Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 09.01.2019 Uruchomiony przez BP7CC5J (09-01-2019 17:56:56) Uruchomiony z C:\Users\BP7CC5J\Downloads Windows 7 Professional Service Pack 1 (X64) (2015-12-05 22:31:36) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-531174507-3532666190-1112222229-500 - Administrator - Disabled) BP7CC5J (S-1-5-21-531174507-3532666190-1112222229-1000 - Administrator - Enabled) => C:\Users\BP7CC5J Gość (S-1-5-21-531174507-3532666190-1112222229-501 - Limited - Enabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Microsoft Security Essentials (Enabled - Up to date) {71A27EC9-3DA6-45FC-60A7-004F623C6189} AS: Microsoft Security Essentials (Enabled - Up to date) {CAC39F2D-1B9C-4A72-5A17-3B3D19BB2B34} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 19.010.20069 - Adobe Systems Incorporated) Adobe Flash Player 32 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 32.0.0.114 - Adobe Systems Incorporated) Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.114 - Adobe Systems Incorporated) Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version: - Microsoft) BioAPI Framework (HKLM\...\{9DAED4FC-2B0E-4F3F-8141-F2ABF02CCFCB}) (Version: 1.0.2 - Dell Inc.) Hidden Custom (HKLM\...\{7206B668-FEE0-455B-BB1F-9B5A2E0EC94A}) (Version: 01.00.00.000 - Wave Systems Corp.) Hidden Czas Pracy Ewidencja 4.2.2.0 (HKLM-x32\...\Czas Pracy Ewidencja_is1) (Version: 4.2.2.0 - ITOpen Producent oprogramowania) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden Datalogic Aladdin (HKLM-x32\...\Aladdin) (Version: 1.16.3.1 - datalogic.com) Datalogic OPOS 1.14.159 Driver (HKLM-x32\...\{F6F7FFF4-41E9-4C10-AE2B-BC51B50F4BE5}) (Version: 1.14.159 - DATALOGIC) Dell Data Protection | Access (HKLM\...\{ABBA2EA4-740E-4052-902B-9CA70B081E3F}) (Version: 2.2.00003.009 - Dell Inc.) DellAccess (HKLM\...\{F839C6BD-E92E-48FA-9CE6-7BFAF94F7096}) (Version: 01.01.00.104 - Wave Systems Corp.) Hidden Driver Cleaner 3 (HKLM-x32\...\Driver Cleaner) (Version: 3.3 - Ruud Ketelaars) EMBASSY Client Core (HKLM\...\{5F5CBF39-BD29-43C8-B63A-B9758F0FD090}) (Version: 01.01.00.036 - Wave Systems Corp.) Hidden Gemalto (HKLM\...\{91CE5F03-3A2A-4268-935A-04944F058AE9}) (Version: 01.64.01.0010 - Wave Systems Corp) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 70.0.3538.110 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden HP LaserJet Professional M1130-M1210 MFP Series (HKLM\...\HP LaserJet Professional M1130-M1210 MFP Series) (Version: - ) hppLaserJetService (HKLM-x32\...\{D371F551-0DB9-4CEC-844B-4C90CE91EA0B}) (Version: 001.003.000145 - Hewlett-Packard) Hidden hppM1130M1210SeriesLaserJetService (HKLM-x32\...\{0E448256-D515-4C3E-A5BE-0A7B76CED5D4}) (Version: 001.003.00073 - Hewlett-Packard) Hidden hppusgM1130M1210Series (HKLM-x32\...\{DA6CC3A5-1F5B-4068-8BFF-C597BB6B8158}) (Version: 1.0.0.2 - Hewlett-Packard) Hidden HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 18.1 - Intel) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.4229 - Intel Corporation) Java 8 Update 191 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180191F0}) (Version: 8.0.1910.12 - Oracle Corporation) Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden jv16 PowerTools X (HKLM-x32\...\jv16 PowerTools X) (Version: - Macecraft Software) KCAnalizy3 (HKLM-x32\...\{286CF602-66B0-48F1-85B7-82AF72B221AF}) (Version: 3.6.0000 - F.H.U. KUCHARSCY S.C.) KC-Eksport3 (HKLM-x32\...\{4A2B0515-3EA4-4084-8AF4-9E75F59547F2}) (Version: 3.6.0000 - F.H.U. KUCHARSCY S.C.) KC-Etykiety3 (HKLM-x32\...\{C300C68A-54A5-424A-A88C-B93D94B7A066}) (Version: 3.6.0000 - F.H.U. KUCHARSCY S.C.) KCFirma3 (HKLM-x32\...\{47721C77-2853-4D6E-B597-3E2A889CB6F5}) (Version: 3.6.0000 - F.H.U. KUCHARSCY S.C.) KC-Serwer3 (HKLM-x32\...\{31BB7606-E7DB-42C4-8578-80828E097D83}) (Version: 3.7.0100 - F.H.U. KUCHARSCY S.C.) KC-Zadania3 (HKLM-x32\...\{E134948E-27F8-43B2-9015-75E33CE7B88B}) (Version: 3.6.0000 - F.H.U. KUCHARSCY S.C.) MarketResearch (HKLM-x32\...\{175F0111-2968-4935-8F70-33108C6A4DE3}) (Version: 130.0.374.000 - Hewlett-Packard) Hidden MediaSync (HKLM-x32\...\{42A1309F-C0BE-48CB-AF51-E7D9FFFC5439}) (Version: 1.0.11.0 - Evertop) MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited) Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation) Microsoft .NET Framework 4.7.2 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.7.03062 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Access 2003 Runtime (HKLM-x32\...\{901C0415-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft Office Access Runtime (Polish) 2007 (HKLM-x32\...\{90120000-001C-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.10.209.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25017 (HKLM-x32\...\{d6f233bd-3f8c-43f6-878b-07bd0568d595}) (Version: 14.10.25017.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25017 (HKLM-x32\...\{cb7c3049-21de-415b-bd85-b65c14e547df}) (Version: 14.10.25017.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.0 (HKLM-x32\...\{3898934B-05AE-41CD-96BE-70DA9BFBCE1F}) (Version: 3.0.11010.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Mozilla Firefox 64.0 (x64 pl) (HKLM\...\Mozilla Firefox 64.0 (x64 pl)) (Version: 64.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 54.0.1 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NTRU TCG Software Stack (HKLM\...\{E9A97832-83B6-42B6-BAC6-492E344C2561}) (Version: 2.1.37 - Security Innovation, Inc.) Hidden OICECRLib 3.5.5 (HKLM-x32\...\OICECRLib_is1) (Version: - NOVITUS SA) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Pakiet sterowników systemu Windows - Dell Inc. PBADRV System (09/11/2009 1.0.1.6) (HKLM\...\9512AA21B791B05A54E27065C45BBC417AB282DF) (Version: 09/11/2009 1.0.1.6 - Dell Inc.) PC-CCID (HKLM\...\{3DCDFCDB-4D96-4CF0-9BB3-C91DAE9073F3}) (Version: 2.0.0 - Gemalto) Hidden PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.2.2 - pdfforge) Poczta usługi Windows Live (HKLM-x32\...\{45FF54A4-ECD4-455D-89A2-D209737AD726}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM-x32\...\{8FFD72FC-4FFA-472D-9F76-AEC85F602F9D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Preboot Manager (HKLM\...\{3A6BE9F4-5FC8-44BB-BE7B-32A29607FEF6}) (Version: 03.03.00.090 - Wave Systems Corp.) Hidden Private Information Manager (HKLM\...\{0B0A2153-58A6-4244-B458-25EDF5FCD809}) (Version: 07.01.00.030 - Wave Systems Corp.) Hidden Raport Ekonomiczny Sieci Hitpol (HKLM-x32\...\{3F5703BF-BD79-4E5D-AA52-9F92DA04673F}) (Version: 3.1.09 - Firma SAS Gorlice) Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 1.12.0019 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5931 - Realtek Semiconductor Corp.) Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 2.0.1 - HP) SPBA 5.9 (HKLM\...\{2EECD5EF-5095-467C-B80C-4AB3096EFD60}) (Version: 5.9.4.6901 - UPEK Inc.) Hidden Tango 98 v.4.08 (HKLM-x32\...\Tango 98_is1) (Version: - Novitus S.A.) TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.0.13880 - TeamViewer) toolkit32for64bit (HKLM-x32\...\{703BB500-F54C-4F33-9D3C-D7A28CEAFBCF}) (Version: 7.67.47.0000 - Wave Systems Corp) Hidden Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH) Trusted Drive Manager (HKLM\...\{6AC87FB3-ACFC-4416-890C-8976D5A9B371}) (Version: 4.5.0.136 - Wave Systems Corp.) Hidden Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Upek Touchchip Fingerprint Reader (HKLM\...\{4E60E212-3177-4B16-BCB3-616CCC52357D}) (Version: 1.2.004 - Dell Inc.) Hidden USBCOMInstaller (HKLM-x32\...\{E9AAAF26-52A4-4A44-AA14-708EB7A9BC58}) (Version: 6.3.2 - Datalogic) Wave Crypto Runtime 2.0.7.0 x86 (HKLM-x32\...\{8C0600A3-E772-4FC8-A67D-ED110E69665C}) (Version: 02.00.07.0000 - Wave Systems Corp) Hidden Wave Infrastructure Installer (HKLM\...\{30C2392C-C7D6-4FE2-9617-05D2C6E9D3EE}) (Version: 07.67.60.0020 - Wave Systems Corp) Hidden Wave Support Software Installer (HKLM\...\{07D618CD-B016-438A-ADC9-A75BD23F85CE}) (Version: 05.13.00.051 - Wave Systems Corp) Hidden WinRAR 4.20 (32-bitowy) (HKLM-x32\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) ==================== Niestandardowe rejestracje CLSID (filtrowane): ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ShellIconOverlayIdentifiers: [EnabledUnlockedFDEIconOverlay] -> {30D3C2AF-9709-4D05-9CF4-13335F3C1E4A} => C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmIconOverlay.dll [2011-12-08] (Wave Systems Corp.) ShellIconOverlayIdentifiers: [UninitializedFdeIconOverlay] -> {CF08DA3E-C97D-4891-A66B-E39B28DD270F} => C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmIconOverlay.dll [2011-12-08] (Wave Systems Corp.) ContextMenuHandlers1: [###MegaContextMenuExt] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\BP7CC5J\AppData\Local\MEGAsync\ShellExtX64.dll [2017-11-17] () ContextMenuHandlers1: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => c:\Program Files\Microsoft Security Client\shellext.dll [2016-11-14] (Microsoft Corporation) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2012-06-30] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2012-06-09] (Alexander Roshal) ContextMenuHandlers2: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => c:\Program Files\Microsoft Security Client\shellext.dll [2016-11-14] (Microsoft Corporation) ContextMenuHandlers4: [###MegaContextMenuExt] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\BP7CC5J\AppData\Local\MEGAsync\ShellExtX64.dll [2017-11-17] () ContextMenuHandlers4: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => c:\Program Files\Microsoft Security Client\shellext.dll [2016-11-14] (Microsoft Corporation) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2015-06-01] (Intel Corporation) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2012-06-30] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2012-06-09] (Alexander Roshal) ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {177E235B-5DE1-4E0C-B6A7-A69E6DAE4690} - System32\Tasks\{D40059B3-6587-4EB8-8F07-AB01A48FEEC7} => C:\Program Files (x86)\IPSPI\FORMUL.IPS\DRUKI16.exe Task: {1A821155-4FCF-43A3-8E78-7AAD3CF4B139} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-07-25] (Google Inc.) Task: {272795B8-394D-4516-A089-E9988F827798} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-531174507-3532666190-1112222229-1000 => C:\Users\BP7CC5J\AppData\Local\MEGAsync\MEGAupdater.exe [2018-01-19] (Mega Limited) Task: {51F84A24-3AFB-4113-BE37-2BC44C16B4A1} - System32\Tasks\{D3C34E90-B47F-47B5-98F5-E06BB632CAD1} => C:\Program Files (x86)\ProjectSM\AcKlient\AcKlient.exe Task: {6B62C281-09B6-4465-8F7F-F20EECEAE693} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-08-14] (Adobe Systems Incorporated) Task: {70E04E6D-557E-4449-B914-D9919C11A7CB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-07-25] (Google Inc.) Task: {AE160C0D-68E5-4B77-9E2C-39B565B73EDC} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_114_Plugin.exe [2019-01-09] (Adobe Systems Incorporated) Task: {D7477CF7-030F-4158-8564-2B7EF9DE2A32} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\\MpCmdRun.exe [2016-11-14] (Microsoft Corporation) Task: {DBC08DD1-38D7-44D8-AC4A-8540BA5FD2FB} - System32\Tasks\{3A24A480-F7ED-4DAE-B3E9-1FC6D32E9D79} => C:\Program Files (x86)\IPSPI\FORMUL.IPS\DRUKI16.exe Task: {E67BA17C-3255-48B4-A1C4-3CF26FAB696A} - System32\Tasks\{F7FB3606-4341-4EB2-AB3D-E00DEBD2D273} => C:\Program Files (x86)\IPSPI\FORMUL.IPS\DRUKI16.exe Task: {E98E7E5D-CA0B-423E-96C7-EC7985AB59FD} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2019-01-09] (Adobe Systems Incorporated) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\": WMI:subscription\__EventFilter->BVTFilter: WMI:subscription\CommandLineEventConsumer->BVTConsumer: Shortcut: C:\Users\BP7CC5J\Desktop\dysk.bat.lnk -> C:\Users\BP7CC5J\dysk.bat () Shortcut: C:\Users\BP7CC5J\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\11KopiaSklep — skrót.lnk -> C:\RAPORT\KopiaCloud\11KopiaSklep.bat () ==================== Załadowane moduły (filtrowane) ============== 2016-01-04 18:23 - 2012-09-29 13:25 - 000409088 _____ () C:\Windows\System32\HPM1210LM.DLL 2016-01-04 18:24 - 2012-09-29 13:25 - 000074240 _____ () C:\Windows\system32\spool\PRTPROCS\x64\HPM1210PP.dll 2012-01-17 07:45 - 2012-01-17 07:45 - 000218504 _____ () C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe 2012-01-17 07:45 - 2012-01-17 07:45 - 000038792 _____ () C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\DeviceStatus.dll 2011-10-08 22:56 - 2011-10-08 22:56 - 000003072 _____ () C:\Program Files (x86)\NTRU Cryptosystems\NTRU TCG Software Stack\bin\TspPopup_ENU.dll 2011-11-07 07:55 - 2011-11-07 07:55 - 000094720 _____ () C:\Windows\system32\Wavx_ESC_Logging.dll 2006-12-08 15:42 - 2015-01-15 13:33 - 000155136 _____ () C:\Windows\system32\BioAPI100.dll 2006-12-08 15:41 - 2015-01-15 13:33 - 000239104 _____ () C:\Windows\system32\BIOAPI_MDS300.dll 2015-06-01 21:00 - 2015-06-01 21:00 - 000102912 _____ () C:\Windows\System32\IccLibDll_x64.dll 2009-10-15 11:13 - 2009-10-15 11:13 - 000061440 _____ () C:\Program Files (x86)\HP\HPLaserJetService\HPTools.dll 2009-10-15 11:13 - 2009-10-15 11:13 - 000964096 _____ () C:\Program Files (x86)\HP\HPLaserJetService\LEDMXMLObjects.dll 2012-12-24 06:53 - 2012-12-24 06:53 - 000082944 _____ () C:\Windows\system32\mvusbews.DLL 2016-07-21 04:49 - 2017-11-17 05:23 - 000798208 _____ () C:\Users\BP7CC5J\AppData\Local\MEGAsync\libsodium.dll ==================== Alternate Data Streams (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) ==================== Tryb awaryjny (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) ==================== Powiązania plików (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.) ==================== Internet Explorer - Witryny zaufane i z ograniczeniami =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) ==================== Hosts - zawartość: ========================== (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2018-08-21 21:36 - 000480055 ____R C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 www.winaproduct.com 127.0.0.1 www.winadiscount.com #[Dr.Web.Adware.Xbarre] 127.0.0.1 www.stickylogic.com 127.0.0.1 rt.udmserve.net 127.0.0.1 adunit.namiflow.com 127.0.0.1 ads.namiflow.com 127.0.0.1 c7.zxxds.net 127.0.0.1 c1.zxxds.net #[g1.panthercdn.com] 127.0.0.1 www.zedo.com #[Adware.RaxSearch] 127.0.0.1 yads.zedo.com 127.0.0.1 xads.zedo.com 127.0.0.1 ss7.zedo.com 127.0.0.1 ss2.zedo.com 127.0.0.1 ss1.zedo.com 127.0.0.1 simg.zedo.com 127.0.0.1 r1.zedo.com 127.0.0.1 l8.zedo.com 127.0.0.1 l6.zedo.com #[a515.g.akamai.net] 127.0.0.1 l5.zedo.com 127.0.0.1 l4.zedo.com 127.0.0.1 l3.zedo.com 127.0.0.1 l2.zedo.com 127.0.0.1 l1.zedo.com #[a1101.g.akamai.net] 127.0.0.1 h.zedo.com 127.0.0.1 gw.zedo.com 127.0.0.1 g.zedo.com #[zedo.live365.com] 127.0.0.1 freeze.zedo.com 127.0.0.1 d8.zedo.com 127.0.0.1 d7.zedo.com 127.0.0.1 d3.zedo.com Wykryto więcej niż wyliczono: 13864 linii. ==================== Inne obszary ============================ (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path: C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Gemalto\Access Client\v5\;C:\Program Files (x86)\NTRU Cryptosystems\NTRU TCG Software Stack\bin\;C:\Program Files\NTRU Cryptosystems\NTRU TCG Software Stack\bin\;C:\Program Files (x86)\Windows Live\Shared;%systemroot%\System32\WindowsPowerShell\v1.0\;%systemroot%\System32\WindowsPowerShell\v1.0\;%systemroot%\System32\WindowsPowerShell\v1.0\ HKU\S-1-5-21-531174507-3532666190-1112222229-1000\Control Panel\Desktop\\Wallpaper -> DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == Załączenie wejścia w fixlist spowoduje jego usunięcie. MSCONFIG\startupreg: GrooveMonitor.exe => "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" ==================== Reguły Zapory systemu Windows (filtrowane) =============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe (Microsoft Corporation) FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe (Microsoft Corporation) FirewallRules: [{839660DA-D4F9-4487-A2F9-70FC1BA60ABF}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation) FirewallRules: [{BDB81D17-2670-4265-BBD4-86F243792F68}] => (Allow) LPort=2869 FirewallRules: [{2381F305-7150-4D20-B505-D99D49364698}] => (Allow) LPort=1900 FirewallRules: [TCP Query User{323563A8-0AA4-4F96-9E38-52B65CC3480E}C:\users\bp7cc5j\appdata\roaming\copy\copyagent.exe] => (Allow) C:\users\bp7cc5j\appdata\roaming\copy\copyagent.exe Brak pliku FirewallRules: [UDP Query User{B7490D20-CD1B-4EE9-9F55-ECF345C867BD}C:\users\bp7cc5j\appdata\roaming\copy\copyagent.exe] => (Allow) C:\users\bp7cc5j\appdata\roaming\copy\copyagent.exe Brak pliku FirewallRules: [TCP Query User{46CA4293-451C-4745-AE36-270DC52BB3D2}C:\program files (x86)\microsoft office\office11\msaccess.exe] => (Allow) C:\program files (x86)\microsoft office\office11\msaccess.exe (Microsoft Corporation) FirewallRules: [UDP Query User{8857C77F-C73A-4A46-833E-CD67F183E72A}C:\program files (x86)\microsoft office\office11\msaccess.exe] => (Allow) C:\program files (x86)\microsoft office\office11\msaccess.exe (Microsoft Corporation) FirewallRules: [TCP Query User{1BE4C4B5-15E2-476D-9FEC-4AB3E0918BC6}C:\program files (x86)\projectsm\acklient\acklient.exe] => (Allow) C:\program files (x86)\projectsm\acklient\acklient.exe Brak pliku FirewallRules: [UDP Query User{48FEC818-7F5A-49A7-851C-9F6B7FEAB604}C:\program files (x86)\projectsm\acklient\acklient.exe] => (Allow) C:\program files (x86)\projectsm\acklient\acklient.exe Brak pliku FirewallRules: [TCP Query User{CCBAED32-1634-4170-A1AA-EF630F84E059}C:\program files (x86)\microsoft office\office11\msaccess.exe] => (Allow) C:\program files (x86)\microsoft office\office11\msaccess.exe (Microsoft Corporation) FirewallRules: [UDP Query User{0511B8C9-ED5F-49F8-970D-AF135A27969C}C:\program files (x86)\microsoft office\office11\msaccess.exe] => (Allow) C:\program files (x86)\microsoft office\office11\msaccess.exe (Microsoft Corporation) FirewallRules: [TCP Query User{6D7D6A36-8AC9-41FE-B5BD-98ECC6E727CE}C:\totalcmd\totalcmd64.exe] => (Allow) C:\totalcmd\totalcmd64.exe (Ghisler Software GmbH) FirewallRules: [UDP Query User{ECAEE195-ABDC-46FC-BFED-6376FC6E27AB}C:\totalcmd\totalcmd64.exe] => (Allow) C:\totalcmd\totalcmd64.exe (Ghisler Software GmbH) FirewallRules: [{FAF05641-38D9-43AA-8C34-4DCD8378E8E0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) FirewallRules: [{8717821C-609F-44FF-B8AC-CA63FDE8FD6A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) FirewallRules: [{6A0509EB-9A02-4AEB-BACE-894755B63124}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH) FirewallRules: [{609D944A-A7B9-48C1-8CF2-77A4E25C657B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH) FirewallRules: [{C9D093AE-52CD-4C7C-B555-AB5AF510981B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH) FirewallRules: [{E5710482-341F-42D9-8A22-A16D1A1454AF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH) FirewallRules: [TCP Query User{8FF12A62-976E-4C02-9823-712A6AA0E7F6}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation) FirewallRules: [UDP Query User{D1EFF230-60D0-4D44-A7D9-49EA8A3C4C9B}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation) FirewallRules: [TCP Query User{CACBD35E-98D4-4CED-A41E-FAA84D4EE885}C:\users\bp7cc5j\downloads\bcs configtool pol v1_07_2_r_130304\general_configtool_eng_v1.07.2.r.130304\configtool.exe] => (Allow) C:\users\bp7cc5j\downloads\bcs configtool pol v1_07_2_r_130304\general_configtool_eng_v1.07.2.r.130304\configtool.exe Brak pliku FirewallRules: [UDP Query User{2CBE2900-B117-4084-991D-17F6672B0DDA}C:\users\bp7cc5j\downloads\bcs configtool pol v1_07_2_r_130304\general_configtool_eng_v1.07.2.r.130304\configtool.exe] => (Allow) C:\users\bp7cc5j\downloads\bcs configtool pol v1_07_2_r_130304\general_configtool_eng_v1.07.2.r.130304\configtool.exe Brak pliku FirewallRules: [{AA803148-3181-41D7-B96C-E497898A0BF5}] => (Allow) C:\Users\BP7CC5J\Downloads\Driver Booster 5.5.1.844 Portable\App\DriverBooster\DriverBooster.exe Brak pliku FirewallRules: [{F2746734-EE1D-4EB1-AAD7-EBC10E7B2C42}] => (Allow) C:\Users\BP7CC5J\Downloads\Driver Booster 5.5.1.844 Portable\App\DriverBooster\DriverBooster.exe Brak pliku FirewallRules: [{7225E048-1C2C-424D-9732-77D7E4C03C5E}] => (Allow) C:\Users\BP7CC5J\Downloads\Driver Booster 5.5.1.844 Portable\App\DriverBooster\DBDownloader.exe Brak pliku FirewallRules: [{2FA41AFE-A392-4433-9A7A-21DCF3329DDA}] => (Allow) C:\Users\BP7CC5J\Downloads\Driver Booster 5.5.1.844 Portable\App\DriverBooster\DBDownloader.exe Brak pliku FirewallRules: [{EA434E86-E329-45C9-8D9E-537E2D8323F8}] => (Allow) C:\Users\BP7CC5J\Downloads\Driver Booster 5.5.1.844 Portable\App\DriverBooster\AutoUpdate.exe Brak pliku FirewallRules: [{C46CF567-075E-4178-AEE1-26C5674789C1}] => (Allow) C:\Users\BP7CC5J\Downloads\Driver Booster 5.5.1.844 Portable\App\DriverBooster\AutoUpdate.exe Brak pliku FirewallRules: [TCP Query User{6833DBE4-5E2A-4F36-A13E-002E7E06E99C}C:\program files (x86)\czas pracy ewidencja\czas_pracy.exe] => (Allow) C:\program files (x86)\czas pracy ewidencja\czas_pracy.exe (ITOpen Producent oprogramowania) FirewallRules: [UDP Query User{7142471A-7F70-4F45-9F73-5C4E34D155E3}C:\program files (x86)\czas pracy ewidencja\czas_pracy.exe] => (Allow) C:\program files (x86)\czas pracy ewidencja\czas_pracy.exe (ITOpen Producent oprogramowania) FirewallRules: [{E48646C7-2E33-4180-ACAD-261384ED3D45}] => (Block) %ProgramFiles% (x86)\Czas Pracy Ewidencja\Czas_Pracy.exe Brak pliku FirewallRules: [{4276D6C2-6708-4395-82DE-2E4A7660FD4B}] => (Block) %ProgramFiles% (x86)\Czas Pracy Ewidencja\Czas_Pracy.exe Brak pliku FirewallRules: [{59DE0C20-312D-4691-AAEE-EFE8D0B0F7C3}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH) FirewallRules: [{225A0B31-6425-4B59-9647-CE29ACCFE107}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH) FirewallRules: [{3537F6CD-54C2-47CE-A78E-B02D6BBE374E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH) FirewallRules: [{B36E82A4-4943-42F8-B121-8A7F308177B1}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH) FirewallRules: [{70982F47-9E86-4410-9CD3-61D682EC88F9}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ==================== Punkty Przywracania systemu ========================= 05-01-2019 05:20:15 Windows Update 08-01-2019 05:41:31 Windows Update 09-01-2019 07:27:30 Windows Update 09-01-2019 09:21:10 Installed Datalogic OPOS 1.14.159 Driver 09-01-2019 17:11:32 Instalator modułów systemu Windows ==================== Wadliwe urządzenia w Menedżerze urządzeń ============= ==================== Błędy w Dzienniku zdarzeń: ========================= Dziennik Aplikacja: ================== Error: (01/09/2019 05:16:28 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: ZARZĄDZANIE NT) Description: Nie można ponownie uaktywnić filtru zdarzeń z zapytaniem „SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99” w przestrzeni nazw „//./root/CIMV2” z powodu błędu 0x80041003. Do czasu rozwiązania tego problemu nie będzie można dostarczać zdarzeń za pośrednictwem tego filtru. Error: (01/09/2019 03:18:43 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: ZARZĄDZANIE NT) Description: Nie można ponownie uaktywnić filtru zdarzeń z zapytaniem „SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99” w przestrzeni nazw „//./root/CIMV2” z powodu błędu 0x80041003. Do czasu rozwiązania tego problemu nie będzie można dostarczać zdarzeń za pośrednictwem tego filtru. Error: (01/09/2019 09:41:44 AM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: ZARZĄDZANIE NT) Description: Nie można ponownie uaktywnić filtru zdarzeń z zapytaniem „SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99” w przestrzeni nazw „//./root/CIMV2” z powodu błędu 0x80041003. Do czasu rozwiązania tego problemu nie będzie można dostarczać zdarzeń za pośrednictwem tego filtru. Error: (01/09/2019 07:15:09 AM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: ZARZĄDZANIE NT) Description: Nie można ponownie uaktywnić filtru zdarzeń z zapytaniem „SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99” w przestrzeni nazw „//./root/CIMV2” z powodu błędu 0x80041003. Do czasu rozwiązania tego problemu nie będzie można dostarczać zdarzeń za pośrednictwem tego filtru. Error: (01/08/2019 05:09:04 AM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: ZARZĄDZANIE NT) Description: Nie można ponownie uaktywnić filtru zdarzeń z zapytaniem „SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99” w przestrzeni nazw „//./root/CIMV2” z powodu błędu 0x80041003. Do czasu rozwiązania tego problemu nie będzie można dostarczać zdarzeń za pośrednictwem tego filtru. Error: (01/07/2019 05:02:31 AM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: ZARZĄDZANIE NT) Description: Nie można ponownie uaktywnić filtru zdarzeń z zapytaniem „SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99” w przestrzeni nazw „//./root/CIMV2” z powodu błędu 0x80041003. Do czasu rozwiązania tego problemu nie będzie można dostarczać zdarzeń za pośrednictwem tego filtru. Error: (01/04/2019 05:09:01 AM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: ZARZĄDZANIE NT) Description: Nie można ponownie uaktywnić filtru zdarzeń z zapytaniem „SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99” w przestrzeni nazw „//./root/CIMV2” z powodu błędu 0x80041003. Do czasu rozwiązania tego problemu nie będzie można dostarczać zdarzeń za pośrednictwem tego filtru. Error: (01/02/2019 04:56:40 AM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: ZARZĄDZANIE NT) Description: Nie można ponownie uaktywnić filtru zdarzeń z zapytaniem „SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99” w przestrzeni nazw „//./root/CIMV2” z powodu błędu 0x80041003. Do czasu rozwiązania tego problemu nie będzie można dostarczać zdarzeń za pośrednictwem tego filtru. Dziennik System: ============= Error: (01/09/2019 05:56:53 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (01/09/2019 05:56:52 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (01/09/2019 05:56:51 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (01/09/2019 05:56:50 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (01/09/2019 05:56:48 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (01/09/2019 05:56:47 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (01/09/2019 05:56:46 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error: (01/09/2019 05:56:45 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Windows Defender: =================================== Date: 2018-08-21 14:42:13.384 Description: Skanowanie produktu Windows Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania:{3AA3F2BA-218F-4D1C-A667-088725842449} Typ skanowania:Oprogramowanie antyszpiegowskie Parametry skanowania:Szybkie skanowanie Użytkownik:BP7CC5J-DELL\BP7CC5J Date: 2018-08-21 06:59:47.323 Description: Produkt Windows Defender napotkał błąd podczas próby załadowania podpisów i podejmie próbę powrotu do znanego zestawu dobrych podpisów. Podpisy objęte próbą:Bieżące Kod błędu:0x80070002 Opis błędu:Nie można odnaleźć określonego pliku. Wersja podpisu:0.0.0.0 Wersja aparatu:0.0.0.0 Date: 2018-08-18 08:02:24.948 Description: Produkt Windows Defender napotkał błąd podczas próby załadowania podpisów i podejmie próbę powrotu do znanego zestawu dobrych podpisów. Podpisy objęte próbą:Bieżące Kod błędu:0x80070002 Opis błędu:Nie można odnaleźć określonego pliku. Wersja podpisu:0.0.0.0 Wersja aparatu:0.0.0.0 CodeIntegrity: =================================== Date: 2019-01-09 17:15:29.171 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\usbprint.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-01-09 17:15:26.800 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\usbprint.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-01-09 17:15:23.305 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\monitor.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-01-09 17:15:21.059 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\monitor.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-01-09 17:15:17.564 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\rdpbus.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-01-09 17:15:15.287 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\rdpbus.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-01-09 17:15:12.588 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\CompositeBus.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-01-09 17:15:10.248 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\CompositeBus.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Statystyki pamięci =========================== Procesor: Intel(R) Core(TM) i5-2500 CPU @ 3.30GHz Procent pamięci w użyciu: 64% Całkowita pamięć fizyczna: 3977.06 MB Dostępna pamięć fizyczna: 1407.46 MB Całkowita pamięć wirtualna: 7952.26 MB Dostępna pamięć wirtualna: 5437.52 MB ==================== Dyski ================================ Drive c: (Windows) (Fixed) (Total:291.83 GB) (Free:211.86 GB) NTFS Drive e: () (Fixed) (Total:74.5 GB) (Free:49.78 GB) NTFS Drive x: (Windows) (Network) (Total:118.68 GB) (Free:103.5 GB) NTFS Drive z: (Windows) (Network) (Total:118.68 GB) (Free:103.32 GB) NTFS \\?\Volume{3025fe9a-9ba7-11e5-86a7-806e6f6e6963}\ (System) (Fixed) (Total:6.26 GB) (Free:0.55 GB) NTFS ==================== MBR & Tablica partycji ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 298.1 GB) (Disk ID: A6C8756E) Partition 1: (Active) - (Size=6.3 GB) - (Type=27) Partition 2: (Not Active) - (Size=291.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 74.5 GB) (Disk ID: 2C29ACD9) Partition 1: (Not Active) - (Size=74.5 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ============================