Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x86) Wersja: 02-02-2020 02 Uruchomiony przez SKP (06-02-2020 14:58:28) Uruchomiony z C:\Users\SKP\Desktop Microsoft Windows 7 Home Premium Service Pack 1 (X86) (2012-06-19 11:22:29) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-954639384-3558611586-2921392561-500 - Administrator - Disabled) Gość (S-1-5-21-954639384-3558611586-2921392561-501 - Limited - Enabled) => C:\Users\Gość HomeGroupUser$ (S-1-5-21-954639384-3558611586-2921392561-1008 - Limited - Enabled) SKP (S-1-5-21-954639384-3558611586-2921392561-1000 - Administrator - Enabled) => C:\Users\SKP ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 2DDR - wersja 1.0.1 (HKLM\...\2DDR_is1) (Version: - ) Adobe Acrobat Reader DC - Polish (HKLM\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 19.021.20061 - Adobe Systems Incorporated) Adobe Flash Player 32 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 32.0.0.321 - Adobe) Adobe Flash Player 32 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 32.0.0.321 - Adobe) Adobe Shockwave Player 12.2 (HKLM\...\Adobe Shockwave Player) (Version: 12.2.5.195 - Adobe Systems, Inc.) Adobe SVG Viewer 3.0 (HKLM\...\Adobe SVG Viewer) (Version: 3.0 - Adobe Systems, Inc.) AMX530 ver. 4.07 (HKLM\...\AMX530_is1) (Version: - Automex Sp. z o.o.) Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software) CCleaner (HKLM\...\CCleaner) (Version: 5.63 - Piriform) Centrum obsługi urządzeń z systemem Windows Mobile (HKLM\...\{904CCF62-818D-4675-BC76-D37EB399F917}) (Version: 6.1.6965.0 - Microsoft Corporation) CEPiK Uploader wersja 1.1.1.3 (HKU\S-1-5-21-954639384-3558611586-2921392561-1000\...\{794F2909-AF78-41DB-B895-801DB0EA13F1}_is1) (Version: 1.1.1.3 - Instytut Transportu Samochodowego) Cisco Systems VPN Client 5.0.07.0410 (HKLM\...\{1CE60928-8325-49A8-8B06-633E48DD2B67}) (Version: 5.0.7 - Cisco Systems, Inc.) ClocX (1.5b2) (HKLM\...\ClocX) (Version: - ) Document Express DjVu Plug-in (HKLM\...\{4AADE2ED-9FED-479E-9FB7-CEE4FB6ACDA0}) (Version: 6.1.35472 - Cuminas Corporation) DRUKI Gofin 3.6.52.0 (HKLM\...\{c384fdf5-173f-4329-b59e-26a98703651f}) (Version: 3.6.52.0 - Wydawnictwo Podatkowe GOFIN sp. z o.o.) DRUKI Gofin 3.6.52.0 (HKLM\...\{F07DC21D-B1A3-48DE-BD7C-567828F0E2EA}) (Version: 3.6.52.0 - Wydawnictwo Podatkowe GOFIN sp. z o.o.) Hidden eLearn CDROM 1.0 (HKLM\...\eLearn 1.2.1_is1) (Version: - FIAT Auto S.p.A.) ENCARD 4.0 (HKLM\...\{3DB82539-35D1-481A-B0C3-256939DF2C17}) (Version: 4.0.14.96 - Enigma Systemy Ochrony Informacji Sp. z o.o.) FTDI FTD2XX USB Drivers (HKLM\...\FTD2XX) (Version: - ) GemPcCCID (HKLM\...\{8BD3AFAF-636E-4516-A7E8-D57CCDBE28B8}) (Version: 2.0.1 - Gemalto) Intel(R) Control Center (HKLM\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.4229 - Intel Corporation) Java 8 Update 221 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180221F0}) (Version: 8.0.2210.11 - Oracle Corporation) Katalog 2017 (HKLM\...\{B6FBB228-A90D-4EAB-9B1F-F61E3A2435D3}) (Version: 1.3.0 - COIDE2017) Klient JPK 2.0 (HKLM\...\{E7A7C846-8A41-459B-8F0B-110E4F98CD6F}) (Version: 1.0.4.0 - Aplikacje Krytyczne sp. z o. o.) K-Lite Codec Pack 9.3.0 (Full) (HKLM\...\KLiteCodecPack_is1) (Version: 9.3.0 - ) LaserJet 1020 series (HKLM\...\HP-LaserJet 1020 series) (Version: - ) LibreOffice 5.3 Help Pack (Polish) (HKLM\...\{C8CF30AC-C166-403E-B0C2-9984B9E07BB6}) (Version: 5.3.6.1 - The Document Foundation) LibreOffice 5.3.6.1 (HKLM\...\{A253D1A0-E992-4275-A420-CD1E84437BDF}) (Version: 5.3.6.1 - The Document Foundation) Malwarebytes version 4.0.4.49 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.0.4.49 - Malwarebytes) Microsoft .NET Framework 4.6.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.7 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.02053 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Mozilla Firefox 68.4.2 ESR (x86 pl) (HKLM\...\Mozilla Firefox 68.4.2 ESR (x86 pl)) (Version: 68.4.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 68.4.2.7321 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Nero 8 (HKLM\...\{D6D5CB84-0E6E-4E69-B300-C690B6911045}) (Version: 8.3.38 - Nero AG) OrderReminder HP LaserJet 1020 (HKLM\...\OrderReminder HP LaserJet 1020) (Version: 2.0 - ) PATRONAT7 (HKLM\...\{2170D74F-E036-48AD-B7CD-56257F327DAD}) (Version: 7.1 - PATRONAT7-UPGRADE) Realtek Ethernet Controller Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6521 - Realtek Semiconductor Corp.) swMSM (HKLM\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TeamViewer (HKLM\...\TeamViewer) (Version: 15.1.3937 - TeamViewer) USBCOMInstaller (HKLM\...\{62B1287B-4F4F-45A1-A534-BEDB5F7E04ED}) (Version: 6.3.0 - Datalogic) VCRedistSetup (HKLM\...\{3921A67A-5AB1-4E48-9444-C71814CF3027}) (Version: 1.0.0 - Nero AG) Hidden Winki (HKLM\...\{81CF5153-38CF-41e2-AC3C-3D477C987D96}_is1) (Version: 3.2.116 - MSI) WinRAR 5.70 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH) XML Copy Editor version 1.2.1.3 (HKLM\...\XML Copy Editor_is1) (Version: 1.2.1.3 - Zane U. Ji) ZTE MF823 (HKLM\...\{AEFF9E60-3E93-41EE-9895-311F7D1C5FFD}) (Version: 1.0.0.2 - ZTE Corporation) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software) ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => -> Brak pliku ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2015-06-01] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (filtrowane) ==================== ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":: WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99] WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate] Shortcut: C:\Users\SKP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ministerstwo Finansów\Aplikacje Krytyczne sp. z o. o..lnk -> hxxp://akmf.pl Shortcut: C:\Users\SKP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ministerstwo Finansów\Jednolity Plik Kontrolny.lnk -> hxxp://www.mf.gov.pl/kontrola-skarbowa/dzialalnosc/jednolity-plik-kontroln Shortcut: C:\Users\SKP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ministerstwo Finansów\Ministerstwo Finansów.lnk -> hxxp://www.mf.gov.pl ShortcutWithArgument: C:\Users\SKP\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\ZTE MF823.lnk -> C:\Program Files\ZTE MF823\LaunchWebUI.exe () -> hxxp://m.home ==================== Załadowane moduły (filtrowane) ============= 2017-11-13 07:18 - 2017-07-19 12:27 - 000386935 _____ () [Brak podpisu cyfrowego] C:\CEPIK2\openssl\bin\pkcs11.dll 2017-11-13 07:17 - 2017-11-02 08:24 - 000602957 _____ () [Brak podpisu cyfrowego] C:\DIAGOGOL\LIBCURL-4.DLL 2012-06-20 06:03 - 1999-11-12 04:11 - 000101376 _____ () [Brak podpisu cyfrowego] C:\Program Files\Common Files\Borland Shared\BDE\BANTAM.DLL 2012-06-20 06:03 - 1999-11-12 04:11 - 000589312 _____ () [Brak podpisu cyfrowego] C:\Program Files\Common Files\Borland Shared\BDE\IDAPI32.DLL 2012-06-20 06:03 - 1999-11-12 04:11 - 000139264 _____ () [Brak podpisu cyfrowego] C:\Program Files\Common Files\Borland Shared\BDE\idbat32.DLL 2012-06-20 06:03 - 1999-11-12 04:11 - 000255488 _____ () [Brak podpisu cyfrowego] C:\Program Files\Common Files\Borland Shared\BDE\IDPDX32.DLL 2012-06-20 06:03 - 1999-11-12 04:11 - 000116736 _____ () [Brak podpisu cyfrowego] C:\Program Files\Common Files\Borland Shared\BDE\IDR20009.DLL 2012-06-20 06:03 - 1999-11-12 04:11 - 000464896 _____ () [Brak podpisu cyfrowego] C:\Program Files\Common Files\Borland Shared\BDE\idsql32.DLL 2012-06-19 12:38 - 2011-07-06 05:38 - 001892352 ____R (Apache Software Foundation) [Brak podpisu cyfrowego] C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\xerces-c_2_7.dll 2011-05-29 09:44 - 2011-05-29 09:44 - 000167936 _____ (ENIGMA Systemy Ochrony Informacji Sp. z o.o.) [Brak podpisu cyfrowego] C:\Program Files\ENCARD\encardcsp.dll 2017-11-13 07:18 - 2017-11-11 12:23 - 003393536 _____ (Instytut Transportu Samochodowego) [Brak podpisu cyfrowego] C:\CEPIK2\openssl\bin\CepikUploaderCfg.dll 2012-06-19 12:38 - 2011-07-06 05:29 - 000069632 ____R (Intel Corporation) [Brak podpisu cyfrowego] C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\StatusStrings.dll 2017-11-13 07:17 - 2017-05-30 12:35 - 002585139 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\DIAGOGOL\LIBEAY32.dll 2017-11-13 07:17 - 2017-05-30 12:35 - 000582318 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\DIAGOGOL\SSLEAY32.dll ==================== Alternate Data Streams (filtrowane) ======== ==================== Tryb awaryjny (filtrowane) ================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer - Witryny zaufane i z ograniczeniami ========== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE trusted site: HKU\S-1-5-21-954639384-3558611586-2921392561-1000\...\amazon.com -> hxxps://amazon.com ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:04 - 2019-01-04 11:07 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Cuminas\Document Express DjVu Plug-in\;C:\Program Files\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\ENCARD\ HKU\S-1-5-21-954639384-3558611586-2921392561-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\SKP\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: bthserv => 3 MSCONFIG\Services: Fax => 3 MSCONFIG\Services: MBAMService => 2 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^VPN Client.lnk => C:\Windows\pss\VPN Client.lnk.CommonStartup MSCONFIG\startupreg: CancelAutoPlay_df => "C:\Program Files\ZTE MF823\CancelAutoPlay_df.exe" run MSCONFIG\startupreg: CCleaner Smart Cleaning => "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR MSCONFIG\startupreg: CheckNDISPortF0ac70 => C:\Program Files\ZTE MF823\CheckNDISPort_df.exe MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: Windows Mobile Device Center => %windir%\WindowsMobile\wmdc.exe ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{CA56609A-3DA0-4ED3-A6A3-7E2FD8416B60}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{6FC327BB-B756-4A8C-B7E2-F953F59F0E4B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{98324667-BF97-4272-98AE-A7D245A212F3}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{C31FE317-22A0-419E-B8A7-34B0AE1B5F01}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{C2D5365A-DD6E-48E6-BB66-59F6043AFB7D}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{5E5FFE02-2093-4677-854D-754E8BC6D983}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd) FirewallRules: [{76528CA9-033D-4C1B-8A36-5740E02EF459}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd) FirewallRules: [{EFDD2BA2-EAE8-4FB9-AD6B-08C35BFBE375}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer Germany GmbH) FirewallRules: [{59E1D4CA-DE1E-4FFB-853C-819AF076254C}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer Germany GmbH) FirewallRules: [{8E1A3650-B2A6-488C-89C2-7B006B176000}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer Germany GmbH) FirewallRules: [{760DF26A-C629-44EC-856C-B105FF5EE472}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer Germany GmbH) ==================== Punkty Przywracania systemu ========================= 30-10-2019 09:35:46 DRUKI Gofin 3.6.52.0 05-11-2019 06:49:34 Kopia zapasowa systemu Windows 12-11-2019 06:54:16 Kopia zapasowa systemu Windows 18-11-2019 06:50:40 Kopia zapasowa systemu Windows 25-11-2019 07:01:45 Kopia zapasowa systemu Windows 02-12-2019 07:04:31 Kopia zapasowa systemu Windows 09-12-2019 06:58:33 Kopia zapasowa systemu Windows 16-12-2019 06:54:28 Kopia zapasowa systemu Windows 23-12-2019 06:47:49 Kopia zapasowa systemu Windows 30-12-2019 06:59:33 Kopia zapasowa systemu Windows 07-01-2020 07:16:53 Kopia zapasowa systemu Windows 13-01-2020 06:45:47 Kopia zapasowa systemu Windows 20-01-2020 06:46:41 Kopia zapasowa systemu Windows 28-01-2020 06:57:18 Kopia zapasowa systemu Windows 03-02-2020 06:52:36 Kopia zapasowa systemu Windows ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ Name: Standardowa klawiatura PS/2 Description: Standardowa klawiatura PS/2 Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318} Manufacturer: (Klawiatury standardowe) Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Cisco Systems VPN Adapter Description: Cisco Systems VPN Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Cisco Systems Service: CVirtA Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Mysz Microsoft PS/2 Description: Mysz Microsoft PS/2 Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (02/06/2020 02:46:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/06/2020 06:32:44 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/05/2020 03:24:11 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/05/2020 06:34:52 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/04/2020 08:59:15 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/04/2020 06:34:22 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/03/2020 06:36:59 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/01/2020 06:50:37 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Dziennik System: ============= Error: (02/06/2020 02:43:39 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) Management and Security Application User Notification Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (02/06/2020 02:43:36 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (02/06/2020 02:43:36 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Cisco Systems, Inc. VPN Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (02/06/2020 02:43:36 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Adobe Acrobat Update Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (02/05/2020 08:51:15 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: Serwer {F9717507-6651-4EDB-BFF7-AE615179BCCF} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/05/2020 04:25:18 PM) (Source: Schannel) (EventID: 4119) (User: ZARZĄDZANIE NT) Description: Odebrano następujący alert krytyczny: 20. Error: (02/05/2020 03:22:10 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: Serwer {F9717507-6651-4EDB-BFF7-AE615179BCCF} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/05/2020 02:01:45 PM) (Source: Schannel) (EventID: 4119) (User: ZARZĄDZANIE NT) Description: Odebrano następujący alert krytyczny: 20. Windows Defender: =================================== Date: 2013-08-17 08:06:08.127 Description: Produkt Windows Defender napotkał błąd podczas próby załadowania podpisów i podejmie próbę powrotu do znanego zestawu dobrych podpisów. Podpisy objęte próbą:Bieżące Kod błędu:0x80070002 Opis błędu:Nie można odnaleźć określonego pliku. Wersja podpisu:0.0.0.0 Wersja aparatu:0.0.0.0 ==================== Statystyki pamięci =========================== BIOS: American Megatrends Inc. V1.5 01/18/2012 Płyta główna: MSI H61M-P20 (G3) (MS-7788) Procesor: Intel(R) Celeron(R) CPU G460 @ 1.80GHz Procent pamięci w użyciu: 80% Całkowita pamięć fizyczna: 1935.71 MB Dostępna pamięć fizyczna: 368.19 MB Całkowita pamięć wirtualna: 3871.41 MB Dostępna pamięć wirtualna: 1855.27 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:205.47 GB) (Free:120.08 GB) NTFS Drive e: (Nowy) (Fixed) (Total:725.95 GB) (Free:652.68 GB) NTFS Drive f: (Nowy) (Fixed) (Total:465.76 GB) (Free:170.72 GB) NTFS \\?\Volume{f24e44c3-b9ff-11e1-be2b-806e6f6e6963}\ (Zastrzeżone przez system) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 9D47FF6C) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=205.5 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=725.9 GB) - (Type=07 NTFS) ========================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: EB4C2F74) Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt =======================