Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 02-02-2020 02 Uruchomiony przez mm (03-02-2020 19:09:20) Uruchomiony z C:\Users\mm\Downloads Windows 10 Pro Wersja 1903 18362.592 (X64) (2019-12-26 17:02:22) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1471288753-10138484-638197355-500 - Administrator - Disabled) Gość (S-1-5-21-1471288753-10138484-638197355-501 - Limited - Disabled) Konto domyślne (S-1-5-21-1471288753-10138484-638197355-503 - Limited - Disabled) mm (S-1-5-21-1471288753-10138484-638197355-1001 - Administrator - Enabled) => C:\Users\mm WDAGUtilityAccount (S-1-5-21-1471288753-10138484-638197355-504 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Spybot - Search and Destroy (Enabled - Out of date) {4C1D9672-63FE-5C90-371E-8FDA591C5B75} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-1471288753-10138484-638197355-1001\...\uTorrent) (Version: 3.5.5.45505 - BitTorrent Inc.) 2.1.2.3 (HKLM-x32\...\Setup_is1) (Version: - ) 7-Zip 18.05 (x64) (HKLM\...\7-Zip) (Version: 18.05 - Igor Pavlov) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 19.021.20061 - Adobe Systems Incorporated) Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.156 - Adobe Systems Incorporated) Adobe Photoshop CS3 (HKLM-x32\...\Adobe_2ac78060bc5856b0c1cf873bb919b58) (Version: 10.0 - Adobe Systems Incorporated) Age of Empires III - Complete Collection (HKLM-x32\...\Age of Empires III - Complete Collection_Origami_is1) (Version: 1.0 - R.G. Origami, Seraph1) Aktualizacje NVIDIA 38.0.2.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.2.0 - NVIDIA Corporation) Hidden ApoDispatch Install Configurator (HKLM\...\{25303DC3-94E3-4D1D-9D91-3CC003E7E7FA}) (Version: 2.5.3101 - Nahimic) Hidden Asystent aktualizacji do systemu Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22391 - Microsoft Corporation) AudioLaunchpad Install Configurator (HKLM\...\{A1BED319-9F8A-4467-AAA1-03D8400D42BD}) (Version: 2.5.3101 - Nahimic) Hidden Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software) Call of Duty 2 version 1.3.0.0 (HKLM-x32\...\Call of Duty 2_is1) (Version: 1.3.0.0 - Mr DJ) Cheat Engine 7.0 (HKLM\...\Cheat Engine 7.0_is1) (Version: - Cheat Engine) CheckDevices Install Configurator (HKLM\...\{DD9A1D98-993E-4D80-A71A-86F64281644B}) (Version: 2.5.3101 - Nahimic) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.9.0.0650 - Disc Soft Ltd) Dishonored 2 (HKLM-x32\...\Dishonored 2_is1) (Version: - ) dreamboxEDIT -- The one and only settings editor for your Dreambox (HKLM-x32\...\dreamboxEDIT) (Version: - ) Epic Games Launcher (HKLM-x32\...\{FFE08CF5-9092-48EA-85FD-590725B78B21}) (Version: 1.1.236.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Epson Printer Connection Checker (HKLM-x32\...\{9ABD2971-9B8B-4958-9100-4EAFCC32A86D}) (Version: 3.0.0.0 - Seiko Epson Corporation) Epson Scan 2 (HKLM-x32\...\Epson Scan 2) (Version: - Seiko Epson Corporation) Epson Software Updater (HKLM-x32\...\{FD036A57-F81D-4865-AAF0-811558EA76AE}) (Version: 4.5.1 - Seiko Epson Corporation) EPSON XP-255 257 Series Printer Uninstall (HKLM\...\EPSON XP-255 257 Series) (Version: - Seiko Epson Corporation) EpsonNet Print (HKLM\...\{96ED1D58-440C-4345-8FEE-C4781366C67F}) (Version: 3.1.4.0 - SEIKO EPSON Corporation) FIFA 19 (HKLM-x32\...\{3391E07D-8484-4124-817E-FCBDA859FD62}) (Version: 1.0.61.54442 - Electronic Arts) FIFA 20 (HKLM-x32\...\{9EC414D8-8C49-4310-BCC7-C72AB0776F4C}) (Version: 1.0.63.3957 - Electronic Arts) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 79.0.3945.130 - Google LLC) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.421 - Google LLC) Hidden GTA: San Andreas RIP PT-BR by TemDono - #GTABrasil - BrasNET (HKLM-x32\...\Grand Theft Auto San Andreas_is1) (Version: - TemDono Design 2005) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1068 - Intel Corporation) Intel(R) Network Connections 23.1.100.0 (HKLM\...\PROSetDX) (Version: 23.1.100.0 - Intel) Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.49.166.0 - Intel Corporation) Hidden Intel(R) Trusted Connect Services Client (HKLM-x32\...\{df682aff-4294-4ad1-aaa7-276931d5781f}) (Version: 1.49.166.0 - Intel Corporation) Hidden Intel® Software Guard Extensions Platform Software (HKLM-x32\...\ARP_for_prd_SGX_1.9.100.41172) (Version: 1.9.100.41172 - Intel Corporation) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden LauncherSetup Install (HKLM\...\{05C3421F-09F6-446F-99A4-0C26F85B93B1}) (Version: 2.5.3101 - Nahimic) Hidden Malwarebytes version 4.0.4.49 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.0.4.49 - Malwarebytes) Max Payne (HKLM-x32\...\Max Payne_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91) Max Payne 2 (HKLM-x32\...\Max Payne 2_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91) Metro Exodus (HKLM-x32\...\{F25D08D9-EBE0-4C15-AAD2-50B446E85B17}_is1) (Version: - 4A Games) Microsoft Office Professional Plus 2019 - pl-pl (HKLM\...\ProPlus2019Retail - pl-pl) (Version: 16.0.12325.20344 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1471288753-10138484-638197355-1001\...\OneDriveSetup.exe) (Version: 19.222.1110.0006 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.23.27820 (HKLM-x32\...\{852adda4-4c78-4a38-b583-c0b360a329d6}) (Version: 14.23.27820.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.22.27821 (HKLM-x32\...\{5bfc1380-fd35-4b85-9715-7351535d077e}) (Version: 14.22.27821.0 - Microsoft Corporation) Mozilla Firefox 72.0.2 (x64 pl) (HKLM\...\Mozilla Firefox 72.0.2 (x64 pl)) (Version: 72.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 68.0 - Mozilla) MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) Nahimic 2+ Audio Driver (HKLM\...\{226FAE3E-3E81-42CE-A27B-F9BE8C3C33A6}) (Version: 2.5.3101 - Nahimic) Hidden Nahimic 2+ Audio Driver (HKLM-x32\...\{b08c4225-445c-4e26-9105-3f60e1af6af3}) (Version: 2.5.31 - Nahimic) Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.7.1 - Notepad++ Team) NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden NVIDIA GeForce Experience 3.20.1.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.1.57 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.38.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.21 - NVIDIA Corporation) NVIDIA Sterownik graficzny 441.87 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 441.87 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.12325.20344 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.12325.20344 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0415-1000-0000000FF1CE}) (Version: 16.0.12325.20344 - Microsoft Corporation) Hidden Oprogramowanie mikroukładu Intel® (HKLM-x32\...\{44ded3eb-1686-46a6-9770-fd79096c29f7}) (Version: 10.1.1.45 - Intel(R) Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 10.5.61.37414 - Electronic Arts, Inc.) Overcooked 2 v3.592277 (HKLM-x32\...\tuttop.com Overcooked 2 v3.592277_is1) (Version: 3.592277 - tuttop.com) Panel sterowania NVIDIA 441.87 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 441.87 - NVIDIA Corporation) Hidden PDF Settings (HKLM-x32\...\{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}) (Version: 1.0 - Adobe Systems Incorporated) Hidden Podręczniki firmy EPSON (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.56.1.0 - Seiko Epson Corporation) ProductDaemonSetup Install (HKLM\...\{85BC91DA-EFBB-4023-81C6-716AB6E7A4E7}) (Version: 2.5.3101 - Nahimic) Hidden ProductNS Install Configurator (HKLM\...\{F5BF9B80-2996-4258-A783-F59DA881D232}) (Version: 2.5.3101 - Nahimic) Hidden PuTTY release 0.70 (64-bit) (HKLM\...\{45B3032F-22CC-40CD-9E97-4DA7095FA5A2}) (Version: 0.70.0.0 - Simon Tatham) Quick CPU x64 (HKLM\...\{13829D6B-3A5F-4C93-AFD8-FDA70A8EC9A9}) (Version: 3.1.0.0 - CoderBag) Rayman Legends (HKLM-x32\...\Rayman Legends_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8470 - Realtek Semiconductor Corp.) Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.15.182 - Rockstar Games) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.4.1 - Rockstar Games) SonicMapper Install Configurator (HKLM\...\{55E4C4BD-3948-4A15-84B9-953FE7761E4E}) (Version: 2.5.3101 - Nahimic) Hidden Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.7.64.0 - Safer-Networking Ltd.) Star Wars Jedi Fallen Order (HKLM-x32\...\Star Wars Jedi Fallen Order_is1) (Version: - ) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.2.3 - TeamSpeak Systems GmbH) The Outer Worlds (HKLM-x32\...\The Outer Worlds_is1) (Version: - ) The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.38.49.1020 - Electronic Arts Inc.) UIInstallUpgrade (HKLM\...\{761154E4-849E-47E6-B9FD-D97D10BD9572}) (Version: 2.5.3101 - Nahimic) Hidden Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden Uplay (HKLM-x32\...\Uplay) (Version: 88.0 - Ubisoft) WhatsApp (HKU\S-1-5-21-1471288753-10138484-638197355-1001\...\WhatsApp) (Version: 0.3.2276 - WhatsApp) WinRAR 5.70 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH) WinSCP 5.13.6 (HKLM-x32\...\winscp3_is1) (Version: 5.13.6 - Martin Prikryl) WinToUSB wersja 4.9 (HKLM\...\WinToUSB_is1) (Version: 4.9 - Hasleo Software.) Packages: ========= Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.29.4.0_x86__kgqvnymyfvs32 [2020-01-24] (king.com) Dodatek Aparat multimediów dla aplikacji Zdjęcia -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-11-08] (Microsoft Corporation) Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.1.4081.0_x64__rz1tebttyb220 [2020-01-29] (Dolby Laboratories) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-14] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-14] (Microsoft Corporation) [MS Ad] Microsoft News - Wiadomości -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.34.20074.0_x64__8wekyb3d8bbwe [2020-01-17] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.5.12061.0_x64__8wekyb3d8bbwe [2019-12-12] (Microsoft Studios) [MS Ad] MSN Pogoda -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.34.13393.0_x64__8wekyb3d8bbwe [2019-12-18] (Microsoft Corporation) [MS Ad] Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.95.602.0_x64__mcm4njqhnhss8 [2019-10-25] (Netflix, Inc.) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\mm\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\mm\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\mm\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-06] (AVAST Software s.r.o. -> AVAST Software) ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\mm\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\mm\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\mm\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2019-01-27] (Notepad++ -> ) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-06] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\mm\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku ContextMenuHandlers1: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2018-03-23] (Safer-Networking Ltd. -> Safer-Networking Ltd.) ContextMenuHandlers1: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2018-03-23] (Safer-Networking Ltd. -> Safer-Networking Ltd.) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-03-13] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-03-13] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-10-19] (AVB Disc Soft, SIA -> Disc Soft Ltd) ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\mm\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-06] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-10-19] (AVB Disc Soft, SIA -> Disc Soft Ltd) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-01-21] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\mm\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\mm\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-12-24] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-06] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-01-21] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers6: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2018-03-23] (Safer-Networking Ltd. -> Safer-Networking Ltd.) ContextMenuHandlers6: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2018-03-23] (Safer-Networking Ltd. -> Safer-Networking Ltd.) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-03-13] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-03-13] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Drivers32: [vidc.VP60] => C:\Windows\SysWOW64\vp6vfw.dll [447752 2014-09-17] (Electronic Arts -> On2.com) HKLM\...\Drivers32: [vidc.VP61] => C:\Windows\SysWOW64\vp6vfw.dll [447752 2014-09-17] (Electronic Arts -> On2.com) ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) Shortcut: C:\Users\mm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MaxBatch.lnk -> C:\Program Files (x86)\R.G. Mechanics\Max Payne\MaxPayneSoundPatchv1.12\MaxBatch.bat () ShortcutWithArgument: C:\Users\mm\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default ==================== Załadowane moduły (filtrowane) ============= 2019-09-20 13:37 - 2019-09-20 13:37 - 098275328 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libcef.dll 2019-09-20 13:37 - 2019-09-20 13:37 - 000092672 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libEGL.dll 2019-09-20 13:37 - 2019-09-20 13:37 - 003922432 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libGLESv2.dll 2019-01-02 11:48 - 2020-01-10 22:50 - 000015360 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\libEGL.DLL 2019-01-02 11:48 - 2020-01-10 22:50 - 003090944 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\libGLESv2.dll 2020-01-19 14:19 - 2020-01-19 14:19 - 003156480 _____ () [Brak podpisu cyfrowego] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DotNetCommon\12b5c3871c79019986470826ab7797d9\DotNetCommon.ni.dll 2020-01-19 14:18 - 2020-01-19 14:18 - 004813312 _____ (Disc Soft Ltd) [Brak podpisu cyfrowego] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DiscSoft.NET.Common\18a38a3719fe7389655c792ae66903f6\DiscSoft.NET.Common.ni.dll 2016-09-14 13:31 - 2016-09-14 13:31 - 000500736 ____S (SEIKO EPSON CORPORATION) [Brak podpisu cyfrowego] C:\WINDOWS\System32\enppmon.dll 2019-09-20 13:37 - 2019-09-20 13:37 - 000547840 _____ (The Chromium Authors) [Brak podpisu cyfrowego] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\chrome_elf.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000002560 _____ (The ICU Project) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\icudt58.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 001252864 _____ (The ICU Project) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\icuuc58.dll 2019-01-02 11:48 - 2020-01-10 22:50 - 001277440 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\LIBEAY32.dll 2019-01-02 11:48 - 2020-01-10 22:50 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\ssleay32.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000030208 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\imageformats\qgif.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000032768 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\imageformats\qico.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000256512 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\imageformats\qjpeg.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000026112 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\imageformats\qtga.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000305152 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\imageformats\qtiff.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000025600 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\imageformats\qwbmp.dll 2019-01-02 11:48 - 2020-01-10 22:50 - 000278016 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\mediaservice\dsengine.dll 2019-01-02 11:48 - 2020-01-10 22:50 - 001611264 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\platforms\qwindows.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 005487104 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5Core.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 005841920 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5Gui.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000709120 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5Multimedia.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 001179136 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5Network.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000207360 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5Positioning.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000310272 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5PrintSupport.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 003513344 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5Qml.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 003390976 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5Quick.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000068096 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5QuickWidgets.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000045568 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5TextToSpeech.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000116224 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5WebChannel.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 054071296 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5WebEngineCore.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000211456 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5WebEngineWidgets.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000146432 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5WebSockets.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 005089792 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5Widgets.dll 2020-02-01 18:43 - 2020-01-10 22:50 - 000184832 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5Xml.dll ==================== Alternate Data Streams (filtrowane) ======== ==================== Tryb awaryjny (filtrowane) ================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer - Witryny zaufane i z ograniczeniami ========== ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2018-04-12 00:38 - 2019-01-04 10:26 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files\PuTTY\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-1471288753-10138484-638197355-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\mm\AppData\Roaming\Mozilla\Firefox\Tapeta pulpitu.bmp HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [UDP Query User{B9EDD5BA-572F-4925-A4A9-C0D97E9B4092}C:\windows\files\bin\kmss.exe] => (Allow) C:\windows\files\bin\kmss.exe Brak pliku FirewallRules: [TCP Query User{8F0ABA6A-808A-4282-B3A9-0C4C2CB2536F}C:\windows\files\bin\kmss.exe] => (Allow) C:\windows\files\bin\kmss.exe Brak pliku FirewallRules: [{39CEFBB3-00B1-420A-A5C1-2E3B142891C8}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{2280C9D4-947C-4B3A-B34B-73C8C08C4C07}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{2BB52BA2-62CB-49F1-89D2-EEDBA76DB98F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{6B8D8566-BD17-490E-9558-EB52C7E610C4}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{296BB265-DAE4-4054-9E53-A2D41EF55D2F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{E579E562-8C30-4CC4-826B-1B45446495D9}C:\program files (x86)\star wars jedi fallen order\swgame\binaries\win64\starwarsjedifallenorder.exe] => (Allow) C:\program files (x86)\star wars jedi fallen order\swgame\binaries\win64\starwarsjedifallenorder.exe (Respawn Entertainment) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{D0BBFACE-70E9-4C32-A980-2DD53F504C5F}C:\program files (x86)\star wars jedi fallen order\swgame\binaries\win64\starwarsjedifallenorder.exe] => (Allow) C:\program files (x86)\star wars jedi fallen order\swgame\binaries\win64\starwarsjedifallenorder.exe (Respawn Entertainment) [Brak podpisu cyfrowego] FirewallRules: [UDP Query User{00C883CB-21D3-412B-9464-C174F7751894}C:\program files\epic games\reddeadredemption2\rdr2.exe] => (Allow) C:\program files\epic games\reddeadredemption2\rdr2.exe Brak pliku FirewallRules: [TCP Query User{4D8BFE86-DDCF-4A1A-8DFC-9C0EF16E3215}C:\program files\epic games\reddeadredemption2\rdr2.exe] => (Allow) C:\program files\epic games\reddeadredemption2\rdr2.exe Brak pliku FirewallRules: [UDP Query User{B033C44C-E7BC-46B3-A115-D598635F250C}C:\program files\epic games\reddeadredemption2\rdr2.exe] => (Allow) C:\program files\epic games\reddeadredemption2\rdr2.exe Brak pliku FirewallRules: [TCP Query User{4A871C5E-C7F4-4D8B-9A94-300D4889AE6F}C:\program files\epic games\reddeadredemption2\rdr2.exe] => (Allow) C:\program files\epic games\reddeadredemption2\rdr2.exe Brak pliku FirewallRules: [{CA95760B-4C60-4F95-8395-C12CDC67AA48}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{8816DC21-ED3B-4C3A-88B7-5B0DEA577259}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{59C8E1BD-B3FA-4C98-AF6A-298EF61C3F06}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{A4AC30C3-AA0F-472E-92F4-47A2DCCAD90B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [UDP Query User{1DF759BE-9B2E-4BCC-A4B8-8D56EE86C74A}C:\program files (x86)\origin games\fifa 20\fifa20.exe] => (Allow) C:\program files (x86)\origin games\fifa 20\fifa20.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [TCP Query User{6A74E3F0-C79F-4288-97AC-CCF42E718F6F}C:\program files (x86)\origin games\fifa 20\fifa20.exe] => (Allow) C:\program files (x86)\origin games\fifa 20\fifa20.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{1847E708-AC7D-496D-9188-8BBFBA6BF925}] => (Allow) C:\Users\mm\AppData\Local\Temp\EpInsNav\DL\3013\Network\EpsonNetSetup\Data\ENEasyApp.exe Brak pliku FirewallRules: [{93556ABA-D9A1-4B0A-9133-F316C1419E7D}] => (Allow) C:\Users\mm\AppData\Local\Temp\EpInsNav\DL\3013\Network\EpsonNetSetup\Data\ENEasyApp.exe Brak pliku FirewallRules: [UDP Query User{554663BF-A64A-4382-8135-53938797BCC5}C:\program files (x86)\steams\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steams\steamapps\common\grand theft auto v\gta5.exe Brak pliku FirewallRules: [TCP Query User{08064BEA-14EB-49A9-A087-B8CC5862F127}C:\program files (x86)\steams\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steams\steamapps\common\grand theft auto v\gta5.exe Brak pliku FirewallRules: [{DB47BFD2-922B-4251-8864-1873A537D246}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 19\FIFASetup\fifaconfig.exe Brak pliku FirewallRules: [{F0838197-3119-4D43-9FF5-C8EAF928FE15}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 19\FIFASetup\fifaconfig.exe Brak pliku FirewallRules: [{BA1AC557-7518-43E6-914D-591BA2BDA1EB}] => (Allow) C:\Program Files (x86)\Mr DJ\Call of Duty 2\CoD2SP_s.exe () [Brak podpisu cyfrowego] FirewallRules: [{F07FD5D7-E889-4086-945E-DEBC278F511B}] => (Allow) C:\Program Files (x86)\Mr DJ\Call of Duty 2\CoD2SP_s.exe () [Brak podpisu cyfrowego] FirewallRules: [{6D1D4A04-C55C-45DF-9709-B49D9F9312EF}] => (Allow) C:\Program Files (x86)\Steams\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe Brak pliku FirewallRules: [{34675031-C6CB-424B-ABE9-3F20A28100DC}] => (Allow) C:\Program Files (x86)\Steams\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe Brak pliku FirewallRules: [{61404CB4-CE5C-45F4-9BFE-4D55E72DB637}] => (Allow) C:\Program Files (x86)\The Sims 4\Game\Bin\TS4_x64.exe Brak pliku FirewallRules: [{0902158E-C440-4951-AB32-41825F6B9131}] => (Allow) C:\Program Files (x86)\The Sims 4\Game\Bin\TS4_x64.exe Brak pliku FirewallRules: [{F28DBB5D-8953-431C-9896-9400A1ED247E}] => (Allow) C:\Program Files (x86)\The Sims 4\Game\Bin\TS4.exe Brak pliku FirewallRules: [{33F7E3F7-C91B-416D-839E-AC63F785534D}] => (Allow) C:\Program Files (x86)\The Sims 4\Game\Bin\TS4.exe Brak pliku FirewallRules: [UDP Query User{282B00D9-997D-4299-AE7E-0ED2A8622D7E}C:\program files (x86)\origin games\fifa 19\fifa19.exe] => (Allow) C:\program files (x86)\origin games\fifa 19\fifa19.exe Brak pliku FirewallRules: [TCP Query User{7E65F116-2297-411E-93AB-FFCACB231A07}C:\program files (x86)\origin games\fifa 19\fifa19.exe] => (Allow) C:\program files (x86)\origin games\fifa 19\fifa19.exe Brak pliku FirewallRules: [{2A7A48F2-1C75-4F95-A94A-B6BE25570A23}] => (Allow) C:\Program Files (x86)\Steams\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{C140B954-A47A-42F0-96D9-65FD18510A50}] => (Allow) C:\Program Files (x86)\Steams\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{58F7C5FE-7128-4088-A1CD-8437BDD2A783}] => (Allow) C:\Program Files (x86)\Steams\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{C2B13CA1-5F9C-45D5-911D-BD36A548516B}] => (Allow) C:\Program Files (x86)\Steams\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{44B3DE7E-D390-447F-A62E-50BC8B1BC970}] => (Allow) C:\Program Files (x86)\Steams\bin\cef\cef.win7\steamwebhelper.exe Brak pliku FirewallRules: [{010B2BB3-A849-4C91-B4AC-F36300934CBC}] => (Allow) C:\Program Files (x86)\Steams\bin\cef\cef.win7\steamwebhelper.exe Brak pliku FirewallRules: [{BC3CCC6E-1569-459B-A3AB-13E40DD8466B}] => (Allow) C:\Program Files (x86)\Steams\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{47C32515-D9F6-442E-B4DB-37A2862DB973}] => (Allow) C:\Program Files (x86)\Steams\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{21A013E6-0977-4D2F-9E8A-21BA70D73B18}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\grid 2\grid2.exe Brak pliku FirewallRules: [{5591CC7D-17E8-442B-98AD-3D7334A1706B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\grid 2\grid2.exe Brak pliku FirewallRules: [{82DC52F5-8BC6-40AB-AD75-96F26E2BF575}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 19\FIFASetup\fifaconfig.exe Brak pliku FirewallRules: [{221245A8-9DD0-464C-A24A-C6A7B7D2C76A}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 19\FIFASetup\fifaconfig.exe Brak pliku FirewallRules: [{8380F69D-A6C3-4C2D-965B-1A94F0D6040E}] => (Allow) C:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe Brak pliku FirewallRules: [{03D5C822-3971-4454-A3DF-87055601CBC8}] => (Allow) C:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe Brak pliku FirewallRules: [UDP Query User{77D7B9C1-8166-4C53-A940-AD3526DFA2D1}C:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) C:\program files (x86)\origin games\apex\r5apex.exe Brak pliku FirewallRules: [TCP Query User{31DD4F6A-0C14-43AC-B4C4-089F0B4CBA9D}C:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) C:\program files (x86)\origin games\apex\r5apex.exe Brak pliku FirewallRules: [{3D831CEF-66D3-4404-8A69-8A848D7DA566}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Worms Armageddon\WA.exe Brak pliku FirewallRules: [{79DABE3F-5F67-4AAF-97A1-DD79524B0C0A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Worms Armageddon\WA.exe Brak pliku FirewallRules: [UDP Query User{14A1D14E-9D3F-4D20-AC0E-E60FF468D030}C:\program files (x86)\steam\steamapps\common\kholat\kholat\binaries\win64\kholat-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\kholat\kholat\binaries\win64\kholat-win64-shipping.exe Brak pliku FirewallRules: [TCP Query User{6B459689-ADAB-4DEF-A989-059E9BD747B2}C:\program files (x86)\steam\steamapps\common\kholat\kholat\binaries\win64\kholat-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\kholat\kholat\binaries\win64\kholat-win64-shipping.exe Brak pliku FirewallRules: [{D25EAC10-E8D6-4543-B6C8-CBB6A63196AC}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe Brak pliku FirewallRules: [{70E239B4-9501-4A71-B731-5629AAB7713B}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe Brak pliku FirewallRules: [UDP Query User{07066612-CAC9-4609-944D-375018E7412D}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe Brak pliku FirewallRules: [TCP Query User{BE361F9F-6150-4976-A2D1-1F092854332D}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe Brak pliku FirewallRules: [UDP Query User{FA308FA1-EDD0-4BA5-8E69-7594548A48F3}C:\program files (x86)\origin games\fifa 19\fifa19.exe] => (Allow) C:\program files (x86)\origin games\fifa 19\fifa19.exe Brak pliku FirewallRules: [TCP Query User{1262DF9B-AF45-44FB-BF19-8C6517214C0E}C:\program files (x86)\origin games\fifa 19\fifa19.exe] => (Allow) C:\program files (x86)\origin games\fifa 19\fifa19.exe Brak pliku FirewallRules: [{30CC21E0-579A-4D57-B9A2-3EBE85B01DC9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe Brak pliku FirewallRules: [{0EEA216B-7E54-4B9C-BAAB-F3F9CAB706CE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe Brak pliku FirewallRules: [{865931A4-43D1-423D-B137-743061508DA2}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) FirewallRules: [{01AB9F35-C09F-4C9A-B7DA-A03D60297F34}] => (Allow) C:\Users\mm\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{F63DDAAC-9BA5-458F-9691-03DAE3F792FF}] => (Allow) C:\Users\mm\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{89CC3D12-E9F2-4C4F-9080-45B9716934EC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{E2879507-D51B-49E8-B85F-DC5A08854EF4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{D52DC8E6-37B5-4828-A25D-2FAC9C92ED14}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe Brak pliku FirewallRules: [{25FBFDC1-2CF6-4BAA-9F84-D781AB41B469}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe Brak pliku FirewallRules: [{90EFDF01-8FF6-441A-87ED-8EC4B07B4393}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Brak pliku FirewallRules: [{93A7CAA3-DB46-431E-BF40-3A6CD98B6391}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Brak pliku FirewallRules: [{75913FF8-C8D0-4A41-AE45-24195A680E33}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe Brak pliku FirewallRules: [{BC06E249-A273-49D6-B904-84EFA060FB3A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe Brak pliku FirewallRules: [{43F1CD9B-3DD3-497B-8260-1266ED700683}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{52769A60-A6AE-4D69-9308-00244323ECD4}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{6C589A5D-D4C3-47EC-BFF1-1869A088263C}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 20\FIFASetup\fifaconfig.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{8FD167DF-67D2-40FE-8EC1-797369DF916E}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 20\FIFASetup\fifaconfig.exe (Electronic Arts, Inc. -> Electronic Arts) StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Punkty Przywracania systemu ========================= 29-01-2020 16:46:44 Zaplanowany punkt kontrolny ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ Name: Standardowa klawiatura PS/2 Description: Standardowa klawiatura PS/2 Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318} Manufacturer: (Klawiatury standardowe) Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Mysz Microsoft PS/2 Description: Mysz Microsoft PS/2 Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (02/03/2020 10:31:29 AM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (5236,R,98) TILEREPOSITORYS-1-5-18: Wystąpił błąd -1023 (0xfffffc01) podczas otwierania pliku dziennika C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (02/02/2020 08:31:39 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: AUDIODG.EXE, wersja: 10.0.18362.449, sygnatura czasowa: 0xd42474b6 Nazwa modułu powodującego błąd: NAHIMICV3apo.dll, wersja: 10.0.10011.16384, sygnatura czasowa: 0x595e4369 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000379f91 Identyfikator procesu powodującego błąd: 0x5d4 Godzina uruchomienia aplikacji powodującej błąd: 0x01d5d9ff63a12137 Ścieżka aplikacji powodującej błąd: C:\WINDOWS\system32\AUDIODG.EXE Ścieżka modułu powodującego błąd: C:\WINDOWS\system32\NAHIMICV3apo.dll Identyfikator raportu: 4fc9c7f5-fc21-4e31-9c01-3b856cb6062a Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (02/02/2020 06:07:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: AUDIODG.EXE, wersja: 10.0.18362.449, sygnatura czasowa: 0xd42474b6 Nazwa modułu powodującego błąd: NAHIMICV3apo.dll, wersja: 10.0.10011.16384, sygnatura czasowa: 0x595e4369 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000379f91 Identyfikator procesu powodującego błąd: 0x29a4 Godzina uruchomienia aplikacji powodującej błąd: 0x01d5d9eb219f9e9e Ścieżka aplikacji powodującej błąd: C:\WINDOWS\system32\AUDIODG.EXE Ścieżka modułu powodującego błąd: C:\WINDOWS\system32\NAHIMICV3apo.dll Identyfikator raportu: 4eefb6b7-5e59-4522-92b1-ec668009e36d Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (02/02/2020 05:59:14 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (12372,R,98) TILEREPOSITORYS-1-5-18: Wystąpił błąd -1023 (0xfffffc01) podczas otwierania pliku dziennika C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (02/02/2020 05:49:41 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (9704,R,98) TILEREPOSITORYS-1-5-18: Wystąpił błąd -1023 (0xfffffc01) podczas otwierania pliku dziennika C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (02/02/2020 05:17:12 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (2540,R,98) TILEREPOSITORYS-1-5-18: Wystąpił błąd -1023 (0xfffffc01) podczas otwierania pliku dziennika C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (02/02/2020 04:59:03 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (11116,R,98) TILEREPOSITORYS-1-5-18: Wystąpił błąd -1023 (0xfffffc01) podczas otwierania pliku dziennika C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (02/02/2020 04:39:41 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (2560,R,98) TILEREPOSITORYS-1-5-18: Wystąpił błąd -1023 (0xfffffc01) podczas otwierania pliku dziennika C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Dziennik System: ============= Error: (02/03/2020 10:23:12 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 00:24:35 na ‎03.‎02.‎2020 było nieoczekiwane. Error: (02/01/2020 07:49:00 PM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {354FF91B-5E49-4BDC-A8E6-1CB6C6877182} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/01/2020 07:49:00 PM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {354FF91B-5E49-4BDC-A8E6-1CB6C6877182} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/01/2020 07:49:00 PM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {354FF91B-5E49-4BDC-A8E6-1CB6C6877182} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/01/2020 07:49:00 PM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {354FF91B-5E49-4BDC-A8E6-1CB6C6877182} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/01/2020 07:49:00 PM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {354FF91B-5E49-4BDC-A8E6-1CB6C6877182} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/01/2020 07:49:00 PM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {354FF91B-5E49-4BDC-A8E6-1CB6C6877182} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/01/2020 07:49:00 PM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {354FF91B-5E49-4BDC-A8E6-1CB6C6877182} nie zarejestrował się w modelu DCOM w wymaganym czasie. Windows Defender: =================================== Date: 2020-01-28 16:30:00.871 Description: Produkt Program antywirusowy Windows Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie. Aby uzyskać więcej informacji, zobacz: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Tiggre!rfn&threatid=2147723625&enterprise=0 Nazwa: Trojan:Win32/Tiggre!rfn Identyfikator: 2147723625 Ważność: Poważny Kategoria: Koń trojański Ścieżka: file:_E:\AutoPlay\Docs\MP1.exe Pochodzenie wykrycia: Komputer lokalny Typ wykrycia: Konkretne Źródło wykrycia: Ochrona w czasie rzeczywistym Użytkownik: DESKTOP-9UV4032\mm Nazwa procesu: E:\autorun.exe Wersja analizy zabezpieczeń: AV: 1.307.3172.0, AS: 1.307.3172.0, NIS: 1.307.3172.0 Wersja aparatu: AM: 1.1.16600.7, NIS: 1.1.16600.7 Date: 2020-01-24 23:08:40.531 Description: Produkt Program antywirusowy Windows Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie. Aby uzyskać więcej informacji, zobacz: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Tiggre!rfn&threatid=2147723625&enterprise=0 Nazwa: Trojan:Win32/Tiggre!rfn Identyfikator: 2147723625 Ważność: Poważny Kategoria: Koń trojański Ścieżka: file:_C:\Users\mm\Downloads\Infected.Shelter-SiMPLEX\SiMPLEX.exe Pochodzenie wykrycia: Komputer lokalny Typ wykrycia: Konkretne Źródło wykrycia: System Użytkownik: ZARZĄDZANIE NT\SYSTEM Nazwa procesu: Unknown Wersja analizy zabezpieczeń: AV: 1.307.2752.0, AS: 1.307.2752.0, NIS: 1.307.2752.0 Wersja aparatu: AM: 1.1.16600.7, NIS: 1.1.16600.7 Date: 2020-01-24 23:08:30.068 Description: Produkt Program antywirusowy Windows Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie. Aby uzyskać więcej informacji, zobacz: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Tiggre!rfn&threatid=2147723625&enterprise=0 Nazwa: Trojan:Win32/Tiggre!rfn Identyfikator: 2147723625 Ważność: Poważny Kategoria: Koń trojański Ścieżka: file:_C:\Users\mm\Downloads\Infected.Shelter-SiMPLEX\SiMPLEX.exe Pochodzenie wykrycia: Komputer lokalny Typ wykrycia: Konkretne Źródło wykrycia: System Użytkownik: ZARZĄDZANIE NT\SYSTEM Nazwa procesu: Unknown Wersja analizy zabezpieczeń: AV: 1.307.2752.0, AS: 1.307.2752.0, NIS: 1.307.2752.0 Wersja aparatu: AM: 1.1.16600.7, NIS: 1.1.16600.7 Date: 2020-01-24 23:08:21.384 Description: Produkt Program antywirusowy Windows Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie. Aby uzyskać więcej informacji, zobacz: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Tiggre!rfn&threatid=2147723625&enterprise=0 Nazwa: Trojan:Win32/Tiggre!rfn Identyfikator: 2147723625 Ważność: Poważny Kategoria: Koń trojański Ścieżka: file:_C:\Users\mm\Downloads\Infected.Shelter-SiMPLEX\SiMPLEX.exe Pochodzenie wykrycia: Komputer lokalny Typ wykrycia: Konkretne Źródło wykrycia: Ochrona w czasie rzeczywistym Użytkownik: DESKTOP-9UV4032\mm Nazwa procesu: C:\Users\mm\AppData\Roaming\uTorrent\uTorrent.exe Wersja analizy zabezpieczeń: AV: 1.307.2752.0, AS: 1.307.2752.0, NIS: 1.307.2752.0 Wersja aparatu: AM: 1.1.16600.7, NIS: 1.1.16600.7 Date: 2020-01-24 23:08:00.038 Description: Produkt Program antywirusowy Windows Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie. Aby uzyskać więcej informacji, zobacz: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Tiggre!rfn&threatid=2147723625&enterprise=0 Nazwa: Trojan:Win32/Tiggre!rfn Identyfikator: 2147723625 Ważność: Poważny Kategoria: Koń trojański Ścieżka: file:_C:\Users\mm\Downloads\Infected.Shelter-SiMPLEX\SiMPLEX.exe Pochodzenie wykrycia: Komputer lokalny Typ wykrycia: Konkretne Źródło wykrycia: Ochrona w czasie rzeczywistym Użytkownik: DESKTOP-9UV4032\mm Nazwa procesu: C:\Windows\explorer.exe Wersja analizy zabezpieczeń: AV: 1.307.2752.0, AS: 1.307.2752.0, NIS: 1.307.2752.0 Wersja aparatu: AM: 1.1.16600.7, NIS: 1.1.16600.7 CodeIntegrity: =================================== Date: 2020-02-03 10:24:16.443 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-02-03 10:24:16.432 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-02-03 10:24:16.420 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-02-03 10:24:16.409 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-02-03 10:24:16.397 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-02-03 10:24:16.384 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-02-03 10:24:16.373 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-02-03 10:24:16.362 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. ==================== Statystyki pamięci =========================== BIOS: American Megatrends Inc. 1.10 02/06/2017 Płyta główna: MSI B250 GAMING PRO CARBON (MS-7A64) Procesor: Intel(R) Core(TM) i5-7600K CPU @ 3.80GHz Procent pamięci w użyciu: 46% Całkowita pamięć fizyczna: 16342.32 MB Dostępna pamięć fizyczna: 8705.34 MB Całkowita pamięć wirtualna: 18774.32 MB Dostępna pamięć wirtualna: 6642.42 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:464.64 GB) (Free:125.79 GB) NTFS Drive e: (Max_Payne_Dilogy) (CDROM) (Total:2.09 GB) (Free:0 GB) CDFS \\?\Volume{7b89e309-0daa-4016-b322-339648217695}\ (Odzyskiwanie) (Fixed) (Total:0.49 GB) (Free:0.12 GB) NTFS \\?\Volume{20f27d94-14d0-4180-b464-d3a183f77db0}\ () (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS \\?\Volume{78737efa-daa0-4ac1-9e7b-ef85895ae05f}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 \\?\Volume{14c31434-fffb-11e8-b472-4ccc6abd042e}\ () (CDROM) (Total:0 GB) (Free:0 GB) \\?\Volume{14c31b6f-fffb-11e8-b472-4ccc6abd042e}\ () (CDROM) (Total:0 GB) (Free:0 GB) ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: A790C7BA) Partition: GPT. ==================== Koniec Addition.txt =======================