Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 01-07-2025 Uruchomiony przez Marian (02-07-2025 17:16:09) Uruchomiony z C:\Users\Marian\OneDrive\Pulpit Microsoft Windows 10 Pro Wersja 22H2 19045.6036 (X64) (2024-11-15 18:39:22) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= (Załączenie wejścia w fixlist spowoduje jego usunięcie.) Administrator (S-1-5-21-3406296670-2374121424-106413850-500 - Administrator - Disabled) Gość (S-1-5-21-3406296670-2374121424-106413850-501 - Limited - Disabled) Konto domyślne (S-1-5-21-3406296670-2374121424-106413850-503 - Limited - Disabled) Marian (S-1-5-21-3406296670-2374121424-106413850-1001 - Administrator - Enabled) => C:\Users\Marian WDAGUtilityAccount (S-1-5-21-3406296670-2374121424-106413850-504 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 6.05.16.221 - Advanced Micro Devices, Inc.) AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.133 - Advanced Micro Devices, Inc.) Hidden AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.90 - Advanced Micro Devices, Inc.) Hidden AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 5.27.0.0 - Advanced Micro Devices, Inc.) Hidden AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 8.0.0.13 - Advanced Micro Devices, Inc.) Hidden AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.44 - Advanced Micro Devices, Inc.) Hidden AMD_Chipset_Drivers (HKLM-x32\...\{1ee7f179-da35-4723-a064-99a2a93c80be}) (Version: 6.05.16.221 - Advanced Micro Devices, Inc.) Hidden AntiCheatExpert (HKLM\...\AntiCheatExpert) (Version: 13.11.2401.255 - ) Armoury Crate Service (HKLM\...\Armoury Crate Service) (Version: 6.2.7 - ASUSTeK COMPUTER INC.) ASUS AIOFan HAL (HKLM\...\{EAE80DED-1A39-41C5-9F60-87CC947F6454}) (Version: 1.5.2.0 - ASUSTeK COMPUTER INC.) Hidden ASUS AIOFan HAL (HKLM-x32\...\{4726e749-b1f1-43ce-95e4-2972f1911f8c}) (Version: 1.5.2.0 - ASUSTeK COMPUTER INC.) Hidden ASUS Ambient HAL (HKLM\...\{445BE52E-2D73-48A8-9A26-9AF1DF723B2A}) (Version: 5.7.0.0 - ASUSTeK COMPUTER INC.) Hidden ASUS Ambient HAL (HKLM-x32\...\{a2655ba1-28b2-480c-9ba7-350b9a16d2f4}) (Version: 5.7.0.0 - ASUSTeK COMPUTER INC.) Hidden ASUS AURA Extension Card HAL (HKLM\...\{237E1CAC-1708-4940-AC34-DF15C079AB70}) (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden ASUS AURA Extension Card HAL (HKLM-x32\...\{49c4358d-054e-4cf1-9ec1-dca3487f304a}) (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden ASUS AURA Motherboard HAL (HKLM\...\{359B9A9D-A289-4962-BCE2-13EBFD50D532}) (Version: 1.6.1.2 - ASUSTeK COMPUTER INC.) Hidden ASUS AURA Motherboard HAL (HKLM-x32\...\{40dadfa2-acc5-4f75-9138-52616f20c493}) (Version: 1.6.1.2 - ASUSTeK COMPUTER INC.) Hidden ASUS Aura SDK (HKLM\...\{CF8E6E00-9C03-4440-81C0-21FACB921A6B}) (Version: 3.05.06 - ASUSTeK COMPUTER INC.) Hidden ASUS Framework Service (HKLM-x32\...\{339A6383-7862-46DA-8A9D-E84180EF9424}) (Version: 4.2.4.3 - ASUSTeK Computer Inc.) ASUS Motherboard (HKLM-x32\...\{93795eb8-bd86-4d4d-ab27-ff80f9467b37}) (Version: 4.08.04 - ASUSTek Computer Inc.) ASUS Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.107.137 - ASUSTeK Computer Inc.) Hidden Asystent aktualizacji do systemu Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.19041.2183 - Microsoft Corporation) AURA DRAM Component (HKLM\...\{86D4C8A2-DB22-4948-950D-28DD5145F91C}) (Version: 1.1.29 - ASUS) Hidden AURA DRAM Component (HKLM-x32\...\{f70a8a88-540d-485d-9aa8-001486fb050e}) (Version: 1.1.29 - ASUS) Hidden AURA lighting effect add-on (HKLM-x32\...\{1E2EA04B-FCA7-457E-B6F4-F33E1858E859}) (Version: 0.0.45 - ASUSTek COMPUTER INC.) AURA lighting effect add-on x64 (HKLM\...\{C5A4A164-4428-4931-B728-96EEF0FA3C44}) (Version: 0.0.45 - ASUSTek COMPUTER INC.) AURA Service (HKLM-x32\...\{4cb6f204-2fc1-4aee-96bb-64a3aa6dbbf1}) (Version: 3.08.18 - ASUSTeK COMPUTER INC.) AURA Service (HKLM-x32\...\{56EEEF7D-0AE3-401A-898B-581719D005AE}) (Version: 3.08.18 - ASUSTeK COMPUTER INC.) Hidden Bezprzewodowa karta sieciowa USB MERCUSYS (HKLM-x32\...\MERCUSYS_FLASH) (Version: 1.0.0.2 - MERCUSYS) CCleaner (HKLM\...\CCleaner) (Version: 6.36 - Piriform) Defraggler (HKLM\...\Defraggler) (Version: 2.22 - Piriform) ENE RGB HAL (HKLM\...\{E050E98C-5524-4AFB-9E53-97700BEF2C02}) (Version: 1.1.57.0 - Ene Tech.) Hidden ENE RGB HAL (HKLM-x32\...\{aed74e04-f110-4d4d-bcfc-e8e9ad5fc0aa}) (Version: 1.1.57.0 - Ene Tech.) Hidden ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden ENE_EHD_M2_HAL (HKLM-x32\...\{c1d017c2-8846-4000-9254-5689eccd462e}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden Epic Games Launcher (HKLM-x32\...\{A662430E-6319-4082-8D9F-ABC0359B892A}) (Version: 1.3.93.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Epic Online Services (HKLM-x32\...\{57A956AB-4BCC-45C6-9B40-957E4E125568}) (Version: 2.0.44.0 - Epic Games, Inc.) GameSDK Service (HKLM-x32\...\{021d69c3-d686-4a94-8fb5-fd1ee782fb14}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.) GameSDK Service (HKLM-x32\...\{7160DA8D-3F25-4F6E-ABC8-F693551D82FA}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.) Hidden Google Chrome (HKLM\...\{23EA1FC7-B8B0-3AD6-9F4E-5EB1CB232179}) (Version: 138.0.7204.97 - Google LLC) ISO to USB (HKLM-x32\...\{D08A30AC-A663-4EA8-8D81-B98E17F19F1C}_is1) (Version: - isotousb.com) Kingston AURA DRAM Component (HKLM\...\{965CDF5F-901C-476F-B3A8-7396701B1129}) (Version: 1.1.40 - KINGSTON COMPONENTS INC.) Hidden Kingston AURA DRAM Component (HKLM-x32\...\{2dcabc26-feae-4bc3-afc0-fba6e9f32af4}) (Version: 1.1.40 - KINGSTON COMPONENTS INC.) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Low Specs Experience Free v11.9.3 (HKLM-x32\...\{910C9965-81DD-4792-A668-1DD38147ECB2}}_is1) (Version: - Ragnotechpowered) Microsoft .NET Host - 6.0.36 (x64) (HKLM\...\{D6932D97-36F1-40B8-9CDC-CA8365B21000}) (Version: 48.144.23141 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 6.0.16 (x64) (HKLM\...\{B8537ACA-B210-4DF5-B928-E41CEB76723D}) (Version: 48.67.58427 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 6.0.36 (x64) (HKLM\...\{A9E32B25-994B-4856-A12B-0EBED3050410}) (Version: 48.144.23141 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 6.0.16 (x64) (HKLM\...\{C71E93D2-B8B4-4858-B2A1-4C967DBC1C5F}) (Version: 48.67.58427 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 6.0.16 (x64) (HKLM-x32\...\{2a8d0f2b-911b-4b58-8252-46b29e7a4590}) (Version: 6.0.16.32323 - Microsoft Corporation) Microsoft .NET Runtime - 6.0.36 (x64) (HKLM\...\{C912E33F-956A-4921-9F55-CC11AE8F09AF}) (Version: 48.144.23141 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 6.0.36 (x64) (HKLM-x32\...\{9d3fc73f-1cf4-412c-a1c9-d2ad28ccbd62}) (Version: 6.0.36.34214 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 138.0.3351.55 - Microsoft Corporation) Microsoft GameInput (HKLM-x32\...\{1F2B6AF3-C260-8666-5950-E3FEDBC851D6}) (Version: 10.1.22621.3036 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3406296670-2374121424-106413850-1001\...\OneDriveSetup.exe) (Version: 25.105.0601.0002 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34438 (HKLM-x32\...\{b49c10dd-4d54-45f8-ad13-fa25704456a4}) (Version: 14.42.34438.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.42.34438 (HKLM-x32\...\{ba10fda9-f731-441f-a999-000bbb7ceec2}) (Version: 14.42.34438.0 - Microsoft Corporation) Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34438 (HKLM\...\{E528AD94-12D7-42C4-91A3-908BE28E9BD2}) (Version: 14.42.34438 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34438 (HKLM\...\{2E15F519-4FDA-4834-B4EE-7EFCE7D8D4EE}) (Version: 14.42.34438 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Additional Runtime - 14.42.34438 (HKLM-x32\...\{A5592FEF-F948-4BA6-A066-8BBFC2DC7EE1}) (Version: 14.42.34438 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.42.34438 (HKLM-x32\...\{5D0C4511-3CA1-4FF8-A4BA-C0E1957ABEEA}) (Version: 14.42.34438 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM\...\{61D4736B-3325-4D4A-BD41-8BD206C6A86E}) (Version: 48.144.23186 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM-x32\...\{0532b8f2-12d7-43de-95fc-7b87006758a8}) (Version: 6.0.36.34217 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Nefarius Virtual Gamepad Emulation Bus Driver (HKLM\...\{93D91F60-7C94-4A79-863F-EA713D2EB3F3}) (Version: 1.17.333.0 - Nefarius Software Solutions e.U.) NVIDIA Oprogramowanie systemu PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.4.3.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.3.2 - NVIDIA Corporation) NVIDIA Sterownik graficzny 576.80 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 576.80 - NVIDIA Corporation) Opera GX Stable 119.0.5497.144 (HKU\S-1-5-21-3406296670-2374121424-106413850-1001\...\Opera GX 119.0.5497.144) (Version: 119.0.5497.144 - Opera Software) Patriot Viper DRAM RGB (HKLM\...\{1F9C282E-CCB4-4D8E-A5CB-7B74DFCD8C95}) (Version: 1.0.9.8 - Patriot Memory) Hidden Patriot Viper DRAM RGB (HKLM-x32\...\{55993b50-5bec-47c8-8b2b-1aecad927e48}) (Version: 1.0.9.8 - Patriot Memory) Hidden Patriot Viper M2 SSD RGB (HKLM\...\{8B4C0A3D-C135-4E1F-98D8-3926494B4D61}) (Version: 1.1.0.3 - Patriot Memory) Hidden Patriot Viper M2 SSD RGB (HKLM-x32\...\{6e0eff60-c502-43bb-8f56-360ca07e73d9}) (Version: 1.1.0.3 - Patriot Memory) Hidden PHISON HAL (HKLM\...\{966E33F0-6786-4B38-AA29-C1B3F6C1955D}) (Version: 1.0.9.0 - PHISON Electronics Corp.) Hidden PHISON HAL (HKLM-x32\...\{549da357-1b81-456b-83f2-dcc47c41dfff}) (Version: 1.0.9.0 - PHISON Electronics Corp.) Hidden PowerShell 7-x64 (HKLM\...\{E10310A5-05EB-4CD7-83D0-54ED9570708F}) (Version: 7.5.1.0 - Microsoft Corporation) Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 3.0.1.0 - Advanced Micro Devices, Inc.) Hidden Proton VPN (HKLM\...\Proton VPN_is1) (Version: 4.1.13 - Proton AG) Razer Synapse (HKLM-x32\...\Razer Synapse) (Version: 3.10.0430.042412 - Razer Inc.) Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9050.1 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.50.511.2021 - Realtek) REDlauncher (HKU\S-1-5-21-3406296670-2374121424-106413850-1001\...\{7258BA11-600C-430E-A759-27E2C691A335}-REDlauncher_is1) (Version: - CD Projekt RED) ROG Live Service (HKLM\...\{2D87BFB6-C184-4A59-9BBE-3E20CE797631}) (Version: 3.1.10.0 - ASUSTek COMPUTER INC.) SmoothWizard (HKLM-x32\...\SmoothWizard) (Version: 1.0.0.0 - SmoothWizard) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Środowisko uruchomieniowe Microsoft Edge WebView2 (HKLM-x32\...\Microsoft EdgeWebView) (Version: 137.0.3296.93 - Microsoft Corporation) Hidden UE4 Prerequisites (x64) (HKLM-x32\...\{4e242cc8-5e3c-4b08-9d55-dbc62ddd1208}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden Universal Holtek RGB DRAM (HKLM\...\{826388E4-E31F-4514-948B-3BB954FB3EAF}) (Version: 1.0.0.7 - PD) Hidden Universal Holtek RGB DRAM (HKLM-x32\...\{9a732423-e2f4-47d0-87ab-ef745c7dba69}) (Version: 1.0.0.7 - PD) Hidden Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation) WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden WD_BLACK AN1500 (HKLM-x32\...\{e42c5874-37b0-4977-9e8d-70bf006e1f76}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden WinRAR 7.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.01.0 - win.rar GmbH) Packages: ========= Armoury Crate -> C:\Program Files\WindowsApps\B9ECED6F.ArmouryCrate_6.2.7.0_x64__qmba6cd70vzyy [2025-06-26] (ASUSTeK COMPUTER INC.) Dodatek Aparat multimediów dla aplikacji Zdjęcia -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2023-05-12] (Microsoft Corporation) DTS Custom for Asus -> C:\Program Files\WindowsApps\DTSInc.DTSCustomforAsus_2.1.1.0_x64__t5j2fzbtdg37r [2024-11-15] (DTS, Inc.) Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_55.20331.573.0_x64__8wekyb3d8bbwe [2025-05-11] (Microsoft Corporation) Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_7.0.8.0_neutral__mcm4njqhnhss8 [2024-12-30] (Netflix, Inc.) NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.968.0_x64__56jybvy8sckqj [2025-06-29] (NVIDIA Corp.) Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.19.234.0_x64__dt26b99r8h8gj [2024-09-01] (Realtek Semiconductor Corp) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-3406296670-2374121424-106413850-1001_Classes\CLSID\{50726f74-6f6e-2e56-504e-000000000000}\localserver32 -> C:\Program Files\Proton\VPN\v4.1.13\ProtonVPN.Client.exe (Proton AG -> ProtonVPN) ContextMenuHandlers1: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2020-08-03] (Piriform Software Ltd -> Piriform Software Ltd) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2024-05-12] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2024-05-12] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0ce7c82068b0dff7\nvshext.dll [2025-06-13] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2020-08-03] (Piriform Software Ltd -> Piriform Software Ltd) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2024-05-12] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2024-05-12] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (filtrowane) ==================== ==================== Skróty & WMI ======================== ==================== Załadowane moduły (filtrowane) ============= 2025-06-26 22:46 - 2025-02-03 17:17 - 000349184 _____ () [Brak podpisu cyfrowego] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\@img\sharp-win32-ia32\lib\sharp-win32-ia32.node ==================== Alternate Data Streams (filtrowane) ======== (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\ProgramData\DP45977C.lfl:677104FCAA [2594] AlternateDataStreams: C:\ProgramData\sldh.dat:136096DD5B [2594] AlternateDataStreams: C:\ProgramData\sldh.dat:A18AAFCFAA [2594] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [9740] ==================== Tryb awaryjny (filtrowane) ================== ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer (filtrowane) ============= HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2019-12-07 11:14 - 2025-05-13 17:06 - 000000000 _____ C:\WINDOWS\system32\drivers\etc\hosts 2023-09-23 09:29 - 2023-09-23 09:29 - 000000443 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics ==================== Network =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) DNS Servers: 8.8.8.8 - 8.8.4.4 Zapora systemu Windows [funkcja włączona] Network Binding: ============= Ethernet 2: Realtek PCIe GbE Family Controller #2 -> rt640x64.sys steamxboxndi: Steam Xbox Controller Enhanced Features Driver ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Razer\ChromaBroadcast\bin;C:\Program Files\Razer\ChromaBroadcast\bin;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SystemRoot%\System32\WindowsPowerShell\v1.0\;%SystemRoot%\System32\OpenSSH\;;C:\Program Files\dotnet\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SystemRoot%\System32\WindowsPowerShell\v1.0\;%SystemRoot%\System32\OpenSSH\;C:\Program Files\NVIDIA Corporation\NVIDIA app\NvDLISR;C:\Program Files\PowerShell\7\;%SystemRoot%\system32\config\systemprofile\AppData\Local\Microsoft\WindowsApps;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common HKU\S-1-5-21-3406296670-2374121424-106413850-1001\Control Panel\Desktop\\Wallpaper -> c:\users\marian\appdata\local\packages\microsoft.windows.photos_8wekyb3d8bbwe\localstate\photosappbackground\20230520_1501153.jpg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) HKU\S-1-5-21-3406296670-2374121424-106413850-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 0) HKU\S-1-5-21-3406296670-2374121424-106413850-1001\SOFTWARE\Microsoft\Windows Security Health\State => (AppAndBrowser_StoreAppsSmartScreenOff: 0) HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 4) (TamperProtectionSource: 2) HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0) HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|F:\Steam\steam.exe HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|F:\ HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\ HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.20.1001.0_x64__8wekyb3d8bbwe ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) MSCONFIG\Services: CCleanerPerformanceOptimizerService => 2 HKLM\...\StartupApproved\Run: => "SecurityHealth" HKLM\...\StartupApproved\Run: => "RTHDVCPL" HKLM\...\StartupApproved\Run32: => "RazerCortex" HKLM\...\StartupApproved\Run32: => "SecurityHealth" HKU\S-1-5-21-3406296670-2374121424-106413850-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3406296670-2374121424-106413850-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_DE496D050D9179B255934D95785E0207" HKU\S-1-5-21-3406296670-2374121424-106413850-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-3406296670-2374121424-106413850-1001\...\StartupApproved\Run: => "Opera GX Browser Assistant" HKU\S-1-5-21-3406296670-2374121424-106413850-1001\...\StartupApproved\Run: => "ProtonVPN" ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [UDP Query User{1868021D-B014-4C8A-B3A6-5F9D26122616}D:\fortnite\fortnite\fortnite\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\fortnite\fortnite\fortnite\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{3458F9FC-BBE6-4B64-9C0B-37BBC2C7FDC9}D:\fortnite\fortnite\fortnite\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\fortnite\fortnite\fortnite\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{E69B36F8-29EB-405A-99C3-FDD166C5A2A9}D:\fortnite\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\fortnite\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{B3C48E4C-A7DE-44E6-B4B2-CAD537971EC7}D:\fortnite\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\fortnite\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{C916DA37-F824-4405-A1E1-5D9005CFC846}D:\fortnite\fortnite\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\fortnite\fortnite\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{83A54BB5-7E8B-47D9-B292-9FDCAD35D0A0}D:\fortnite\fortnite\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\fortnite\fortnite\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{C8E9994D-BB09-47D2-947F-EA5333218DDE}C:\users\marian\appdata\local\programs\opera gx\opera.exe] => (Allow) C:\users\marian\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [TCP Query User{B43AF4BA-F8F6-46B9-9BDB-5324EC8DBC0E}C:\users\marian\appdata\local\programs\opera gx\opera.exe] => (Allow) C:\users\marian\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [UDP Query User{C68B9026-72FB-4CD8-BA2A-89D9A31C1251}D:\steamlibrary\steamapps\common\guilty gear xrd -revelator-\binaries\win32\guiltygearxrd.exe] => (Allow) D:\steamlibrary\steamapps\common\guilty gear xrd -revelator-\binaries\win32\guiltygearxrd.exe (Epic Games, Inc.) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{370A2171-A188-4133-9179-A8A7FD8918C7}D:\steamlibrary\steamapps\common\guilty gear xrd -revelator-\binaries\win32\guiltygearxrd.exe] => (Allow) D:\steamlibrary\steamapps\common\guilty gear xrd -revelator-\binaries\win32\guiltygearxrd.exe (Epic Games, Inc.) [Brak podpisu cyfrowego] FirewallRules: [{501551FB-D8EA-46A0-951F-0EF629722E5C}] => (Allow) D:\SteamLibrary\steamapps\common\Sword of Convallaria\Launcher.exe (X.D. Network Inc. -> ) FirewallRules: [{9AC5CBAD-D21A-4DD9-9721-FBEA21A3FA26}] => (Allow) D:\SteamLibrary\steamapps\common\Sword of Convallaria\Launcher.exe (X.D. Network Inc. -> ) FirewallRules: [{A904FBE4-A2F7-4313-97D2-1F571A71BC39}] => (Allow) D:\SteamLibrary\steamapps\common\Final Fantasy IV\FF4_Launcher.exe (SQUARE ENIX CO., LTD. -> SQUARE ENIX CO., LTD.) FirewallRules: [{F44F2E02-CD36-444C-B65A-9B82305F7DE4}] => (Allow) D:\SteamLibrary\steamapps\common\Final Fantasy IV\FF4_Launcher.exe (SQUARE ENIX CO., LTD. -> SQUARE ENIX CO., LTD.) FirewallRules: [UDP Query User{3641E282-A986-4C85-A846-B6F0C6E5E379}C:\users\marian\appdata\local\programs\opera gx\opera.exe] => (Block) C:\users\marian\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [TCP Query User{065A2F7F-69BD-4932-8A53-5339DC9BF46D}C:\users\marian\appdata\local\programs\opera gx\opera.exe] => (Block) C:\users\marian\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [{8FBDEE8D-D599-44F0-84F6-6D0687779021}] => (Allow) D:\SteamLibrary\steamapps\common\Ara Fell\RPG_RT.exe () [Brak podpisu cyfrowego] FirewallRules: [{AC259BC6-8EA2-4FD3-A514-BBD582A20F0F}] => (Allow) D:\SteamLibrary\steamapps\common\Ara Fell\RPG_RT.exe () [Brak podpisu cyfrowego] FirewallRules: [{EBC712E2-71D8-4EF1-ACA9-D0490E1AA6B1}] => (Allow) D:\SteamLibrary\steamapps\common\Oblivion Override\Oblivion Override.exe () [Brak podpisu cyfrowego] FirewallRules: [{CDCCCC64-C491-430E-8856-0D037ACD5402}] => (Allow) D:\SteamLibrary\steamapps\common\Oblivion Override\Oblivion Override.exe () [Brak podpisu cyfrowego] FirewallRules: [{E36AECA1-55B8-4DEE-AF53-4B5059CD9D92}] => (Allow) D:\SteamLibrary\steamapps\common\Timespinner\Timespinner.exe (Microsoft) [Brak podpisu cyfrowego] FirewallRules: [{59FFDB72-F908-426B-BB28-A147375AB7BB}] => (Allow) D:\SteamLibrary\steamapps\common\Timespinner\Timespinner.exe (Microsoft) [Brak podpisu cyfrowego] FirewallRules: [{9C692231-24BD-4F66-B77C-5A1D914A5D25}] => (Allow) D:\SteamLibrary\steamapps\common\Chrono Trigger\Chrono Trigger.exe (SQUARE ENIX CO., LTD. -> Square Enix) FirewallRules: [{7F0B97AD-1597-4AF4-8E75-9B914BE43507}] => (Allow) D:\SteamLibrary\steamapps\common\Chrono Trigger\Chrono Trigger.exe (SQUARE ENIX CO., LTD. -> Square Enix) FirewallRules: [{650FCC4B-7F20-4C7F-A0D7-01B2EECBFA70}] => (Allow) D:\SteamLibrary\steamapps\common\CrossCode\CrossCode.exe (The NW.js Community) [Brak podpisu cyfrowego] FirewallRules: [{38D151ED-358E-4925-86FF-95E73EA24DCE}] => (Allow) D:\SteamLibrary\steamapps\common\CrossCode\CrossCode.exe (The NW.js Community) [Brak podpisu cyfrowego] FirewallRules: [{C521D15F-666A-438B-8E89-AB786DCEB710}] => (Allow) D:\SteamLibrary\steamapps\common\Gravity Circuit\win64_steam\GravityCircuit.exe () [Brak podpisu cyfrowego] FirewallRules: [{17CC50BE-D87C-4C6D-97FF-4BCA4B60CA7F}] => (Allow) D:\SteamLibrary\steamapps\common\Gravity Circuit\win64_steam\GravityCircuit.exe () [Brak podpisu cyfrowego] FirewallRules: [{41D9BAE1-1F56-4E4F-9196-CD1D63B0EA32}] => (Allow) C:\Users\Marian\AppData\Local\Packages\B9ECED6F.ArmouryCrate_qmba6cd70vzyy\LocalState\GridUpdateFile\ASUSGCDriverUpdateClient.exe (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) FirewallRules: [{D8254D7E-6F53-48B2-B20F-2F441F02712C}] => (Allow) D:\SteamLibrary\steamapps\common\Castlevania Advance Collection\game.exe () [Brak podpisu cyfrowego] FirewallRules: [{CF433711-5647-4EA6-B400-1B24A8B594D9}] => (Allow) D:\SteamLibrary\steamapps\common\Castlevania Advance Collection\game.exe () [Brak podpisu cyfrowego] FirewallRules: [{7AD63A58-6497-48F9-A3FB-1BE29AD006D5}] => (Allow) F:\Steam\steamapps\common\Among Us\Among Us.exe => Brak pliku FirewallRules: [{006405FB-7A3F-40A2-8B78-543787E09474}] => (Allow) F:\Steam\steamapps\common\Among Us\Among Us.exe => Brak pliku FirewallRules: [{25F8552F-3F1B-494C-BBB0-55972D5FA91E}] => (Allow) F:\Steam\steamapps\common\Lazors\Lazors.exe => Brak pliku FirewallRules: [{67155616-A422-46EE-B35C-049EEF5CAEFE}] => (Allow) F:\Steam\steamapps\common\Lazors\Lazors.exe => Brak pliku FirewallRules: [{795A90F4-3F04-4E89-AB98-A379AACE65E5}] => (Allow) F:\Steam\bin\cef\cef.win7\steamwebhelper.exe => Brak pliku FirewallRules: [{1DE88567-A092-483D-AD3E-3E44E5242C83}] => (Allow) F:\Steam\bin\cef\cef.win7\steamwebhelper.exe => Brak pliku FirewallRules: [{435EEAB7-D6D1-4329-BB11-DB16B7EBD0E1}] => (Allow) F:\Steam\steamapps\common\Stumble Guys\Stumble Guys.exe => Brak pliku FirewallRules: [{AE48A6A9-BB99-436E-BCD5-0A0DC90DBCAD}] => (Allow) F:\Steam\steamapps\common\Stumble Guys\Stumble Guys.exe => Brak pliku FirewallRules: [{3A4DFC9C-5485-4E1F-97C4-676E0297BE79}] => (Allow) F:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => Brak pliku FirewallRules: [{0CCA5061-7923-4D5F-BE1E-1D85592D75D6}] => (Allow) F:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => Brak pliku FirewallRules: [{59137DC3-84C0-4788-A26A-6E2112B9E8BE}] => (Allow) F:\Steam\Steam.exe => Brak pliku FirewallRules: [{2EBAEA3E-35E7-42AE-B5B8-89CABED48ED8}] => (Allow) F:\Steam\Steam.exe => Brak pliku FirewallRules: [{B5DB1960-3A6A-4F9D-9F64-79D9432DB8C9}] => (Allow) D:\SteamLibrary\steamapps\common\The Witcher 3\REDprelauncher.exe (GOG sp. z o.o -> GOG.com) FirewallRules: [{FE5154AD-D3B4-436D-ADA6-3CA1A5E7111D}] => (Allow) D:\SteamLibrary\steamapps\common\The Witcher 3\REDprelauncher.exe (GOG sp. z o.o -> GOG.com) FirewallRules: [{21F69097-1649-4ABB-BB6F-35BC389EEEF0}] => (Allow) C:\Users\Marian\AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe => Brak pliku FirewallRules: [{AF38C788-5BFC-47D7-8D59-418EB5634E9F}] => (Allow) C:\Users\Marian\AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe => Brak pliku FirewallRules: [{A9A11B79-5F80-46A2-88E9-989607195113}] => (Allow) C:\Program Files\ASUS\AacAmbientHal\AacAmbientLighting.exe (ASUSTeK COMPUTER INC. -> ) FirewallRules: [{35DFFAA5-73C6-4114-AE45-D55735EC20A1}] => (Allow) D:\program files\asus\aacambienthal\aacambientlighting.exe => Brak pliku FirewallRules: [TCP Query User{7998E0DC-3837-4FBD-AC7E-88885416C9C1}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe => Brak pliku FirewallRules: [UDP Query User{DA528104-4224-4639-A471-ECD8B65CC537}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe => Brak pliku FirewallRules: [{491AC2C1-5893-4CEF-AB06-670DFDAD234B}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\137.0.3296.93\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{45E37CBD-3357-4C7E-99D3-F40EDBAACED2}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe => Brak pliku FirewallRules: [{C8A71B12-86D9-4144-BBFD-CF468E11778D}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe => Brak pliku FirewallRules: [{0A14BAAF-2B6D-4825-ACEA-3B4D0E492567}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) FirewallRules: [{44E7E9F2-C86B-4119-AB9B-3AA1048A1F0A}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) FirewallRules: [{34DEBF76-3DEE-460C-A70A-E9C64ACB38E9}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) FirewallRules: [{FCE9EBBF-1DE7-4829-A738-429E1AF1EE16}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) FirewallRules: [{F3ECEB62-4EAB-43AD-BF66-2A24AD06895B}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryHtmlDebugServer.exe (ASUSTeK COMPUTER INC. -> ASUS) FirewallRules: [{6CCCCDE6-3AC3-4EE6-988B-CC9AF7648819}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{F726501A-7DE4-4F40-9859-E4728C996798}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{B63CB1CC-5510-49D6-85AE-84D5CE1BC4D9}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{6F4D92C2-5BB8-4139-B18C-A3E9711AF637}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{B2E58B8E-3F80-4942-A384-BFAF2E36DFC2}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{253845D1-5E6B-4684-9219-A08EB6B49BD6}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{9C2857DC-39D4-4A38-BAD8-3440A8AB74B8}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{33EC4B78-2D7B-4486-BFCA-4D3AE73E25C0}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{198FA0F3-521C-48C6-ABDA-2043F7B4DA96}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Punkty Przywracania systemu ========================= ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (07/02/2025 04:36:39 PM) (Source: CertEnroll) (EventID: 86) (User: ZARZĄDZANIE NT) Description: Inicjowanie rejestracji certyfikatu SCEP dla elementu WORKGROUP\DESKTOP-IFGUPES$ za pośrednictwem elementu https://AMD-KeyId-52fb59e29aa83a962fb9eef0fe5b4811de6b751e.microsoftaik.azure.net/templates/Aik/scep nie powiodło się: GetCACaps GetCACaps: Not Found {"Message":"The authority \"amd-keyid-52fb59e29aa83a962fb9eef0fe5b4811de6b751e.microsoftaik.azure.net\" does not exist."} HTTP/1.1 404 Not Found Date: Wed, 02 Jul 2025 14:36:34 GMT Content-Length: 121 Content-Type: application/json; charset=utf-8 X-Content-Type-Options: nosniff Strict-Transport-Security: max-age=31536000;includeSubDomains x-ms-request-id: 492b091d-f813-4f23-9f99-c049b3ae43ed Metoda: GET(453ms) Etap: GetCACaps Nieznaleziony (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND) Error: (07/02/2025 02:02:06 AM) (Source: CertEnroll) (EventID: 86) (User: ZARZĄDZANIE NT) Description: Inicjowanie rejestracji certyfikatu SCEP dla elementu WORKGROUP\DESKTOP-IFGUPES$ za pośrednictwem elementu https://AMD-KeyId-52fb59e29aa83a962fb9eef0fe5b4811de6b751e.microsoftaik.azure.net/templates/Aik/scep nie powiodło się: GetCACaps GetCACaps: Not Found {"Message":"The authority \"amd-keyid-52fb59e29aa83a962fb9eef0fe5b4811de6b751e.microsoftaik.azure.net\" does not exist."} HTTP/1.1 404 Not Found Date: Wed, 02 Jul 2025 00:02:02 GMT Content-Length: 121 Content-Type: application/json; charset=utf-8 X-Content-Type-Options: nosniff Strict-Transport-Security: max-age=31536000;includeSubDomains x-ms-request-id: 210fb893-450c-41aa-b717-60a0961177a9 Metoda: GET(360ms) Etap: GetCACaps Nieznaleziony (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND) Error: (07/01/2025 04:56:01 PM) (Source: CertEnroll) (EventID: 86) (User: ZARZĄDZANIE NT) Description: Inicjowanie rejestracji certyfikatu SCEP dla elementu WORKGROUP\DESKTOP-IFGUPES$ za pośrednictwem elementu https://AMD-KeyId-52fb59e29aa83a962fb9eef0fe5b4811de6b751e.microsoftaik.azure.net/templates/Aik/scep nie powiodło się: GetCACaps GetCACaps: Not Found {"Message":"The authority \"amd-keyid-52fb59e29aa83a962fb9eef0fe5b4811de6b751e.microsoftaik.azure.net\" does not exist."} HTTP/1.1 404 Not Found Date: Tue, 01 Jul 2025 14:55:56 GMT Content-Length: 121 Content-Type: application/json; charset=utf-8 X-Content-Type-Options: nosniff Strict-Transport-Security: max-age=31536000;includeSubDomains x-ms-request-id: c9d12d89-d0b7-4965-9d9d-613a5a05915a Metoda: GET(531ms) Etap: GetCACaps Nieznaleziony (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND) Error: (07/01/2025 06:03:48 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance. hr = 0x8007045b, Trwa proces zamykania systemu.. Error: (07/01/2025 06:03:48 AM) (Source: VSS) (EventID: 13) (User: ) Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} i nazwą CEventSystem. [0x8007045b, Trwa proces zamykania systemu.] Error: (07/01/2025 06:03:48 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance. hr = 0x8007045b, Trwa proces zamykania systemu.. Error: (07/01/2025 06:03:48 AM) (Source: VSS) (EventID: 13) (User: ) Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} i nazwą CEventSystem. [0x8007045b, Trwa proces zamykania systemu.] Error: (06/30/2025 07:12:40 PM) (Source: CertEnroll) (EventID: 86) (User: ZARZĄDZANIE NT) Description: Inicjowanie rejestracji certyfikatu SCEP dla elementu WORKGROUP\DESKTOP-IFGUPES$ za pośrednictwem elementu https://AMD-KeyId-52fb59e29aa83a962fb9eef0fe5b4811de6b751e.microsoftaik.azure.net/templates/Aik/scep nie powiodło się: GetCACaps GetCACaps: Not Found {"Message":"The authority \"amd-keyid-52fb59e29aa83a962fb9eef0fe5b4811de6b751e.microsoftaik.azure.net\" does not exist."} HTTP/1.1 404 Not Found Date: Mon, 30 Jun 2025 17:12:36 GMT Content-Length: 121 Content-Type: application/json; charset=utf-8 X-Content-Type-Options: nosniff Strict-Transport-Security: max-age=31536000;includeSubDomains x-ms-request-id: 01f83ad3-8c80-4379-a5e9-29874c555b7f Metoda: GET(484ms) Etap: GetCACaps Nieznaleziony (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND) Dziennik System: ============= Error: (07/02/2025 04:38:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa Google Update (gupdate) z powodu następującego błędu: Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. Error: (07/02/2025 04:38:32 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Usługa Google Update (gupdate). Error: (07/02/2025 04:36:30 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa vmictimesync zależy od usługi vmgid, której nie można uruchomić z powodu następującego błędu: Urządzenie dołączone do komputera nie działa. Error: (07/02/2025 04:36:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi vmgid z powodu następującego błędu: Urządzenie dołączone do komputera nie działa. Error: (07/02/2025 02:04:00 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa Google Update (gupdate) z powodu następującego błędu: Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. Error: (07/02/2025 02:04:00 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Usługa Google Update (gupdate). Error: (07/02/2025 02:01:58 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa vmictimesync zależy od usługi vmgid, której nie można uruchomić z powodu następującego błędu: Urządzenie dołączone do komputera nie działa. Error: (07/02/2025 02:01:58 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi vmgid z powodu następującego błędu: Urządzenie dołączone do komputera nie działa. Windows Defender: ================ Date: 2025-07-02 16:36:56 Description: Produkt Program antywirusowy Microsoft Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie. Aby uzyskać więcej informacji, zobacz: https://go.microsoft.com/fwlink/?linkid=37020&name=VirTool:Win32/DefenderTamperingRestore&threatid=2147741622&enterprise=0 Nazwa: VirTool:Win32/DefenderTamperingRestore Identyfikator: 2147741622 Ważność: Poważny Kategoria: Narzędzie Ścieżka: regkeyvalue:_hklm\software\policies\microsoft\windows defender\real-time protection\\DisableBehaviorMonitoring Pochodzenie wykrycia: Nieznane Typ wykrycia: Konkretne Źródło wykrycia: System Użytkownik: ZARZĄDZANIE NT\SYSTEM Nazwa procesu: Unknown Wersja analizy zabezpieczeń: AV: 1.431.339.0, AS: 1.431.339.0, NIS: 0.0.0.0 Wersja aparatu: AM: 1.1.25050.6, NIS: 0.0.0.0 Date: 2025-07-02 02:02:23 Description: Produkt Program antywirusowy Microsoft Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie. Aby uzyskać więcej informacji, zobacz: https://go.microsoft.com/fwlink/?linkid=37020&name=VirTool:Win32/DefenderTamperingRestore&threatid=2147741622&enterprise=0 Nazwa: VirTool:Win32/DefenderTamperingRestore Identyfikator: 2147741622 Ważność: Poważny Kategoria: Narzędzie Ścieżka: regkeyvalue:_hklm\software\policies\microsoft\windows defender\real-time protection\\DisableBehaviorMonitoring Pochodzenie wykrycia: Nieznane Typ wykrycia: Konkretne Źródło wykrycia: System Użytkownik: ZARZĄDZANIE NT\SYSTEM Nazwa procesu: Unknown Wersja analizy zabezpieczeń: AV: 1.431.327.0, AS: 1.431.327.0, NIS: 0.0.0.0 Wersja aparatu: AM: 1.1.25050.6, NIS: 0.0.0.0 Date: 2025-07-01 16:56:19 Description: Produkt Program antywirusowy Microsoft Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie. Aby uzyskać więcej informacji, zobacz: https://go.microsoft.com/fwlink/?linkid=37020&name=VirTool:Win32/DefenderTamperingRestore&threatid=2147741622&enterprise=0 Nazwa: VirTool:Win32/DefenderTamperingRestore Identyfikator: 2147741622 Ważność: Poważny Kategoria: Narzędzie Ścieżka: regkeyvalue:_hklm\software\policies\microsoft\windows defender\real-time protection\\DisableBehaviorMonitoring Pochodzenie wykrycia: Nieznane Typ wykrycia: Konkretne Źródło wykrycia: System Użytkownik: ZARZĄDZANIE NT\SYSTEM Nazwa procesu: Unknown Wersja analizy zabezpieczeń: AV: 1.431.310.0, AS: 1.431.310.0, NIS: 0.0.0.0 Wersja aparatu: AM: 1.1.25050.6, NIS: 0.0.0.0 Date: 2025-06-30 19:13:12 Description: Produkt Program antywirusowy Microsoft Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie. Aby uzyskać więcej informacji, zobacz: https://go.microsoft.com/fwlink/?linkid=37020&name=VirTool:Win32/DefenderTamperingRestore&threatid=2147741622&enterprise=0 Nazwa: VirTool:Win32/DefenderTamperingRestore Identyfikator: 2147741622 Ważność: Poważny Kategoria: Narzędzie Ścieżka: regkeyvalue:_hklm\software\policies\microsoft\windows defender\real-time protection\\DisableBehaviorMonitoring Pochodzenie wykrycia: Nieznane Typ wykrycia: Konkretne Źródło wykrycia: System Użytkownik: ZARZĄDZANIE NT\SYSTEM Nazwa procesu: Unknown Wersja analizy zabezpieczeń: AV: 1.431.310.0, AS: 1.431.310.0, NIS: 0.0.0.0 Wersja aparatu: AM: 1.1.25050.6, NIS: 0.0.0.0 Date: 2025-06-30 16:51:51 Description: Produkt Program antywirusowy Microsoft Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie. Aby uzyskać więcej informacji, zobacz: https://go.microsoft.com/fwlink/?linkid=37020&name=VirTool:Win32/DefenderTamperingRestore&threatid=2147741622&enterprise=0 Nazwa: VirTool:Win32/DefenderTamperingRestore Identyfikator: 2147741622 Ważność: Poważny Kategoria: Narzędzie Ścieżka: regkeyvalue:_hklm\software\policies\microsoft\windows defender\real-time protection\\DisableBehaviorMonitoring Pochodzenie wykrycia: Nieznane Typ wykrycia: Konkretne Źródło wykrycia: System Użytkownik: ZARZĄDZANIE NT\SYSTEM Nazwa procesu: Unknown Wersja analizy zabezpieczeń: AV: 1.431.294.0, AS: 1.431.294.0, NIS: 0.0.0.0 Wersja aparatu: AM: 1.1.25050.6, NIS: 0.0.0.0 Event[0]: Date: 2025-06-29 14:22:22 Description: Agent ochrony w czasie rzeczywistym produktu Program antywirusowy Microsoft Defender wykrył błąd i jego uruchomienie nie powiodło się. Funkcja: Przy dostępie Kod błędu: 0x8007043c Opis błędu: Tej usługi nie można uruchomić w trybie awaryjnym Przyczyna: Analiza zabezpieczeń dla oprogramowania chroniącego przed złośliwym kodem przestała działać z nieznanej przyczyny. W niektórych przypadkach problem można rozwiązać, uruchamiając ponownie usługę. Date: 2025-06-27 16:51:48 Description: Agent ochrony w czasie rzeczywistym produktu Program antywirusowy Microsoft Defender wykrył błąd i jego uruchomienie nie powiodło się. Funkcja: Przy dostępie Kod błędu: 0x8007043c Opis błędu: Tej usługi nie można uruchomić w trybie awaryjnym Przyczyna: Analiza zabezpieczeń dla oprogramowania chroniącego przed złośliwym kodem przestała działać z nieznanej przyczyny. W niektórych przypadkach problem można rozwiązać, uruchamiając ponownie usługę. Date: 2025-06-26 19:22:49 Description: Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń i podejmie próbę powrotu do poprzedniej wersji. Analiza zabezpieczeń objęta próbą: Bieżące Kod błędu: 0x80501102 Opis błędu: Wystąpił nieoczekiwany problem. Zainstaluj dostępne aktualizacje, a następnie spróbuj ponownie uruchomić program. Aby uzyskać informacje na temat instalowania aktualizacji, zobacz Pomoc i obsługę techniczną. Wersja analizy zabezpieczeń: 1.431.235.0;1.431.235.0 Wersja aparatu: 1.1.25050.6 ==================== Statystyki pamięci =========================== BIOS: American Megatrends Inc. 4631 01/14/2025 Płyta główna: ASUSTeK COMPUTER INC. TUF GAMING B450M-PLUS II Procesor: AMD Ryzen 5 4500 6-Core Processor Procent pamięci w użyciu: 36% Całkowita pamięć fizyczna: 16179.53 MB Dostępna pamięć fizyczna: 10308.04 MB Całkowita pamięć wirtualna: 26419.53 MB Dostępna pamięć wirtualna: 18942.45 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:140.14 GB) (Free:64.74 GB) (Model: SSDPR-CX400-256-G2) NTFS Drive d: () (Fixed) (Total:476.92 GB) (Free:328.88 GB) (Model: SSDPR-CX400-512-G2) NTFS Drive e: (Zastrzeżone przez system) (Fixed) (Total:0.05 GB) (Free:0.04 GB) (Model: SSDPR-CX400-256-G2) NTFS \\?\Volume{1b2515ed-082c-11f0-8308-c87f54708172}\ () (Fixed) (Total:0.53 GB) (Free:0.04 GB) NTFS \\?\Volume{1b2515ec-082c-11f0-8308-c87f54708172}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (Protective MBR) (Size: 476.9 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 1 (Size: 238.5 GB) (Disk ID: 73E441A1) Partition: GPT. ==================== Koniec Addition.txt =======================