Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 05-02-2022 Uruchomiony przez jware (06-02-2022 17:17:18) Uruchomiony z C:\Users\jware\Desktop Microsoft Windows 10 Pro Wersja 21H2 19044.1466 (X64) (2020-11-10 13:41:56) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= (Załączenie wejścia w fixlist spowoduje jego usunięcie.) Administrator (S-1-5-21-2404278863-482792713-4167860027-500 - Administrator - Disabled) Gość (S-1-5-21-2404278863-482792713-4167860027-501 - Limited - Enabled) jware (S-1-5-21-2404278863-482792713-4167860027-1002 - Administrator - Enabled) => C:\Users\jware Konto domyślne (S-1-5-21-2404278863-482792713-4167860027-503 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-2404278863-482792713-4167860027-504 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe Acrobat DC (64-bit) (HKLM\...\{AC76BA86-1045-1033-7760-BC15014EA700}) (Version: 21.011.20039 - Adobe) Advertising Center (HKLM-x32\...\{b2ec4a38-b545-4a00-8214-13fe0e915e6d}) (Version: 0.0.0.1 - Nero AG) Hidden ALLPlayer (wersja 8.4) (HKLM\...\{68972948-F221-4267-9EB6-2EB5D913C4CF}_is1) (Version: 8.4 - ALLPlayer Ltd.) ALLPlayer Pilot (HKLM-x32\...\{146BDBDD-ACD9-4B04-A286-C27471841E8E}_is1) (Version: 2.2 - ALLPlayer Group, Ltd.) Application Verifier x64 External Package (HKLM\...\{B27BC1FC-8474-9E32-73C2-6F7CD58AD1E3}) (Version: 10.1.17763.132 - Microsoft) Hidden Backup and Sync from Google (HKLM\...\{696895F7-52C7-4C9E-998B-C7E0CC907092}) (Version: 3.57.4256.0809 - Google, Inc.) Borland Delphi 7 (HKLM-x32\...\{72263053-50D1-4598-9502-51ED64E54C51}) (Version: 7.0 - Borland Software Corporation) Brackets (HKLM-x32\...\{43086E55-5B37-4DA8-852F-EEC6C75ECFE9}) (Version: 1.14.17770 - brackets.io) CAM350 v7.0 (HKLM-x32\...\{064EDB7B-199E-11D5-8116-00104BB1EBBC}) (Version: - ) CCleaner (HKLM\...\CCleaner) (Version: 5.88 - Piriform) Cisco Webex Meetings (HKU\S-1-5-21-2404278863-482792713-4167860027-1002\...\ActiveTouchMeetingClient) (Version: 41.7.1 - Cisco Webex LLC) EaseUS Todo Backup Free 13.5 (HKLM-x32\...\EaseUS Todo Backup_is1) (Version: 13.5 - CHENGDU YIWO Tech Development Co., Ltd) e-file [ID] wersja 1.2.28.0 (HKU\S-1-5-21-2404278863-482792713-4167860027-1002\...\{EF9A27D3-62E7-473E-9D32-23653A0F6CBB}_is1) (Version: 1.2.28.0 - e-file sp. z o.o. sp. k.) e-pity 14.1.2 za rok 2021 (HKLM-x32\...\{80D8170E-5590-218-B9ED-E24E4C99A11D}_is1) (Version: 14.1.2 - e-file sp. z o.o. sp.k.) Free CD to MP3 Converter (HKLM-x32\...\Free CD to MP3 Converter) (Version: - Eusing Software) GIMP 2.10.22 (HKLM\...\GIMP-2_is1) (Version: 2.10.22 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 97.0.4692.99 - Google LLC) Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 54.0.3.0 - Google LLC) HEXelon MAX 6.07 (HKLM-x32\...\HEXelon MAX_is1) (Version: 6.07 - Jerzy Znamirowski) IrfanView 4.54 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.54 - Irfan Skiljan) KiCad 5.1.9_1 (HKLM-x32\...\KiCad) (Version: 5.1.9_1 - KiCad) Kits Configuration Installer (HKLM-x32\...\{29B915AE-013F-151F-3E61-67F7363C3A09}) (Version: 10.1.17763.132 - Microsoft) Hidden KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version: - ) Ledger Live 2.21.3 (HKLM\...\c62032b2-0bca-5abc-b458-fd67cfc9e49b) (Version: 2.21.3 - Ledger Live Team) Library Loader (HKLM-x32\...\{2DD2FCC9-D120-4924-9E4F-B2782CDE769A}) (Version: 2.49 - SamacSys) Live! Cam Sync HD VF0770 Driver (1.00.06.00) (HKLM\...\Creative VF0770) (Version: - Creative Technology Ltd.) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 98.0.1108.43 - Microsoft Corporation) Microsoft Office Professional Plus 2016 - pl-pl (HKLM\...\ProplusRetail - pl-pl) (Version: 16.0.14827.20158 - Microsoft Corporation) Microsoft OneDrive (HKU\.DEFAULT\...\OneDriveSetup.exe) (Version: 18.151.0729.0013 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2404278863-482792713-4167860027-1002\...\OneDriveSetup.exe) (Version: 22.002.0103.0004 - Microsoft Corporation) Microsoft Project - pl-pl (HKLM\...\ProjectProRetail - pl-pl) (Version: 16.0.14827.20158 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{E876418F-BE59-4D8C-B9A5-74B056B676FA}) (Version: 2.93.0.0 - Microsoft Corporation) Microsoft Visio - pl-pl (HKLM\...\VisioProRetail - pl-pl) (Version: 16.0.14827.20158 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.25.28508 (HKLM-x32\...\{6913e92a-b64e-41c9-a5e6-cef39207fe89}) (Version: 14.25.28508.3 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.25.28508 (HKLM-x32\...\{65e650ff-30be-469d-b63a-418d71ea1765}) (Version: 14.25.28508.3 - Microsoft Corporation) Microsoft Visual Studio Code (User) (HKU\S-1-5-21-2404278863-482792713-4167860027-1002\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.45.1 - Microsoft Corporation) Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 1.18.1109.411 - Microsoft Corporation) Mozilla Firefox (x64 pl) (HKLM\...\Mozilla Firefox 96.0.3 (x64 pl)) (Version: 96.0.3 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 72.0.2 - Mozilla) MSI Development Tools (HKLM-x32\...\{6C961B30-A670-8A05-3BFE-3947E84DD4E4}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden Nero 9 Essentials (HKLM-x32\...\{4645c664-f781-4395-bc78-a0a312bdbb7d}) (Version: - Nero AG) Node.js (HKLM\...\{97FD2F60-C3CD-417D-A5F6-C538B37054CC}) (Version: 12.16.3 - Node.js Foundation) Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 8.2.1 - Notepad++ Team) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.14827.20088 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.14827.20158 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0415-1000-0000000FF1CE}) (Version: 16.0.14827.20088 - Microsoft Corporation) Hidden PDF Architect 7 Asian Fonts Pack (HKLM\...\{CC5E5C8F-62A0-4597-9238-32FE23D2121F}) (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF Architect 7 Convert Module (HKLM\...\{51249AB5-6F0B-4A35-B1EA-936CE121DBF4}) (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF Architect 7 Create Module (HKLM\...\{B600CC13-8F68-4D44-8867-93490894FAE5}) (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF Architect 7 Edit Module (HKLM\...\{BA2C2671-B379-4101-A21C-4C549671FC8D}) (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF Architect 7 Forms Module (HKLM\...\{9F60A73B-1B46-45EE-B8E4-1160560AB8AD}) (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF Architect 7 Insert Module (HKLM\...\{41408EEB-E22F-4CF7-9EA5-0E735B75713F}) (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF Architect 7 OCR TESS Module (HKLM\...\{3C6047A4-7B26-48CC-B7F8-FA5CE99C7F36}) (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF Architect 7 Review Module (HKLM\...\{EEB4EB58-BA4A-4AEA-820D-7924649CECDA}) (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF Architect 7 Secure Module (HKLM\...\{2891A773-CF43-46E1-84D2-4FC281D9EFB3}) (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDF Architect 7 View Module (HKLM\...\{E947A304-6110-4CFE-98AD-E6909072E87D}) (Version: 7.1.14.4969 - pdfforge GmbH) Hidden PDFill FREE PDF Editor Basic (HKLM\...\{26037138-C111-4BC5-88E8-DD2B2F2460C7}) (Version: 15.0 - PlotSoft LLC) Prosiaczek i Przyjaciele (HKLM-x32\...\{1D6FB37A-CBCA-11D6-8940-0002A5E32BEF}) (Version: - ) Python 3.8.3 (64-bit) (HKU\S-1-5-21-2404278863-482792713-4167860027-1002\...\{f7b3255c-a01a-4595-8768-ff8f6613898c}) (Version: 3.8.3150.0 - Python Software Foundation) Python 3.8.3 Add to Path (64-bit) (HKLM\...\{13E05234-E037-4C96-BF0C-585FD0A8E2B0}) (Version: 3.8.3150.0 - Python Software Foundation) Hidden Python 3.8.3 Core Interpreter (64-bit) (HKLM\...\{A0258B41-0D21-496B-A342-B8BCCB8F2B8D}) (Version: 3.8.3150.0 - Python Software Foundation) Hidden Python 3.8.3 Development Libraries (64-bit) (HKLM\...\{91ECF664-C305-44DD-A08E-0319EAD11534}) (Version: 3.8.3150.0 - Python Software Foundation) Hidden Python 3.8.3 Documentation (64-bit) (HKLM\...\{519DA1AF-03AD-4CEA-813F-F47B4B14DF3F}) (Version: 3.8.3150.0 - Python Software Foundation) Hidden Python 3.8.3 Executables (64-bit) (HKLM\...\{245A2BD7-1E51-448C-810D-356286B18BA8}) (Version: 3.8.3150.0 - Python Software Foundation) Hidden Python 3.8.3 pip Bootstrap (64-bit) (HKLM\...\{698BFA23-9AF5-43B1-A08E-293477F8FD9B}) (Version: 3.8.3150.0 - Python Software Foundation) Hidden Python 3.8.3 Standard Library (64-bit) (HKLM\...\{3E010818-0B52-4BCD-994D-D321F25ABAEC}) (Version: 3.8.3150.0 - Python Software Foundation) Hidden Python 3.8.3 Tcl/Tk Support (64-bit) (HKLM\...\{7FD17CEE-EE81-4241-96B1-EA4BE139AA38}) (Version: 3.8.3150.0 - Python Software Foundation) Hidden Python 3.8.3 Test Suite (64-bit) (HKLM\...\{381E4487-0C58-447D-A3F7-7EC5902DDAF4}) (Version: 3.8.3150.0 - Python Software Foundation) Hidden Python 3.8.3 Utility Scripts (64-bit) (HKLM\...\{AF4FC66A-D11F-4270-B93C-F556D565E32C}) (Version: 3.8.3150.0 - Python Software Foundation) Hidden Python Launcher (HKLM-x32\...\{406A47EE-C4AE-4944-BADE-1B543A443873}) (Version: 3.8.7072.0 - Python Software Foundation) Revo Uninstaller 2.2.8 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.2.8 - VS Revo Group, Ltd.) SDK ARM Additions (HKLM-x32\...\{0B5D6FB7-05A5-271B-5B99-82384219A471}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden SDK ARM Redistributables (HKLM-x32\...\{4A5F6E94-7967-A333-8231-CA9AF35E03BD}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden Sentinel System Driver (HKLM-x32\...\Rainbow Sentinel Driver) (Version: - ) Sprawdzanie kondycji komputera z systemem Windows (HKLM\...\{497ED226-5E88-4EC5-9340-373B1C56906F}) (Version: 3.2.2110.14001 - Microsoft Corporation) Sweet Home 3D version 6.2 (HKLM\...\Sweet Home 3D_is1) (Version: 6.2 - eTeks) Telegram Desktop version 3.5.1 (HKU\S-1-5-21-2404278863-482792713-4167860027-1002\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 3.5.1 - Telegram FZ-LLC) Tirocado M-B-v1.1 (HKLM-x32\...\{D49EAEA6-4B6A-47CA-858B-CCDD7E237D05}_is1) (Version: - Agia3D) Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.22a - Ghisler Software GmbH) Uninstall Samsung Printer Software (HKLM-x32\...\TotalUninstaller) (Version: 4.0.0.93 - Samsung Electronics CO., LTD.) Universal CRT Extension SDK (HKLM-x32\...\{7D225043-6CC5-7B56-11DD-AFF90E4C1C0C}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden Universal CRT Headers Libraries and Sources (HKLM-x32\...\{CB19DBA2-C210-5646-9522-695A1317CD34}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden Universal CRT Redistributable (HKLM-x32\...\{0460C87B-7F4C-3170-FAC9-B7A6AE5CE4E9}) (Version: 10.0.26624 - Microsoft Corporation) Hidden Universal CRT Redistributable (HKLM-x32\...\{5F577A45-3C65-352B-061D-D6A57F05402C}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden Universal CRT Tools x64 (HKLM\...\{3B588BBE-EB02-D1B2-5CD5-7DB85AD8A3E7}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden Universal CRT Tools x86 (HKLM-x32\...\{D2DC1EDF-EE04-9B5F-BDD7-06645D859EC3}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden Universal General MIDI DLS Extension SDK (HKLM-x32\...\{CE83D0BD-418A-F3D1-D6CE-687E96D1EBD0}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden vcpp_crt.redist.clickonce (HKLM-x32\...\{ABEBFE6E-0C94-4F89-AAEA-9027D1082522}) (Version: 14.16.27033 - Microsoft Corporation) Hidden Visual Studio Build Tools 2017 (HKLM-x32\...\b9d5a944) (Version: 15.9.28307.1146 - Microsoft Corporation) vs_FileTracker_Singleton (HKLM-x32\...\{A41E138F-5A3F-443C-B72D-957AB994FB5A}) (Version: 15.9.28128 - Microsoft Corporation) Hidden WinAppDeploy (HKLM-x32\...\{716AE8F2-1BE3-7657-DF6B-F23DEEC75AF9}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden Windows SDK AddOn (HKLM-x32\...\{1E76DFA7-96F3-4281-8E41-8A226C3E42EE}) (Version: 10.1.0.0 - Microsoft Corporation) Windows Software Development Kit - Windows 10.0.17763.132 (HKLM-x32\...\{5fe95b9d-9219-4d8b-a031-71323ae48a81}) (Version: 10.1.17763.132 - Microsoft Corporation) WinRAR 5.80 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.80.0 - win.rar GmbH) WinRT Intellisense Desktop - en-us (HKLM-x32\...\{00B12DF9-5428-9406-DE2C-8E8A1A062B05}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{E82A4A6C-C21C-35FE-B805-3E44318F6D63}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden WinRT Intellisense IoT - en-us (HKLM-x32\...\{7E898893-9C42-A572-7F57-FDE55CE812F7}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{E8B1CB29-5C24-D882-3CEF-F8A7263BC63D}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden WinRT Intellisense Mobile - en-us (HKLM-x32\...\{F6F11150-93DE-0507-FCA0-F746E0207017}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden WinRT Intellisense PPI - en-us (HKLM-x32\...\{8329C3A0-8582-D1C2-67FF-800654BFDF45}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{771C9DEF-7C0B-85DA-6426-7A20F06BEC94}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden WinRT Intellisense UAP - en-us (HKLM-x32\...\{B047C746-63E8-41C7-A5C0-7ABD390CF3E6}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{0063AF94-397B-9C64-1C71-D404B27C5D96}) (Version: 10.1.17763.132 - Microsoft Corporation) Hidden Yrefresher 1.00 (HKLM-x32\...\YRefresher_is1) (Version: - Yoconsoft) Zoom (HKU\S-1-5-21-2404278863-482792713-4167860027-1002\...\ZoomUMX) (Version: 5.1 - Zoom Video Communications, Inc.) Packages: ========= Dodatek Aparat multimediów dla aplikacji Zdjęcia -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-03-27] (Microsoft Corporation) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-01-22] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-01-22] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.12.1050.0_x64__8wekyb3d8bbwe [2022-01-12] (Microsoft Studios) [MS Ad] Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2021-01-05] (Samsung Electronics Co. Ltd.) Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0 [2022-02-05] (Spotify AB) [Startup Task] ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ShellIconOverlayIdentifiers: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\54.0.3.0\drivefsext.dll [2022-01-11] (Google LLC -> Google, Inc.) ShellIconOverlayIdentifiers: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\54.0.3.0\drivefsext.dll [2022-01-11] (Google LLC -> Google, Inc.) ShellIconOverlayIdentifiers: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\54.0.3.0\drivefsext.dll [2022-01-11] (Google LLC -> Google, Inc.) ShellIconOverlayIdentifiers: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\54.0.3.0\drivefsext.dll [2022-01-11] (Google LLC -> Google, Inc.) ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2022-02-01] (Google LLC -> Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2022-02-01] (Google LLC -> Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2022-02-01] (Google LLC -> Google) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2022-01-19] (Notepad++ -> ) ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers1: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\54.0.3.0\drivefsext.dll [2022-01-11] (Google LLC -> Google, Inc.) ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2022-02-01] (Google LLC -> Google) ContextMenuHandlers1: [PDFArchitect7_ManagerExt] -> {21989F59-B260-4302-90C3-E51740E03639} => -> Brak pliku ContextMenuHandlers1: [PDFCreator.ShellContextMenu] -> {d9cea52e-100d-4159-89ea-76e845bc13e1} => -> Brak pliku ContextMenuHandlers1: [SimpleShlExt] -> {45203D3B-3D73-4497-8AFE-D29950AC6C55} => C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll [2021-07-02] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co.,Ltd) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [SimpleShlExt] -> {45203D3B-3D73-4497-8AFE-D29950AC6C55} => C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll [2021-07-02] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co.,Ltd) ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Brak pliku ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers4: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\54.0.3.0\drivefsext.dll [2022-01-11] (Google LLC -> Google, Inc.) ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2022-02-01] (Google LLC -> Google) ContextMenuHandlers4: [SimpleShlExt] -> {45203D3B-3D73-4497-8AFE-D29950AC6C55} => C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll [2021-07-02] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co.,Ltd) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\54.0.3.0\drivefsext.dll [2022-01-11] (Google LLC -> Google, Inc.) ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Drivers32: [SENTINEL] => C:\Windows\SysWOW64\snti386.dll [47616 1999-01-15] () [Brak podpisu cyfrowego] ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\jware\Desktop\Osobisty - Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory="Default" ==================== Załadowane moduły (filtrowane) ============= 2021-07-23 15:51 - 2021-04-27 09:21 - 000116736 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\EaseUS\Todo Backup\bin\aws-c-common.dll 2021-07-23 15:51 - 2021-04-27 09:21 - 000022016 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\EaseUS\Todo Backup\bin\aws-c-event-stream.dll 2021-07-23 15:51 - 2021-04-27 09:21 - 000043008 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\EaseUS\Todo Backup\bin\aws-checksums.dll 2021-07-23 15:51 - 2021-04-27 09:21 - 000974848 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\EaseUS\Todo Backup\bin\aws-cpp-sdk-core.dll 2021-07-23 15:51 - 2021-04-27 09:21 - 003429376 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\EaseUS\Todo Backup\bin\aws-cpp-sdk-s3.dll 2021-07-23 15:51 - 2021-04-27 09:21 - 000180224 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\EaseUS\Todo Backup\bin\aws-cpp-sdk-transfer.dll 2021-07-23 15:51 - 2021-04-25 08:36 - 001291264 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\EaseUS\Todo Backup\bin\libxml2.dll 2021-07-23 15:51 - 2021-04-25 08:36 - 000055808 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\EaseUS\Todo Backup\bin\zlib1.dll 2021-07-23 15:51 - 2021-04-25 08:36 - 000892928 _____ (Free Software Foundation) [Brak podpisu cyfrowego] C:\Program Files (x86)\EaseUS\Todo Backup\bin\iconv.dll 2021-07-23 15:50 - 2021-04-25 08:37 - 001359872 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files (x86)\EaseUS\Todo Backup\bin\LIBEAY32.dll 2021-07-23 15:50 - 2021-04-25 08:37 - 000365056 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files (x86)\EaseUS\Todo Backup\bin\SSLEAY32.dll ==================== Alternate Data Streams (filtrowane) ======== ==================== Tryb awaryjny (filtrowane) ================== ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer (filtrowane) ========== HKU\S-1-5-21-2404278863-482792713-4167860027-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.pl/ BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2022-02-02] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2021-11-01] (Microsoft Corporation -> Microsoft Corporation) Toolbar: HKLM - Brak nazwy - {61E612A7-2382-4570-8D3F-42BC136DDAD7} - Brak pliku Toolbar: HKLM-x32 - RefresherBand Class - {B24BA06E-FB7B-4757-95C2-DC01125F750E} - C:\Program Files (x86)\YRefresher\YRefresher.dll [2001-08-03] () [Brak podpisu cyfrowego] Toolbar: HKLM-x32 - Brak nazwy - {61E612A7-2382-4570-8D3F-42BC136DDAD7} - Brak pliku Toolbar: HKU\S-1-5-21-2404278863-482792713-4167860027-1002 -> Brak nazwy - {B24BA06E-FB7B-4757-95C2-DC01125F750E} - Brak pliku Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-02-02] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-02-02] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE trusted site: HKU\S-1-5-21-2404278863-482792713-4167860027-1002\...\samsungsetup.com -> hxxp://www.samsungsetup.com ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2019-03-19 05:49 - 2019-03-19 05:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Borland\Delphi7\Bin;C:\Program Files (x86)\Borland\Delphi7\Projects\Bpl\;C:\Python38\Scripts\;C:\Python38\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\ProgramData\chocolatey\bin;C:\Program Files\nodejs\;C:\Program Files (x86)\Brackets\command HKU\S-1-5-21-2404278863-482792713-4167860027-1002\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) HKLM\...\StartupApproved\Run: => "SecurityHealth" HKLM\...\StartupApproved\Run: => "C:\WINDOWS\system32\V0770Ext.ax" HKLM\...\StartupApproved\Run32: => "StartCCC" HKLM\...\StartupApproved\Run32: => "V0770Mon.exe" HKLM\...\StartupApproved\Run32: => "C:\WINDOWS\System32\V0770Ext.ax" HKLM\...\StartupApproved\Run32: => "TrayProcess" HKU\S-1-5-21-2404278863-482792713-4167860027-1002\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-2404278863-482792713-4167860027-1002\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-2404278863-482792713-4167860027-1002\...\StartupApproved\Run: => "Adobe Reader Synchronizer" HKU\S-1-5-21-2404278863-482792713-4167860027-1002\...\StartupApproved\Run: => "GoogleDriveSync" HKU\S-1-5-21-2404278863-482792713-4167860027-1002\...\StartupApproved\Run: => "CiscoMeetingDaemon" HKU\S-1-5-21-2404278863-482792713-4167860027-1002\...\StartupApproved\Run: => "GoogleDriveFS" ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{1FC96F0E-149A-400E-9805-9C44ACECD389}] => (Allow) C:\Users\jware\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [UDP Query User{29CC5528-8348-46F3-A44A-5AD99FCB4929}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe (Adobe Inc. -> Node.js) FirewallRules: [TCP Query User{BB78719A-1790-4646-8C16-E9A14E99E644}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe (Adobe Inc. -> Node.js) FirewallRules: [UDP Query User{643F2CBB-1264-478C-870E-6091CC2A5299}C:\program files\nodejs\node.exe] => (Allow) C:\program files\nodejs\node.exe (Node.js Foundation -> Node.js) FirewallRules: [TCP Query User{48A3A7E3-DA6A-4FD8-BBCF-512E4AD6B322}C:\program files\nodejs\node.exe] => (Allow) C:\program files\nodejs\node.exe (Node.js Foundation -> Node.js) FirewallRules: [UDP Query User{140CCE1D-9DC7-487E-B58C-C31E2A3CF0EB}C:\users\jware\appdata\roaming\telegram desktop\telegram.exe] => (Block) C:\users\jware\appdata\roaming\telegram desktop\telegram.exe (Telegram FZ-LLC -> Telegram FZ-LLC) FirewallRules: [TCP Query User{4F783F62-838B-4606-9182-3BE7224333B4}C:\users\jware\appdata\roaming\telegram desktop\telegram.exe] => (Block) C:\users\jware\appdata\roaming\telegram desktop\telegram.exe (Telegram FZ-LLC -> Telegram FZ-LLC) FirewallRules: [{539119E7-8BF1-4353-BEE3-E9396AF7402F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{7A0B560F-F520-48AD-BD3B-81F76C9E94F9}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{E7B17F6C-4976-4023-AEAF-7CC8FF931732}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{D2F86DC9-6673-4F41-AD99-B1C62F4CB2BA}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{12F61427-25FD-4BF7-A708-B1000C1866DD}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) FirewallRules: [{49E76AE0-6DCC-47A0-A572-42065E052C6F}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) FirewallRules: [{47D63C89-BAE1-4AB3-BEB2-8194DF9F7BFF}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) FirewallRules: [{1ED9360E-2A32-4268-851B-0FDC10B9054A}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) FirewallRules: [{814D6E60-19B1-4320-8F63-AD321141CE72}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe (CHENGDU YIWO Tech Development Co., Ltd. -> ) FirewallRules: [{F35C9A7F-A0A9-4193-967C-2EAAB27ABD57}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe (CHENGDU YIWO Tech Development Co., Ltd. -> ) FirewallRules: [{B5442DDB-A38D-40BA-94B4-E33928D0C667}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe (CHENGDU YIWO Tech Development Co., Ltd. -> ) FirewallRules: [{200A4E7D-3B13-4AEB-A0DF-BDAEB9B7810C}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe (CHENGDU YIWO Tech Development Co., Ltd. -> ) FirewallRules: [{AF479689-3D9D-452F-969D-C12802CD89E8}] => (Allow) LPort=1688 FirewallRules: [{BE71277A-BD46-4CD6-B572-4E11AC71BF10}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe => Brak pliku FirewallRules: [{96C6C702-21F4-4690-8E43-EB827D0AAA56}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe => Brak pliku FirewallRules: [{E18BA9C1-6CEB-483B-9394-1AE92C8529A9}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{AFC1223C-E994-4BAE-A7CC-9E32C81621DA}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{FFA966A1-FFE4-4D30-9139-8B49DED81EA2}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{73C10EFA-4EFE-49B8-AC6B-4C1C589A0429}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{E2E0E947-8C85-4A3E-9B1D-F2B13CBED9FB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{11C80FBC-0664-4218-AEC1-3D28FD24B2B8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{A363CD96-9024-499D-A2BD-9F5F11082365}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{BEEF03C8-846B-4B64-9C68-8F8054CFCFD9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{9E726F61-9820-4CA7-97BE-B191617E4B7D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{A5B7E15D-01D8-4202-845B-85E31B7ECE9E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{747B9A0B-3DA2-40C7-A0CE-BF1B945802FF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{12207F6C-D0BA-4E81-9AD8-B46D06E370DD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) ==================== Punkty Przywracania systemu ========================= UWAGA: Przywracanie systemu jest wyłączone (Total:118.16 GB) (Free:45.95 GB) (39%) ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (02/06/2022 05:17:50 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2022-03-07T22:11:50Z. Kod błędu: 0x80070002. Error: (02/06/2022 05:17:20 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2022-03-07T22:12:20Z. Kod błędu: 0x80070002. Error: (02/06/2022 05:16:50 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2022-03-07T22:11:50Z. Kod błędu: 0x80070002. Error: (02/06/2022 05:16:20 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2022-03-07T22:12:20Z. Kod błędu: 0x80070002. Error: (02/06/2022 05:15:50 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2022-03-07T22:11:50Z. Kod błędu: 0x80070002. Error: (02/06/2022 05:15:20 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2022-03-07T22:12:20Z. Kod błędu: 0x80070002. Error: (02/06/2022 05:14:50 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2022-03-07T22:11:50Z. Kod błędu: 0x80070002. Error: (02/06/2022 05:14:20 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2022-03-07T22:12:20Z. Kod błędu: 0x80070002. Dziennik System: ============= Error: (02/06/2022 01:46:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi eapihdrv z powodu następującego błędu: Nastąpiło zablokowanie ładowania sterownika Error: (02/06/2022 01:46:50 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\jware\AppData\Local\Temp\ehdrv.sys Error: (02/06/2022 01:46:50 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\jware\AppData\Local\Temp\ehdrv.sys Error: (02/06/2022 01:46:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi eapihdrv z powodu następującego błędu: Nastąpiło zablokowanie ładowania sterownika Error: (02/06/2022 01:46:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi eapihdrv z powodu następującego błędu: Nastąpiło zablokowanie ładowania sterownika Error: (02/06/2022 01:46:50 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\jware\AppData\Local\Temp\ehdrv.sys Error: (02/06/2022 01:46:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi eapihdrv z powodu następującego błędu: Nastąpiło zablokowanie ładowania sterownika Error: (02/06/2022 01:46:50 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\jware\AppData\Local\Temp\ehdrv.sys CodeIntegrity: =============== Date: 2022-02-05 22:40:19 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive File Stream\54.0.3.0\crashpad_handler.exe that did not meet the Microsoft signing level requirements. Date: 2021-12-29 11:26:55 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Statystyki pamięci =========================== BIOS: American Megatrends Inc. V1.9 03/02/2011 Płyta główna: MSI P67A-GD55 (MS-7681) Procesor: Intel(R) Core(TM) i5-2400 CPU @ 3.10GHz Procent pamięci w użyciu: 62% Całkowita pamięć fizyczna: 4076.48 MB Dostępna pamięć fizyczna: 1546.33 MB Całkowita pamięć wirtualna: 7660.48 MB Dostępna pamięć wirtualna: 4651.12 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:118.16 GB) (Free:45.95 GB) NTFS \\?\Volume{fd25db3f-0000-0000-0000-100000000000}\ (Zastrzeżone przez system) (Fixed) (Total:0.57 GB) (Free:0.11 GB) NTFS \\?\Volume{fd25db3f-0000-0000-0000-80ae1d000000}\ () (Fixed) (Total:0.51 GB) (Free:0.08 GB) NTFS ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 119.2 GB) (Disk ID: FD25DB3F) Partition 1: (Active) - (Size=579 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=118.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=526 MB) - (Type=27) ==================== Koniec Addition.txt =======================