Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 13-09-2020 Uruchomiony przez ja (13-09-2020 19:54:01) Uruchomiony z C:\Users\ja\Desktop\Downloads Windows 10 Pro Wersja 2004 19041.508 (X64) (2020-09-10 19:18:26) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-539994715-2383020058-1672587182-500 - Administrator - Disabled) Gość (S-1-5-21-539994715-2383020058-1672587182-501 - Limited - Disabled) ja (S-1-5-21-539994715-2383020058-1672587182-1001 - Administrator - Enabled) => C:\Users\ja Konto domyślne (S-1-5-21-539994715-2383020058-1672587182-503 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-539994715-2383020058-1672587182-504 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-539994715-2383020058-1672587182-1001\...\uTorrent) (Version: 3.5.5.45790 - BitTorrent Inc.) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 20.012.20043 - Adobe Systems Incorporated) Airline Tycoon Evolution (HKLM-x32\...\Airline Tycoon Evolution) (Version: - ) Audacity 2.3.0 (HKLM-x32\...\Audacity_is1) (Version: 2.3.0 - Audacity Team) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 20.6.2420 - Avast Software) Badanie mające na celu poprawę produktów HP Deskjet 1510 series (HKLM\...\{201842BD-6AB0-422A-9A01-DD1DA9BC03B9}) (Version: 32.2.188.47710 - Hewlett-Packard Co.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield™ 1 (HKLM-x32\...\{335B50BC-6130-4BAF-9A6A-F1561270587B}) (Version: 1.0.57.44284 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) Bus Simulator 18 version 4.18.0 (HKLM-x32\...\Bus Simulator 18_is1) (Version: 4.18.0 - astragon Entertainment) CCleaner (HKLM\...\CCleaner) (Version: 5.64 - Piriform) Cheat Engine 6.8.1 (HKLM-x32\...\Cheat Engine 6.8.1_is1) (Version: - Cheat Engine) CLEO 4.3 (HKLM-x32\...\{A8F37EB0-C741-41D7-8CAB-5B40ECEEF094}_is1) (Version: 4.3 - Seemann, Deji, Alien) CPUID CPU-Z 1.89 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.89 - CPUID, Inc.) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.9.0.0637 - Disc Soft Ltd) DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 417.35 - NVIDIA Corporation) Hidden Epic Games Launcher (HKLM-x32\...\{FFE08CF5-9092-48EA-85FD-590725B78B21}) (Version: 1.1.236.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) Factorio version 0.17.79 (HKLM\...\Factorio_is1) (Version: - ) FreeMouseAutoClicker 3.8.6 (HKLM-x32\...\{292F00C5-25EF-4FBE-9873-13EF1F69DEED}_is1) (Version: - Advanced Mouse Auto Clicker ltd.) Garena (remove only) (HKLM-x32\...\gxx) (Version: 2.0.1909.2618 - Garena) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 85.0.4183.102 - Google LLC) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden GTA San Andreas (HKLM-x32\...\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}) (Version: 1.00.00001 - Rockstar Games) GTA San Andreas SA-MP Addon (HKLM-x32\...\{47E4F6A3-F01C-4538-9925-CAE42C1CF7216}_is1) (Version: 2.4 - Absolute Play www.gta-samp.ru) HP Deskjet 1510 series — podstawowe oprogramowanie urządzenia (HKLM\...\{021AA127-6B6D-46EF-9697-5089FA686FB6}) (Version: 32.2.188.47710 - Hewlett-Packard Co.) HP Deskjet 1510 series Pomoc (HKLM-x32\...\{065AAC3B-F0A7-4D13-A40B-3133D319E4EB}) (Version: 30.0.0 - Hewlett Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4531 - Intel Corporation) Java 8 Update 201 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180201F0}) (Version: 8.0.2010.9 - Oracle Corporation) KeyTweak - Keyboard Remapper (remove only) (HKLM-x32\...\KeyTweak) (Version: - ) Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden LogMeIn Hamachi (HKLM-x32\...\{ECC0FA07-863E-44BC-8B1D-DA22F96E5FB7}) (Version: 2.2.0.633 - LogMeIn, Inc.) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.633 - LogMeIn, Inc.) Malwarebytes version 4.2.0.82 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.2.0.82 - Malwarebytes) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 85.0.564.51 - Microsoft Corporation) Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.135.29 - ) Microsoft Office Professional Plus 2019 - pl-pl (HKLM\...\ProPlus2019Retail - pl-pl) (Version: 16.0.13029.20344 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-539994715-2383020058-1672587182-1001\...\OneDriveSetup.exe) (Version: 19.152.0927.0012 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden MTA:SA v1.5.6 (HKLM-x32\...\MTA:SA 1.5) (Version: v1.5.6 - Multi Theft Auto) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.38.16 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.16 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 22.0.2 - OBS Project) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.13029.20200 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.13029.20236 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0415-1000-0000000FF1CE}) (Version: 16.0.13029.20200 - Microsoft Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenTTD 1.10.0-RC1 (HKLM-x32\...\OpenTTD) (Version: 1.10.0-RC1 - OpenTTD) Origin (HKLM-x32\...\Origin) (Version: 10.5.83.43781 - Electronic Arts, Inc.) Panel sterowania NVIDIA 432.00 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 432.00 - NVIDIA Corporation) Hidden Python 2.7.18 (64-bit) (HKLM\...\{A5F504DF-2ED9-4A2D-A2F3-9D2750DD42D6}) (Version: 2.7.18150 - Python Software Foundation) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.28.615.2018 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8186 - Realtek Semiconductor Corp.) Roblox Player for ja (HKU\S-1-5-21-539994715-2383020058-1672587182-1001\...\roblox-player) (Version: - Roblox Corporation) Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.19.234 - Rockstar Games) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.5.2 - Rockstar Games) Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.63.0 - Samsung Electronics Co., Ltd.) Sandboxie 5.28 (64-bit) (HKLM\...\Sandboxie) (Version: 5.28 - Sandboxie Holdings, LLC) Spintires MudRunner v.1.0 от 19.11.18 (Update 10) (HKLM-x32\...\Spintires MudRunner_is1) (Version: - ) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.3.2 - TeamSpeak Systems GmbH) TP-Link TL-WN881ND Driver (HKLM-x32\...\{5656127B-0110-4450-9CBD-643E760F152D}) (Version: 2.1.0 - TP-Link) Tracer Gaming Mouse (HKLM-x32\...\{4F2CBB98-A9AB-4A7A-9DDC-00E340E42B9F}) (Version: 1.00 - Tracer Gaming Mouse) TruckersMP Launcher 1.0.0.4 (HKLM\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 1.0.0.4 - TruckersMP Team) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden UpdateAssistant (HKLM\...\{52C1DD03-104E-4AC6-9DC6-21D585721ED1}) (Version: 1.19.0.0 - Microsoft Corporation) Hidden Uplay (HKLM-x32\...\Uplay) (Version: 18.0 - Ubisoft) Web Companion (HKLM-x32\...\{0176a283-cca5-4b4c-9f33-d50b077b00af}) (Version: 4.9.2159.4024 - Lavasoft) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version: - ) WinRAR 5.70 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH) Packages: ========= Dodatek Aparat multimediów dla aplikacji Zdjęcia -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-10-06] (Microsoft Corporation) Forza Horizon 4 -> C:\Program Files\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe [2020-08-27] (Microsoft Studios) Forza Horizon 4 Fortune Island -> C:\Program Files\WindowsApps\Microsoft.Expansion1_1.225.171.2_neutral__8wekyb3d8bbwe [2019-01-20] (Microsoft Studios) Forza Horizon 4 LEGO Speed Champions -> C:\Program Files\WindowsApps\Microsoft.Expansion2_1.312.645.2_neutral__8wekyb3d8bbwe [2019-06-27] (Microsoft Studios) Forza Hub -> C:\Program Files\WindowsApps\Microsoft.Lucille_1.0.4.0_x64__8wekyb3d8bbwe [2018-10-25] (Microsoft Studios) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-19] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-19] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.8101.0_x64__8wekyb3d8bbwe [2020-08-19] (Microsoft Studios) [MS Ad] PDP Control Hub -> C:\Program Files\WindowsApps\PerformanceDesignedProduc.PDPControlHub_1.0.75.0_x64__xgavg6chk0qcj [2020-01-19] (Performance Designed Products LLC) Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.141.634.0_x86__zpdnekdrzrea0 [2020-09-04] (Spotify AB) [Startup Task] ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-08-07] (Avast Software s.r.o. -> AVAST Software) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-08-07] (Avast Software s.r.o. -> AVAST Software) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-03-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-03-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-10-04] (AVB Disc Soft, SIA -> Disc Soft Ltd) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-08-07] (Avast Software s.r.o. -> AVAST Software) ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-10-04] (AVB Disc Soft, SIA -> Disc Soft Ltd) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-09-13] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2016-11-01] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-10-03] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-08-07] (Avast Software s.r.o. -> AVAST Software) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-09-13] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-03-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-03-01] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\system32\frapsv64.dll [105984 2018-09-26] (Beepa P/L) [Brak podpisu cyfrowego] HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [94208 2018-09-26] (Beepa P/L) [Brak podpisu cyfrowego] ==================== Skróty & WMI ======================== ==================== Załadowane moduły (filtrowane) ============= 2020-02-02 02:13 - 2020-02-02 02:13 - 098275328 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libcef.dll 2020-02-02 02:13 - 2020-02-02 02:13 - 000092672 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libEGL.dll 2020-02-02 02:13 - 2020-02-02 02:13 - 003922432 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libGLESv2.dll 2019-04-09 10:21 - 2019-04-09 10:21 - 000018432 _____ () [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\libEGL.DLL 2019-04-09 10:21 - 2019-04-09 10:21 - 003572224 _____ () [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\libGLESv2.dll 2018-10-14 19:51 - 2019-11-26 00:42 - 000276992 _____ () [Brak podpisu cyfrowego] C:\Users\ja\AppData\Roaming\TS3Client\plugins\ClownfishForTeamspeak_win64.dll 2018-10-10 20:44 - 2019-07-04 22:11 - 000157696 _____ () [Brak podpisu cyfrowego] C:\Users\ja\AppData\Roaming\TS3Client\plugins\gamepad_joystick_win64.dll 2020-09-13 15:31 - 2020-09-13 15:31 - 003156480 _____ () [Brak podpisu cyfrowego] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DotNetCommon\0a8193500e282ed2e8f60b4401d2fdad\DotNetCommon.ni.dll 2020-09-13 15:30 - 2020-09-13 15:30 - 004813312 _____ (Disc Soft Ltd) [Brak podpisu cyfrowego] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DiscSoft.NET.Common\f23de23273e3fce765517e513f8391f5\DiscSoft.NET.Common.ni.dll 2020-02-02 02:12 - 2020-02-02 02:13 - 000547840 _____ (The Chromium Authors) [Brak podpisu cyfrowego] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\chrome_elf.dll 2018-10-10 21:50 - 2020-03-16 15:05 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\LIBEAY32.dll 2018-10-10 21:50 - 2020-03-16 15:06 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\ssleay32.dll 2018-10-10 21:50 - 2020-03-19 02:39 - 001611264 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\platforms\qwindows.dll 2020-09-13 15:31 - 2020-03-19 02:39 - 005487104 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5Core.dll 2020-09-13 15:31 - 2020-03-19 02:39 - 005841920 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5Gui.dll 2020-09-13 15:31 - 2020-03-19 02:39 - 001179136 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5Network.dll 2020-09-13 15:31 - 2020-03-19 02:39 - 000146432 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5WebSockets.dll 2020-09-13 15:31 - 2020-03-19 02:39 - 005089792 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5Widgets.dll 2020-09-13 15:31 - 2020-03-19 02:39 - 000184832 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Origin\Qt5Xml.dll 2019-04-10 18:30 - 2019-04-10 18:30 - 000035328 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\iconengines\qsvgicon.dll 2019-04-09 10:28 - 2019-04-09 10:28 - 000031744 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\imageformats\qgif.dll 2019-04-09 10:29 - 2019-04-09 10:29 - 000397312 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\imageformats\qjpeg.dll 2019-04-10 18:29 - 2019-04-10 18:29 - 000025600 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\imageformats\qsvg.dll 2019-04-09 10:30 - 2019-04-09 10:30 - 001453568 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\platforms\qwindows.dll 2019-05-31 13:05 - 2019-05-31 13:05 - 006130176 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\Qt5Core.dll 2019-04-09 10:25 - 2019-04-09 10:25 - 006470656 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\Qt5Gui.dll 2019-04-09 10:24 - 2019-04-09 10:24 - 001314816 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\Qt5Network.dll 2019-04-10 19:31 - 2019-04-10 19:31 - 000317440 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\Qt5Positioning.dll 2019-04-09 10:28 - 2019-04-09 10:28 - 000318464 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\Qt5PrintSupport.dll 2019-04-10 18:55 - 2019-04-10 18:55 - 004001792 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\Qt5Qml.dll 2019-04-10 18:48 - 2019-04-10 18:48 - 003776000 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\Qt5Quick.dll 2019-04-10 18:50 - 2019-04-10 18:50 - 000072704 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\Qt5QuickWidgets.dll 2019-04-09 10:23 - 2019-04-09 10:23 - 000205312 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\Qt5Sql.dll 2019-04-10 18:29 - 2019-04-10 18:29 - 000332288 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\Qt5Svg.dll 2019-04-10 19:40 - 2019-04-10 19:40 - 000113664 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\Qt5WebChannel.dll 2019-04-11 03:37 - 2019-04-11 03:37 - 079989760 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\Qt5WebEngineCore.dll 2019-04-11 03:54 - 2019-04-11 03:54 - 000228864 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\Qt5WebEngineWidgets.dll 2019-04-09 10:27 - 2019-04-09 10:27 - 005580800 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\Qt5Widgets.dll 2019-04-09 10:28 - 2019-04-09 10:28 - 001151488 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\sqldrivers\qsqlite.dll 2019-04-09 10:29 - 2019-04-09 10:29 - 000137216 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\TeamSpeak 3 Client\styles\qwindowsvistastyle.dll ==================== Alternate Data Streams (filtrowane) ======== (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\ProgramData\Application Data:NT [40] AlternateDataStreams: C:\ProgramData\Application Data:NT2 [884] AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT [40] AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT2 [884] AlternateDataStreams: C:\Users\ja\Dane aplikacji:00e481b5e22dbe1f649fcddd505d3eb7 [394] AlternateDataStreams: C:\Users\ja\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [472] ==================== Tryb awaryjny (filtrowane) ================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer (filtrowane) ========== HKU\S-1-5-21-539994715-2383020058-1672587182-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP SearchScopes: HKU\S-1-5-21-539994715-2383020058-1672587182-1001 -> {BDF61FAE-9D19-40F0-8F34-688DEB334CA9} URL = hxxp://securedsearch.lavasoft.com/results.php?pr=vmn&id=webcompa&ent=ch_WCYID10454__181011&q={searchTerms} Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-08-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-08-04] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-08-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-08-04] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-08-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-08-04] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-08-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-08-04] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE trusted site: HKU\.DEFAULT\...\localhost -> localhost IE trusted site: HKU\.DEFAULT\...\webcompanion.com -> hxxp://webcompanion.com IE trusted site: HKU\S-1-5-21-539994715-2383020058-1672587182-1001\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-539994715-2383020058-1672587182-1001\...\webcompanion.com -> hxxp://webcompanion.com ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2017-09-29 15:46 - 2019-09-08 15:37 - 000000822 _____ C:\WINDOWS\system32\drivers\etc\hosts 2019-08-12 18:59 - 2019-08-12 18:59 - 000000445 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Common Files\Acronis\SnapAPI\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Program Files (x86)\Windows Live\Shared;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-539994715-2383020058-1672587182-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) HKU\S-1-5-21-539994715-2383020058-1672587182-1001\...\StartupApproved\Run: => "SandboxieControl" HKU\S-1-5-21-539994715-2383020058-1672587182-1001\...\StartupApproved\Run: => "Trans" ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{EA04683A-AD29-41C2-A0EA-CF0DF9567124}] => (Allow) I:\Program Files\Steam\steamapps\common\Treasure Hunter\TH.exe () [Brak podpisu cyfrowego] FirewallRules: [{D48E670D-5854-445D-82D4-F6904370974E}] => (Allow) I:\Program Files\Steam\steamapps\common\Treasure Hunter\TH.exe () [Brak podpisu cyfrowego] FirewallRules: [{FC0F35B1-E052-47B6-9A64-71552F9857CF}] => (Allow) I:\Program Files\Steam\steamapps\common\911 Operator\CallEditor.exe () [Brak podpisu cyfrowego] FirewallRules: [{01F0283D-21EC-4D15-88BD-2611CB6CFF62}] => (Allow) I:\Program Files\Steam\steamapps\common\911 Operator\CallEditor.exe () [Brak podpisu cyfrowego] FirewallRules: [{C986C824-70D3-4F26-BEB8-C2877694A88A}] => (Allow) I:\Program Files\Steam\steamapps\common\911 Operator\911.exe () [Brak podpisu cyfrowego] FirewallRules: [{90310604-B2C8-4933-92C8-1AB6301516C5}] => (Allow) I:\Program Files\Steam\steamapps\common\911 Operator\911.exe () [Brak podpisu cyfrowego] FirewallRules: [{32961A18-E39C-413F-9427-137D9544CE59}] => (Allow) I:\Program Files\Steam\steamapps\common\SoulWorker\SoulWorker.exe (LIONGAMES Co.,Ltd. -> LION GAMES) FirewallRules: [{FFDE64EA-52B9-4515-9ED5-7509DAA9C693}] => (Allow) I:\Program Files\Steam\steamapps\common\SoulWorker\SoulWorker.exe (LIONGAMES Co.,Ltd. -> LION GAMES) FirewallRules: [{EEE709E9-F660-4FD8-BB63-97D026688636}] => (Allow) I:\Program Files\Steam\steamapps\common\Terraria\Terraria.exe (Re-Logic) [Brak podpisu cyfrowego] FirewallRules: [{856D575C-C449-4244-9900-CA7C5C8CD010}] => (Allow) I:\Program Files\Steam\steamapps\common\Terraria\Terraria.exe (Re-Logic) [Brak podpisu cyfrowego] FirewallRules: [{896E68EE-D41E-4170-B95F-3B76FE025146}] => (Allow) G:\Program Files\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe (Tripwire Interactive, LLC.) [Brak podpisu cyfrowego] FirewallRules: [{21BFE9A0-3A9B-4102-9B9A-EBD33CEB9FE8}] => (Allow) G:\Program Files\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe (Tripwire Interactive, LLC.) [Brak podpisu cyfrowego] FirewallRules: [{8A8AE6C8-9AFC-4034-85C6-8C0A12FB5B9B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.141.634.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{8D78B3BE-362B-4616-9E3F-71F03E62D422}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.141.634.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{0E5D26C5-778C-42AE-87ED-6F2D72EF0983}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.141.634.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{0F384794-6728-4E16-AAEA-71B54B2CD85C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.141.634.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{4B734464-DE23-42F0-B0C6-C77C5A735DAA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.141.634.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{FBFE4169-6DDE-4B08-A7A3-D4C8180A1114}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.141.634.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{4DB96C95-6992-43CE-BF94-47AD5570F0CA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.141.634.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{338B281A-01A7-4421-A7BE-09805F81B96D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.141.634.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{6852EBD1-6392-448E-9BFD-7962136665C0}] => (Allow) I:\Program Files\Steam\steamapps\common\Anarchy Arcade\frontend\bin\arcade_launcher.exe => Brak pliku FirewallRules: [{DED1A3AF-F352-4925-891B-B3BFA4D7422C}] => (Allow) I:\Program Files\Steam\steamapps\common\Anarchy Arcade\frontend\bin\arcade_launcher.exe => Brak pliku FirewallRules: [{CC71DD80-320B-4EA9-BCF0-75905A7AB744}] => (Allow) I:\Program Files\Steam\steamapps\common\Bejeweled 3\Bejeweled3.exe (PopCap Games -> ) FirewallRules: [{72B4B6BA-6A82-4397-8D9B-05DD33706780}] => (Allow) I:\Program Files\Steam\steamapps\common\Bejeweled 3\Bejeweled3.exe (PopCap Games -> ) FirewallRules: [UDP Query User{AC249237-73FE-4532-936B-345A62C7DEA5}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe (PUBG CORPORATION -> Bluehole GinnoGames, Inc.) FirewallRules: [TCP Query User{97E970C2-E618-4E9B-AF89-B392D47A84BC}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe (PUBG CORPORATION -> Bluehole GinnoGames, Inc.) FirewallRules: [{02EAF06F-3534-4191-A2AE-21D0625ED0FA}] => (Allow) I:\Program Files\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> ) FirewallRules: [{6F55898F-71F8-4E85-AF49-32EEADFAFE27}] => (Allow) I:\Program Files\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve -> ) FirewallRules: [{32E6836F-775E-40E6-B3E7-4B5A26C51B89}] => (Allow) G:\Program Files\Steam\steamapps\common\NBA 2K20\NBA2K20.exe (Take-Two Interactive Software, Inc. -> ) [Brak podpisu cyfrowego] FirewallRules: [{096AF175-50EA-46F1-B8C1-7E4A7E074622}] => (Allow) G:\Program Files\Steam\steamapps\common\NBA 2K20\NBA2K20.exe (Take-Two Interactive Software, Inc. -> ) [Brak podpisu cyfrowego] FirewallRules: [{2179DFD6-E6F9-49E0-9D41-ECA980FCCC58}] => (Allow) I:\Program Files\Steam\steamapps\common\AwesomeMetalDetecting\AwesomeMetalDetecting.exe () [Brak podpisu cyfrowego] FirewallRules: [{F5E0B389-F446-4DFA-B3F8-F58A57730D82}] => (Allow) I:\Program Files\Steam\steamapps\common\AwesomeMetalDetecting\AwesomeMetalDetecting.exe () [Brak podpisu cyfrowego] FirewallRules: [UDP Query User{0FA7568E-8C47-48B8-A50E-EC881C9CA38D}G:\program files\steam\steamapps\common\drunken wrestlers 2\dw2.exe] => (Allow) G:\program files\steam\steamapps\common\drunken wrestlers 2\dw2.exe () [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{1AED4971-0979-4412-9048-C2E5181F88A0}G:\program files\steam\steamapps\common\drunken wrestlers 2\dw2.exe] => (Allow) G:\program files\steam\steamapps\common\drunken wrestlers 2\dw2.exe () [Brak podpisu cyfrowego] FirewallRules: [{C56D9DED-A82D-4372-A727-F78ABE3690AD}] => (Allow) G:\Program Files\Steam\steamapps\common\Drunken Wrestlers 2\DW2_Data\Managed\DW2Launcher\DW2Launcher.exe () [Brak podpisu cyfrowego] FirewallRules: [{34E625E1-B86A-4BD8-9D06-D209D1AAB97B}] => (Allow) G:\Program Files\Steam\steamapps\common\Drunken Wrestlers 2\DW2_Data\Managed\DW2Launcher\DW2Launcher.exe () [Brak podpisu cyfrowego] FirewallRules: [{57B46216-8DB5-4C41-BC02-30B47C196094}] => (Allow) G:\Program Files\Steam\steamapps\common\AwesomeMetalDetecting\AwesomeMetalDetecting.exe => Brak pliku FirewallRules: [{FA91A46B-F5E7-49AC-B36C-8149C27F4E75}] => (Allow) G:\Program Files\Steam\steamapps\common\AwesomeMetalDetecting\AwesomeMetalDetecting.exe => Brak pliku FirewallRules: [{A7AF4406-9478-4C45-B793-197EC50F7B7A}] => (Allow) G:\Program Files\Steam\steamapps\common\Black Squad\binaries\win64\BlackSquadGame.exe => Brak pliku FirewallRules: [{BA5E482C-920F-4CC5-AF6D-1615500AB8A1}] => (Allow) G:\Program Files\Steam\steamapps\common\Black Squad\binaries\win64\BlackSquadGame.exe => Brak pliku FirewallRules: [{B7C89A91-9A5B-4B1D-9596-6790D19DED10}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (PUBG CORPORATION -> PUBG Corporation) FirewallRules: [{0264E980-BA25-448D-BCF3-49506725C11C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (PUBG CORPORATION -> PUBG Corporation) FirewallRules: [{244265E1-E0A7-49FC-964D-6332A2E28418}] => (Allow) I:\Program Files\Steam\steamapps\common\HeroSiege\bin\Hero_Siege.exe (Panic Art Studios) [Brak podpisu cyfrowego] FirewallRules: [{A5030753-F757-4B8A-B4EF-34C615B67C12}] => (Allow) I:\Program Files\Steam\steamapps\common\HeroSiege\bin\Hero_Siege.exe (Panic Art Studios) [Brak podpisu cyfrowego] FirewallRules: [{5B52EC02-7234-4E86-AA6E-F8BDD8B74FC7}] => (Allow) G:\Program Files\Steam\steamapps\common\Human Fall Flat\Human.exe () [Brak podpisu cyfrowego] FirewallRules: [{0CDEF1C3-9EBC-423C-8727-9B32B91D7999}] => (Allow) G:\Program Files\Steam\steamapps\common\Human Fall Flat\Human.exe () [Brak podpisu cyfrowego] FirewallRules: [{98D2983B-4BAB-49A7-A6EF-788D094CB0C2}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{B878753C-37A3-4F45-BE4B-17F972A68F66}G:\program files\steam\steamapps\common\rocketleague\binaries\win64\rocketleague.exe] => (Allow) G:\program files\steam\steamapps\common\rocketleague\binaries\win64\rocketleague.exe => Brak pliku FirewallRules: [TCP Query User{80E9F577-FEFB-4623-81A0-7F7DFFFF12B8}G:\program files\steam\steamapps\common\rocketleague\binaries\win64\rocketleague.exe] => (Allow) G:\program files\steam\steamapps\common\rocketleague\binaries\win64\rocketleague.exe => Brak pliku FirewallRules: [{07DE600A-F01C-40A5-80C5-F9646F36429D}] => (Allow) G:\Program Files\Steam\steamapps\common\rocketleague\Binaries\RocketLeague.exe => Brak pliku FirewallRules: [{E9A80DE9-29FB-413B-9CA4-444A729692FD}] => (Allow) G:\Program Files\Steam\steamapps\common\rocketleague\Binaries\RocketLeague.exe => Brak pliku FirewallRules: [UDP Query User{746176F4-7B5C-4BEA-B5A1-B6705CA1C481}I:\program files\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) I:\program files\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => Brak pliku FirewallRules: [TCP Query User{1697F58E-2F5C-4DDC-A834-FD9FFA6D4FF1}I:\program files\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) I:\program files\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => Brak pliku FirewallRules: [{6B179B4D-5B58-42AD-951E-F4863A562D83}] => (Allow) I:\Program Files\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe => Brak pliku FirewallRules: [{18CE481F-731B-4302-98B8-C4B6DEE2FFAE}] => (Allow) I:\Program Files\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe => Brak pliku FirewallRules: [{F6988F30-8F7A-4899-945D-D68AB380FD7D}] => (Allow) I:\Program Files (x86)\Origin Games\Battlefield 1\bf1.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [{7A51880E-86D7-4D3B-A086-389EEB665ECF}] => (Allow) I:\Program Files (x86)\Origin Games\Battlefield 1\bf1.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [{C081AAD1-FAE5-4D2E-9B97-7B6B3D5B9586}] => (Allow) I:\Program Files (x86)\Origin Games\Battlefield 1\bf1Trial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [{5275AC0A-B135-4D52-98A0-144423543EEB}] => (Allow) I:\Program Files (x86)\Origin Games\Battlefield 1\bf1Trial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [{1B97EB0E-A6C7-45BC-BB2D-F1FDA90359D8}] => (Allow) G:\Program Files\Steam\steamapps\common\Car Trader Simulator\Car Trader Simulator.exe () [Brak podpisu cyfrowego] FirewallRules: [{7A4EBD00-DB29-4F66-865E-9E0E074121F6}] => (Allow) G:\Program Files\Steam\steamapps\common\Car Trader Simulator\Car Trader Simulator.exe () [Brak podpisu cyfrowego] FirewallRules: [{C8CA88F8-E7DA-465D-A7CA-D4015B559829}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{BD846A09-EF82-4F68-8E63-B2CB6319706E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{1F69BFCE-32DF-4032-B41A-4016CE4AB961}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{87009636-0138-4DE1-9E0B-DD5A9E9E220F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{F32B009D-6FF5-4698-A2BD-F6D5750C906B}] => (Allow) I:\Program Files\Steam\steamapps\common\City Car Driving\bin\win32\starter.exe (Forward Development) [Brak podpisu cyfrowego] FirewallRules: [{27045810-D293-4A8C-A6FE-9ADCB37D2CDD}] => (Allow) I:\Program Files\Steam\steamapps\common\City Car Driving\bin\win32\starter.exe (Forward Development) [Brak podpisu cyfrowego] FirewallRules: [{6D2C89FE-FD50-402B-9E4C-11D4D57B09DD}] => (Allow) I:\Program Files\Steam\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{079E459D-B001-4ADB-B225-C83F9D7C5CA4}] => (Allow) I:\Program Files\Steam\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{54C0DF0E-D52A-460D-A3F4-8C122B080627}] => (Block) C:\Program Files\Factorio\bin\x64\factorio.exe (Wube Software) [Brak podpisu cyfrowego] FirewallRules: [UDP Query User{B3D26EEC-BC0D-48C0-9DE8-9A97E001BCF8}C:\program files\factorio\bin\x64\factorio.exe] => (Allow) C:\program files\factorio\bin\x64\factorio.exe (Wube Software) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{82ACE2C7-3029-4401-9EE4-2F0A769182B1}C:\program files\factorio\bin\x64\factorio.exe] => (Allow) C:\program files\factorio\bin\x64\factorio.exe (Wube Software) [Brak podpisu cyfrowego] FirewallRules: [UDP Query User{8D1244AF-A4F9-41BB-A09A-867CEA2EF634}G:\games\bus simulator 18\bussimulator18\binaries\win64\bussimulator18-win64-shipping.exe] => (Allow) G:\games\bus simulator 18\bussimulator18\binaries\win64\bussimulator18-win64-shipping.exe (stillalive studios GmbH) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{1E50EE70-0FC2-436D-A431-868894287E6B}G:\games\bus simulator 18\bussimulator18\binaries\win64\bussimulator18-win64-shipping.exe] => (Allow) G:\games\bus simulator 18\bussimulator18\binaries\win64\bussimulator18-win64-shipping.exe (stillalive studios GmbH) [Brak podpisu cyfrowego] FirewallRules: [{23FF1B2B-DF43-41C7-BFB6-E702327C2CDA}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FirewallRules: [{24CCEA4D-B635-4C74-AA7E-778790B05335}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FirewallRules: [{B0817AE0-8A10-4E74-837F-02AFF5811B3E}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{D42845B3-B954-4B2D-8D7D-E36A1A69EE4F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{DCB3FEB9-0ED2-4952-A538-C2BF89604B6E}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{3BF78BF0-B01E-4780-99F9-EB2714438A39}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{596D69E8-911A-4833-85AD-D5FF2F4E4211}] => (Allow) I:\Program Files (x86)\Garena\Garena\2.0.1909.2618\gxxsvc.exe (Garena Online Pte Ltd -> Garena Online) FirewallRules: [{8B2D85C8-BA33-4092-A020-3788CD9C7A17}] => (Allow) I:\Program Files\Steam\steamapps\common\BrainOut\bin\javaw.exe FirewallRules: [{F2505DD1-C3EB-4B70-A991-8E7281EE07B5}] => (Allow) I:\Program Files\Steam\steamapps\common\BrainOut\bin\javaw.exe FirewallRules: [UDP Query User{D51ED730-5B74-4C7A-994E-3DD15A45994B}G:\program files\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Allow) G:\program files\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [TCP Query User{E1917A32-206E-4517-82C6-A12201D2BA82}G:\program files\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Allow) G:\program files\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [UDP Query User{76FD4631-6B82-4DE9-A989-CC0724A6F666}C:\users\ja\desktop\downloads\factorio.v0.17.75\factorio\bin\x64\factorio.exe] => (Allow) C:\users\ja\desktop\downloads\factorio.v0.17.75\factorio\bin\x64\factorio.exe (Wube Software) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{102CE4B7-9F82-437D-B4B9-4BE9C6F0B963}C:\users\ja\desktop\downloads\factorio.v0.17.75\factorio\bin\x64\factorio.exe] => (Allow) C:\users\ja\desktop\downloads\factorio.v0.17.75\factorio\bin\x64\factorio.exe (Wube Software) [Brak podpisu cyfrowego] FirewallRules: [{1C5A7957-9C74-4C77-B833-39CE7FC9BD69}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{70E1184A-2169-4F53-B0E2-CDEAAF237785}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{4561678D-2AC7-4257-809F-764631871C42}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{13AB0D15-B19A-4E8B-8441-5D7DF016D1D9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{82E26348-0179-4C2C-99EC-8CC3E633AC6C}] => (Allow) I:\Program Files\Steam\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{D291BF8F-36FB-456E-9C76-DD698C13F70F}] => (Allow) I:\Program Files\Steam\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{B8512C21-4A3C-4D3C-899F-811A7C202458}] => (Allow) C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{E7F96CB0-627F-41E8-912C-A9248EB6A232}] => (Allow) C:\Program Files\HP\HP Deskjet 1510 series\Bin\USBSetup.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{AF2DBBCD-3688-4D9F-82A4-D93EA805EB23}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{2847ED0F-27D0-4B50-8EEA-DA0FE9FADFC0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{EA5D5966-F883-4F4A-BE2B-C1D5AD57E38E}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) FirewallRules: [{F3CF9F10-B166-43E4-A19D-6A9A71631F56}] => (Allow) C:\Users\ja\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{10696367-8233-4614-AB0F-B27ABEDF739C}] => (Allow) C:\Users\ja\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{FD5445BE-A185-48A9-87B5-A594E8F304BA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{3AD1EFCC-B593-4EF3-B340-D2894C768E3A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{13A7599E-0169-4FD9-9EF4-6E92106EEB4F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{5880CC29-E1E1-4C40-9CC0-3E8C6E625248}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{F36FDDA2-BA0D-45B6-BDE9-DD3FC1276F3A}] => (Allow) I:\Program Files\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{BBD50F44-B47C-48B4-A738-AD0219CAE0A2}] => (Allow) I:\Program Files\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{935548E6-14A6-4BC6-AD01-DDC72D0CAAB3}] => (Allow) I:\Program Files\Steam\steamapps\common\Business Tour\BusinessTour.exe () [Brak podpisu cyfrowego] FirewallRules: [{C6A5C7F2-908D-4DB0-BD4F-5D6FD2E3187B}] => (Allow) I:\Program Files\Steam\steamapps\common\Business Tour\BusinessTour.exe () [Brak podpisu cyfrowego] FirewallRules: [{5164D384-0683-42DE-8FBF-BC0AEE3BFECB}] => (Allow) I:\Program Files (x86)\Garena\Garena\games\32793\fifazf.exe (ELECTRONIC ARTS KOREA LLC -> Electronic Arts Seoul Studio) FirewallRules: [{2B2D472E-EFF2-4200-9EDD-AA7767FD46A7}] => (Allow) I:\Program Files (x86)\Garena\Garena\games\32793\fifazf.exe (ELECTRONIC ARTS KOREA LLC -> Electronic Arts Seoul Studio) FirewallRules: [{023CD4DF-595C-4AC8-892A-4C08E8A2AB8B}] => (Allow) I:\Program Files\Steam\steamapps\common\The Binding Of Isaac\Isaac.exe (Edmund Mcmillen & Florian Himsl) [Brak podpisu cyfrowego] FirewallRules: [{6C98C859-5475-4BF6-A0AD-F732261C55CB}] => (Allow) I:\Program Files\Steam\steamapps\common\The Binding Of Isaac\Isaac.exe (Edmund Mcmillen & Florian Himsl) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{47E5A8B1-A19A-4654-89CC-B4EBC157A4F0}I:\program files\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) I:\program files\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [UDP Query User{12044FB6-05DB-4165-A11E-22C102F8007B}I:\program files\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) I:\program files\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{0730D2AE-034F-4EB4-84EC-7A52705B0901}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{BCB8586D-AE36-4BE3-8E5E-22933539A4E5}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{48D28100-E44C-490F-BD18-FC8491EA11A4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Car Mechanic Simulator 2018\cms2018.exe () [Brak podpisu cyfrowego] FirewallRules: [{353357C2-11BF-4EE1-AA05-48CFFEB8AAC3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Car Mechanic Simulator 2018\cms2018.exe () [Brak podpisu cyfrowego] FirewallRules: [{29432606-E8A5-4F6A-A7D1-AC09A7F83A20}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{B8AB2AC9-AC85-4F47-B9C0-85330FA2BFFD}] => (Allow) LPort=2869 FirewallRules: [{53F2946C-3548-42B4-A6D9-3A11DDED0A1E}] => (Allow) LPort=1900 FirewallRules: [TCP Query User{BF8CFB50-D7B0-4A01-83C2-892212337892}G:\program files (x86)\atari\test drive unlimited\testdriveunlimited.exe] => (Allow) G:\program files (x86)\atari\test drive unlimited\testdriveunlimited.exe => Brak pliku FirewallRules: [UDP Query User{CA0CD7DF-3ABD-45F2-94CE-3278F7D09114}G:\program files (x86)\atari\test drive unlimited\testdriveunlimited.exe] => (Allow) G:\program files (x86)\atari\test drive unlimited\testdriveunlimited.exe => Brak pliku FirewallRules: [TCP Query User{4B5D400D-9643-478C-ACA0-0CEAD34E4477}C:\users\ja\appdata\roaming\utorrent\updates\3.5.5_45095.exe] => (Allow) C:\users\ja\appdata\roaming\utorrent\updates\3.5.5_45095.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [UDP Query User{16CECD1C-DF90-4E86-A8DE-000BCC61952E}C:\users\ja\appdata\roaming\utorrent\updates\3.5.5_45095.exe] => (Allow) C:\users\ja\appdata\roaming\utorrent\updates\3.5.5_45095.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [TCP Query User{192062BF-753D-4CFC-BBFA-6BC324DFA40F}C:\program files\java\jre1.8.0_201\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_201\bin\javaw.exe FirewallRules: [UDP Query User{D8184F7D-ADB9-4682-9F36-991464D1DEB6}C:\program files\java\jre1.8.0_201\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_201\bin\javaw.exe FirewallRules: [{429040B4-4F79-4DD4-BC00-53F763170A05}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{1CCFF4C9-3EE6-471C-A20F-BBFB02609505}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{C3044AC6-9142-4E61-8F9C-55D06C2AB7B2}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{B97ECC3F-1E07-4236-8681-445D749C0E56}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{107E7FC1-A4AA-42A7-A486-4664B75D5AC0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Punkty Przywracania systemu ========================= ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (09/13/2020 07:13:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: steamwebhelper.exe, wersja: 6.7.87.15, sygnatura czasowa: 0x5f515e09 Nazwa modułu powodującego błąd: steamwebhelper.exe, wersja: 6.7.87.15, sygnatura czasowa: 0x5f515e09 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000241c04 Identyfikator procesu powodującego błąd: 0x554 Godzina uruchomienia aplikacji powodującej błąd: 0x01d689f1236010ea Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe Ścieżka modułu powodującego błąd: C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe Identyfikator raportu: ccbf5242-2b5c-45c5-b817-928acbeac7b3 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (09/13/2020 07:09:21 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007232B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=NetworkAvailable Error: (09/13/2020 07:08:30 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007267C Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=NetworkAvailable Error: (09/13/2020 07:08:28 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007267C Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (09/13/2020 06:34:41 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007232B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=NetworkAvailable Error: (09/13/2020 06:34:25 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007232B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (09/13/2020 06:31:30 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007232B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=TimerEvent Error: (09/13/2020 06:30:28 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu: hr=0x8007232B Argumenty wiersza polecenia: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=TimerEvent Dziennik System: ============= Error: (09/13/2020 07:55:56 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-9E96IVJ) Description: Serwer {F53321FA-34F8-4B7F-B9A3-361877CB94CF} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (09/13/2020 07:44:10 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-9E96IVJ) Description: Serwer {F53321FA-34F8-4B7F-B9A3-361877CB94CF} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (09/13/2020 07:42:09 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-9E96IVJ) Description: Serwer {D18705BE-FC2F-44C8-AEFF-1CD49AEA8FC1} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (09/13/2020 07:28:28 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-9E96IVJ) Description: Serwer {D18705BE-FC2F-44C8-AEFF-1CD49AEA8FC1} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (09/13/2020 07:07:58 PM) (Source: SbieSvc) (EventID: 9234) (User: ) Description: SBIE9234 Service startup error level 9153 status=C0000001 error=-1073741823 Error: (09/13/2020 07:07:53 PM) (Source: SbieDrv) (EventID: 1103) (User: ) Description: SBIE1103 Nie można uruchomić sterownika Sandboxie (SbieDrv) w wersji 5.28 Error: (09/13/2020 07:07:53 PM) (Source: SbieDrv) (EventID: 1113) (User: ) Description: SBIE1113 Nie można znaleźć Nt system service, z powodu AcceptConnectPort Error: (09/13/2020 07:07:53 PM) (Source: SbieDrv) (EventID: 1113) (User: ) Description: SBIE1113 Nie można znaleźć Nt system service, z powodu MASTER TABLE Windows Defender: =================================== Date: 2020-09-13 16:35:37.8450000Z Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {6B546A4B-B4A0-4758-8A8D-39BFBB0BC9D9} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Date: 2020-09-13 15:33:12.2760000Z Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {37000A09-D75D-4BD7-92E9-538FBD3DC4CC} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Date: 2020-09-13 14:37:33.9100000Z Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {F3CFF39D-CC4C-4540-84BF-D7F068DA856D} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Date: 2020-09-12 19:34:00.6760000Z Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {A5048B56-8813-484F-A226-0BE22914E585} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM CodeIntegrity: =================================== Date: 2020-09-13 19:48:46.6690000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements. Date: 2020-09-13 19:48:46.6620000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements. Date: 2020-09-13 19:48:45.6450000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements. Date: 2020-09-13 19:48:45.6090000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements. Date: 2020-09-13 19:48:45.4820000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements. Date: 2020-09-13 19:48:45.4810000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements. Date: 2020-09-13 19:48:45.3890000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements. Date: 2020-09-13 19:48:45.3070000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume6\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements. ==================== Statystyki pamięci =========================== BIOS: American Megatrends Inc. FA 12/01/2014 Płyta główna: Gigabyte Technology Co., Ltd. H81M-HD3 Procesor: Intel(R) Core(TM) i5-4460 CPU @ 3.20GHz Procent pamięci w użyciu: 86% Całkowita pamięć fizyczna: 8082.79 MB Dostępna pamięć fizyczna: 1072.69 MB Całkowita pamięć wirtualna: 13714.79 MB Dostępna pamięć wirtualna: 3468.57 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:222.97 GB) (Free:22.08 GB) NTFS Drive d: (Zastrzeżone przez system) (Fixed) (Total:0.49 GB) (Free:0.45 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)] Drive g: () (Fixed) (Total:232.39 GB) (Free:2.48 GB) NTFS Drive i: () (Fixed) (Total:465.76 GB) (Free:13.6 GB) NTFS \\?\Volume{1ee9d3b9-ce00-4bf1-9e8d-2a3ab88708f7}\ (Odzyskiwanie) (Fixed) (Total:0.49 GB) (Free:0.05 GB) NTFS \\?\Volume{08bb3288-b2cf-453e-b4b2-d4a570feba45}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (Size: 232.9 GB) (Disk ID: 00240024) Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.4 GB) - (Type=0F Extended) ========================================================== Disk: 1 (Protective MBR) (Size: 223.6 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 2 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: C4DB74E0) Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt =======================