\AVG\UiDll\2171\libcef.dll
 
==================== Alternate Data Streams (filtrowane) =========
 
(Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.)
 
AlternateDataStreams: C:\ProgramData\Temp:56E2E879 [118]
 
==================== Tryb awaryjny (filtrowane) ===================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SBAMSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SBAMSvc => ""="Service"
 
==================== EXE - Powiązania (filtrowane) ===============
 
(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.)
 
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Classes\.exe: exefile =>  <===== UWAGA
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Classes\exefile:  <===== UWAGA
 
==================== Internet Explorer - Witryny zaufane i z ograniczeniami ===============
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)
 
IE trusted site: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\aeriagames.com -> hxxps://aeriagames.com
IE trusted site: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\aeriagames.com -> hxxp://aeriagames.com
 
==================== Hosts - zawartość: ===============================
 
(Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)
 
2013-08-22 14:25 - 2015-08-26 10:09 - 00000860 ____A C:\WINDOWS\system32\Drivers\etc\hosts
 
127.0.0.1 localhost
::1 localhost
 
==================== Inne obszary ============================
 
(Obecnie brak automatycznej naprawy dla tej sekcji.)
 
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Zapora systemu Windows [funkcja włączona]
 
==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==
 
(Obecnie brak automatycznej naprawy dla tej sekcji.)
 
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\StartupApproved\Run: => "Akamai NetSession Interface"
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\StartupApproved\Run: => "uTorrent"
 
==================== Reguły Zapory systemu Windows (filtrowane) ===============
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{1B410C55-8EEB-4C03-BB22-FAAC65D68DB3}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{C8415FCA-EC06-4FC3-9DB0-F288A2AA2EF9}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{F0320353-2452-4052-AE91-2BE3E292664B}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{67023FD1-2132-45FE-BE39-8F638754AB87}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [uDP Query User{8D6729F8-A744-4CDF-A836-216F05B10C79}C:\windows\syswow64\dpnsvr.exe] => (Allow) C:\windows\syswow64\dpnsvr.exe
FirewallRules: [TCP Query User{74AF62B2-F609-4AFB-8E5D-DC429617A164}C:\windows\syswow64\dpnsvr.exe] => (Allow) C:\windows\syswow64\dpnsvr.exe
FirewallRules: [uDP Query User{EFA47B39-4581-4C98-A33F-4933A3AB4632}C:\program files (x86)\wnp\game.exe] => (Allow) C:\program files (x86)\wnp\game.exe
FirewallRules: [TCP Query User{F795EDDE-4D78-4AFC-AE61-2395A4F34E0F}C:\program files (x86)\wnp\game.exe] => (Allow) C:\program files (x86)\wnp\game.exe
FirewallRules: [{C0AEC127-A5C3-43DF-B3D4-03AA8C839CE0}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{27E8CB92-6A82-4E33-B48F-BCF5ECD10E6E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{1801BA58-F358-43B3-9700-F3CB272AA377}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{CE2BE3FF-F337-4BDA-8E98-CDFAEFDC418C}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{FFA5055E-823C-4467-B765-D9F58714142E}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{84E95A32-4D11-40F6-9506-DB77A88B8141}] => (Allow) LPort=2869
FirewallRules: [{13328496-CB8C-4DA9-B1E8-30E07C1B19AB}] => (Allow) LPort=1900
FirewallRules: [{763645DE-93C1-47D5-8F87-67DB4B318B40}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{688FFD18-7A19-4ED5-8332-6B7EB263F645}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{3DDECD65-A245-4ED6-A11C-781BD3B8AD87}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{41F6005A-7FD4-4CD9-B4A0-C20AE5B6CD0A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{9060E69F-E4A1-40FE-84FB-840EA7DD20BD}C:\users\hp\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\hp\appdata\local\akamai\netsession_win.exe
FirewallRules: [uDP Query User{070976C8-28E6-4572-9EB6-C0A9A0423F6B}C:\users\hp\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\hp\appdata\local\akamai\netsession_win.exe
FirewallRules: [TCP Query User{6C76ECBE-4106-4229-8941-EEDA3768EE4F}C:\users\hp\appdata\local\id software\quakelive\quakelive.exe] => (Allow) C:\users\hp\appdata\local\id software\quakelive\quakelive.exe
FirewallRules: [uDP Query User{CACD0C87-3E41-4902-BA03-2849C59F5088}C:\users\hp\appdata\local\id software\quakelive\quakelive.exe] => (Allow) C:\users\hp\appdata\local\id software\quakelive\quakelive.exe
FirewallRules: [TCP Query User{AB59F03B-1B09-4835-B993-1A0AEB5C938B}C:\users\hp\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\hp\appdata\local\akamai\netsession_win.exe
FirewallRules: [uDP Query User{D17EB984-8EB4-413D-B161-5347A3CA2E95}C:\users\hp\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\hp\appdata\local\akamai\netsession_win.exe
FirewallRules: [TCP Query User{F9C7FFDA-4249-432D-B349-24477478E288}C:\program files\java\jre1.8.0_66\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [uDP Query User{D8719C14-1E0F-4E78-93C9-8CB3A5D473E3}C:\program files\java\jre1.8.0_66\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [{655E4D4B-0849-4038-9327-06CD1228AD85}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [{5ADEEC2A-A8F4-42FA-B6C4-B230FD981407}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe
FirewallRules: [TCP Query User{FEDAD48A-2988-47E3-BF54-424C5D5CF07F}C:\program files\java\jre1.8.0_66\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [uDP Query User{60384E57-8948-4F89-BE84-94AC8E0077A5}C:\program files\java\jre1.8.0_66\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [{9CE55BAB-4CB8-4529-9757-D9AB842A51C1}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{A259D78B-02D0-46E8-A591-776E6977CCFE}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe
FirewallRules: [{3F80FAFF-A64E-403A-B702-4B5577BF6B42}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe
FirewallRules: [{46F29F4F-1B80-457E-986B-DC74DE18E257}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe
FirewallRules: [{13F9A667-206D-4EA5-96A3-111FF26111C1}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{5B55EB52-8DE4-4AF9-9D35-3A0DFC2D3C20}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe
FirewallRules: [{86630E4B-37E2-4E43-8D7C-BA9135F7BBD1}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{B2F10519-A7B8-458B-AA7E-785D1E30053C}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{BE53C7DF-B36C-4D07-8AEA-2B9987D70022}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe
FirewallRules: [{1F4EE679-3249-4C2D-AD49-6E2F6BA6EEA9}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe
FirewallRules: [TCP Query User{F6E56C37-9862-4B6F-B0FC-EBF581D6F721}C:\gry\counter-strike 1.6 v23\hl.exe] => (Block) C:\gry\counter-strike 1.6 v23\hl.exe
FirewallRules: [uDP Query User{97A8E5BE-D9F0-48BF-8091-4BBB9C77AD43}C:\gry\counter-strike 1.6 v23\hl.exe] => (Block) C:\gry\counter-strike 1.6 v23\hl.exe
FirewallRules: [TCP Query User{A2476D76-8AA3-429A-8654-5B3CEC297051}C:\gry\counter-strike 1.6 v23\hl.exe] => (Block) C:\gry\counter-strike 1.6 v23\hl.exe
FirewallRules: [uDP Query User{AE4D33A3-7351-468B-84EA-60BD512951C0}C:\gry\counter-strike 1.6 v23\hl.exe] => (Block) C:\gry\counter-strike 1.6 v23\hl.exe
 
==================== Punkty Przywracania systemu =========================
 
10-03-2016 15:49:49 Windows Update
11-03-2016 23:18:44 Installed Safari
16-03-2016 18:21:46 Windows Update
 
==================== Wadliwe urządzenia w Menedżerze urządzeń =============
 
 
==================== Błędy w Dzienniku zdarzeń: =========================
 
Dziennik Aplikacja:
==================
Error: (03/17/2016 06:06:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: hphp)
Description: Aktywacja aplikacji Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.
 
Error: (03/17/2016 05:40:25 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program RimWorld914Win.exe w wersji 4.6.3.21464 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w oknie Zabezpieczenia i konserwacja w Panelu sterowania.
 
Identyfikator procesu: 49c
 
Godzina rozpoczęcia: 01d1806b6cb26c2c
 
Godzina zakończenia: 180
 
Ścieżka aplikacji: C:\Users\hp\Desktop\Gry\Mods\RimWorld914Win.exe
 
Identyfikator raportu: ec634776-ec5e-11e5-834e-a4db303a83ea
 
Pełna nazwa pakietu powodującego błąd: 
 
Identyfikator aplikacji względem pakietu powodującego błąd:
 
Error: (03/17/2016 04:39:52 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program hl.exe w wersji 1.1.1.1 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w oknie Zabezpieczenia i konserwacja w Panelu sterowania.
 
Identyfikator procesu: 1638
 
Godzina rozpoczęcia: 01d18063364b2b02
 
Godzina zakończenia: 1153
 
Ścieżka aplikacji: C:\Gry\Counter-Strike 1.6 v23\hl.exe
 
Identyfikator raportu: 7ad3536a-ec56-11e5-834e-a4db303a83ea
 
Pełna nazwa pakietu powodującego błąd: 
 
Identyfikator aplikacji względem pakietu powodującego błąd:
 
Error: (03/17/2016 01:59:52 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program CCleaner64.exe w wersji 5.12.0.5431 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w oknie Zabezpieczenia i konserwacja w Panelu sterowania.
 
Identyfikator procesu: 1050
 
Godzina rozpoczęcia: 01d1804cd08c01f2
 
Godzina zakończenia: 270
 
Ścieżka aplikacji: C:\Program Files\CCleaner\CCleaner64.exe
 
Identyfikator raportu: 216d9a6c-ec40-11e5-834e-a4db303a83ea
 
Pełna nazwa pakietu powodującego błąd: 
 
Identyfikator aplikacji względem pakietu powodującego błąd:
 
Error: (03/16/2016 10:42:53 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: hphp)
Description: Aktywacja aplikacji Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.
 
Error: (03/16/2016 10:24:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: AUDIODG.EXE, wersja: 10.0.10240.16384, sygnatura czasowa: 0x559f3a8d
Nazwa modułu powodującego błąd: ntdll.dll, wersja: 10.0.10240.16683, sygnatura czasowa: 0x56ad9704
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x00000000000954bd
Identyfikator procesu powodującego błąd: 0x1704
Godzina uruchomienia aplikacji powodującej błąd: 0xAUDIODG.EXE0
Ścieżka aplikacji powodującej błąd: AUDIODG.EXE1
Ścieżka modułu powodującego błąd: AUDIODG.EXE2
Identyfikator raportu: AUDIODG.EXE3
Pełna nazwa pakietu powodującego błąd: AUDIODG.EXE4
Identyfikator aplikacji względem pakietu powodującego błąd: AUDIODG.EXE5
 
Error: (03/16/2016 06:37:23 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: hphp)
Description: Aktywacja aplikacji Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App nie powiodła się. Błąd: -2147023169. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.
 
Error: (03/16/2016 06:22:01 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się.
 
Details:
AddLegacyDriverFiles: Unable to back up image of binary Protokół LLDP (Link-Layer Discovery Protocol) firmy Microsoft.
 
System Error:
Odmowa dostępu.
.
 
Error: (03/16/2016 05:32:51 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: LogonUI.exe, wersja: 10.0.10240.16384, sygnatura czasowa: 0x559f398c
Nazwa modułu powodującego błąd: Windows.UI.Logon.dll, wersja: 10.0.10240.16724, sygnatura czasowa: 0x56cc44d2
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x000000000014ca5a
Identyfikator procesu powodującego błąd: 0x538
Godzina uruchomienia aplikacji powodującej błąd: 0xLogonUI.exe0
Ścieżka aplikacji powodującej błąd: LogonUI.exe1
Ścieżka modułu powodującego błąd: LogonUI.exe2
Identyfikator raportu: LogonUI.exe3
Pełna nazwa pakietu powodującego błąd: LogonUI.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: LogonUI.exe5
 
Error: (03/13/2016 09:30:08 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: hphp)
Description: Aktywacja aplikacji Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI nie powiodła się. Błąd: -2144927142. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.
 
 
Dziennik System:
=============
Error: (03/18/2016 03:02:09 PM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}
 
Error: (03/18/2016 02:57:48 PM) (Source: volmgr) (EventID: 46) (User: )
Description: Inicjowanie zrzutu awaryjnego nie powiodło się!
 
Error: (03/18/2016 02:57:09 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Synchronizuj hosta_Session1 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 10000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.
 
Error: (03/18/2016 02:50:37 PM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}
 
Error: (03/18/2016 02:45:24 PM) (Source: volmgr) (EventID: 46) (User: )
Description: Inicjowanie zrzutu awaryjnego nie powiodło się!
 
Error: (03/17/2016 10:14:02 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Synchronizuj hosta_Session1 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 10000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.
 
Error: (03/17/2016 09:56:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa Windows Update niespodziewanie zakończyła pracę. Wystąpiło to razy: 3.
 
Error: (03/17/2016 09:56:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa Instrumentacja zarządzania Windows niespodziewanie zakończyła pracę. Wystąpiło to razy: 4.
 
Error: (03/17/2016 09:56:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa Menedżer użytkowników niespodziewanie zakończyła pracę. Wystąpiło to razy: 4.
 
Error: (03/17/2016 09:56:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa Usługa profilów użytkowników niespodziewanie zakończyła pracę. Wystąpiło to razy: 4.
 
 
CodeIntegrity:
===================================
  Date: 2016-03-18 14:57:03.298
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:57:03.210
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:57:02.359
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:57:02.191
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:56:07.600
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:56:07.479
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:56:05.534
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:56:05.463
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:56:05.383
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2016-03-18 14:56:05.305
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagent.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
 
==================== Statystyki pamięci =========================== 
 
Procesor: AMD E1-1500 APU with Radeon HD Graphics
Procent pamięci w użyciu: 48%
Całkowita pamięć fizyczna: 3682.26 MB
Dostępna pamięć fizyczna: 1885.32 MB
Całkowita pamięć wirtualna: 3682.26 MB
Dostępna pamięć wirtualna: 1851.63 MB
 
==================== Dyski ================================
 
Drive c: (Windows) (Fixed) (Total:448.28 GB) (Free:391.16 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)]
Drive d: (RECOVERY) (Fixed) (Total:15.44 GB) (Free:1.57 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)]
 
==================== MBR & Tablica partycji ==================
 
========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 3F33811E)
 
Partition: GPT.
 

==================== Koniec  Addition.txt ============================

 

 

 

 

Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja:05-03-2016 01
Uruchomiony przez hp (administrator)  HPHP (18-03-2016 15:03:15)
Uruchomiony z C:\Users\hp\Downloads
Załadowane profile: hp (Dostępne profile: hp & Administrator)
Platform: Windows 10 Home (X64) Język: Polski (Polska)
Internet Explorer Wersja 11 (Domyślna przeglądarka: Opera)
Tryb startu: Normal
 
==================== Procesy (filtrowane) =================
 
(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
 
() C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\ToolbarUpdater.exe
(AMD) C:\Windows\System32\atieclxx.exe
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\loggingserver.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10240.16719_none_11647d1561f368c0\TiWorker.exe
 
 
==================== Rejestr (filtrowane) ===========================
 
(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
 
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8492800 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [synTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136 2015-07-17] (Synaptics Incorporated)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe [179624 2016-02-18] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [startCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-21] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [3873704 2016-02-01] (AVG Technologies CZ, s.r.o.)
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\Run: [Akamai NetSession Interface] => C:\Users\hp\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64\FileSyncShell64.dll [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64\FileSyncShell64.dll [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64\FileSyncShell64.dll [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  Brak pliku
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\FileSyncShell.dll [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\FileSyncShell.dll [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\FileSyncShell.dll [2016-01-22] (Microsoft Corporation)
GroupPolicy: Ograniczenia - Chrome <======= UWAGA
CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
 
==================== Internet (filtrowane) ====================
 
(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
 
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{17ff104e-2a2c-426e-b929-8c99f61154bd}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{f6b763cb-8424-4473-9707-535983541723}: [DhcpNameServer] 192.168.0.1
 
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130982262859764776&GUID=AA20B454-0B88-4845-82B9-55C9C7FC6663
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130982262859792890&GUID=AA20B454-0B88-4845-82B9-55C9C7FC6663
SearchScopes: HKLM -> {7E98812C-C8BA-4A6B-8035-B2C5A443EC34} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {7E98812C-C8BA-4A6B-8035-B2C5A443EC34} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={86E28FD8-076A-4C46-940F-1061373A2258}&mid=e9be97ca724647cda291759276de54a5-9081c6e61451e5b6ea64969974d75647542e60f2〈=pl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2016-01-27 17:06:19&v=4.2.5.441&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> {7E98812C-C8BA-4A6B-8035-B2C5A443EC34} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={86E28FD8-076A-4C46-940F-1061373A2258}&mid=e9be97ca724647cda291759276de54a5-9081c6e61451e5b6ea64969974d75647542e60f2〈=pl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2016-01-27 17:06:19&v=4.2.5.441&pid=wtu&sg=&sap=dsp&q={searchTerms}
BHO: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_66\bin\ssv.dll [2016-01-03] (Oracle Corporation)
BHO: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files\AVG Web TuneUp\4.2.6.552\AVG Web TuneUp.dll [2016-02-22] (AVG)
BHO: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_66\bin\jp2ssv.dll [2016-01-03] (Oracle Corporation)
BHO-x32: Brak nazwy -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Brak pliku
Toolbar: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> Brak nazwy - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  Brak pliku
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
 
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll [2016-03-10] ()
FF Plugin: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2016-01-03] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2016-01-03] (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll [2016-03-10] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1216156.dll [2015-01-09] (Adobe Systems, Inc.)
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.2.6\\npsitesafety.dll [brak pliku]
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin HKU\S-1-5-21-1315851758-1348891091-2830217532-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\hp\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-11] (Unity Technologies ApS)
StartMenuInternet: FIREFOX.EXE - firefox.exe
 
Opera: 
=======
OPR StartupUrls: ],"urls_signature":""},"speeddial":{"bookmarks_folder_guid":"F00FE68E-AAAC-4F4E-BD04-02E8E8F58A2C","disable_animations":true,"imported_to_bookmarks":true},"spellcheck":{"dictionaries":["pl"
 
==================== Usługi (filtrowane) ========================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-21] (Advanced Micro Devices, Inc.) [brak podpisu cyfrowego]
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [604144 2016-02-01] (AVG Technologies CZ, s.r.o.)
S2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagent.exe [3881184 2016-02-01] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1045928 2016-02-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [561104 2016-02-01] (AVG Technologies CZ, s.r.o.)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2016-02-11] (Electronic Arts)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [303360 2015-06-24] (Realtek Semiconductor)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246472 2015-07-17] (Synaptics Incorporated)
R2 vToolbarUpdater40.2.6; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\ToolbarUpdater.exe [1949768 2016-02-22] (AVG Secure Search)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
R2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [1216584 2016-03-11] ()
 
===================== Sterowniki (filtrowane) ==========================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
U5 ATHDFU; C:\Windows\System32\Drivers\ATHDFU.sys [55448 2013-05-16] (Windows ® Win 7 DDK provider)
R3 athr; C:\Windows\System32\drivers\athw10x.sys [4318760 2015-09-05] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Advanced Micro Devices)
S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [21632 2016-01-07] (AVG Technologies CZ, s.r.o.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [184240 2015-11-06] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [315312 2016-01-05] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [272304 2016-01-08] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [284080 2015-10-21] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [398256 2015-08-14] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [260528 2016-01-22] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [42416 2015-12-04] (AVG Technologies CZ, s.r.o.)
R0 Avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [23472 2016-01-08] (AVG Technologies CZ, s.r.o.)
R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [315840 2015-12-16] (AVG Technologies CZ, s.r.o.)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-01-03] ()
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [310528 2015-06-05] (Realtek Semiconductor Corp.)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek                                            )
S3 SBHIPS; C:\Windows\System32\drivers\sbhips.sys [63696 2015-05-01] (ThreatTrack Security)
R1 sbwfw; C:\Windows\system32\DRIVERS\sbwfw.sys [345392 2015-05-01] (ThreatTrack Security)
S3 sbwtis; C:\Windows\system32\DRIVERS\sbwtis.sys [95608 2015-05-01] (ThreatTrack Security)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [29424 2013-05-08] (Synaptics Incorporated)
S3 SmbDrvI; C:\Windows\System32\drivers\Smb_driver_Intel.sys [33008 2013-05-08] (Synaptics Incorporated)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
S3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [30544 2016-02-22] (HP)
R3 WirelessButtonDriver64; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [30544 2016-02-22] (HP)
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
 
==================== NetSvcs (filtrowane) ===================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
 
==================== Trzy miesiące - utworzone pliki i foldery ========
 
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
 
2016-03-18 15:03 - 2016-03-18 15:04 - 00016311 _____ C:\Users\hp\Downloads\FRST.txt
2016-03-18 15:00 - 2016-03-18 15:00 - 00380928 _____ C:\Users\hp\Downloads\gqkfeiw6.exe
2016-03-18 14:59 - 2016-03-18 14:59 - 00016148 _____ C:\WINDOWS\system32\HPHP_hp_HistoryPrediction.bin
2016-03-18 14:52 - 2016-03-18 14:53 - 02374144 _____ (Farbar) C:\Users\hp\Downloads\FRST64.exe
2016-03-11 23:35 - 2016-03-11 23:35 - 00003308 _____ C:\WINDOWS\System32\Tasks\{F50898BC-DDCC-4A00-BC52-3416A09F3E66}
2016-03-11 23:32 - 2016-03-11 23:32 - 00064572 ____H C:\WINDOWS\SysWOW64\mlfcache.dat
2016-03-11 23:21 - 2016-03-11 23:21 - 00000000 ____D C:\Users\hp\AppData\Roaming\Apple Computer
2016-03-11 23:21 - 2016-03-11 23:21 - 00000000 ____D C:\Users\hp\AppData\Local\Apple Computer
2016-03-11 23:20 - 2016-03-11 23:20 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk
2016-03-11 23:20 - 2016-03-11 23:20 - 00000000 ____D C:\ProgramData\Apple Computer
2016-03-11 23:20 - 2016-03-11 23:20 - 00000000 ____D C:\Program Files (x86)\Safari
2016-03-11 23:18 - 2016-03-11 23:18 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-03-11 23:18 - 2016-03-11 23:18 - 00000000 ____D C:\WINDOWS\System32\Tasks\Apple
2016-03-11 23:18 - 2016-03-11 23:18 - 00000000 ____D C:\Users\hp\AppData\Local\Apple
2016-03-11 23:18 - 2016-03-11 23:18 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-03-11 23:13 - 2016-03-12 11:17 - 00000000 ____D C:\Users\hp\AppData\Local\HangoversPhenomenal
2016-03-11 23:13 - 2016-03-11 23:13 - 00003512 _____ C:\WINDOWS\System32\Tasks\hpHangoversPhenomenalV2
2016-03-11 23:06 - 2016-03-11 23:06 - 00000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sparta
2016-03-11 23:06 - 2016-03-11 23:06 - 00000000 ____D C:\Users\hp\AppData\Local\Sparta
2016-03-10 16:02 - 2016-03-10 16:04 - 00000000 ___HD C:\$WINDOWS.~BT
2016-03-09 13:29 - 2016-02-23 15:53 - 01314496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-03-09 13:29 - 2016-02-23 15:51 - 00633184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-03-09 13:29 - 2016-02-23 15:41 - 00299600 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMASF.DLL
2016-03-09 13:29 - 2016-02-23 15:38 - 00272752 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-03-09 13:29 - 2016-02-23 15:11 - 00658784 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-09 13:29 - 2016-02-23 15:08 - 03622272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-03-09 13:29 - 2016-02-23 15:07 - 22322624 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-03-09 13:29 - 2016-02-23 14:23 - 00952968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-03-09 13:29 - 2016-02-23 14:11 - 00249976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMASF.DLL
2016-03-09 13:29 - 2016-02-23 13:39 - 02879024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-03-09 13:29 - 2016-02-23 13:38 - 20858360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-03-09 13:29 - 2016-02-23 13:16 - 02237952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-03-09 13:29 - 2016-02-23 12:59 - 00319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2016-03-09 13:29 - 2016-02-23 12:55 - 24592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-03-09 13:29 - 2016-02-23 12:45 - 12504576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-03-09 13:29 - 2016-02-23 12:45 - 06788608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 13:29 - 2016-02-23 12:38 - 02663424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-09 13:29 - 2016-02-23 12:14 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-03-09 13:29 - 2016-02-23 12:04 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 13:29 - 2016-02-23 12:03 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-03-09 13:29 - 2016-02-23 12:02 - 03587584 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-03-09 13:29 - 2016-02-23 11:55 - 19326464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-03-09 13:29 - 2016-02-23 11:55 - 14241792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-09 13:29 - 2016-02-23 11:51 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-03-09 13:29 - 2016-02-23 11:51 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-03-09 13:29 - 2016-02-23 11:48 - 21859840 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-03-09 13:29 - 2016-02-23 11:48 - 05157376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-03-09 13:29 - 2016-02-23 11:46 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 13:29 - 2016-02-23 11:45 - 01844736 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 13:29 - 2016-02-23 11:45 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-03-09 13:29 - 2016-02-23 11:44 - 01821696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-03-09 13:29 - 2016-02-23 11:38 - 07524864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-03-09 13:29 - 2016-02-23 11:17 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-03-09 13:29 - 2016-02-23 11:11 - 12589056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-03-09 13:29 - 2016-02-23 11:03 - 01495040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-03-09 13:29 - 2016-02-23 11:00 - 11263488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-03-09 13:29 - 2016-02-23 10:58 - 18800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-03-09 13:28 - 2016-02-23 15:52 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-03-09 13:28 - 2016-02-23 15:51 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-03-09 13:28 - 2016-02-23 15:50 - 00630160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-03-09 13:28 - 2016-02-23 15:48 - 08022368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 13:28 - 2016-02-23 15:48 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-03-09 13:28 - 2016-02-23 15:48 - 01123952 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-03-09 13:28 - 2016-02-23 15:41 - 01150816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-03-09 13:28 - 2016-02-23 15:41 - 00078040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-03-09 13:28 - 2016-02-23 15:40 - 00110584 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-03-09 13:28 - 2016-02-23 15:36 - 00080128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-03-09 13:28 - 2016-02-23 15:11 - 00781984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-03-09 13:28 - 2016-02-23 15:11 - 00103776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-03-09 13:28 - 2016-02-23 14:39 - 00607416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 13:28 - 2016-02-23 14:30 - 01643872 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-03-09 13:28 - 2016-02-23 14:25 - 01085632 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-03-09 13:28 - 2016-02-23 14:21 - 00529456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-03-09 13:28 - 2016-02-23 14:21 - 00141152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-03-09 13:28 - 2016-02-23 14:11 - 00073360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll
2016-03-09 13:28 - 2016-02-23 14:11 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll
2016-03-09 13:28 - 2016-02-23 14:09 - 00229352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-03-09 13:28 - 2016-02-23 14:06 - 00069232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll
2016-03-09 13:28 - 2016-02-23 13:58 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-03-09 13:28 - 2016-02-23 13:50 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-03-09 13:28 - 2016-02-23 13:50 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-03-09 13:28 - 2016-02-23 13:42 - 00658536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2016-03-09 13:28 - 2016-02-23 13:42 - 00467296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-03-09 13:28 - 2016-02-23 13:42 - 00078176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-03-09 13:28 - 2016-02-23 13:35 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-03-09 13:28 - 2016-02-23 13:20 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-03-09 13:28 - 2016-02-23 13:17 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-03-09 13:28 - 2016-02-23 13:15 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-03-09 13:28 - 2016-02-23 13:15 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-03-09 13:28 - 2016-02-23 12:59 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2016-03-09 13:28 - 2016-02-23 12:57 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-09 13:28 - 2016-02-23 12:42 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-03-09 13:28 - 2016-02-23 12:37 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetCfgNotifyObjectHost.exe
2016-03-09 13:28 - 2016-02-23 12:36 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-03-09 13:28 - 2016-02-23 12:25 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-03-09 13:28 - 2016-02-23 12:18 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2016-03-09 13:28 - 2016-02-23 12:17 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-03-09 13:28 - 2016-02-23 12:17 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-03-09 13:28 - 2016-02-23 12:08 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 13:28 - 2016-02-23 11:45 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-03-09 13:28 - 2016-02-23 11:29 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\browcli.dll
2016-03-09 13:28 - 2016-02-23 11:00 - 05457408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-03-09 13:27 - 2016-02-23 12:42 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 13:27 - 2016-02-23 12:03 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-03-09 13:27 - 2016-02-23 11:45 - 00574464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2016-03-09 13:27 - 2016-02-23 11:17 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-03-08 22:45 - 2016-03-08 22:46 - 00000000 ____D C:\WINDOWS\SysWOW64\directx
2016-03-08 22:44 - 2016-03-12 11:40 - 00000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2016-03-01 12:05 - 2016-03-01 12:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6 v23
2016-02-26 17:38 - 2016-02-26 17:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Factorio
2016-02-26 17:37 - 2016-03-01 15:23 - 00000000 ____D C:\Users\hp\AppData\Roaming\Factorio
2016-02-26 17:37 - 2016-02-26 17:38 - 00000000 ____D C:\Program Files\Factorio
2016-02-25 17:00 - 2016-02-25 17:00 - 00000000 ____D C:\Users\hp\AppData\LocalLow\Ludeon Studios
2016-02-22 17:48 - 2016-02-22 17:48 - 00030544 _____ (HP) C:\WINDOWS\system32\Drivers\WirelessButtonDriver64.sys
2016-02-14 12:53 - 2016-03-10 20:52 - 00000000 ____D C:\Users\hp\AppData\Roaming\.minecraft
2016-02-13 19:41 - 2014-01-31 22:56 - 00023552 ___SH C:\Users\hp\Downloads\Thumbs.db
2016-02-13 19:40 - 2016-02-13 19:40 - 00000000 ____D C:\Program Files (x86)\Jed's Half-Life Model Viewer 1.3.6
2016-02-12 12:05 - 2016-02-12 12:05 - 00001430 _____ C:\Users\Public\Desktop\The Sims 4.lnk
2016-02-10 14:33 - 2016-01-31 07:23 - 02601160 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-02-10 14:33 - 2016-01-31 07:04 - 01811360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-02-10 14:33 - 2016-01-31 06:29 - 11557888 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-02-10 14:33 - 2016-01-31 06:26 - 03793408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-02-10 14:33 - 2016-01-31 06:17 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2016-02-10 14:32 - 2016-01-31 07:25 - 01951872 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-02-10 14:32 - 2016-01-31 07:25 - 01248896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-02-10 14:32 - 2016-01-31 07:24 - 01824880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-02-10 14:32 - 2016-01-31 07:23 - 01420392 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-02-10 14:32 - 2016-01-31 07:06 - 01535032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-02-10 14:32 - 2016-01-31 07:06 - 01531368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-02-10 14:32 - 2016-01-31 07:06 - 00809336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-02-10 14:32 - 2016-01-31 07:04 - 01180696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-02-10 14:32 - 2016-01-31 06:34 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-02-10 14:32 - 2016-01-31 06:33 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\IoTAssignedAccessLockFramework.dll
2016-02-10 14:32 - 2016-01-31 06:29 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasman.dll
2016-02-10 14:32 - 2016-01-31 06:25 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-02-10 14:32 - 2016-01-31 06:25 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-02-10 14:32 - 2016-01-31 06:24 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-02-10 14:32 - 2016-01-31 06:24 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-02-10 14:32 - 2016-01-31 06:23 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-02-10 14:32 - 2016-01-31 06:22 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2016-02-10 14:32 - 2016-01-31 06:20 - 02849792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-02-10 14:32 - 2016-01-31 06:19 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-02-10 14:32 - 2016-01-31 06:19 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkDesktopSettings.dll
2016-02-10 14:32 - 2016-01-31 06:19 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IoTAssignedAccessLockFramework.dll
2016-02-10 14:32 - 2016-01-31 06:18 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-02-10 14:32 - 2016-01-31 06:16 - 09889280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-02-10 14:32 - 2016-01-31 06:16 - 00950272 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-02-10 14:32 - 2016-01-31 06:13 - 04791808 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-02-10 14:32 - 2016-01-31 06:13 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasman.dll
2016-02-10 14:32 - 2016-01-31 06:13 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll
2016-02-10 14:32 - 2016-01-31 06:11 - 00678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-02-10 14:32 - 2016-01-31 06:11 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-02-10 14:32 - 2016-01-31 06:11 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-02-10 14:32 - 2016-01-31 06:06 - 02316800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-02-10 14:32 - 2016-01-31 06:05 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-02-10 14:32 - 2016-01-31 06:05 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-02-10 14:32 - 2016-01-31 06:04 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2016-02-10 14:32 - 2016-01-31 06:02 - 03580416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-02-10 14:32 - 2016-01-31 06:02 - 00768000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-02-10 14:32 - 2016-01-31 05:58 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll
2016-01-27 17:06 - 2016-03-11 20:50 - 00000000 ____D C:\ProgramData\AVG Web TuneUp
2016-01-27 17:06 - 2016-03-11 20:50 - 00000000 ____D C:\Program Files (x86)\AVG Web TuneUp
2016-01-27 17:06 - 2016-02-22 17:35 - 00000000 ____D C:\Program Files\AVG Web TuneUp
2016-01-27 17:06 - 2016-01-27 17:06 - 00000000 ____D C:\Users\hp\AppData\Local\AVG Web TuneUp
2016-01-27 17:06 - 2016-01-27 17:06 - 00000000 ____D C:\ProgramData\AVG Security Toolbar
2016-01-27 17:06 - 2016-01-27 17:06 - 00000000 ____D C:\ProgramData\AVG Secure Search
2016-01-27 17:06 - 2016-01-27 17:06 - 00000000 ____D C:\Program Files\Common Files\AVG Secure Search
2016-01-27 17:06 - 2016-01-27 17:06 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-01-27 16:36 - 2016-02-09 17:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2016-01-27 16:35 - 2016-01-27 16:35 - 00000000 ___HD C:\$AVG
2016-01-27 16:21 - 2016-03-18 14:50 - 00000000 ____D C:\ProgramData\MFAData
2016-01-27 16:21 - 2016-01-27 16:21 - 00000000 ____D C:\Users\hp\AppData\Local\MFAData
2016-01-27 16:20 - 2016-02-18 17:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
2016-01-27 16:12 - 2016-01-27 16:32 - 00000000 ____D C:\Program Files (x86)\AVG
2016-01-27 16:08 - 2016-01-27 16:20 - 00000000 ____D C:\Users\hp\AppData\Local\AvgSetupLog
2016-01-25 21:59 - 2016-03-12 11:40 - 00000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMX Mod X
2016-01-25 16:54 - 2016-03-12 11:40 - 00000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter Strike 1.6 BF Edition
2016-01-25 15:52 - 2016-01-25 15:59 - 00000000 ____D C:\AVG_Remover
2016-01-22 18:50 - 2016-01-22 18:50 - 00000000 ____D C:\Program Files\Mz Ultimate Tools
2016-01-22 15:15 - 2016-01-22 15:15 - 00260528 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgmfx64.sys
2016-01-13 18:18 - 2016-03-01 13:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6 v43
2016-01-13 16:09 - 2016-01-05 04:07 - 02463704 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-01-13 16:09 - 2016-01-05 04:07 - 00377592 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP4SDECD.DLL
2016-01-13 16:09 - 2016-01-05 04:06 - 01991120 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVENCOD.DLL
2016-01-13 16:09 - 2016-01-05 04:06 - 01270104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-01-13 16:09 - 2016-01-05 04:06 - 01063504 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2adec.dll
2016-01-13 16:09 - 2016-01-05 04:06 - 00119800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP3DMOD.DLL
2016-01-13 16:09 - 2016-01-05 04:04 - 02824248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2016-01-13 16:09 - 2016-01-05 04:04 - 02641928 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2016-01-13 16:09 - 2016-01-05 04:04 - 01591848 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-01-13 16:09 - 2016-01-05 04:04 - 00862056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-01-13 16:09 - 2016-01-05 04:04 - 00787720 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2016-01-13 16:09 - 2016-01-05 04:04 - 00784136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-01-13 16:09 - 2016-01-05 04:04 - 00779928 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-01-13 16:09 - 2016-01-05 04:04 - 00772448 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-01-13 16:09 - 2016-01-05 04:04 - 00751992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2016-01-13 16:09 - 2016-01-05 04:04 - 00667856 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2016-01-13 16:09 - 2016-01-05 04:04 - 00250520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPG4DECD.DLL
2016-01-13 16:09 - 2016-01-05 04:04 - 00249464 _____ (Microsoft Corporation) C:\WINDOWS\system32\RESAMPLEDMO.DLL
2016-01-13 16:09 - 2016-01-05 04:04 - 00243248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-01-13 16:09 - 2016-01-05 04:04 - 00233992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2016-01-13 16:09 - 2016-01-05 04:04 - 00115704 _____ (Microsoft Corporation) C:\WINDOWS\system32\VIDRESZR.DLL
2016-01-13 16:09 - 2016-01-05 04:04 - 00090912 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll
2016-01-13 16:09 - 2016-01-05 04:04 - 00083704 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfvdsp.dll
2016-01-13 16:09 - 2016-01-05 03:52 - 00441696 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-01-13 16:09 - 2016-01-05 03:50 - 01817064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-01-13 16:09 - 2016-01-05 03:50 - 00723648 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-01-13 16:09 - 2016-01-05 03:50 - 00345080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVSDECD.DLL
2016-01-13 16:09 - 2016-01-05 03:50 - 00251544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP43DECD.DLL
2016-01-13 16:09 - 2016-01-05 03:50 - 00205072 _____ (Microsoft Corporation) C:\WINDOWS\system32\COLORCNV.DLL
2016-01-13 16:09 - 2016-01-05 03:31 - 01365576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-01-13 16:09 - 2016-01-05 03:30 - 02459096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2016-01-13 16:09 - 2016-01-05 03:30 - 02162064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVENCOD.DLL
2016-01-13 16:09 - 2016-01-05 03:30 - 02152744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-01-13 16:09 - 2016-01-05 03:30 - 01106872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-01-13 16:09 - 2016-01-05 03:30 - 00882208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2adec.dll
2016-01-13 16:09 - 2016-01-05 03:30 - 00368776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP4SDECD.DLL
2016-01-13 16:09 - 2016-01-05 03:30 - 00232896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RESAMPLEDMO.DLL
2016-01-13 16:09 - 2016-01-05 03:30 - 00100712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP3DMOD.DLL
2016-01-13 16:09 - 2016-01-05 03:29 - 00208688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
2016-01-13 16:09 - 2016-01-05 03:28 - 02445128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2016-01-13 16:09 - 2016-01-05 03:28 - 00714808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-01-13 16:09 - 2016-01-05 03:28 - 00696192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2016-01-13 16:09 - 2016-01-05 03:28 - 00695752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2016-01-13 16:09 - 2016-01-05 03:28 - 00645144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-01-13 16:09 - 2016-01-05 03:28 - 00635312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-01-13 16:09 - 2016-01-05 03:28 - 00497896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2016-01-13 16:09 - 2016-01-05 03:28 - 00277400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MPG4DECD.DLL
2016-01-13 16:09 - 2016-01-05 03:28 - 00116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2016-01-13 16:09 - 2016-01-05 03:28 - 00107952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VIDRESZR.DLL
2016-01-13 16:09 - 2016-01-05 03:28 - 00082096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll
2016-01-13 16:09 - 2016-01-05 03:28 - 00072808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfvdsp.dll
2016-01-13 16:09 - 2016-01-05 03:15 - 00931328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2016-01-13 16:09 - 2016-01-05 03:15 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2016-01-13 16:09 - 2016-01-05 03:15 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgrcli.dll
2016-01-13 16:09 - 2016-01-05 03:10 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfh264enc.dll
2016-01-13 16:09 - 2016-01-05 03:10 - 00305776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVSDECD.DLL
2016-01-13 16:09 - 2016-01-05 03:10 - 00278424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP43DECD.DLL
2016-01-13 16:09 - 2016-01-05 03:10 - 00188032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\COLORCNV.DLL
2016-01-13 16:09 - 2016-01-05 03:09 - 01234944 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-01-13 16:09 - 2016-01-05 03:09 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-01-13 16:09 - 2016-01-05 03:02 - 01672192 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-01-13 16:09 - 2016-01-05 03:02 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2016-01-13 16:09 - 2016-01-05 03:02 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-01-13 16:09 - 2016-01-05 03:01 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2016-01-13 16:09 - 2016-01-05 03:00 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-01-13 16:09 - 2016-01-05 02:59 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-01-13 16:09 - 2016-01-05 02:57 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-01-13 16:09 - 2016-01-05 02:57 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-01-13 16:09 - 2016-01-05 02:57 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-01-13 16:09 - 2016-01-05 02:51 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2016-01-13 16:09 - 2016-01-05 02:51 - 01009664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOD.DLL
2016-01-13 16:09 - 2016-01-05 02:51 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVXENCD.DLL
2016-01-13 16:09 - 2016-01-05 02:51 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFWMAAEC.DLL
2016-01-13 16:09 - 2016-01-05 02:51 - 00447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVSENCD.DLL
2016-01-13 16:09 - 2016-01-05 02:44 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2016-01-13 16:09 - 2016-01-05 02:44 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usermgrcli.dll
2016-01-13 16:09 - 2016-01-05 02:42 - 00871936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL
2016-01-13 16:09 - 2016-01-05 02:38 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfh264enc.dll
2016-01-13 16:09 - 2016-01-05 02:32 - 01541632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2016-01-13 16:09 - 2016-01-05 02:32 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2016-01-13 16:09 - 2016-01-05 02:31 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-01-13 16:09 - 2016-01-05 02:31 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2016-01-13 16:09 - 2016-01-05 02:29 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-01-13 16:09 - 2016-01-05 02:29 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-01-13 16:09 - 2016-01-05 02:26 - 00373760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-01-13 16:09 - 2016-01-05 02:20 - 00890880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOD.DLL
2016-01-13 16:09 - 2016-01-05 02:19 - 01070080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2016-01-13 16:09 - 2016-01-05 02:19 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVXENCD.DLL
2016-01-13 16:09 - 2016-01-05 02:19 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVSENCD.DLL
2016-01-13 16:09 - 2016-01-05 02:19 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFWMAAEC.DLL
2016-01-09 22:40 - 2016-01-09 22:40 - 00000000 ___HD C:\$AVG-SHREDDER-TMP-8cd88f3b-3f2f-4969-b3ed-f7300f367d3b
2016-01-08 10:46 - 2016-01-08 10:46 - 00023472 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avguniva.sys
2016-01-07 15:03 - 2016-01-07 15:03 - 00021632 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgboota.sys
2016-01-05 13:14 - 2016-03-16 18:37 - 00003990 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1451996041
2016-01-05 13:14 - 2016-03-16 18:37 - 00001127 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2016-01-05 13:14 - 2016-01-05 13:14 - 00001215 _____ C:\Users\hp\Desktop\Opera.lnk
2016-01-05 13:08 - 2016-03-16 18:37 - 00000000 ____D C:\Program Files (x86)\Opera
2016-01-03 17:43 - 2016-01-03 18:16 - 00001885 _____ C:\Users\hp\Desktop\Microsoft Edge.lnk
2016-01-03 17:33 - 2016-01-03 17:33 - 00000000 ____D C:\Users\hp\.oracle_jre_usage
2016-01-03 16:37 - 2016-01-03 16:37 - 00000000 ____D C:\Users\hp\AppData\Roaming\WinRAR
2016-01-03 16:36 - 2016-01-03 16:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-01-03 16:36 - 2016-01-03 16:36 - 00000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-01-03 16:36 - 2016-01-03 16:36 - 00000000 ____D C:\Program Files\WinRAR
2016-01-03 15:57 - 2016-01-03 15:57 - 00022704 _____ C:\WINDOWS\system32\Drivers\EsgScanner.sys
2016-01-03 15:57 - 2016-01-03 15:57 - 00000000 ____D C:\Program Files\Enigma Software Group
2015-12-30 16:41 - 2015-12-30 16:41 - 00003312 _____ C:\WINDOWS\System32\Tasks\{E7BCE9F3-580A-4510-869D-71A69F2188FC}
2015-12-30 16:41 - 2015-12-30 16:41 - 00003306 _____ C:\WINDOWS\System32\Tasks\{30C8F203-41B7-4524-8401-5841B2EB8E50}
2015-12-30 13:34 - 2015-12-30 13:34 - 00000000 ____D C:\Users\hp\AppData\Roaming\java
2015-12-28 14:52 - 2015-12-29 14:35 - 00000329 _____ C:\Users\hp\SciTE.session
2015-12-28 14:43 - 2015-12-28 14:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3
2015-12-28 14:43 - 2015-12-28 14:43 - 00000000 ____D C:\Program Files (x86)\AutoIt3
2015-12-27 11:28 - 2015-12-27 11:28 - 00000000 ____D C:\Users\hp\AppData\Roaming\Macromedia
2015-12-23 14:23 - 2016-03-01 12:03 - 00000000 ____D C:\Gry
 
==================== Trzy miesiące - zmodyfikowane pliki i foldery ========
 
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
 
2016-03-18 15:03 - 2015-07-10 12:04 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-18 15:03 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-03-18 15:03 - 2015-06-27 17:33 - 00000000 ____D C:\FRST
2016-03-18 15:02 - 2014-12-02 15:17 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-03-18 14:58 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-03-18 14:57 - 2015-07-10 10:05 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-03-18 14:53 - 2015-02-15 11:45 - 00004052 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{8B40FE16-44E5-4D62-B84B-D3806AFCC001}
2016-03-17 17:20 - 2014-12-10 17:18 - 00003210 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForhp
2016-03-17 17:20 - 2014-12-10 17:18 - 00000330 _____ C:\WINDOWS\Tasks\HPCeeScheduleForhp.job
2016-03-16 18:37 - 2015-07-10 10:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-03-16 18:30 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-03-16 18:29 - 2014-12-04 17:17 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-03-16 18:22 - 2014-12-04 17:17 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-03-16 18:21 - 2015-11-30 15:44 - 00000000 ____D C:\WINDOWS\Panther
2016-03-16 18:16 - 2015-07-10 12:02 - 00000000 ____D C:\WINDOWS\INF
2016-03-16 17:33 - 2015-08-06 12:17 - 00000000 ____D C:\Users\hp
2016-03-13 15:44 - 2015-09-27 09:27 - 00000000 ____D C:\ProgramData\Origin
2016-03-12 11:40 - 2015-12-07 16:53 - 00000000 ____D C:\Users\hp\AppData\Roaming\Notepad++
2016-03-12 11:40 - 2015-12-05 12:32 - 00000000 ____D C:\Users\hp\Desktop\Gry
2016-03-12 11:40 - 2013-07-16 17:00 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
2016-03-12 11:14 - 2015-08-29 09:54 - 00000000 ____D C:\Users\Administrator
2016-03-11 23:36 - 2015-04-07 09:29 - 00000000 ____D C:\Program Files\Java
2016-03-11 23:36 - 2015-01-28 19:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-03-10 17:46 - 2014-11-25 14:37 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-03-10 17:44 - 2015-07-10 13:20 - 00205552 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-03-10 17:36 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-10 17:36 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-10 17:36 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-03-10 17:36 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-03-08 22:45 - 2015-01-02 21:58 - 00000000 ___HD C:\WINDOWS\msdownld.tmp
2016-03-08 21:56 - 2015-08-04 15:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2016-03-08 21:56 - 2015-08-04 15:58 - 00000000 ____D C:\Program Files\CPUID
2016-03-08 20:46 - 2014-12-02 15:50 - 00000000 ____D C:\Users\hp\AppData\Local\ElevatedDiagnostics
2016-03-08 08:10 - 2015-10-04 02:37 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-03-08 08:10 - 2015-10-04 02:37 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-03-06 15:04 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-03-01 12:34 - 2014-12-06 15:52 - 00000000 ____D C:\Users\hp\.gimp-2.8
2016-02-21 19:43 - 2015-11-21 19:19 - 00208903 _____ C:\WINDOWS\SentOSPackets.KTL
2016-02-21 19:43 - 2015-11-21 19:19 - 00000143 _____ C:\WINDOWS\NGIControl.KTL
2016-02-21 19:43 - 2015-08-17 17:21 - 01427282 _____ C:\WINDOWS\ProcessedPackets.KTL
2016-02-21 19:43 - 2015-08-17 17:21 - 00590040 _____ C:\WINDOWS\Packet.KTL
2016-02-21 19:43 - 2015-08-17 17:21 - 00018572 _____ C:\WINDOWS\Control.KTL
2016-02-17 23:02 - 2015-07-10 17:34 - 00000000 ____D C:\Program Files\Windows Journal
 
==================== Pliki w katalogu głównym wybranych folderów =======
 
2015-11-17 18:58 - 2015-11-17 18:58 - 0000000 _____ () C:\Program Files (x86)\Common Files\AMD
2015-09-27 11:01 - 2015-09-27 11:01 - 0003721 _____ () C:\Users\hp\AppData\Local\recently-used.xbel
2015-06-27 21:51 - 2016-01-27 15:40 - 0007598 _____ () C:\Users\hp\AppData\Local\Resmon.ResmonCfg
 
==================== Bamital & volsnap =================
 
(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
 
C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo
C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo
C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo
C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo
 
 
LastRegBack: 2016-03-12 20:48
 
==================== Koniec  FRST.txt ============================

 

Rezultat skanowania skrótów użytkowników (x64) Wersja:05-03-2016 01
Uruchomiony przez hp (2016-03-18 15:09:49)
Uruchomiony z C:\Users\hp\Downloads
Tryb startu: Normal
 
==================== Skróty =============================
 
(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)
 
 
 
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AssaultCube\AssaultCube.lnk -> C:\Program Files (x86)\AssaultCube\assaultcube.bat ()
Shortcut: C:\Users\hp\Desktop\Gry\AssaultCube.lnk -> C:\Program Files (x86)\AssaultCube\assaultcube.bat ()
 
 
Shortcut: C:\Users\Administrator\Links\Desktop.lnk -> C:\Users\Administrator\Desktop ()
Shortcut: C:\Users\Administrator\Links\Downloads.lnk -> C:\Users\Administrator\Downloads ()
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo\Transfer plików Bluetooth.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\01 - File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\03 - Documents.lnk -> C:\Users\hp\Documents ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\04 - Downloads.lnk -> C:\Users\hp\Downloads ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\05 - Music.lnk -> C:\Users\hp\Music ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\06 - Pictures.lnk -> C:\Users\hp\Pictures ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\07 - Videos.lnk -> C:\Users\hp\Videos ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\10 - UserProfile.lnk -> C:\Users\hp ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk -> C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Devices Flow.lnk -> C:\Windows\DevicesFlow\DevicesFlow.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk -> C:\Program Files\GIMP 2\bin\gimp-2.8.exe (Spencer Kimball, Peter Mattis and the GIMP Development Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office15\FIRSTRUN.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiracastView.lnk -> C:\Windows\MiracastView\MiracastView.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PrintDialog.lnk -> C:\Windows\PrintDialog\PrintDialog.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk -> C:\Windows\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Edytor map.lnk -> C:\Program Files (x86)\WnP\Editor.exe (Funatics Software)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Instrukcja.lnk -> C:\Program Files (x86)\WnP\Instrukcja\instrukcja.html ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\TopWare Interactive.lnk -> C:\Program Files (x86)\WnP\TopWare Interactive.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Usuń grę.lnk -> C:\Program Files (x86)\WnP\UNWISE.EXE ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Wyprawa na Północ (tylko gra sieciowa).lnk -> C:\Program Files (x86)\WnP\GameMp.exe (Funatics Software GmbH)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Wyprawa na Północ.lnk -> C:\Program Files (x86)\WnP\Game.exe (Funatics Software GmbH)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Co nowego w ostatniej wersji.lnk -> C:\Program Files\WinRAR\CoNowego.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Podręcznik RARa dla konsoli.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Pomoc WinRARa.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4\Plik Przeczytaj.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Support\readme\Przeczytaj.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4\Pomoc techniczna.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Support\EA Help\Pomoc techniczna.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4\The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4\Umowa użytkownika The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Support\eula\pl_PL_eula.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection\HP Recovery Manager\HP Recovery Manager.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Recovery Manager\Rebecca.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection\HP Recovery Manager\HP Recovery Media Creation.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Recovery Manager\Rebecca.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools\CyberLink LabelPrint.lnk -> C:\Program Files (x86)\CyberLink\LabelPrint\LabelPrint.exe (CyberLink Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PLAY\Warlords Battlecry III\Deinstalacja programu Warlords Battlecry III.lnk -> C:\Program Files (x86)\PLAY\Warlords Battlecry III\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PLAY\Warlords Battlecry III\Podręcznik Gracza.lnk -> C:\Program Files (x86)\PLAY\Warlords Battlecry III\manual\WBC3_manual.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PLAY\Warlords Battlecry III\Warlords Battlecry III.lnk -> C:\Program Files (x86)\PLAY\Warlords Battlecry III\Battlecry III.exe (Infinite Interactive)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Narzędzie zgłaszania błędów Origin.lnk -> C:\Program Files (x86)\Origin\OriginER.exe (Electronic Arts)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin Error Reporter.lnk -> C:\Program Files (x86)\Origin\OriginER.exe (Electronic Arts)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin.lnk -> C:\Program Files (x86)\Origin\Origin.exe (Electronic Arts)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++\Notepad++.lnk -> C:\Program Files (x86)\Notepad++\notepad++.exe (Don HO [email protected])
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Deinstalacja programu Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware Notifications.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\chameleon.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk -> C:\Program Files\Java\jre1.8.0_66\bin\javacpl.exe (Oracle Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Factorio\Factorio.lnk -> C:\Program Files\Factorio\bin\x64\Factorio.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Factorio\Uninstall.lnk -> C:\Program Files\Factorio\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\HWMonitor\HWMonitor.lnk -> C:\Program Files\CPUID\HWMonitor\HWMonitor.exe (CPUID)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\HWMonitor\Uninstall HWMonitor.lnk -> C:\Program Files\CPUID\HWMonitor\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\CPU-Z\CPU-Z.lnk -> C:\Program Files\CPUID\CPU-Z\cpuz.exe (CPUID)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\CPU-Z\Edit CPU-Z Config File.lnk -> C:\Program Files\CPUID\CPU-Z\cpuz.ini ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\CPU-Z\Uninstall CPU-Z.lnk -> C:\Program Files\CPUID\CPU-Z\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6 v23\Counter-Strike 1.6 v23.lnk -> C:\Gry\Counter-Strike 1.6 v23\Counter-Strike 1.6.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG\AVG Protection.lnk -> C:\Program Files (x86)\AVG\Av\avgui.exe (AVG Technologies CZ, s.r.o.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\AutoIt Help File.lnk -> C:\Program Files (x86)\AutoIt3\AutoIt.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\AutoIt Window Info (x64).lnk -> C:\Program Files (x86)\AutoIt3\Au3Info_x64.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\AutoIt Window Info (x86).lnk -> C:\Program Files (x86)\AutoIt3\Au3Info.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Compile Script to .exe (x64).lnk -> C:\Program Files (x86)\AutoIt3\Aut2Exe\Aut2exe_x64.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Compile Script to .exe (x86).lnk -> C:\Program Files (x86)\AutoIt3\Aut2Exe\Aut2exe.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Examples.lnk -> C:\Program Files (x86)\AutoIt3\Examples ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Run Script (x64).lnk -> C:\Program Files (x86)\AutoIt3\AutoIt3_x64.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Run Script (x86).lnk -> C:\Program Files (x86)\AutoIt3\AutoIt3.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\SciTE Script Editor.lnk -> C:\Program Files (x86)\AutoIt3\SciTE\SciTE.exe (Neil Hodgson [email protected])
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Extras\AutoIt v3 Website.lnk -> C:\Program Files (x86)\AutoIt3\AutoIt v3 Website.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Extras\Browse Extras.lnk -> C:\Program Files (x86)\AutoIt3\Extras ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Extras\AutoItX\AutoItX Help File.lnk -> C:\Program Files (x86)\AutoIt3\AutoItX\AutoItX.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AssaultCube\README.lnk -> C:\Program Files (x86)\AssaultCube\README.html ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AssaultCube\Uninstall.lnk -> C:\Program Files (x86)\AssaultCube\Uninstall.exe (Rabid Viper Productions)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\AMD Catalyst Control Center.lnk -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Advanced Micro Devices Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Age of Wonders II Tron Czarnoksiężnika\Age of Wonders II Tron Czarnoksiężnika.lnk -> C:\Program Files (x86)\Age of Wonders II Tron Czarnoksiężnika\aow2.exe (Triumph Studios)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Age of Wonders II Tron Czarnoksiężnika\Edytor misji.lnk -> C:\Program Files (x86)\Age of Wonders II Tron Czarnoksiężnika\AoW2Ed.exe (Triumph Studios)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Age of Wonders II Tron Czarnoksiężnika\Konfiguracja gry.lnk -> C:\Program Files (x86)\Age of Wonders II Tron Czarnoksiężnika\aow2Setup.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk -> C:\Program Files\Windows Journal\Journal.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk -> C:\Users\hp\Documents ()
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk -> C:\Users\hp\Pictures ()
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\Videos\Pulpit — skrót (2).lnk -> C:\Users\hp\Desktop ()
Shortcut: C:\Users\hp\Videos\Pulpit — skrót.lnk -> C:\Users\hp\Desktop ()
Shortcut: C:\Users\hp\Links\Desktop.lnk -> C:\Users\hp\Desktop ()
Shortcut: C:\Users\hp\Links\Downloads.lnk -> C:\Users\hp\Downloads ()
Shortcut: C:\Users\hp\Desktop\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software)
Shortcut: C:\Users\hp\Desktop\Gry\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
Shortcut: C:\Users\hp\Desktop\Gry\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\Users\hp\Desktop\Gry\Counter-Strike 1.6 v23.lnk -> C:\Gry\Counter-Strike 1.6 v23\Counter-Strike 1.6.exe ()
Shortcut: C:\Users\hp\Desktop\Gry\Factorio.lnk -> C:\Program Files\Factorio\bin\x64\Factorio.exe ()
Shortcut: C:\Users\hp\Desktop\Gry\Safari.lnk -> C:\Windows\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe ()
Shortcut: C:\Users\hp\Desktop\Gry\The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\hp\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Co nowego w ostatniej wersji.lnk -> C:\Program Files\WinRAR\CoNowego.txt ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Podręcznik RARa dla konsoli.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Pomoc WinRARa.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CB Share Config.lnk -> C:\Program Files (x86)\CodeBlocks\cb_share_config.exe ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\Code Snippets.lnk -> C:\Program Files (x86)\CodeBlocks\codesnippets.exe ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\Uninstall CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\uninstall.exe (The Code::Blocks Team)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\SendTo\Transfer plików Bluetooth.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk -> C:\Windows\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\GameExplorer\{E1158B26-1A6F-436C-BC78-1933902CE15D}\PlayTasks\0\Zagraj.lnk -> C:\Program Files (x86)\PLAY\Warlords Battlecry III\Battlecry III.exe (Infinite Interactive)
Shortcut: C:\Users\Public\Desktop\The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
 
 
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sparta\Sparta.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://plarium.com/play/en/sparta/navy_pl?adCampaign=88078&clickID=0AyE0D0BtAtDtA0AzztA0E0A0Bzy0F0B&publisherID=107
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Sparta.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://plarium.com/play/en/sparta/navy_pl?adCampaign=88078&clickID=0AyE0D0BtAtDtA0AzztA0E0A0Bzy0F0B&publisherID=107
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WarThunder.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://mmotraffic.com/catalog/goplay/1000932/MTE3NjYvLy8xMDAwOTMy/?subid=3&click_id=1af3709e90d96257224c8bf441aa84545752646a
 
 
ShortcutWithArgument: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> -sta {C90FB8CA-3295-4462-A721-2935E83694BA}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk -> C:\Program Files\Java\jre1.8.0_66\bin\javacpl.exe (Oracle Corporation) -> -tab about
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk -> C:\Program Files\Java\jre1.8.0_66\bin\javacpl.exe (Oracle Corporation) -> -tab update
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen\AVG.lnk -> C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (AVG Technologies CZ, s.r.o.) -> /zen.open_ui
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Check For Updates.lnk -> C:\Program Files (x86)\AutoIt3\AutoIt3.exe (AutoIt Team) -> "C:\Program Files (x86)\AutoIt3\Extras\AutoUpdateIt\AutoUpdateIt.au3"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\Help.lnk -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.exe (Advanced Micro Devices Inc.) -> Start Help -help
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\hp\Desktop\Gry\AVG.lnk -> C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (AVG Technologies CZ, s.r.o.) -> /zen.open_ui
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Windows\SendTo\Odbiorca faksu.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> /e,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl .lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.smenu.URL
ShortcutWithArgument: C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.tbar.URL
ShortcutWithArgument: C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking .lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.smenu.URL
ShortcutWithArgument: C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.tbar.URL
 
 
InternetURL: C:\Users\Administrator\Favorites\Bing.url -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\Administrator\Favorites\Links\Amazon.co.uk – Online Shopping.url -> hxxp://redirect.hp.com/svs/rdr?locale=pl_pl&c=133&bd=presario&tp=iefavbar&s=amazon&pf=cnnb&TYPE=4
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Get Help.url -> hxxp://java.com/help
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visit Java.com.url -> hxxp://java.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> hxxp://www.piriform.com/ccleaner
InternetURL: C:\Users\Default\Favorites\Links\Amazon.co.uk – Online Shopping.url -> hxxp://redirect.hp.com/svs/rdr?locale=pl_pl&c=133&bd=presario&tp=iefavbar&s=amazon&pf=cnnb&TYPE=4
InternetURL: C:\Users\hp\Favorites\Bing.url -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\hp\Favorites\Links\Amazon.co.uk – Online Shopping.url -> hxxp://redirect.hp.com/svs/rdr?locale=pl_pl&c=133&bd=presario&tp=iefavbar&s=amazon&pf=cnnb&TYPE=4
InternetURL: C:\Users\hp\Desktop\Gry\Mods\IGG-GAMES.COM.url -> hxxp://www.igg-games.com/
InternetURL: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter Strike 1.6 BF Edition\Strona domowa.url -> hxxp://www.pobierzcounterstrike.pl
InternetURL: C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.smenu.URL -> hxxp://redirect.pmcdn.info/pfintermediate.html?type=quick&topic=iconMetroclick&partner=ironpf2&destination=allegro.pl&uid=62aa6712463c7d6c30ad6ed25c1230bd&country=PL&storeKey=allegro.pl
InternetURL: C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.tbar.URL -> hxxp://redirect.pmcdn.info/pfintermediate.html?type=quick&topic=iconTaskbarclick&partner=ironpf2&destination=allegro.pl&uid=62aa6712463c7d6c30ad6ed25c1230bd&country=PL&storeKey=allegro.pl
InternetURL: C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.smenu.URL -> hxxp://redirect.pmcdn.info/pfintermediate.html?type=quick&topic=iconMetroclick&partner=ironpf2&destination=Booking&uid=62aa6712463c7d6c30ad6ed25c1230bd&country=PL&storeKey=Booking
InternetURL: C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.tbar.URL -> hxxp://redirect.pmcdn.info/pfintermediate.html?type=quick&topic=iconTaskbarclick&partner=ironpf2&destination=Booking&uid=62aa6712463c7d6c30ad6ed25c1230bd&country=PL&storeKey=Booking
 
==================== Koniec  Shortcut.txt =============================

 

­

pyhvh7E.png


 


Opublikowano

Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja:05-03-2016 01

Uruchomiony przez hp (2016-03-18 21:29:34) Run:2
Uruchomiony z C:\Users\hp\Downloads
Załadowane profile: hp & Administrator (Dostępne profile: hp & Administrator)
Tryb startu: Normal
==============================================
 
fixlist - zawartość:
*****************
Closeprocesses:
Task: {11BABF2A-1E30-4271-B9C0-EF00893463DA} - System32\Tasks\hpHangoversPhenomenalV2 => Rundll32.exe CalibreBrassiere.dll,main 7 1 <==== UWAGA
Task: {18A7F580-16F9-4717-9539-B9B86B38A4DE} - System32\Tasks\{BC0BB449-2C3E-411F-8285-29B00F93622A} => pcalua.exe -a C:\Users\hp\AppData\Roaming\omiga-plus\UninstallManager.exe -c  -ptid=smt <==== UWAGA
Task: {2375F142-C280-446E-89D6-5C3022A6F96E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA
Task: {320A8EB4-3A32-45BD-8E3C-AA23B5A07680} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
Task: {474B9C67-972B-421B-847C-2203597E9430} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA
Task: {86581700-799E-4301-9819-1D7F50967D2E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA
Task: {96D2B08B-21FA-4AD3-B1E9-45A43D743044} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA
Task: {BC8D6B9F-97FC-400F-A55B-7549DE0A4AE7} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA
Task: {D6E10140-96BE-4C38-A81A-934180E4E664} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA
Task: {E4B5A16C-9A16-4689-94FA-03B888533344} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
Task: {F2360F4B-6B35-4344-94E0-C9B6D11E8295} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA
Task: {F3F01B4B-911E-44A0-87C3-F0DD9F416B29} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
Task: {FC771E1E-82CD-4567-AA8A-5FC2E6245402} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA
 
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Classes\.exe: exefile =>  <===== UWAGA
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Classes\exefile:  <===== UWAGA
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  Brak pliku
GroupPolicy: Ograniczenia - Chrome <======= UWAGA
CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130982262859764776&GUID=AA20B454-0B88-4845-82B9-55C9C7FC6663
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130982262859792890&GUID=AA20B454-0B88-4845-82B9-55C9C7FC6663
SearchScopes: HKLM -> {7E98812C-C8BA-4A6B-8035-B2C5A443EC34} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {7E98812C-C8BA-4A6B-8035-B2C5A443EC34} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={86E28FD8-076A-4C46-940F-1061373A2258}&mid=e9be97ca724647cda291759276de54a5-9081c6e61451e5b6ea64969974d75647542e60f2〈=pl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2016-01-27 17:06:19&v=4.2.5.441&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> {7E98812C-C8BA-4A6B-8035-B2C5A443EC34} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={86E28FD8-076A-4C46-940F-1061373A2258}&mid=e9be97ca724647cda291759276de54a5-9081c6e61451e5b6ea64969974d75647542e60f2〈=pl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2016-01-27 17:06:19&v=4.2.5.441&pid=wtu&sg=&sap=dsp&q={searchTerms}
BHO-x32: Brak nazwy -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Brak pliku
Toolbar: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> Brak nazwy - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  Brak pliku
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
 
 
 
CMD: dir /a "C:\Users\hp\appdata\Local"
CMD: dir /a "C:\Users\hp\appdata\Roaming"
CMD: dir /a "C:\Users\hp\appdata\Locallow"
CMD: dir /a "C:\Program Files (x86)"
CMD: dir /a "C:\Program Files"
CMD: dir /a "C:\ProgramData"
RemoveProxy:
Hosts:
EmptyTemp:
*****************
 
Procesy zostały pomyślnie zamknięte.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{11BABF2A-1E30-4271-B9C0-EF00893463DA} => klucz nie znaleziono. 
C:\WINDOWS\System32\Tasks\hpHangoversPhenomenalV2 => nie znaleziono.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\hpHangoversPhenomenalV2 => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{18A7F580-16F9-4717-9539-B9B86B38A4DE} => klucz nie znaleziono. 
C:\WINDOWS\System32\Tasks\{BC0BB449-2C3E-411F-8285-29B00F93622A} => nie znaleziono.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{BC0BB449-2C3E-411F-8285-29B00F93622A} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2375F142-C280-446E-89D6-5C3022A6F96E} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{320A8EB4-3A32-45BD-8E3C-AA23B5A07680} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{474B9C67-972B-421B-847C-2203597E9430} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{86581700-799E-4301-9819-1D7F50967D2E} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96D2B08B-21FA-4AD3-B1E9-45A43D743044} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BC8D6B9F-97FC-400F-A55B-7549DE0A4AE7} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D6E10140-96BE-4C38-A81A-934180E4E664} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E4B5A16C-9A16-4689-94FA-03B888533344} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F2360F4B-6B35-4344-94E0-C9B6D11E8295} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3F01B4B-911E-44A0-87C3-F0DD9F416B29} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FC771E1E-82CD-4567-AA8A-5FC2E6245402} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd => klucz nie znaleziono. 
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Classes\.exe => klucz nie znaleziono. 
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Classes\exefile => klucz nie znaleziono. 
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => klucz pomyślnie usunięto
HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => klucz nie znaleziono. 
C:\WINDOWS\system32\GroupPolicy\Machine => pomyślnie przeniesiono
C:\WINDOWS\system32\GroupPolicy\GPT.ini => pomyślnie przeniesiono
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => pomyślnie przeniesiono
"HKLM\SOFTWARE\Policies\Google" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => klucz pomyślnie usunięto
"HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Policies\Microsoft\Internet Explorer" => klucz pomyślnie usunięto
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyślnie przywrócono
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7E98812C-C8BA-4A6B-8035-B2C5A443EC34}" => klucz pomyślnie usunięto
HKCR\CLSID\{7E98812C-C8BA-4A6B-8035-B2C5A443EC34} => klucz nie znaleziono. 
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{7E98812C-C8BA-4A6B-8035-B2C5A443EC34}" => klucz pomyślnie usunięto
HKCR\Wow6432Node\CLSID\{7E98812C-C8BA-4A6B-8035-B2C5A443EC34} => klucz nie znaleziono. 
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie usunięto
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie usunięto
"HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7E98812C-C8BA-4A6B-8035-B2C5A443EC34}" => klucz pomyślnie usunięto
HKCR\CLSID\{7E98812C-C8BA-4A6B-8035-B2C5A443EC34} => klucz nie znaleziono. 
"HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}" => klucz pomyślnie usunięto
"HKCR\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}" => klucz pomyślnie usunięto
HKCR\Wow6432Node\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} => klucz nie znaleziono. 
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => Wartość pomyślnie usunięto
HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => klucz nie znaleziono. 
wfpcapture => serwis pomyślnie usunięto
 
=========  dir /a "C:\Users\hp\appdata\Local" =========
 
 Volume in drive C is Windows
 Volume Serial Number is 1E0E-B9FB
 
 Directory of C:\Users\hp\appdata\Local
 
2016-03-11  23:21    <DIR>          .
2016-03-11  23:21    <DIR>          ..
2015-07-11  09:54    <DIR>          Adobe
2015-01-06  20:40    <DIR>          Aeria Games
2015-03-07  14:03    <DIR>          Akamai
2015-10-22  17:20    <DIR>          AMD
2016-03-11  23:18    <DIR>          Apple
2016-03-11  23:21    <DIR>          Apple Computer
2014-12-01  19:50    <DIR>          Apps
2015-09-26  12:29    <DIR>          ATI
2016-02-09  17:08    <DIR>          Avg
2016-01-27  17:06    <DIR>          AVG Web TuneUp
2016-01-27  16:20    <DIR>          AvgSetupLog
2014-11-25  14:43    <DIR>          BMExplorer
2015-09-05  20:19    <DIR>          Comms
2015-02-15  12:26    <DIR>          CrashDumps
2015-03-25  13:34    <DIR>          CyberLink
2015-08-06  12:17    <JUNCTION>     Dane aplikacji [C:\Users\hp\AppData\Local]
2016-03-06  15:04    <DIR>          Diagnostics
2016-03-08  20:46    <DIR>          ElevatedDiagnostics
2015-06-15  18:32    <DIR>          EmieBrowserModeList
2015-06-15  18:32    <DIR>          EmieSiteList
2015-06-15  18:32    <DIR>          EmieUserList
2014-12-06  15:52    <DIR>          fontconfig
2014-12-07  11:44    <DIR>          Geckofx
2014-12-06  15:52    <DIR>          gegl-0.2
2015-06-15  18:31    <DIR>          Google
2015-08-29  13:26    <DIR>          gtk-2.0
2015-06-02  09:07    <DIR>          GWX
2016-03-12  11:17    <DIR>          HangoversPhenomenal
2014-12-10  17:19    <DIR>          Hewlett-Packard
2015-08-06  12:17    <JUNCTION>     Historia [C:\Users\hp\AppData\Local\Microsoft\Windows\History]
2015-05-18  14:42    <DIR>          HP Quick Start
2016-03-18  14:57            61�791 IconCache.db
2015-01-01  21:02    <DIR>          id Software
2015-01-13  19:55    <DIR>          Installer
2015-11-22  14:47    <DIR>          KogamaLauncher-WWW
2015-08-24  17:20    <DIR>          KogamaLauncherWWW
2015-07-10  23:07    <DIR>          Macromedia
2016-01-27  16:21    <DIR>          MFAData
2016-01-27  15:41    <DIR>          Microsoft
2015-08-07  22:14    <DIR>          MicrosoftEdge
2015-07-10  23:02    <DIR>          Mozilla
2015-08-06  12:56    <DIR>          NetworkTiles
2014-12-17  13:17    <DIR>          Opera Software
2015-10-03  17:08    <DIR>          Origin
2015-12-11  15:51    <DIR>          Packages
2014-11-25  14:41    <DIR>          Power2Go8
2014-12-06  15:45    <DIR>          Programs
2015-08-06  12:58    <DIR>          Publishers
2014-12-13  10:39    <DIR>          PunkBuster
2015-01-03  14:53    <DIR>          Razer
2015-09-27  11:01             3�721 recently-used.xbel
2016-01-27  15:40             7�598 Resmon.ResmonCfg
2016-03-11  23:06    <DIR>          Sparta
2015-06-17  14:00    <DIR>          SquirrelTemp
2016-03-18  21:29    <DIR>          Temp
2015-08-06  12:17    <JUNCTION>     Temporary Internet Files [C:\Users\hp\AppData\Local\Microsoft\Windows\INetCache]
2015-08-06  12:55    <DIR>          TileDataLayer
2014-12-02  16:19    <DIR>          Unity
2015-12-19  10:24    <DIR>          VirtualStore
2014-12-12  20:42    <DIR>          Warframe
2015-08-22  16:17    <DIR>          Wild-Terra-Eng
2015-11-11  00:02    <DIR>          Xamarin
               3 File(s)         73�110 bytes
              61 Dir(s)  419�776�434�176 bytes free
 
========= Koniec  CMD: =========
 
 
=========  dir /a "C:\Users\hp\appdata\Roaming" =========
 
 Volume in drive C is Windows
 Volume Serial Number is 1E0E-B9FB
 
 Directory of C:\Users\hp\appdata\Roaming
 
2016-03-12  11:31    <DIR>          .
2016-03-12  11:31    <DIR>          ..
2016-03-10  20:52    <DIR>          .minecraft
2015-12-12  11:44    <DIR>          Adobe
2015-12-14  16:49    <DIR>          AMD
2016-03-11  23:21    <DIR>          Apple Computer
2015-12-14  16:36    <DIR>          ATI
2016-01-27  16:37    <DIR>          AVG
2016-01-03  14:26    <DIR>          CodeBlocks
2016-03-01  15:23    <DIR>          Factorio
2015-01-03  12:46    <DIR>          GoldenGate
2015-12-30  13:34    <DIR>          java
2015-12-27  11:28    <DIR>          Macromedia
2015-11-22  14:47    <DIR>          Microsoft
2016-03-12  11:40    <DIR>          Notepad++
2014-12-17  13:17    <DIR>          Opera Software
2015-12-05  12:15    <DIR>          Origin
2015-12-05  20:15    <DIR>          Synaptics
2015-12-05  13:53    <DIR>          TuneUp Software
2015-12-14  21:58    <DIR>          Unity
2016-01-03  16:37    <DIR>          WinRAR
               0 File(s)              0 bytes
              21 Dir(s)  419�776�430�080 bytes free
 
========= Koniec  CMD: =========
 
 
=========  dir /a "C:\Users\hp\appdata\Locallow" =========
 
 Volume in drive C is Windows
 Volume Serial Number is 1E0E-B9FB
 
 Directory of C:\Users\hp\appdata\Locallow
 
2016-02-25  17:00    <DIR>          .
2016-02-25  17:00    <DIR>          ..
2015-01-20  12:58    <DIR>          Adobe
2015-06-15  18:34    <DIR>          EmieBrowserModeList
2015-06-15  18:34    <DIR>          EmieSiteList
2015-06-15  18:34    <DIR>          EmieUserList
2015-01-01  21:02    <DIR>          id Software
2016-02-25  17:00    <DIR>          Ludeon Studios
2015-07-10  23:07    <DIR>          Microsoft
2015-04-07  09:30    <DIR>          Oracle
2015-01-28  19:30    <DIR>          Sun
2014-12-02  17:06    <DIR>          Unity
               0 File(s)              0 bytes
              12 Dir(s)  419�776�385�024 bytes free
 
========= Koniec  CMD: =========
 
 
=========  dir /a "C:\Program Files (x86)" =========
 
 Volume in drive C is Windows
 Volume Serial Number is 1E0E-B9FB
 
 Directory of C:\Program Files (x86)
 
2016-03-11  23:20    <DIR>          .
2016-03-11  23:20    <DIR>          ..
2015-03-12  13:52    <DIR>          Adobe
2015-08-16  14:19    <DIR>          Age of Wonders II Tron Czarnoksi��nika
2015-02-05  15:17    <DIR>          AMD
2015-01-16  14:13    <DIR>          AMD AVT
2016-03-11  23:18    <DIR>          Apple Software Update
2015-12-12  16:28    <DIR>          AssaultCube
2015-12-18  17:40    <DIR>          ATI Technologies
2015-12-28  14:43    <DIR>          AutoIt3
2016-01-27  16:32    <DIR>          AVG
2016-03-11  20:50    <DIR>          AVG Web TuneUp
2015-06-27  20:56    <DIR>          Bluetooth Suite
2015-03-07  13:55    <DIR>          Bonjour
2015-12-05  12:14    <DIR>          CodeBlocks
2016-01-27  17:06    <DIR>          Common Files
2015-06-27  21:10    <DIR>          CyberLink
2015-07-10  12:02               174 desktop.ini
2015-06-27  20:45    <DIR>          Hewlett-Packard
2015-06-27  20:55    <DIR>          InstallShield Installation Information
2016-03-10  17:36    <DIR>          Internet Explorer
2016-02-13  19:40    <DIR>          Jed's Half-Life Model Viewer 1.3.6
2015-11-11  17:04    <DIR>          Malwarebytes Anti-Malware
2013-07-16  17:02    <DIR>          Microsoft Office
2013-07-16  17:07    <DIR>          Microsoft SkyDrive
2013-07-16  17:08    <DIR>          Microsoft SQL Server Compact Edition
2015-07-10  12:04    <DIR>          Microsoft.NET
2016-01-27  17:06    <DIR>          Mozilla Firefox
2015-09-09  15:34    <DIR>          Notepad++
2014-11-25  14:42    <DIR>          Online Services
2015-01-20  10:19    <DIR>          OpenAL
2016-03-16  18:37    <DIR>          Opera
2016-02-11  09:31    <DIR>          Origin
2015-10-03  17:09    <DIR>          Origin Games
2015-05-17  10:04    <DIR>          PLAY
2014-11-25  12:38    <DIR>          Qualcomm Atheros
2015-01-04  21:01    <DIR>          Raptr
2014-11-25  12:36    <DIR>          Realtek
2015-08-06  12:26    <DIR>          Reference Assemblies
2016-03-11  23:20    <DIR>          Safari
2014-11-25  13:06    <DIR>          SymSilent
2015-02-08  11:55    <DIR>          Temp
2015-07-10  17:30    <DIR>          Windows Defender
2013-07-16  17:08    <DIR>          Windows Live
2015-08-06  12:21    <DIR>          Windows Mail
2015-07-10  17:30    <DIR>          Windows Media Player
2016-03-10  17:36    <DIR>          Windows Multimedia Platform
2015-07-10  12:04    <DIR>          Windows NT
2015-07-10  17:30    <DIR>          Windows Photo Viewer
2016-03-10  17:36    <DIR>          Windows Portable Devices
2015-07-10  12:04    <DIR>          Windows Sidebar
2015-07-10  12:04    <DIR>          WindowsPowerShell
2015-03-19  09:27    <DIR>          WnP
               1 File(s)            174 bytes
              52 Dir(s)  419�776�380�928 bytes free
 
========= Koniec  CMD: =========
 
 
=========  dir /a "C:\Program Files" =========
 
 Volume in drive C is Windows
 Volume Serial Number is 1E0E-B9FB
 
 Directory of C:\Program Files
 
2016-02-26  17:37    <DIR>          .
2016-02-26  17:37    <DIR>          ..
2015-09-18  20:30    <DIR>          AMD
2015-12-18  17:42    <DIR>          ATI Technologies
2016-02-22  17:35    <DIR>          AVG Web TuneUp
2015-03-07  13:55    <DIR>          Bonjour
2015-09-21  16:02    <DIR>          CCleaner
2016-01-27  17:06    <DIR>          Common Files
2016-03-08  21:56    <DIR>          CPUID
2015-07-10  12:02               174 desktop.ini
2016-01-03  15:57    <DIR>          Enigma Software Group
2016-02-26  17:38    <DIR>          Factorio
2014-12-06  15:48    <DIR>          GIMP 2
2014-12-12  19:58    <DIR>          Google
2015-06-27  20:36    <DIR>          Hewlett-Packard
2016-03-10  17:36    <DIR>          Internet Explorer
2016-03-11  23:36    <DIR>          Java
2015-08-06  12:26    <DIR>          MSBuild
2016-01-22  18:50    <DIR>          Mz Ultimate Tools
2015-08-06  12:10    <DIR>          Realtek
2015-08-06  12:26    <DIR>          Reference Assemblies
2015-08-06  12:08    <DIR>          Synaptics
2015-07-10  13:21    <DIR>          Uninstall Information
2015-07-10  17:30    <DIR>          Windows Defender
2016-02-17  23:02    <DIR>          Windows Journal
2015-08-06  12:21    <DIR>          Windows Mail
2016-03-10  17:36    <DIR>          Windows Media Player
2016-03-10  17:36    <DIR>          Windows Multimedia Platform
2015-08-06  12:51    <DIR>          Windows NT
2015-07-10  17:30    <DIR>          Windows Photo Viewer
2016-03-10  17:36    <DIR>          Windows Portable Devices
2015-07-10  12:04    <DIR>          Windows Sidebar
2016-03-18  15:16    <DIR>          WindowsApps
2015-07-10  12:04    <DIR>          WindowsPowerShell
2016-01-03  16:36    <DIR>          WinRAR
               1 File(s)            174 bytes
              34 Dir(s)  419�776�380�928 bytes free
 
========= Koniec  CMD: =========
 
 
=========  dir /a "C:\ProgramData" =========
 
 Volume in drive C is Windows
 Volume Serial Number is 1E0E-B9FB
 
 Directory of C:\ProgramData
 
2016-03-11  23:20    <DIR>          .
2016-03-11  23:20    <DIR>          ..
2015-01-01  13:57    <DIR>          Activision
2015-02-20  20:13    <DIR>          Adobe
2015-12-18  17:42    <DIR>          AMD
2014-11-25  12:32    <DIR>          Apple
2016-03-11  23:20    <DIR>          Apple Computer
2015-07-10  13:21    <JUNCTION>     Application Data [C:\ProgramData]
2015-12-18  23:15    <DIR>          ATI
2016-01-27  16:35    <DIR>          AVG
2016-01-27  17:06    <DIR>          AVG Secure Search
2016-01-27  17:06    <DIR>          AVG Security Toolbar
2016-03-11  20:50    <DIR>          AVG Web TuneUp
2015-08-06  14:04    <DIR>          Common Files
2015-07-10  12:04    <DIR>          Comms
2015-06-27  20:54    <DIR>          CyberLink
2014-11-25  14:37    <JUNCTION>     Dane aplikacji [C:\ProgramData]
2015-07-10  13:21    <JUNCTION>     Desktop [C:\Users\Public\Desktop]
2015-07-10  13:21    <JUNCTION>     Documents [C:\Users\Public\Documents]
2014-11-25  14:37    <JUNCTION>     Dokumenty [C:\Users\Public\Documents]
2015-10-04  22:45    <DIR>          Electronic Arts
2014-11-25  12:56    <DIR>          install_clap
2015-07-08  22:30    <DIR>          Malwarebytes
2014-11-25  14:37    <JUNCTION>     Menu Start [C:\ProgramData\Microsoft\Windows\Start Menu]
2016-03-18  20:18    <DIR>          MFAData
2015-12-28  14:44    <DIR>          Microsoft
2015-08-06  13:00    <DIR>          Microsoft OneDrive
2013-07-16  17:07    <DIR>          Microsoft SkyDrive
2015-08-06  14:05               266 ntuser.pol
2015-04-15  13:59    <DIR>          Oracle
2016-03-13  15:44    <DIR>          Origin
2015-12-05  11:54    <DIR>          Package Cache
2015-08-06  12:21    <DIR>          PRICache
2014-11-25  14:37    <JUNCTION>     Pulpit [C:\Users\Public\Desktop]
2014-11-25  12:38    <DIR>          Qualcomm Atheros
2015-08-25  16:39    <DIR>          regid.1991-06.com.microsoft
2015-08-12  16:39    <DIR>          SoftwareDistribution
2015-07-10  13:21    <JUNCTION>     Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
2015-01-28  19:33    <DIR>          Sun
2014-11-25  12:43    <DIR>          Synaptics
2014-11-25  14:37    <JUNCTION>     Szablony [C:\ProgramData\Microsoft\Windows\Templates]
2015-10-11  12:55    <DIR>          TDM-GCC
2015-01-13  20:00    <DIR>          Temp
2015-07-10  13:21    <JUNCTION>     Templates [C:\ProgramData\Microsoft\Windows\Templates]
2015-08-26  09:38    <DIR>          TuneUp Software
2015-07-10  13:22    <DIR>          USOPrivate
2015-07-10  13:22    <DIR>          USOShared
2015-08-24  14:01    <DIR>          VsTelemetry
2015-08-26  09:45    <DIR>          {C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
               1 File(s)            266 bytes
              48 Dir(s)  419�776�376�832 bytes free
 
========= Koniec  CMD: =========
 
 
========= RemoveProxy: =========
 
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wartość pomyślnie usunięto
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wartość pomyślnie usunięto
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wartość pomyślnie usunięto
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wartość pomyślnie usunięto
HKU\S-1-5-21-1315851758-1348891091-2830217532-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wartość pomyślnie usunięto
HKU\S-1-5-21-1315851758-1348891091-2830217532-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wartość pomyślnie usunięto
 
 
========= Koniec  RemoveProxy: =========
 
C:\Windows\System32\Drivers\etc\hosts => pomyślnie przeniesiono
Hosts pomyślnie przywrócono.
EmptyTemp: => 687.9 MB danych tymczasowych Usunięto.
 
 
System wymagał restartu.
 

==== Koniec  Fixlog 21:31:25 ====

­

Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja:05-03-2016 01

Uruchomiony przez hp (2016-03-18 21:29:34) Run:2
Uruchomiony z C:\Users\hp\Downloads
Załadowane profile: hp & Administrator (Dostępne profile: hp & Administrator)
Tryb startu: Normal
==============================================
 
fixlist - zawartość:
*****************
Closeprocesses:
Task: {11BABF2A-1E30-4271-B9C0-EF00893463DA} - System32\Tasks\hpHangoversPhenomenalV2 => Rundll32.exe CalibreBrassiere.dll,main 7 1 <==== UWAGA
Task: {18A7F580-16F9-4717-9539-B9B86B38A4DE} - System32\Tasks\{BC0BB449-2C3E-411F-8285-29B00F93622A} => pcalua.exe -a C:\Users\hp\AppData\Roaming\omiga-plus\UninstallManager.exe -c  -ptid=smt <==== UWAGA
Task: {2375F142-C280-446E-89D6-5C3022A6F96E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA
Task: {320A8EB4-3A32-45BD-8E3C-AA23B5A07680} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
Task: {474B9C67-972B-421B-847C-2203597E9430} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA
Task: {86581700-799E-4301-9819-1D7F50967D2E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA
Task: {96D2B08B-21FA-4AD3-B1E9-45A43D743044} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA
Task: {BC8D6B9F-97FC-400F-A55B-7549DE0A4AE7} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA
Task: {D6E10140-96BE-4C38-A81A-934180E4E664} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA
Task: {E4B5A16C-9A16-4689-94FA-03B888533344} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
Task: {F2360F4B-6B35-4344-94E0-C9B6D11E8295} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA
Task: {F3F01B4B-911E-44A0-87C3-F0DD9F416B29} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
Task: {FC771E1E-82CD-4567-AA8A-5FC2E6245402} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA
 
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Classes\.exe: exefile =>  <===== UWAGA
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Classes\exefile:  <===== UWAGA
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  Brak pliku
GroupPolicy: Ograniczenia - Chrome <======= UWAGA
CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130982262859764776&GUID=AA20B454-0B88-4845-82B9-55C9C7FC6663
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130982262859792890&GUID=AA20B454-0B88-4845-82B9-55C9C7FC6663
SearchScopes: HKLM -> {7E98812C-C8BA-4A6B-8035-B2C5A443EC34} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {7E98812C-C8BA-4A6B-8035-B2C5A443EC34} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={86E28FD8-076A-4C46-940F-1061373A2258}&mid=e9be97ca724647cda291759276de54a5-9081c6e61451e5b6ea64969974d75647542e60f2〈=pl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2016-01-27 17:06:19&v=4.2.5.441&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> {7E98812C-C8BA-4A6B-8035-B2C5A443EC34} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={86E28FD8-076A-4C46-940F-1061373A2258}&mid=e9be97ca724647cda291759276de54a5-9081c6e61451e5b6ea64969974d75647542e60f2〈=pl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2016-01-27 17:06:19&v=4.2.5.441&pid=wtu&sg=&sap=dsp&q={searchTerms}
BHO-x32: Brak nazwy -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Brak pliku
Toolbar: HKU\S-1-5-21-1315851758-1348891091-2830217532-1002 -> Brak nazwy - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  Brak pliku
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
 
 
 
CMD: dir /a "C:\Users\hp\appdata\Local"
CMD: dir /a "C:\Users\hp\appdata\Roaming"
CMD: dir /a "C:\Users\hp\appdata\Locallow"
CMD: dir /a "C:\Program Files (x86)"
CMD: dir /a "C:\Program Files"
CMD: dir /a "C:\ProgramData"
RemoveProxy:
Hosts:
EmptyTemp:
*****************
 
Procesy zostały pomyślnie zamknięte.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{11BABF2A-1E30-4271-B9C0-EF00893463DA} => klucz nie znaleziono. 
C:\WINDOWS\System32\Tasks\hpHangoversPhenomenalV2 => nie znaleziono.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\hpHangoversPhenomenalV2 => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{18A7F580-16F9-4717-9539-B9B86B38A4DE} => klucz nie znaleziono. 
C:\WINDOWS\System32\Tasks\{BC0BB449-2C3E-411F-8285-29B00F93622A} => nie znaleziono.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{BC0BB449-2C3E-411F-8285-29B00F93622A} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2375F142-C280-446E-89D6-5C3022A6F96E} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{320A8EB4-3A32-45BD-8E3C-AA23B5A07680} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{474B9C67-972B-421B-847C-2203597E9430} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{86581700-799E-4301-9819-1D7F50967D2E} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96D2B08B-21FA-4AD3-B1E9-45A43D743044} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BC8D6B9F-97FC-400F-A55B-7549DE0A4AE7} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D6E10140-96BE-4C38-A81A-934180E4E664} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E4B5A16C-9A16-4689-94FA-03B888533344} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F2360F4B-6B35-4344-94E0-C9B6D11E8295} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3F01B4B-911E-44A0-87C3-F0DD9F416B29} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FC771E1E-82CD-4567-AA8A-5FC2E6245402} => klucz nie znaleziono. 
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd => klucz nie znaleziono. 
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Classes\.exe => klucz nie znaleziono. 
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Classes\exefile => klucz nie znaleziono. 
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => klucz pomyślnie usunięto
HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => klucz nie znaleziono. 
C:\WINDOWS\system32\GroupPolicy\Machine => pomyślnie przeniesiono
C:\WINDOWS\system32\GroupPolicy\GPT.ini => pomyślnie przeniesiono
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => pomyślnie przeniesiono
"HKLM\SOFTWARE\Policies\Google" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => klucz pomyślnie usunięto
"HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Policies\Microsoft\Internet Explorer" => klucz pomyślnie usunięto
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyślnie przywrócono
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7E98812C-C8BA-4A6B-8035-B2C5A443EC34}" => klucz pomyślnie usunięto
HKCR\CLSID\{7E98812C-C8BA-4A6B-8035-B2C5A443EC34} => klucz nie znaleziono. 
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{7E98812C-C8BA-4A6B-8035-B2C5A443EC34}" => klucz pomyślnie usunięto
HKCR\Wow6432Node\CLSID\{7E98812C-C8BA-4A6B-8035-B2C5A443EC34} => klucz nie znaleziono. 
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie usunięto
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie usunięto
"HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7E98812C-C8BA-4A6B-8035-B2C5A443EC34}" => klucz pomyślnie usunięto
HKCR\CLSID\{7E98812C-C8BA-4A6B-8035-B2C5A443EC34} => klucz nie znaleziono. 
"HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}" => klucz pomyślnie usunięto
"HKCR\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}" => klucz pomyślnie usunięto
HKCR\Wow6432Node\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} => klucz nie znaleziono. 
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => Wartość pomyślnie usunięto
HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => klucz nie znaleziono. 
wfpcapture => serwis pomyślnie usunięto
 
=========  dir /a "C:\Users\hp\appdata\Local" =========
 
 Volume in drive C is Windows
 Volume Serial Number is 1E0E-B9FB
 
 Directory of C:\Users\hp\appdata\Local
 
2016-03-11  23:21    <DIR>          .
2016-03-11  23:21    <DIR>          ..
2015-07-11  09:54    <DIR>          Adobe
2015-01-06  20:40    <DIR>          Aeria Games
2015-03-07  14:03    <DIR>          Akamai
2015-10-22  17:20    <DIR>          AMD
2016-03-11  23:18    <DIR>          Apple
2016-03-11  23:21    <DIR>          Apple Computer
2014-12-01  19:50    <DIR>          Apps
2015-09-26  12:29    <DIR>          ATI
2016-02-09  17:08    <DIR>          Avg
2016-01-27  17:06    <DIR>          AVG Web TuneUp
2016-01-27  16:20    <DIR>          AvgSetupLog
2014-11-25  14:43    <DIR>          BMExplorer
2015-09-05  20:19    <DIR>          Comms
2015-02-15  12:26    <DIR>          CrashDumps
2015-03-25  13:34    <DIR>          CyberLink
2015-08-06  12:17    <JUNCTION>     Dane aplikacji [C:\Users\hp\AppData\Local]
2016-03-06  15:04    <DIR>          Diagnostics
2016-03-08  20:46    <DIR>          ElevatedDiagnostics
2015-06-15  18:32    <DIR>          EmieBrowserModeList
2015-06-15  18:32    <DIR>          EmieSiteList
2015-06-15  18:32    <DIR>          EmieUserList
2014-12-06  15:52    <DIR>          fontconfig
2014-12-07  11:44    <DIR>          Geckofx
2014-12-06  15:52    <DIR>          gegl-0.2
2015-06-15  18:31    <DIR>          Google
2015-08-29  13:26    <DIR>          gtk-2.0
2015-06-02  09:07    <DIR>          GWX
2016-03-12  11:17    <DIR>          HangoversPhenomenal
2014-12-10  17:19    <DIR>          Hewlett-Packard
2015-08-06  12:17    <JUNCTION>     Historia [C:\Users\hp\AppData\Local\Microsoft\Windows\History]
2015-05-18  14:42    <DIR>          HP Quick Start
2016-03-18  14:57            61�791 IconCache.db
2015-01-01  21:02    <DIR>          id Software
2015-01-13  19:55    <DIR>          Installer
2015-11-22  14:47    <DIR>          KogamaLauncher-WWW
2015-08-24  17:20    <DIR>          KogamaLauncherWWW
2015-07-10  23:07    <DIR>          Macromedia
2016-01-27  16:21    <DIR>          MFAData
2016-01-27  15:41    <DIR>          Microsoft
2015-08-07  22:14    <DIR>          MicrosoftEdge
2015-07-10  23:02    <DIR>          Mozilla
2015-08-06  12:56    <DIR>          NetworkTiles
2014-12-17  13:17    <DIR>          Opera Software
2015-10-03  17:08    <DIR>          Origin
2015-12-11  15:51    <DIR>          Packages
2014-11-25  14:41    <DIR>          Power2Go8
2014-12-06  15:45    <DIR>          Programs
2015-08-06  12:58    <DIR>          Publishers
2014-12-13  10:39    <DIR>          PunkBuster
2015-01-03  14:53    <DIR>          Razer
2015-09-27  11:01             3�721 recently-used.xbel
2016-01-27  15:40             7�598 Resmon.ResmonCfg
2016-03-11  23:06    <DIR>          Sparta
2015-06-17  14:00    <DIR>          SquirrelTemp
2016-03-18  21:29    <DIR>          Temp
2015-08-06  12:17    <JUNCTION>     Temporary Internet Files [C:\Users\hp\AppData\Local\Microsoft\Windows\INetCache]
2015-08-06  12:55    <DIR>          TileDataLayer
2014-12-02  16:19    <DIR>          Unity
2015-12-19  10:24    <DIR>          VirtualStore
2014-12-12  20:42    <DIR>          Warframe
2015-08-22  16:17    <DIR>          Wild-Terra-Eng
2015-11-11  00:02    <DIR>          Xamarin
               3 File(s)         73�110 bytes
              61 Dir(s)  419�776�434�176 bytes free
 
========= Koniec  CMD: =========
 
 
=========  dir /a "C:\Users\hp\appdata\Roaming" =========
 
 Volume in drive C is Windows
 Volume Serial Number is 1E0E-B9FB
 
 Directory of C:\Users\hp\appdata\Roaming
 
2016-03-12  11:31    <DIR>          .
2016-03-12  11:31    <DIR>          ..
2016-03-10  20:52    <DIR>          .minecraft
2015-12-12  11:44    <DIR>          Adobe
2015-12-14  16:49    <DIR>          AMD
2016-03-11  23:21    <DIR>          Apple Computer
2015-12-14  16:36    <DIR>          ATI
2016-01-27  16:37    <DIR>          AVG
2016-01-03  14:26    <DIR>          CodeBlocks
2016-03-01  15:23    <DIR>          Factorio
2015-01-03  12:46    <DIR>          GoldenGate
2015-12-30  13:34    <DIR>          java
2015-12-27  11:28    <DIR>          Macromedia
2015-11-22  14:47    <DIR>          Microsoft
2016-03-12  11:40    <DIR>          Notepad++
2014-12-17  13:17    <DIR>          Opera Software
2015-12-05  12:15    <DIR>          Origin
2015-12-05  20:15    <DIR>          Synaptics
2015-12-05  13:53    <DIR>          TuneUp Software
2015-12-14  21:58    <DIR>          Unity
2016-01-03  16:37    <DIR>          WinRAR
               0 File(s)              0 bytes
              21 Dir(s)  419�776�430�080 bytes free
 
========= Koniec  CMD: =========
 
 
=========  dir /a "C:\Users\hp\appdata\Locallow" =========
 
 Volume in drive C is Windows
 Volume Serial Number is 1E0E-B9FB
 
 Directory of C:\Users\hp\appdata\Locallow
 
2016-02-25  17:00    <DIR>          .
2016-02-25  17:00    <DIR>          ..
2015-01-20  12:58    <DIR>          Adobe
2015-06-15  18:34    <DIR>          EmieBrowserModeList
2015-06-15  18:34    <DIR>          EmieSiteList
2015-06-15  18:34    <DIR>          EmieUserList
2015-01-01  21:02    <DIR>          id Software
2016-02-25  17:00    <DIR>          Ludeon Studios
2015-07-10  23:07    <DIR>          Microsoft
2015-04-07  09:30    <DIR>          Oracle
2015-01-28  19:30    <DIR>          Sun
2014-12-02  17:06    <DIR>          Unity
               0 File(s)              0 bytes
              12 Dir(s)  419�776�385�024 bytes free
 
========= Koniec  CMD: =========
 
 
=========  dir /a "C:\Program Files (x86)" =========
 
 Volume in drive C is Windows
 Volume Serial Number is 1E0E-B9FB
 
 Directory of C:\Program Files (x86)
 
2016-03-11  23:20    <DIR>          .
2016-03-11  23:20    <DIR>          ..
2015-03-12  13:52    <DIR>          Adobe
2015-08-16  14:19    <DIR>          Age of Wonders II Tron Czarnoksi��nika
2015-02-05  15:17    <DIR>          AMD
2015-01-16  14:13    <DIR>          AMD AVT
2016-03-11  23:18    <DIR>          Apple Software Update
2015-12-12  16:28    <DIR>          AssaultCube
2015-12-18  17:40    <DIR>          ATI Technologies
2015-12-28  14:43    <DIR>          AutoIt3
2016-01-27  16:32    <DIR>          AVG
2016-03-11  20:50    <DIR>          AVG Web TuneUp
2015-06-27  20:56    <DIR>          Bluetooth Suite
2015-03-07  13:55    <DIR>          Bonjour
2015-12-05  12:14    <DIR>          CodeBlocks
2016-01-27  17:06    <DIR>          Common Files
2015-06-27  21:10    <DIR>          CyberLink
2015-07-10  12:02               174 desktop.ini
2015-06-27  20:45    <DIR>          Hewlett-Packard
2015-06-27  20:55    <DIR>          InstallShield Installation Information
2016-03-10  17:36    <DIR>          Internet Explorer
2016-02-13  19:40    <DIR>          Jed's Half-Life Model Viewer 1.3.6
2015-11-11  17:04    <DIR>          Malwarebytes Anti-Malware
2013-07-16  17:02    <DIR>          Microsoft Office
2013-07-16  17:07    <DIR>          Microsoft SkyDrive
2013-07-16  17:08    <DIR>          Microsoft SQL Server Compact Edition
2015-07-10  12:04    <DIR>          Microsoft.NET
2016-01-27  17:06    <DIR>          Mozilla Firefox
2015-09-09  15:34    <DIR>          Notepad++
2014-11-25  14:42    <DIR>          Online Services
2015-01-20  10:19    <DIR>          OpenAL
2016-03-16  18:37    <DIR>          Opera
2016-02-11  09:31    <DIR>          Origin
2015-10-03  17:09    <DIR>          Origin Games
2015-05-17  10:04    <DIR>          PLAY
2014-11-25  12:38    <DIR>          Qualcomm Atheros
2015-01-04  21:01    <DIR>          Raptr
2014-11-25  12:36    <DIR>          Realtek
2015-08-06  12:26    <DIR>          Reference Assemblies
2016-03-11  23:20    <DIR>          Safari
2014-11-25  13:06    <DIR>          SymSilent
2015-02-08  11:55    <DIR>          Temp
2015-07-10  17:30    <DIR>          Windows Defender
2013-07-16  17:08    <DIR>          Windows Live
2015-08-06  12:21    <DIR>          Windows Mail
2015-07-10  17:30    <DIR>          Windows Media Player
2016-03-10  17:36    <DIR>          Windows Multimedia Platform
2015-07-10  12:04    <DIR>          Windows NT
2015-07-10  17:30    <DIR>          Windows Photo Viewer
2016-03-10  17:36    <DIR>          Windows Portable Devices
2015-07-10  12:04    <DIR>          Windows Sidebar
2015-07-10  12:04    <DIR>          WindowsPowerShell
2015-03-19  09:27    <DIR>          WnP
               1 File(s)            174 bytes
              52 Dir(s)  419�776�380�928 bytes free
 
========= Koniec  CMD: =========
 
 
=========  dir /a "C:\Program Files" =========
 
 Volume in drive C is Windows
 Volume Serial Number is 1E0E-B9FB
 
 Directory of C:\Program Files
 
2016-02-26  17:37    <DIR>          .
2016-02-26  17:37    <DIR>          ..
2015-09-18  20:30    <DIR>          AMD
2015-12-18  17:42    <DIR>          ATI Technologies
2016-02-22  17:35    <DIR>          AVG Web TuneUp
2015-03-07  13:55    <DIR>          Bonjour
2015-09-21  16:02    <DIR>          CCleaner
2016-01-27  17:06    <DIR>          Common Files
2016-03-08  21:56    <DIR>          CPUID
2015-07-10  12:02               174 desktop.ini
2016-01-03  15:57    <DIR>          Enigma Software Group
2016-02-26  17:38    <DIR>          Factorio
2014-12-06  15:48    <DIR>          GIMP 2
2014-12-12  19:58    <DIR>          Google
2015-06-27  20:36    <DIR>          Hewlett-Packard
2016-03-10  17:36    <DIR>          Internet Explorer
2016-03-11  23:36    <DIR>          Java
2015-08-06  12:26    <DIR>          MSBuild
2016-01-22  18:50    <DIR>          Mz Ultimate Tools
2015-08-06  12:10    <DIR>          Realtek
2015-08-06  12:26    <DIR>          Reference Assemblies
2015-08-06  12:08    <DIR>          Synaptics
2015-07-10  13:21    <DIR>          Uninstall Information
2015-07-10  17:30    <DIR>          Windows Defender
2016-02-17  23:02    <DIR>          Windows Journal
2015-08-06  12:21    <DIR>          Windows Mail
2016-03-10  17:36    <DIR>          Windows Media Player
2016-03-10  17:36    <DIR>          Windows Multimedia Platform
2015-08-06  12:51    <DIR>          Windows NT
2015-07-10  17:30    <DIR>          Windows Photo Viewer
2016-03-10  17:36    <DIR>          Windows Portable Devices
2015-07-10  12:04    <DIR>          Windows Sidebar
2016-03-18  15:16    <DIR>          WindowsApps
2015-07-10  12:04    <DIR>          WindowsPowerShell
2016-01-03  16:36    <DIR>          WinRAR
               1 File(s)            174 bytes
              34 Dir(s)  419�776�380�928 bytes free
 
========= Koniec  CMD: =========
 
 
=========  dir /a "C:\ProgramData" =========
 
 Volume in drive C is Windows
 Volume Serial Number is 1E0E-B9FB
 
 Directory of C:\ProgramData
 
2016-03-11  23:20    <DIR>          .
2016-03-11  23:20    <DIR>          ..
2015-01-01  13:57    <DIR>          Activision
2015-02-20  20:13    <DIR>          Adobe
2015-12-18  17:42    <DIR>          AMD
2014-11-25  12:32    <DIR>          Apple
2016-03-11  23:20    <DIR>          Apple Computer
2015-07-10  13:21    <JUNCTION>     Application Data [C:\ProgramData]
2015-12-18  23:15    <DIR>          ATI
2016-01-27  16:35    <DIR>          AVG
2016-01-27  17:06    <DIR>          AVG Secure Search
2016-01-27  17:06    <DIR>          AVG Security Toolbar
2016-03-11  20:50    <DIR>          AVG Web TuneUp
2015-08-06  14:04    <DIR>          Common Files
2015-07-10  12:04    <DIR>          Comms
2015-06-27  20:54    <DIR>          CyberLink
2014-11-25  14:37    <JUNCTION>     Dane aplikacji [C:\ProgramData]
2015-07-10  13:21    <JUNCTION>     Desktop [C:\Users\Public\Desktop]
2015-07-10  13:21    <JUNCTION>     Documents [C:\Users\Public\Documents]
2014-11-25  14:37    <JUNCTION>     Dokumenty [C:\Users\Public\Documents]
2015-10-04  22:45    <DIR>          Electronic Arts
2014-11-25  12:56    <DIR>          install_clap
2015-07-08  22:30    <DIR>          Malwarebytes
2014-11-25  14:37    <JUNCTION>     Menu Start [C:\ProgramData\Microsoft\Windows\Start Menu]
2016-03-18  20:18    <DIR>          MFAData
2015-12-28  14:44    <DIR>          Microsoft
2015-08-06  13:00    <DIR>          Microsoft OneDrive
2013-07-16  17:07    <DIR>          Microsoft SkyDrive
2015-08-06  14:05               266 ntuser.pol
2015-04-15  13:59    <DIR>          Oracle
2016-03-13  15:44    <DIR>          Origin
2015-12-05  11:54    <DIR>          Package Cache
2015-08-06  12:21    <DIR>          PRICache
2014-11-25  14:37    <JUNCTION>     Pulpit [C:\Users\Public\Desktop]
2014-11-25  12:38    <DIR>          Qualcomm Atheros
2015-08-25  16:39    <DIR>          regid.1991-06.com.microsoft
2015-08-12  16:39    <DIR>          SoftwareDistribution
2015-07-10  13:21    <JUNCTION>     Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
2015-01-28  19:33    <DIR>          Sun
2014-11-25  12:43    <DIR>          Synaptics
2014-11-25  14:37    <JUNCTION>     Szablony [C:\ProgramData\Microsoft\Windows\Templates]
2015-10-11  12:55    <DIR>          TDM-GCC
2015-01-13  20:00    <DIR>          Temp
2015-07-10  13:21    <JUNCTION>     Templates [C:\ProgramData\Microsoft\Windows\Templates]
2015-08-26  09:38    <DIR>          TuneUp Software
2015-07-10  13:22    <DIR>          USOPrivate
2015-07-10  13:22    <DIR>          USOShared
2015-08-24  14:01    <DIR>          VsTelemetry
2015-08-26  09:45    <DIR>          {C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
               1 File(s)            266 bytes
              48 Dir(s)  419�776�376�832 bytes free
 
========= Koniec  CMD: =========
 
 
========= RemoveProxy: =========
 
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wartość pomyślnie usunięto
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wartość pomyślnie usunięto
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wartość pomyślnie usunięto
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wartość pomyślnie usunięto
HKU\S-1-5-21-1315851758-1348891091-2830217532-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wartość pomyślnie usunięto
HKU\S-1-5-21-1315851758-1348891091-2830217532-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wartość pomyślnie usunięto
 
 
========= Koniec  RemoveProxy: =========
 
C:\Windows\System32\Drivers\etc\hosts => pomyślnie przeniesiono
Hosts pomyślnie przywrócono.
EmptyTemp: => 687.9 MB danych tymczasowych Usunięto.
 
 
System wymagał restartu.
 

==== Koniec  Fixlog 21:31:25 ====

Rezultat skanowania skrótów użytkowników (x64) Wersja:05-03-2016 01

Uruchomiony przez hp (2016-03-18 21:40:22)
Uruchomiony z C:\Users\hp\Downloads
Tryb startu: Normal
 
==================== Skróty =============================
 
(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)
 
 
 
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AssaultCube\AssaultCube.lnk -> C:\Program Files (x86)\AssaultCube\assaultcube.bat ()
Shortcut: C:\Users\hp\Desktop\Gry\AssaultCube.lnk -> C:\Program Files (x86)\AssaultCube\assaultcube.bat ()
 
 
Shortcut: C:\Users\Administrator\Links\Desktop.lnk -> C:\Users\Administrator\Desktop ()
Shortcut: C:\Users\Administrator\Links\Downloads.lnk -> C:\Users\Administrator\Downloads ()
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo\Transfer plików Bluetooth.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\01 - File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\03 - Documents.lnk -> C:\Users\hp\Documents ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\04 - Downloads.lnk -> C:\Users\hp\Downloads ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\05 - Music.lnk -> C:\Users\hp\Music ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\06 - Pictures.lnk -> C:\Users\hp\Pictures ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\07 - Videos.lnk -> C:\Users\hp\Videos ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\10 - UserProfile.lnk -> C:\Users\hp ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk -> C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Devices Flow.lnk -> C:\Windows\DevicesFlow\DevicesFlow.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk -> C:\Program Files\GIMP 2\bin\gimp-2.8.exe (Spencer Kimball, Peter Mattis and the GIMP Development Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office15\FIRSTRUN.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiracastView.lnk -> C:\Windows\MiracastView\MiracastView.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PrintDialog.lnk -> C:\Windows\PrintDialog\PrintDialog.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk -> C:\Windows\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Edytor map.lnk -> C:\Program Files (x86)\WnP\Editor.exe (Funatics Software)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Instrukcja.lnk -> C:\Program Files (x86)\WnP\Instrukcja\instrukcja.html ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\TopWare Interactive.lnk -> C:\Program Files (x86)\WnP\TopWare Interactive.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Usuń grę.lnk -> C:\Program Files (x86)\WnP\UNWISE.EXE ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Wyprawa na Północ (tylko gra sieciowa).lnk -> C:\Program Files (x86)\WnP\GameMp.exe (Funatics Software GmbH)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Wyprawa na Północ.lnk -> C:\Program Files (x86)\WnP\Game.exe (Funatics Software GmbH)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Co nowego w ostatniej wersji.lnk -> C:\Program Files\WinRAR\CoNowego.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Podręcznik RARa dla konsoli.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Pomoc WinRARa.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4\Plik Przeczytaj.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Support\readme\Przeczytaj.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4\Pomoc techniczna.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Support\EA Help\Pomoc techniczna.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4\The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4\Umowa użytkownika The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Support\eula\pl_PL_eula.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection\HP Recovery Manager\HP Recovery Manager.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Recovery Manager\Rebecca.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection\HP Recovery Manager\HP Recovery Media Creation.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Recovery Manager\Rebecca.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools\CyberLink LabelPrint.lnk -> C:\Program Files (x86)\CyberLink\LabelPrint\LabelPrint.exe (CyberLink Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PLAY\Warlords Battlecry III\Deinstalacja programu Warlords Battlecry III.lnk -> C:\Program Files (x86)\PLAY\Warlords Battlecry III\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PLAY\Warlords Battlecry III\Podręcznik Gracza.lnk -> C:\Program Files (x86)\PLAY\Warlords Battlecry III\manual\WBC3_manual.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PLAY\Warlords Battlecry III\Warlords Battlecry III.lnk -> C:\Program Files (x86)\PLAY\Warlords Battlecry III\Battlecry III.exe (Infinite Interactive)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Narzędzie zgłaszania błędów Origin.lnk -> C:\Program Files (x86)\Origin\OriginER.exe (Electronic Arts)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin Error Reporter.lnk -> C:\Program Files (x86)\Origin\OriginER.exe (Electronic Arts)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin.lnk -> C:\Program Files (x86)\Origin\Origin.exe (Electronic Arts)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++\Notepad++.lnk -> C:\Program Files (x86)\Notepad++\notepad++.exe (Don HO [email protected])
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Deinstalacja programu Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware Notifications.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\chameleon.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk -> C:\Program Files\Java\jre1.8.0_66\bin\javacpl.exe (Oracle Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Factorio\Factorio.lnk -> C:\Program Files\Factorio\bin\x64\Factorio.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Factorio\Uninstall.lnk -> C:\Program Files\Factorio\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\HWMonitor\HWMonitor.lnk -> C:\Program Files\CPUID\HWMonitor\HWMonitor.exe (CPUID)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\HWMonitor\Uninstall HWMonitor.lnk -> C:\Program Files\CPUID\HWMonitor\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\CPU-Z\CPU-Z.lnk -> C:\Program Files\CPUID\CPU-Z\cpuz.exe (CPUID)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\CPU-Z\Edit CPU-Z Config File.lnk -> C:\Program Files\CPUID\CPU-Z\cpuz.ini ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\CPU-Z\Uninstall CPU-Z.lnk -> C:\Program Files\CPUID\CPU-Z\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6 v23\Counter-Strike 1.6 v23.lnk -> C:\Gry\Counter-Strike 1.6 v23\Counter-Strike 1.6.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG\AVG Protection.lnk -> C:\Program Files (x86)\AVG\Av\avgui.exe (AVG Technologies CZ, s.r.o.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\AutoIt Help File.lnk -> C:\Program Files (x86)\AutoIt3\AutoIt.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\AutoIt Window Info (x64).lnk -> C:\Program Files (x86)\AutoIt3\Au3Info_x64.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\AutoIt Window Info (x86).lnk -> C:\Program Files (x86)\AutoIt3\Au3Info.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Compile Script to .exe (x64).lnk -> C:\Program Files (x86)\AutoIt3\Aut2Exe\Aut2exe_x64.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Compile Script to .exe (x86).lnk -> C:\Program Files (x86)\AutoIt3\Aut2Exe\Aut2exe.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Examples.lnk -> C:\Program Files (x86)\AutoIt3\Examples ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Run Script (x64).lnk -> C:\Program Files (x86)\AutoIt3\AutoIt3_x64.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Run Script (x86).lnk -> C:\Program Files (x86)\AutoIt3\AutoIt3.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\SciTE Script Editor.lnk -> C:\Program Files (x86)\AutoIt3\SciTE\SciTE.exe (Neil Hodgson [email protected])
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Extras\AutoIt v3 Website.lnk -> C:\Program Files (x86)\AutoIt3\AutoIt v3 Website.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Extras\Browse Extras.lnk -> C:\Program Files (x86)\AutoIt3\Extras ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Extras\AutoItX\AutoItX Help File.lnk -> C:\Program Files (x86)\AutoIt3\AutoItX\AutoItX.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AssaultCube\README.lnk -> C:\Program Files (x86)\AssaultCube\README.html ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AssaultCube\Uninstall.lnk -> C:\Program Files (x86)\AssaultCube\Uninstall.exe (Rabid Viper Productions)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\AMD Catalyst Control Center.lnk -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Advanced Micro Devices Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Age of Wonders II Tron Czarnoksiężnika\Age of Wonders II Tron Czarnoksiężnika.lnk -> C:\Program Files (x86)\Age of Wonders II Tron Czarnoksiężnika\aow2.exe (Triumph Studios)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Age of Wonders II Tron Czarnoksiężnika\Edytor misji.lnk -> C:\Program Files (x86)\Age of Wonders II Tron Czarnoksiężnika\AoW2Ed.exe (Triumph Studios)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Age of Wonders II Tron Czarnoksiężnika\Konfiguracja gry.lnk -> C:\Program Files (x86)\Age of Wonders II Tron Czarnoksiężnika\aow2Setup.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk -> C:\Program Files\Windows Journal\Journal.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk -> C:\Users\hp\Documents ()
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk -> C:\Users\hp\Pictures ()
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\Videos\Pulpit — skrót (2).lnk -> C:\Users\hp\Desktop ()
Shortcut: C:\Users\hp\Videos\Pulpit — skrót.lnk -> C:\Users\hp\Desktop ()
Shortcut: C:\Users\hp\Links\Desktop.lnk -> C:\Users\hp\Desktop ()
Shortcut: C:\Users\hp\Links\Downloads.lnk -> C:\Users\hp\Downloads ()
Shortcut: C:\Users\hp\Desktop\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software)
Shortcut: C:\Users\hp\Desktop\Gry\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
Shortcut: C:\Users\hp\Desktop\Gry\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\Users\hp\Desktop\Gry\Counter-Strike 1.6 v23.lnk -> C:\Gry\Counter-Strike 1.6 v23\Counter-Strike 1.6.exe ()
Shortcut: C:\Users\hp\Desktop\Gry\Factorio.lnk -> C:\Program Files\Factorio\bin\x64\Factorio.exe ()
Shortcut: C:\Users\hp\Desktop\Gry\Safari.lnk -> C:\Windows\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe ()
Shortcut: C:\Users\hp\Desktop\Gry\The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\hp\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Co nowego w ostatniej wersji.lnk -> C:\Program Files\WinRAR\CoNowego.txt ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Podręcznik RARa dla konsoli.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Pomoc WinRARa.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CB Share Config.lnk -> C:\Program Files (x86)\CodeBlocks\cb_share_config.exe ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\Code Snippets.lnk -> C:\Program Files (x86)\CodeBlocks\codesnippets.exe ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\Uninstall CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\uninstall.exe (The Code::Blocks Team)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\SendTo\Transfer plików Bluetooth.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk -> C:\Windows\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\GameExplorer\{E1158B26-1A6F-436C-BC78-1933902CE15D}\PlayTasks\0\Zagraj.lnk -> C:\Program Files (x86)\PLAY\Warlords Battlecry III\Battlecry III.exe (Infinite Interactive)
Shortcut: C:\Users\Public\Desktop\The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
 
 
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sparta\Sparta.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://plarium.com/play/en/sparta/navy_pl?adCampaign=88078&clickID=0AyE0D0BtAtDtA0AzztA0E0A0Bzy0F0B&publisherID=107
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Sparta.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://plarium.com/play/en/sparta/navy_pl?adCampaign=88078&clickID=0AyE0D0BtAtDtA0AzztA0E0A0Bzy0F0B&publisherID=107
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WarThunder.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://mmotraffic.com/catalog/goplay/1000932/MTE3NjYvLy8xMDAwOTMy/?subid=3&click_id=1af3709e90d96257224c8bf441aa84545752646a
 
 
ShortcutWithArgument: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> -sta {C90FB8CA-3295-4462-A721-2935E83694BA}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk -> C:\Program Files\Java\jre1.8.0_66\bin\javacpl.exe (Oracle Corporation) -> -tab about
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk -> C:\Program Files\Java\jre1.8.0_66\bin\javacpl.exe (Oracle Corporation) -> -tab update
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen\AVG.lnk -> C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (AVG Technologies CZ, s.r.o.) -> /zen.open_ui
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Check For Updates.lnk -> C:\Program Files (x86)\AutoIt3\AutoIt3.exe (AutoIt Team) -> "C:\Program Files (x86)\AutoIt3\Extras\AutoUpdateIt\AutoUpdateIt.au3"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\Help.lnk -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.exe (Advanced Micro Devices Inc.) -> Start Help -help
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\hp\Desktop\Gry\AVG.lnk -> C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (AVG Technologies CZ, s.r.o.) -> /zen.open_ui
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Windows\SendTo\Odbiorca faksu.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> /e,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl .lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.smenu.URL
ShortcutWithArgument: C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.tbar.URL
ShortcutWithArgument: C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking .lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.smenu.URL
ShortcutWithArgument: C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.tbar.URL
 
 
InternetURL: C:\Users\Administrator\Favorites\Bing.url -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\Administrator\Favorites\Links\Amazon.co.uk – Online Shopping.url -> hxxp://redirect.hp.com/svs/rdr?locale=pl_pl&c=133&bd=presario&tp=iefavbar&s=amazon&pf=cnnb&TYPE=4
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Get Help.url -> hxxp://java.com/help
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visit Java.com.url -> hxxp://java.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> hxxp://www.piriform.com/ccleaner
InternetURL: C:\Users\Default\Favorites\Links\Amazon.co.uk – Online Shopping.url -> hxxp://redirect.hp.com/svs/rdr?locale=pl_pl&c=133&bd=presario&tp=iefavbar&s=amazon&pf=cnnb&TYPE=4
InternetURL: C:\Users\hp\Favorites\Bing.url -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\hp\Favorites\Links\Amazon.co.uk – Online Shopping.url -> hxxp://redirect.hp.com/svs/rdr?locale=pl_pl&c=133&bd=presario&tp=iefavbar&s=amazon&pf=cnnb&TYPE=4
InternetURL: C:\Users\hp\Desktop\Gry\Mods\IGG-GAMES.COM.url -> hxxp://www.igg-games.com/
InternetURL: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter Strike 1.6 BF Edition\Strona domowa.url -> hxxp://www.pobierzcounterstrike.pl
InternetURL: C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.smenu.URL -> hxxp://redirect.pmcdn.info/pfintermediate.html?type=quick&topic=iconMetroclick&partner=ironpf2&destination=allegro.pl&uid=62aa6712463c7d6c30ad6ed25c1230bd&country=PL&storeKey=allegro.pl
InternetURL: C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.tbar.URL -> hxxp://redirect.pmcdn.info/pfintermediate.html?type=quick&topic=iconTaskbarclick&partner=ironpf2&destination=allegro.pl&uid=62aa6712463c7d6c30ad6ed25c1230bd&country=PL&storeKey=allegro.pl
InternetURL: C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.smenu.URL -> hxxp://redirect.pmcdn.info/pfintermediate.html?type=quick&topic=iconMetroclick&partner=ironpf2&destination=Booking&uid=62aa6712463c7d6c30ad6ed25c1230bd&country=PL&storeKey=Booking
InternetURL: C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.tbar.URL -> hxxp://redirect.pmcdn.info/pfintermediate.html?type=quick&topic=iconTaskbarclick&partner=ironpf2&destination=Booking&uid=62aa6712463c7d6c30ad6ed25c1230bd&country=PL&storeKey=Booking
 
==================== Koniec  Shortcut.txt =============================
 

Rezultat skanowania skrótów użytkowników (x64) Wersja:05-03-2016 01

Uruchomiony przez hp (2016-03-18 21:40:22)
Uruchomiony z C:\Users\hp\Downloads
Tryb startu: Normal
 
==================== Skróty =============================
 
(Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)
 
 
 
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AssaultCube\AssaultCube.lnk -> C:\Program Files (x86)\AssaultCube\assaultcube.bat ()
Shortcut: C:\Users\hp\Desktop\Gry\AssaultCube.lnk -> C:\Program Files (x86)\AssaultCube\assaultcube.bat ()
 
 
Shortcut: C:\Users\Administrator\Links\Desktop.lnk -> C:\Users\Administrator\Desktop ()
Shortcut: C:\Users\Administrator\Links\Downloads.lnk -> C:\Users\Administrator\Downloads ()
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo\Transfer plików Bluetooth.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\01 - File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\03 - Documents.lnk -> C:\Users\hp\Documents ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\04 - Downloads.lnk -> C:\Users\hp\Downloads ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\05 - Music.lnk -> C:\Users\hp\Music ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\06 - Pictures.lnk -> C:\Users\hp\Pictures ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\07 - Videos.lnk -> C:\Users\hp\Videos ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\10 - UserProfile.lnk -> C:\Users\hp ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk -> C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Devices Flow.lnk -> C:\Windows\DevicesFlow\DevicesFlow.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk -> C:\Program Files\GIMP 2\bin\gimp-2.8.exe (Spencer Kimball, Peter Mattis and the GIMP Development Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office15\FIRSTRUN.EXE (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiracastView.lnk -> C:\Windows\MiracastView\MiracastView.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PrintDialog.lnk -> C:\Windows\PrintDialog\PrintDialog.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk -> C:\Windows\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Edytor map.lnk -> C:\Program Files (x86)\WnP\Editor.exe (Funatics Software)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Instrukcja.lnk -> C:\Program Files (x86)\WnP\Instrukcja\instrukcja.html ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\TopWare Interactive.lnk -> C:\Program Files (x86)\WnP\TopWare Interactive.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Usuń grę.lnk -> C:\Program Files (x86)\WnP\UNWISE.EXE ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Wyprawa na Północ (tylko gra sieciowa).lnk -> C:\Program Files (x86)\WnP\GameMp.exe (Funatics Software GmbH)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wyprawa na Północ\Wyprawa na Północ.lnk -> C:\Program Files (x86)\WnP\Game.exe (Funatics Software GmbH)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Co nowego w ostatniej wersji.lnk -> C:\Program Files\WinRAR\CoNowego.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Podręcznik RARa dla konsoli.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Pomoc WinRARa.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4\Plik Przeczytaj.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Support\readme\Przeczytaj.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4\Pomoc techniczna.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Support\EA Help\Pomoc techniczna.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4\The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sims 4\Umowa użytkownika The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Support\eula\pl_PL_eula.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection\HP Recovery Manager\HP Recovery Manager.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Recovery Manager\Rebecca.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection\HP Recovery Manager\HP Recovery Media Creation.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Recovery Manager\Rebecca.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools\CyberLink LabelPrint.lnk -> C:\Program Files (x86)\CyberLink\LabelPrint\LabelPrint.exe (CyberLink Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PLAY\Warlords Battlecry III\Deinstalacja programu Warlords Battlecry III.lnk -> C:\Program Files (x86)\PLAY\Warlords Battlecry III\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PLAY\Warlords Battlecry III\Podręcznik Gracza.lnk -> C:\Program Files (x86)\PLAY\Warlords Battlecry III\manual\WBC3_manual.pdf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PLAY\Warlords Battlecry III\Warlords Battlecry III.lnk -> C:\Program Files (x86)\PLAY\Warlords Battlecry III\Battlecry III.exe (Infinite Interactive)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Narzędzie zgłaszania błędów Origin.lnk -> C:\Program Files (x86)\Origin\OriginER.exe (Electronic Arts)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin Error Reporter.lnk -> C:\Program Files (x86)\Origin\OriginER.exe (Electronic Arts)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin\Origin.lnk -> C:\Program Files (x86)\Origin\Origin.exe (Electronic Arts)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++\Notepad++.lnk -> C:\Program Files (x86)\Notepad++\notepad++.exe (Don HO [email protected])
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Deinstalacja programu Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware Notifications.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\chameleon.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk -> C:\Program Files\Java\jre1.8.0_66\bin\javacpl.exe (Oracle Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Factorio\Factorio.lnk -> C:\Program Files\Factorio\bin\x64\Factorio.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Factorio\Uninstall.lnk -> C:\Program Files\Factorio\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\HWMonitor\HWMonitor.lnk -> C:\Program Files\CPUID\HWMonitor\HWMonitor.exe (CPUID)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\HWMonitor\Uninstall HWMonitor.lnk -> C:\Program Files\CPUID\HWMonitor\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\CPU-Z\CPU-Z.lnk -> C:\Program Files\CPUID\CPU-Z\cpuz.exe (CPUID)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\CPU-Z\Edit CPU-Z Config File.lnk -> C:\Program Files\CPUID\CPU-Z\cpuz.ini ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID\CPU-Z\Uninstall CPU-Z.lnk -> C:\Program Files\CPUID\CPU-Z\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6 v23\Counter-Strike 1.6 v23.lnk -> C:\Gry\Counter-Strike 1.6 v23\Counter-Strike 1.6.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG\AVG Protection.lnk -> C:\Program Files (x86)\AVG\Av\avgui.exe (AVG Technologies CZ, s.r.o.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\AutoIt Help File.lnk -> C:\Program Files (x86)\AutoIt3\AutoIt.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\AutoIt Window Info (x64).lnk -> C:\Program Files (x86)\AutoIt3\Au3Info_x64.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\AutoIt Window Info (x86).lnk -> C:\Program Files (x86)\AutoIt3\Au3Info.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Compile Script to .exe (x64).lnk -> C:\Program Files (x86)\AutoIt3\Aut2Exe\Aut2exe_x64.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Compile Script to .exe (x86).lnk -> C:\Program Files (x86)\AutoIt3\Aut2Exe\Aut2exe.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Examples.lnk -> C:\Program Files (x86)\AutoIt3\Examples ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Run Script (x64).lnk -> C:\Program Files (x86)\AutoIt3\AutoIt3_x64.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Run Script (x86).lnk -> C:\Program Files (x86)\AutoIt3\AutoIt3.exe (AutoIt Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\SciTE Script Editor.lnk -> C:\Program Files (x86)\AutoIt3\SciTE\SciTE.exe (Neil Hodgson [email protected])
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Extras\AutoIt v3 Website.lnk -> C:\Program Files (x86)\AutoIt3\AutoIt v3 Website.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Extras\Browse Extras.lnk -> C:\Program Files (x86)\AutoIt3\Extras ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Extras\AutoItX\AutoItX Help File.lnk -> C:\Program Files (x86)\AutoIt3\AutoItX\AutoItX.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AssaultCube\README.lnk -> C:\Program Files (x86)\AssaultCube\README.html ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AssaultCube\Uninstall.lnk -> C:\Program Files (x86)\AssaultCube\Uninstall.exe (Rabid Viper Productions)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\AMD Catalyst Control Center.lnk -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Advanced Micro Devices Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Age of Wonders II Tron Czarnoksiężnika\Age of Wonders II Tron Czarnoksiężnika.lnk -> C:\Program Files (x86)\Age of Wonders II Tron Czarnoksiężnika\aow2.exe (Triumph Studios)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Age of Wonders II Tron Czarnoksiężnika\Edytor misji.lnk -> C:\Program Files (x86)\Age of Wonders II Tron Czarnoksiężnika\AoW2Ed.exe (Triumph Studios)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Age of Wonders II Tron Czarnoksiężnika\Konfiguracja gry.lnk -> C:\Program Files (x86)\Age of Wonders II Tron Czarnoksiężnika\aow2Setup.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk -> C:\Program Files\Windows Journal\Journal.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk -> C:\Users\hp\Documents ()
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk -> C:\Users\hp\Pictures ()
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\Videos\Pulpit — skrót (2).lnk -> C:\Users\hp\Desktop ()
Shortcut: C:\Users\hp\Videos\Pulpit — skrót.lnk -> C:\Users\hp\Desktop ()
Shortcut: C:\Users\hp\Links\Desktop.lnk -> C:\Users\hp\Desktop ()
Shortcut: C:\Users\hp\Links\Downloads.lnk -> C:\Users\hp\Downloads ()
Shortcut: C:\Users\hp\Desktop\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software)
Shortcut: C:\Users\hp\Desktop\Gry\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
Shortcut: C:\Users\hp\Desktop\Gry\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\Users\hp\Desktop\Gry\Counter-Strike 1.6 v23.lnk -> C:\Gry\Counter-Strike 1.6 v23\Counter-Strike 1.6.exe ()
Shortcut: C:\Users\hp\Desktop\Gry\Factorio.lnk -> C:\Program Files\Factorio\bin\x64\Factorio.exe ()
Shortcut: C:\Users\hp\Desktop\Gry\Safari.lnk -> C:\Windows\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe ()
Shortcut: C:\Users\hp\Desktop\Gry\The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\hp\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Co nowego w ostatniej wersji.lnk -> C:\Program Files\WinRAR\CoNowego.txt ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Podręcznik RARa dla konsoli.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Pomoc WinRARa.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CB Share Config.lnk -> C:\Program Files (x86)\CodeBlocks\cb_share_config.exe ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\Code Snippets.lnk -> C:\Program Files (x86)\CodeBlocks\codesnippets.exe ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks\Uninstall CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\uninstall.exe (The Code::Blocks Team)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Windows\SendTo\Transfer plików Bluetooth.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Apple Safari.lnk -> C:\Windows\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe ()
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\CodeBlocks.lnk -> C:\Program Files (x86)\CodeBlocks\codeblocks.exe (Code::Blocks Team)
Shortcut: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\hp\AppData\Local\Microsoft\Windows\GameExplorer\{E1158B26-1A6F-436C-BC78-1933902CE15D}\PlayTasks\0\Zagraj.lnk -> C:\Program Files (x86)\PLAY\Warlords Battlecry III\Battlecry III.exe (Infinite Interactive)
Shortcut: C:\Users\Public\Desktop\The Sims 4.lnk -> C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
 
 
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sparta\Sparta.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://plarium.com/play/en/sparta/navy_pl?adCampaign=88078&clickID=0AyE0D0BtAtDtA0AzztA0E0A0Bzy0F0B&publisherID=107
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Sparta.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://plarium.com/play/en/sparta/navy_pl?adCampaign=88078&clickID=0AyE0D0BtAtDtA0AzztA0E0A0Bzy0F0B&publisherID=107
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WarThunder.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://mmotraffic.com/catalog/goplay/1000932/MTE3NjYvLy8xMDAwOTMy/?subid=3&click_id=1af3709e90d96257224c8bf441aa84545752646a
 
 
ShortcutWithArgument: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> -sta {C90FB8CA-3295-4462-A721-2935E83694BA}
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk -> C:\Program Files\Java\jre1.8.0_66\bin\javacpl.exe (Oracle Corporation) -> -tab about
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk -> C:\Program Files\Java\jre1.8.0_66\bin\javacpl.exe (Oracle Corporation) -> -tab update
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen\AVG.lnk -> C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (AVG Technologies CZ, s.r.o.) -> /zen.open_ui
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Check For Updates.lnk -> C:\Program Files (x86)\AutoIt3\AutoIt3.exe (AutoIt Team) -> "C:\Program Files (x86)\AutoIt3\Extras\AutoUpdateIt\AutoUpdateIt.au3"
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\Help.lnk -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.exe (Advanced Micro Devices Inc.) -> Start Help -help
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\hp\Desktop\Gry\AVG.lnk -> C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (AVG Technologies CZ, s.r.o.) -> /zen.open_ui
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\hp\AppData\Roaming\Microsoft\Windows\SendTo\Odbiorca faksu.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> /e,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
ShortcutWithArgument: C:\Users\hp\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl .lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.smenu.URL
ShortcutWithArgument: C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.tbar.URL
ShortcutWithArgument: C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking .lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.smenu.URL
ShortcutWithArgument: C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.tbar.URL
 
 
InternetURL: C:\Users\Administrator\Favorites\Bing.url -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\Administrator\Favorites\Links\Amazon.co.uk – Online Shopping.url -> hxxp://redirect.hp.com/svs/rdr?locale=pl_pl&c=133&bd=presario&tp=iefavbar&s=amazon&pf=cnnb&TYPE=4
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Get Help.url -> hxxp://java.com/help
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visit Java.com.url -> hxxp://java.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> hxxp://www.piriform.com/ccleaner
InternetURL: C:\Users\Default\Favorites\Links\Amazon.co.uk – Online Shopping.url -> hxxp://redirect.hp.com/svs/rdr?locale=pl_pl&c=133&bd=presario&tp=iefavbar&s=amazon&pf=cnnb&TYPE=4
InternetURL: C:\Users\hp\Favorites\Bing.url -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
InternetURL: C:\Users\hp\Favorites\Links\Amazon.co.uk – Online Shopping.url -> hxxp://redirect.hp.com/svs/rdr?locale=pl_pl&c=133&bd=presario&tp=iefavbar&s=amazon&pf=cnnb&TYPE=4
InternetURL: C:\Users\hp\Desktop\Gry\Mods\IGG-GAMES.COM.url -> hxxp://www.igg-games.com/
InternetURL: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter Strike 1.6 BF Edition\Strona domowa.url -> hxxp://www.pobierzcounterstrike.pl
InternetURL: C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.smenu.URL -> hxxp://redirect.pmcdn.info/pfintermediate.html?type=quick&topic=iconMetroclick&partner=ironpf2&destination=allegro.pl&uid=62aa6712463c7d6c30ad6ed25c1230bd&country=PL&storeKey=allegro.pl
InternetURL: C:\Users\hp\AppData\Local\HangoversPhenomenal\allegro.pl.tbar.URL -> hxxp://redirect.pmcdn.info/pfintermediate.html?type=quick&topic=iconTaskbarclick&partner=ironpf2&destination=allegro.pl&uid=62aa6712463c7d6c30ad6ed25c1230bd&country=PL&storeKey=allegro.pl
InternetURL: C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.smenu.URL -> hxxp://redirect.pmcdn.info/pfintermediate.html?type=quick&topic=iconMetroclick&partner=ironpf2&destination=Booking&uid=62aa6712463c7d6c30ad6ed25c1230bd&country=PL&storeKey=Booking
InternetURL: C:\Users\hp\AppData\Local\HangoversPhenomenal\Booking.tbar.URL -> hxxp://redirect.pmcdn.info/pfintermediate.html?type=quick&topic=iconTaskbarclick&partner=ironpf2&destination=Booking&uid=62aa6712463c7d6c30ad6ed25c1230bd&country=PL&storeKey=Booking
 
==================== Koniec  Shortcut.txt =============================
 

 

 

 

 
 
LastRegBack: 2016-03-12 20:48
 
==================== Koniec  FRST.txt ============================

pyhvh7E.png


 


Opublikowano

To, że jest napisane tylko o jednej zakładce nie znaczy, że system nie jest wolny od błędnych wpisów. Zamiast bulwersować się wykonaj logi FRST (powyższy temat tłumaczy jak je wykonać) 

Opublikowano

Przepraszam, że tak późno, ale masz już tutaj poprawny skan frst, tamten najwyraźniej źle się zrobił:

 

 

Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja:05-03-2016 01
Uruchomiony przez hp (administrator)  HPHP (21-03-2016 20:48:58)
Uruchomiony z C:\Users\hp\Downloads
Załadowane profile: hp & Administrator (Dostępne profile: hp & Administrator)
Platform: Windows 10 Home (X64) Język: Polski (Polska)
Internet Explorer Wersja 11 (Domyślna przeglądarka: Opera)
Tryb startu: Normal
 
==================== Procesy (filtrowane) =================
 
(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
 
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
() C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\ToolbarUpdater.exe
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\loggingserver.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(Microsoft Corporation) C:\Windows\System32\NetworkUXBroker.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\36.0.2130.32\opera.exe
 
 
==================== Rejestr (filtrowane) ===========================
 
(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
 
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8492800 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [synTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136 2015-07-17] (Synaptics Incorporated)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe [179624 2016-02-18] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [startCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-21] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [3873704 2016-02-01] (AVG Technologies CZ, s.r.o.)
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\Run: [Akamai NetSession Interface] => C:\Users\hp\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-1315851758-1348891091-2830217532-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64\FileSyncShell64.dll [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64\FileSyncShell64.dll [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\amd64\FileSyncShell64.dll [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\FileSyncShell.dll [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\FileSyncShell.dll [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\FileSyncShell.dll [2016-01-22] (Microsoft Corporation)
 
==================== Internet (filtrowane) ====================
 
(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
 
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{17ff104e-2a2c-426e-b929-8c99f61154bd}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{f6b763cb-8424-4473-9707-535983541723}: [DhcpNameServer] 192.168.0.1
 
Internet Explorer:
==================
HKU\S-1-5-21-1315851758-1348891091-2830217532-500\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130982262863395201&GUID=AA20B454-0B88-4845-82B9-55C9C7FC6663
HKU\S-1-5-21-1315851758-1348891091-2830217532-500\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPALL13/175
HKU\S-1-5-21-1315851758-1348891091-2830217532-500\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://g.uk.msn.com/HPALL13/175
BHO: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_66\bin\ssv.dll [2016-01-03] (Oracle Corporation)
BHO: Brak nazwy -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Brak pliku
BHO: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_66\bin\jp2ssv.dll [2016-01-03] (Oracle Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
 
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll [2016-03-10] ()
FF Plugin: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2016-01-03] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2016-01-03] (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll [2016-03-10] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1216156.dll [2015-01-09] (Adobe Systems, Inc.)
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.2.6\\npsitesafety.dll [brak pliku]
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin HKU\S-1-5-21-1315851758-1348891091-2830217532-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\hp\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-11] (Unity Technologies ApS)
StartMenuInternet: FIREFOX.EXE - firefox.exe
 
Opera: 
=======
OPR StartupUrls: ],"urls_signature":""},"speeddial":{"bookmarks_folder_guid":"F00FE68E-AAAC-4F4E-BD04-02E8E8F58A2C","disable_animations":true,"imported_to_bookmarks":true},"spellcheck":{"dictionaries":["pl"
 
==================== Usługi (filtrowane) ========================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-21] (Advanced Micro Devices, Inc.) [brak podpisu cyfrowego]
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [604144 2016-02-01] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagent.exe [3881184 2016-02-01] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1045928 2016-02-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [561104 2016-02-01] (AVG Technologies CZ, s.r.o.)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2016-02-11] (Electronic Arts)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [303360 2015-06-24] (Realtek Semiconductor)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246472 2015-07-17] (Synaptics Incorporated)
R2 vToolbarUpdater40.2.6; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.6\ToolbarUpdater.exe [1949768 2016-02-22] (AVG Secure Search)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
R2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [1216584 2016-03-11] ()
 
===================== Sterowniki (filtrowane) ==========================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
U5 ATHDFU; C:\Windows\System32\Drivers\ATHDFU.sys [55448 2013-05-16] (Windows ® Win 7 DDK provider)
R3 athr; C:\Windows\System32\drivers\athw10x.sys [4318760 2015-09-05] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Advanced Micro Devices)
S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [21632 2016-01-07] (AVG Technologies CZ, s.r.o.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [184240 2015-11-06] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [315312 2016-01-05] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [272304 2016-01-08] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [284080 2015-10-21] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [398256 2015-08-14] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [260528 2016-01-22] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [42416 2015-12-04] (AVG Technologies CZ, s.r.o.)
R0 Avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [23472 2016-01-08] (AVG Technologies CZ, s.r.o.)
R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [315840 2015-12-16] (AVG Technologies CZ, s.r.o.)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-01-03] ()
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [310528 2015-06-05] (Realtek Semiconductor Corp.)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek                                            )
S3 SBHIPS; C:\Windows\System32\drivers\sbhips.sys [63696 2015-05-01] (ThreatTrack Security)
R1 sbwfw; C:\Windows\system32\DRIVERS\sbwfw.sys [345392 2015-05-01] (ThreatTrack Security)
S3 sbwtis; C:\Windows\system32\DRIVERS\sbwtis.sys [95608 2015-05-01] (ThreatTrack Security)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [29424 2013-05-08] (Synaptics Incorporated)
S3 SmbDrvI; C:\Windows\System32\drivers\Smb_driver_Intel.sys [33008 2013-05-08] (Synaptics Incorporated)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
S3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [30544 2016-02-22] (HP)
R3 WirelessButtonDriver64; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [30544 2016-02-22] (HP)
 
==================== NetSvcs (filtrowane) ===================
 
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
 
 
==================== Jeden miesiąc - utworzone pliki i foldery ========
 
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
 
2016-03-21 20:24 - 2016-03-21 20:24 - 00016148 _____ C:\WINDOWS\system32\HPHP_hp_HistoryPrediction.bin
2016-03-18 21:40 - 2016-03-21 20:48 - 00014196 _____ C:\Users\hp\Downloads\FRST.txt
2016-03-18 21:40 - 2016-03-18 21:40 - 00045839 _____ C:\Users\hp\Downloads\Shortcut.txt
2016-03-18 21:38 - 2016-03-18 21:43 - 00039333 _____ C:\Users\hp\Downloads\Addition.txt
2016-03-18 21:36 - 2016-03-18 21:36 - 00000000 ____D C:\Users\hp\Downloads\stare logi
2016-03-18 21:27 - 2016-03-18 21:31 - 00027593 _____ C:\Users\hp\Downloads\Fixlog.txt
2016-03-18 14:52 - 2016-03-18 14:53 - 02374144 _____ (Farbar) C:\Users\hp\Downloads\FRST64.exe
2016-03-11 23:35 - 2016-03-11 23:35 - 00003308 _____ C:\WINDOWS\System32\Tasks\{F50898BC-DDCC-4A00-BC52-3416A09F3E66}
2016-03-11 23:32 - 2016-03-11 23:32 - 00064572 ____H C:\WINDOWS\SysWOW64\mlfcache.dat
2016-03-11 23:21 - 2016-03-11 23:21 - 00000000 ____D C:\Users\hp\AppData\Roaming\Apple Computer
2016-03-11 23:21 - 2016-03-11 23:21 - 00000000 ____D C:\Users\hp\AppData\Local\Apple Computer
2016-03-11 23:20 - 2016-03-11 23:20 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk
2016-03-11 23:20 - 2016-03-11 23:20 - 00000000 ____D C:\ProgramData\Apple Computer
2016-03-11 23:20 - 2016-03-11 23:20 - 00000000 ____D C:\Program Files (x86)\Safari
2016-03-11 23:18 - 2016-03-11 23:18 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-03-11 23:18 - 2016-03-11 23:18 - 00000000 ____D C:\WINDOWS\System32\Tasks\Apple
2016-03-11 23:18 - 2016-03-11 23:18 - 00000000 ____D C:\Users\hp\AppData\Local\Apple
2016-03-11 23:18 - 2016-03-11 23:18 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-03-11 23:13 - 2016-03-12 11:17 - 00000000 ____D C:\Users\hp\AppData\Local\HangoversPhenomenal
2016-03-11 23:06 - 2016-03-11 23:06 - 00000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sparta
2016-03-11 23:06 - 2016-03-11 23:06 - 00000000 ____D C:\Users\hp\AppData\Local\Sparta
2016-03-09 13:29 - 2016-02-23 15:53 - 01314496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-03-09 13:29 - 2016-02-23 15:51 - 00633184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-03-09 13:29 - 2016-02-23 15:41 - 00299600 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMASF.DLL
2016-03-09 13:29 - 2016-02-23 15:38 - 00272752 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-03-09 13:29 - 2016-02-23 15:11 - 00658784 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-09 13:29 - 2016-02-23 15:08 - 03622272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-03-09 13:29 - 2016-02-23 15:07 - 22322624 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-03-09 13:29 - 2016-02-23 14:23 - 00952968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-03-09 13:29 - 2016-02-23 14:11 - 00249976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMASF.DLL
2016-03-09 13:29 - 2016-02-23 13:39 - 02879024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-03-09 13:29 - 2016-02-23 13:38 - 20858360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-03-09 13:29 - 2016-02-23 13:16 - 02237952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-03-09 13:29 - 2016-02-23 12:59 - 00319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2016-03-09 13:29 - 2016-02-23 12:55 - 24592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-03-09 13:29 - 2016-02-23 12:45 - 12504576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-03-09 13:29 - 2016-02-23 12:45 - 06788608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 13:29 - 2016-02-23 12:38 - 02663424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-09 13:29 - 2016-02-23 12:14 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-03-09 13:29 - 2016-02-23 12:04 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 13:29 - 2016-02-23 12:03 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-03-09 13:29 - 2016-02-23 12:02 - 03587584 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-03-09 13:29 - 2016-02-23 11:55 - 19326464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-03-09 13:29 - 2016-02-23 11:55 - 14241792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-09 13:29 - 2016-02-23 11:51 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-03-09 13:29 - 2016-02-23 11:51 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-03-09 13:29 - 2016-02-23 11:48 - 21859840 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-03-09 13:29 - 2016-02-23 11:48 - 05157376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-03-09 13:29 - 2016-02-23 11:46 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 13:29 - 2016-02-23 11:45 - 01844736 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 13:29 - 2016-02-23 11:45 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-03-09 13:29 - 2016-02-23 11:44 - 01821696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-03-09 13:29 - 2016-02-23 11:38 - 07524864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-03-09 13:29 - 2016-02-23 11:17 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-03-09 13:29 - 2016-02-23 11:11 - 12589056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-03-09 13:29 - 2016-02-23 11:03 - 01495040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-03-09 13:29 - 2016-02-23 11:00 - 11263488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-03-09 13:29 - 2016-02-23 10:58 - 18800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-03-09 13:28 - 2016-02-23 15:52 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-03-09 13:28 - 2016-02-23 15:51 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-03-09 13:28 - 2016-02-23 15:50 - 00630160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-03-09 13:28 - 2016-02-23 15:48 - 08022368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 13:28 - 2016-02-23 15:48 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-03-09 13:28 - 2016-02-23 15:48 - 01123952 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-03-09 13:28 - 2016-02-23 15:41 - 01150816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-03-09 13:28 - 2016-02-23 15:41 - 00078040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-03-09 13:28 - 2016-02-23 15:40 - 00110584 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-03-09 13:28 - 2016-02-23 15:36 - 00080128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-03-09 13:28 - 2016-02-23 15:11 - 00781984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-03-09 13:28 - 2016-02-23 15:11 - 00103776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-03-09 13:28 - 2016-02-23 14:39 - 00607416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 13:28 - 2016-02-23 14:30 - 01643872 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-03-09 13:28 - 2016-02-23 14:25 - 01085632 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-03-09 13:28 - 2016-02-23 14:21 - 00529456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-03-09 13:28 - 2016-02-23 14:21 - 00141152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-03-09 13:28 - 2016-02-23 14:11 - 00073360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll
2016-03-09 13:28 - 2016-02-23 14:11 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll
2016-03-09 13:28 - 2016-02-23 14:09 - 00229352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-03-09 13:28 - 2016-02-23 14:06 - 00069232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll
2016-03-09 13:28 - 2016-02-23 13:58 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-03-09 13:28 - 2016-02-23 13:50 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-03-09 13:28 - 2016-02-23 13:50 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-03-09 13:28 - 2016-02-23 13:42 - 00658536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2016-03-09 13:28 - 2016-02-23 13:42 - 00467296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-03-09 13:28 - 2016-02-23 13:42 - 00078176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-03-09 13:28 - 2016-02-23 13:35 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-03-09 13:28 - 2016-02-23 13:20 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-03-09 13:28 - 2016-02-23 13:17 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-03-09 13:28 - 2016-02-23 13:15 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-03-09 13:28 - 2016-02-23 13:15 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-03-09 13:28 - 2016-02-23 12:59 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2016-03-09 13:28 - 2016-02-23 12:57 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-09 13:28 - 2016-02-23 12:42 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-03-09 13:28 - 2016-02-23 12:37 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetCfgNotifyObjectHost.exe
2016-03-09 13:28 - 2016-02-23 12:36 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-03-09 13:28 - 2016-02-23 12:25 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-03-09 13:28 - 2016-02-23 12:18 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2016-03-09 13:28 - 2016-02-23 12:17 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-03-09 13:28 - 2016-02-23 12:17 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-03-09 13:28 - 2016-02-23 12:08 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 13:28 - 2016-02-23 11:45 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-03-09 13:28 - 2016-02-23 11:29 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\browcli.dll
2016-03-09 13:28 - 2016-02-23 11:00 - 05457408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-03-09 13:27 - 2016-02-23 12:42 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 13:27 - 2016-02-23 12:03 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-03-09 13:27 - 2016-02-23 11:45 - 00574464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2016-03-09 13:27 - 2016-02-23 11:17 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-03-08 22:45 - 2016-03-08 22:46 - 00000000 ____D C:\WINDOWS\SysWOW64\directx
2016-03-08 22:44 - 2016-03-12 11:40 - 00000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2016-03-01 12:05 - 2016-03-01 12:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6 v23
2016-02-26 17:38 - 2016-02-26 17:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Factorio
2016-02-26 17:37 - 2016-03-01 15:23 - 00000000 ____D C:\Users\hp\AppData\Roaming\Factorio
2016-02-26 17:37 - 2016-02-26 17:38 - 00000000 ____D C:\Program Files\Factorio
2016-02-25 17:00 - 2016-02-25 17:00 - 00000000 ____D C:\Users\hp\AppData\LocalLow\Ludeon Studios
2016-02-22 17:48 - 2016-02-22 17:48 - 00030544 _____ (HP) C:\WINDOWS\system32\Drivers\WirelessButtonDriver64.sys
 
==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========
 
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
 
2016-03-21 20:48 - 2015-06-27 17:33 - 00000000 ____D C:\FRST
2016-03-21 20:02 - 2014-12-02 15:17 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-03-21 18:28 - 2015-12-05 12:32 - 00000000 ____D C:\Users\hp\Desktop\Gry
2016-03-21 17:20 - 2014-12-10 17:18 - 00003210 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForhp
2016-03-21 17:20 - 2014-12-10 17:18 - 00000330 _____ C:\WINDOWS\Tasks\HPCeeScheduleForhp.job
2016-03-21 15:31 - 2016-01-27 16:21 - 00000000 ____D C:\ProgramData\MFAData
2016-03-21 15:20 - 2015-02-15 11:45 - 00004052 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{8B40FE16-44E5-4D62-B84B-D3806AFCC001}
2016-03-21 15:15 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-03-21 14:40 - 2015-07-10 10:05 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-03-21 09:17 - 2015-10-30 20:56 - 00000000 ___HD C:\$WINDOWS.~BT
2016-03-19 17:30 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-03-19 13:06 - 2016-01-05 13:08 - 00000000 ____D C:\Program Files (x86)\Opera
2016-03-19 13:01 - 2015-09-27 09:27 - 00000000 ____D C:\ProgramData\Origin
2016-03-18 21:56 - 2015-11-30 15:44 - 00000000 ____D C:\WINDOWS\Panther
2016-03-18 21:32 - 2015-08-06 14:05 - 00000008 __RSH C:\ProgramData\ntuser.pol
2016-03-18 21:30 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2016-03-18 21:30 - 2012-07-26 09:12 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2016-03-18 15:16 - 2015-07-10 12:04 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-16 18:37 - 2016-01-05 13:14 - 00003990 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1451996041
2016-03-16 18:37 - 2016-01-05 13:14 - 00001127 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2016-03-16 18:37 - 2015-07-10 10:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-03-16 18:30 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-03-16 18:29 - 2014-12-04 17:17 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-03-16 18:22 - 2014-12-04 17:17 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-03-16 18:16 - 2015-07-10 12:02 - 00000000 ____D C:\WINDOWS\INF
2016-03-16 17:33 - 2015-08-06 12:17 - 00000000 ____D C:\Users\hp
2016-03-12 11:40 - 2016-01-25 21:59 - 00000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMX Mod X
2016-03-12 11:40 - 2016-01-25 16:54 - 00000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter Strike 1.6 BF Edition
2016-03-12 11:40 - 2015-12-07 16:53 - 00000000 ____D C:\Users\hp\AppData\Roaming\Notepad++
2016-03-12 11:40 - 2013-07-16 17:00 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
2016-03-12 11:14 - 2015-08-29 09:54 - 00000000 ____D C:\Users\Administrator
2016-03-11 23:36 - 2015-04-07 09:29 - 00000000 ____D C:\Program Files\Java
2016-03-11 23:36 - 2015-01-28 19:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-03-11 20:50 - 2016-01-27 17:06 - 00000000 ____D C:\ProgramData\AVG Web TuneUp
2016-03-11 20:50 - 2016-01-27 17:06 - 00000000 ____D C:\Program Files (x86)\AVG Web TuneUp
2016-03-10 20:52 - 2016-02-14 12:53 - 00000000 ____D C:\Users\hp\AppData\Roaming\.minecraft
2016-03-10 17:46 - 2014-11-25 14:37 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-03-10 17:44 - 2015-07-10 13:20 - 00205552 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-03-10 17:36 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-10 17:36 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-10 17:36 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-03-10 17:36 - 2015-07-10 12:04 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-03-08 22:45 - 2015-01-02 21:58 - 00000000 ___HD C:\WINDOWS\msdownld.tmp
2016-03-08 21:56 - 2015-08-04 15:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2016-03-08 21:56 - 2015-08-04 15:58 - 00000000 ____D C:\Program Files\CPUID
2016-03-08 20:46 - 2014-12-02 15:50 - 00000000 ____D C:\Users\hp\AppData\Local\ElevatedDiagnostics
2016-03-08 08:10 - 2015-10-04 02:37 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-03-08 08:10 - 2015-10-04 02:37 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-03-06 15:04 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-03-01 13:33 - 2016-01-13 18:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6 v43
2016-03-01 12:34 - 2014-12-06 15:52 - 00000000 ____D C:\Users\hp\.gimp-2.8
2016-03-01 12:03 - 2015-12-23 14:23 - 00000000 ____D C:\Gry
2016-02-22 17:35 - 2016-01-27 17:06 - 00000000 ____D C:\Program Files\AVG Web TuneUp
2016-02-21 19:43 - 2015-11-21 19:19 - 00208903 _____ C:\WINDOWS\SentOSPackets.KTL
2016-02-21 19:43 - 2015-11-21 19:19 - 00000143 _____ C:\WINDOWS\NGIControl.KTL
2016-02-21 19:43 - 2015-08-17 17:21 - 01427282 _____ C:\WINDOWS\ProcessedPackets.KTL
2016-02-21 19:43 - 2015-08-17 17:21 - 00590040 _____ C:\WINDOWS\Packet.KTL
2016-02-21 19:43 - 2015-08-17 17:21 - 00018572 _____ C:\WINDOWS\Control.KTL
 
==================== Pliki w katalogu głównym wybranych folderów =======
 
2015-11-17 18:58 - 2015-11-17 18:58 - 0000000 _____ () C:\Program Files (x86)\Common Files\AMD
2015-09-27 11:01 - 2015-09-27 11:01 - 0003721 _____ () C:\Users\hp\AppData\Local\recently-used.xbel
2015-06-27 21:51 - 2016-01-27 15:40 - 0007598 _____ () C:\Users\hp\AppData\Local\Resmon.ResmonCfg
 
==================== Bamital & volsnap =================
 
(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
 
C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo
C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo
C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo
C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo
C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo
C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo
 
 
LastRegBack: 2016-03-12 20:48
 
==================== Koniec  FRST.txt ============================

 

 

pyhvh7E.png


 


Zarchiwizowany

Ten temat przebywa obecnie w archiwum. Dodawanie nowych odpowiedzi zostało zablokowane.

×
×
  • Dodaj nową pozycję...