Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 28-12-2019 Uruchomiony przez Xantyr (07-01-2020 17:28:02) Uruchomiony z C:\Users\Xantyr\Downloads Windows 10 Pro Wersja 1903 18362.535 (X64) (2019-06-12 09:59:58) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-505315625-2391481160-2919946547-500 - Administrator - Disabled) Gość (S-1-5-21-505315625-2391481160-2919946547-501 - Limited - Disabled) Konto domyślne (S-1-5-21-505315625-2391481160-2919946547-503 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-505315625-2391481160-2919946547-504 - Limited - Disabled) Xantyr (S-1-5-21-505315625-2391481160-2919946547-1001 - Administrator - Enabled) => C:\Users\Xantyr ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440} AV: ESET Security (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70} AS: ESET Security (Enabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 19.021.20061 - Adobe Systems Incorporated) Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.303 - Adobe) AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 19.10.2 - Advanced Micro Devices, Inc.) Android Studio (HKLM\...\Android Studio) (Version: 3.3 - Google LLC) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Branding64 (HKLM\...\{EE2AFCE4-0238-4DE0-A140-1647021627C1}) (Version: 1.00.0001 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization BR (HKLM\...\{55A4D3AB-C8DF-26B2-89A8-7E16E1E40700}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{365AEAB2-4CF3-7CBB-0DAC-E9E14B688E65}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{7ABC6D83-816E-6D48-E65D-B0CEDD294E4E}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{C3EE628C-7394-FE2C-0C90-C05284EB528D}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{2F544F46-5F6E-97BB-3550-A0242A3C5754}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{FC4086D6-E345-5F43-08BB-280FB57DAF49}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{F8EBE530-A4D5-BF51-F623-3787E6B8A878}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{42FBD43F-DE53-6D4D-5134-E3C93B45CBEF}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{AC85CF50-9A55-0103-ADBF-365C37603AA4}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{B349892D-B015-033C-4CA8-3635E6B655D7}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{BE8D6AB1-3049-2F0C-67FA-00C0A5D321A3}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{26567561-DFB2-2B63-9BA8-6A490ED37016}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{0809FEC1-EF86-51E9-8210-DC1B1BDB6745}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{5FD706FF-6AD8-E372-A35A-879409982655}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{A4E7CA0C-84EB-5E29-2F04-06C4E4790C2F}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{59D2664C-949B-7FA7-9880-ECB993B6616A}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{970A40CA-46AB-986C-1798-976ED0EA00FA}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{4707CBFC-8ED4-463E-0FF9-DE86F4A743E9}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{C14A3A5B-8A86-C239-37D7-158211778C54}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{A50C89BC-8D8E-8828-824A-7171F6D583D5}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{0B5633F0-C415-2F08-671E-4C9E2FAACD45}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.57 - Piriform) CPUID HWMonitor 1.41 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.41 - CPUID, Inc.) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Discord (HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\Discord) (Version: 0.0.301 - Discord Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden ESET Security (HKLM\...\{F26B2665-502A-4214-B336-BB723CF74E38}) (Version: 13.0.24.0 - ESET, spol. s r.o.) f.lux (HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\Flux) (Version: - f.lux Software LLC) GIMP 2.10.4 (HKLM\...\GIMP-2_is1) (Version: 2.10.4 - The GIMP Team) GOG.com Heroes of Might and Magic 3 (HKLM\...\{1d3c859c-1028-4822-b0a7-da4f7bbc18bc}.sdb) (Version: - ) Google Chrome Beta (HKLM-x32\...\Google Chrome Beta) (Version: 80.0.3987.16 - Google LLC) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.421 - Google LLC) Hidden Grand Theft Auto V (HKLM\...\Grand Theft Auto V_is1) (Version: 1.0.877.1 - ) Grim Dawn (HKLM-x32\...\1449651388_is1) (Version: 1.0.2.0 - GOG.com) Grim Dawn: Ashes of Malmouth (HKLM-x32\...\1536648751_is1) (Version: 1.0.2.0 - GOG.com) Grim Dawn: Crucible (HKLM-x32\...\1812959072_is1) (Version: 1.0.2.0 - GOG.com) Grim Dawn: Loyalist Upgrade (HKLM-x32\...\1551979801_is1) (Version: 1.0.2.0 - GOG.com) Guild Wars 2 (HKLM\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) HD Tune Pro 5.70 (HKLM-x32\...\HD Tune Pro_is1) (Version: - EFD Software) Heroes of Might and Magic 3 Complete (HKLM-x32\...\GOGPACKHOMM3COMPLETE_is1) (Version: 2.0.0.16 - GOG.com) Heroes of Might and Magic® III: Horn of the Abyss (HKLM-x32\...\HotA + HD_is1) (Version: 1.5.4 - HotA Crew) Intel(R) Computing Improvement Program (HKLM\...\{D40D4164-EEDB-4F0F-85C6-2058A9E34CC7}) (Version: 2.4.04370 - Intel Corporation) Intel® Hardware Accelerated Execution Manager (HKLM\...\{73250D12-B600-4ED6-AFC0-10D9D8EDA745}) (Version: 7.3.2 - Intel Corporation) Java 8 Update 231 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180231F0}) (Version: 8.0.2310.11 - Oracle Corporation) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc) Microsoft Office 365 ProPlus - pl-pl (HKLM\...\O365ProPlusRetail - pl-pl) (Version: 16.0.12325.20214 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\OneDriveSetup.exe) (Version: 19.222.1110.0004 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\Teams) (Version: 1.2.00.17057 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.14.26429 (HKLM-x32\...\{80586c77-db42-44bb-bfc8-7aebbb220c00}) (Version: 14.14.26429.4 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.14.26405 (HKLM-x32\...\{ec9c2282-a836-48a6-9e41-c2f0bf8d678b}) (Version: 14.14.26405.0 - Microsoft Corporation) Minecraft Launcher (HKLM-x32\...\{810F1419-7760-402E-8772-B4054FAA2B72}) (Version: 1.0.0.0 - Mojang) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 21.1.2 - OBS Project) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.12325.20172 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.12325.20172 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.12325.20214 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0415-0000-0000000FF1CE}) (Version: 16.0.12325.20172 - Microsoft Corporation) Hidden Opera Stable 65.0.3467.78 (HKLM-x32\...\Opera 65.0.3467.78) (Version: 65.0.3467.78 - Opera Software) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.139.0.11 - Overwolf Ltd.) PBE (HKLM-x32\...\PBE 1.0) (Version: 1.0 - Riot Games, Inc) Plants vs Zombies (HKLM\...\{1E4E9CEB-AF32-4C7C-BEFB-CB3EAC11FE38}_is1) (Version: 1.0.0.1051 - PopcapGames) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8117 - Realtek Semiconductor Corp.) Roblox Player for Xantyr (HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\roblox-player) (Version: - Roblox Corporation) Roblox Studio for Xantyr (HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\roblox-studio) (Version: - Roblox Corporation) Slime Rancher (HKLM-x32\...\1459259227_is1) (Version: 1.4.1c - GOG.com) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Streamlabs OBS 0.11.15 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 0.11.15 - General Workings, Inc.) Teams Machine-Wide Installer (HKLM-x32\...\{39AF0813-FA7B-4860-ADBE-93B9B214B914}) (Version: 1.2.0.17057 - Microsoft Corporation) TFTactics (HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\Overwolf_delfmdadipjjmpajblkalfkbebcbldbknecigjpc) (Version: 0.3.2 - Overwolf app) TmUnitedForever Update 2010-03-15 (HKLM-x32\...\TmUnitedForever_is1) (Version: - Nadeo) VLC media player (HKLM\...\VLC media player) (Version: 3.0.8 - VideoLAN) Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0-2) (Version: 1.1.70.0 - LunarG, Inc.) Hidden WinRAR 5.50 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) Packages: ========= Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.1.3842.0_x64__rz1tebttyb220 [2019-12-17] (Dolby Laboratories) EdgeDevtoolsPlugin -> C:\WINDOWS\SystemApps\Microsoft.EdgeDevtoolsPlugin_cw5n1h2txyewy [2019-11-16] (Microsoft Corporation) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-21] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-21] (Microsoft Corporation) [MS Ad] Microsoft News - Wiadomości -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.34.13393.0_x64__8wekyb3d8bbwe [2019-12-18] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.5.12061.0_x64__8wekyb3d8bbwe [2019-12-12] (Microsoft Studios) [MS Ad] MSN Pogoda -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.34.13393.0_x64__8wekyb3d8bbwe [2019-12-18] (Microsoft Corporation) [MS Ad] Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0 [2019-12-18] (Spotify AB) [Startup Task] ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-505315625-2391481160-2919946547-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\Xantyr\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.19127.3\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-505315625-2391481160-2919946547-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\Xantyr\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.19127.3\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Brak pliku ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-12-14] (ESET, spol. s r.o. -> ESET) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-09-13] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-09-13] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-12-14] (ESET, spol. s r.o. -> ESET) ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Brak pliku ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2019-10-23] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-12-14] (ESET, spol. s r.o. -> ESET) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-09-13] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-09-13] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (filtrowane) ==================== ==================== Skróty & WMI ======================== ==================== Załadowane moduły (filtrowane) ============= 2019-06-28 16:28 - 2019-06-28 16:28 - 000017920 _____ () [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\libEGL.dll 2019-06-28 16:28 - 2019-06-28 16:28 - 003598336 _____ () [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2019-10-23 14:43 - 2019-10-23 14:43 - 005999104 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll 2019-06-28 16:28 - 2019-06-28 16:28 - 006413824 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll 2019-06-28 16:28 - 2019-06-28 16:28 - 001141760 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll 2019-06-28 16:28 - 2019-06-28 16:28 - 000339968 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll 2019-06-28 16:28 - 2019-06-28 16:28 - 004143104 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll 2019-06-28 16:28 - 2019-06-28 16:28 - 003840000 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll 2019-06-28 16:28 - 2019-06-28 16:28 - 000113152 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll 2019-06-28 16:28 - 2019-06-28 16:28 - 000349184 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll 2019-06-28 16:28 - 2019-06-28 16:28 - 080959488 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll 2019-06-28 16:28 - 2019-06-28 16:28 - 005622272 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll 2019-06-28 16:28 - 2019-06-28 16:28 - 000463360 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll 2019-06-28 16:28 - 2019-06-28 16:28 - 000190464 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll 2019-06-28 16:28 - 2019-06-28 16:28 - 002825216 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll ==================== Alternate Data Streams (filtrowane) ======== (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\Users\Public\AppData:CSM [232] ==================== Tryb awaryjny (filtrowane) ================== ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer - Witryny zaufane i z ograniczeniami ========== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE trusted site: HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\localhost -> localhost ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2018-06-14 14:56 - 2018-06-14 14:55 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts 2018-09-10 00:58 - 2018-09-10 00:58 - 000000375 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-505315625-2391481160-2919946547-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Xantyr\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\59694_landscape_dark_mountain_sea_scenery.jpg DNS Servers: 185.138.239.105 - 8.8.8.8 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) HKLM\...\StartupApproved\StartupFolder: => "Plants vs Zombies.lnk" HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\StartupApproved\Run: => "Discord" HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-505315625-2391481160-2919946547-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams" ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{029006A0-5BED-4B8B-8E48-D078F950BAAA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{A5950B30-CB9B-4A55-B320-D90009F78EDC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{B4E08A7F-CEAC-49B2-B411-896F80227956}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{B51A1397-151F-49C4-B8C0-FE0D4B94B864}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{D10D006F-91A3-4973-B4BB-A8F55A832735}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe (Grinding Gear Games Limited -> ) FirewallRules: [{EDB84AE1-5B11-4206-91E7-421DD72F9013}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe (Grinding Gear Games Limited -> ) FirewallRules: [UDP Query User{AEDD75FF-079C-4B50-9616-BCEF845105B8}D:\grand theft auto v\gta5.exe] => (Allow) D:\grand theft auto v\gta5.exe (Rockstar Games) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{4B76D40D-090D-4E95-B9EE-6998795A615B}D:\grand theft auto v\gta5.exe] => (Allow) D:\grand theft auto v\gta5.exe (Rockstar Games) [Brak podpisu cyfrowego] FirewallRules: [{CD30B044-ADE5-4661-8704-02A41BF1C1D8}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{DA822E99-1051-4F4F-9099-08105D19C02E}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{CA48820C-4A42-4500-90F5-1623EA23E5F4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{F52A2C63-9411-4879-8FD8-DD6644509064}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{F50BEC15-CD40-4F9E-A6F2-0102FB547AAF}C:\program files\android\android studio\bin\studio64.exe] => (Allow) C:\program files\android\android studio\bin\studio64.exe (Google LLC -> JetBrains s.r.o.) FirewallRules: [TCP Query User{F7795CF4-E475-4947-B128-869F6B536923}C:\program files\android\android studio\bin\studio64.exe] => (Allow) C:\program files\android\android studio\bin\studio64.exe (Google LLC -> JetBrains s.r.o.) FirewallRules: [UDP Query User{5C9F17E7-B032-4275-92DD-2131C2D0A795}C:\program files\android\android studio\jre\bin\java.exe] => (Allow) C:\program files\android\android studio\jre\bin\java.exe FirewallRules: [TCP Query User{021D74BD-25C8-4223-8726-362D3D82FCF5}C:\program files\android\android studio\jre\bin\java.exe] => (Allow) C:\program files\android\android studio\jre\bin\java.exe FirewallRules: [{BB139FEF-43E7-428A-BD53-612D866C13C8}] => (Allow) D:\Steam\steamapps\common\OfGuardsAndThieves\OGAT.exe () [Brak podpisu cyfrowego] FirewallRules: [{5A56363F-530E-4B87-80C5-11541BE721F6}] => (Allow) D:\Steam\steamapps\common\OfGuardsAndThieves\OGAT.exe () [Brak podpisu cyfrowego] FirewallRules: [UDP Query User{D5C92984-F9CD-49F4-AFAA-39E9397F6229}D:\steam\steamapps\common\trackmania nations forever\testapp.exe] => (Allow) D:\steam\steamapps\common\trackmania nations forever\testapp.exe () [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{2D881598-3CCD-4F5A-B30F-D5EBF9DBD223}D:\steam\steamapps\common\trackmania nations forever\testapp.exe] => (Allow) D:\steam\steamapps\common\trackmania nations forever\testapp.exe () [Brak podpisu cyfrowego] FirewallRules: [{EAAA76D6-6B16-4C47-B52E-F96AB6E59125}] => (Allow) D:\Steam\steamapps\common\TrackMania Nations Forever\TmForeverLauncher.exe () [Brak podpisu cyfrowego] FirewallRules: [{F6D4CF6C-4BB3-4F58-A47F-07678E1B6A2C}] => (Allow) D:\Steam\steamapps\common\TrackMania Nations Forever\TmForeverLauncher.exe () [Brak podpisu cyfrowego] FirewallRules: [{900744DA-092E-42FB-BA80-9B0B7838414D}] => (Allow) D:\Steam\steamapps\common\TrackMania Nations Forever\TmForever.exe () [Brak podpisu cyfrowego] FirewallRules: [{6B838E31-D84E-48B5-B4B6-8E560D0AC881}] => (Allow) D:\Steam\steamapps\common\TrackMania Nations Forever\TmForever.exe () [Brak podpisu cyfrowego] FirewallRules: [{C256EE43-18C7-4856-A673-2C946677661A}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{DEDF5B5D-3F8F-4865-8099-EF4487AF8420}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{324E8CEF-AF50-4990-AFE7-5D73110E9C9B}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{3CFDF343-F3E7-4E09-B465-B2FC994F2F09}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{3F8F7B35-77CF-4DFD-9E21-288F5FF86DAC}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd) FirewallRules: [{02435B31-69C3-4E68-AD4E-97D32B083248}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd) FirewallRules: [{81562260-FB80-4DBE-B5D3-E6645AF2A7C5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{86E51A3B-6B84-45C7-BCC1-4ECDD3ADFA20}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{2A59283A-BCF0-4EA3-A615-F97E7795F89C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Broforce\Broforce_beta.exe () [Brak podpisu cyfrowego] FirewallRules: [{C4A826E3-231B-48BC-88E1-CEFF9F01C987}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Broforce\Broforce_beta.exe () [Brak podpisu cyfrowego] FirewallRules: [{AAD09665-16B7-4B93-AFDE-10E671681A24}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Half-Life\hl.exe (Valve -> Valve) FirewallRules: [{EAC1BDD6-AD27-4C0E-ABE0-D8C3D8622C97}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Half-Life\hl.exe (Valve -> Valve) FirewallRules: [{22154812-2522-4E3F-AD08-7D64B3E27834}] => (Allow) C:\Riot Games\PBE\LeagueClient.exe (Riot Games, Inc. -> ) FirewallRules: [{DE360422-97B4-4299-8603-F44742393676}] => (Allow) C:\Riot Games\PBE\LeagueClient.exe (Riot Games, Inc. -> ) FirewallRules: [{CF88061C-98A8-4BDD-87DA-62832E3AE8F8}] => (Allow) C:\Riot Games\PBE\LeagueClient.exe (Riot Games, Inc. -> ) FirewallRules: [{7FA6A7FC-0B94-4C0C-A589-DB80EC91B074}] => (Allow) C:\Riot Games\PBE\LeagueClient.exe (Riot Games, Inc. -> ) FirewallRules: [TCP Query User{4731983D-7A8E-4986-B0B9-5A72A86EE879}D:\games\conan exiles\conansandbox\binaries\win64\conansandbox.exe] => (Allow) D:\games\conan exiles\conansandbox\binaries\win64\conansandbox.exe Brak pliku FirewallRules: [UDP Query User{D4687926-C991-47D3-B3C1-11AF6B56BA74}D:\games\conan exiles\conansandbox\binaries\win64\conansandbox.exe] => (Allow) D:\games\conan exiles\conansandbox\binaries\win64\conansandbox.exe Brak pliku FirewallRules: [{B544B871-7E10-453D-97B4-4864E16F1EF7}] => (Block) D:\games\conan exiles\conansandbox\binaries\win64\conansandbox.exe Brak pliku FirewallRules: [{61FEA572-15AB-4CD2-88F2-93B0D9303C99}] => (Block) D:\games\conan exiles\conansandbox\binaries\win64\conansandbox.exe Brak pliku FirewallRules: [TCP Query User{B7106539-AA27-4053-9963-7B17FF837085}C:\riot games\league of legends\game\league of legends.exe] => (Allow) C:\riot games\league of legends\game\league of legends.exe (Riot Games, Inc. -> ) FirewallRules: [UDP Query User{BD2329AF-8852-4199-A6C9-86FED8511625}C:\riot games\league of legends\game\league of legends.exe] => (Allow) C:\riot games\league of legends\game\league of legends.exe (Riot Games, Inc. -> ) FirewallRules: [{A67BE5C3-4B8C-4697-9AFE-F4C1F12B1163}] => (Block) C:\riot games\league of legends\game\league of legends.exe (Riot Games, Inc. -> ) FirewallRules: [{E25D261F-BE6F-466C-899F-5251CDB6F781}] => (Block) C:\riot games\league of legends\game\league of legends.exe (Riot Games, Inc. -> ) FirewallRules: [TCP Query User{8635D163-6D52-4A9F-A411-84129D758C17}C:\gog games\heroes of might and magic 3 complete\h3hota hd.exe] => (Allow) C:\gog games\heroes of might and magic 3 complete\h3hota hd.exe (The 3DO Company) [Brak podpisu cyfrowego] FirewallRules: [UDP Query User{C853865D-ACC0-4A33-A1C8-08668DBDDA58}C:\gog games\heroes of might and magic 3 complete\h3hota hd.exe] => (Allow) C:\gog games\heroes of might and magic 3 complete\h3hota hd.exe (The 3DO Company) [Brak podpisu cyfrowego] FirewallRules: [{C31524A9-6186-47D3-8F6D-9968BA0F78DF}] => (Block) C:\gog games\heroes of might and magic 3 complete\h3hota hd.exe (The 3DO Company) [Brak podpisu cyfrowego] FirewallRules: [{E9BF7DD2-4D1D-4DD9-ABCF-F25F7AF52D55}] => (Block) C:\gog games\heroes of might and magic 3 complete\h3hota hd.exe (The 3DO Company) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{86837255-C647-4C36-9DEE-8352BD518A1A}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [UDP Query User{89DEDA33-0EA5-4A1E-85C5-9D8D0DB77349}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{5D5D2187-F12B-46FE-BAAC-56D47D101532}] => (Block) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{5250E7A3-5AD3-4611-9AC2-060915B4F1C3}] => (Block) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [TCP Query User{F7D9C82B-3722-488B-96D0-E318D74EDA4B}D:\grim dawn\grim dawn.exe] => (Allow) D:\grim dawn\grim dawn.exe (Crate Entertainment, LLC) [Brak podpisu cyfrowego] FirewallRules: [UDP Query User{4478F41E-5769-455D-AA85-8FDAB211A1F5}D:\grim dawn\grim dawn.exe] => (Allow) D:\grim dawn\grim dawn.exe (Crate Entertainment, LLC) [Brak podpisu cyfrowego] FirewallRules: [{7A801583-7692-48EE-B3B3-C73D6F539B7E}] => (Block) D:\grim dawn\grim dawn.exe (Crate Entertainment, LLC) [Brak podpisu cyfrowego] FirewallRules: [{3F770275-14E2-4E02-8EF0-D4DD6AC588EE}] => (Block) D:\grim dawn\grim dawn.exe (Crate Entertainment, LLC) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{7A05241E-2137-433E-9217-C52FBDDD0857}C:\riot games\pbe\game\league of legends.exe] => (Allow) C:\riot games\pbe\game\league of legends.exe (Riot Games, Inc. -> ) FirewallRules: [UDP Query User{08C2BF6A-86D7-40D7-A4D1-2B32DC5175FB}C:\riot games\pbe\game\league of legends.exe] => (Allow) C:\riot games\pbe\game\league of legends.exe (Riot Games, Inc. -> ) FirewallRules: [{F36EF0D2-D294-4D24-826C-60091998DB3D}] => (Block) C:\riot games\pbe\game\league of legends.exe (Riot Games, Inc. -> ) FirewallRules: [{96C857D3-0291-49BE-ACB7-7B3193551F16}] => (Block) C:\riot games\pbe\game\league of legends.exe (Riot Games, Inc. -> ) FirewallRules: [{CC42D96A-4805-434B-833E-EA7EB44EB276}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{D479EA73-7502-4D21-BFC7-C6A3C1383191}C:\users\xantyr\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\xantyr\appdata\local\gamecenter\gamecenter.exe Brak pliku FirewallRules: [UDP Query User{B9507240-450B-4FC9-8981-89A74D700514}C:\users\xantyr\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\xantyr\appdata\local\gamecenter\gamecenter.exe Brak pliku FirewallRules: [TCP Query User{4FCAE7DA-8D38-497A-980F-2BE918E56EA6}D:\diablo iii\x64\diablo iii64.exe] => (Allow) D:\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [UDP Query User{AEF6ACFC-D9D9-4D94-8401-55466F283612}D:\diablo iii\x64\diablo iii64.exe] => (Allow) D:\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [{3F4FD42E-5AF2-4115-B370-CA64EEB5E260}] => (Block) D:\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [{22C011E4-A1E3-4412-B2C6-7552C296BA5A}] => (Block) D:\diablo iii\x64\diablo iii64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [{04368F1A-6E29-439B-AC67-456498F06250}] => (Allow) C:\Users\Xantyr\AppData\Local\GameCenter\GameCenter.exe Brak pliku FirewallRules: [{02937332-3A30-40AF-BA73-C005382EDDBC}] => (Allow) C:\Users\Xantyr\AppData\Local\GameCenter\GameCenter.exe Brak pliku FirewallRules: [{E04EA6C3-202E-449D-A8B0-A6B6E6F69416}] => (Allow) C:\Program Files\Opera\65.0.3467.72\opera.exe (Opera Software AS -> Opera Software) FirewallRules: [{8FEF9B30-51B6-4C1E-96B0-58B27AAF4094}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{C7240F6B-2263-45D6-84D5-6C16C96B490C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{A311E293-48BE-4C70-96A1-0C685A0913FB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{453F2135-2ADD-4D27-8A27-E0827E66D41C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{8B2E6C49-A538-4664-AA0E-A1A99FA4D98A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{9D3B63AE-6C7D-4DD7-9AA6-BC8D18421C31}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{B07EF77C-E8A7-4673-9E10-7FB1D42FE3AD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{CF90C54D-EB9A-43C8-AC76-1063E7B91F4C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.122.633.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{36FF5401-1FC4-4ADB-A20B-2731542FDE4E}] => (Allow) C:\Program Files (x86)\Google\Chrome Beta\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{886482BB-D401-42A6-9B1B-754D64C8B06F}] => (Allow) C:\Program Files\Opera\65.0.3467.78\opera.exe (Opera Software AS -> Opera Software) FirewallRules: [TCP Query User{06B6AE91-A553-4BDF-9E1D-2E3CB9969CAE}C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe FirewallRules: [UDP Query User{AD234E42-0D72-4DE3-A21A-A71DF3127F9B}C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe FirewallRules: [{401B60C7-96BC-44EC-9858-25110C8D45F2}] => (Block) C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe FirewallRules: [{95C019AC-7361-4C7F-80A0-31BE28BC2312}] => (Block) C:\program files (x86)\minecraft launcher\runtime\jre-x64\bin\javaw.exe ==================== Punkty Przywracania systemu ========================= 11-12-2019 19:27:01 Windows Update 22-12-2019 20:07:14 Zaplanowany punkt kontrolny 07-01-2020 10:41:10 Installed Minecraft Launcher ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (01/07/2020 03:53:30 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (1488,R,98) TILEREPOSITORYS-1-5-18: Wystąpił błąd -1023 (0xfffffc01) podczas otwierania pliku dziennika C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (01/07/2020 03:04:39 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (1956,R,98) TILEREPOSITORYS-1-5-18: Wystąpił błąd -1023 (0xfffffc01) podczas otwierania pliku dziennika C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (01/07/2020 02:03:51 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (1776,R,98) TILEREPOSITORYS-1-5-18: Wystąpił błąd -1023 (0xfffffc01) podczas otwierania pliku dziennika C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (01/07/2020 01:48:42 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (1632,R,98) TILEREPOSITORYS-1-5-18: Wystąpił błąd -1023 (0xfffffc01) podczas otwierania pliku dziennika C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (01/07/2020 01:36:55 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (7052,R,98) TILEREPOSITORYS-1-5-18: Wystąpił błąd -1023 (0xfffffc01) podczas otwierania pliku dziennika C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (01/07/2020 01:25:59 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (376,R,98) TILEREPOSITORYS-1-5-18: Wystąpił błąd -1023 (0xfffffc01) podczas otwierania pliku dziennika C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (01/07/2020 01:05:37 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (5136,R,98) TILEREPOSITORYS-1-5-18: Wystąpił błąd -1023 (0xfffffc01) podczas otwierania pliku dziennika C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (01/07/2020 12:54:52 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (4600,R,98) TILEREPOSITORYS-1-5-18: Wystąpił błąd -1023 (0xfffffc01) podczas otwierania pliku dziennika C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Dziennik System: ============= Error: (01/07/2020 05:23:53 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Karta wydajności WMI niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (01/07/2020 05:23:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa Szybka instalacja pakietu Microsoft Office niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (01/07/2020 05:23:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Adobe Acrobat Update Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (01/07/2020 05:23:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa AMD External Events Utility niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (01/07/2020 05:19:28 PM) (Source: volmgr) (EventID: 46) (User: ) Description: Inicjowanie zrzutu awaryjnego nie powiodło się! Error: (01/07/2020 05:19:34 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 16:50:58 na ‎07.‎01.‎2020 było nieoczekiwane. Error: (01/07/2020 12:47:28 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 12:46:24 na ‎07.‎01.‎2020 było nieoczekiwane. Error: (01/07/2020 12:40:18 PM) (Source: volmgr) (EventID: 46) (User: ) Description: Inicjowanie zrzutu awaryjnego nie powiodło się! CodeIntegrity: =================================== Date: 2020-01-07 17:27:22.257 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements. Date: 2020-01-07 17:27:22.252 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements. Date: 2020-01-07 17:27:22.248 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements. Date: 2020-01-07 17:27:22.243 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements. Date: 2020-01-07 17:27:22.238 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements. Date: 2020-01-07 17:27:22.232 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements. Date: 2020-01-07 17:27:22.228 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements. Date: 2020-01-07 17:27:22.223 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements. ==================== Statystyki pamięci =========================== BIOS: American Megatrends Inc. V1.9 03/30/2015 Płyta główna: MSI H81M-P33 (MS-7817) Procesor: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz Procent pamięci w użyciu: 40% Całkowita pamięć fizyczna: 8136.02 MB Dostępna pamięć fizyczna: 4865.54 MB Całkowita pamięć wirtualna: 20424.02 MB Dostępna pamięć wirtualna: 16177.26 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:222.97 GB) (Free:46.65 GB) NTFS Drive d: () (Fixed) (Total:931.51 GB) (Free:707.81 GB) NTFS \\?\Volume{2acf97b7-bde5-4705-bead-97b9d8ede402}\ (Odzyskiwanie) (Fixed) (Total:0.49 GB) (Free:0.09 GB) NTFS \\?\Volume{686f69cd-fbcf-4dbb-a1fb-1021b7c6290d}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (Size: 223.6 GB) (Disk ID: 984397BF) Partition: GPT. ========================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: 984397A1) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt =======================