Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 14-12-2020 Uruchomiony przez Użytkownik (27-12-2020 10:11:26) Uruchomiony z C:\Users\Użytkownik\Downloads Windows 10 Home Wersja 20H2 19042.685 (X64) (2020-09-02 18:25:15) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1887935537-3924319083-3171852583-500 - Administrator - Disabled) Gość (S-1-5-21-1887935537-3924319083-3171852583-501 - Limited - Disabled) Konto domyślne (S-1-5-21-1887935537-3924319083-3171852583-503 - Limited - Disabled) postgres (S-1-5-21-1887935537-3924319083-3171852583-1003 - Limited - Enabled) => C:\Users\postgres Użytkownik (S-1-5-21-1887935537-3924319083-3171852583-1001 - Administrator - Enabled) => C:\Users\Użytkownik WDAGUtilityAccount (S-1-5-21-1887935537-3924319083-3171852583-504 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Bitdefender Ochrona antywirusowa (Enabled - Up to date) {0E17DB7D-A20F-62CE-B95B-17DB0CDFE318} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Bitdefender Moduł antyszpiegowski (Enabled - Up to date) {B5763A99-8435-6D40-83EB-2CA97758A9A5} FW: Bitdefender Zapora Sieciowa (Enabled) {362C5A58-E860-6396-9204-BEEEF20CA463} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 4K Video Downloader 4.7 (HKLM-x32\...\{B6A2793C-9812-4768-8017-B60D3E6AA3C0}) (Version: 4.7.2.2732 - Open Media LLC) 7-Zip 18.05 (x64) (HKLM\...\7-Zip) (Version: 18.05 - Igor Pavlov) ABBYY PDF Transformer+ (HKLM\...\{FA400000-0001-6400-0000-074957833700}) (Version: 4.2.882 - ABBYY Production LLC) Acer Care Center (HKLM\...\{1AF41E84-3408-499A-8C93-8891F0612719}) (Version: 2.00.3038 - Acer Incorporated) Adobe Flash Player 28 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 28.0.0.133 - Adobe Systems Incorporated) AIMP (HKLM-x32\...\AIMP) (Version: v4.51.2080, 07.07.2018 - AIMP DevTeam) Aktualizacje NVIDIA 38.0.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.5.0 - NVIDIA Corporation) Hidden Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 23.0.8.115 - Bitdefender) Bitdefender Internet Security (HKLM\...\Bitdefender) (Version: 23.0.9.25 - Bitdefender) BitTorrent (HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\BitTorrent) (Version: 7.10.5.45665 - BitTorrent Inc.) CrystalDiskInfo 8.9.0 (HKLM\...\CrystalDiskInfo_is1) (Version: 8.9.0 - Crystal Dew World) Discord (HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\Discord) (Version: 0.0.308 - Discord Inc.) Dolby Audio X2 Windows API SDK (HKLM\...\{F290F786-5F69-48D4-B20B-D21C7DE56EF0}) (Version: 0.8.8.88 - Dolby Laboratories, Inc.) Driver Booster 7 (HKLM-x32\...\Driver Booster_is1) (Version: 7.6.0 - IObit) Epic Games Launcher (HKLM-x32\...\{39D848C4-F441-470F-8FAB-51D60946D35B}) (Version: 1.1.267.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Evernote v. 6.20.2 (HKLM-x32\...\{0D94350E-B007-11E9-A691-005056951CAD}) (Version: 6.20.2.8626 - Evernote Corp.) FastStone Photo Resizer 3.8 (HKLM-x32\...\FastStone Photo Resizer) (Version: 3.8 - FastStone Soft.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 87.0.4280.88 - Google LLC) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.51 - Google LLC) Hidden GoTo Opener (HKLM-x32\...\{C0F33C38-345C-4C02-B161-11389350C2A5}) (Version: 1.0.533 - LogMeIn, Inc.) GoToMeeting 10.14.0.18962 (HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\GoToMeeting) (Version: 10.14.0.18962 - LogMeIn, Inc.) HP Deskjet 2540 series — podstawowe oprogramowanie urządzenia (HKLM\...\{642A855A-F7A6-429C-9818-DF41AE1982BE}) (Version: 32.2.188.47710 - Hewlett-Packard Co.) HP Deskjet 2540 series Pomoc (HKLM-x32\...\{387813C9-5DFE-453E-95AE-142F2C6E929E}) (Version: 30.0.0 - Hewlett Packard) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) iCloud Outlook (HKLM\...\{A8C64C2A-BD34-464F-BA61-A969BA46FC2B}) (Version: 10.9.3.62 - Apple Inc.) Intel Driver && Support Assistant (HKLM-x32\...\{513BFF20-438E-4C8B-9C41-DE06B47D3148}) (Version: 20.11.50.9 - Intel) Hidden Intel(R) Computing Improvement Program (HKLM\...\{44C40B2E-7285-4A9F-A9BC-DF433772AAEE}) (Version: 2.4.05929 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 22.20.16.4691 - Intel Corporation) Intel® Driver & Support Assistant (HKLM-x32\...\{7972bdc2-99e9-4a54-b071-e7f08bdf056d}) (Version: 20.11.50.9 - Intel) IrfanView 4.51 (64-bit) (HKLM\...\IrfanView64) (Version: 4.51 - Irfan Skiljan) Java(TM) SE Development Kit 11.0.1 (64-bit) (HKLM\...\{F4039C0F-E4C1-5905-9E7D-DDA8EDE365BC}) (Version: 11.0.1.0 - Oracle Corporation) KeePassXC (HKLM\...\{FEE3E3CD-2A6C-464E-8424-DE7512D4A5D0}) (Version: 2.6.2 - KeePassXC Team) K-Lite Codec Pack 13.6.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 13.6.5 - KLCP) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden LAV Filters 0.55.3 (HKLM-x32\...\lavfilters_is1) (Version: 0.55.3 - Hendrik Leppkes) Mazda Toolbox (HKLM-x32\...\Mazda Toolbox) (Version: - ) Microsoft 365 - pl-pl (HKLM\...\O365HomePremRetail - pl-pl) (Version: 16.0.13426.20404 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 87.0.664.66 - Microsoft Corporation) Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.139.59 - ) Microsoft Lync Web App Plug-in (HKLM\...\{BE6D5464-0B1F-46CC-8973-F9651FE6A45A}) (Version: 15.8.8308.965 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\OneDriveSetup.exe) (Version: 20.201.1005.0009 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\Teams) (Version: 1.3.00.26064 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{406C9ADB-1325-4FD0-9D13-C119CFF64E0A}) (Version: 2.65.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.26.28720 (HKLM-x32\...\{7d607fb4-7e28-4c7a-a92f-3fcdaf555faf}) (Version: 14.26.28720.3 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.26.28720 (HKLM-x32\...\{86380aef-fd23-4fc3-8723-a98ccad8f2c6}) (Version: 14.26.28720.3 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2017 (HKLM-x32\...\{5a7dc0ad-cdb2-43b5-8b82-f81065fe6092}) (Version: 15.0.26717 - Microsoft Corporation) Mobirise4 (HKLM-x32\...\Mobirise4_is1) (Version: - Mobirise.com) Mozilla Firefox 75.0 (x64 pl) (HKLM\...\Mozilla Firefox 75.0 (x64 pl)) (Version: 75.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 67.0.1 - Mozilla) Mozilla Thunderbird 60.8.0 (x86 pl) (HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\Mozilla Thunderbird 60.8.0 (x86 pl)) (Version: 60.8.0 - Mozilla) MySQL Connector C++ 8.0 (HKLM\...\{1AFB36EB-4D4C-484B-8961-03ECC994FDAB}) (Version: 8.0.21 - Oracle Corporation) MySQL Connector J (HKLM-x32\...\{D291E445-5955-4748-A3FB-CC61375E798A}) (Version: 8.0.21 - Oracle Corporation) MySQL Connector Net 8.0.21 (HKLM-x32\...\{B76BB4C5-40E4-4D2C-8A18-8C85C304D084}) (Version: 8.0.21 - Oracle) MySQL Connector/ODBC 8.0 (HKLM\...\{1E923AE9-0843-4562-ABAE-E434FE1B332D}) (Version: 8.0.21 - Oracle Corporation) MySQL Documents 8.0 (HKLM-x32\...\{C7277681-EAC0-4C0D-AC69-17CCACE2C75D}) (Version: 8.0.21 - Oracle Corporation) MySQL Examples and Samples 8.0 (HKLM-x32\...\{C9D48225-3811-4FBC-9ED4-06CD25FB04AB}) (Version: 8.0.21 - Oracle Corporation) MySQL For Excel 1.3.8 (HKLM-x32\...\{925520D3-909C-4E50-8D3C-A651D2CF3E0B}) (Version: 1.3.8 - Oracle) MySQL Notifier 1.1.8 (HKLM-x32\...\{13397C33-9B69-49D8-81FA-1630D751AEE5}) (Version: 1.1.8 - Oracle) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) NordVPN (HKLM\...\{19465C24-3D5D-4327-B99F-3CC0A1D38151}_is1) (Version: 6.32.24.0 - TEFINCOM S.A.) NordVPN network TAP (HKLM-x32\...\{97DEC5D6-2BE9-45BB-BFC5-274B851B486B}) (Version: 1.0.1 - NordVPN) NordVPN network TUN (HKLM\...\{BD0E4F38-D3F6-452D-A32E-B14D721839AC}) (Version: 1.0.1 - NordVPN) NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.27 - NVIDIA Corporation) Hidden NVIDIA GeForce Experience 3.20.4.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.4.14 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.38.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.26 - NVIDIA Corporation) NvModuleTracker (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvModuleTracker.Driver) (Version: 6.14.24033.38719 - NVIDIA Corporation) Hidden Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0415-0000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OPTIMOOR Demo (HKLM-x32\...\ST6UNST #1) (Version: - ) Panel sterowania NVIDIA 457.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 457.30 - NVIDIA Corporation) Hidden Paw Patrol On A Roll (HKLM-x32\...\Paw Patrol On A Roll_is1) (Version: - ) Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) PredatorSense (HKLM-x32\...\{FEA5F263-29F7-4C53-B6EB-69F7B4D61C76}) (Version: 1.00.3008 - Acer Incorporated) ProtonMail Bridge (HKLM\...\{B5256426-0160-4971-889C-7B6BDFFC17E6}) (Version: 1.2.2 - Proton Technologies AG) Hidden ProtonMail Bridge (HKLM\...\ProtonMail Bridge 1.2.2) (Version: 1.2.2 - Proton Technologies AG) Python Launcher (HKLM-x32\...\{CEEAEA02-2472-4BF6-8994-52D6783F5575}) (Version: 3.8.7140.0 - Python Software Foundation) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31225 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8746.1 - Realtek Semiconductor Corp.) Statica mDM 4 (HKLM-x32\...\{04EEBED2-AFC8-4CEE-9A93-5FDEA351002E}) (Version: 4.2.194.0 - Statica) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) SystemTrader 0.9.0.0 (HKLM\...\{36DA0FBE-18F4-478A-A3CD-F95CECDEA74E}_is1) (Version: 0.9.0.0 - LEMPART) SystemTrader 0.9.2 (HKLM\...\{C4526973-B34F-4DE7-9D8C-8450632821B4}_is1) (Version: 0.9.2 - LEMPART) Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.21a - Ghisler Software GmbH) Trader Workstation (HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\5889-6375-8446-2021) (Version: stable (978.2j) 20201201 10:31:13 - Interactive Brokers LLC) Video to Video (HKLM-x32\...\{7F95A744-78DA-4AED-A8F0-A0AF330B8411}_is1) (Version: - Media Converters) VLC media player (HKLM\...\VLC media player) (Version: 3.0.3 - VideoLAN) Vulkan Run Time Libraries 1.0.42.0 (HKLM\...\VulkanRT1.0.42.0) (Version: 1.0.42.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.42.0 (HKLM\...\VulkanRT1.0.42.0-2) (Version: 1.0.42.0 - LunarG, Inc.) WinHTTrack Website Copier 3.49-2 (x64) (HKLM\...\WinHTTrack Website Copier_is1) (Version: 3.49.2 - HTTrack) WinRAR 5.71 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) ZeroProV3 (HKLM-x32\...\{C5E22B04-5CD7-40CB-B292-95A2B4FCB6C8}) (Version: 3.0.571 - TradeZero) Zoom (HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\ZoomUMX) (Version: 5.4.3 (58891.1115) - Zoom Video Communications, Inc.) Zoom Outlook Plugin (HKLM-x32\...\{0B76DE11-5937-4491-A66A-617E42170AFF}) (Version: 5.4.58864 - Zoom) Packages: ========= Dodatek Aparat multimediów dla aplikacji Zdjęcia -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-03-12] (Microsoft Corporation) Dodatek Zdjęcia -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2019-08-05] (Microsoft Corporation) Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.6.181.0_x64__rz1tebttyb220 [2020-11-09] (Dolby Laboratories) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_121.1.193.0_x64__v10z8vjag6ke6 [2020-11-07] (HP Inc.) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-22] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-22] (Microsoft Corporation) [MS Ad] Microsoft To Do -> C:\Program Files\WindowsApps\Microsoft.Todos_2.31.33111.0_x64__8wekyb3d8bbwe [2020-11-19] (Microsoft Corporation) [Startup Task] Minecraft for Windows 10 -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.16.20102.0_x64__8wekyb3d8bbwe [2020-12-24] (Microsoft Studios) Slack -> C:\Program Files\WindowsApps\91750D7E.Slack_4.10.3.0_x64__8she8kybcnzg4 [2020-10-29] (Slack Technologies Inc.) [Startup Task] Twój telefon -> C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20101.99.0_x64__8wekyb3d8bbwe [2020-11-13] (Microsoft Corporation) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-1887935537-3924319083-3171852583-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\Użytkownik\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1887935537-3924319083-3171852583-1001_Classes\CLSID\{233525e0-5434-46ef-b464-fd7e45e2e145}\localserver32 -> C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (IDSA Production signing key -> Intel) CustomCLSID: HKU\S-1-5-21-1887935537-3924319083-3171852583-1001_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Użytkownik\AppData\Local\GoToMeeting\17956\G2MOutlookAddin64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-1887935537-3924319083-3171852583-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\Użytkownik\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll [2018-08-24] (Artem Izmaylov -> AIMP DevTeam) ContextMenuHandlers1: [Transformer4ContextMenu] -> {558BA64F-C7A8-4B96-BCDD-B46E9D00756A} => C:\Program Files (x86)\ABBYY PDF Transformer+\x64\TRIntegration.x64.dll [2018-07-10] (ABBYY Production LLC -> ABBYY Production LLC.) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-05-07] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-05-07] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll [2018-08-24] (Artem Izmaylov -> AIMP DevTeam) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82548830eadb8221\igfxDTCM.dll [2020-08-01] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2020-11-07] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers6: [Transformer4ContextMenu] -> {558BA64F-C7A8-4B96-BCDD-B46E9D00756A} => C:\Program Files (x86)\ABBYY PDF Transformer+\x64\TRIntegration.x64.dll [2018-07-10] (ABBYY Production LLC -> ABBYY Production LLC.) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-05-07] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-05-07] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (filtrowane) ==================== ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Entanglement.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=cmnpffgfpcohhpoddjankjanolcekbni ==================== Załadowane moduły (filtrowane) ============= 2020-12-07 11:31 - 2020-12-07 11:31 - 000126464 _____ () [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files (x86)\Intel\Driver and Support Assistant\DSASsdInterop.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000143395 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libbrotlicommon.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000052874 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libbrotlidec.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000074771 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libbz2-1.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000083604 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libdouble-conversion.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000081585 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libgcc_s_seh-1.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 001151384 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libgcrypt-20.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000199714 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libgpg-error-0.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000154163 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libgraphite2.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000982148 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libharfbuzz-0.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 028408832 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libicudt67.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 003277824 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libicuin67.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 002113536 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libicuuc67.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000374100 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libjson-c-2.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000283648 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libpcre-1.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000339456 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libpcre2-16-0.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000231911 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libpng16-16.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000074440 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libqrencode.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000190976 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libquazip5.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000303486 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libsodium-23.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000043429 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libssp-0.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 001752711 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libstdc++-6.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000670001 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libykpers-1-1.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000343876 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libyubikey-0.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000737792 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libzstd.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000093720 _____ () [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\zlib1.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 001055522 _____ (Free Software Foundation) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libiconv-2.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000133659 _____ (Free Software Foundation) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libintl-8.dll 2015-12-02 16:37 - 2015-12-02 16:37 - 000170496 _____ (Intel Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] C:\WINDOWS\system32\IntelSSTAPO\ParameterService\PfwXmlWrapper.dll 2020-06-16 16:28 - 2020-06-16 16:28 - 000016896 _____ (Intel Corporation) [Brak podpisu cyfrowego] C:\Program Files\Intel\SUR\QUEENCREEK\esrv_lib_security.dll 2015-12-02 16:37 - 2015-12-02 16:37 - 000138240 _____ (Intel Corporation) [Brak podpisu cyfrowego] C:\WINDOWS\system32\IntelSSTAPO\ParameterService\AudioDspComm.dll 2015-12-02 16:37 - 2015-12-02 16:37 - 000150016 _____ (Intel Corporation) [Brak podpisu cyfrowego] C:\WINDOWS\system32\IntelSSTAPO\ParameterService\PfwXml.dll 2020-04-20 19:46 - 2020-04-20 19:46 - 000000000 ____L (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\AppVIsvSubsystems32.dll 2020-04-20 19:46 - 2020-04-20 19:46 - 000000000 ____L (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\c2r32.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000058539 _____ (MingW-W64 Project. All rights reserved.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libwinpthread-1.dll 2020-06-16 16:28 - 2020-06-16 16:28 - 001688576 _____ (Robert Simpson, et al.) [Brak podpisu cyfrowego] C:\Program Files\Intel\SUR\QUEENCREEK\x64\SQLite.Interop.dll 2020-06-16 16:28 - 2020-06-16 16:28 - 001918464 _____ (SQLite Development Team) [Brak podpisu cyfrowego] C:\Program Files\Intel\SUR\QUEENCREEK\x64\sqlite3.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000723628 _____ (The FreeType Project) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libfreetype-6.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 001290564 _____ (The GLib developer community) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\libglib-2.0-0.dll 2020-10-06 05:09 - 2020-10-06 05:09 - 000086970 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\iconengines\qsvgicon.dll 2020-10-06 05:09 - 2020-10-06 05:09 - 000069144 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\imageformats\qgif.dll 2020-10-06 05:09 - 2020-10-06 05:09 - 000087492 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\imageformats\qicns.dll 2020-10-06 05:09 - 2020-10-06 05:09 - 000072035 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\imageformats\qico.dll 2020-10-06 05:09 - 2020-10-06 05:09 - 000064064 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\imageformats\qsvg.dll 2020-10-06 05:09 - 2020-10-06 05:09 - 000061528 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\imageformats\qtga.dll 2020-10-06 05:09 - 2020-10-06 05:09 - 000058522 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\imageformats\qwbmp.dll 2020-10-06 05:09 - 2020-10-06 05:09 - 002042915 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\platforms\qwindows.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000063569 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\Qt5Concurrent.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 006992719 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\Qt5Core.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 009393802 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\Qt5Gui.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 002549349 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\Qt5Network.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 000571143 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\Qt5Svg.dll 2020-10-21 19:33 - 2020-10-21 19:33 - 008872328 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\Qt5Widgets.dll 2020-10-06 05:09 - 2020-10-06 05:09 - 000304724 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\KeePassXC\styles\qwindowsvistastyle.dll ==================== Alternate Data Streams (filtrowane) ======== (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [468] ==================== Tryb awaryjny (filtrowane) ================== ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer (filtrowane) ========== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = SearchScopes: HKU\S-1-5-21-1887935537-3924319083-3171852583-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE00 SearchScopes: HKU\S-1-5-21-1887935537-3924319083-3171852583-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE00 BHO: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security\bdtbie.dll [2020-12-15] (Bitdefender SRL -> Bitdefender) BHO: Portfel Bitdefender -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll [2020-12-15] (Bitdefender SRL -> Bitdefender) BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-09-15] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security\antispam32\bdtbie.dll [2020-12-15] (Bitdefender SRL -> Bitdefender) BHO-x32: Portfel Bitdefender -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll [2020-12-15] (Bitdefender SRL -> Bitdefender) BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2019-07-26] (Evernote Corporation -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) Toolbar: HKLM - Portfel Bitdefender - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll [2020-12-15] (Bitdefender SRL -> Bitdefender) Toolbar: HKLM-x32 - Portfel Bitdefender - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll [2020-12-15] (Bitdefender SRL -> Bitdefender) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-04] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2018-04-12 00:38 - 2020-12-27 09:51 - 000000922 _____ C:\WINDOWS\system32\drivers\etc\hosts 0.0.0.0 apps.corel.com 0.0.0.0 mc.corel.com 0.0.0.0 origin-mc.corel.com 0.0.0.0 iws.corel.com 2019-04-28 19:47 - 2019-05-05 18:38 - 000000507 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\Control Panel\Desktop\\Wallpaper -> c:\users\użytkownik\appdata\local\packages\microsoft.windows.photos_8wekyb3d8bbwe\localstate\photosappbackground\_dsc9986.jpg DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Zapora systemu Windows [funkcja włączona] Network Binding: ============= Ethernet: NordVPN LightWeight Firewall -> NordLwf (enabled) Wi-Fi: NordVPN LightWeight Firewall -> NordLwf (enabled) Ethernet 3: NordVPN LightWeight Firewall -> NordLwf (enabled) ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) HKLM\...\StartupApproved\Run32: => "KeePass 2 PreLoad" HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\StartupApproved\StartupFolder: => "EvernoteClipper.lnk" HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\StartupApproved\StartupFolder: => "Twitch.lnk" HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\StartupApproved\Run: => "BitTorrent" HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\StartupApproved\Run: => "Discord" HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\StartupApproved\Run: => "EpicGamesLauncher" HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-1887935537-3924319083-3171852583-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams" ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{C777981B-4222-4F40-9E43-281B842CB89A}] => (Allow) LPort=33060 FirewallRules: [{B496F007-76E9-48EA-B410-EE53A4016013}] => (Allow) LPort=3306 FirewallRules: [{CE471953-B7CA-4B07-8485-1E5C11E3106A}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> ) FirewallRules: [{0EB7F8FB-5D26-48A0-92D6-AB8CF33BE437}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> ) FirewallRules: [{D0DE4737-437B-477C-894F-AB4AEC42F5EA}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> ) FirewallRules: [{0E0DE917-88E1-461F-B634-39944019A5D4}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> ) FirewallRules: [{DEA38D37-A1AD-49FF-961F-FCCD15CF47F2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{68B68F76-7113-4A57-BCB5-E0581F4008C5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{C6B46F98-D1E9-43F1-8DFE-86E7C7D02C38}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{E11AF330-6C3D-49FB-8530-F8DA2C702F70}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{2563CD4E-6470-475D-B07E-ED21CDA7EB6A}] => (Allow) C:\Users\Użytkownik\AppData\Roaming\BitTorrent\BitTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{B3FBF7BF-9A5F-4204-95D7-0C399EC98D20}] => (Allow) C:\Users\Użytkownik\AppData\Roaming\BitTorrent\BitTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{7472290E-2F6D-482C-B368-9988B15821EC}] => (Allow) C:\Users\Użytkownik\AppData\Roaming\uTorrent\uTorrent.exe => Brak pliku FirewallRules: [{9F63E0C3-1190-4C68-9363-306FF40B46FF}] => (Allow) C:\Users\Użytkownik\AppData\Roaming\uTorrent\uTorrent.exe => Brak pliku FirewallRules: [{E5B5F29A-D2E4-4D60-9B58-B886902207DA}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{C55C3F46-8CB7-4526-998F-8CD042074A17}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{2F77A627-DC83-4585-8FD6-1879615D67EA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Teddy Floppy Ear - Mountain Adventure\Teddy Floppy Ear - Mountain Adventure.exe () [Brak podpisu cyfrowego] FirewallRules: [{0C432541-D3A0-4F78-9363-BDB8BA4FE7F7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Teddy Floppy Ear - Mountain Adventure\Teddy Floppy Ear - Mountain Adventure.exe () [Brak podpisu cyfrowego] FirewallRules: [{E9CF4E03-CD20-44E7-9A2B-0771EA72A9AB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{3A66DA3F-EEDE-4260-BBCD-A3234BBD7160}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{B4270499-3AAC-4B1E-BF5E-026509330C9B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{0F604B6C-F5ED-46BA-80FB-C4B4DF5EE3E8}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{1AD0600F-8536-4711-9214-FF6EDFE922A9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{363DA1B6-F482-45B4-B32A-7985F4C9671A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{700BD84E-481E-47B0-8D9F-9A67B08BD295}] => (Allow) C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{78697CDA-FBA3-4C90-B4B7-12194EF1BFDB}] => (Allow) LPort=5357 FirewallRules: [{A97E1226-39F3-4CAB-9D5B-1599B3E3AEC6}] => (Allow) C:\Program Files\HP\HP Deskjet 2540 series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{B27CC067-79DD-435B-A1B3-CF692CB48EA1}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{3DDBBEE4-EE62-47F5-B2AE-B85FFDCBAAC8}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{71D4DB77-AEE9-48AF-8617-7AE54B5C3E9B}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe () [Brak podpisu cyfrowego] FirewallRules: [{3AAF5ABF-CD98-45AA-9556-46D842C266B3}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe () [Brak podpisu cyfrowego] FirewallRules: [{458DE229-3DC5-43DA-A6F4-938FB3E5BBCA}] => (Allow) LPort=5432 FirewallRules: [{659F0C51-AD97-473F-99DA-A4AF517522FC}] => (Allow) C:\Users\Użytkownik\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{315DCA6A-2065-46D9-B275-B6128C926323}] => (Allow) C:\Users\Użytkownik\AppData\Roaming\Zoom\bin\airhost.exe => Brak pliku FirewallRules: [{2FDF1DE1-B939-4731-A01A-C9D3A5A33B43}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{B0BBB4CC-FF6E-4FE8-A947-E7D564DFC2ED}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{9D12974D-B20E-457B-854F-C38A288CE073}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{742A9E76-6938-45A5-9F71-B5D649B63CFB}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{50254190-B79B-413B-B1C3-30D76A14590B}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{98BD893D-C0B0-422C-8375-611EC147EB42}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{0DD9E946-DA8F-45B5-BA10-0780BDCA668A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{903748FD-920D-4D0D-9D3E-BA4BF9ACEE0C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{A1D6321F-1D4D-441C-9E13-455B3FBE55D4}] => (Allow) C:\Program Files\WindowsApps\91750D7E.Slack_4.10.3.0_x64__8she8kybcnzg4\app\Slack.exe (Slack Technologies, Inc. -> Slack Technologies Inc.) FirewallRules: [{10FD5D0E-E5B9-49E4-9334-ACE218C9E5CC}] => (Allow) C:\Program Files\WindowsApps\91750D7E.Slack_4.10.3.0_x64__8she8kybcnzg4\app\Slack.exe (Slack Technologies, Inc. -> Slack Technologies Inc.) FirewallRules: [{D5C59EFB-5443-432E-B2B7-3951082D196C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.77.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{B56D12F0-9D61-4DAA-B2F4-A365C8AB0B40}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.77.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{79C7C709-15DA-4664-812B-F5ABB0B3D758}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.77.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{0BB8FA73-539B-4C90-96AE-A3EAAE786314}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.77.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{28853716-3713-42F4-B056-14D4ED37E921}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{0A914BA2-7724-4776-88EE-2DB09C1E13ED}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Punkty Przywracania systemu ========================= ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (12/17/2020 08:10:04 PM) (Source: SetupARService) (EventID: 0) (User: ) Description: Nie można uruchomić usługi. System.NullReferenceException: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. w SetupAfterRebootService.SetupARService.OnStart(String[] args) w System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/16/2020 07:16:10 PM) (Source: SetupARService) (EventID: 0) (User: ) Description: Nie można uruchomić usługi. System.NullReferenceException: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. w SetupAfterRebootService.SetupARService.OnStart(String[] args) w System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/15/2020 12:06:28 PM) (Source: SetupARService) (EventID: 0) (User: ) Description: Nie można uruchomić usługi. System.NullReferenceException: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. w SetupAfterRebootService.SetupARService.OnStart(String[] args) w System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/15/2020 12:05:53 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance. hr = 0x8007045b, Trwa proces zamykania systemu. . Error: (12/15/2020 12:05:53 PM) (Source: VSS) (EventID: 13) (User: ) Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} i nazwą CEventSystem. [0x8007045b, Trwa proces zamykania systemu. ] Error: (12/12/2020 07:41:17 AM) (Source: SetupARService) (EventID: 0) (User: ) Description: Nie można uruchomić usługi. System.NullReferenceException: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. w SetupAfterRebootService.SetupARService.OnStart(String[] args) w System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/11/2020 09:15:43 PM) (Source: SetupARService) (EventID: 0) (User: ) Description: Nie można uruchomić usługi. System.NullReferenceException: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. w SetupAfterRebootService.SetupARService.OnStart(String[] args) w System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/11/2020 08:31:26 AM) (Source: SetupARService) (EventID: 0) (User: ) Description: Nie można uruchomić usługi. System.NullReferenceException: Odwołanie do obiektu nie zostało ustawione na wystąpienie obiektu. w SetupAfterRebootService.SetupARService.OnStart(String[] args) w System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Dziennik System: ============= Error: (12/26/2020 12:39:13 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-3AHD9VF) Description: Serwer {FD06603A-2BDF-4BB1-B7DF-5DC68F353601} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (12/26/2020 12:10:11 PM) (Source: volsnap) (EventID: 36) (User: ) Description: Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error: (12/25/2020 01:20:12 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-3AHD9VF) Description: Serwer {FD06603A-2BDF-4BB1-B7DF-5DC68F353601} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (12/24/2020 02:25:18 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-3AHD9VF) Description: Serwer {FD06603A-2BDF-4BB1-B7DF-5DC68F353601} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (12/24/2020 01:36:14 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: Wystąpił błąd podczas próby odczytu lokalnego pliku hosts. Error: (12/19/2020 09:02:34 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-3AHD9VF) Description: Serwer {FD06603A-2BDF-4BB1-B7DF-5DC68F353601} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (12/19/2020 08:51:40 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa NVIDIA LocalSystem Container niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 6000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/19/2020 08:51:40 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa NVIDIA LocalSystem Container zakończyła działanie; wystąpił następujący błąd: Plik wykonywalny polecenia rodzajowego zwrócił wynik wskazujący błąd. CodeIntegrity: =================================== Date: 2020-10-26 20:18:09.5480000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Avast Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2020-10-26 20:16:40.9770000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-10-26 20:16:40.9060000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-10-26 20:16:40.6630000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-10-26 20:16:40.3880000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-10-26 20:16:40.1790000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-10-26 20:16:40.0130000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-10-26 20:16:39.9400000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. ==================== Statystyki pamięci =========================== BIOS: Acer V1.07 11/08/2017 Płyta główna: Acer Mustang_SLS Procesor: Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz Procent pamięci w użyciu: 72% Całkowita pamięć fizyczna: 8073.78 MB Dostępna pamięć fizyczna: 2259.78 MB Całkowita pamięć wirtualna: 12425.78 MB Dostępna pamięć wirtualna: 5281.95 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:222.97 GB) (Free:11.5 GB) NTFS Drive d: (Minecraft) (CDROM) (Total:0.52 GB) (Free:0 GB) CDFS \\?\Volume{7ec69ffe-09f3-466b-97e5-d37d19ee39f4}\ () (Fixed) (Total:0.49 GB) (Free:0.04 GB) NTFS \\?\Volume{8f642176-e93e-4e6f-8563-9a0f716e8382}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Tablica partycji ==================== ==================== Koniec Addition.txt =======================