Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-02-2025 Ran by EGO-DĘBINA (25-02-2025 18:33:27) Running from C:\Users\EGO-DĘBINA\Desktop Microsoft Windows 11 Home Version 24H2 26100.3194 (X64) (2024-12-15 15:15:32) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= (If an entry is included in the fixlist, it will be removed.) Administrator (S-1-5-21-1226891696-4256230774-3255337818-500 - Administrator - Disabled) EGO-DĘBINA (S-1-5-21-1226891696-4256230774-3255337818-1001 - Administrator - Enabled) => C:\Users\EGO-DĘBINA Gość (S-1-5-21-1226891696-4256230774-3255337818-501 - Limited - Disabled) Konto domyślne (S-1-5-21-1226891696-4256230774-3255337818-503 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-1226891696-4256230774-3255337818-504 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Malwarebytes (Enabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF} FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 24.08 (x64) (HKLM\...\7-Zip) (Version: 24.08 - Igor Pavlov) Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1033-1033-7760-BC15014EA700}) (Version: 24.005.20399 - Adobe) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601108}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden AIMP (HKLM-x32\...\AIMP) (Version: 5.11.2432 - Artem Izmaylov) AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 6.10.22.027 - Advanced Micro Devices, Inc.) AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.133 - Advanced Micro Devices, Inc.) Hidden AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 5.30.0.0 - Advanced Micro Devices, Inc.) Hidden AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 8.0.0.13 - Advanced Micro Devices, Inc.) Hidden AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.44 - Advanced Micro Devices, Inc.) Hidden AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 24.9.1 - Advanced Micro Devices, Inc.) AMD_Chipset_Drivers (HKLM-x32\...\{8d13ff58-77bd-4c18-a602-acd72ef0a328}) (Version: 6.10.22.027 - Advanced Micro Devices, Inc.) Hidden AppLogLibSetup (HKLM-x32\...\{52FB0C8F-DF05-4C61-AEB6-18C55F8C385F}) (Version: 1.0.3.0 - Brother Industries Ltd.) Hidden Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 25.1.9816.2473 - Gen Digital Inc.) Branding64 (HKLM\...\{492AEFBE-1B81-4C20-A111-E6974BB98EC5}) (Version: 1.00.0009 - Advanced Micro Devices, Inc.) Hidden BrLauncher (HKLM-x32\...\{42D26B47-887C-45FC-BCAE-0BE485C5C0BB}) (Version: 2.0.11.0 - Brother Industries Ltd.) Hidden BrLogRx (HKLM-x32\...\{190861E7-09C5-42D8-BB4B-0AFB234BCFC1}) (Version: 1.0.3.1 - Brother Industries Ltd.) Hidden Brother iPrint&Scan (HKLM-x32\...\{89208d05-31fd-46e1-a160-6cba7ec49844}) (Version: 11.1.1.1 - Brother Industries, Ltd.) Brother iPrint&Scan (HKLM-x32\...\{C86D9011-7AE0-4329-AEED-17C69CD84E88}) (Version: 11.1.1.1 - Brother Industries, Ltd.) Hidden Brother PCFax Driver (HKLM-x32\...\{79262B43-9E15-4732-A034-BFD29D9BD077}) (Version: 1.4.1.0 - Brother Industries Ltd.) Hidden Brother Port Driver (HKLM-x32\...\{6CEC6409-A328-44E2-A6CA-69A60699740E}) (Version: 1.0.14.1 - Brother Industries Ltd.) Hidden Brother Printer Driver (HKLM-x32\...\{D9164C2E-91BA-4D5D-B49A-604BB0A127FE}) (Version: 1.9.0.0 - Brother Industries Ltd.) Hidden Brother Scanner Driver (HKLM-x32\...\{45E4523F-2842-410D-90C6-6D19974B8E57}) (Version: 1.0.28.1 - Brother Industries Ltd.) Hidden BrSupportTools (HKLM-x32\...\{32F47565-84B1-42CC-B09A-4CDDD9A32F94}) (Version: 1.0.20.0 - Brother Industries Ltd.) Hidden ControlCenter4 (HKLM-x32\...\{9091B952-8719-49C3-9CC7-6E20EC61081F}) (Version: 4.6.6.1 - Brother Industries, Ltd.) Hidden ControlCenter4 CSDK (HKLM-x32\...\{FD8A9511-BFC9-43B5-BB75-9CEC0EA03CF0}) (Version: 4.6.1.1 - Brother Industries, Ltd.) Hidden CPUID CPU-Z 2.08 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.08 - CPUID, Inc.) CPUID HWMonitor 1.51 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.51 - CPUID, Inc.) EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.401.0.5914 - Electronic Arts) Hidden EA app (HKLM-x32\...\{a7151cd1-211b-4578-8af5-f4c6016a3e54}) (Version: 13.401.0.5914 - Electronic Arts) EasyTuneEngineService (HKLM-x32\...\{964575C3-5820-4642-A89A-754255B5EFE1}) (Version: 1.24.0321 - GIGABYTE) Hidden EasyTuneEngineService (HKLM-x32\...\InstallShield_{964575C3-5820-4642-A89A-754255B5EFE1}) (Version: 1.24.0321 - GIGABYTE) ENE Video Capture Box HAL (HKLM\...\{A096611D-BA11-4A1A-8D09-0A0462D7C8F2}) (Version: 1.0.5.15 - Ene Tech.) Hidden ENE Video Capture Box HAL (HKLM-x32\...\{974259bf-3ed1-4cd6-9ed1-40c7f601a786}) (Version: 1.0.5.15 - Ene Tech.) Hidden ENE_AIC_Marvell_HAL (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.7.0 - ENE TECHNOLOGY INC.) Hidden ENE_AIC_Marvell_HAL (HKLM-x32\...\{887e18fb-6bc3-4cd4-b34e-32d9ff71bbae}) (Version: 1.0.7.0 - ENE TECHNOLOGY INC.) Hidden ENE_DRAM_RGB_AIO (HKLM\...\{0A3DA815-11E2-4C51-9500-42392BA90468}) (Version: 1.0.12.0 - Ene Tech.) Hidden ENE_DRAM_RGB_AIO (HKLM-x32\...\{463856bc-6ba1-4d61-9707-b0aa423b7715}) (Version: 1.0.12.0 - Ene Tech.) Hidden ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.13.0 - ENE TECHNOLOGY INC.) Hidden ENE_EHD_M2_HAL (HKLM-x32\...\{0d380ad9-daa5-4680-ada2-dc3ed9207e16}) (Version: 1.0.13.0 - ENE TECHNOLOGY INC.) Hidden ENE_External_Device_HAL (HKLM\...\{2B8E611F-0B51-4FAC-87BB-AF50D82E7DDA}) (Version: 1.0.12.7 - ENE Tech) Hidden ENE_External_Device_HAL (HKLM-x32\...\{a7b1cf47-d8f0-423d-9494-568195f1c864}) (Version: 1.0.12.7 - ENE Tech) Hidden ENE_MousePad_HAL (HKLM\...\{9E97178A-ADB8-4778-BE60-7E28E2A72721}) (Version: 1.0.1.8 - ENE TECHNOLOGY INC.) Hidden ENE_MousePad_HAL (HKLM-x32\...\{bf256b46-8ff7-48be-ab7f-5661e9a0651f}) (Version: 1.0.1.8 - ENE TECHNOLOGY INC.) Hidden ENE_X_AIC_HAL (HKLM\...\{CF703694-01C6-4062-B797-84DB215662BC}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden ENE_X_AIC_HAL (HKLM-x32\...\{c662a481-d76a-4188-95d2-6eb4ffd55542}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden Escort Console (HKLM-x32\...\InstallShield_{AEA3BE61-AC2C-43AA-AA85-D79AB6FB076E}) (Version: 2.12.07 - Nazwa firmy) GBT_MB_Update (HKLM\...\GBT_MB_Update) (Version: 24.12.05.01 - GIGABYTE) GBT_RGB_Sync_Control 24.11.14.01 (HKLM\...\GBT_RGB_Sync_Control) (Version: 24.11.14.01 - GIGABYTE) GBTECService (HKLM-x32\...\{759D7F2F-1F0D-461E-A3CD-BF58FC60DB2F}) (Version: 1.24.0102 - Gigabyte) Hidden GBTECService (HKLM-x32\...\InstallShield_{759D7F2F-1F0D-461E-A3CD-BF58FC60DB2F}) (Version: 1.24.0102 - Gigabyte) GIGABYTE Control Center 24.12.30.01 (HKLM\...\GIGABYTE Control Center) (Version: 24.12.30.01 - GIGABYTE) GIGABYTE Performance Library (HKLM\...\MBEasyTune) (Version: 24.04.24.01 - GIGABYTE) GIGABYTE SSD Firmware Update Tool (HKLM\...\GBTSsdFirmwareUpdate) (Version: 24.06.19.01 - GIGABYTE) GIGABYTE Storage Library (HKLM\...\MBStorage) (Version: 24.06.05.01 - GIGABYTE) Google Chrome (HKLM\...\{C2526B3B-B6BC-3684-80FE-8EFD4B1ACF98}) (Version: 133.0.6943.127 - Google LLC) HowToGuide (HKLM-x32\...\{36580EEB-4EDF-4880-BBD4-097E2C645ECD}) (Version: 1.0.1.0 - Brother Industries Ltd.) Hidden HttpToUsbBridge (HKLM-x32\...\{999245BB-F187-45E8-95C9-4AE0CC8639D7}) (Version: 2.1.67.1 - Brother Industries Ltd.) HWiNFO® 64 (HKLM\...\HWiNFO® 64_is1) (Version: 8.14 - Martin Malik, REALiX s.r.o.) ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!) InsERT GT 1.82 SP1 HF3 (HKLM-x32\...\{E1704FE0-0292-4F55-A467-65C1A0E75C7C}) (Version: 1.82.13 - InsERT) IrfanView 4.70 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.70 - Irfan Skiljan) Java 8 Update 401 (64-bit) (HKLM\...\{71024AE4-039E-4CA4-87B4-2F64180401F0}) (Version: 8.0.4010.10 - Oracle Corporation) LibreOffice 24.8.4.2 (HKLM\...\{E3618E43-2988-4D1C-AA31-4473B6568DD8}) (Version: 24.8.4.2 - The Document Foundation) Malwarebytes version 5.2.7.167 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.2.7.167 - Malwarebytes) Microsoft ODBC Driver 11 for SQL Server (HKLM\...\{A22EED3F-6DB6-4987-8023-6C6B7030E554}) (Version: 12.2.5000.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1226891696-4256230774-3255337818-1001\...\OneDriveSetup.exe) (Version: 25.015.0126.0002 - Microsoft Corporation) Microsoft SQL Server 2005 Backward compatibility (HKLM\...\{8909B8A7-CEAB-4772-BF29-1892C4E6603B}) (Version: 8.05.2309 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Command Line Utilities (HKLM\...\{D9F711D3-3C90-4D79-9292-47C90C722E2A}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Native Client (HKLM\...\{2180B33F-3225-423E-BBC1-7798CFD3CD1F}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server 2008 Setup Support Files (HKLM\...\{6292D514-17A4-403F-98F9-E150F10C043D}) (Version: 10.3.5500.0 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{C20DACBE-19F2-47FF-AD22-BBB493499346}) (Version: 11.2.5643.3 - Microsoft Corporation) Microsoft SQL Server 2014 (64-bit) (HKLM\...\Microsoft SQL Server SQLServer2014) (Version: - Microsoft Corporation) Microsoft SQL Server 2014 RsFx Driver (HKLM\...\{27859BF7-ADC9-487E-A849-4C58D86B62E4}) (Version: 12.2.5000.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2014 Setup (English) (HKLM\...\{E0AE1947-4991-475D-B972-15C90905915A}) (Version: 12.2.5000.0 - Microsoft Corporation) Microsoft SQL Server 2014 Transact-SQL ScriptDom (HKLM\...\{E8C99927-8E6E-4B6B-B80C-1B8B23B1767D}) (Version: 12.2.5000.0 - Microsoft Corporation) Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.24.28402 - Microsoft) Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{CA8A885F-E95B-3FC6-BB91-F4D9377C7686}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.40.33816 (HKLM-x32\...\{77169412-f642-45e7-b533-0c6f48de12f9}) (Version: 14.40.33816.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.40.33816 (HKLM-x32\...\{4373d0b5-4457-4a80-bad9-029de8df097b}) (Version: 14.40.33816.0 - Microsoft Corporation) Microsoft Visual C++ 2022 X64 Additional Runtime - 14.40.33816 (HKLM\...\{5904914B-9FC8-44C2-AE48-5C7F30A603EC}) (Version: 14.40.33816 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.40.33816 (HKLM\...\{560D2DA4-096E-4868-B22A-DA6418FDE6FB}) (Version: 14.40.33816 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Additional Runtime - 14.40.33816 (HKLM-x32\...\{0DF1D9F9-6038-4641-AB6D-13DD654758A7}) (Version: 14.40.33816 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.40.33816 (HKLM-x32\...\{D7A66DA5-B103-45C1-A0A7-736C08E2F464}) (Version: 14.40.33816 - Microsoft Corporation) Hidden Microsoft VSS Writer for SQL Server 2014 (HKLM\...\{366CD715-2FF4-40B4-A8B4-A05E5D21A945}) (Version: 12.2.5000.0 - Microsoft Corporation) NetworkRepairTool (HKLM-x32\...\{86E68F57-FAFE-4052-BDD4-3B90C38236AE}) (Version: 1.2.16.0 - Brother Industries, Ltd.) Hidden Pakiet sterowników systemu Windows - FTDI CDM Driver Package (05/19/2006 2.00.00) (HKLM\...\7B916F52C6DA567CF20F7AA3E66F7544D4632EA6) (Version: 05/19/2006 2.00.00 - FTDI) Pakiet sterowników systemu Windows - FTDI CDM Driver Package (05/19/2006 2.00.00) (HKLM\...\99931A99CD0E62DF4E5045A67C2A1BACD0967C7E) (Version: 05/19/2006 2.00.00 - FTDI) Patriot Viper M2 SSD RGB (HKLM\...\{8B4C0A3D-C135-4E1F-98D8-3926494B4D61}) (Version: 1.1.0.1 - Patriot Memory) Hidden Patriot Viper M2 SSD RGB (HKLM-x32\...\{07236f40-ec25-4646-8cb6-b6aaf1597324}) (Version: 1.1.0.1 - Patriot Memory) Hidden PC-FAXReceive (HKLM-x32\...\{65EA2C86-30CD-444C-ADAB-8762BE4E2E8C}) (Version: 1.8.003.0 - Brother Insutries Ltd.) Hidden PCFaxTx (HKLM-x32\...\{03BF5A21-6363-410C-B3BE-0946B0012704}) (Version: 3.7.3.1 - Brother Industries Ltd.) Hidden PL-2303 USB-to-Serial (HKLM-x32\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: 1.4.17 - Prolific Technology INC) Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 3.0.3.0 - Advanced Micro Devices, Inc.) Hidden QCAD Trial 3.28.1 (HKLM\...\{FB1F8D68-A3E1-448F-A5D9-0CADE7494AB8}) (Version: 3.28.1 - RibbonSoft GmbH) Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9689.1 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 11.21.0903.2024 - Realtek) RemoteSetup (HKLM-x32\...\{FAB8A30A-B074-48F9-9D73-5E9A757403F8}) (Version: 3.10.2.0 - Brother Industries Ltd.) Hidden RivaTuner Statistics Server 7.3.6 (HKLM-x32\...\RTSS) (Version: 7.3.6 - Unwinder) RyzenMasterSDK (HKLM\...\{4B4B44C4-19FF-4791-AAD4-1AE011803AE8}) (Version: 1.2.3.5 - Advanced Micro Devices, Inc.) Hidden ScannerUtilityInstaller (HKLM-x32\...\{D94DD953-F38C-4220-A17C-9217106510A6}) (Version: 1.20.0.1 - Brother) Hidden Service Pack 2 for SQL Server 2014 (KB3171021) (64-bit) (HKLM\...\KB3171021) (Version: 12.2.5000.0 - Microsoft Corporation) SoftwareUpdateNotification (HKLM-x32\...\{E28A6F15-BFBE-4D20-8B5F-6EABAA1E545E}) (Version: 1.0.14.0 - Brother Industries, Ltd.) Hidden SQL Server 2014 Common Files (HKLM\...\{BD1CD96B-FE4B-4EAE-83D4-6EF55AB5779C}) (Version: 12.2.5000.0 - Microsoft Corporation) Hidden SQL Server 2014 Common Files (HKLM\...\{F7012F84-80F5-4C25-852E-B1BA03276FE6}) (Version: 12.2.5000.0 - Microsoft Corporation) Hidden SQL Server 2014 Database Engine Services (HKLM\...\{17531BCD-C627-46A2-9F1E-7CC920E0E94A}) (Version: 12.2.5000.0 - Microsoft Corporation) Hidden SQL Server 2014 Database Engine Services (HKLM\...\{5082A9F3-AEE5-4639-9BA7-C19661BA7331}) (Version: 12.2.5000.0 - Microsoft Corporation) Hidden SQL Server 2014 Database Engine Shared (HKLM\...\{ACC530B8-B6B4-40D6-B59B-152468CF47D0}) (Version: 12.2.5000.0 - Microsoft Corporation) Hidden SQL Server 2014 Database Engine Shared (HKLM\...\{D1B847A9-B06B-4264-9EF0-78E6E1571E65}) (Version: 12.2.5000.0 - Microsoft Corporation) Hidden SQL Server Browser for SQL Server 2014 (HKLM-x32\...\{3204DE95-97D2-4261-A286-98A262E171D4}) (Version: 12.2.5000.0 - Microsoft Corporation) Sql Server Customer Experience Improvement Program (HKLM\...\{6476DB81-F263-4C04-8574-AAD31136C304}) (Version: 12.2.5000.0 - Microsoft Corporation) Hidden StatusMonitor (HKLM-x32\...\{EBAC9324-2CBC-4DFC-BD9F-6CDC01DCADB4}) (Version: 1.32.1.0 - Brother Industries, Ltd.) Hidden Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Sterowniki firmy InsERT 5.70.17 (HKLM-x32\...\{D886A599-BB8C-4D6F-96E3-94CE45CA5E2E}) (Version: 5.70.17 - InsERT) Synchronizator vendero (HKLM-x32\...\{AEEAE974-1755-4A3F-A803-062D7C3D0E12}) (Version: 24.0.0.8 - InsERT) Hidden Środowisko uruchomieniowe Microsoft Edge WebView2 (HKLM-x32\...\Microsoft EdgeWebView) (Version: 133.0.3065.82 - Microsoft Corporation) Hidden TmUnitedForever Update 2010-03-15 (HKLM-x32\...\TmUnitedForever_is1) (Version: - Nadeo) Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 148.2.10984 - Ubisoft) UsbRepairTool (HKLM-x32\...\{F8762A81-32B5-4144-9F3C-9274F515A651}) (Version: 1.4.0.0 - Brother Industries, Ltd.) Hidden Verbatim_SureFireGaming_Product (HKLM\...\{35CB65C6-A7E3-4EE7-AD40-738D70A72164}) (Version: 1.0.3.11 - Verbatim) Hidden Verbatim_SureFireGaming_Product (HKLM-x32\...\{d601832a-0d94-46ce-9b19-78e8a5887313}) (Version: 1.0.3.11 - Verbatim) Hidden WD P40 Game Drive (HKLM\...\{EE55DBAE-ECDD-4ADD-AAB5-23DE848B0996}) (Version: 1.0.2.18 - Western Digital Corporation) Hidden WD P40 Game Drive (HKLM-x32\...\{72b1a866-fc31-4381-bff3-fa6cd8823777}) (Version: 1.0.2.18 - Western Digital Corporation) Hidden WPS Office (12.2.0.19805) (HKU\S-1-5-21-1226891696-4256230774-3255337818-1001\...\Kingsoft Office) (Version: 12.2.0.19805 - Kingsoft Corp.) Zebra Setup Utilities (HKLM-x32\...\{9207A8EC-3B2D-4A4A-8BF7-957FC19BB3DE}) (Version: 1.1.9.1325 - Zebra Technologies) Hidden Zebra Setup Utilities (HKLM-x32\...\Zebra Setup Utilities) (Version: 1.1.9.1325 - Zebra Technologies) ZebraDesigner 2 (HKLM-x32\...\{CAF27047-C758-4927-9699-BBB0C2B0E56F}) (Version: 2.2.3.4271 - Zebra Technologies Corporation) Hidden ZebraDesigner 2 (HKLM-x32\...\ZebraDesigner 2) (Version: 2.2.3.4271 - Zebra Technologies Corporation) ZebraDesigner 3 (HKLM\...\{B5E9064F-6922-46E5-9EAC-F167340308A6}) (Version: 3.2.2.649 - Zebra Technologies Corporation) Hidden ZebraDesigner 3 (HKLM-x32\...\ZebraDesigner 3) (Version: 3.2.2.649 - Zebra Technologies Corporation) Zoom Workplace (64-bit) (HKLM\...\{3D1339B1-4F26-40D8-9384-9E034D1EB6BC}) (Version: 6.2.49583 - Zoom) Packages: ========= Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2025-02-02] () AMD Radeon Software -> C:\Program Files\AMD\CNext\CNext [2025-01-12] (Advanced Micro Devices Inc.) Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2023-09-14] (Microsoft Corp.) Microsoft.StartExperiencesApp -> C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.1.235.0_x64__8wekyb3d8bbwe [2025-01-26] (Microsoft Corporation) Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.51.331.0_x64__dt26b99r8h8gj [2024-11-21] (Realtek Semiconductor Corp) Rufus -> C:\Program Files\WindowsApps\19453.net.Rufus_4.6.2208.0_x64__y8nh7bq2a8dtt [2024-10-23] (Akeo Consulting) SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.257.463.0_x64__zpdnekdrzrea0 [2025-02-12] (Spotify AB) [Startup Task] WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.373.1736.0_x64__8wekyb3d8bbwe [2025-01-29] (Microsoft Corp.) WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_6000.373.1641.0_x64__8wekyb3d8bbwe [2025-01-29] (Microsoft Corp.) Windows App Runtime DDLM 5001.119.156.0-x6 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.5001.119.156.0-x6_5001.119.156.0_x64__8wekyb3d8bbwe [2024-06-14] (Microsoft Corporation) Windows App Runtime DDLM 5001.119.156.0-x8 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.5001.119.156.0-x8_5001.119.156.0_x86__8wekyb3d8bbwe [2024-06-14] (Microsoft Corporation) ==================== Custom CLSID (Whitelisted): ============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1226891696-4256230774-3255337818-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe) CustomCLSID: HKU\S-1-5-21-1226891696-4256230774-3255337818-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\EGO-DĘBINA\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.24.28402\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1226891696-4256230774-3255337818-1001_Classes\CLSID\{28A80003-18FD-411D-B0A3-3C81F618E22B}\InprocServer32 -> C:\Users\EGO-DĘBINA\AppData\Local\Kingsoft\WPS Office\12.2.0.19805\office6\kwpsmenushellext64.dll (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) CustomCLSID: HKU\S-1-5-21-1226891696-4256230774-3255337818-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-02-12] (Avast Software s.r.o. -> Gen Digital Inc.) ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-02-12] (Avast Software s.r.o. -> Gen Digital Inc.) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-08-11] (Igor Pavlov) [File not signed] ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll [2023-07-12] (IP Izmaylov Artem Andreevich -> AIMP DevTeam) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-02-12] (Avast Software s.r.o. -> Gen Digital Inc.) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-02-12] (Avast Software s.r.o. -> Gen Digital Inc.) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-02-22] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-08-11] (Igor Pavlov) [File not signed] ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll [2023-07-12] (IP Izmaylov Artem Andreevich -> AIMP DevTeam) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-08-11] (Igor Pavlov) [File not signed] ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-02-12] (Avast Software s.r.o. -> Gen Digital Inc.) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-02-22] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers1_S-1-5-21-1226891696-4256230774-3255337818-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\EGO-DĘBINA\AppData\Local\Kingsoft\WPS Office\12.2.0.19805\office6\kwpsmenushellext64.dll [2025-01-15] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) ContextMenuHandlers4_S-1-5-21-1226891696-4256230774-3255337818-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\EGO-DĘBINA\AppData\Local\Kingsoft\WPS Office\12.2.0.19805\office6\kwpsmenushellext64.dll [2025-01-15] (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd) ==================== Codecs (Whitelisted) ==================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Drivers32: [VIDC.RTV1] => C:\WINDOWS\system32\rtvcvfw64.dll [1102848 2023-04-10] () [File not signed] HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [891904 2023-04-10] () [File not signed] ==================== Shortcuts & WMI ======================== ==================== Loaded Modules (Whitelisted) ============= 2016-11-25 09:18 - 2016-11-25 09:18 - 000139264 _____ () [File not signed] C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll 2022-01-26 18:00 - 2022-01-26 18:00 - 000542720 _____ () [File not signed] C:\Program Files (x86)\Browny02\BrMonitor.dll 2022-01-26 18:00 - 2022-01-26 18:00 - 001859584 _____ () [File not signed] C:\Program Files (x86)\Browny02\Brother\BrStMonWRes.dll 2016-04-12 09:07 - 2016-04-12 09:07 - 000067584 _____ (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Brother\AppLogLib\BrBFLogI.dll 2017-04-05 08:53 - 2017-04-05 08:53 - 000137728 _____ (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcAssoc.dll 2017-01-27 14:39 - 2017-01-27 14:39 - 000087552 _____ (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcDlgRc.dll 2017-01-27 14:39 - 2017-01-27 14:39 - 017974784 _____ (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcGrImg.dll 2017-01-27 14:33 - 2017-01-27 14:33 - 000091648 _____ (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\ControlCenter4\BrCcLPol.dll 2017-04-05 08:53 - 2017-04-05 08:53 - 000440832 _____ (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\ControlCenter4\Track.dll 2023-07-12 14:26 - 2024-08-11 14:00 - 000101376 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll 2025-02-21 04:49 - 2025-02-21 04:49 - 002849280 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\libcrypto-1_1-x64.dll 2025-02-21 04:49 - 2025-02-21 04:49 - 000685056 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\libssl-1_1-x64.dll 2025-02-21 04:49 - 2025-02-21 04:49 - 000046592 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\bearer\qgenericbearer.dll 2025-02-21 04:50 - 2025-02-21 04:50 - 006270976 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5Core.dll 2025-02-21 04:50 - 2025-02-21 04:50 - 001389568 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5Network.dll 2025-02-21 04:50 - 2025-02-21 04:50 - 000157184 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5WebSockets.dll ==================== Alternate Data Streams (Whitelisted) ======== (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Windows:nlsPreferences [0] ==================== Safe Mode (Whitelisted) ================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) ================= ==================== Internet Explorer (Whitelisted) ============= SearchScopes: HKU\S-1-5-21-1226891696-4256230774-3255337818-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre-1.8\bin\ssv.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre-1.8\bin\jp2ssv.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation) ==================== Hosts content: ========================= (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2022-05-07 06:24 - 2022-05-07 06:22 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Other Areas =========================== (Currently there is no automatic fix for this section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Microsoft SQL Server\Client SDK\ODBC\110\Tools\Binn\;C:\Program Files (x86)\Microsoft SQL Server\120\Tools\Binn\;C:\Program Files\Microsoft SQL Server\120\Tools\Binn\;C:\Program Files\Microsoft SQL Server\120\DTS\Binn\;C:\Program Files (x86)\Microsoft SQL Server\80\Tools\Binn\ HKU\S-1-5-21-1226891696-4256230774-3255337818-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img19.jpg DNS Servers: 192.168.100.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. Network Binding: ============= Wi-Fi: TP-Link Wireless USB Adapter -> rtwlanu.sys Ethernet: Realtek PCIe GbE Family Controller -> rt68cx21x64.sys ==================== MSCONFIG/TASK MANAGER disabled items == (If an entry is included in the fixlist, it will be removed.) HKLM\...\StartupApproved\Run32: => "KiesTrayAgent" HKU\S-1-5-21-1226891696-4256230774-3255337818-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1226891696-4256230774-3255337818-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_B70AD30C0F2B6F60C74A4DA2800D990C" HKU\S-1-5-21-1226891696-4256230774-3255337818-1001\...\StartupApproved\Run: => "EADM" ==================== FirewallRules (Whitelisted) ================ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{B1E67CC3-B1C3-4712-BBCB-50995495976E}] => (Allow) C:\Program Files\WindowsApps\MSTeams_24295.605.3225.8804_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{6B6260AA-E635-4CD8-B1DC-4699481C966C}] => (Allow) C:\Program Files\WindowsApps\MSTeams_24295.605.3225.8804_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{C7A08FEF-B814-43FC-AD63-EFF2F7741B04}] => (Allow) D:\Steam\steamapps\common\Half-Life 2\hl2.exe (Valve Corp. -> ) FirewallRules: [{50722B09-F92A-4D11-A3F2-FA76FC8BC86D}] => (Allow) D:\Steam\steamapps\common\Half-Life 2\hl2.exe (Valve Corp. -> ) FirewallRules: [{95EDBC98-2C37-42F9-9F0B-09E19AF11B1E}] => (Allow) C:\Program Files\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{26939A70-483A-43D9-AD45-AEBD3F8A22F9}] => (Allow) C:\Program Files\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{C0AD4D4D-B1A5-4A92-92F1-BB4D873754CC}] => (Allow) C:\Program Files\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{AF5C6BE1-890C-4479-B92F-034AE79966C6}] => (Allow) D:\Steam\steamapps\common\Quake II RTX\q2rtx.exe (NVIDIA Corporation) [File not signed] FirewallRules: [{A727663A-E52C-407C-BC3A-7AADE565452A}] => (Allow) D:\Steam\steamapps\common\Quake II RTX\q2rtx.exe (NVIDIA Corporation) [File not signed] FirewallRules: [{45A3A63F-A0FF-4B0E-AFC4-A4CC766EA668}] => (Allow) D:\Steam\steamapps\common\Shadow of the Tomb Raider\SOTTR.exe (Crystal Dynamics, Inc -> Eidos Inc.) FirewallRules: [{D5B72506-5031-48F3-9FB6-340CC786828C}] => (Allow) D:\Steam\steamapps\common\Shadow of the Tomb Raider\SOTTR.exe (Crystal Dynamics, Inc -> Eidos Inc.) FirewallRules: [UDP Query User{CE28DB15-0B7A-4F5A-A85E-D897D59AFAAE}C:\users\ego-dębina\downloads\anydesk.exe] => (Allow) C:\users\ego-dębina\downloads\anydesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [TCP Query User{1AF700F0-D3CD-40AA-BE1E-28863871EAD7}C:\users\ego-dębina\downloads\anydesk.exe] => (Allow) C:\users\ego-dębina\downloads\anydesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [{543424FA-337C-43DC-9EF1-E91D75A36294}] => (Allow) D:\Steam\steamapps\common\Sniper Elite 3\Launcher\Sniper3Launcher.exe () [File not signed] FirewallRules: [{669BD582-40F8-4667-9558-2D9EF86FDEDB}] => (Allow) D:\Steam\steamapps\common\Sniper Elite 3\Launcher\Sniper3Launcher.exe () [File not signed] FirewallRules: [{45A26FFF-4122-4456-923B-E42B8DA64A3D}] => (Allow) D:\Steam\steamapps\common\F.E.A.R. 3\F.E.A.R. 3.exe (Valve Corp. -> Day 1 Studios, LLC) [File not signed] FirewallRules: [{5C976D63-D7EF-47ED-8BA0-922C250B94E9}] => (Allow) D:\Steam\steamapps\common\F.E.A.R. 3\F.E.A.R. 3.exe (Valve Corp. -> Day 1 Studios, LLC) [File not signed] FirewallRules: [{AC6AB72B-3010-4A1A-8638-21EF1D4BFDCD}] => (Allow) D:\Steam\steamapps\common\Worms Armageddon\WA.exe (Team17 Software Ltd) [File not signed] FirewallRules: [{3EF0B9E1-4CE8-4E97-843E-E3FCE445CA8A}] => (Allow) D:\Steam\steamapps\common\Worms Armageddon\WA.exe (Team17 Software Ltd) [File not signed] FirewallRules: [{291A6C92-39BF-482B-AC5D-1153A1EEF303}] => (Allow) D:\Steam\steamapps\common\Far Cry 6\bin\FarCry6.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment) FirewallRules: [{64B04904-CCB7-45CB-8E45-BC0FF0030E90}] => (Allow) D:\Steam\steamapps\common\Far Cry 6\bin\FarCry6.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment) FirewallRules: [{240115A8-DC2A-4669-9B46-F5BF664C4044}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) FirewallRules: [{7955EF6D-31DF-4896-BE19-9C6213144465}] => (Allow) D:\Steam\steamapps\common\City Car Driving\bin\win32\starter.exe (Forward Development) [File not signed] FirewallRules: [{E31EE15D-B526-4D73-AE0D-D87AE5B6D9F2}] => (Allow) D:\Steam\steamapps\common\City Car Driving\bin\win32\starter.exe (Forward Development) [File not signed] FirewallRules: [{35C6C1CF-8A44-4EB0-9137-66B61D4AD460}] => (Allow) D:\Steam\steamapps\common\Lossless Scaling\LosslessScaling.exe (THS) [File not signed] FirewallRules: [{163B105E-4801-455B-86EC-407C469D0299}] => (Allow) D:\Steam\steamapps\common\Lossless Scaling\LosslessScaling.exe (THS) [File not signed] FirewallRules: [{06E55E4D-A57D-4CCE-B966-D7CA07E3F452}] => (Allow) C:\Program Files\Zebra Technologies\ZebraDesigner 3\bin.net\ZebraProxy3.exe (Zebra Technologies Corporation -> Zebra Technologies Corporation) FirewallRules: [{CEDBE400-8DAC-44A2-AA9D-DA867831CD08}] => (Allow) C:\Program Files\Zebra Technologies\ZebraDesigner 3\bin.net\ZebraProxy3.exe (Zebra Technologies Corporation -> Zebra Technologies Corporation) FirewallRules: [{83185A1C-371C-4135-9D8C-BF0D1DD699BC}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) FirewallRules: [{70B5FF1F-53DD-4E98-9206-F9B734BC3250}] => (Allow) D:\Steam\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe (Techland S.A. -> Techland) FirewallRules: [{E14F5B73-D24C-4E45-81BE-CC74E9188B20}] => (Allow) D:\Steam\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe (Techland S.A. -> Techland) FirewallRules: [{F845CD28-6FB7-4C4D-89A4-A5F2563C504D}] => (Allow) LPort=54955 FirewallRules: [{5B130B00-8650-4F82-93F2-1EC9047EE742}] => (Allow) LPort=54950 FirewallRules: [{C5C59EA5-791C-4E0B-82AA-DE4802102E5B}] => (Allow) D:\Steam\steamapps\common\Dying Light 2\ph\work\bin\x64\DyingLightGame_x64_rwdi.exe (Techland S.A. -> Techland) FirewallRules: [{11F9BDB5-BE42-4C65-A8CF-AAB55EBD8131}] => (Allow) D:\Steam\steamapps\common\Dying Light 2\ph\work\bin\x64\DyingLightGame_x64_rwdi.exe (Techland S.A. -> Techland) FirewallRules: [{E1C610FA-D229-4DA1-9D92-BA39CED1BDD3}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) FirewallRules: [{B1B27E28-6982-4118-82E7-C2F0ADB80E0D}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) FirewallRules: [UDP Query User{7E013CA6-98B1-47A7-ADEC-9EA5C8EEB2C9}D:\steam\steamapps\common\ea sports fc 24\fc24.exe] => (Allow) D:\steam\steamapps\common\ea sports fc 24\fc24.exe => No File FirewallRules: [TCP Query User{5E427947-351E-4FF6-B5FB-657D30DA635D}D:\steam\steamapps\common\ea sports fc 24\fc24.exe] => (Allow) D:\steam\steamapps\common\ea sports fc 24\fc24.exe => No File FirewallRules: [{784E2A9E-DF61-4E11-BBB8-AC6836A48FD8}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) FirewallRules: [{DCD82927-22B8-41BC-B8DA-43A9F0A7BB2D}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File FirewallRules: [{DDBFC107-F45C-4A10-87D8-B6F0BF457CBB}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File FirewallRules: [{02CC4CE5-C12F-40D2-BB7B-D7DA171104E3}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{35AF6B55-49CD-4692-B598-BB4C69C28897}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software) FirewallRules: [{4838FD72-556C-4B7D-A393-F37996618B60}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) FirewallRules: [UDP Query User{ACE96902-C858-4C1A-B97E-C39C5C1082DA}D:\steam\steamapps\common\battlefield 1\bf1.exe] => (Block) D:\steam\steamapps\common\battlefield 1\bf1.exe => No File FirewallRules: [TCP Query User{8E83C908-902C-4529-831C-265A46DE0370}D:\steam\steamapps\common\battlefield 1\bf1.exe] => (Block) D:\steam\steamapps\common\battlefield 1\bf1.exe => No File FirewallRules: [UDP Query User{475878E9-2454-4D19-9485-EA303E69B9F5}D:\steam\steamapps\common\need for speed\nfs16.exe] => (Allow) D:\steam\steamapps\common\need for speed\nfs16.exe (Electronic Arts -> Electronic Arts) FirewallRules: [TCP Query User{5C495463-9B48-41EB-93D9-E0F046DB1760}D:\steam\steamapps\common\need for speed\nfs16.exe] => (Allow) D:\steam\steamapps\common\need for speed\nfs16.exe (Electronic Arts -> Electronic Arts) FirewallRules: [UDP Query User{798F4F78-962E-40F9-8247-D0781FCFF1BF}D:\steam\steamapps\common\need for speed payback\needforspeedpayback.exe] => (Allow) D:\steam\steamapps\common\need for speed payback\needforspeedpayback.exe => No File FirewallRules: [TCP Query User{1178FA5E-E708-4B67-A5B9-A75509D936C7}D:\steam\steamapps\common\need for speed payback\needforspeedpayback.exe] => (Allow) D:\steam\steamapps\common\need for speed payback\needforspeedpayback.exe => No File FirewallRules: [UDP Query User{BBDC4357-E5E1-42E3-8662-B204453CEBBA}D:\steam\steamapps\common\need for speed heat\needforspeedheat.exe] => (Allow) D:\steam\steamapps\common\need for speed heat\needforspeedheat.exe => No File FirewallRules: [TCP Query User{D8498632-5829-4A8C-89BD-798AC96C4289}D:\steam\steamapps\common\need for speed heat\needforspeedheat.exe] => (Allow) D:\steam\steamapps\common\need for speed heat\needforspeedheat.exe => No File FirewallRules: [UDP Query User{53A0C531-3375-4628-849C-35E283BA9F83}D:\steam\steamapps\common\need for speed(tm) most wanted\nfs13.exe] => (Allow) D:\steam\steamapps\common\need for speed(tm) most wanted\nfs13.exe => No File FirewallRules: [TCP Query User{E6A5C35F-FBF5-4CE4-83DF-B8CF6E447FD4}D:\steam\steamapps\common\need for speed(tm) most wanted\nfs13.exe] => (Allow) D:\steam\steamapps\common\need for speed(tm) most wanted\nfs13.exe => No File FirewallRules: [{B6D4AED1-7554-4D52-8435-D6382FA8EE94}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) FirewallRules: [{2A587DD6-45AD-4D29-A183-791275968A70}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) FirewallRules: [{B14EA85B-AF42-4B83-B60C-3071996C3BB1}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) FirewallRules: [UDP Query User{3C2920A2-19B5-423F-A6A7-94CE78C9F855}D:\tmunitedforever\tmforever.exe] => (Allow) D:\tmunitedforever\tmforever.exe () [File not signed] FirewallRules: [TCP Query User{09BC81E3-DC46-44D9-80B6-FBB2DA625976}D:\tmunitedforever\tmforever.exe] => (Allow) D:\tmunitedforever\tmforever.exe () [File not signed] FirewallRules: [{1781311A-E9D2-49C3-BD4A-0891DB5E28A6}] => (Allow) C:\Users\EGO-DĘBINA\AppData\Local\Kingsoft\WPS Office\12.2.0.13110\office6\promecefpluginhost.exe => No File FirewallRules: [{29DF030E-5FEB-496B-BB4F-1BCA4071B5E2}] => (Allow) C:\Users\EGO-DĘBINA\AppData\Local\Kingsoft\WPS Office\12.2.0.13110\office6\wpscloudsvr.exe => No File FirewallRules: [{3AB3A975-A608-41D4-994B-011A12439559}] => (Allow) C:\Users\EGO-DĘBINA\AppData\Local\Kingsoft\WPS Office\12.2.0.13110\office6\wps.exe => No File FirewallRules: [{D5CED4D0-5B28-4FA2-BE83-1F822F432A1F}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File FirewallRules: [{56160008-699F-442C-AD6A-74EDBDB56F40}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File FirewallRules: [{83D6E0FE-988A-4151-9216-32FBD4121BC8}] => (Allow) D:\Steam\steamapps\common\Serious Sam 4\Bin\x64\Sam4_Unrestricted.exe => No File FirewallRules: [{74304480-5DC8-4E0C-A7B8-F58F1841E1FD}] => (Allow) D:\Steam\steamapps\common\Serious Sam 4\Bin\x64\Sam4_Unrestricted.exe => No File FirewallRules: [{DDFB772C-2F5C-45B5-8C29-E28FF55FBF89}] => (Allow) D:\Steam\steamapps\common\Serious Sam 4\Bin\x64\Sam4.exe => No File FirewallRules: [{392AF571-F49E-42FA-A533-0E5C933DFBD6}] => (Allow) D:\Steam\steamapps\common\Serious Sam 4\Bin\x64\Sam4.exe => No File FirewallRules: [{A867D9D1-3171-420B-A061-63C521DA4C64}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) FirewallRules: [{01F2C66C-C9E7-4D16-953B-460329588025}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{B849AFE1-417D-48B5-9C78-B13C8A525CF4}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{4CB17579-8304-4B98-96FA-3A9DB1405519}] => (Allow) D:\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{F881A504-83F2-45A3-B094-FC3B5A119889}] => (Allow) D:\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{FE6DB9B0-8235-4669-A707-3C03CC60305F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dying Light 2\ph\work\bin\x64\DyingLightGame_x64_rwdi.exe => No File FirewallRules: [{AA508072-55C0-4AB4-AAE4-F24929DA8A44}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dying Light 2\ph\work\bin\x64\DyingLightGame_x64_rwdi.exe => No File FirewallRules: [{35C7D035-5766-4A88-8800-71A696E597DE}] => (Allow) c:\program files (x86)\pc-faxreceive\brengineprocess.exe (Brother Industries, Ltd.) [File not signed] FirewallRules: [{9EAB53E9-4011-48CE-AA4D-C09FBA15F576}] => (Allow) c:\program files (x86)\pc-faxreceive\brengineprocess.exe (Brother Industries, Ltd.) [File not signed] FirewallRules: [{61556C07-BE9E-43CD-8D2C-BB7DAAF63B91}] => (Allow) C:\Program Files (x86)\Browny02\Brother\BrPrintFinishNotice\BrPrintFinishNotice.exe (Brother Industries, Ltd. -> ) FirewallRules: [{2CC4F974-307F-49FC-8266-04AE85571AA2}] => (Allow) C:\Program Files (x86)\Browny02\Brother\BrPrintFinishNotice\BrPrintFinishNotice.exe (Brother Industries, Ltd. -> ) FirewallRules: [{70F05CE9-1F80-4175-AAFD-DC387DA35471}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Serious Sam 4\Bin\x64\Sam4_Unrestricted.exe => No File FirewallRules: [{282DCB9A-3781-4D88-A357-1A6545002E8E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Serious Sam 4\Bin\x64\Sam4_Unrestricted.exe => No File FirewallRules: [{28436076-236E-404A-9C62-D6C78D85A067}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Serious Sam 4\Bin\x64\Sam4.exe => No File FirewallRules: [{63E0F379-11D1-4547-8FDB-0EEAF46B07DF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Serious Sam 4\Bin\x64\Sam4.exe => No File FirewallRules: [{E712A356-10F2-4247-A163-7ADD49F0DFF6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Worms Armageddon\WA.exe => No File FirewallRules: [{A3C48902-F288-4AE2-A238-9E78BD2BE4D4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Worms Armageddon\WA.exe => No File FirewallRules: [{831CFB16-24EC-4C8F-A78F-BC93B1283A4C}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File FirewallRules: [{D79111DE-24FA-4BDE-9917-C1D5ACC118D6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File FirewallRules: [{B8B4668F-E5C8-46D5-9112-5D3E3EF10125}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> Gen Digital Inc.) FirewallRules: [{58811165-E269-4F2D-8452-4FD7B522067F}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> Gen Digital Inc.) FirewallRules: [{89214139-7923-4017-851D-204DE3B2C898}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => No File FirewallRules: [{EA6425EF-18EC-47E5-9B2B-8CEA564C76F5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => No File FirewallRules: [{3C298336-DE2B-4B72-98EF-DF1FFE37F897}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) FirewallRules: [{A7BF0FED-42D0-4F54-BA51-48079B9BD786}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) FirewallRules: [{EC24D7C2-E032-4AE5-BF2D-9A5DB517474E}] => (Allow) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe => No File FirewallRules: [{538DAF13-D468-444D-8B50-A188FDD98EED}] => (Allow) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe => No File FirewallRules: [{38F2E7AB-B12C-4CFC-AB99-DB164D5E9AFF}] => (Allow) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe => No File FirewallRules: [{C5867A2E-F3A6-4345-9A41-0E24E2080CD3}] => (Allow) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe => No File FirewallRules: [{CB937A1F-FFD2-4C82-B75E-13FD818653B1}] => (Allow) LPort=53 FirewallRules: [{958158F3-EC80-47D3-8AB0-94D250490E8B}] => (Allow) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe => No File FirewallRules: [{BD9BBBCF-301B-4B53-9EC9-A7E1C3B946D3}] => (Allow) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe => No File FirewallRules: [{96584651-D3E3-4B18-BE2A-AB9B989F1B80}] => (Allow) C:\PROGRA~2\REALTEK\USBWIR~2\Rtldhcp.exe => No File FirewallRules: [{34270089-E0F1-439E-953E-885E72A8A011}] => (Allow) LPort=53 FirewallRules: [{833150DB-95F7-40D8-B618-A11B73F83414}] => (Allow) LPort=1542 FirewallRules: [{D789692F-5C28-47D9-A9F1-2347DC4A09A3}] => (Allow) LPort=1542 FirewallRules: [{0849A6E8-1990-4058-8848-5F0D0DB04EEF}] => (Allow) C:\PROGRA~2\REALTEK\USBWIR~2\RtWlan.exe => No File FirewallRules: [{78482C9C-D429-4D68-BA58-5FA9127EFF23}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24334.1103.3302.5694_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{C1394450-C30C-46AE-9091-CD671831EFC5}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24334.1103.3302.5694_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{6996C322-F0C1-4643-8DB5-A4B3844A1FCB}] => (Allow) D:\Steam\steamapps\common\Remember Me\Binaries\Win32\RememberMe.exe (QLOC S.A. -> CAPCOM U.S.A, INC hxxp://www.capcom.com/us) FirewallRules: [{2D1D4B2F-A6C3-4CC2-AF5D-B1E3AE177F08}] => (Allow) D:\Steam\steamapps\common\Remember Me\Binaries\Win32\RememberMe.exe (QLOC S.A. -> CAPCOM U.S.A, INC hxxp://www.capcom.com/us) FirewallRules: [{C9C914DA-4E0A-43ED-ADAE-E3F15624AB1F}] => (Allow) D:\Steam\steamapps\common\Xpand Rally Xtreme\XRX.exe (Techland) [File not signed] FirewallRules: [{A55B1709-8FEE-42C1-AEA8-13287AFD8095}] => (Allow) D:\Steam\steamapps\common\Xpand Rally Xtreme\XRX.exe (Techland) [File not signed] FirewallRules: [{1047D2BA-AB0E-4451-A953-990392B59149}] => (Allow) D:\Steam\steamapps\common\Xpand Rally Xtreme\ChromEd.exe (Techland) [File not signed] FirewallRules: [{C625CF22-659D-4038-AADA-17E5AE6E9B30}] => (Allow) D:\Steam\steamapps\common\Xpand Rally Xtreme\ChromEd.exe (Techland) [File not signed] FirewallRules: [{B77B8C08-9DA8-446D-BF0F-EEDE70787800}] => (Allow) D:\Steam\steamapps\common\FarCry5\bin\FarCry5.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment) FirewallRules: [{FB313BFB-08B7-4DDD-8773-B5F316141AB0}] => (Allow) D:\Steam\steamapps\common\FarCry5\bin\FarCry5.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment) FirewallRules: [{CD0ECCE6-0769-455E-9EB5-14F7D9121EAA}] => (Allow) D:\Steam\steamapps\common\FarCry5\bin\ArcadeEditor64.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft) FirewallRules: [{36AF6622-277C-4A04-88E4-477EF4980D65}] => (Allow) D:\Steam\steamapps\common\FarCry5\bin\ArcadeEditor64.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft) FirewallRules: [{458F2C1E-3260-4FFD-B919-F2EA28B72FB8}] => (Allow) D:\Steam\steamapps\common\POSTAL2Complete\System\Postal2.exe () [File not signed] FirewallRules: [{363F7E79-DD9E-4202-9820-90F9AC3F6510}] => (Allow) D:\Steam\steamapps\common\POSTAL2Complete\System\Postal2.exe () [File not signed] FirewallRules: [{7DFB6271-B7EF-431A-A6EF-06222B9773C5}] => (Allow) D:\Steam\steamapps\common\POSTAL2Complete\ShareThePain\System\Postal2MP.exe () [File not signed] FirewallRules: [{448B1586-88BB-4054-8A1B-46FB1963B733}] => (Allow) D:\Steam\steamapps\common\POSTAL2Complete\ShareThePain\System\Postal2MP.exe () [File not signed] FirewallRules: [{A472271B-54C1-4304-8DF1-FC7D6260E8C1}] => (Allow) D:\Steam\steamapps\common\Crash Time II\BurningWheels.exe (Synetic) [File not signed] FirewallRules: [{7FB13620-4F73-44FF-AED0-58F73640E020}] => (Allow) D:\Steam\steamapps\common\Crash Time II\BurningWheels.exe (Synetic) [File not signed] FirewallRules: [{936B7517-B26F-4753-B08B-88371A2BD65B}] => (Allow) D:\Steam\steamapps\common\Carmageddon2\CARMA2_HW.EXE () [File not signed] FirewallRules: [{1A540196-A74C-4E67-92C1-648420B1494A}] => (Allow) D:\Steam\steamapps\common\Carmageddon2\CARMA2_HW.EXE () [File not signed] FirewallRules: [{A23DA4D3-4900-4946-B126-EB9A30180B9E}] => (Allow) D:\Steam\steamapps\common\Dying Light\DyingLightGame.exe (Techland S.A. -> Techland) FirewallRules: [{672E1562-925D-4FF1-8F89-F2BBD4F678CC}] => (Allow) D:\Steam\steamapps\common\Dying Light\DyingLightGame.exe (Techland S.A. -> Techland) FirewallRules: [{8B8039A3-0913-4F42-945B-CE54D58C749E}] => (Allow) D:\Steam\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{1AE02959-89D6-49AB-A171-FDE3A4A9090C}] => (Allow) D:\Steam\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{AAF55EB7-0FE8-430A-9B1A-BBA3C19E172F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.257.463.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{25E40116-4B5B-4485-AE31-A30C0F12F54B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.257.463.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{83D3B289-F27F-45B2-937D-2DC5A18A9CFF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.257.463.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{8CDC4243-D6EC-4C60-8A9C-473B1E1056C9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.257.463.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{CD65D0C8-DD15-4F77-9C82-6128AFC35D46}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.257.463.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{68020C21-2FD7-4059-92D9-39E8389CD1CC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.257.463.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{52D05A50-52ED-4986-B685-655E2C9F99BF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.257.463.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{C964D094-54EE-4681-AC5E-82B57DECDBE2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.257.463.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{50C4E5F3-19D7-4401-9DC4-D6569524A8DF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.257.463.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{21842AB5-9193-4A4D-A1AA-3A3E4479616A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.257.463.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [TCP Query User{C9C2FBA7-0C05-4BBC-927C-0AA0F8019219}D:\steam\steamapps\common\star wars battlefront\starwarsbattlefront.exe] => (Block) D:\steam\steamapps\common\star wars battlefront\starwarsbattlefront.exe (Electronic Arts -> Electronic Arts) FirewallRules: [UDP Query User{592F0FB3-3C55-4235-ACD6-2D9282A93419}D:\steam\steamapps\common\star wars battlefront\starwarsbattlefront.exe] => (Block) D:\steam\steamapps\common\star wars battlefront\starwarsbattlefront.exe (Electronic Arts -> Electronic Arts) FirewallRules: [{8A477C1A-695C-4A0B-B3E0-D296F63F4B9D}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{08E284C5-ACDC-44CD-A588-79D841F0D114}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{BBAB9DE5-887A-4E28-9E63-2B27C8DD6C0C}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{27A471F0-4795-4362-A891-B9C4CFF4714F}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{A4445323-0FC4-47E1-A315-908BDD12C31C}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{C3655CA1-35EB-42BD-8D36-51355ACC7357}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{90DCECE2-4AF3-4BEB-BB71-CF67967B798E}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{EB42B29D-49A2-4DA9-BDA6-2F76F9CA3246}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{9558B802-E047-453E-8FE5-DEE98B4051A6}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{4A4AF8CA-08CD-45C5-8C3E-27ADE15A6876}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{E34F2E89-D1B7-4A0B-8431-D95008278154}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{2EDC0D67-37A5-4029-A47C-0B40F5C57035}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{F5D9DC79-6563-4CAF-8655-DF646B783915}] => (Allow) C:\Users\EGO-DĘBINA\AppData\Local\Programs\Opera GX\opera.exe => No File FirewallRules: [TCP Query User{1FD20BFD-1DA7-4BE3-99B0-B24F6CB8BB07}C:\users\ego-dębina\appdata\roaming\.tlauncher\starter\jre_default\jre-21.0.61-windows-x64\bin\java.exe] => (Allow) C:\users\ego-dębina\appdata\roaming\.tlauncher\starter\jre_default\jre-21.0.61-windows-x64\bin\java.exe FirewallRules: [UDP Query User{6A501BFB-C0A5-4848-8AA7-5C28859082CA}C:\users\ego-dębina\appdata\roaming\.tlauncher\starter\jre_default\jre-21.0.61-windows-x64\bin\java.exe] => (Allow) C:\users\ego-dębina\appdata\roaming\.tlauncher\starter\jre_default\jre-21.0.61-windows-x64\bin\java.exe FirewallRules: [TCP Query User{BC3D347C-570B-44A9-93DC-88B56DEB0FBA}C:\users\ego-dębina\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Block) C:\users\ego-dębina\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe FirewallRules: [UDP Query User{2E6D5D5A-79BD-4001-B75C-9C049C94A2BF}C:\users\ego-dębina\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Block) C:\users\ego-dębina\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe FirewallRules: [{9E71C608-58CB-47D5-B415-201BC9B91FAE}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\133.0.3065.82\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{25897BC1-73BD-4060-8C86-2F671402E60B}] => (Allow) D:\Steam\steamapps\common\High Octane Drift\HighOctaneDrift.exe () [File not signed] FirewallRules: [{E3309F90-DEB5-4292-8481-F35A6ABB54AF}] => (Allow) D:\Steam\steamapps\common\High Octane Drift\HighOctaneDrift.exe () [File not signed] FirewallRules: [{DCE68E36-52B5-46EC-A728-72C5F5FC5E98}] => (Allow) D:\Steam\steamapps\common\Motorbike Evolution 2024\Engine Evolution.exe () [File not signed] FirewallRules: [{8DAA3B01-39A6-4E74-9FE3-41712AAFF1F7}] => (Allow) D:\Steam\steamapps\common\Motorbike Evolution 2024\Engine Evolution.exe () [File not signed] ==================== Restore Points ========================= 19-02-2025 10:34:41 Windows Update 19-02-2025 10:34:45 Windows Update 19-02-2025 18:39:12 Instalator modułów systemu Windows 22-02-2025 12:35:50 Removed Microsoft Edge ==================== Faulty Device Manager Devices ============ ==================== Event log errors: ======================== Application errors: ================== Error: (02/25/2025 07:42:11 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2125-02-01T06:42:11Z. Kod błędu: 0x800704C8. Error: (02/24/2025 07:21:49 PM) (Source: Application Hang) (EventID: 1002) (User: ZARZĄDZANIE NT) Description: Program Au_.exe w wersji 12.2.0.19805 przestał korzystać z systemu Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji o problemie, sprawdź historię problemów w panelu sterowania Zabezpieczenia i konserwacja. Error: (02/22/2025 12:35:52 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddLegacyDriverFiles: Unable to back up image of binary 360FsFlt mini-filter driver. System Error: Nie można odnaleźć określonego pliku.. Error: (02/22/2025 12:09:21 PM) (Source: Application Error) (EventID: 1000) (User: ZARZĄDZANIE NT) Description: Nazwa aplikacji powodującej błąd: QHActiveDefense.exe, wersja: 10.0.0.1210, sygnatura czasowa: 0x6710bc76 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 10.0.26100.3037, sygnatura czasowa: 0x392faaea Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000b0019 Identyfikator procesu błędu: 0x1260 Czas uruchomienia aplikacji powodującej błąd: 0x1db8513428d791e Faulting ścieżka aplikacji: C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe Faulting ścieżka modułu: C:\WINDOWS\SYSTEM32\ntdll.dll Report Id: 43054ad3-4a73-4784-95d4-a0d450c33f3e Faulting pełna nazwa pakietu: Faulting identyfikator aplikacji względnej dla pakietu: Error: (02/12/2025 04:29:16 PM) (Source: WorkflowAppControl) (EventID: 32767) (User: ) Description: Wait Workflow Commands request from device. Error: (02/12/2025 04:29:16 PM) (Source: WorkflowAppControl) (EventID: 32767) (User: ) Description: Start Broadcast Receiver Server... Error: (02/12/2025 04:29:16 PM) (Source: WorkflowAppControl) (EventID: 32767) (User: ) Description: Start Server... Error: (02/12/2025 04:29:16 PM) (Source: WorkflowAppControl) (EventID: 32767) (User: ) Description: Start Server... System errors: ============= Error: (02/25/2025 06:19:48 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: ZARZĄDZANIE NT) Description: The Secure Boot update failed to update a Secure Boot variable with error (-2147020471 = Funkcja bezpiecznego rozruchu nie jest włączona na tym komputerze.). For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931 Error: (02/25/2025 11:16:05 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: ZARZĄDZANIE NT) Description: The Secure Boot update failed to update a Secure Boot variable with error (-2147020471 = Funkcja bezpiecznego rozruchu nie jest włączona na tym komputerze.). For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931 Error: (02/25/2025 04:34:14 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: ZARZĄDZANIE NT) Description: The Secure Boot update failed to update a Secure Boot variable with error (-2147020471 = Funkcja bezpiecznego rozruchu nie jest włączona na tym komputerze.). For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931 Error: (02/25/2025 04:32:48 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: ZARZĄDZANIE NT) Description: The Secure Boot update failed to update a Secure Boot variable with error (-2147020471 = Funkcja bezpiecznego rozruchu nie jest włączona na tym komputerze.). For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931 Error: (02/24/2025 04:34:14 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: ZARZĄDZANIE NT) Description: The Secure Boot update failed to update a Secure Boot variable with error (-2147020471 = Funkcja bezpiecznego rozruchu nie jest włączona na tym komputerze.). For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931 Error: (02/24/2025 08:03:37 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: ZARZĄDZANIE NT) Description: The Secure Boot update failed to update a Secure Boot variable with error (-2147020471 = Funkcja bezpiecznego rozruchu nie jest włączona na tym komputerze.). For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931 Error: (02/22/2025 12:09:24 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa 360 Total Security niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (02/22/2025 11:19:30 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Wywołanie ScRegSetValueExW dla Description nie powiodło się i wystąpił następujący błąd: Odmowa dostępu.. CodeIntegrity: =============== Date: 2025-02-25 18:32:48 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\360\Total Security\safemon\SafeWrapper.dll that did not meet the Microsoft signing level requirements. Date: 2025-02-25 18:32:48 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements. ==================== Memory info =========================== BIOS: American Megatrends International, LLC. F1 12/07/2022 Motherboard: Gigabyte Technology Co., Ltd. B550M DS3H Processor: AMD Ryzen 5 5600G with Radeon Graphics Percentage of memory in use: 53% Total physical RAM: 14204.61 MB Available physical RAM: 6583.16 MB Total Virtual: 15100.61 MB Available Virtual: 5660.87 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:252.32 GB) (Free:135.92 GB) (Model: ADATA SX8200PNP) NTFS Drive d: (Dysk lokalny) (Fixed) (Total:700.15 GB) (Free:26.15 GB) (Model: ADATA SX8200PNP) NTFS \\?\Volume{750c97e0-b5d5-458f-8ea9-2802e6bec5d8}\ () (Fixed) (Total:0.69 GB) (Free:0.12 GB) NTFS \\?\Volume{0080b7bc-0ebb-4d0e-a75b-d3a991e05e4e}\ () (Fixed) (Total:0.6 GB) (Free:0.58 GB) NTFS \\?\Volume{ab48c165-3422-4b93-bdc8-d270d88e9c66}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32 ==================== MBR & Partition Table ==================== ========================================================== Disk: 0 (Protective MBR) (Size: 953.9 GB) (Disk ID: 00000000) Partition: GPT. ==================== End of Addition.txt =======================