Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 06-10-2023 Uruchomiony przez koczu (20-10-2023 09:09:45) Uruchomiony z C:\Users\koczu\Downloads Microsoft Windows 11 Home Wersja 22H2 22621.2428 (X64) (2023-05-27 04:54:45) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= (Załączenie wejścia w fixlist spowoduje jego usunięcie.) Administrator (S-1-5-21-1183434295-1383633140-3315740124-500 - Administrator - Disabled) Gość (S-1-5-21-1183434295-1383633140-3315740124-501 - Limited - Disabled) koczu (S-1-5-21-1183434295-1383633140-3315740124-1002 - Administrator - Enabled) => C:\Users\koczu Konto domyślne (S-1-5-21-1183434295-1383633140-3315740124-503 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-1183434295-1383633140-3315740124-504 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: McAfee (Enabled - Up to date) {17E6E93C-6841-5FC7-DEB8-480FDC929279} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: McAfee VirusScan (Enabled - Up to date) {9D4501E6-72F6-2877-C789-89AF6F535B2C} FW: McAfee Firewall (Enabled) {A57E80C3-3899-292F-ECD6-209A91801C57} FW: McAfee (Enabled) {2FDD6819-222E-5E9F-F5E7-E13A2241D502} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) AdGuard (HKLM-x32\...\{685F6AB3-7C61-42D1-AE5B-3864E48D1035}) (Version: 7.15.4385.0 - Adguard Software Limited) Hidden AdGuard (HKLM-x32\...\{d00eb186-dff0-4e94-9e29-6b3f533bd161}) (Version: 7.15.4385.0 - Adguard Software Limited) Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1033-FF00-7760-BC15014EA700}) (Version: 23.006.20320 - Adobe) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601053}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden Arkusze (HKU\S-1-5-21-1183434295-1383633140-3315740124-1002\...\2471ef650f36357af820e508f0c0555f) (Version: 1.0 - Google\Chrome) Bing Bar (HKLM-x32\...\{3611CA6C-5FCA-4900-A329-6A118123CCFC}) (Version: 7.1.355.0 - Microsoft Corporation) Coinomi Wallet (HKLM\...\{EE5A628F-810E-44CF-B45E-CA24076FF104}_is1) (Version: 1.3.0 - Coinomi Holdings Ltd) Dokumenty (HKU\S-1-5-21-1183434295-1383633140-3315740124-1002\...\66879feed438e2bf71fb91175495e33d) (Version: 1.0 - Google\Chrome) Dysk Google (HKU\S-1-5-21-1183434295-1383633140-3315740124-1002\...\6d4931ccbbc97bf7ba770bc2b7f22710) (Version: 1.0 - Google\Chrome) Gmail (HKU\S-1-5-21-1183434295-1383633140-3315740124-1002\...\8aa7305ae1a6eeb5275dd2a8fc527212) (Version: 1.0 - Google\Chrome) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 118.0.5993.89 - Google LLC) HP Deskjet 1050 J410 series — badanie mające na celu poprawę produktów (HKLM\...\{851E98B9-1D7E-4217-A07B-413EBC760EB2}) (Version: 28.1.1333.0 - Hewlett-Packard Co.) HP Deskjet 1050 J410 series — podstawowe oprogramowanie urządzenia (HKLM\...\{202E1093-EB09-46ED-9717-5A48077308B5}) (Version: 28.1.1333.0 - Hewlett-Packard Co.) HP Deskjet 1050 J410 series Pomoc (HKLM-x32\...\{5C90D8CF-F12A-41C6-9007-3B651A1F0D78}) (Version: 140.0.66.66 - Hewlett Packard) HP Update (HKLM-x32\...\{6F1C00D2-25C2-4CBA-8126-AE9A6E2E9CD5}) (Version: 5.003.003.001 - Hewlett-Packard) McAfee (HKLM\...\McAfee.WPS) (Version: 1.11.279.1 - McAfee, LLC) Microsoft .NET Host - 6.0.23 (x64) (HKLM\...\{1870DD0E-1583-44FF-8265-A9D1692CD89C}) (Version: 48.92.2594 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 6.0.23 (x64) (HKLM\...\{995CC82C-E3E8-4BB5-9AB8-2B95C611D59D}) (Version: 48.92.2594 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 6.0.23 (x64) (HKLM\...\{7C0437DA-6703-47F1-A116-CD138B0768AD}) (Version: 48.92.2594 - Microsoft Corporation) Hidden Microsoft 365 - pl-pl (HKLM\...\O365HomePremRetail - pl-pl) (Version: 16.0.16827.20166 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 118.0.2088.46 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1183434295-1383633140-3315740124-1002\...\OneDriveSetup.exe) (Version: 23.204.1001.0003 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{AF47B488-9780-4AB5-A97E-762E28013CA6}) (Version: 5.71.0.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29334 (HKLM-x32\...\{b2d0f752-adc5-496e-8f70-8669de01f746}) (Version: 14.28.29334.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.30.30704 (HKLM-x32\...\{57a73df6-4ba9-4c1d-bbbb-517289ff6c13}) (Version: 14.30.30704.0 - Microsoft Corporation) Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29334 (HKLM-x32\...\{14C49FC8-3E9B-4F29-8526-26629B5CF30B}) (Version: 14.28.29334 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29334 (HKLM-x32\...\{0D01A812-82A1-481F-8546-8E28E976F8DF}) (Version: 14.28.29334 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Additional Runtime - 14.30.30704 (HKLM\...\{6DB765A8-05AF-49A1-A71D-6F645EE3CE41}) (Version: 14.30.30704 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.30.30704 (HKLM\...\{662A0088-6FCD-45DD-9EA7-68674058AED5}) (Version: 14.30.30704 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 6.0.23 (x64) (HKLM\...\{AA393199-374C-4AD1-9245-6CBB254D8146}) (Version: 48.92.2594 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 6.0.23 (x64) (HKLM-x32\...\{fbe8ac13-7063-40e6-81dd-7ddcc3781ecd}) (Version: 6.0.23.32930 - Microsoft Corporation) Need for Speed™ Most Wanted (HKLM-x32\...\{A48B9CD8-C2BA-4EC9-0081-7260D238C7CF}) (Version: - ) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.16827.20130 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.16827.20130 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0415-1000-0000000FF1CE}) (Version: 16.0.16827.20130 - Microsoft Corporation) Hidden Prezentacje (HKU\S-1-5-21-1183434295-1383633140-3315740124-1002\...\06652e6ba840588e73a4873c76b61c9e) (Version: 1.0 - Google\Chrome) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Środowisko uruchomieniowe Microsoft Edge WebView2 (HKLM-x32\...\Microsoft EdgeWebView) (Version: 118.0.2088.46 - Microsoft Corporation) ViGEm Bus Driver (HKLM\...\{9C581C76-2D68-40F8-AA6F-94D3C5215C05}) (Version: 1.21.442 - Nefarius Software Solutions e.U.) WebAdvisor firmy McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.841 - McAfee, LLC) YouTube (HKU\S-1-5-21-1183434295-1383633140-3315740124-1002\...\fad93342ef3e0a734d8283b7de1b29d5) (Version: 1.0 - Google\Chrome) Packages: ========= AppUp.IntelGraphicsExperience -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5185.0_x64__8j3eq9eme6ctt [2023-10-05] (INTEL CORP) [Startup Task] AudioWizard -> C:\Program Files\WindowsApps\ICEpower.AudioWizard_1.5.31.0_x64__dxp88312j1fgj [2023-10-02] (ICEpower) Cortana -> C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2308.1005.0_x64__8wekyb3d8bbwe [2023-08-21] (Microsoft Corporation) Dev Home -> C:\Program Files\WindowsApps\Microsoft.Windows.DevHome_0.600.285.0_x64__8wekyb3d8bbwe [2023-10-18] (Microsoft Corporation) Dodatek Aparat multimediów dla aplikacji Zdjęcia -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-10-22] (Microsoft Corporation) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_149.1.1056.0_x64__v10z8vjag6ke6 [2023-09-30] (HP Inc.) Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2310.10002.0_x64__8wekyb3d8bbwe [2023-10-13] (Microsoft Corporation) [Startup Task] Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2023-09-30] (Microsoft Corp.) Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_53.10829.535.0_x64__8wekyb3d8bbwe [2023-10-05] (Microsoft Corporation) Microsoft.WindowsAppRuntime.CBS -> C:\WINDOWS\SystemApps\Microsoft.WindowsAppRuntime.CBS_8wekyb3d8bbwe [2023-10-13] (Microsoft Corporation) MyASUS -> C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_3.1.26.0_x64__qmba6cd70vzyy [2023-09-30] (ASUSTeK COMPUTER INC.) Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.36.273.0_x64__dt26b99r8h8gj [2023-06-09] (Realtek Semiconductor Corp) Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0 [2023-10-13] (Spotify AB) [Startup Task] Unzip: Zip & RAR Extractor -> C:\Program Files\WindowsApps\57868Codaapp.37800EEDB46F1_1.0.11.0_x64__4bn2s5v6tep1y [2023-10-13] (UNO UNO UNO Go) [Startup Task] WinAppRuntime.Main.1.3 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.3_3000.934.1904.0_x64__8wekyb3d8bbwe [2023-09-08] (Microsoft Corp.) WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_4000.986.611.0_x64__8wekyb3d8bbwe [2023-10-01] (Microsoft Corp.) Windows App Runtime DDLM 3000.882.2207.0-x6 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.3000.882.2207.0-x6_3000.882.2207.0_x64__8wekyb3d8bbwe [2023-09-07] (Microsoft Corporation) Windows App Runtime DDLM 3000.882.2207.0-x8 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.3000.882.2207.0-x8_3000.882.2207.0_x86__8wekyb3d8bbwe [2023-09-07] (Microsoft Corporation) Windows Feature Experience Pack -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.FileExp_cw5n1h2txyewy [2023-10-13] (Microsoft Corporation) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-1183434295-1383633140-3315740124-1002_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe) ContextMenuHandlers1: [McCtxMenu] -> {4ADAAC88-E1BD-424F-816D-15E059007938} => C:\Program Files\McAfee\WPS\1.11.279.1\mc-ctxmnu.dll [2023-09-07] (McAfee, LLC -> McAfee, LLC) ContextMenuHandlers6: [McCtxMenu] -> {4ADAAC88-E1BD-424F-816D-15E059007938} => C:\Program Files\McAfee\WPS\1.11.279.1\mc-ctxmnu.dll [2023-09-07] (McAfee, LLC -> McAfee, LLC) ==================== Codecs (filtrowane) ==================== ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\koczu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Arkusze.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=fhihpiojkbmbpdjeoajapmgkhlnakfjf ShortcutWithArgument: C:\Users\koczu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Dokumenty.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=mpnpojknpmmopombnjdcgaaiekajbnjb ShortcutWithArgument: C:\Users\koczu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Dysk Google.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=aghbiahbpaijignceidepookljebhfak ShortcutWithArgument: C:\Users\koczu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Gmail.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=fmgjjmmmlfnkbppncabfkddbjimcfncm ShortcutWithArgument: C:\Users\koczu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Prezentacje.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=kefjledonklijopmnomlcbpllchaibag ShortcutWithArgument: C:\Users\koczu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\YouTube.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=agimnkijcaahngcdmfeangaknmldooml ==================== Załadowane moduły (filtrowane) ============= 2020-11-21 03:23 - 2020-11-21 03:23 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll 2020-11-21 03:23 - 2020-11-21 03:23 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll ==================== Alternate Data Streams (filtrowane) ======== ==================== Tryb awaryjny (filtrowane) ================== ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer (filtrowane) ========== BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-10-03] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25] (Microsoft Corporation -> Microsoft Corporation.) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll [2012-01-25] (Microsoft Corporation -> Microsoft Corporation.) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-10-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-10-03] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-10-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-10-03] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-10-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-10-03] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-10-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-10-03] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts 2023-06-06 06:17 - 2023-10-02 15:09 - 000000568 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1183434295-1383633140-3315740124-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\koczu\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 192.168.254.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 1) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{F5DCE434-B052-4F2C-815E-D70000028013}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{3AB65012-7010-497D-A64C-488217936FDC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe => Brak pliku FirewallRules: [{CF5D2175-0E3A-4657-A66F-0D9F49B9988B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe => Brak pliku FirewallRules: [{8EFBB5FA-4AB0-4C71-A295-D37475016D53}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{19CDEFCD-05EA-488A-8D72-5F9FECA2630D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{E2A1AD6A-5292-459A-8673-4781F175A29A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{F483FA47-DAD3-43FF-8CAD-EBFB4651D7D7}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{911CEFD6-9899-4898-B802-B13816396DDE}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe => Brak pliku FirewallRules: [{ACA7F8F7-2824-4EEE-9745-0407564FBC5B}] => (Allow) C:\Program Files\WindowsApps\microsoftteams_22183.300.1431.9295_x64__8wekyb3d8bbwe\msteams.exe => Brak pliku FirewallRules: [{F974D2A6-E9BE-494C-ACA0-9961E69306F6}] => (Allow) C:\Program Files\WindowsApps\microsoftteams_22183.300.1431.9295_x64__8wekyb3d8bbwe\msteams.exe => Brak pliku FirewallRules: [{A118A968-6C38-402E-9D06-FC84EEA173AD}] => (Allow) C:\Program Files\HP\HP Deskjet 1050 J410 series\Bin\USBSetup.exe (HP Inc. -> Hewlett-Packard Co.) FirewallRules: [{C73301ED-E698-4373-BDB4-B2DDCD93B220}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Portal 2\portal2.exe () [Brak podpisu cyfrowego] FirewallRules: [{25DFD942-7C37-478B-87F0-86DAB1AAABFD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Portal 2\portal2.exe () [Brak podpisu cyfrowego] FirewallRules: [{15A2CDDE-7B04-4137-B9DC-B8B17CE438D9}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_3.1.26.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.) FirewallRules: [{8890F4C2-F0CB-4E05-B971-7E7E9FB66537}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_3.1.26.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.) FirewallRules: [{2698E048-743D-4245-A388-C73E724E528A}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_3.1.26.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.) FirewallRules: [{1160309A-6CE4-4C2B-B10B-39BEDDDE2E47}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_3.1.26.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.) FirewallRules: [TCP Query User{77A2D7A6-9DDE-4D84-951B-92A2E73065E7}C:\gry\counter-strike 1.6 v43\hl.exe] => (Allow) C:\gry\counter-strike 1.6 v43\hl.exe => Brak pliku FirewallRules: [UDP Query User{F7814886-1B8D-40BA-861D-0EABE1111688}C:\gry\counter-strike 1.6 v43\hl.exe] => (Allow) C:\gry\counter-strike 1.6 v43\hl.exe => Brak pliku FirewallRules: [{B01F314A-0A0D-45D4-9A31-C83F6854248C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{20FB7C5A-37C0-448B-9B8F-5DCC637F7EC0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{E97D98D3-50FF-4AC7-9604-C41C0B2FE6FF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{35BBFEC9-CBE1-428F-8B8A-0B529F44D6FC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{7D6B709C-C038-4D82-983B-621AFC2E9D3D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{BFDCA001-B102-47D7-B2D0-F0691375A3C4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{B850EAE5-204E-434E-86D9-ED1D11292023}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{C2959AB3-3072-4B0D-8B68-DFA5716DEB98}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{BE6DBEE3-41BA-4269-B374-B1575730415D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{163819C7-E114-4E59-BC90-87812625E9BD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{D2C64CB3-7542-475B-A31B-042FC7CB6FC8}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23258.704.2395.9691_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{AAA8D0F5-E4F9-4A0E-8929-BEE6470DE9A5}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23258.704.2395.9691_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{DFE2D8A9-FC27-45DD-9850-614087729652}] => (Allow) C:\Program Files (x86)\AdGuard\AdguardSvc.exe (Adguard Software Limited -> Adguard Software Limited) FirewallRules: [{A2E72695-E9A3-4AE7-88EA-8DF80DDDDDED}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\118.0.2088.46\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{3EAC094D-62B5-4003-94B1-4A5CE74EACCE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.106.3210.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{4C32BD4E-9AE6-468A-8D30-65F4A9E90C5D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.106.3210.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{1D718E8A-2958-4AE8-9908-5CC2EF94C136}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.106.3210.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{CA11214C-8DB1-48FE-B72B-C0B9B64C9CA6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.106.3210.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{E04FE35B-4E37-4702-9A48-19D1B9B1BE0E}] => (Allow) C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_0599a970f71746fa\ASUSSwitch\AsusSwitchNet.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) FirewallRules: [{3B94B044-4254-4CAA-A04B-C838E3C26915}] => (Allow) C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_0599a970f71746fa\ASUSLinkNear\AsusLinkNear.exe (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) FirewallRules: [{89924C1A-7A34-4C80-86B5-EA2A79C9725B}] => (Allow) C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_0599a970f71746fa\ASUSSwitch\AsusSwitchNetMDNS.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) FirewallRules: [{5D24DA88-DCC0-4027-8F1B-DCB81C5F1242}] => (Allow) C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_0599a970f71746fa\ASUSLinkRemote\AsusLinkRemoteAgent.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) FirewallRules: [{4F4AD705-2513-4D2A-AC9D-F6ADA915D56A}] => (Allow) C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_0599a970f71746fa\ASUSLinkRemote\AsusLinkRemoteAgent.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) FirewallRules: [{70F5CB0B-9E7A-44C3-A3DF-3F2232F49990}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Punkty Przywracania systemu ========================= 17-10-2023 20:36:38 Zainstalowany program DirectX 9.0 19-10-2023 08:12:44 Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.30.30704 ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (10/19/2023 08:13:18 AM) (Source: VSS) (EventID: 13) (User: ) Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} i nazwą CEventSystem. [0x8007045b, Trwa proces zamykania systemu. ] Error: (10/19/2023 08:13:13 AM) (Source: Application Error) (EventID: 1000) (User: KROK) Description: Nazwa aplikacji powodującej błąd: DS4Windows.exe, wersja: 3.2.17.0, sygnatura czasowa: 0x64e81669 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 10.0.22621.2428, sygnatura czasowa: 0x9223bda8 Kod wyjątku: 0xc000041d Przesunięcie błędu: 0x0000000000064ffc Identyfikator procesu powodującego błąd: 0x0x1a18 Godzina uruchomienia aplikacji powodującej błąd: 0x0x1da02531ff47938 Ścieżka aplikacji powodującej błąd: C:\Users\koczu\Downloads\DS4Windows_3.2.7_x64\DS4Windows\DS4Windows.exe Ścieżka modułu powodującego błąd: C:\WINDOWS\System32\KERNELBASE.dll Identyfikator raportu: de819b2c-ac19-40f2-add7-a702211ab53d Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (10/19/2023 08:13:10 AM) (Source: Application Error) (EventID: 1000) (User: KROK) Description: Nazwa aplikacji powodującej błąd: DS4Windows.exe, wersja: 3.2.17.0, sygnatura czasowa: 0x64e81669 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00007ffc4336d389 Identyfikator procesu powodującego błąd: 0x0x1a18 Godzina uruchomienia aplikacji powodującej błąd: 0x0x1da02531ff47938 Ścieżka aplikacji powodującej błąd: C:\Users\koczu\Downloads\DS4Windows_3.2.7_x64\DS4Windows\DS4Windows.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu: 54dc60eb-619a-4fea-9458-d101fe7c6480 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (10/19/2023 08:13:10 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application: DS4Windows.exe CoreCLR Version: 6.0.2323.48002 .NET Version: 6.0.23 Description: The process was terminated due to an unhandled exception. Exception Info: System.NullReferenceException: Object reference not set to an instance of an object. at DS4WinWPF.App.Application_SessionEnding(Object sender, SessionEndingCancelEventArgs e) at System.Windows.Application.OnSessionEnding(SessionEndingCancelEventArgs e) at System.Windows.Application.WmQueryEndSession(IntPtr lParam, IntPtr& refInt) at System.Windows.Application.AppFilterMessage(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam, Boolean& handled) at MS.Win32.HwndWrapper.WndProc(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam, Boolean& handled) at MS.Win32.HwndSubclass.DispatcherCallbackOperation(Object o) at System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs) at System.Windows.Threading.ExceptionWrapper.TryCatchWhen(Object source, Delegate callback, Object args, Int32 numArgs, Delegate catchHandler) at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(DispatcherPriority priority, TimeSpan timeout, Delegate method, Object args, Int32 numArgs) at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam) Error: (10/19/2023 08:01:48 AM) (Source: .NET Runtime) (EventID: 1023) (User: ) Description: Description: A .NET application failed. Application: DS4Windows.exe Path: C:\Users\koczu\Downloads\DS4Windows_3.2.7_x64\DS4Windows\DS4Windows.exe Message: You must install .NET to run this application. App: C:\Users\koczu\Downloads\DS4Windows_3.2.7_x64\DS4Windows\DS4Windows.exe Architecture: x64 App host version: 6.0.13 .NET location: Not found Learn about runtime installation: https://aka.ms/dotnet/app-launch-failed Download the .NET runtime: https://aka.ms/dotnet-core-applaunch?missing_runtime=true&arch=x64&rid=win10-x64&apphost_version=6.0.13 Error: (10/19/2023 07:58:44 AM) (Source: .NET Runtime) (EventID: 1023) (User: ) Description: Description: A .NET application failed. Application: DS4Windows.exe Path: C:\Users\koczu\Downloads\DS4Windows_3.2.7_x64\DS4Windows\DS4Windows.exe Message: You must install .NET to run this application. App: C:\Users\koczu\Downloads\DS4Windows_3.2.7_x64\DS4Windows\DS4Windows.exe Architecture: x64 App host version: 6.0.13 .NET location: Not found Learn about runtime installation: https://aka.ms/dotnet/app-launch-failed Download the .NET runtime: https://aka.ms/dotnet-core-applaunch?missing_runtime=true&arch=x64&rid=win10-x64&apphost_version=6.0.13 Error: (10/17/2023 08:35:29 PM) (Source: Microsoft Office 16) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x305; CorrelationId: {F39EE510-5458-4E9A-96B0-518B29C181CC} Error: (10/16/2023 09:46:57 AM) (Source: Application Error) (EventID: 1000) (User: KROK) Description: Nazwa aplikacji powodującej błąd: msteamsupdate.exe, wersja: 23258.704.2395.9691, sygnatura czasowa: 0x650c74c5 Nazwa modułu powodującego błąd: msteamsupdate.exe, wersja: 23258.704.2395.9691, sygnatura czasowa: 0x650c74c5 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000000641cb Identyfikator procesu powodującego błąd: 0x0x7ec Godzina uruchomienia aplikacji powodującej błąd: 0x0x1da0004ef436d11 Ścieżka aplikacji powodującej błąd: C:\Program Files\WindowsApps\MicrosoftTeams_23258.704.2395.9691_x64__8wekyb3d8bbwe\msteamsupdate.exe Ścieżka modułu powodującego błąd: C:\Program Files\WindowsApps\MicrosoftTeams_23258.704.2395.9691_x64__8wekyb3d8bbwe\msteamsupdate.exe Identyfikator raportu: f91a8bdf-8673-42ee-8426-6c92dcf43899 Pełna nazwa pakietu powodującego błąd: MicrosoftTeams_23258.704.2395.9691_x64__8wekyb3d8bbwe Identyfikator aplikacji względem pakietu powodującego błąd: msteamsupdate Dziennik System: ============= Error: (10/19/2023 12:14:29 PM) (Source: DCOM) (EventID: 10010) (User: KROK) Description: Serwer {8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (10/19/2023 12:11:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Ds3Service z powodu następującego błędu: Nie można odnaleźć określonego pliku. Error: (10/19/2023 08:56:42 AM) (Source: DCOM) (EventID: 10010) (User: KROK) Description: Serwer Windows.Media.Capture.Internal.AppCaptureShell nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (10/19/2023 08:17:28 AM) (Source: DCOM) (EventID: 10010) (User: KROK) Description: Serwer {8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (10/19/2023 08:13:37 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Ds3Service z powodu następującego błędu: Nie można odnaleźć określonego pliku. Error: (10/19/2023 08:13:10 AM) (Source: DCOM) (EventID: 10010) (User: KROK) Description: Serwer {FD06603A-2BDF-4BB1-B7DF-5DC68F353601} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (10/19/2023 08:13:10 AM) (Source: DCOM) (EventID: 10010) (User: KROK) Description: Serwer {FD06603A-2BDF-4BB1-B7DF-5DC68F353601} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (10/15/2023 06:32:10 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Ds3Service z powodu następującego błędu: Nie można odnaleźć określonego pliku. Windows Defender: ================Event[0] Date: 2023-05-27 06:55:55 Description: Agent ochrony w czasie rzeczywistym produktu Program antywirusowy Microsoft Defender wykrył błąd i jego uruchomienie nie powiodło się. Funkcja: Przy dostępie Kod błędu: 0x80070057 Opis błędu: Parametr jest niepoprawny. Przyczyna: Analiza zabezpieczeń dla oprogramowania chroniącego przed złośliwym kodem przestała działać z nieznanej przyczyny. W niektórych przypadkach problem można rozwiązać, uruchamiając ponownie usługę. CodeIntegrity: =============== Date: 2023-10-20 09:09:14 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\WPS\1.11.279.1\mc-sec-plugin-x64.dll that did not meet the Windows signing level requirements. Date: 2023-10-20 09:02:38 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\WPS\1.11.279.1\mc-sec-plugin-x64.dll that did not meet the Windows signing level requirements. ==================== Statystyki pamięci =========================== BIOS: American Megatrends Inc. X515JAB.307 02/24/2022 Płyta główna: ASUSTeK COMPUTER INC. X515JAB Procesor: Intel(R) Core(TM) i5-1035G1 CPU @ 1.00GHz Procent pamięci w użyciu: 70% Całkowita pamięć fizyczna: 7930.89 MB Dostępna pamięć fizyczna: 2358.17 MB Całkowita pamięć wirtualna: 11386.89 MB Dostępna pamięć wirtualna: 4561.19 MB ==================== Dyski ================================ Drive c: (OS) (Fixed) (Total:475.49 GB) (Free:352.17 GB) (Model: Intel Optane H10 with SSD 512GB) NTFS \\?\Volume{76de9b79-4759-4a5c-a5a6-dfcea5ffdf17}\ (RECOVERY) (Fixed) (Total:0.98 GB) (Free:0.08 GB) NTFS \\?\Volume{6fe897d1-3c10-4e82-9c1f-665c0167765f}\ (MYASUS) (Fixed) (Total:0.19 GB) (Free:0.13 GB) FAT32 \\?\Volume{7f37b87a-a3a8-4da7-a0e0-52a6d82eebe5}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.21 GB) FAT32 ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (Size: 476.9 GB) (Disk ID: 39C97A24) Partition: GPT. ==================== Koniec Addition.txt =======================