Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 23-02-2021 Uruchomiony przez wikto (23-02-2021 13:16:38) Uruchomiony z C:\Users\wikto\Desktop Windows 10 Home Wersja 2004 19041.804 (X64) (2020-09-22 08:52:27) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-409018047-2499756777-1607781468-500 - Administrator - Disabled) artek (S-1-5-21-409018047-2499756777-1607781468-1002 - Administrator - Disabled) Artur (S-1-5-21-409018047-2499756777-1607781468-1003 - Limited - Enabled) => C:\Users\Artur Gość (S-1-5-21-409018047-2499756777-1607781468-501 - Limited - Disabled) Konto domyślne (S-1-5-21-409018047-2499756777-1607781468-503 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-409018047-2499756777-1607781468-504 - Limited - Disabled) wikto (S-1-5-21-409018047-2499756777-1607781468-1001 - Administrator - Enabled) => C:\Users\wikto ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Norton Security (Disabled - Out of date) {1122B19A-E671-38EC-8EAC-87048FD4528D} AV: Norton Security (Enabled - Up to date) {A2708B76-6835-6565-CB96-694212954A75} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: AVG Antivirus (Enabled - Up to date) {18A975F9-A60C-37D8-E30B-4BEF31AD3411} AV: Norton Security (Enabled - Up to date) {E3FDBD9F-8140-1400-F32B-8B58923F7C4D} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AV: Norton Security (Disabled - Out of date) {9E3FD331-C4C2-7AC4-0537-131EEF1B1F8A} AS: Norton Security (Enabled - Up to date) {589C5C7B-A77A-1B8E-C99B-B02AE9B836F0} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Norton Security (Enabled) {9A4B0A53-225A-643D-E0C9-C077EC460D0E} FW: Norton Security (Disabled) {A6045214-8EAD-7B9C-2E68-BA2B11C858F1} FW: Norton Security (Disabled) {291930BF-AC1E-39B4-A5F3-2E31710715F6} FW: Norton Security (Enabled) {DBC63CBA-CB2F-1558-D874-226D6CEC3B36} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 7-Zip 21.00 alpha (x64) (HKLM\...\7-Zip) (Version: 21.00 alpha - Igor Pavlov) AVG AntiVirus FREE (HKLM-x32\...\AVG Antivirus) (Version: 20.10.3157 - AVG Technologies) BurnRecovery (HKLM-x32\...\{92A6B009-1343-4C44-AFB1-8849137CA3F0}) (Version: 5.0.1805.2901 - Application) Hidden BurnRecovery (HKLM-x32\...\InstallShield_{92A6B009-1343-4C44-AFB1-8849137CA3F0}) (Version: 5.0.1805.2901 - Application) cFosSpeed 11.07 (HKLM\...\cFosSpeed) (Version: 11.07 - cFos Software GmbH, Bonn) Discord (HKU\S-1-5-21-409018047-2499756777-1607781468-1001\...\Discord) (Version: 0.0.309 - Discord Inc.) ENE IO Driver (HKLM-x32\...\{D0512FFD-6194-4D2E-967E-25B82A3322FF}) (Version: 3.3.0 - ENE TECHNOLOGY INC.) Hidden ENE_DRAM_RGB_AIO (HKLM\...\{1745D314-9077-46C9-8562-1C62BAE189B7}) (Version: 1.0.0.10 - Ene Tech.) Hidden ENE_DRAM_RGB_AIO (HKLM-x32\...\{52d1d7de-19c3-4f83-97bb-f9435dc84c5b}) (Version: 1.0.0.10 - Ene Tech.) Hidden ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.7.11 - ENE TECHNOLOGY INC.) Hidden ENE_EHD_M2_HAL (HKLM-x32\...\{fd812556-e0bb-4961-ac2b-cf5643484519}) (Version: 1.0.7.11 - ENE TECHNOLOGY INC.) Hidden ENE_MousePad_HAL (HKLM\...\{9E97178A-ADB8-4778-BE60-7E28E2A72721}) (Version: 1.0.1.2 - ENE TECHNOLOGY INC.) Hidden ENE_MousePad_HAL (HKLM-x32\...\{0c535d48-a3ba-4f7d-a1e2-10a941313631}) (Version: 1.0.1.2 - ENE TECHNOLOGY INC.) Hidden ENE_X-JMI_HAL (HKLM\...\{2B8E611F-0B51-4FAC-87BB-AF50D82E7DDA}) (Version: 1.0.5.1 - ENE Tech) Hidden ENE_X-JMI_HAL (HKLM-x32\...\{50ec3a07-291b-463e-be86-487eb8cbb71c}) (Version: 1.0.5.1 - ENE Tech) Hidden Epic Games Launcher (HKLM-x32\...\{FFE08CF5-9092-48EA-85FD-590725B78B21}) (Version: 1.1.236.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 88.0.4324.182 - Google LLC) GridinSoft Anti-Malware (HKLM\...\GridinSoft Anti-Malware) (Version: 4.1.82 - Gridinsoft LLC) Ingenering Group Inc Product (HKLM-x32\...\BridleBuddles) (Version: 2.1.0.0 - Ingenering Group Inc) Intel(R) Chipset Device Software (HKLM-x32\...\{eb0d4a41-3065-42b0-a868-c60d42d3ea98}) (Version: 10.1.17695.8086 - Intel(R) Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1824.12.0.1140 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 16.5.0.1027 - Intel Corporation) Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.49.213.1 - Intel Corporation) Hidden Intel(R) Trusted Connect Services Client (HKLM-x32\...\{3b132227-4567-48a1-9f85-0d0dad4346ee}) (Version: 1.49.213.1 - Intel Corporation) Hidden Intel® PROSet/Wireless Software (HKLM-x32\...\{61f6c2cc-2eb8-4758-9ae9-c546d7f9ede6}) (Version: 20.60.2 - Intel Corporation) IObit Uninstaller 10 (HKLM-x32\...\IObitUninstall) (Version: 10.3.0.13 - IObit) iTop VPN (HKLM-x32\...\iTop VPN_is1) (Version: 1.1.0.705 - iTop Inc.) Java 8 Update 271 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180271F0}) (Version: 8.0.2710.9 - Oracle Corporation) Java 8 Update 271 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180271F0}) (Version: 8.0.2710.9 - Oracle Corporation) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden League of Legends (HKU\S-1-5-21-409018047-2499756777-1607781468-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc) Malwarebytes version 4.3.0.98 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.3.0.98 - Malwarebytes) Messenger 91.5.119 (HKU\S-1-5-21-409018047-2499756777-1607781468-1001\...\c1b3adcf-2068-5e8d-b25d-30ce588e3a4c) (Version: 91.5.119 - Facebook, Inc.) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 88.0.705.74 - Microsoft Corporation) Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.141.59 - ) Microsoft OneDrive (HKU\S-1-5-21-409018047-2499756777-1607781468-1001\...\OneDriveSetup.exe) (Version: 21.016.0124.0003 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-409018047-2499756777-1607781468-1001\...\Teams) (Version: 1.4.00.2879 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{99FAF70F-9B61-4AB0-9EC0-B31F98FFDC4A}) (Version: 2.75.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.23.27820 (HKLM-x32\...\{852adda4-4c78-4a38-b583-c0b360a329d6}) (Version: 14.23.27820.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM-x32\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation) MSI Remind Manager (HKLM-x32\...\{3E23F267-3E35-40F9-B6BF-BC034D214717}) (Version: 1.10.1707.1901 - Micro-Star International Co., Ltd.) Hidden MSI Remind Manager (HKLM-x32\...\InstallShield_{3E23F267-3E35-40F9-B6BF-BC034D214717}) (Version: 1.10.1707.1901 - Micro-Star International Co., Ltd.) MSI SDK (HKLM-x32\...\{EE7D557C-3AE7-4348-8DCA-3A89790D0002}}_is1) (Version: 2.2021.0118.01 - MSI) Norton Security (HKLM-x32\...\NGC) (Version: 22.20.5.39 - Symantec Corporation) NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.12 - NVIDIA Corporation) Hidden NVIDIA GeForce Experience 3.16.0.140 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.16.0.140 - NVIDIA Corporation) NVIDIA PhysX System Software 9.18.0907 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.18.0907 - NVIDIA Corporation) NVIDIA Sterownik graficzny 457.51 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 457.51 - NVIDIA Corporation) Opera GX Stable 73.0.3856.400 (HKU\S-1-5-21-409018047-2499756777-1607781468-1001\...\Opera GX 73.0.3856.400) (Version: 73.0.3856.400 - Opera Software) Opera Stable 74.0.3911.107 (HKU\S-1-5-21-409018047-2499756777-1607781468-1001\...\Opera 74.0.3911.107) (Version: 74.0.3911.107 - Opera Software) Origin (HKLM-x32\...\Origin) (Version: 10.5.92.46430 - Electronic Arts, Inc.) Pakiet sterowników systemu Windows - Cambridge Silicon Radio Ltd. (CSRBC) USB (12/17/2019 2.5.5.3) (HKLM\...\C0921C114F30E4C59C9397F75489B9513746E785) (Version: 12/17/2019 2.5.5.3 - Cambridge Silicon Radio Ltd.) Pakiet sterowników systemu Windows - Ross-Tech HIDClass (01/05/2014 6.3.0.3) (HKLM\...\3A9B09BBD4F12A76FBBD3A428729660930BA5F13) (Version: 01/05/2014 6.3.0.3 - Ross-Tech) Pakiet sterowników systemu Windows - Ross-Tech USB Driver Package (05/12/2014 2.10.00) (HKLM\...\88B02C4BD09AA7910C55C4E74BE8F036244B5CF9) (Version: 05/12/2014 2.10.00 - Ross-Tech) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8491 - Realtek Semiconductor Corp.) Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.24.258 - Rockstar Games) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.5.6 - Rockstar Games) Sena Bluetooth Device Manager 3.9.10 (HKLM-x32\...\Sena Bluetooth Device Manager) (Version: 3.9.10 - Copyright (C) 2012 ~ 2020 Sena Technologies Inc.) Sims 4 Studio (HKLM-x32\...\{870AA913-0774-4ED0-B144-BC2C0CBE4BA0}_is1) (Version: 3.1.3.3 - Sims 4 Studio) SpyHunter 5 (HKLM-x32\...\SpyHunter5) (Version: 5.10.7.226 - EnigmaSoft Limited) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Taskbar system version 1.0.0.2 (HKU\S-1-5-21-409018047-2499756777-1607781468-1001\...\{C40E1200-5BEC-410C-B3C5-F7B475729D42}_is1) (Version: 1.0.0.2 - Taskbar system) TeamSpeak 3 Client (HKU\S-1-5-21-409018047-2499756777-1607781468-1001\...\TeamSpeak 3 Client) (Version: 3.3.2 - TeamSpeak Systems GmbH) The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.68.156.1020 - Electronic Arts Inc.) Twitch (HKU\S-1-5-21-409018047-2499756777-1607781468-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.) WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.12.0 - ENE TECHNOLOGY INC.) Hidden WD_BLACK AN1500 (HKLM-x32\...\{9c94735f-73fd-4b0f-9ddb-8be7b3cc4681}) (Version: 1.0.12.0 - ENE TECHNOLOGY INC.) Hidden WD_BLACK D50 (HKLM\...\{BDE43F26-5917-44F8-B86A-F1D9A6B80B32}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden WD_BLACK D50 (HKLM-x32\...\{a1d1ba00-92b7-4a99-8ebd-65b25c0e9e44}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden WebAdvisor firmy McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.200 - McAfee, LLC) Packages: ========= Dodatek Aparat multimediów dla aplikacji Zdjęcia -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-12-21] (Microsoft Corporation) DragonCenter -> C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.DragonCenter_2.0.100.0_x64__kzh8wxbdkxb8p [2021-01-29] (MICRO-STAR INTERNATIONAL CO., LTD) [Startup Task] Evernote -> C:\Program Files\WindowsApps\Evernote.Evernote_10.8.5.0_x86__q4d96b2w5wcc2 [2021-02-20] (Evernote) LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2019-12-20] (LinkedIn) Microsoft Access -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Access_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-19] (Microsoft Corporation) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-12-20] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-12-20] (Microsoft Corporation) [MS Ad] Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-19] (Microsoft Corporation) Microsoft Jigsaw -> C:\Program Files\WindowsApps\Microsoft.MicrosoftJigsaw_2.1.7200.0_x86__8wekyb3d8bbwe [2020-12-20] (Microsoft Studios) [MS Ad] Microsoft Mahjong -> C:\Program Files\WindowsApps\Microsoft.MicrosoftMahjong_4.0.11030.0_x64__8wekyb3d8bbwe [2020-12-20] (Microsoft Studios) [MS Ad] Microsoft Minesweeper -> C:\Program Files\WindowsApps\Microsoft.MicrosoftMinesweeper_3.1.9160.0_x86__8wekyb3d8bbwe [2020-12-20] (Microsoft Studios) [MS Ad] Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-19] (Microsoft Corporation) Microsoft Outlook -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-19] (Microsoft Corporation) Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-19] (Microsoft Corporation) Microsoft Publisher -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Publisher_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-19] (Microsoft Corporation) Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.9.1252.0_x64__8wekyb3d8bbwe [2021-02-01] (Microsoft Studios) [MS Ad] Microsoft Sudoku -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSudoku_2.3.2100.0_x64__8wekyb3d8bbwe [2021-02-13] (Microsoft Studios) [MS Ad] Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-19] (Microsoft Corporation) Music Maker Jam -> C:\Program Files\WindowsApps\MAGIX.MusicMakerJam_3.1.1.0_x64__a2t3txkz9j1jw [2020-01-18] (MAGIX) Norton Studio -> C:\Program Files\WindowsApps\SymantecCorporation.NortonStudio_2.2.0.0_x86__v68kp9n051hdp [2019-12-20] (Symantec Corporation) NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.960.0_x64__56jybvy8sckqj [2021-01-21] (NVIDIA Corp.) PhotoDirector8 for MSI -> C:\Program Files\WindowsApps\CyberLink.PhotoDirector8forMSI_8.0.4020.0_x64__jtmmp2jxy9gb6 [2018-12-27] (CyberLink) PowerDirector for MSI -> C:\Program Files\WindowsApps\CyberLink.PowerDirectorforMSI_15.0.4024.0_x64__jtmmp2jxy9gb6 [2018-12-27] (CyberLink) Pulpit zdalny Microsoft -> C:\Program Files\WindowsApps\Microsoft.RemoteDesktop_10.2.1807.0_x64__8wekyb3d8bbwe [2021-02-20] (Microsoft Corporation) Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.19.234.0_x64__dt26b99r8h8gj [2021-01-19] (Realtek Semiconductor Corp) Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0 [2021-02-20] (Spotify AB) [Startup Task] Translator -> C:\Program Files\WindowsApps\Microsoft.BingTranslator_5.6.0.0_x64__8wekyb3d8bbwe [2019-12-20] (Microsoft Corporation) Zip Extractor Pro -> C:\Program Files\WindowsApps\38526MediaLife.ZipPlus_2.0.4.0_x86__1crh1k73ty8mg [2020-06-08] (Media Life) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-409018047-2499756777-1607781468-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\wikto\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20289.5\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-409018047-2499756777-1607781468-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\wikto\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => Brak pliku ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.20.5.39\buShell.dll [2020-07-24] (NortonLifeLock Inc. -> NortonLifeLock Inc.) ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.20.5.39\buShell.dll [2020-07-24] (NortonLifeLock Inc. -> NortonLifeLock Inc.) ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.20.5.39\buShell.dll [2020-07-24] (NortonLifeLock Inc. -> NortonLifeLock Inc.) ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.20.5.39\buShell.dll [2020-07-24] (NortonLifeLock Inc. -> NortonLifeLock Inc.) ShellIconOverlayIdentifiers-x32: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.20.5.39\buShell.dll [2020-07-24] (NortonLifeLock Inc. -> NortonLifeLock Inc.) ShellIconOverlayIdentifiers-x32: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.20.5.39\buShell.dll [2020-07-24] (NortonLifeLock Inc. -> NortonLifeLock Inc.) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-01-19] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2021-01-06] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) ContextMenuHandlers1: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.20.5.39\buShell.dll [2020-07-24] (NortonLifeLock Inc. -> NortonLifeLock Inc.) ContextMenuHandlers1: [GridinSoft Anti-Malware] -> {F77F27A6-89F3-471A-AFA8-3B280940A10C} => C:\Program Files\GridinSoft Anti-Malware\shellext.dll [2021-02-20] (GridinSoft, LLC -> Gridinsoft LLC) ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2020-07-31] (IObit Information Technology -> IObit) ContextMenuHandlers1: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.20.5.39\NavShExt.dll [2020-07-24] (NortonLifeLock Inc. -> NortonLifeLock Inc.) ContextMenuHandlers2: [GridinSoft Anti-Malware] -> {F77F27A6-89F3-471A-AFA8-3B280940A10C} => C:\Program Files\GridinSoft Anti-Malware\shellext.dll [2021-02-20] (GridinSoft, LLC -> Gridinsoft LLC) ContextMenuHandlers2: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.20.5.39\NavShExt.dll [2020-07-24] (NortonLifeLock Inc. -> NortonLifeLock Inc.) ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2021-02-23] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-01-19] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers4: [GridinSoft Anti-Malware] -> {F77F27A6-89F3-471A-AFA8-3B280940A10C} => C:\Program Files\GridinSoft Anti-Malware\shellext.dll [2021-02-20] (GridinSoft, LLC -> Gridinsoft LLC) ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2020-07-31] (IObit Information Technology -> IObit) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_1408eaf9a25ed64f\nvshext.dll [2020-12-02] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-01-19] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2021-01-06] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) ContextMenuHandlers6: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.20.5.39\buShell.dll [2020-07-24] (NortonLifeLock Inc. -> NortonLifeLock Inc.) ContextMenuHandlers6: [GridinSoft Anti-Malware] -> {F77F27A6-89F3-471A-AFA8-3B280940A10C} => C:\Program Files\GridinSoft Anti-Malware\shellext.dll [2021-02-20] (GridinSoft, LLC -> Gridinsoft LLC) ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2020-07-31] (IObit Information Technology -> IObit) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2021-02-23] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers6: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.20.5.39\NavShExt.dll [2020-07-24] (NortonLifeLock Inc. -> NortonLifeLock Inc.) ==================== Codecs (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\system32\frapsv64.dll [105984 2019-08-30] (Beepa P/L) [Brak podpisu cyfrowego] HKLM\...\Drivers32: [vidc.VP60] => C:\WINDOWS\SysWOW64\vp6vfw.dll [447752 2014-09-16] (Electronic Arts -> On2.com) HKLM\...\Drivers32: [vidc.VP61] => C:\WINDOWS\SysWOW64\vp6vfw.dll [447752 2014-09-16] (Electronic Arts -> On2.com) HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [94208 2019-08-30] (Beepa P/L) [Brak podpisu cyfrowego] ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) ShortcutWithArgument: C:\Users\wikto\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Wiktoria - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1" ==================== Załadowane moduły (filtrowane) ============= 2021-02-01 11:56 - 2021-01-19 16:00 - 000077312 _____ (Igor Pavlov) [Brak podpisu cyfrowego] C:\Program Files\7-Zip\7-zip.dll ==================== Alternate Data Streams (filtrowane) ======== ==================== Tryb awaryjny (filtrowane) ================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer (filtrowane) ========== HKU\S-1-5-21-409018047-2499756777-1607781468-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://oem17win10.msn.com/?pc=NMTE HKU\S-1-5-21-409018047-2499756777-1607781468-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://oem17win10.msn.com/?pc=NMTE SearchScopes: HKU\S-1-5-21-409018047-2499756777-1607781468-1001 -> DefaultScope {68712621-5CCE-426B-848B-5B21A8CDC308} URL = SearchScopes: HKU\S-1-5-21-409018047-2499756777-1607781468-1001 -> {68712621-5CCE-426B-848B-5B21A8CDC308} URL = BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2020-01-31] (IObit Information Technology -> IObit) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_271\bin\ssv.dll [2021-01-19] (Oracle America, Inc. -> Oracle Corporation) BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2021-02-12] (McAfee, LLC -> McAfee, LLC) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_271\bin\jp2ssv.dll [2021-01-19] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_271\bin\ssv.dll [2020-11-11] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2021-02-12] (McAfee, LLC -> McAfee, LLC) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_271\bin\jp2ssv.dll [2020-11-11] (Oracle America, Inc. -> Oracle Corporation) ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2018-04-12 00:38 - 2018-04-12 00:36 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-409018047-2499756777-1607781468-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\wikto\Desktop\idk\tapety\thumb-1920-1091219.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Zapora systemu Windows [funkcja włączona] Network Binding: ============= Wi-Fi: cFosSpeed for faster Internet connections (NDIS 6) -> cfosspeed (enabled) Ethernet: cFosSpeed for faster Internet connections (NDIS 6) -> cfosspeed (enabled) ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [UDP Query User{E85A3C16-5C58-4301-888A-8C00D6942BDE}C:\users\wikto\appdata\roaming\.tlauncher\jvms\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\users\wikto\appdata\roaming\.tlauncher\jvms\jre1.8.0_51\bin\javaw.exe FirewallRules: [TCP Query User{793AFCCB-CDC7-4374-BD23-2F7841816954}C:\users\wikto\appdata\roaming\.tlauncher\jvms\jre1.8.0_51\bin\javaw.exe] => (Allow) C:\users\wikto\appdata\roaming\.tlauncher\jvms\jre1.8.0_51\bin\javaw.exe FirewallRules: [{8134D21F-69F5-4D89-AEC0-554702CF3996}] => (Allow) C:\Users\wikto\VCDS-AKP\VCIConfig.EXE => Brak pliku FirewallRules: [UDP Query User{284F8763-F63F-46BF-A8BC-F87082A07586}C:\program files\java\jre1.8.0_51\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_51\bin\javaw.exe => Brak pliku FirewallRules: [TCP Query User{C224C1BA-F398-4916-B3A7-8B6F8C574C8F}C:\program files\java\jre1.8.0_51\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_51\bin\javaw.exe => Brak pliku FirewallRules: [UDP Query User{DC1983B6-9B83-4955-A6FC-3462E2560D49}C:\users\wikto\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\wikto\appdata\local\gamecenter\gamecenter.exe => Brak pliku FirewallRules: [TCP Query User{90051813-6BA7-492F-82A5-C987133B2C7B}C:\users\wikto\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\wikto\appdata\local\gamecenter\gamecenter.exe => Brak pliku FirewallRules: [UDP Query User{6F14E31E-D552-41B3-878F-3395BDA28EDE}D:\gry\gtav\gta5.exe] => (Allow) D:\gry\gtav\gta5.exe => Brak pliku FirewallRules: [TCP Query User{F994EA6F-B004-4FC8-BE3A-5A3AF58EAD38}D:\gry\gtav\gta5.exe] => (Allow) D:\gry\gtav\gta5.exe => Brak pliku FirewallRules: [UDP Query User{5FB5AB59-992F-4C87-B7AD-76EE738ACECA}C:\users\wikto\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\wikto\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{FA7CBC9F-2C25-42F0-A345-A3B0062D9716}C:\users\wikto\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\wikto\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{3BFBED9C-3082-4207-87D1-1D736D09A252}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{4F466A46-F935-409E-9CA4-EA3ED65667B1}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{8F9F7030-36C1-41F2-839F-5BAA4DCCBC6A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Outlast\OutlastLauncher.exe (Red Barrels Inc.) [Brak podpisu cyfrowego] FirewallRules: [{D8F0EB9A-6E3C-4AC1-B668-C3BF0E31867E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Outlast\OutlastLauncher.exe (Red Barrels Inc.) [Brak podpisu cyfrowego] FirewallRules: [{9CD7D527-AA61-430A-950B-298C576A692A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16010.9126.2116.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe => Brak pliku FirewallRules: [{4484B268-8F72-4944-A0A4-A0F7D9B3273B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{E584D7DD-7574-49C7-98F3-1AB9E50837D8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{05DCD52F-C182-47D0-AA22-23B3C49AB789}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{F898F432-1ACD-4F3B-B0BB-5A17BFC8E1A8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{9AF2DABE-BCE0-451A-BC3B-44B76C758294}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{419B79B9-E9AD-4DB1-9FF5-3562F8820A3D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{2B1F22F6-CD68-4BBB-B5FB-A0E6067DFE9B}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel Corporation -> ) FirewallRules: [{B855D3FE-7733-42F6-8768-06E31730DDC1}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{55DA14D4-C4BE-44ED-87F6-AF6D1061B752}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{87699C32-78AA-410F-9406-CC1DB1C3538A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Brak pliku FirewallRules: [{386B6E63-7F3D-4275-90CF-87B41F5FDFBE}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Brak pliku FirewallRules: [{426A62C3-9C51-4FED-8C8E-AD8CF3F0C863}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{F4B2ECA2-BE60-472B-814F-9BA7FC50D406}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{543E077A-7723-4D6B-B879-0B00EB6B68B5}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe => Brak pliku FirewallRules: [{2CDAA5EA-E95C-40F4-A39C-950768CC44A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Zup! F\Zup! F.exe () [Brak podpisu cyfrowego] FirewallRules: [{64406E5E-BC9D-40BA-88DE-FDC6BC9ED6D4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Zup! F\Zup! F.exe () [Brak podpisu cyfrowego] FirewallRules: [{167016D5-31CC-4039-9811-29A24D7FC3CC}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin_LE\TS4.exe (Electronic Arts Inc.) [Brak podpisu cyfrowego] FirewallRules: [{1EB6EAAB-9B47-453C-B47A-F4F73F69FAB9}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin_LE\TS4.exe (Electronic Arts Inc.) [Brak podpisu cyfrowego] FirewallRules: [{1514A306-C1E0-4E6A-9CD6-0A094E621571}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts Inc.) [Brak podpisu cyfrowego] FirewallRules: [{241AFF36-B56A-4211-B919-35BCFD1FC084}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts Inc.) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{31EBF7F8-C709-493E-9F35-304AAF19D11A}C:\users\wikto\appdata\local\programs\opera\73.0.3856.284\opera.exe] => (Block) C:\users\wikto\appdata\local\programs\opera\73.0.3856.284\opera.exe => Brak pliku FirewallRules: [UDP Query User{42C6B795-4D41-43D7-9CCA-20B5BAE486BD}C:\users\wikto\appdata\local\programs\opera\73.0.3856.284\opera.exe] => (Block) C:\users\wikto\appdata\local\programs\opera\73.0.3856.284\opera.exe => Brak pliku FirewallRules: [TCP Query User{D122BB99-ABEF-4A87-A810-AF8906E31700}C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.459\opera.exe] => (Allow) C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.459\opera.exe => Brak pliku FirewallRules: [UDP Query User{1BA94890-6F99-461C-806A-4BA2BAE3C64C}C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.459\opera.exe] => (Allow) C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.459\opera.exe => Brak pliku FirewallRules: [TCP Query User{DC3B6496-0A63-46EC-A47C-87B2EF5A7012}C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.465\opera.exe] => (Allow) C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.465\opera.exe => Brak pliku FirewallRules: [UDP Query User{6758B887-614C-45FD-B41B-C83B31EF1F51}C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.465\opera.exe] => (Allow) C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.465\opera.exe => Brak pliku FirewallRules: [TCP Query User{92DB766A-7DEF-4618-A2E1-CFF19F6C66F5}C:\program files\java\jre1.8.0_271\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_271\bin\javaw.exe FirewallRules: [UDP Query User{9B03EEF2-A000-4865-80D5-216025DA64DA}C:\program files\java\jre1.8.0_271\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_271\bin\javaw.exe FirewallRules: [{4A8F23DF-4620-4457-A748-3DEFB81D56D5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{78C0C1A1-5DAC-4FA2-B187-DCC76B3D1738}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{CF05CAEB-041A-41F6-AD90-9CAE5EF3EBF3}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{F41D2E52-CC48-4796-B292-A9DC56E1DC41}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [TCP Query User{64A570C6-24C1-4FD9-89D3-62E89C433062}C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.473\opera.exe] => (Block) C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.473\opera.exe => Brak pliku FirewallRules: [UDP Query User{CD18443F-F11E-4348-B2C2-030242A10C03}C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.473\opera.exe] => (Block) C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.473\opera.exe => Brak pliku FirewallRules: [TCP Query User{BE601AAC-2A53-45A6-83D2-E601F395E2E5}C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.487\opera.exe] => (Block) C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.487\opera.exe => Brak pliku FirewallRules: [UDP Query User{69641331-4770-4281-946E-5895617171DD}C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.487\opera.exe] => (Block) C:\users\wikto\appdata\local\programs\opera gx\72.0.3815.487\opera.exe => Brak pliku FirewallRules: [TCP Query User{F456CBC7-2B46-4018-8289-2B3FA723F540}C:\users\wikto\appdata\local\programs\opera gx\73.0.3856.396\opera.exe] => (Block) C:\users\wikto\appdata\local\programs\opera gx\73.0.3856.396\opera.exe (Opera Software AS -> Opera Software) FirewallRules: [UDP Query User{1172A043-B1C2-4923-97E4-82E1171BC2F8}C:\users\wikto\appdata\local\programs\opera gx\73.0.3856.396\opera.exe] => (Block) C:\users\wikto\appdata\local\programs\opera gx\73.0.3856.396\opera.exe (Opera Software AS -> Opera Software) FirewallRules: [{B1D4A9D1-FAA1-44D0-BB48-C5D56B473474}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{8BFA2C53-ECF8-4984-A562-312F6377EB29}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.13628.20448.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{843C9D4D-EAD5-46D7-965A-49F0A3C81811}C:\users\wikto\appdata\local\programs\opera gx\73.0.3856.400\opera.exe] => (Block) C:\users\wikto\appdata\local\programs\opera gx\73.0.3856.400\opera.exe (Opera Software AS -> Opera Software) FirewallRules: [UDP Query User{258E7AEA-BED1-4E18-9279-3E91B60C77B7}C:\users\wikto\appdata\local\programs\opera gx\73.0.3856.400\opera.exe] => (Block) C:\users\wikto\appdata\local\programs\opera gx\73.0.3856.400\opera.exe (Opera Software AS -> Opera Software) FirewallRules: [{1C429E59-974D-4674-B56B-AE438FA34E1A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{645CACFF-EC89-4210-BBF2-FB8FC0F6A474}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{7BD83A47-1F17-48AE-AAD6-B3D1ED619B34}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{B118870C-1EFC-467F-86A0-EBB1377CD37C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{877DEB7E-0A05-4CC3-BC9C-90AB3EA2A91A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{7D9E127F-FBDF-406C-B745-516FE3061D23}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{2E9DA4FD-8212-471E-9CD0-2741B575569A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{BB4C9153-4A94-4197-8646-2A89EECDE177}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.153.608.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{287B8F4F-306F-43D1-A777-611E7C8A2EB3}] => (Allow) LPort=32682 ==================== Punkty Przywracania systemu ========================= ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (02/23/2021 11:47:47 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance. hr = 0x8007045b, Trwa proces zamykania systemu. . Error: (02/23/2021 11:47:47 AM) (Source: VSS) (EventID: 13) (User: ) Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} i nazwą CEventSystem. [0x8007045b, Trwa proces zamykania systemu. ] Error: (02/23/2021 11:47:47 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance. hr = 0x8007045b, Trwa proces zamykania systemu. . Error: (02/23/2021 11:47:47 AM) (Source: VSS) (EventID: 13) (User: ) Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} i nazwą CEventSystem. [0x8007045b, Trwa proces zamykania systemu. ] Error: (02/23/2021 11:47:34 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: BridleBuddlesService.exe, wersja: 2.1.0.0, sygnatura czasowa: 0x60151e99 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 10.0.19041.804, sygnatura czasowa: 0x4544b4a1 Kod wyjątku: 0xc0000374 Przesunięcie błędu: 0x00000000000ff099 Identyfikator procesu powodującego błąd: 0x12a8 Godzina uruchomienia aplikacji powodującej błąd: 0x01d704f309a7a8d3 Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\BridleBuddles\BridleBuddlesService.exe Ścieżka modułu powodującego błąd: C:\WINDOWS\SYSTEM32\ntdll.dll Identyfikator raportu: cb3af9ef-6727-4061-99e7-a7e2723de408 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (02/22/2021 11:00:36 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: RtkUWP.exe, wersja: 1.19.234.0, sygnatura czasowa: 0x5f7c226b Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 10.0.19041.804, sygnatura czasowa: 0x0e9c5eae Kod wyjątku: 0xc000027b Przesunięcie błędu: 0x000000000010bd5c Identyfikator procesu powodującego błąd: 0x3c28 Godzina uruchomienia aplikacji powodującej błąd: 0x01d709019027a3df Ścieżka aplikacji powodującej błąd: C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.19.234.0_x64__dt26b99r8h8gj\RtkUWP.exe Ścieżka modułu powodującego błąd: C:\WINDOWS\System32\KERNELBASE.dll Identyfikator raportu: 6d7acf22-0bcb-4361-ac89-d3386702dfdd Pełna nazwa pakietu powodującego błąd: RealtekSemiconductorCorp.RealtekAudioControl_1.19.234.0_x64__dt26b99r8h8gj Identyfikator aplikacji względem pakietu powodującego błąd: App Error: (02/19/2021 11:05:34 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: RtkUWP.exe, wersja: 1.19.234.0, sygnatura czasowa: 0x5f7c226b Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 10.0.19041.804, sygnatura czasowa: 0x0e9c5eae Kod wyjątku: 0xc000027b Przesunięcie błędu: 0x000000000010bd5c Identyfikator procesu powodującego błąd: 0x1a44 Godzina uruchomienia aplikacji powodującej błąd: 0x01d706a6c1e66cbe Ścieżka aplikacji powodującej błąd: C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.19.234.0_x64__dt26b99r8h8gj\RtkUWP.exe Ścieżka modułu powodującego błąd: C:\WINDOWS\System32\KERNELBASE.dll Identyfikator raportu: e65bd6ca-7bf8-4a73-b926-140fef692bc3 Pełna nazwa pakietu powodującego błąd: RealtekSemiconductorCorp.RealtekAudioControl_1.19.234.0_x64__dt26b99r8h8gj Identyfikator aplikacji względem pakietu powodującego błąd: App Error: (02/18/2021 10:24:30 AM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: ) Description: Optymalizator magazynów nie może zakończyć operacji ograniczenie ponowne na Data (D:) z następującego powodu: Żądana operacja nie jest obsługiwana przez sprzęt obsługujący wolumin. (0x8900002A) Dziennik System: ============= Error: (02/23/2021 01:11:20 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa BridleBuddlesService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 100 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (02/23/2021 01:11:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa BridleBuddlesService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 100 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (02/23/2021 01:11:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa BridleBuddlesService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 100 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (02/23/2021 01:09:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa MSI_Companion_Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (02/23/2021 01:09:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) PROSet/Wireless Event Log niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (02/23/2021 01:09:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa McAfee WebAdvisor niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 1 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (02/23/2021 01:09:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa cFosSpeed System Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (02/23/2021 01:09:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa LightKeeperService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. CodeIntegrity: =============== Date: 2021-02-23 12:12:41 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVG\ANTIVIRUS\aswhook.dll that did not meet the Microsoft signing level requirements. ==================== Statystyki pamięci =========================== BIOS: American Megatrends Inc. D.20 03/06/2019 Płyta główna: Micro-Star International Co., Ltd. H310M PRO-M2 PLUS (MS-7C08) Procesor: Intel(R) Core(TM) i5-9400F CPU @ 2.90GHz Procent pamięci w użyciu: 64% Całkowita pamięć fizyczna: 8117.72 MB Dostępna pamięć fizyczna: 2863.29 MB Całkowita pamięć wirtualna: 22453.72 MB Dostępna pamięć wirtualna: 14807.69 MB ==================== Dyski ================================ Drive c: (Windows) (Fixed) (Total:237.47 GB) (Free:52.33 GB) NTFS Drive d: (Data) (Fixed) (Total:913.25 GB) (Free:875.26 GB) NTFS \\?\Volume{20550721-fa94-4804-ae42-25de1f4ba2e8}\ (WINRE) (Fixed) (Total:0.78 GB) (Free:0.34 GB) NTFS \\?\Volume{97a03dc4-4a38-4d60-8407-9b6bca2cf5f5}\ (BIOS_RVY) (Fixed) (Total:18.22 GB) (Free:0.69 GB) NTFS \\?\Volume{f2cbd2a6-841b-4333-a7f9-ee161158a315}\ (SYSTEM) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32 ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (Size: 238.5 GB) (Disk ID: 6FD1F956) Partition: GPT. ========================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: 6FD1F931) Partition: GPT. ==================== Koniec Addition.txt =======================