Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 28-03-2022 Uruchomiony przez JODA DRUK (30-03-2022 11:34:27) Uruchomiony z C:\Users\JODA DRUK\Downloads Microsoft Windows 10 Pro Wersja 21H2 19044.1586 (X64) (2021-06-18 15:13:22) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= (Załączenie wejścia w fixlist spowoduje jego usunięcie.) Administrator (S-1-5-21-696834628-1386451695-4253651740-500 - Administrator - Disabled) Gość (S-1-5-21-696834628-1386451695-4253651740-501 - Limited - Enabled) JODA DRUK (S-1-5-21-696834628-1386451695-4253651740-1003 - Administrator - Enabled) => C:\Users\JODA DRUK Konto domyślne (S-1-5-21-696834628-1386451695-4253651740-503 - Limited - Disabled) skan (S-1-5-21-696834628-1386451695-4253651740-1004 - Limited - Enabled) WDAGUtilityAccount (S-1-5-21-696834628-1386451695-4253651740-504 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 7-Zip 18.05 (x64) (HKLM\...\7-Zip) (Version: 18.05 - Igor Pavlov) Adobe Acrobat DC (64-bit) (HKLM\...\{AC76BA86-1045-1033-7760-BC15014EA700}) (Version: 22.001.20085 - Adobe) Adobe Reader 64-bit fixes (HKLM\...\{6D80AAE7-FF65-4950-B1CA-3A7EA4995574}_is1) (Version: - Leo Davidson / Pretentious Name) Advanced IP Scanner 2.5 (HKLM-x32\...\{CFBACF43-19BF-40DB-A8AF-7C61175BAC6D}) (Version: 2.5.3499 - Famatech) Audacity 2.3.0 (HKLM-x32\...\Audacity_is1) (Version: 2.3.0 - Audacity Team) Autodesk DWG TrueView 2018 - English (HKLM\...\DWG TrueView 2018 - English) (Version: 22.0.50.0 - Autodesk) CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.7128 - CDBurnerXP) Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) DTS+AC3 ÇĘĹÍ (HKLM-x32\...\DtsFilter) (Version: - ) EFI Flexera License Manager (remove only) (HKLM-x32\...\EFILM) (Version: 11.15.1.1 - EFI) Eraser 6.2.0.2982 (HKLM\...\{DFCF78CC-3DAD-4C1E-8BC6-94DC5B73461E}) (Version: 6.2.2982 - The Eraser Project) Fiery User Software-5.8.0.23 (HKLM-x32\...\{1B62E9DB-BD5B-4966-BF75-B038119E61FA}) (Version: 5.8.0.23 - Electronics For Imaging) FTP Utility (HKLM-x32\...\InstallShield_{A5EC243A-AAB4-4AF0-85A5-07F9F4618353}) (Version: 1.00.0000 - KONICA MINOLTA) Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\_{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation) Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation) Hidden GIMP 2.10.6 (HKLM\...\GIMP-2_is1) (Version: 2.10.6 - The GIMP Team) GOM Mix Pro (HKLM-x32\...\GOMMixPro) (Version: 2.0.2.1 - GOM & Company) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 99.0.4844.84 - Google LLC) Gravit Designer 3.5.28 (HKLM\...\73ce129c-e9ab-5027-8f0d-8b378da1411c) (Version: 3.5.28 - Gravit GmbH) Hardwipe 5.2.1 (HKLM\...\{0F322F97-B3FB-4423-B23E-4E486693CD16}) (Version: 5.2.1 - Big Angry Dog) HP Support Solutions Framework (HKLM-x32\...\{CF877E9B-8B8C-41D5-8DAF-8D9D8E602092}) (Version: 12.18.34.21 - HP Inc.) Huawei E3272 (HKLM-x32\...\Huawei E3272) (Version: 22.001.22.00.1202 - Huawei Technologies Co.,Ltd) imagePROGRAF Device Setup Utility (HKLM-x32\...\imagePROGRAF Device Setup Utility) (Version: 5.10 - Canon Inc.) imagePROGRAF Firmware Update Tool (HKLM-x32\...\imagePROGRAF Firmware Update Tool) (Version: 24.00 - Canon Inc.) imagePROGRAF Media Configuration Tool (HKLM-x32\...\imagePROGRAF Media Configuration Tool) (Version: 7.02.001 - Canon Inc.) imagePROGRAF Status Monitor (HKLM-x32\...\imagePROGRAF Status Monitor) (Version: 25.70 - Canon Inc.) Inkscape (HKLM-x32\...\Inkscape) (Version: 1.1.1- - Inkscape) Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{AA67D612-0BE5-44D6-9A91-592958F754A1}) (Version: 13.0.198 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1035 - Intel Corporation) Intel(R) Network Connections 21.1.30.0 (HKLM\...\PROSetDX) (Version: 21.1.30.0 - Intel) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.5126 - Intel Corporation) Java 8 Update 211 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180211F0}) (Version: 8.0.2110.12 - Oracle Corporation) KONICA MINOLTA Universal PS (HKLM\...\KONICA MINOLTA Universal PS) (Version: - KONICA MINOLTA) LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) LibreOffice 6.3.4.2 (HKLM\...\{191F4D69-B671-4163-BB01-901B89A20D04}) (Version: 6.3.4.2 - The Document Foundation) License Activation (remove only) (HKLM-x32\...\OFASQ) (Version: 1.3.0.9 - EFI) Logi Bolt (HKLM\...\LogiBolt) (Version: 1.01.415.0 - Logi) Logitech Options (HKLM\...\LogiOptions) (Version: 9.40.86 - Logitech) Microsoft .NET Framework 4.7.2 SDK (HKLM-x32\...\{F42C96C1-746B-442A-B58C-9F0FD5F3AB8A}) (Version: 4.7.03081 - Microsoft Corporation) Microsoft .NET Framework 4.7.2 Targeting Pack (ENU) (HKLM-x32\...\{B517DBD3-B542-4FC8-9957-FFB2C3E65D1D}) (Version: 4.7.03062 - Microsoft Corporation) Microsoft .NET Framework 4.7.2 Targeting Pack (HKLM-x32\...\{1784A8CD-F7FE-47E2-A87D-1F31E7242D0D}) (Version: 4.7.03062 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 99.0.1150.55 - Microsoft Corporation) Microsoft Office Converter Pack (HKLM-x32\...\{6EECB283-E65F-40EF-86D3-D51BF02A8D43}) (Version: 11.0.0.0 - Microsoft Corporation - Office Resource Kit Group) Microsoft Office Excel Viewer (HKLM-x32\...\{95120000-003F-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Professional 2016 - pl-pl (HKLM\...\ProfessionalRetail - pl-pl) (Version: 16.0.14931.20132 - Microsoft Corporation) Microsoft Office Word Viewer 2003 (HKLM-x32\...\{90850415-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-696834628-1386451695-4253651740-1003\...\OneDriveSetup.exe) (Version: 19.086.0502.0006 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{5016990D-7F61-4A20-9451-A915D6616DD9}) (Version: 3.66.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2017 (HKLM-x32\...\{5a7dc0ad-cdb2-43b5-8b82-f81065fe6092}) (Version: 15.0.26717 - Microsoft Corporation) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 91.7.0.8099 - Mozilla) Mozilla Thunderbird (x86 pl) (HKLM-x32\...\Mozilla Thunderbird 91.7.0 (x86 pl)) (Version: 91.7.0 - Mozilla) MPEG2 Codec(libmpeg2/mad) (HKLM-x32\...\MPEG2 Codec(libmpeg2/mad)) (Version: - ) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.14931.20010 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.14931.20072 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.14931.20094 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0415-0000-0000000FF1CE}) (Version: 16.0.14931.20072 - Microsoft Corporation) Hidden Pakiet zgodności dla systemu Office 2007 (HKLM-x32\...\{90120000-0020-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) PDF Editor 5 (HKLM\...\PDF Editor 5) (Version: - ) PDF-XChange Editor (HKLM\...\{388C165A-5F78-48CA-B02F-1E16E6A17D10}) (Version: 6.0.321.0 - Tracker Software Products (Canada) Ltd.) PDF-XChange Viewer (HKLM\...\{9ED333F8-3E6C-4A38-BAFA-728454121CDA}) (Version: 2.5.317.0 - Tracker Software Products (Canada) Ltd.) Rapid PDF Count (HKLM-x32\...\{5A2AD6E5-0075-409A-B5A1-0B986F2E8D3B}) (Version: - ) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8328 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform) SMath Studio (HKLM-x32\...\{A4647A28-9DF3-4092-94FB-07553FE9B946}) (Version: 0.99.7030 - Andrey Ivashov) Sprawdzanie kondycji komputera z systemem Windows (HKLM\...\{497ED226-5E88-4EC5-9340-373B1C56906F}) (Version: 3.2.2110.14001 - Microsoft Corporation) Sprawdzanie kondycji komputera z systemem Windows (HKLM\...\{F406E8EE-8F73-42E8-9780-71602B3AE72B}) (Version: 3.3.2110.22002 - Microsoft Corporation) Total Uninstall 6.26.0 (HKLM\...\Total Uninstall 6_is1) (Version: 6.26.0 - Gavrila Martau) UniConvertor (HKLM-x32\...\{875F0109-0307-4AE2-9439-135AC8BBE881}) (Version: 1.1.5 - Igor E. Novikov) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{F814D094-197F-43C8-87FA-3210BB780486}) (Version: 2.53.0.0 - Microsoft Corporation) UsbFix Anti-Malware Premium (HKLM-x32\...\Usbfix) (Version: 11.0.4.8 - SOSVirus (SOSVirus.Net)) Vectorworks 2017 (HKLM\...\Vectorworks 2017 Viewer 22.0.0) (Version: 22.0.0 - Vectorworks, Inc.) VeraCrypt (HKLM-x32\...\VeraCrypt) (Version: 1.22 - IDRIX) Virtual Router v1.0 (HKLM-x32\...\{BE905C46-2B34-4D73-AEE1-769ED138E0FF}) (Version: 1.0 - Chris Pietschmann) VLC media player (HKLM\...\VLC media player) (Version: 3.0.4 - VideoLAN) Windows Driver Package - FTDI CDM Driver Package - Bus/D2XX Driver (07/12/2013 2.08.30) (HKLM\...\22CCD58B53472BE3FCAFF05631111C4062959A43) (Version: 07/12/2013 2.08.30 - FTDI) Windows Driver Package - FTDI CDM Driver Package - VCP Driver (07/12/2013 2.08.30) (HKLM\...\BD00013670D26C16E19F284BF8E15DAF813497C7) (Version: 07/12/2013 2.08.30 - FTDI) Packages: ========= Adobe Photoshop Express: edytor obrazów, regulacje, filtry, efekty, krawędzie -> C:\Program Files\WindowsApps\AdobeSystemsIncorporated.AdobePhotoshopExpress_3.6.385.0_x64__ynb6jyjzte8ga [2022-03-23] (Adobe Inc.) Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.) Dodatek Aparat multimediów dla aplikacji Zdjęcia -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-11-03] (Microsoft Corporation) Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.12.419.0_x64__rz1tebttyb220 [2022-03-04] (Dolby Laboratories) KONICA MINOLTA Print Experience -> C:\Program Files\WindowsApps\KONICAMINOLTAINC.KONICAMINOLTAPrintExperience_2.0.0.3_neutral__s63fsn2sety0r [2021-09-06] (KONICA MINOLTA INC) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-06-18] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-06-18] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.12.3171.0_x64__8wekyb3d8bbwe [2022-03-28] (Microsoft Studios) [MS Ad] QuickLook -> C:\Program Files\WindowsApps\21090PaddyXu.QuickLook_3.7.1.0_neutral__egxr34yet59cg [2021-11-17] (Paddy Xu) [Startup Task] Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.181.604.0_x86__zpdnekdrzrea0 [2022-03-21] (Spotify AB) [Startup Task] Stars at Night -> C:\Program Files\WindowsApps\Microsoft.StarsatNight_1.0.0.0_neutral__8wekyb3d8bbwe [2018-06-27] (Microsoft Corporation) The Great American Solar Eclipse -> C:\Program Files\WindowsApps\Microsoft.TheGreatAmericanSolarEclipse_1.0.0.0_neutral__8wekyb3d8bbwe [2018-06-27] (Microsoft Corporation) World National Parks -> C:\Program Files\WindowsApps\Microsoft.WorldNationalParks_1.0.0.0_neutral__8wekyb3d8bbwe [2018-06-27] (Microsoft Corporation) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-696834628-1386451695-4253651740-1003_Classes\CLSID\{227C9E8F-71A1-4B23-9076-682A1A8EAAED}\localserver32 -> "c:\program files\macrium\common\reflectmonitor.exe" -ToastActivated => Brak pliku CustomCLSID: HKU\S-1-5-21-696834628-1386451695-4253651740-1003_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2018 - English\en-US\dwgviewrficn.dll (Autodesk, Inc -> Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-696834628-1386451695-4253651740-1003_Classes\CLSID\{B6EB585B-B467-4E46-A9C7-48D7D6FD26CB}\localserver32 -> C:\Program Files\Autodesk\DWG TrueView 2018 - English\dwgviewr.exe (Autodesk, Inc -> Autodesk, Inc.) ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll [2017-02-15] (Autodesk, Inc -> Autodesk, Inc.) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2017-02-15] (Autodesk, Inc -> Autodesk) ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Brak pliku ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers1: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2018-01-03] (Heidi Computers Ltd -> The Eraser Project) ContextMenuHandlers1: [HFHFExt] -> {7E41911F-13BB-11D3-A831-00104B9E30B5} => C:\Program Files (x86)\Fiery\Applications3\HotFolder\HF3MenuExt64.dll [2017-12-20] () [Brak podpisu cyfrowego] ContextMenuHandlers1: [PDFXChange Editor Context menu] -> {2ACD35AB-F74A-4C20-AA9B-2DE80081626D} => C:\Program Files\Tracker Software\Shell Extensions\XCShellMenu.x64.dll [2017-03-06] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) ContextMenuHandlers2: [BigAngryDog_HWipe] -> {B0FFE529-A5D3-4ECE-91C0-9E3585C373D8} => C:\Program Files\Hardwipe\hw-bin\hwshell.dll [2017-04-03] (Big Angry Dog Ltd -> Big Angry Dog) ContextMenuHandlers2: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2018-01-03] (Heidi Computers Ltd -> The Eraser Project) ContextMenuHandlers2: [HFHFExt] -> {7E41911F-13BB-11D3-A831-00104B9E30B5} => C:\Program Files (x86)\Fiery\Applications3\HotFolder\HF3MenuExt64.dll [2017-12-20] () [Brak podpisu cyfrowego] ContextMenuHandlers3: [BigAngryDog_HWipe] -> {8154B7C1-BB68-457C-931A-5BFABBA86CD9} => C:\Program Files\Hardwipe\hw-bin\hwshell.dll [2017-04-03] (Big Angry Dog Ltd -> Big Angry Dog) ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Brak pliku ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers4: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2018-01-03] (Heidi Computers Ltd -> The Eraser Project) ContextMenuHandlers4: [HFHFExt] -> {7E41911F-13BB-11D3-A831-00104B9E30B5} => C:\Program Files (x86)\Fiery\Applications3\HotFolder\HF3MenuExt64.dll [2017-12-20] () [Brak podpisu cyfrowego] ContextMenuHandlers5: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2018-01-03] (Heidi Computers Ltd -> The Eraser Project) ContextMenuHandlers5: [HFHFExt] -> {7E41911F-13BB-11D3-A831-00104B9E30B5} => C:\Program Files (x86)\Fiery\Applications3\HotFolder\HF3MenuExt64.dll [2017-12-20] () [Brak podpisu cyfrowego] ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2020-06-01] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers6: [Eraser] -> {BC9B776A-90D7-4476-A791-79D835F30650} => C:\Program Files\Eraser\Eraser.Shell.dll [2018-01-03] (Heidi Computers Ltd -> The Eraser Project) ==================== Codecs (filtrowane) ==================== ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\JODA DRUK\Desktop\Wydział Budownictwa – Moje Mapy Google.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=odlddcocceogkhmojkkigkkafoogjgnf ShortcutWithArgument: C:\Users\JODA DRUK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Wydział Budownictwa – Moje Mapy Google.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=odlddcocceogkhmojkkigkkafoogjgnf ==================== Załadowane moduły (filtrowane) ============= 2019-05-22 13:57 - 2019-05-22 13:57 - 000663552 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\EFI\OFASQ2\LIBEXPAT.dll 2019-05-22 13:57 - 2017-12-20 07:13 - 001160704 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Fiery\Applications3\HotFolder\HF3MenuExt64.dll 2021-11-16 09:40 - 2021-11-16 09:40 - 000177152 _____ () [Brak podpisu cyfrowego] C:\Program Files\WindowsApps\21090PaddyXu.QuickLook_3.7.1.0_neutral__egxr34yet59cg\Package\QuickLook.Native64.dll 2021-09-01 12:23 - 2021-09-01 12:23 - 000144896 _____ () [Brak podpisu cyfrowego] C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\libssh2.dll 2021-09-01 12:23 - 2021-09-01 12:23 - 000077824 _____ () [Brak podpisu cyfrowego] C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\zlib.dll 2022-03-30 10:47 - 2017-03-14 11:21 - 000181760 _____ () [Brak podpisu cyfrowego] C:\Users\JODA DRUK\AppData\Roaming\Fiery Software Manager\extract\fsm-2022-03-30-10-47-41-197\FSM\cfscore.dll 2022-03-30 10:47 - 2017-03-14 11:21 - 000194048 _____ () [Brak podpisu cyfrowego] C:\Users\JODA DRUK\AppData\Roaming\Fiery Software Manager\extract\fsm-2022-03-30-10-47-41-197\FSM\curllib.dll 2022-03-30 10:47 - 2017-03-14 11:21 - 000110592 _____ () [Brak podpisu cyfrowego] C:\Users\JODA DRUK\AppData\Roaming\Fiery Software Manager\extract\fsm-2022-03-30-10-47-41-197\FSM\OpenLDAP.dll 2022-03-30 10:47 - 2017-03-14 11:21 - 000674304 _____ () [Brak podpisu cyfrowego] C:\Users\JODA DRUK\AppData\Roaming\Fiery Software Manager\extract\fsm-2022-03-30-10-47-41-197\FSM\updater_lib\Win\GradInterface.dll 2019-05-22 13:57 - 2019-05-22 13:57 - 000107520 _____ (Applied Informatics Software Engineering GmbH) [Brak podpisu cyfrowego] C:\Program Files (x86)\EFI\OFASQ2\PocoCrypto.dll 2019-05-22 13:57 - 2019-05-22 13:57 - 001298944 _____ (Applied Informatics Software Engineering GmbH) [Brak podpisu cyfrowego] C:\Program Files (x86)\EFI\OFASQ2\PocoFoundation.dll 2019-05-22 13:57 - 2019-05-22 13:57 - 000768000 _____ (Applied Informatics Software Engineering GmbH) [Brak podpisu cyfrowego] C:\Program Files (x86)\EFI\OFASQ2\PocoNet.dll 2019-05-22 13:57 - 2019-05-22 13:57 - 000211968 _____ (Applied Informatics Software Engineering GmbH) [Brak podpisu cyfrowego] C:\Program Files (x86)\EFI\OFASQ2\PocoNetSSL.dll 2019-05-22 13:57 - 2019-05-22 13:57 - 000336896 _____ (Applied Informatics Software Engineering GmbH) [Brak podpisu cyfrowego] C:\Program Files (x86)\EFI\OFASQ2\PocoUtil.dll 2019-05-22 13:57 - 2019-05-22 13:57 - 000527872 _____ (Applied Informatics Software Engineering GmbH) [Brak podpisu cyfrowego] C:\Program Files (x86)\EFI\OFASQ2\PocoXML.dll 2019-05-22 13:57 - 2019-05-22 13:57 - 000218624 _____ (Applied Informatics Software Engineering GmbH) [Brak podpisu cyfrowego] C:\Program Files (x86)\EFI\OFASQ2\PocoZip.dll 2018-05-21 18:02 - 2014-09-18 13:57 - 000353280 _____ (CANON INC.) [Brak podpisu cyfrowego] C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwiocp6.dll 2018-05-21 18:02 - 2014-09-18 13:57 - 000759296 _____ (CANON INC.) [Brak podpisu cyfrowego] C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwios6.dll 2018-05-21 18:02 - 2014-09-18 13:57 - 000092160 _____ (CANON INC.) [Brak podpisu cyfrowego] C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwiosr6.dll 2018-05-21 18:02 - 2017-04-05 16:45 - 000361472 _____ (CANON INC.) [Brak podpisu cyfrowego] C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwioss6.dll 2018-05-21 18:02 - 2014-09-18 13:57 - 000098304 _____ (CANON INC.) [Brak podpisu cyfrowego] C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwiotl6.dll 2018-05-21 18:02 - 2014-09-18 13:57 - 000078848 _____ (CANON INC.) [Brak podpisu cyfrowego] C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwiotr6.dll 2018-05-21 18:02 - 2010-09-06 13:33 - 001150976 _____ (Canon Inc.) [Brak podpisu cyfrowego] C:\Program Files\Canon\imagePROGRAFStatusMonitor\CNXP.dll 2018-05-21 18:02 - 2013-02-22 16:51 - 000119296 _____ (CANON INC.) [Brak podpisu cyfrowego] C:\WINDOWS\System32\CNWIOC6.DLL 2020-02-06 13:01 - 2012-08-20 09:36 - 000105472 _____ (CANON INC.) [Brak podpisu cyfrowego] C:\WINDOWS\SYSTEM32\cnwiols6.dll 2018-06-28 09:40 - 2014-09-29 09:49 - 000083968 _____ (CANON INC.) [Brak podpisu cyfrowego] C:\WINDOWS\SYSTEM32\cnwiolt6.dll 2020-02-06 13:01 - 2012-08-20 09:51 - 000081408 _____ (CANON INC.) [Brak podpisu cyfrowego] C:\WINDOWS\System32\CNWIOPP6.DLL 2022-03-30 10:47 - 2017-03-14 11:21 - 000193536 _____ (Carnegie Mellon University) [Brak podpisu cyfrowego] C:\Users\JODA DRUK\AppData\Roaming\Fiery Software Manager\extract\fsm-2022-03-30-10-47-41-197\FSM\libsasl.dll 2019-05-22 13:57 - 2019-05-22 13:57 - 000146432 _____ (Electronics For Imaging, Inc.) [Brak podpisu cyfrowego] C:\Program Files (x86)\EFI\OFASQ2\harmony_core.dll 2019-05-22 13:57 - 2019-05-22 13:57 - 000728064 _____ (Electronics For Imaging, Inc.) [Brak podpisu cyfrowego] C:\Program Files (x86)\EFI\OFASQ2\harmony_efim.dll 2019-05-22 13:57 - 2019-05-22 13:57 - 002019840 _____ (Electronics For Imaging, Inc.) [Brak podpisu cyfrowego] C:\Program Files (x86)\EFI\OFASQ2\harmony10.dll 2019-05-22 13:59 - 2015-08-25 13:07 - 000022016 _____ (Electronics For Imaging, Inc.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Fiery\Applications3\Common Files\EFI\crashreport.dll 2019-05-22 13:57 - 2019-05-22 13:57 - 004747264 _____ (Flexera Software LLC) [Brak podpisu cyfrowego] C:\Program Files (x86)\EFI\OFASQ2\ofaApp_FNP.dll 2016-10-14 21:00 - 2016-10-14 21:00 - 000347648 _____ (Intel(R) Corporation) [Brak podpisu cyfrowego] C:\Windows\system32\NCS2Setp.dll 2019-05-22 13:52 - 2004-04-06 04:10 - 000499712 _____ (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Program Files (x86)\Common Files\EFI\EFI ES-1000 Service\MSVCP71.dll 2019-05-22 13:52 - 2004-04-06 04:10 - 000348160 _____ (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Program Files (x86)\Common Files\EFI\EFI ES-1000 Service\MSVCR71.dll 2020-02-06 15:55 - 2020-02-06 15:55 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems32.dll] C:\Program Files (x86)\Microsoft Office\Root\Office16\AppVIsvSubsystems32.dll 2020-02-06 15:55 - 2020-02-06 15:55 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R32.dll] C:\Program Files (x86)\Microsoft Office\Root\Office16\c2r32.dll 2019-12-06 17:08 - 2019-12-06 17:08 - 000065024 _____ (Python Software Foundation) [Brak podpisu cyfrowego] C:\Program Files\LibreOffice\program\python-core-3.5.9\lib\_socket.pyd 2019-12-06 17:08 - 2019-12-06 17:08 - 000019456 _____ (Python Software Foundation) [Brak podpisu cyfrowego] C:\Program Files\LibreOffice\program\python-core-3.5.9\lib\select.pyd 2021-09-01 12:23 - 2021-09-01 12:23 - 000355840 _____ (The cURL library, hxxp://curl.haxx.se/) [Brak podpisu cyfrowego] C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\LIBCURL.dll 2019-12-06 18:44 - 2019-12-06 18:44 - 000495616 _____ (The Document Foundation) [Brak podpisu cyfrowego] C:\Program Files\LibreOffice\program\pyuno.pyd 2019-05-22 13:57 - 2019-05-22 13:57 - 001014272 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files (x86)\EFI\OFASQ2\LIBEAY32.dll 2019-05-22 13:57 - 2019-05-22 13:57 - 000217600 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files (x86)\EFI\OFASQ2\SSLEAY32.dll 2021-09-01 12:23 - 2021-09-01 12:23 - 002286747 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\LIBEAY32.dll 2021-09-01 12:23 - 2021-09-01 12:23 - 000416627 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\SSLEAY32.dll 2022-03-30 10:47 - 2017-03-14 11:21 - 001016832 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Users\JODA DRUK\AppData\Roaming\Fiery Software Manager\extract\fsm-2022-03-30-10-47-41-197\FSM\LIBEAY32.dll 2022-03-30 10:47 - 2017-03-14 11:21 - 000200192 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Users\JODA DRUK\AppData\Roaming\Fiery Software Manager\extract\fsm-2022-03-30-10-47-41-197\FSM\SSLEAY32.dll ==================== Alternate Data Streams (filtrowane) ======== ==================== Tryb awaryjny (filtrowane) ================== ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer (filtrowane) ========== BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2022-03-07] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll [2019-05-22] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-05-22] (Oracle America, Inc. -> Oracle Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-03-07] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-03-07] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-03-07] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-03-07] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2018-04-12 01:38 - 2018-04-12 01:36 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts 2018-10-03 14:11 - 2018-10-26 08:29 - 000000599 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics 192.168.137.36 android-2fb0dccc0b49780c.mshome.net # 2018 11 4 1 6 42 44 828 192.168.137.86 d220-0840042328.mshome.net # 2018 11 5 2 6 29 55 323 192.168.137.1 DESKTOP-3KERSLJ.mshome.net # 2023 10 3 25 6 29 55 323 ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\PROGRA~2\Fiery\APPLIC~1\COMMON~1\EFI;C:\Program Files (x86)\Cuminas\Document Express DjVu Plug-in\;C:\Program Files\Hardwipe\;%INTEL_DEV_REDIST%redist\intel64\compiler;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\sK1 Project\UniConvertor-1.1.5\;C:\Program Files (x86)\sK1 Project\UniConvertor-1.1.5\DLLs;C:\PROGRA~2\COMMON~1\EFI;C:\PROGRA~2\COMMON~1\EFI\EFIES-~1; HKU\S-1-5-21-696834628-1386451695-4253651740-1003\Control Panel\Desktop\\Wallpaper -> C:\Users\JODA DRUK\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 1.1.1.1 - 1.0.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) HKLM\...\StartupApproved\StartupFolder: => "Virtual Router Manager.lnk" HKLM\...\StartupApproved\StartupFolder: => "Fiery Command WorkStation 5.lnk" HKLM\...\StartupApproved\StartupFolder: => "FTP Utility.lnk" HKLM\...\StartupApproved\Run: => "Reflect UI" HKLM\...\StartupApproved\Run32: => "IMSS" HKLM\...\StartupApproved\Run32: => "FRSSysTrayIcon" HKU\S-1-5-21-696834628-1386451695-4253651740-1003\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_ECE8D3D813F48291574DCD17432D0C4B" ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [UDP Query User{28968ECE-9ACE-4F60-A651-946D6A95D4BA}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [TCP Query User{7A99257E-5147-4732-8E36-CCFF8297D215}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [{06FF623A-5B51-4514-B3BA-19E7526EE0AC}] => (Allow) C:\Program Files (x86)\Canon\imagePROGRAF Device Setup Utility\cnwids.exe (Canon Inc. -> Canon) FirewallRules: [{88F4B6F6-CA13-4F7B-AC71-0640091D5EA1}] => (Allow) C:\Program Files (x86)\Canon\imagePROGRAF Device Setup Utility\cnwids.exe (Canon Inc. -> Canon) FirewallRules: [{A5E826F9-D6B3-419E-B020-EDA37F38F6AB}] => (Allow) LPort=21 FirewallRules: [UDP Query User{5FC43CCE-EDB3-4FB5-82FF-F764C72C7BFC}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [TCP Query User{A72C0E62-F239-40B2-BEDD-28504BC1DA3D}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{9B40F93E-D231-4E23-94AA-70FF591BC6BB}] => (Allow) C:\WINDOWS\system32\hasplms.exe (SafeNet Canada, Inc. -> SafeNet, Inc.) FirewallRules: [{E142CD85-513D-49FD-B2A0-969041BC8C3C}] => (Allow) C:\Program Files (x86)\Common Files\EFI\EFI ES-1000 Service\ES1000Server.exe (Electronics for Imaging, Inc.) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{F720C9BF-3E5A-4FF7-9159-BFE2DDD0B13A}C:\program files (x86)\fiery\applications3\common files\efi\impose3\pdfserver.exe] => (Allow) C:\program files (x86)\fiery\applications3\common files\efi\impose3\pdfserver.exe (Electronics For Imaging, Inc.) [Brak podpisu cyfrowego] FirewallRules: [UDP Query User{F738D842-04C2-4433-88F0-940141D227AB}C:\program files (x86)\fiery\applications3\common files\efi\impose3\pdfserver.exe] => (Allow) C:\program files (x86)\fiery\applications3\common files\efi\impose3\pdfserver.exe (Electronics For Imaging, Inc.) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{653364F4-76F3-4541-ACB6-0F943E4A7F77}C:\program files (x86)\fiery\applications3\command workstation 5\contents\winos\cws.exe] => (Allow) C:\program files (x86)\fiery\applications3\command workstation 5\contents\winos\cws.exe (EFI Software (Electronics for Imaging, Inc.) -> Electronics for Imaging, Inc) FirewallRules: [UDP Query User{3463700C-0095-432C-9C03-5035D5D5DF83}C:\program files (x86)\fiery\applications3\command workstation 5\contents\winos\cws.exe] => (Allow) C:\program files (x86)\fiery\applications3\command workstation 5\contents\winos\cws.exe (EFI Software (Electronics for Imaging, Inc.) -> Electronics for Imaging, Inc) FirewallRules: [{EAECF874-302C-487A-A1B5-AC3B10389A75}] => (Allow) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.EXE (Logitech Inc -> Logitech, Inc.) FirewallRules: [{07A6487A-7F79-4305-9776-FE1800F2E339}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{9D8FC403-2B06-45A6-BD4C-0D469CE81CFE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.181.604.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{02E2AA83-D710-4D2C-B6B0-BCB1DFEADF37}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.181.604.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{A85049B8-2263-4EB4-9137-C337D2035B0D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.181.604.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{FD234FE7-F2EA-4E8B-BE70-E637409C6426}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.181.604.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{ECCD8550-2FB0-4B56-BFBD-14CA9F977CF6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.181.604.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{B836D5B1-FC91-44FF-B0F9-E4A0DA3E1FB2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.181.604.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{084B08C6-5ABB-4231-9AF7-46DE84027C1B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.181.604.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{EE454FED-29DC-43CC-BC7F-182A04136344}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.181.604.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{C86F9855-C21C-4682-8921-D12E48D80D08}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{08373A50-3D3F-46C3-A407-4FDD7094E34E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{48836B61-7AC6-4884-9699-3F33699D3477}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{7159C9D4-A516-4384-8841-677663AD88FF}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{173B0969-6BEE-40B1-89A5-9187825D0421}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{557B098B-336B-437B-8EEE-7A035AE53D8D}] => (Allow) C:\Users\JODA DRUK\AppData\Roaming\Fiery Software Manager\extract\fsm-2022-03-30-10-47-41-197\FSM\Fiery Software Manager.exe (EFI Software (Electronics for Imaging, Inc.) -> ) ==================== Punkty Przywracania systemu ========================= UWAGA: Przywracanie systemu jest wyłączone (Total:110.78 GB) (Free:30.77 GB) (28%) ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ Name: Mysz Microsoft PS/2 Description: Mysz Microsoft PS/2 Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Standardowa klawiatura PS/2 Description: Standardowa klawiatura PS/2 Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318} Manufacturer: (Klawiatury standardowe) Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (03/30/2022 10:46:59 AM) (Source: CertEnroll) (EventID: 87) (User: ZARZĄDZANIE NT) Description: Rejestracja certyfikatu SCEP dla elementu WORKGROUP\DESKTOP-3KERSLJ$ za pośrednictwem elementu https://IFX-KeyId-78a409c457de6926f6df42c6114eb7e56a9b56e7.microsoftaik.azure.net/templates/Aik/scep nie powiodła się: SubmitDone Submit(Request): Bad Request {"Message":"Attestation statement cannot be verified, rejecting request. TPM firmware needs update."} HTTP/1.1 400 Bad Request Date: Wed, 30 Mar 2022 08:46:59 GMT Content-Length: 101 Content-Type: application/json; charset=utf-8 X-Content-Type-Options: nosniff Strict-Transport-Security: max-age=31536000;includeSubDomains x-ms-request-id: 331d94b3-f3ee-45a3-a14a-00d3ce3d7bc7 Metoda: POST(3156ms) Etap: SubmitDone Nieprawidłowe żądanie (400). 0x80190190 (-2145844848 HTTP_E_STATUS_BAD_REQUEST) Error: (03/30/2022 10:34:46 AM) (Source: CertEnroll) (EventID: 87) (User: ZARZĄDZANIE NT) Description: Rejestracja certyfikatu SCEP dla elementu WORKGROUP\DESKTOP-3KERSLJ$ za pośrednictwem elementu https://IFX-KeyId-78a409c457de6926f6df42c6114eb7e56a9b56e7.microsoftaik.azure.net/templates/Aik/scep nie powiodła się: SubmitDone Submit(Request): Bad Request {"Message":"Attestation statement cannot be verified, rejecting request. TPM firmware needs update."} HTTP/1.1 400 Bad Request Date: Wed, 30 Mar 2022 08:34:47 GMT Content-Length: 101 Content-Type: application/json; charset=utf-8 X-Content-Type-Options: nosniff Strict-Transport-Security: max-age=31536000;includeSubDomains x-ms-request-id: cef2959e-cbcb-4c1c-a8c5-aa2b8ada2a40 Metoda: POST(2562ms) Etap: SubmitDone Nieprawidłowe żądanie (400). 0x80190190 (-2145844848 HTTP_E_STATUS_BAD_REQUEST) Error: (03/30/2022 09:17:46 AM) (Source: CertEnroll) (EventID: 87) (User: ZARZĄDZANIE NT) Description: Rejestracja certyfikatu SCEP dla elementu WORKGROUP\DESKTOP-3KERSLJ$ za pośrednictwem elementu https://IFX-KeyId-78a409c457de6926f6df42c6114eb7e56a9b56e7.microsoftaik.azure.net/templates/Aik/scep nie powiodła się: SubmitDone Submit(Request): Bad Request {"Message":"Attestation statement cannot be verified, rejecting request. TPM firmware needs update."} HTTP/1.1 400 Bad Request Date: Wed, 30 Mar 2022 07:17:47 GMT Content-Length: 101 Content-Type: application/json; charset=utf-8 X-Content-Type-Options: nosniff Strict-Transport-Security: max-age=31536000;includeSubDomains x-ms-request-id: c1cc9377-7624-4b1b-84c8-d87bbfd198a1 Metoda: POST(2718ms) Etap: SubmitDone Nieprawidłowe żądanie (400). 0x80190190 (-2145844848 HTTP_E_STATUS_BAD_REQUEST) Error: (03/30/2022 09:10:49 AM) (Source: CertEnroll) (EventID: 87) (User: ZARZĄDZANIE NT) Description: Rejestracja certyfikatu SCEP dla elementu WORKGROUP\DESKTOP-3KERSLJ$ za pośrednictwem elementu https://IFX-KeyId-78a409c457de6926f6df42c6114eb7e56a9b56e7.microsoftaik.azure.net/templates/Aik/scep nie powiodła się: SubmitDone Submit(Request): Bad Request {"Message":"Attestation statement cannot be verified, rejecting request. TPM firmware needs update."} HTTP/1.1 400 Bad Request Date: Wed, 30 Mar 2022 07:10:49 GMT Content-Length: 101 Content-Type: application/json; charset=utf-8 X-Content-Type-Options: nosniff Strict-Transport-Security: max-age=31536000;includeSubDomains x-ms-request-id: a7127d10-82b8-4462-bebe-e4090925dd77 Metoda: POST(2953ms) Etap: SubmitDone Nieprawidłowe żądanie (400). 0x80190190 (-2145844848 HTTP_E_STATUS_BAD_REQUEST) Error: (03/30/2022 09:07:09 AM) (Source: CertEnroll) (EventID: 87) (User: ZARZĄDZANIE NT) Description: Rejestracja certyfikatu SCEP dla elementu WORKGROUP\DESKTOP-3KERSLJ$ za pośrednictwem elementu https://IFX-KeyId-78a409c457de6926f6df42c6114eb7e56a9b56e7.microsoftaik.azure.net/templates/Aik/scep nie powiodła się: SubmitDone Submit(Request): Bad Request {"Message":"Attestation statement cannot be verified, rejecting request. TPM firmware needs update."} HTTP/1.1 400 Bad Request Date: Wed, 30 Mar 2022 07:07:10 GMT Content-Length: 101 Content-Type: application/json; charset=utf-8 X-Content-Type-Options: nosniff Strict-Transport-Security: max-age=31536000;includeSubDomains x-ms-request-id: 18c592da-09ff-468f-9d17-c4fbb3c9fdab Metoda: POST(2641ms) Etap: SubmitDone Nieprawidłowe żądanie (400). 0x80190190 (-2145844848 HTTP_E_STATUS_BAD_REQUEST) Dziennik System: ============= Error: (03/30/2022 10:48:41 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi HP Support Solutions Framework Service z powodu następującego błędu: Nie można odnaleźć określonego pliku. Error: (03/30/2022 10:46:39 AM) (Source: SNMP) (EventID: 1500) (User: ) Description: The SNMP Service encountered an error while accessing the registry key SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration. Error: (03/30/2022 10:46:13 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-3KERSLJ) Description: Model DCOM odebrał błąd 1084 podczas próby uruchomienia usługi WSearch z argumentami Niedostępny w celu uruchomienia serwera: {E48EDA45-43C6-48E0-9323-A7B2067D9CD5} Error: (03/30/2022 10:46:13 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-3KERSLJ) Description: Model DCOM odebrał błąd 1084 podczas próby uruchomienia usługi WSearch z argumentami Niedostępny w celu uruchomienia serwera: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Error: (03/30/2022 10:44:19 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-3KERSLJ) Description: Model DCOM odebrał błąd 1084 podczas próby uruchomienia usługi ShellHWDetection z argumentami Niedostępny w celu uruchomienia serwera: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (03/30/2022 10:44:18 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-3KERSLJ) Description: Model DCOM odebrał błąd 1084 podczas próby uruchomienia usługi WSearch z argumentami Niedostępny w celu uruchomienia serwera: {9E175B6D-F52A-11D8-B9A5-505054503030} Error: (03/30/2022 10:44:18 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-3KERSLJ) Description: Model DCOM odebrał błąd 1084 podczas próby uruchomienia usługi WSearch z argumentami Niedostępny w celu uruchomienia serwera: {9E175B6D-F52A-11D8-B9A5-505054503030} Error: (03/30/2022 10:44:18 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-3KERSLJ) Description: Model DCOM odebrał błąd 1084 podczas próby uruchomienia usługi WSearch z argumentami Niedostępny w celu uruchomienia serwera: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Windows Defender: ================ Date: 2022-03-28 09:01:36 Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {3DF4A6BB-54B5-49EB-8D0C-482C513DA966} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Date: 2022-03-28 08:32:25 Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {D216EAC4-18B5-4ACD-8644-254BCB726B19} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Date: 2022-03-25 08:24:58 Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {F10B3378-A71F-4F44-BD3B-1B6835F2AE46} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Date: 2022-03-24 09:01:24 Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {C82D1B54-3088-45FF-A6EC-D7CED3B6FFCC} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Date: 2022-03-23 08:50:34 Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {AEBA8146-D439-4C78-A7A0-8FBBDCEEB4B0} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Event[0]: Date: 2022-03-30 10:38:25 Description: Agent ochrony w czasie rzeczywistym produktu Program antywirusowy Microsoft Defender wykrył błąd i jego uruchomienie nie powiodło się. Funkcja: Przy dostępie Kod błędu: 0x8007043c Opis błędu: Tej usługi nie można uruchomić w trybie awaryjnym Przyczyna: Analiza zabezpieczeń dla oprogramowania chroniącego przed złośliwym kodem przestała działać z nieznanej przyczyny. W niektórych przypadkach problem można rozwiązać, uruchamiając ponownie usługę. Date: 2022-03-30 10:26:35 Description: Agent ochrony w czasie rzeczywistym produktu Program antywirusowy Microsoft Defender wykrył błąd i jego uruchomienie nie powiodło się. Funkcja: Przy dostępie Kod błędu: 0x8007043c Opis błędu: Tej usługi nie można uruchomić w trybie awaryjnym Przyczyna: Analiza zabezpieczeń dla oprogramowania chroniącego przed złośliwym kodem przestała działać z nieznanej przyczyny. W niektórych przypadkach problem można rozwiązać, uruchamiając ponownie usługę. Date: 2022-03-30 09:11:53 Description: Agent ochrony w czasie rzeczywistym produktu Program antywirusowy Microsoft Defender wykrył błąd i jego uruchomienie nie powiodło się. Funkcja: Przy dostępie Kod błędu: 0x8007043c Opis błędu: Tej usługi nie można uruchomić w trybie awaryjnym Przyczyna: Analiza zabezpieczeń dla oprogramowania chroniącego przed złośliwym kodem przestała działać z nieznanej przyczyny. W niektórych przypadkach problem można rozwiązać, uruchamiając ponownie usługę. Date: 2022-03-30 09:09:09 Description: Agent ochrony w czasie rzeczywistym produktu Program antywirusowy Microsoft Defender wykrył błąd i jego uruchomienie nie powiodło się. Funkcja: Przy dostępie Kod błędu: 0x8007043c Opis błędu: Tej usługi nie można uruchomić w trybie awaryjnym Przyczyna: Analiza zabezpieczeń dla oprogramowania chroniącego przed złośliwym kodem przestała działać z nieznanej przyczyny. W niektórych przypadkach problem można rozwiązać, uruchamiając ponownie usługę. CodeIntegrity: =============== Date: 2022-03-29 08:47:38 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Statystyki pamięci =========================== BIOS: Hewlett-Packard L01 v02.57 12/11/2014 Płyta główna: Hewlett-Packard 18E4 Procesor: Intel(R) Core(TM) i5-4570 CPU @ 3.20GHz Procent pamięci w użyciu: 58% Całkowita pamięć fizyczna: 8098.36 MB Dostępna pamięć fizyczna: 3358.28 MB Całkowita pamięć wirtualna: 9378.36 MB Dostępna pamięć wirtualna: 4348.02 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:110.78 GB) (Free:30.77 GB) NTFS Drive d: (Dane) (Fixed) (Total:465.76 GB) (Free:400.72 GB) NTFS \\?\Volume{278183ba-0000-0000-0000-100000000000}\ (Zastrzeżone przez system) (Fixed) (Total:1.01 GB) (Free:0.49 GB) NTFS ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 111.8 GB) (Disk ID: 278183BA) Partition 1: (Active) - (Size=1 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=110.8 GB) - (Type=07 NTFS) ========================================================== Disk: 1 (Size: 465.8 GB) (Disk ID: 29438132) Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt =======================