Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 14-12-2020 Uruchomiony przez Użytkownik (22-12-2020 16:39:44) Uruchomiony z C:\Users\Użytkownik\Desktop\Nowy folder Windows 10 Pro Wersja 20H2 19042.685 (X64) (2020-12-20 17:36:47) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1440139967-2605993192-3197701665-500 - Administrator - Disabled) Gość (S-1-5-21-1440139967-2605993192-3197701665-501 - Limited - Disabled) Konto domyślne (S-1-5-21-1440139967-2605993192-3197701665-503 - Limited - Disabled) postgres (S-1-5-21-1440139967-2605993192-3197701665-1002 - Limited - Enabled) => C:\Users\postgres Użytkownik (S-1-5-21-1440139967-2605993192-3197701665-1001 - Administrator - Enabled) => C:\Users\Użytkownik WDAGUtilityAccount (S-1-5-21-1440139967-2605993192-3197701665-504 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: AVG Antivirus (Disabled - Out of date) {18A975F9-A60C-37D8-E30B-4BEF31AD3411} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) ActivePresenter (HKLM\...\{A2A40277-D807-4754-95A3-2F294C2C51D3}_is1) (Version: 8.0.6 - Atomi Systems, Inc.) AddonInstaller (HKLM-x32\...\{1E43D494-10CF-4D7A-AAE5-0A1F4916E02C}) (Version: 1.0.0.0 - Default) Hidden Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 20.013.20074 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 32.0.0.125 - Adobe) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 5.3.1.470 - Adobe Inc.) Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.465 - Adobe) Adobe Media Encoder 2020 (HKLM-x32\...\AME_14_3) (Version: 14.3 - Adobe Inc.) Adobe Photoshop 2020 (HKLM-x32\...\PHSP_21_2) (Version: 21.2.0.225 - Adobe Inc.) Adobe Premiere Pro 2020 (HKLM-x32\...\PPRO_14_0) (Version: 14.0 - Adobe Inc.) Adobe Premiere Rush (HKLM-x32\...\RUSH_1_5_16) (Version: 1.5.16 - Adobe Inc.) Agrar Symulator 2012 (HKLM-x32\...\{AA78846F-08D0-4280-9E2A-97FE7EB24099}) (Version: 1.0.0 - Techland) Hidden Agrar Symulator 2012 (HKLM-x32\...\Agrar Symulator 2012 1.0.0) (Version: 1.0.0 - Techland) ApowerREC V1.3.6.15 (HKLM-x32\...\{6F2998B2-21F7-4CEF-94B2-C3919D939CF9}_is1) (Version: 1.3.6.15 - Apowersoft LIMITED) Apowersoft Online Launcher version 1.7.5 (HKLM-x32\...\{20BF67A8-D81A-4489-8225-FABAA0896E2D}_is1) (Version: 1.7.5 - APOWERSOFT LIMITED) Asystent aktualizacji do systemu Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22899 - Microsoft Corporation) Audacity 2.3.3 (HKLM-x32\...\Audacity_is1) (Version: 2.3.3 - Audacity Team) Avidemux VC++ 64bits (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\{ab2bb275-7af8-4714-9b30-8150d9e5c8d9}) (Version: 2.7.5 - Mean) Bandicam (HKLM-x32\...\Bandicam) (Version: 4.4.0.1535 - Bandicam.com) Bandicam MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version: - Bandicam.com) Blackmagic RAW Common Components (HKLM\...\{B5ABFF44-9702-4CA1-A7D8-DBA659709C49}) (Version: 1.7 - Blackmagic Design) BlockStarPlanet (wersja 1.0) (HKLM-x32\...\{082F606F-B328-4259-B899-1818ADB83D23}_is1) (Version: 1.0 - MovieStarPlanet ApS) BlueStacks App Player (HKLM\...\BlueStacks) (Version: 4.190.0.5002 - BlueStack Systems, Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.75 - Piriform) Clownfish Voice Changer (HKLM\...\ClownfishVoiceChanger) (Version: - ) CrystalDiskInfo 8.1.0 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 8.1.0 - Crystal Dew World) CyberLink PowerDirector 18 (HKLM-x32\...\{5C6A88EF-7090-4B7A-A7C2-7AC51C27D2B5}) (Version: 18.3.2717.0 - CyberLink Corp.) DaVinci Resolve (HKLM\...\{FA6050B3-1F3C-488B-943A-376412339D29}) (Version: 16.2.4016 - Blackmagic Design) DaVinci Resolve Keyboards (HKLM\...\{04F776FB-37A2-4116-84F2-6CF3D731999D}) (Version: 1.0.0.0 - Blackmagic Design) DaVinci Resolve Panels (HKLM\...\{567706B7-1501-43BC-81AB-C7E306B40C73}) (Version: 1.3.2.0 - Blackmagic Design) Discord (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\Discord) (Version: 0.0.309 - Discord Inc.) Epic Games Launcher (HKLM-x32\...\{9BDC8B60-A7CD-4554-B66A-C5FFC1E1437C}) (Version: 1.1.279.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Facebook Gameroom 1.21.6907.27509 (HKLM-x32\...\{E34773A0-158F-4322-8849-2C13BBCD6C68}) (Version: 1.21.6907.27509 - Facebook) Farming Simulator 15 (HKLM-x32\...\FarmingSimulator2015PL_is1) (Version: 1.2 - GIANTS Software) FilmImpact.net Transition Packs CE Bundle (HKLM\...\FilmImpact.net Transition Packs_is1) (Version: 3.6.14 - FilmImpact.net & Team V.R) GIMP 2.10.18 (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\GIMP-2_is1) (Version: 2.10.18 - The GIMP Team) Goodgame Empire (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\Goodgame Empire) (Version: - ) <==== UWAGA Google Chrome (HKLM-x32\...\Google Chrome) (Version: 87.0.4280.88 - Google LLC) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.51 - Google LLC) Hidden HWiNFO64 Version 6.04 (HKLM\...\HWiNFO64_is1) (Version: 6.04 - Martin Malík - REALiX) Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation) Intel(R) Computing Improvement Program (HKLM\...\{CB94C849-BE4D-4443-899D-096F2BA8C91E}) (Version: 2.4.06492 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1846.12.0.1177 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4821 - Intel Corporation) Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.50.638.1 - Intel Corporation) Hidden Intel(R) Trusted Connect Services Client (HKLM-x32\...\{99ee3c29-c7cd-450f-8db9-d43cc49de1c7}) (Version: 1.50.638.1 - Intel Corporation) Hidden iZotope Nectar 2 Production Suite (HKLM-x32\...\iZotope Nectar 2 Production Suite_is1) (Version: 2.04 - iZotope, Inc.) Java 8 Update 211 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180211F0}) (Version: 8.0.2110.12 - Oracle Corporation) K-Lite Codec Pack 14.9.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 14.9.0 - KLCP) Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden LogMeIn Hamachi (HKLM-x32\...\{ECC0FA07-863E-44BC-8B1D-DA22F96E5FB7}) (Version: 2.2.0.633 - LogMeIn, Inc.) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.633 - LogMeIn, Inc.) Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.139.59 - ) Microsoft Office Professional 2016 - pl-pl (HKLM\...\ProfessionalRetail - pl-pl) (Version: 16.0.13426.20332 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\Teams) (Version: 1.3.00.30866 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{0BCA8FBE-0C1C-4C65-98A3-5D34AAF41737}) (Version: 2.70.0.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.23.27820 (HKLM-x32\...\{852adda4-4c78-4a38-b583-c0b360a329d6}) (Version: 14.23.27820.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM-x32\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation) Minecraft Launcher (HKLM-x32\...\{810F1419-7760-402E-8772-B4054FAA2B72}) (Version: 1.0.0.0 - Mojang) Mobizen (HKLM-x32\...\{BA0D3A44-BCEE-4C8B-BCD4-F7F1E64F41E3}) (Version: 2.12.0.1 - RSUPPORT) MY.GAMES GameCenter (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\GameCenter) (Version: 4.1550 - MY.COM B.V.) Need For Speed Underground Demo (HKLM-x32\...\{B575AC8F-EEDB-4B75-0091-17306783164E}) (Version: - ) NVIDIA GeForce NOW 2.0.23.110 (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GeforceNOW) (Version: 2.0.23.110 - NVIDIA Corporation) NVIDIA Install Application (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer) (Version: 2.1002.344.0 - NVIDIA Corporation) Hidden OBS Studio (HKLM-x32\...\OBS Studio) (Version: 25.0.8 - OBS Project) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.13426.20332 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.13426.20332 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0415-1000-0000000FF1CE}) (Version: 16.0.13426.20332 - Microsoft Corporation) Hidden Oprogramowanie mikroukładu Intel® (HKLM-x32\...\{17408817-d415-4768-a160-ae6d46d6bdb0}) (Version: 10.1.1.44 - Intel(R) Corporation) Hidden PhotoFiltre Studio X (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\PhotoFiltre Studio X) (Version: - ) PostgreSQL 9.5 (HKLM\...\PostgreSQL 9.5) (Version: 9.5 - PostgreSQL Global Development Group) Razer Cortex (HKLM-x32\...\Razer Cortex_is1) (Version: 9.11.9.1287 - Razer Inc.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.15063.31235 - Realtek Semiconductor Corp.) Rejestrator Ekranu Apowersoft V2.4.0.20 (HKLM-x32\...\{dc9006db-6b05-4f0f-833b-79ef3f284c24}_is1) (Version: 2.4.0.20 - APOWERSOFT LIMITED) Roblox Player for Użytkownik (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\roblox-player) (Version: - Roblox Corporation) Roblox Studio for Użytkownik (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\roblox-studio) (Version: - Roblox Corporation) RW-Everything v1.7 (HKLM\...\RW-Everything_is1) (Version: - ) Scratch 2 Offline Editor (HKLM-x32\...\{6E988774-5309-E02E-7EA8-F19CB65C2063}) (Version: 255 - Massachusetts Institute of Technology) Hidden Scratch 2 Offline Editor (HKLM-x32\...\edu.media.mit.Scratch2Editor) (Version: 461 - Massachusetts Institute of Technology) Scratch Desktop 1.2.1 (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\bad79d23-e888-5a7b-9e99-60ee89b6c8bf) (Version: 1.2.1 - Massachusetts Institute of Technology) Skype (wersja 8.59) (HKLM-x32\...\Skype_is1) (Version: 8.59 - Skype Technologies S.A.) spacedesk Windows DRIVER (HKLM\...\{90E1A9E5-A88B-4F3F-9508-0DA4454A5F3F}) (Version: 0.9.1031.0 - datronicsoft Inc.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Twitch (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{3BAE4496-6F6C-4330-A8AA-B93D3D346FA5}) (Version: 2.53.0.0 - Microsoft Corporation) UpdateAssistant (HKLM\...\{F339C545-24DC-4870-AA32-6EB6B0500B95}) (Version: 1.24.0.0 - Microsoft Corporation) Hidden Vegas Pro 12.0 (64-bit) (HKLM\...\{87CEB7C0-1D35-11E2-8F19-F04DA23A5C58}) (Version: 12.0.394 - Sony) VEGAS Pro 15.0 (HKLM\...\{E0F91FB0-7FC4-11E7-B8E9-95BE57594EAC}) (Version: 15.0.177 - VEGAS) VEGAS Pro 17.0 (HKLM\...\{78C9DDF0-9153-11EA-BB7D-B395EC8FA0B0}) (Version: 17.0.452 - VEGAS) VEGAS Pro 18.0 (HKLM\...\{75111FE1-CE55-11EA-8B12-00155D43CFCE}) (Version: 18.0.284 - VEGAS) War Thunder Launcher 1.0.3.227 (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment) Warface My.Com (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\Warface My.Com) (Version: 1.112 - My.com B.V.) WavePad Sound Editor (HKLM-x32\...\WavePad) (Version: 10.42 - NCH Software) WhatsApp (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\WhatsApp) (Version: 2.2047.11 - WhatsApp) WinRAR 6.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.00.0 - win.rar GmbH) Wondershare Filmora9(Build 9.3.7) (HKLM\...\Wondershare Filmora9_is1) (Version: - Wondershare Software) Wondershare Helper Compact 2.6.0 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.6.0 - Wondershare) World of Tanks (HKLM-x32\...\World of Tanks) (Version: - ) World Of Warships (HKLM-x32\...\World Of Warships) (Version: - ) Zoom (HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\ZoomUMX) (Version: 4.6 - Zoom Video Communications, Inc.) Packages: ========= Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_2.0.1.8_x86__enpm4xejd91yc [2020-07-12] (Adobe Systems Incorporated) Asphalt 8: Airborne -> C:\Program Files\WindowsApps\GAMELOFTSA.Asphalt8Airborne_5.4.0.14_x86__0pp20fcewvvtj [2020-11-02] (GAMELOFT SA) ATV Quad Bike Impossible Stunts Racing Mania 2018 -> C:\Program Files\WindowsApps\NextGenerationGames.ATVQuadBikeImpossibleStuntsRac_1.0.0.0_x64__2zhd81zxzbvgy [2019-07-11] (Next Generation Games) [MS Ad] Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.49.2.0_x86__kgqvnymyfvs32 [2020-12-16] (king.com) Candy Crush Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.1920.1.0_x86__kgqvnymyfvs32 [2020-12-21] (king.com) City Bus Simulator 2019 -> C:\Program Files\WindowsApps\40503AddictiveGamesforFre.CityBusSimulator2019_1.1.0.0_x64__ghkm7c3yx356r [2019-07-10] (Addictive Games for Free) [MS Ad] Clean Road -> C:\Program Files\WindowsApps\63372Melaine1981.CleanRoad_1.1.40.0_x64__7bnw6j29mmj7p [2019-07-10] (Melaine, 1981) [MS Ad] Cooking Fever -> C:\Program Files\WindowsApps\NORDCURRENT.COOKINGFEVER_10.0.5.0_x86__m9bz608c1b9ra [2020-11-21] (Nordcurrent) Craft Pocket 3D - Survival & Exploration -> C:\Program Files\WindowsApps\11578SupremeKingGames.CraftPocket3D-SurvivalExplor_1.2.1.0_x86__n1hwev8tyqzkt [2019-07-10] (Supreme King Games) [MS Ad] Crafting and Build Craft -> C:\Program Files\WindowsApps\13933TinyHotRealGamesCraf.CraftingandBuildingCraft_12.9.1.0_x86__c43dvq1gdbtg8 [2020-02-17] (Tiny Hot Real Games: Craft, Sport, RPG) [MS Ad] Despicable Me: Minion Rush -> C:\Program Files\WindowsApps\GAMELOFTSA.DespicableMeMinionRush_4.1.4.1_x86__0pp20fcewvvtj [2019-11-08] (GAMELOFT SA) Dodatek Aparat multimediów dla aplikacji Zdjęcia -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-01-03] (Microsoft Corporation) Driving School 3D: Nitro Asphalt -> C:\Program Files\WindowsApps\18135VOODOOGamesFree.DrivingSchool3DNitroAsphalt_9.5.2.0_x86__sp8w4c1epg18p [2020-02-14] (VOODOO Games Free) [MS Ad] Electric Guitar Lite -> C:\Program Files\WindowsApps\60708Glauco.ElectricGuitarLite_3.8.0.0_x64__7fjyrzpehcxhr [2019-09-20] (Glauco) Euro Truck Simulator 3D -> C:\Program Files\WindowsApps\35757RoyaleGamesSimulator.EuroTruckSimulator3D_10.5.2.0_x86__mcn7ty5669eje [2020-03-05] (Royale Games & Simulator Games) [MS Ad] Farming Simulator 14 -> C:\Program Files\WindowsApps\GIANTSSoftware.FarmingSimulator14_1.3.0.1_x86__fa8jxm5fj0esw [2019-07-10] (GIANTS Software) Fire Engine Simulator -> C:\Program Files\WindowsApps\SkisoSoft.FireEngineSimulator_1.4.4.0_x64__bdkna9a3jrn5p [2019-07-10] (SkisoSoft) Forza Horizon 4 Demo -> C:\Program Files\WindowsApps\Microsoft.ForzaHorizon4Demo_1.192.906.2_x64__8wekyb3d8bbwe [2020-02-18] (Microsoft Studios) Guitar Lessons Beginners #1 -> C:\Program Files\WindowsApps\Webrox.BestGuitarLessons_2.0.0.0_neutral__0dmhevbabqz82 [2019-12-13] (Webrox) Hill Climb Racing -> C:\Program Files\WindowsApps\FINGERSOFT.HILLCLIMBRACING_1.41.1.0_x86__r6rtpscs7gwyg [2019-10-11] (Fingersoft) [MS Ad] Live Home 3D -> C:\Program Files\WindowsApps\BeLightSoftware3DUSALLC.LiveHome3D_3.8.1116.0_x64__72e05f7xb45sj [2020-12-21] (BeLight Software 3D USA LLC) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-12-20] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-12-20] (Microsoft Corporation) [MS Ad] Microsoft Midi gm.dls -> C:\Program Files\WindowsApps\Microsoft.Midi.GmDls_1.0.1.0_neutral__8wekyb3d8bbwe [2020-12-20] (Microsoft Platform Extensions) Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.10142.0_x64__8wekyb3d8bbwe [2020-12-20] (Microsoft Studios) [MS Ad] Moto Rider GO: Highway Traffic -> C:\Program Files\WindowsApps\C40DCF4F.MotoRiderGOHighwayTraffic_1.2.0.32_x86__b6sb9g8avsqk2 [2019-07-10] (T-Bull) [MS Ad] Moto X3M Bike Race Free -> C:\Program Files\WindowsApps\59347BattleRoyaleCrazyGam.MotoX3MBikeRaceFree_12.5.0.0_x64__zbs94er3r923e [2020-03-05] (Battle Royale Crazy Games NFS) [MS Ad] Music Keyboard -> C:\Program Files\WindowsApps\39329SoundDesigner.MusicKeyboard_5.2.1.0_x64__24rsprxr004q6 [2020-12-21] (SoundDesigner) Parking Frenzy -> C:\Program Files\WindowsApps\1F0695B8.ParkingFrenzy_2.1.0.4_x86__vwsdmxafe68ng [2019-09-21] (Games2win India Pvt. Ltd.) Piano 10 -> C:\Program Files\WindowsApps\3983JEFBCreating.Piano8_2.2.11.0_x64__vy786dcgg6jz4 [2020-06-18] (JEFBCreating) Planner 5D - Home & Interior Design -> C:\Program Files\WindowsApps\UABPlanner5D.Planner5D-HomeInteriorDesign_1.8.102.0_x64__ab7xzjg59kkje [2020-10-04] (UAB Planner5D) Recording Studio -> C:\Program Files\WindowsApps\60708Glauco.RecordingStudio_34.5.0.0_x64__7fjyrzpehcxhr [2019-09-07] (Glauco) [MS Ad] Rock Organ -> C:\Program Files\WindowsApps\60708Glauco.RockOrgan_1.1.0.0_x64__7fjyrzpehcxhr [2019-09-20] (Glauco) Soccer Football League 19 -> C:\Program Files\WindowsApps\8235FPSShooterCraftGames.SoccerFootballLeague19_9.9.0.0_x64__64dmb37w6jjf4 [2020-02-09] (FPS Shooter Craft Games) [MS Ad] Testy na Prawo Jazdy -> C:\Program Files\WindowsApps\13960PiotrKozak.TestynaPrawoJazdy_1.3.4.0_x64__3djbc71geq940 [2019-09-07] (Piotr Kozak) Tractor Farming -> C:\Program Files\WindowsApps\13765BestPocketGames.FarmingSim19_11.1.0.0_x86__d3jp7cesaqgrw [2020-05-04] (Best Pocket Games) [MS Ad] Traffic Racer Highway -> C:\Program Files\WindowsApps\17014DragonLegendsInc.TrafficRacerHighway_9.9.0.0_x86__zqhx7qfmjedk0 [2020-02-14] (Dragon Legends Inc.) [MS Ad] Trash Truck Simulator -> C:\Program Files\WindowsApps\SkisoSoft.TrashTruckSimulator_1.5.0.0_x64__bdkna9a3jrn5p [2019-09-07] (SkisoSoft) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-1440139967-2605993192-3197701665-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\Użytkownik\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20275.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1440139967-2605993192-3197701665-1001_Classes\CLSID\{233525e0-5434-46ef-b464-fd7e45e2e145}\localserver32 -> "C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe" -ToastActivated => Brak pliku CustomCLSID: HKU\S-1-5-21-1440139967-2605993192-3197701665-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-12-07] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-12-07] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-12-07] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Brak pliku ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-12-07] (Adobe Inc. -> ) ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Brak pliku ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Brak pliku ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Brak pliku ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_b784bf8bbfb7663d\igfxDTCM.dll [2017-11-10] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-12-07] (Adobe Inc. -> ) ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Drivers32: [vidc.mjpg] => C:\WINDOWS\system32\bdmjpeg64.dll [75248 2017-01-26] (Bandicam Company -> ) HKLM\...\Drivers32: [vidc.mpeg] => C:\WINDOWS\system32\bdmpegv64.dll [75272 2017-01-26] (Bandicam Company -> ) HKLM\...\Drivers32: [msacm.bdmpeg] => C:\WINDOWS\system32\bdmpega64.acm [75784 2017-01-26] (Bandicam Company -> ) HKLM\...\Drivers32: [vidc.mjpg] => C:\Windows\SysWOW64\bdmjpeg.dll [71152 2017-01-26] (Bandicam Company -> ) HKLM\...\Drivers32: [vidc.mpeg] => C:\Windows\SysWOW64\bdmpegv.dll [71176 2017-01-26] (Bandicam Company -> ) HKLM\...\Drivers32: [msacm.bdmpeg] => C:\Windows\SysWOW64\bdmpega.acm [71176 2017-01-26] (Bandicam Company -> ) ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World Of Warships\World Of Warships.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --app=hxxp://cpm.wargaming.net/dyief78m/?pub_id=100&xid=mkXipNuk3ipzbqQIw3m0D6Q4AwipWTONq1kyWD6Y8hmisSqfMv0zgDTipJgAAAKwEzgYie --app-window-size=1366,768 ShortcutWithArgument: C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks\World of Tanks.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --app=hxxp://cpm.wargaming.net/ogu5s4c4/?pub_id=113&xid=L0isFbFw9wGxfSrdtLkrBGTU6wj57PMw5fGjBOChowXAqOcxsNT7ipJgAAABkO9Vwie --app-window-size=1366,768 ShortcutWithArgument: C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Eduelo.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 1" --app-id=fljfkbfoggkllhkmbgdgakepkkhijndp ShortcutWithArgument: C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Photopea.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 1" --app-id=jdklklfpinionkgpmghaghehojplfjio ShortcutWithArgument: C:\Users\Użytkownik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WarThunder.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --app=hxxp://go.playmmogames.com/aff_c?offer_id=698&aff_id=1034&source=1&aff_sub2=3muhWa0ZpFmubtNY326lLMQepguKGKgMjUnzDdAcokXaGaVQxBripJgAAAOgqkWkie&click_id=01962adec6d7077834053d36df95280bcc97a8db --app-window-size=1366,768 ShortcutWithArgument: C:\Users\Użytkownik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\World of Tanks.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --app=hxxp://cpm.wargaming.net/ogu5s4c4/?pub_id=113&xid=L0isFbFw9wGxfSrdtLkrBGTU6wj57PMw5fGjBOChowXAqOcxsNT7ipJgAAABkO9Vwie --app-window-size=1366,768 ShortcutWithArgument: C:\Users\Użytkownik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\World Of Warships.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --app=hxxp://cpm.wargaming.net/dyief78m/?pub_id=100&xid=mkXipNuk3ipzbqQIw3m0D6Q4AwipWTONq1kyWD6Y8hmisSqfMv0zgDTipJgAAAKwEzgYie --app-window-size=1366,768 ShortcutWithArgument: C:\Users\Użytkownik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default ShortcutWithArgument: C:\Users\Użytkownik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\damianolek353@gmail.com - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1" ==================== Załadowane moduły (filtrowane) ============= 2020-05-21 08:04 - 2016-08-09 06:13 - 000183296 _____ () [Brak podpisu cyfrowego] C:\Program Files\PostgreSQL\9.5\bin\LIBPQ.dll 2020-05-21 08:06 - 2016-07-27 09:08 - 002264576 _____ () [Brak podpisu cyfrowego] C:\Program Files\PostgreSQL\9.5\bin\libxml2.dll 2019-10-26 07:15 - 2019-10-26 07:15 - 001743360 ____T (bookingDesktopApp.) [Brak podpisu cyfrowego] C:\Program Files (x86)\bookingDesktopApp\Update\1.3.99.0\bookingDesktopApppdate.dll 2020-05-21 08:05 - 2015-08-26 09:40 - 001687930 _____ (Free Software Foundation) [Brak podpisu cyfrowego] C:\Program Files\PostgreSQL\9.5\bin\libiconv-2.dll 2020-05-21 08:06 - 2015-08-26 09:40 - 000685350 _____ (Free Software Foundation) [Brak podpisu cyfrowego] C:\Program Files\PostgreSQL\9.5\bin\libintl-8.dll 2020-05-21 08:06 - 2016-05-05 07:35 - 001655808 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files\PostgreSQL\9.5\bin\LIBEAY32.dll 2020-05-21 08:06 - 2016-05-05 07:35 - 000349696 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files\PostgreSQL\9.5\bin\SSLEAY32.dll ==================== Alternate Data Streams (filtrowane) ======== (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [482] ==================== Tryb awaryjny (filtrowane) ================== ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer (filtrowane) ========== SearchScopes: HKLM-x32 -> DefaultScope {2F5C40C8-6D23-4e64-A7B8-6D1058499BEC} URL = SearchScopes: HKU\S-1-5-21-1440139967-2605993192-3197701665-1001 -> DefaultScope {BF61237C-1EAC-454C-B624-BB80E7E481D8} URL = hxxp://www.global-pl.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-1440139967-2605993192-3197701665-1001 -> {BF61237C-1EAC-454C-B624-BB80E7E481D8} URL = hxxp://www.global-pl.com/search?q={searchTerms} BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_211\bin\ssv.dll [2019-05-05] (Oracle America, Inc. -> Oracle Corporation) BHO: Brak nazwy -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> Brak pliku BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-05-05] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2020-09-18] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Brak nazwy -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> Brak pliku Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-06] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-12-06] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-06] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-12-06] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-06] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-12-06] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-06] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-12-06] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE trusted site: HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\sharepoint.com -> hxxps://spdalachow-files.sharepoint.com ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2017-09-29 14:46 - 2020-12-20 11:07 - 000012349 _____ C:\WINDOWS\system32\drivers\etc\hosts 0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly 0.0.0.0 tracking.opencandy.com.s3.amazonaws.com 0.0.0.0 media.opencandy.com 0.0.0.0 cdn.opencandy.com 0.0.0.0 tracking.opencandy.com 0.0.0.0 api.opencandy.com 0.0.0.0 api.recommendedsw.com 0.0.0.0 rp.yefeneri2.com 0.0.0.0 os.yefeneri2.com 0.0.0.0 os2.yefeneri2.com 0.0.0.0 installer.betterinstaller.com 0.0.0.0 installer.filebulldog.com 0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net 0.0.0.0 inno.bisrv.com 0.0.0.0 nsis.bisrv.com 0.0.0.0 cdn.file2desktop.com 0.0.0.0 cdn.goateastcach.us 0.0.0.0 cdn.guttastatdk.us 0.0.0.0 cdn.inskinmedia.com 0.0.0.0 cdn.insta.oibundles2.com 0.0.0.0 cdn.insta.playbryte.com 0.0.0.0 cdn.llogetfastcach.us 0.0.0.0 cdn.montiera.com 0.0.0.0 cdn.msdwnld.com 0.0.0.0 cdn.mypcbackup.com 0.0.0.0 cdn.ppdownload.com 0.0.0.0 cdn.riceateastcach.us 0.0.0.0 cdn.shyapotato.us 0.0.0.0 cdn.solimba.com 0.0.0.0 cdn.tuto4pc.com ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> %INTEL_DEV_REDIST%redist\intel64\compiler;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg HKU\S-1-5-21-1440139967-2605993192-3197701665-1002\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg DNS Servers: 192.168.100.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) MSCONFIG\Services: McAfee WebAdvisor => 2 MSCONFIG\Services: SUService => 3 HKLM\...\StartupApproved\Run: => "RTHDVCPL" HKLM\...\StartupApproved\Run: => "RtHDVBg_LENOVO_DOLBYDRAGON" HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "Adobe Creative Cloud" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe" HKLM\...\StartupApproved\Run32: => "Adobe CCXProcess" HKLM\...\StartupApproved\Run32: => "RazerCortex" HKLM\...\StartupApproved\Run32: => "OnrymSpeedup" HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "AdobeGCInvoker-1.0" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\StartupFolder: => "Facebook Gameroom.lnk" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\StartupFolder: => "Twitch.lnk" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\StartupFolder: => "Wysyłanie do programu OneNote.lnk" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\Run: => "EpicGamesLauncher" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\Run: => "SteamServerBrowser" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\Run: => "GameCenter" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\Run: => "ApowersoftScreenRecorder" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\Run: => "Chromium" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_F3937D4F98688418A5D5AAE5B0FB420A" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\Run: => "Opera Browser Assistant" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\Run: => "CCXProcess" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\Run: => "Skype for Desktop" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams" HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\StartupApproved\Run: => "Discord" ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{A0CBB06D-CDD7-47CC-B0B7-2A3F2D88C0E1}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{35E0F2B8-62F0-4071-A810-ACCE432194FD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [UDP Query User{58792667-37CA-4011-91FD-737E7487581C}C:\program files\epic games\farmingsimulator19\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Allow) C:\program files\epic games\farmingsimulator19\farmingsimulator19\x64\farmingsimulator2019game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [TCP Query User{DD8F6251-B635-48FD-9E95-3D7122456C94}C:\program files\epic games\farmingsimulator19\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Allow) C:\program files\epic games\farmingsimulator19\farmingsimulator19\x64\farmingsimulator2019game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [UDP Query User{F80D9050-E826-498B-90EF-3421E1F0A578}C:\users\użytkownik\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\użytkownik\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{A8DDFD8D-3183-448C-846F-B93934009271}C:\users\użytkownik\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\użytkownik\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{70BA8ED0-2547-4BF2-A7A9-C870A04CF2F3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2 Demo\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{6B93694B-7F5B-4AD8-BCCD-FF196CCE4DB2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2 Demo\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [UDP Query User{AFF6A9CB-98C7-4E55-9507-C4D6E902AF98}C:\program files\java\jre1.8.0_211\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_211\bin\javaw.exe FirewallRules: [TCP Query User{3C39C513-22EC-44A5-A293-3C6E65C8CDB5}C:\program files\java\jre1.8.0_211\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_211\bin\javaw.exe FirewallRules: [{BE9B452D-200C-4003-849D-E7915230782B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 19\x64\FarmingSimulator2019Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [{4858B012-30E7-47B2-A0BB-D029C3E6BA5C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 19\x64\FarmingSimulator2019Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [{DE972D5E-D732-4352-B4C8-0DFCCDDFBC85}] => (Block) C:\users\użytkownik\appdata\local\nvidia corporation\geforcenow\cef\geforcenowstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{AE186F77-9763-4277-A579-19FEFD4A1749}] => (Block) C:\users\użytkownik\appdata\local\nvidia corporation\geforcenow\cef\geforcenowstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [UDP Query User{9F5C1719-A193-4F5F-A899-CD086A9DBD40}C:\users\użytkownik\appdata\local\nvidia corporation\geforcenow\cef\geforcenowstreamer.exe] => (Allow) C:\users\użytkownik\appdata\local\nvidia corporation\geforcenow\cef\geforcenowstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [TCP Query User{7EBBB902-A3BE-435A-B35F-D78FB0E0C9DE}C:\users\użytkownik\appdata\local\nvidia corporation\geforcenow\cef\geforcenowstreamer.exe] => (Allow) C:\users\użytkownik\appdata\local\nvidia corporation\geforcenow\cef\geforcenowstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{1DAA965B-F147-490D-9C88-C4EEC8E3A1B4}] => (Allow) C:\WINDOWS\system32\spacedeskService.exe (Datronicsoft, Inc. -> ) FirewallRules: [{4E40976A-BC71-4E1E-84E1-D20D20F5E332}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 19\x64\FarmingSimulator2019Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [{58C0D798-E6FF-4ACB-9CD7-BF42FF10CC74}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 19\x64\FarmingSimulator2019Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [UDP Query User{67F10ADF-7475-4E43-B787-0D8510F326E3}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [TCP Query User{0D4B3290-D3D4-4D19-BB4F-8D5D3869094D}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{AB6E92DA-4980-410D-8346-CE0F11C8E1F0}] => (Allow) C:\Program Files\ATOMI\ActivePresenter\rlactivator.exe (ATOMI SYSTEMS, INC. -> Atomi Systems, Inc.) FirewallRules: [{D66791D5-2AF3-4220-8F46-DE80FC458D4A}] => (Allow) C:\Program Files\ATOMI\ActivePresenter\ActivePresenter.exe (ATOMI SYSTEMS, INC. -> Atomi Systems, Inc.) FirewallRules: [{435659D4-720B-4B98-9FA2-456CA1D2ADD5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{EC55B26A-8633-4470-A60F-C30500B2C821}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [UDP Query User{BAF4F068-F0A9-4EEB-B2D1-64C11893D9A0}C:\users\użytkownik\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\użytkownik\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{06162C2B-F22C-40C4-BAD6-CC103C3CD7BD}C:\users\użytkownik\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\użytkownik\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{2E0EAE09-F079-4296-9854-48B18B128FEF}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{204FC99A-0121-4CD4-A0E7-7BC4BC128F38}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{777F7256-8346-4403-B5FC-9D519159CEB4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fishing Planet\FishingPlanet.exe () [Brak podpisu cyfrowego] FirewallRules: [{C7EE6294-DE2F-472C-99C0-FF93026E1F78}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fishing Planet\FishingPlanet.exe () [Brak podpisu cyfrowego] FirewallRules: [{DAA110B7-E5B7-4667-969C-711E8269FCB4}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{C5B6B97A-E280-4B0A-B9C7-F1F70A07D93A}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [UDP Query User{0BCF8FD2-3CFE-42F7-A1BE-69EBD626A477}C:\users\użytkownik\appdata\local\warthunder\launcher.exe] => (Allow) C:\users\użytkownik\appdata\local\warthunder\launcher.exe (Gaijin Network LTD -> Gaijin Entertainment) FirewallRules: [TCP Query User{E71AD765-0E18-4B09-A427-4D2BF2EF504A}C:\users\użytkownik\appdata\local\warthunder\launcher.exe] => (Allow) C:\users\użytkownik\appdata\local\warthunder\launcher.exe (Gaijin Network LTD -> Gaijin Entertainment) FirewallRules: [{BF61AACA-1ACA-49AA-847B-699902BDAE55}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe (BlueStack Systems, Inc. -> BlueStack Systems, Inc.) FirewallRules: [UDP Query User{AF9AB211-FEE2-4B57-BD97-627470AF1BAC}C:\program files\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Block) C:\program files\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [TCP Query User{1E21C252-8902-46D5-A247-155C004E88C7}C:\program files\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Block) C:\program files\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [{9261B0DD-696D-42D8-AF92-69B810E4A705}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{D89E1564-5C88-46B3-AFB8-2E792DFBBCCD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{BB3A0664-087E-498A-BC6E-F0925A055D67}] => (Allow) C:\Program Files (x86)\Techland\Agrar Symulator 2012\iupdate.dll (ActaLogic) [Brak podpisu cyfrowego] FirewallRules: [{02387ED7-5EB2-4DFB-9C9A-0A062B6D57E7}] => (Allow) C:\Program Files (x86)\Techland\Agrar Symulator 2012\farm2012.exe (ActaLogic) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{414C19D2-E7A5-416A-B9EA-EBB59A5BDF19}F:\empic games launcher\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) F:\empic games launcher\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{5C1CE943-879D-4D2B-8F98-614D4FA935D9}F:\empic games launcher\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) F:\empic games launcher\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{EFF29FEB-AF62-42AC-B480-6E429D5D40EE}F:\empic games launcher\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) F:\empic games launcher\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{4C17AFFD-4092-4BF1-BD2E-88A97541619E}F:\empic games launcher\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) F:\empic games launcher\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [{F36F587E-5A45-4C22-A808-60D8961EE460}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{33400CE5-1D82-4655-96C8-343D5D71EC89}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [TCP Query User{1E5B8485-91C0-4E17-AA64-D72D6D64F814}C:\users\użytkownik\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\użytkownik\appdata\local\mycomgames\mycomgames.exe (Mail.Ru, LLC -> MY.COM B.V.) FirewallRules: [UDP Query User{B572673D-7893-4B2C-8907-BA15564469D7}C:\users\użytkownik\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\użytkownik\appdata\local\mycomgames\mycomgames.exe (Mail.Ru, LLC -> MY.COM B.V.) FirewallRules: [TCP Query User{0902A6F6-7814-4EB6-8354-528079E00910}C:\users\użytkownik\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\użytkownik\appdata\local\gamecenter\gamecenter.exe (Mail.Ru LLC -> ) FirewallRules: [UDP Query User{A7E9FBB3-9CE5-430E-A189-D5978E3664D7}C:\users\użytkownik\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\użytkownik\appdata\local\gamecenter\gamecenter.exe (Mail.Ru LLC -> ) FirewallRules: [TCP Query User{58C3434B-3DD9-4B9C-AE19-859F180312FC}F:\empic games launcher\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) F:\empic games launcher\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{CB968E4B-2E31-444B-BEE9-6DC59D0121CB}F:\empic games launcher\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) F:\empic games launcher\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{3761AE9B-4417-454A-B26F-C4899917C310}C:\users\użytkownik\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\użytkownik\appdata\local\gamecenter\gamecenter.exe (Mail.Ru LLC -> ) FirewallRules: [UDP Query User{55E97189-A3B7-45E1-96D6-57F3EB76FD0C}C:\users\użytkownik\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\użytkownik\appdata\local\gamecenter\gamecenter.exe (Mail.Ru LLC -> ) FirewallRules: [TCP Query User{2FA08E62-73E0-42CD-A911-80BDAEFC280A}C:\program files\java\jre1.8.0_211\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_211\bin\javaw.exe FirewallRules: [UDP Query User{F508FE26-8A85-4C9E-9328-CAF1C198FC81}C:\program files\java\jre1.8.0_211\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_211\bin\javaw.exe FirewallRules: [{F0182F77-4B1E-47AE-895D-2749057538AA}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe (Apowersoft Ltd -> Apowersoft) FirewallRules: [{DA348F51-4B38-41DA-A783-D4C087FC2F76}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe (Apowersoft Ltd -> Apowersoft) FirewallRules: [{73450D70-371D-453F-9B4F-6718A0FE6329}] => (Allow) C:\Users\Użytkownik\AppData\Local\Apowersoft\Apowersoft Online Launcher\Apowersoft Online Launcher.exe (Apowersoft Ltd -> Apowersoft) FirewallRules: [{CCE525CA-4354-4AB8-B91C-C318F11FCADB}] => (Allow) C:\Users\Użytkownik\AppData\Local\Apowersoft\Apowersoft Online Launcher\Apowersoft Online Launcher.exe (Apowersoft Ltd -> Apowersoft) FirewallRules: [{4B67C2C0-AFC6-49FF-BC6D-C05FAE293E0E}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerREC\ApowerREC.exe (Apowersoft Ltd -> Apowersoft) FirewallRules: [{8C635334-A65C-418E-BCE9-9BBCDAE4CCD6}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerREC\ApowerREC.exe (Apowersoft Ltd -> Apowersoft) FirewallRules: [{FAF39D49-BCB5-475C-B2E3-8759C839C12A}] => (Allow) C:\Program Files (x86)\CDP Games\Farming Simulator 15\FarmingSimulator2015.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [{054FDCC8-E7F6-4DE2-AF66-DB3783F5B889}] => (Allow) C:\Program Files (x86)\CDP Games\Farming Simulator 15\dedicatedServer.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [{AEEDE506-15AB-47EE-8D8B-8E6F8856E46B}] => (Allow) C:\Program Files (x86)\CDP Games\Farming Simulator 15\FarmingSimulator2015.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [{25CC3352-3DFE-4B51-86E1-A5ACA43082EB}] => (Allow) C:\Program Files (x86)\CDP Games\Farming Simulator 15\dedicatedServer.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [{220368EE-3BA7-4A11-9549-F99EDD56FB48}] => (Allow) C:\Program Files (x86)\Bignox\BigNoxVM\RT\NoxVMHandle.exe (Nox Limited -> BigNox Corporation) FirewallRules: [{7AEC6698-56B1-48D0-A6EE-6BCE51BD5175}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) System Usage Report -> ) FirewallRules: [{3C11D29C-89A8-4075-97A9-3A089268FBC5}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) System Usage Report -> ) FirewallRules: [{7AD42248-557E-4729-A65C-2D88EA397AF0}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) System Usage Report -> ) FirewallRules: [{28EC8030-EF82-4E7F-A1F1-616A6EAC0B64}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) System Usage Report -> ) FirewallRules: [{C5129DCF-F8F6-45A9-8811-D86BF1178BAE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{E3DCDEA3-58A0-40DF-BCE8-CE88D1C1CC2E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{75F0BB4B-5ADA-446F-8F9A-EA150CFE993E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{0233EC17-D1C5-4D80-AF3C-D7770F9E34C8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) ==================== Punkty Przywracania systemu ========================= 21-12-2020 16:26:48 AdwCleaner_BeforeCleaning_21/12/2020_16:26:41 22-12-2020 04:51:37 AdwCleaner_BeforeCleaning_22/12/2020_04:51:36 ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (12/22/2020 04:57:57 AM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: Minął czas oczekiwania na uruchomienie serwera Error: (12/21/2020 06:13:56 PM) (Source: DSAService) (EventID: 1003) (User: ) Description: DSAService.exe:OnStart Exception: System.ArgumentException: invalid directory handle||Nazwa parametru: value|| w DSAServiceCore.Controllers.Computer.SettingsController.SetDsaDirectory(String value)|| w Intel.DSA.Service.Service.OnStartTask() Error: (12/21/2020 05:50:56 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: launcher.exe_Opera GX Internet Browser, wersja: 72.0.3815.454, sygnatura czasowa: 0x5fdc7c4c Nazwa modułu powodującego błąd: launcher.exe, wersja: 72.0.3815.454, sygnatura czasowa: 0x5fdc7c4c Kod wyjątku: 0x80000003 Przesunięcie błędu: 0x0000000000062ff7 Identyfikator procesu powodującego błąd: 0x1cd0 Godzina uruchomienia aplikacji powodującej błąd: 0x01d6d7b8d149f5ab Ścieżka aplikacji powodującej błąd: C:\Users\Użytkownik\AppData\Local\Programs\Opera GX\launcher.exe Ścieżka modułu powodującego błąd: C:\Users\Użytkownik\AppData\Local\Programs\Opera GX\launcher.exe Identyfikator raportu: b3804fb1-4934-4730-bb3a-46676f08aba7 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (12/21/2020 05:49:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: launcher.exe_Opera Internet Browser, wersja: 73.0.3856.284, sygnatura czasowa: 0x5fd9a987 Nazwa modułu powodującego błąd: launcher.exe, wersja: 73.0.3856.284, sygnatura czasowa: 0x5fd9a987 Kod wyjątku: 0x80000003 Przesunięcie błędu: 0x0000000000065d1e Identyfikator procesu powodującego błąd: 0x21ac Godzina uruchomienia aplikacji powodującej błąd: 0x01d6d7b8d149f603 Ścieżka aplikacji powodującej błąd: c:\users\użytkownik\appdata\local\programs\opera\launcher.exe Ścieżka modułu powodującego błąd: c:\users\użytkownik\appdata\local\programs\opera\launcher.exe Identyfikator raportu: 3cd4719e-f00c-4945-8ba9-f1a8e5832f94 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (12/21/2020 05:49:24 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program SystemSettings.exe w wersji 10.0.19041.610 przestał współpracować z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemów w oknie Zabezpieczenia i konserwacja w Panelu sterowania. Identyfikator procesu: 784 Godzina rozpoczęcia: 01d6d7b8b3beb053 Godzina zakończenia: 4294967295 Ścieżka aplikacji: C:\Windows\ImmersiveControlPanel\SystemSettings.exe Identyfikator raportu: f1e905cb-480c-40b1-b369-b797a3c31388 Pełna nazwa pakietu powodującego błąd: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy Identyfikator aplikacji powiązanej z pakietem powodującym błąd: microsoft.windows.immersivecontrolpanel Typ zawieszenia: Quiesce Error: (12/21/2020 04:55:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: LenovoVantageService.exe, wersja: 3.3.115.0, sygnatura czasowa: 0xaf7bc527 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 10.0.19041.662, sygnatura czasowa: 0xec58f015 Kod wyjątku: 0xe0434352 Przesunięcie błędu: 0x000000000002d759 Identyfikator procesu powodującego błąd: 0x6b0 Godzina uruchomienia aplikacji powodującej błąd: 0x01d6d7b1b2ca1c50 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Lenovo\VantageService\3.3.115.0\LenovoVantageService.exe Ścieżka modułu powodującego błąd: C:\WINDOWS\System32\KERNELBASE.dll Identyfikator raportu: a6f16b1f-7014-4629-92d3-48872f912022 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (12/21/2020 04:55:31 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Aplikacja: LenovoVantageService.exe Wersja architektury: v4.0.30319 Opis: proces został przerwany z powodu nieobsłużonego wyjątku. Informacje o wyjątku: System.IO.FileLoadException w Microsoft.Diagnostics.Tracing.TraceEventRawReaders.ReadInt32(IntPtr, Int32) w Microsoft.Diagnostics.Tracing.Parsers.Kernel.ProcessTraceData.FixupData() w Microsoft.Diagnostics.Tracing.ETWTraceEventSource.RawDispatch(EVENT_RECORD*) w Microsoft.Diagnostics.Tracing.TraceEventNativeMethods.ProcessTrace(UInt64[], UInt32, IntPtr, IntPtr) w Microsoft.Diagnostics.Tracing.ETWTraceEventSource.ProcessOneFile() w Microsoft.Diagnostics.Tracing.ETWTraceEventSource.Process() w System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) w System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) w System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) w System.Threading.ThreadHelper.ThreadStart() Error: (12/21/2020 04:43:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: LenovoVantageService.exe, wersja: 3.3.115.0, sygnatura czasowa: 0xaf7bc527 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 10.0.19041.662, sygnatura czasowa: 0xec58f015 Kod wyjątku: 0xe0434352 Przesunięcie błędu: 0x000000000002d759 Identyfikator procesu powodującego błąd: 0xf38 Godzina uruchomienia aplikacji powodującej błąd: 0x01d6d7af78f4b3fe Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Lenovo\VantageService\3.3.115.0\LenovoVantageService.exe Ścieżka modułu powodującego błąd: C:\WINDOWS\System32\KERNELBASE.dll Identyfikator raportu: 82bbbd5d-0849-4720-9e28-e365e11c3b4c Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Dziennik System: ============= Error: (12/22/2020 05:25:11 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Intel(R) SUR QC Software Asset Manager. Error: (12/22/2020 05:24:42 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0 z powodu następującego błędu: Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. Error: (12/22/2020 05:24:42 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0. Error: (12/22/2020 05:24:12 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0 z powodu następującego błędu: Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. Error: (12/22/2020 05:24:12 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0. Error: (12/22/2020 05:00:40 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Energy Server Service queencreek zawiesiła się podczas uruchamiania. Error: (12/22/2020 04:57:55 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0 z powodu następującego błędu: Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. Error: (12/22/2020 04:57:55 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0. Windows Defender: =================================== Date: 2020-12-22 16:30:14.7080000Z Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {8E747C0F-49ED-42A3-8EA0-40AF68FB15F7} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Pełne skanowanie Użytkownik: DESKTOP-6772DMG\Użytkownik Date: 2020-12-22 05:54:24.8310000Z Description: Produkt Program antywirusowy Microsoft Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie. Aby uzyskać więcej informacji, zobacz: https://go.microsoft.com/fwlink/?linkid=37020&name=VirTool:Win32/DefenderTamperingRestore&threatid=2147741622&enterprise=0 Nazwa: VirTool:Win32/DefenderTamperingRestore Identyfikator: 2147741622 Ważność: Poważny Kategoria: Narzędzie Ścieżka: regkeyvalue:_hklm\software\policies\microsoft\windows defender\real-time protection\\DisableScanOnRealtimeEnable Pochodzenie wykrycia: Nieznane Typ wykrycia: Konkretne Źródło wykrycia: System Użytkownik: ZARZĄDZANIE NT\SYSTEM Nazwa procesu: Unknown Wersja analizy zabezpieczeń: AV: 1.329.829.0, AS: 1.329.829.0, NIS: 1.329.829.0 Wersja aparatu: AM: 1.1.17700.4, NIS: 1.1.17700.4 Date: 2020-12-22 05:44:57.3940000Z Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {1438665E-07A7-41DD-A375-D0CD69D88E1F} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Date: 2020-12-22 05:34:26.3710000Z Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {7A4BD84B-B0AB-47E2-B759-0E3640D3EDB6} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Pełne skanowanie Użytkownik: DESKTOP-6772DMG\Użytkownik CodeIntegrity: =================================== Date: 2020-12-21 15:33:54.9770000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Digital Communications\SAntivirus\SInspector.dll that did not meet the Microsoft signing level requirements. Date: 2020-12-21 15:25:43.5770000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Digital Communications\SAntivirus\SInspector.dll that did not meet the Microsoft signing level requirements. Date: 2020-12-21 15:17:29.0680000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Digital Communications\SAntivirus\SInspector.dll that did not meet the Microsoft signing level requirements. Date: 2020-12-21 15:09:03.5240000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Digital Communications\SAntivirus\SInspector.dll that did not meet the Microsoft signing level requirements. Date: 2020-12-21 15:00:46.9590000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Digital Communications\SAntivirus\SInspector.dll that did not meet the Microsoft signing level requirements. Date: 2020-12-21 14:52:21.0920000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Digital Communications\SAntivirus\SInspector.dll that did not meet the Microsoft signing level requirements. Date: 2020-12-21 14:44:09.7160000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Digital Communications\SAntivirus\SInspector.dll that did not meet the Microsoft signing level requirements. Date: 2020-12-21 14:34:17.7480000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Digital Communications\SAntivirus\SInspector.dll that did not meet the Microsoft signing level requirements. ==================== Statystyki pamięci =========================== BIOS: LENOVO 1KCN51WW 06/03/2020 Płyta główna: LENOVO LNVNB161216 Procesor: Intel(R) Core(TM) i3-6100U CPU @ 2.30GHz Procent pamięci w użyciu: 89% Całkowita pamięć fizyczna: 3893.05 MB Dostępna pamięć fizyczna: 423.71 MB Całkowita pamięć wirtualna: 10805.05 MB Dostępna pamięć wirtualna: 6276.48 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:439.12 GB) (Free:71.13 GB) NTFS Drive f: (Nowy) (Fixed) (Total:491.21 GB) (Free:489.35 GB) NTFS \\?\Volume{8ce45b49-61b0-4947-9aec-c3d2991cfc68}\ () (Fixed) (Total:0.49 GB) (Free:0.47 GB) NTFS \\?\Volume{b45e77c0-6847-4d3c-9c4c-e0b4e60655b3}\ () (Fixed) (Total:0.58 GB) (Free:0.08 GB) NTFS \\?\Volume{af1ee121-ab39-4d9d-a759-61f8205e275a}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: F8635456) Partition: GPT. ==================== Koniec Addition.txt =======================