Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 23-02-2023 Uruchomiony przez przyb (24-02-2023 10:19:51) Uruchomiony z C:\Users\przyb\Downloads Microsoft Windows 10 Pro Wersja 22H2 19045.2673 (X64) (2023-02-21 08:29:39) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= (Załączenie wejścia w fixlist spowoduje jego usunięcie.) Administrator (S-1-5-21-3411141071-3349320218-1670478341-500 - Administrator - Disabled) Gość (S-1-5-21-3411141071-3349320218-1670478341-501 - Limited - Disabled) Konto domyślne (S-1-5-21-3411141071-3349320218-1670478341-503 - Limited - Disabled) przyb (S-1-5-21-3411141071-3349320218-1670478341-1001 - Administrator - Enabled) => C:\Users\przyb WDAGUtilityAccount (S-1-5-21-3411141071-3349320218-1670478341-504 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: F-Secure (Enabled - Up to date) {67E93A7F-FDB2-39E8-E991-EA71E0926EF7} AV: ESET Security (Enabled - Up to date) {DF8BEACB-94C9-218A-73AD-A78362A8C516} AV: Norton AntiVirus (Enabled - Up to date) {A2708B76-6835-6565-CB96-694212954A75} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Kaspersky Free (Enabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23} AV: Panda Dome (Enabled - Up to date) {E18DAE3C-0817-EA74-9F24-3E92157CCE76} AV: Norton 360 (Enabled - Up to date) {9E3FD331-C4C2-7AC4-0537-131EEF1B1F8A} FW: Norton Security (Enabled) {9A4B0A53-225A-643D-E0C9-C077EC460D0E} FW: Norton 360 (Enabled) {A6045214-8EAD-7B9C-2E68-BA2B11C858F1} FW: ESET Zapora (Disabled) {E7B06BEE-DEA6-20D2-58F2-0EB69C7B826D} FW: Panda Firewall (Enabled) {D9B62F19-4278-EB2C-B47B-97A7EBAF890D} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) Adobe Photoshop 2023 (HKLM-x32\...\PHSP_24_1_1) (Version: 24.1.1.238 - Adobe Inc.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Call of Duty (HKLM-x32\...\Call of Duty) (Version: - Blizzard Entertainment) CrystalDiskInfo 8.17.14 (HKLM\...\CrystalDiskInfo_is1) (Version: 8.17.14 - Crystal Dew World) EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 12.120.0.5377 - Electronic Arts) Hidden EA app (HKLM-x32\...\{43e2863d-7b9d-458b-8a5a-b3d963699de5}) (Version: 12.120.0.5377 - Electronic Arts) EaseUS Partition Master (HKLM\...\EaseUS Partition Master_is1) (Version: - EaseUS) FIFA 23 (HKLM-x32\...\{B2A14ADC-C2DC-432C-BA7E-FA59282364AB}) (Version: 1.0.79.44776 - Electronic Arts) Java 8 Update 361 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180361F0}) (Version: 8.0.3610.9 - Oracle Corporation) MediaInfo 19.09 (HKLM\...\MediaInfo) (Version: 19.09 - MediaArea.net) Microsoft .NET Host - 6.0.11 (x64) (HKLM\...\{B92B890A-04F2-4880-BA20-20D4364FB263}) (Version: 48.47.50420 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 6.0.11 (x64) (HKLM\...\{5E63E49B-C88C-46C5-855C-A7B07C11CDC8}) (Version: 48.47.50420 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 6.0.11 (x64) (HKLM\...\{C3DD1448-513A-4DB8-978D-6991562EA63D}) (Version: 48.47.50420 - Microsoft Corporation) Hidden Microsoft ASP.NET Core 6.0.11 Shared Framework (x64) (HKLM\...\{4A34BC3F-E0C3-3BFF-9379-4F3F611AC617}) (Version: 6.0.11.22523 - Microsoft Corporation) Hidden Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 110.0.1587.50 - Microsoft Corporation) Microsoft GameInput (HKLM-x32\...\{6BBE9278-659F-FA16-E4B8-C2D60DE0DCC7}) (Version: 10.1.22621.1863 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{89581302-705F-42C5-99B0-E368A845DAD5}) (Version: 3.70.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Additional Runtime - 14.34.31921 (HKLM\...\{EB61ACFC-A91D-47FD-A4FF-17E29ED06794}) (Version: 14.34.31921 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.34.31921 (HKLM\...\{5CD0C440-0D9B-435D-B5CF-CC20E04C669B}) (Version: 14.34.31921 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Additional Runtime - 14.34.31823 (HKLM-x32\...\{EB6DFC76-FC58-4F00-811A-09FC83EDB02B}) (Version: 14.34.31823 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.34.31823 (HKLM-x32\...\{54AAF010-4412-441C-AFDF-5566370458AA}) (Version: 14.34.31823 - Microsoft Corporation) Hidden Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Motorola Mobile Drivers Installation 6.4.0 (HKLM\...\{27986EDD-C9EC-4B52-B92F-06D073F0AA52}) (Version: 6.4.0 - Motorola Mobility LLC) Mozilla Firefox (x64 pl) (HKLM\...\Mozilla Firefox 110.0 (x64 pl)) (Version: 110.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 110.0 - Mozilla) Need for Speed™ Unbound (HKLM-x32\...\{656F499B-81C7-4766-9851-D4C8DA1E24B7}) (Version: 1.0.6.3368 - Electronic Arts) NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation) NVIDIA GeForce Experience 3.27.0.112 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.112 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.39.16 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.39.16 - NVIDIA Corporation) NVIDIA Sterownik graficzny 528.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 528.49 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Panda Cloud Cleaner (HKLM-x32\...\{92B2B132-C7F0-43DC-921A-4493C04F78A4}_is1) (Version: 1.1.10 - Panda Security) Panda Devices Agent (HKLM-x32\...\{DB0164A2-ADE9-4FEE-B080-D506BDD6427F}) (Version: 1.08.09 - Panda Security) Hidden Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.09 - Panda Security) Hidden Panda Dome (HKLM\...\{2A0B4ADE-1FA7-4B2B-9785-F951390FD5FF}) (Version: 12.02.00 - Panda Security) Hidden Panda Dome (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 22.00.00.0000 - Panda Security) PC HelpSoft Driver Updater 6.3.914 (HKLM-x32\...\PC HelpSoft Driver Updater_is1) (Version: 6.3.914 - LR) PrivaZer 4.0.66 (HKLM-x32\...\PrivaZer_is1) (Version: 4.0.66 - LR) qBittorrent (HKLM-x32\...\qBittorrent) (Version: 4.5.1 - The qBittorrent project) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9273.1 - Realtek Semiconductor Corp.) Rescue and Smart Assistant (HKLM-x32\...\Rescue and Smart Assistant) (Version: 6.4.2.13 - Lenovo) Revo Uninstaller 2.4.2 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.4.2 - VS Revo Group, Ltd.) Roblox Player for przyb (HKU\S-1-5-21-3411141071-3349320218-1670478341-1001\...\roblox-player) (Version: - Roblox Corporation) Roblox Studio for przyb (HKU\S-1-5-21-3411141071-3349320218-1670478341-1001\...\roblox-studio) (Version: - Roblox Corporation) SharewareOnSale Notifier (HKU\S-1-5-21-3411141071-3349320218-1670478341-1001\...\SharewareOnSale Notifier) (Version: 20 - SharewareOnSale) Spotify 1.2.3.1115 (HKLM-x32\...\Spotify_is1) (Version: 1.2.3.1115 - LR) Środowisko uruchomieniowe Microsoft Edge WebView2 (HKLM-x32\...\Microsoft EdgeWebView) (Version: 110.0.1587.50 - Microsoft Corporation) UE4 Prerequisites (x64) (HKLM\...\{36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden UltraUXThemePatcher (HKLM-x32\...\UltraUXThemePatcher) (Version: 4.3.4.0 - Manuel Hoefs (Zottel)) UXP WebView Support (HKLM-x32\...\UXPW_1_1_0) (Version: 1.1.0 - Adobe Inc.) VLC media player (HKLM\...\VLC media player) (Version: 3.0.18 - VideoLAN) WinRAR 6.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.21.0 - win.rar GmbH) Packages: ========= Atomic Heart - Windows -> C:\Program Files\WindowsApps\FocusHomeInteractiveSA.579645D26CFD_1.0.2.0_x64__4hny5m903y3g0 [2023-02-23] (Focus Home Interactive SA) Microsoft Flight Simulator -> C:\Program Files\WindowsApps\Microsoft.FlightSimulator_1.30.12.0_x64__8wekyb3d8bbwe [2023-02-03] (Microsoft Studios) Microsoft Flight Simulator Digital Ownership -> C:\Program Files\WindowsApps\Microsoft.DigitalOwnership_1.0.1.0_x64__8wekyb3d8bbwe [2023-02-03] (Microsoft Studios) Mozilla Firefox -> C:\Program Files\WindowsApps\Mozilla.Firefox_110.0.0.0_x64__n80bbvh6b1yt2 [2023-02-23] (Mozilla) NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.963.0_x64__56jybvy8sckqj [2023-02-22] (NVIDIA Corp.) Outlook for Windows -> C:\Program Files\WindowsApps\Microsoft.OutlookForWindows_1.2023.118.100_x64__8wekyb3d8bbwe [2023-02-21] (Microsoft Corporation) TranslucentTB -> C:\Program Files\WindowsApps\28017CharlesMilette.TranslucentTB_2022.1.0.0_x64__v826wp6bftszj [2023-02-23] (Charles Milette) [Startup Task] WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2306.4.0_x64__cv1g1gvanyjgm [2023-02-23] (WhatsApp Inc.) [Startup Task] WindowsAppRuntime.1.2 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.777.2143.0_x64__8wekyb3d8bbwe [2023-02-23] (Microsoft Corporation) WindowsAppRuntime.1.2 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.777.2143.0_x86__8wekyb3d8bbwe [2023-02-23] (Microsoft Corporation) WinDynamicDesktop -> C:\Program Files\WindowsApps\38719TimothyJohnson.WinDynamicDesktop_5.2.1.0_x64__rfarkse4rn21a [2023-02-23] (Timothy Johnson) [Startup Task] Wolfenstein: The Old Blood (PC) -> C:\Program Files\WindowsApps\BethesdaSoftworks.WolfensteinTOB-PC_1.19.1.0_x64__3275kfvn8vcwc [2023-02-12] (Bethesda Softworks) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-3411141071-3349320218-1670478341-1001_Classes\CLSID\{D5C4136A-93E5-4678-A6F8-0B2D9BB10999}\localserver32 -> C:\Windows\System32\RunDll32.exe "C:\Users\przyb\Downloads\Reg Organizer 9.11 Portable by FC Portables\App\RegOrganizer64\Notifications.dll",Activate -ToastActivated => Brak pliku ShellIconOverlayIdentifiers: [ FSOverlayIcon] -> {C0829D19-E5A0-44F5-B56E-D15030C53BB9} => -> Brak pliku ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-11-30] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-11-30] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-11-30] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Brak pliku ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-11-30] (Adobe Inc. -> ) ContextMenuHandlers1: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => -> Brak pliku ContextMenuHandlers1: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu6.dll [2021-10-30] (Goversoft LLC -> ) ContextMenuHandlers1: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => -> Brak pliku ContextMenuHandlers1: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2023-01-02] (Panda Security S.L. -> Panda Security, S.L.) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2023-02-16] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2023-02-16] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu6.dll [2021-10-30] (Goversoft LLC -> ) ContextMenuHandlers3: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu6.dll [2021-10-30] (Goversoft LLC -> ) ContextMenuHandlers4: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu6.dll [2021-10-30] (Goversoft LLC -> ) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_da725289af73928f\nvshext.dll [2023-02-03] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers5: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2023-01-02] (Panda Security S.L. -> Panda Security, S.L.) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-11-30] (Adobe Inc. -> ) ContextMenuHandlers6: [PrivaZer] -> {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => C:\Program Files (x86)\PrivaZer\PrivaMenu6.dll [2021-10-30] (Goversoft LLC -> ) ContextMenuHandlers6: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => -> Brak pliku ContextMenuHandlers6: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2023-01-02] (Panda Security S.L. -> Panda Security, S.L.) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2023-02-16] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2023-02-16] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (filtrowane) ==================== ==================== Skróty & WMI ======================== ==================== Załadowane moduły (filtrowane) ============= 2023-02-23 16:07 - 2023-02-23 16:07 - 000040448 _____ () [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files\WindowsApps\38719TimothyJohnson.WinDynamicDesktop_5.2.1.0_x64__rfarkse4rn21a\WinDynamicDesktop\NGettext.dll 2023-02-24 10:00 - 2010-03-30 21:29 - 000279955 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Panda Security\Panda Cloud Cleaner\libidn-11.dll 2023-02-24 10:00 - 2013-06-22 18:23 - 000113166 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Panda Security\Panda Cloud Cleaner\zlib1.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000017920 _____ () [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\libEGL.DLL 2023-02-24 08:17 - 2023-02-24 08:17 - 003567616 _____ () [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\libGLESv2.dll 2023-02-23 17:45 - 2023-02-23 17:45 - 001530368 _____ () [Brak podpisu cyfrowego] C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2306.4.0_x64__cv1g1gvanyjgm\e_sqlite3.dll 2023-02-23 17:45 - 2023-02-23 17:45 - 104974336 _____ () [Brak podpisu cyfrowego] C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2306.4.0_x64__cv1g1gvanyjgm\WhatsApp.dll 2023-02-23 17:45 - 2023-02-23 17:45 - 008795648 _____ () [Brak podpisu cyfrowego] C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2306.4.0_x64__cv1g1gvanyjgm\WhatsAppNative.dll 2023-02-23 16:07 - 2023-02-23 16:07 - 000016384 _____ (Koste Budinoski) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files\WindowsApps\38719TimothyJohnson.WinDynamicDesktop_5.2.1.0_x64__rfarkse4rn21a\WinDynamicDesktop\SunCalcNet.dll 2023-02-23 16:07 - 2023-02-23 16:07 - 000033792 _____ (Matt Johnson-Pint) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files\WindowsApps\38719TimothyJohnson.WinDynamicDesktop_5.2.1.0_x64__rfarkse4rn21a\WinDynamicDesktop\TimeZoneConverter.dll 2023-02-23 16:07 - 2023-02-23 16:07 - 003003904 _____ (Matt Johnson-Pint,Simon Bartlett) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files\WindowsApps\38719TimothyJohnson.WinDynamicDesktop_5.2.1.0_x64__rfarkse4rn21a\WinDynamicDesktop\GeoTimeZone.dll 2023-02-23 16:07 - 2023-02-23 16:07 - 000005120 _____ (Matteo Pagani) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files\WindowsApps\38719TimothyJohnson.WinDynamicDesktop_5.2.1.0_x64__rfarkse4rn21a\WinDynamicDesktop\DesktopBridge.Helpers.dll 2023-02-23 15:45 - 2023-02-23 15:45 - 000093696 _____ (Microsoft Corporation) [Brak podpisu cyfrowego] C:\WINDOWS\SYSTEM32\uxinit.dll 2023-02-24 10:00 - 2013-12-24 16:16 - 000626176 _____ (The cURL library, hxxp://curl.haxx.se/) [Brak podpisu cyfrowego] C:\Program Files (x86)\Panda Security\Panda Cloud Cleaner\libcurl.dll 2023-02-24 10:00 - 2014-04-08 06:26 - 001177088 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files (x86)\Panda Security\Panda Cloud Cleaner\LIBEAY32.dll 2023-02-24 10:00 - 2013-02-08 21:44 - 000364544 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files (x86)\Panda Security\Panda Cloud Cleaner\SSLEAY32.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 002849280 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\libcrypto-1_1-x64.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000685056 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\libssl-1_1-x64.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000046592 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\bearer\qgenericbearer.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000031744 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\imageformats\qgif.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000039936 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\imageformats\qicns.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000031232 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\imageformats\qico.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000415232 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\imageformats\qjpeg.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000025600 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\imageformats\qsvg.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000025088 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\imageformats\qtga.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000380416 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\imageformats\qtiff.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000023552 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\imageformats\qwbmp.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000532992 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\imageformats\qwebp.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 001455616 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\platforms\qwindows.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000227328 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt\labs\platform\qtlabsplatformplugin.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 006270976 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5Core.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 006947328 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5Gui.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 001389568 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5Network.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000327168 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5Positioning.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000319488 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5PrintSupport.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 003798528 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5Qml.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000440832 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5QmlModels.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000054784 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5QmlWorkerScript.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 004254720 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5Quick.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000171520 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5QuickControls2.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000222208 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5QuickShapes.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 001128960 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5QuickTemplates2.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000075264 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5QuickWidgets.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000334848 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5Svg.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000133120 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5WebChannel.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000396288 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5WebEngine.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 103583232 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5WebEngineCore.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000250880 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5WebEngineWidgets.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000157184 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5WebSockets.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 005611520 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5Widgets.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000463360 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5WinExtras.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000210432 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\Qt5Xml.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000056832 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000059392 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\QtGraphicalEffects\qtgraphicaleffectsplugin.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000018432 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\QtQuick.2\qtquick2plugin.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000294400 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\QtQuick\Controls.2\qtquickcontrols2plugin.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000106496 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\QtQuick\Layouts\qquicklayoutsplugin.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000017920 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\QtQuick\Shapes\qmlshapesplugin.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000325120 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\QtQuick\Templates.2\qtquicktemplates2plugin.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000045568 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\QtQuick\Window.2\windowplugin.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000021504 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\QtWebChannel\declarative_webchannel.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000093696 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\QtWebEngine\qtwebengineplugin.dll 2023-02-24 08:17 - 2023-02-24 08:17 - 000135680 _____ (The Qt Company Ltd.) [Brak podpisu cyfrowego] C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\styles\qwindowsvistastyle.dll 2023-02-23 16:07 - 2023-02-23 16:07 - 008368128 _____ (WinDynamicDesktop) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files\WindowsApps\38719TimothyJohnson.WinDynamicDesktop_5.2.1.0_x64__rfarkse4rn21a\WinDynamicDesktop\WinDynamicDesktop.dll ==================== Alternate Data Streams (filtrowane) ======== (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [6238] ==================== Tryb awaryjny (filtrowane) ================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service" ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer (filtrowane) ========== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3411141071-3349320218-1670478341-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_361\bin\ssv.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_361\bin\jp2ssv.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation) (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE trusted site: HKU\S-1-5-21-3411141071-3349320218-1670478341-1001\...\trendmicro.com -> hxxps://pwm.trendmicro.com ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2023-02-15 14:36 - 2023-02-20 13:54 - 000000147 _____ C:\WINDOWS\system32\drivers\etc\hosts 127.0.0.1 localhost ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\dotnet\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR HKU\S-1-5-21-3411141071-3349320218-1670478341-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\przyb\Downloads\wallpapersden.com_small-memory_1920x1080.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) HKLM\...\StartupApproved\StartupFolder: => "O&O Defrag Tray.lnk" HKLM\...\StartupApproved\Run: => "Everything" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "OODefragTray" HKU\S-1-5-21-3411141071-3349320218-1670478341-1001\...\StartupApproved\Run: => "EpicGamesLauncher" HKU\S-1-5-21-3411141071-3349320218-1670478341-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_A2995B52FBFC27EA3F81CFC4FCD45E47" HKU\S-1-5-21-3411141071-3349320218-1670478341-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-3411141071-3349320218-1670478341-1001\...\StartupApproved\Run: => "IDMan" ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{84BFA5FC-1A13-4082-87E2-75B9B0B20F01}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\110.0.1587.50\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{3B1BF4F9-D371-47E3-A7D8-236E34BB48FF}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{CE9D0505-C495-4E78-9B7C-74C91A5A61A9}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [UDP Query User{350317A9-C685-417D-B822-3737648C555C}J:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) J:\games\world_of_tanks_eu\win64\worldoftanks.exe => Brak pliku FirewallRules: [TCP Query User{08284813-3209-46DE-AA4C-B05A87534EE3}J:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) J:\games\world_of_tanks_eu\win64\worldoftanks.exe => Brak pliku FirewallRules: [UDP Query User{BDC88AA8-AD21-47E8-89E4-02A9379C809B}J:\call of duty\_retail_\cod.exe] => (Allow) J:\call of duty\_retail_\cod.exe (Activision Publishing Inc -> Activision) FirewallRules: [TCP Query User{5BF81903-0926-4C3B-8746-1ACC8DE24E60}J:\call of duty\_retail_\cod.exe] => (Allow) J:\call of duty\_retail_\cod.exe (Activision Publishing Inc -> Activision) FirewallRules: [{CF130836-EAD2-4A65-81E8-672A7142FC9F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{CFBFDA0E-7CCB-4207-9B14-EA56F9EA6475}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{6EF8EFD1-5876-498F-A51A-001406B756FA}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{9BE3996E-E594-4966-BA19-D75C1D489C15}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [UDP Query User{5D6F45C9-A933-4C18-A68C-2CF50885FFB8}J:\fifa 23\fifa23.exe] => (Allow) J:\fifa 23\fifa23.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [TCP Query User{FE69268E-8D41-4A30-8202-5B1F54F2EDAC}J:\fifa 23\fifa23.exe] => (Allow) J:\fifa 23\fifa23.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{C8366E9B-AEFE-4DE7-A66C-B4C92F2524B5}] => (Allow) J:\FIFA 23\EAAntiCheat.GameServiceLauncher.exe (Electronic Arts, Inc. -> ) FirewallRules: [{13DA71D3-DA1C-4BB9-8DE6-18F7D4FC39A2}] => (Allow) J:\FIFA 23\EAAntiCheat.GameServiceLauncher.exe (Electronic Arts, Inc. -> ) FirewallRules: [UDP Query User{074FDCC2-0E81-45C4-93B5-79BE9EFE27A1}G:\nowy folder\microsoft flight simulator\content\flightsimulator.exe] => (Allow) G:\nowy folder\microsoft flight simulator\content\flightsimulator.exe (Odmowa dostępu) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{1CBDB8BA-E30D-4C94-B462-B616BB041249}G:\nowy folder\microsoft flight simulator\content\flightsimulator.exe] => (Allow) G:\nowy folder\microsoft flight simulator\content\flightsimulator.exe (Odmowa dostępu) [Brak podpisu cyfrowego] FirewallRules: [{5682D6CC-2A81-4746-9ACC-98D5D231DE66}] => (Allow) C:\Program Files\Rescue and Smart Assistant\Rescue and Smart Assistant.exe (Lenovo -> ) FirewallRules: [UDP Query User{59BFB966-36B8-4091-A974-0BFEB0CF09C0}G:\nowy folder\microsoft flight simulator\content\flightsimulator.exe] => (Allow) G:\nowy folder\microsoft flight simulator\content\flightsimulator.exe (Odmowa dostępu) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{930AF767-675D-4F6D-9593-5B2A933A173F}G:\nowy folder\microsoft flight simulator\content\flightsimulator.exe] => (Allow) G:\nowy folder\microsoft flight simulator\content\flightsimulator.exe (Odmowa dostępu) [Brak podpisu cyfrowego] FirewallRules: [{9BC96FFB-36C3-4445-B566-AA08B91BA71E}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{AF5A47F7-41A4-4B1A-A018-DFA917E8DAD0}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{07E08326-B65B-4039-8283-3701563C130D}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{C2C69415-C754-4BE8-935C-34E3DE20BFF2}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{447D5586-0055-4652-8BA5-A2983DC433EC}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{CC9FAB07-630A-4401-B54A-A70AAF180533}] => (Allow) C:\Users\przyb\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) [Brak podpisu cyfrowego] FirewallRules: [{34106439-7E59-4791-BC8D-6A61EE19B93B}] => (Allow) C:\Users\przyb\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) [Brak podpisu cyfrowego] FirewallRules: [{E1F4BDF3-DF94-40AA-853F-2DD5EBE6C382}] => (Allow) LPort=31931 FirewallRules: [{021CA6F3-F4EE-4C71-95C0-DA949672A763}] => (Allow) LPort=14714 FirewallRules: [{222CC85D-289C-486A-AEE8-3F1A5173C152}] => (Allow) LPort=12972 FirewallRules: [UDP Query User{55ECF981-C9EF-4C5B-91FA-22988B432578}J:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) J:\games\world_of_tanks_eu\win64\worldoftanks.exe => Brak pliku FirewallRules: [TCP Query User{9A27E0FF-B2F3-4621-90CE-CDA80541447F}J:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) J:\games\world_of_tanks_eu\win64\worldoftanks.exe => Brak pliku FirewallRules: [{C4D1B25F-7E50-4055-BF23-C22F4378BAAB}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [Brak podpisu cyfrowego] FirewallRules: [{417F7927-2BF1-4CB0-8F34-B8C69E62FBC6}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [Brak podpisu cyfrowego] FirewallRules: [{7DB53E9E-A5F9-4D47-90C0-E181576CC348}] => (Allow) J:\FIFA 23\EAAntiCheat.GameServiceLauncher.exe (Electronic Arts, Inc. -> ) FirewallRules: [{6E2AC0B8-CA68-4D2E-83D1-0965659196DA}] => (Allow) J:\FIFA 23\EAAntiCheat.GameServiceLauncher.exe (Electronic Arts, Inc. -> ) FirewallRules: [{C19FBFF3-54E1-402A-B4AA-CB609B4C787A}] => (Allow) F:\GRY\Need for Speed Unbound\NeedForSpeedUnboundTrial.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{C524AA3D-517D-4B85-9674-D8B8C7880130}] => (Allow) F:\GRY\Need for Speed Unbound\NeedForSpeedUnboundTrial.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{B73E2B93-D9FA-4E1D-8FAA-2C33A0AB45FF}] => (Allow) F:\GRY\Need for Speed Unbound\NeedForSpeedUnbound.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{FDB2659E-2292-4DA1-B8C6-935D2CF42010}] => (Allow) F:\GRY\Need for Speed Unbound\NeedForSpeedUnbound.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [TCP Query User{E535C76A-83A8-4E3B-B92E-C5DCDBE0EBE0}J:\xboxgames\forza horizon 5\content\forzahorizon5.exe] => (Allow) J:\xboxgames\forza horizon 5\content\forzahorizon5.exe => Brak pliku FirewallRules: [UDP Query User{6B109DF8-3286-4F2B-815F-AE5BE3C8B232}J:\xboxgames\forza horizon 5\content\forzahorizon5.exe] => (Allow) J:\xboxgames\forza horizon 5\content\forzahorizon5.exe => Brak pliku FirewallRules: [{11F49736-C7E7-488B-B13D-ACEBC96D1B82}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{74ADA0E8-7688-4A37-8973-EE7DC380B0F0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{144BD8C2-7A81-41F4-AE14-6A4BE7A8BA9C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{4D56A42B-6A8E-4889-A6A8-7A10A610F710}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{310A4E9D-1148-4C2F-92A0-BBDE50A0C442}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{E41C9A6D-398E-42FC-804B-42DDC0A2F8A5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{C7681BA5-CABC-4D6A-B21A-39935E6C2A13}] => (Allow) C:\Users\przyb\AppData\Local\Temp\utorrent\utorrent.exe => Brak pliku FirewallRules: [{24721F3C-DF7F-449C-946F-96F358E67EBB}] => (Allow) C:\Users\przyb\AppData\Local\Temp\utorrent\utorrent.exe => Brak pliku FirewallRules: [{63D61689-0528-4341-AF46-C98A0AA4A20F}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [Brak podpisu cyfrowego] FirewallRules: [{1D9B762E-9C19-4176-8AD8-B541F36C3008}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [Brak podpisu cyfrowego] ==================== Punkty Przywracania systemu ========================= 23-02-2023 15:29:15 Restore point ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ Name: Toshiba RFBUS Driver Description: Toshiba RFBUS Driver Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (02/24/2023 08:12:01 AM) (Source: SecurityCenter) (EventID: 17) (User: ) Description: Centrum zabezpieczeń nie może zweryfikować obiektu wywołującego z powodu błędu %1. Error: (02/23/2023 06:09:44 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: ) Description: Optymalizator magazynów nie może zakończyć operacji ograniczenie ponowne na dysk 3 (F:) z następującego powodu: Żądana operacja nie jest obsługiwana przez sprzęt obsługujący wolumin. (0x8900002A) Dziennik System: ============= Error: (02/24/2023 08:12:36 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-9SEQ30P) Description: Serwer {FD06603A-2BDF-4BB1-B7DF-5DC68F353601} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/24/2023 08:11:59 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa Program antywirusowy Microsoft Defender z powodu następującego błędu: Nie można odnaleźć określonego pliku. Error: (02/23/2023 05:45:32 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80073d02: 9NMPJ99VJBWV-Microsoft.YourPhone. Error: (02/23/2023 03:32:07 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-9SEQ30P) Description: Serwer {9BA05972-F6A8-11CF-A442-00A0C90A8F39} nie zarejestrował się w modelu DCOM w wymaganym czasie. CodeIntegrity: =============== Date: 2023-02-24 09:29:46 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\WindowsApps\Mozilla.Firefox_110.0.0.0_x64__n80bbvh6b1yt2\VFS\ProgramFiles\Firefox Package Root\firefox.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll that did not meet the Microsoft signing level requirements. Date: 2023-02-24 08:10:59 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Panda Security\Panda Security Protection\PSNWSC.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Statystyki pamięci =========================== BIOS: American Megatrends Inc. 3805 05/07/2018 Płyta główna: ASUSTeK COMPUTER INC. H110M-D Procesor: Intel(R) Core(TM) i5-6400 CPU @ 2.70GHz Procent pamięci w użyciu: 42% Całkowita pamięć fizyczna: 16327.05 MB Dostępna pamięć fizyczna: 9354.52 MB Całkowita pamięć wirtualna: 22471.05 MB Dostępna pamięć wirtualna: 12903.3 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:77.53 GB) (Free:34.7 GB) (Model: CT500MX500SSD1) NTFS Drive d: (CPRA_X64FRE) (Removable) (Total:7.2 GB) (Free:3.45 GB) FAT32 Drive f: (dysk 3) (Fixed) (Total:465.76 GB) (Free:371.77 GB) (Model: WDC WD5000AAKX-75U6AA0) NTFS Drive g: (dysk 2) (Fixed) (Total:465.75 GB) (Free:227.58 GB) (Model: ST3500312CS) NTFS Drive j: (gry 1 ) (Fixed) (Total:387.64 GB) (Free:209.07 GB) (Model: CT500MX500SSD1) NTFS \\?\Volume{752a4579-1e1c-4be6-8c2d-c28c109e0b2e}\ () (Fixed) (Total:0.48 GB) (Free:0.06 GB) NTFS \\?\Volume{dc5e685c-d7db-4061-a8ef-7db649f0464d}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 03395672) Partition 1: (Not Active) - (Size=465.8 GB) - (Type=0F Extended) ========================================================== Disk: 1 (Size: 465.8 GB) (Disk ID: 06BAA2EF) Partition: GPT. ========================================================== Disk: 2 (Size: 465.8 GB) (Disk ID: E5F3E7BA) Partition: GPT. ========================================================== Disk: 3 (Size: 7.2 GB) (Disk ID: 07D0DFA1) Partition: GPT. ==================== Koniec Addition.txt =======================