Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 09-01-2021 Uruchomiony przez Lenovo (15-01-2021 14:12:25) Uruchomiony z C:\Users\varga\Downloads\Programs Windows 10 Home Wersja 20H2 19042.746 (X64) (2020-08-13 18:50:53) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-1538588995-4231726738-1408357200-500 - Administrator - Disabled) Gość (S-1-5-21-1538588995-4231726738-1408357200-501 - Limited - Disabled) Konto domyślne (S-1-5-21-1538588995-4231726738-1408357200-503 - Limited - Disabled) Lenovo (S-1-5-21-1538588995-4231726738-1408357200-1003 - Administrator - Enabled) => C:\Users\varga varga (S-1-5-21-1538588995-4231726738-1408357200-1004 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-1538588995-4231726738-1408357200-504 - Limited - Disabled) _ashbackup_ (S-1-5-21-1538588995-4231726738-1408357200-1005 - Administrator - Enabled) => C:\Users\_ashbackup_ ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Panda Dome (Enabled - Up to date) {8EE5B6CC-D555-4755-164C-336E561DE601} AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: McAfee VirusScan (Enabled - Up to date) {9D4501E6-72F6-2877-C789-89AF6F535B2C} FW: McAfee Firewall (Enabled) {A57E80C3-3899-292F-ECD6-209A91801C57} FW: Panda Firewall (Enabled) {B6DE37E9-9F3A-460D-3D13-9A5BA8CEA17A} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 0 A.D. (HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\...\0 A.D.) (Version: r21946P-alpha - Wildfire Games) AMD Radeon Settings (HKLM\...\WUCCCApp) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.8 - Advanced Micro Devices, Inc.) Amolto Call Recorder for Skype & Teams (HKLM-x32\...\{A6196AB6-2688-4822-9F94-A93979269B44}) (Version: 3.19.2.0 - Amolto) Ashampoo Backup 2020 (HKLM\...\{DF972766-3191-A0C7-4DF0-F321545736BD}_is1) (Version: 12.06 - Ashampoo GmbH & Co. KG) Ashampoo Music Studio 2020 (HKLM-x32\...\{91B33C97-FFD3-62FA-D018-BCB9A3BC574C}_is1) (Version: 1.8.1 - Ashampoo GmbH & Co. KG) Ashampoo Office 2018 (HKLM\...\{02B0F09C-3866-4F64-BB8A-F22606E9E320}) (Version: 18.0.3866 - ashampoo GmbH & Co. KG) Ashampoo UnInstaller 7 (HKLM-x32\...\{4209F371-C268-A90D-7A44-135E420FACEF}_is1) (Version: 7.00.10 - Ashampoo GmbH & Co. KG) Ashampoo WinOptimizer 16 (HKLM-x32\...\{4209F371-C47A-1204-F2BA-6FD6E5BB1B50}_is1) (Version: 16.00.21 - Ashampoo GmbH & Co. KG) Ashampoo ZIP Pro 3 (HKLM\...\{0A11EA01-B192-8948-0540-E47987A2734C}_is1) (Version: 3.5.6 - Ashampoo GmbH & Co. KG) Audacity 2.4.2 (HKLM-x32\...\Audacity_is1) (Version: 2.4.2 - Audacity Team) Audials (HKLM-x32\...\{23AB313A-BFBA-499E-BBD8-4E03E92FB40B}) (Version: 19.1.6.0 - Audials AG) Avast SecureLine VPN (HKLM\...\Avast SecureLine) (Version: 5.8.5262.1418 - Avast Software) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.8.2.48475 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) BurnAware Free 13.7 (HKLM-x32\...\BurnAware Free_is1) (Version: - Burnaware) Catalyst Control Center Next Localization BR (HKLM\...\{CCE76752-1A82-EF43-4B55-6C5154F0112E}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{5A5539B0-B4EE-3A5E-29F9-63EDF84A79E2}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{EEF7A56C-6AD1-3176-83D7-9C4AC45A447C}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{9C4FCC2E-4E4F-5CDF-1A60-336B5A7E49CB}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{2A1637CE-9314-EA72-0F2C-E6E8CC805B7B}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{A71A7061-5728-3DA3-D58C-CDAFA87AD725}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{EA137731-99F1-E42D-6D5C-49F16BF5F868}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{2CFF01A0-C485-8455-B331-0A6B8756E232}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{A79098E5-9593-F299-470E-571B9F255A48}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{5D8C735C-C28F-E8EF-80B2-96EAF42F401A}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{B8255085-FBE7-7C3F-3397-23DC07C21297}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{3A3B6A80-249F-7651-CD12-23FD2E7C1932}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{29612BF6-6D8A-4CE8-12AC-777144642135}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{739859D8-9A12-6540-9B25-EDF09B43C845}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{144FC26D-3A27-2608-5C4C-DF59A2A3ACD1}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{B40D1236-0751-4C78-2E4C-A865235BAF52}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{F2F82D32-807F-1214-CB1F-B734B4E26398}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{29306290-76E1-BF93-BD39-C548495CC4E4}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{3AE6129D-AEE2-6A23-A335-1804470CE6EA}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{91E744CE-5472-1E15-0E89-69187A437656}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{6220990C-8452-DB19-A2A8-8F2B81057151}) (Version: 2017.1227.456.8869 - Advanced Micro Devices, Inc.) Hidden CutOut 5.0 (HKLM\...\CutOut 5_is1) (Version: 5.0 - Franzis.de) Dolby Audio X2 Windows API SDK (HKLM\...\{F994125B-7BF5-4A38-A569-82833CEB24DC}) (Version: 0.8.4.83 - Dolby Laboratories, Inc.) Dolby Audio X2 Windows APP (HKLM\...\{9207D68E-666A-49C7-A900-9F5B2FF289E4}) (Version: 0.8.0.71 - Dolby Laboratories, Inc.) Dropsy (HKLM-x32\...\1441869560_is1) (Version: 1.4 - GOG.com) Epson Scan 2 (HKLM-x32\...\Epson Scan 2) (Version: - Seiko Epson Corporation) EPSON Scan OCR Component (HKLM-x32\...\{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}) (Version: 3.00.04 - SEIKO EPSON Corp.) Epson Software Updater (HKLM-x32\...\{B55DB65D-EF6E-4E04-89D5-B03603BF681B}) (Version: 4.4.5 - SEIKO EPSON CORPORATION) EPSON XP-352 355 Series Printer Uninstall (HKLM\...\EPSON XP-352 355 Series) (Version: - Seiko Epson Corporation) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) Far Cry 2 Fortune's Edition (HKLM-x32\...\1207659042_is1) (Version: 2.1.0.12 - GOG.com) FIFA 16 (HKLM-x32\...\{28FA2805-7992-4A28-844B-040C57204718}) (Version: 1.44.20513.9 - Electronic Arts) foobar2000 v1.6.2 (HKLM-x32\...\foobar2000) (Version: 1.6.2 - Peter Pawlowski) GIMP 2.10.20 (HKLM\...\GIMP-2_is1) (Version: 2.10.20 - The GIMP Team) GOG GALAXY (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com) HiSuite (HKLM-x32\...\Hi Suite) (Version: 11.0.0.320 - Huawei Technologies Co., Ltd.) Internet Download Manager (HKLM-x32\...\Internet Download Manager) (Version: 6.38.16 - Tonec Inc.) IrfanView 4.57 (64-bit) (HKLM\...\IrfanView64) (Version: 4.57 - Irfan Skiljan) K-Lite Codec Pack 15.7.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 15.7.0 - KLCP) LEGO® Batman™: The Videogame (HKLM-x32\...\1423058542_is1) (Version: 1.0 - GOG.com) Lenovo Service Bridge (HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 5.0.1.6 - Lenovo) Lenovo System Update (HKLM-x32\...\TVSU_is1) (Version: 5.07.0110 - Lenovo) Medal of Honor Allied Assault Warchest (HKLM-x32\...\{D61BA037-2326-4CEF-B3AC-252046D0476A}) (Version: 1.11.0.2 - Electronic Arts) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 87.0.664.75 - Microsoft Corporation) Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.139.65 - ) Microsoft OneDrive (HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\...\OneDriveSetup.exe) (Version: 20.201.1005.0009 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.23.27820 (HKLM-x32\...\{852adda4-4c78-4a38-b583-c0b360a329d6}) (Version: 14.23.27820.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29325 (HKLM-x32\...\{d7a6435f-ac9a-4af6-8fdc-ca130d13fac9}) (Version: 14.28.29325.2 - Microsoft Corporation) Microsoft_VC100_CRT_x86 (HKLM-x32\...\{6FDDB201-2CA0-42BD-973F-7B2C4A61EA3F}) (Version: 1.0.0 - Microsoft) Mobile Broadband HL Service (HKLM-x32\...\Mobile Broadband HL Service) (Version: 22.001.34.01.03 - Huawei Technologies Co.,Ltd) Never Alone Arctic Collection (HKLM-x32\...\1446112277_is1) (Version: 2.1.0.5 - GOG.com) NVIDIA PhysX v8.04.25 (HKLM-x32\...\{74224F8D-4A17-4816-9EDB-7BB854DE532C}) (Version: 8.04.25 - NVIDIA Corporation) OEM Application Profile (HKLM-x32\...\{12C2AEB0-ED60-4CCF-DD83-C65BC7CCFB50}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Oracle VM VirtualBox 6.1.12 (HKLM\...\{BD4C2875-9059-4C94-A7B5-493A538AC180}) (Version: 6.1.12 - Oracle Corporation) Origin (HKLM-x32\...\Origin) (Version: 10.5.90.45798 - Electronic Arts, Inc.) Panda Devices Agent (HKLM-x32\...\{DB0164A2-ADE9-4FEE-B080-D506BDD6427F}) (Version: 1.08.09 - Panda Security) Hidden Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.09 - Panda Security) Hidden Panda Dome (HKLM\...\{822D9AEF-B9F1-4CDB-AA43-5CE509AC38F1}) (Version: 11.20.00 - Panda Security) Hidden Panda Dome (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 20.01.00.0000 - Panda Security) Photolemur 3 (HKLM\...\{22935808-B814-4884-85E7-D8C5CD5C7616}) (Version: 1.1.0.2388 - Skylum) Hidden Photolemur 3 (HKLM-x32\...\{b136f907-af37-4697-9b5e-442173dd0895}) (Version: 1.1.0.2388 - Skylum) Podręczniki firmy EPSON (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.54.0.0 - Seiko Epson Corporation) Polanie II (HKLM-x32\...\Polanie II) (Version: - ) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) Q-Typing 1.3 (HKLM-x32\...\Q-Typing 1.3_is1) (Version: - Q-Typing) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) SumatraPDF (HKLM\...\SumatraPDF) (Version: 3.2 - Krzysztof Kowalczyk) Środowisko uruchomieniowe Microsoft Edge WebView2 (HKLM-x32\...\Microsoft EdgeWebView) (Version: 87.0.664.75 - Microsoft Corporation) Tagman (HKLM-x32\...\Tagman_is1) (Version: 6.01 - Abelssoft) TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.8.3 - TeamViewer) The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.69.59.1020 - Electronic Arts Inc.) The Witcher 2 - Assassins of Kings Enhanced Edition (HKLM-x32\...\1207658930_is1) (Version: 3.5.0.26 - GOG.com) Unravel™ (HKLM-x32\...\{5105E605-9EE7-4050-9CC0-005093BBF89A}) (Version: 1.0.0.0 - Electronic Arts, Inc.) VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN) Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1) (Version: 1.0.39.1 - LunarG, Inc.) WinX HD Video Converter Deluxe 5.16.0 (HKLM-x32\...\WinX HD Video Converter Deluxe_is1) (Version: - Digiarty Software, Inc.) YouTube Song Downloader 2020 (HKLM-x32\...\AbAppId-55_is1) (Version: 20.18 - Abelssoft) Packages: ========= Amazon Prime Video for Windows -> C:\Program Files\WindowsApps\AmazonVideo.PrimeVideo_1.0.44.0_x64__pwbj9vvecjh7j [2021-01-14] (Amazon Development Centre (London) Ltd) Angielski za darmo z Duolingo -> C:\Program Files\WindowsApps\D5EA27B7.Duolingo-LearnLanguagesforFree_2017.112.1.0_x64__yx6k7tf7xvsea [2020-07-29] (Duolingo Inc.) Best of Bing 2018 Exclusive -> C:\Program Files\WindowsApps\Microsoft.BestofBing2018Exclusive_1.0.0.0_neutral__8wekyb3d8bbwe [2020-11-26] (Microsoft Corporation) Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_7.1.17.0_x86__kgqvnymyfvs32 [2020-12-16] (king.com) Candy Crush Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.1930.2.0_x86__kgqvnymyfvs32 [2021-01-06] (king.com) Dodatek Aparat multimediów dla aplikacji Zdjęcia -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-06-10] (Microsoft Corporation) Dodatek Zdjęcia -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2020-06-10] (Microsoft Corporation) ipla -> C:\Program Files\WindowsApps\Redefine.ipla_3.6.7.0_x64__wezn46m95z9ge [2020-12-19] (Cyfrowy Polsat S.A.) Lake Baikal -> C:\Program Files\WindowsApps\Microsoft.LakeBaikal_1.0.0.0_neutral__8wekyb3d8bbwe [2020-12-12] (Microsoft Corporation) LenovoUtility -> C:\Program Files\WindowsApps\E0469640.LenovoUtility_3.1.19.0_x64__5grkq8ppsgwt4 [2020-12-16] (LENOVO INC) [Startup Task] Messenger -> C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_860.5.119.0_x64__8xx8rvfyw5nnt [2021-01-14] (Facebook Inc) [Startup Task] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.9.1102.0_x64__8wekyb3d8bbwe [2021-01-14] (Microsoft Studios) [MS Ad] Microsoft To Do -> C:\Program Files\WindowsApps\Microsoft.Todos_2.34.33581.0_x64__8wekyb3d8bbwe [2020-12-28] (Microsoft Corporation) [Startup Task] Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2020-08-13] (Netflix, Inc.) Rozszerzenie wideo MPEG-2 -> C:\Program Files\WindowsApps\microsoft.mpeg2videoextension_1.0.22661.0_x64__8wekyb3d8bbwe [2020-06-10] (Microsoft Corporation) Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0 [2020-12-16] (Spotify AB) [Startup Task] WhatsApp Desktop -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2049.10.0_x64__cv1g1gvanyjgm [2020-12-19] (WhatsApp Inc.) Winter Holiday Glow -> C:\Program Files\WindowsApps\Microsoft.WinterHolidayGlow_1.0.0.0_neutral__8wekyb3d8bbwe [2020-12-08] (Microsoft Corporation) Żulionerzy -> C:\Program Files\WindowsApps\Syscovery.ulionerzy_1.1.1.2_x86__jsaa79e8ykcxj [2020-09-07] (Marcin Jakubowski Syscovery) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-1538588995-4231726738-1408357200-1003_Classes\CLSID\{0295691A-D674-4904-805C-BDFE165B4CA0}\localserver32 -> C:\Program Files\Ashampoo\Ashampoo Office 2018\PlanMaker.exe (SoftMaker Software GmbH -> SoftMaker Software GmbH) CustomCLSID: HKU\S-1-5-21-1538588995-4231726738-1408357200-1003_Classes\CLSID\{0295691A-D674-4904-805C-BDFE165B7456}\localserver32 -> C:\Program Files\Ashampoo\Ashampoo Office 2018\Presentations.exe (SoftMaker Software GmbH -> SoftMaker Software GmbH) CustomCLSID: HKU\S-1-5-21-1538588995-4231726738-1408357200-1003_Classes\CLSID\{0295691A-D674-4904-805C-BDFE165B771B}\localserver32 -> C:\Program Files\Ashampoo\Ashampoo Office 2018\TextMaker.exe (SoftMaker Software GmbH -> SoftMaker Software GmbH) CustomCLSID: HKU\S-1-5-21-1538588995-4231726738-1408357200-1003_Classes\CLSID\{30291A01-707C-11d0-B457-4446490043BF}\localserver32 -> C:\Program Files\Ashampoo\Ashampoo Office 2018\TextMaker.exe (SoftMaker Software GmbH -> SoftMaker Software GmbH) CustomCLSID: HKU\S-1-5-21-1538588995-4231726738-1408357200-1003_Classes\CLSID\{399254F2-670F-11D1-8092-0080ADB44B5C}\localserver32 -> C:\Program Files\Ashampoo\Ashampoo Office 2018\PlanMaker.exe (SoftMaker Software GmbH -> SoftMaker Software GmbH) CustomCLSID: HKU\S-1-5-21-1538588995-4231726738-1408357200-1003_Classes\CLSID\{399254F3-670F-11D1-8092-0080ADB44B5C}\localserver32 -> C:\Program Files\Ashampoo\Ashampoo Office 2018\PlanMaker.exe (SoftMaker Software GmbH -> SoftMaker Software GmbH) CustomCLSID: HKU\S-1-5-21-1538588995-4231726738-1408357200-1003_Classes\CLSID\{8a087491-5264-11d4-95F6-00A0CC3CCA14}\localserver32 -> C:\Program Files\Ashampoo\Ashampoo Office 2018\PlanMaker.exe (SoftMaker Software GmbH -> SoftMaker Software GmbH) CustomCLSID: HKU\S-1-5-21-1538588995-4231726738-1408357200-1003_Classes\CLSID\{bf608490-5373-11d0-8efb-4446490043bf}\localserver32 -> C:\Program Files\Ashampoo\Ashampoo Office 2018\TextMaker.exe (SoftMaker Software GmbH -> SoftMaker Software GmbH) ShellIconOverlayIdentifiers: [ IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2019-05-02] (Tonec Inc. -> Tonec Inc.) ContextMenuHandlers1: [ASZip2] -> {d13d3e68-0f44-3d45-b15f-bcfd8a8b4c7e} => C:\Program Files\Ashampoo\Ashampoo ZIP Pro 3\ASZSHLEXT.DLL [2020-09-18] (Ashampoo GmbH) [Brak podpisu cyfrowego] ContextMenuHandlers1: [ASZip264] -> {d13d3e78-0f44-3d45-b15f-bcfd8a8b4c7e} => C:\Program Files\Ashampoo\Ashampoo ZIP Pro 3\ASZSHLEXT64.DLL [2020-09-18] (Ashampoo GmbH) [Brak podpisu cyfrowego] ContextMenuHandlers1: [ASZipF] -> {e13d3e68-0f44-3d45-b15f-bcfd8a8b4c7e} => -> Brak pliku ContextMenuHandlers1: [ASZipF64] -> {e13d3e78-0f44-3d45-b15f-bcfd8a8b4c7e} => -> Brak pliku ContextMenuHandlers1: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2020-07-08] (Panda Security S.L. -> Panda Security, S.L.) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => -> Brak pliku ContextMenuHandlers5: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2020-07-08] (Panda Security S.L. -> Panda Security, S.L.) ContextMenuHandlers6: [ASZip2] -> {d13d3e68-0f44-3d45-b15f-bcfd8a8b4c7e} => C:\Program Files\Ashampoo\Ashampoo ZIP Pro 3\ASZSHLEXT.DLL [2020-09-18] (Ashampoo GmbH) [Brak podpisu cyfrowego] ContextMenuHandlers6: [ASZip264] -> {d13d3e78-0f44-3d45-b15f-bcfd8a8b4c7e} => C:\Program Files\Ashampoo\Ashampoo ZIP Pro 3\ASZSHLEXT64.DLL [2020-09-18] (Ashampoo GmbH) [Brak podpisu cyfrowego] ContextMenuHandlers6: [ASZipF] -> {e13d3e68-0f44-3d45-b15f-bcfd8a8b4c7e} => -> Brak pliku ContextMenuHandlers6: [ASZipF64] -> {e13d3e78-0f44-3d45-b15f-bcfd8a8b4c7e} => -> Brak pliku ContextMenuHandlers6: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2020-07-08] (Panda Security S.L. -> Panda Security, S.L.) ==================== Codecs (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Drivers32: [vidc.VP60] => C:\WINDOWS\SysWOW64\vp6vfw.dll [447752 2014-09-16] (Electronic Arts -> On2.com) HKLM\...\Drivers32: [vidc.VP61] => C:\WINDOWS\SysWOW64\vp6vfw.dll [447752 2014-09-16] (Electronic Arts -> On2.com) ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) Shortcut: C:\Users\varga\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\0 A.D. alpha\Open logs folder.lnk -> C:\Users\varga\AppData\Local\0 A.D. alpha\OpenLogsFolder.bat () ==================== Załadowane moduły (filtrowane) ============= 2017-07-20 15:04 - 2017-07-20 15:04 - 000011776 _____ () [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\libEGL.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 002013696 _____ () [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000014336 _____ () [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000739840 _____ () [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000191488 _____ () [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000071168 _____ () [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000014336 _____ () [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 000256512 _____ () [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\jsoncpp.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 000052224 _____ () [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\lzma.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 000111616 _____ () [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\minizip.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 000250880 _____ () [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\party.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 000581632 _____ () [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\sqlite.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 000083456 _____ () [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\zdll.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 000080896 _____ () [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\ziputil.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 000026112 _____ () [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\zlibutil.dll 2020-10-11 17:35 - 2018-06-27 09:58 - 002135040 _____ (The curl library, hxxps://curl.haxx.se/) [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\ash_libcurl.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 000353792 _____ (The curl library, hxxps://curl.haxx.se/) [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\libcurl.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 001966080 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\LIBEAY32.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 000354816 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\SSLEAY32.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000049664 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\imageformats\qdds.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000029696 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\imageformats\qgif.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000037376 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\imageformats\qicns.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000030208 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\imageformats\qico.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000459776 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\imageformats\qjp2.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000236544 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\imageformats\qjpeg.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000275456 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\imageformats\qmng.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000023552 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\imageformats\qsvg.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000022528 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\imageformats\qtga.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000351744 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\imageformats\qtiff.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000021504 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\imageformats\qwbmp.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000374784 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\imageformats\qwebp.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 001212416 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000912384 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Charts.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 005496320 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 005804544 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 001061376 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 003187712 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 002924544 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000310784 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 005444608 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000277504 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll 2017-07-20 15:04 - 2017-07-20 15:04 - 000193024 _____ (The Qt Company Ltd) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 000172544 _____ (wxWidgets development team) [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\wxbase310u_net_vc_ox.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 002276352 _____ (wxWidgets development team) [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\wxbase310u_vc_ox.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 000173056 _____ (wxWidgets development team) [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\wxbase310u_xml_vc_ox.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 001538560 _____ (wxWidgets development team) [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\wxmsw310u_adv_vc_ox.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 005491200 _____ (wxWidgets development team) [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\wxmsw310u_core_vc_ox.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 000707584 _____ (wxWidgets development team) [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\wxmsw310u_html_vc_ox.dll 2020-10-11 17:35 - 2019-03-12 10:49 - 000866304 _____ (wxWidgets development team) [Brak podpisu cyfrowego] c:\Program Files\Ashampoo\Ashampoo Backup 2020\bin\wxmsw310u_xrc_vc_ox.dll ==================== Alternate Data Streams (filtrowane) ======== ==================== Tryb awaryjny (filtrowane) ================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service" ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer (filtrowane) ========== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://securesearch.org/homepage?hp=2&pId=BT171101&iDate=2020-12-04 01:48:05&bName= HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2020-12-12] (Tonec Inc. -> Internet Download Manager, Tonec Inc.) BHO: Brak nazwy -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> Brak pliku BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2020-12-12] (Tonec Inc. -> Internet Download Manager, Tonec Inc.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Amolto Call Recorder for Skype\Skype4COM.dll [2016-04-08] (Skype Technologies SA -> Skype Technologies) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - Brak pliku (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE trusted site: HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\...\localhost -> localhost ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2017-09-29 14:46 - 2020-11-02 19:22 - 000000945 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\Control Panel\Desktop\\Wallpaper -> C:\Users\varga\Pictures\Tapety HD\Tapeta 0085.jpg HKU\S-1-5-21-1538588995-4231726738-1408357200-1005\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg DNS Servers: 100.120.150.1 - 31.11.202.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Zapora systemu Windows [funkcja włączona] Network Binding: ============= Ethernet 6: VirtualBox NDIS6 Bridged Networking Driver -> oracle_VBoxNetLwf (enabled) Ethernet 6: RadioRip Filter Driver -> RrNetCapFilterDriver (enabled) Ethernet: RadioRip Filter Driver -> RrNetCapFilterDriver (enabled) Ethernet: VirtualBox NDIS6 Bridged Networking Driver -> oracle_VBoxNetLwf (enabled) SecureLine: VirtualBox NDIS6 Bridged Networking Driver -> oracle_VBoxNetLwf (enabled) SecureLine: RadioRip Filter Driver -> RrNetCapFilterDriver (enabled) Wi-Fi: VirtualBox NDIS6 Bridged Networking Driver -> oracle_VBoxNetLwf (enabled) Wi-Fi: RadioRip Filter Driver -> RrNetCapFilterDriver (enabled) Ethernet 7: RadioRip Filter Driver -> RrNetCapFilterDriver (enabled) Ethernet 7: VirtualBox NDIS6 Bridged Networking Driver -> oracle_VBoxNetLwf (enabled) ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) HKLM\...\StartupApproved\StartupFolder: => "Avast SecureLine.lnk" HKLM\...\StartupApproved\Run: => "SecurityHealth" HKLM\...\StartupApproved\Run: => "IObit Malware Fighter" HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\...\StartupApproved\Run: => "launchOnStartup" HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\...\StartupApproved\Run: => "GogGalaxy" HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\...\StartupApproved\Run: => "AudialsNotifier" HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\...\StartupApproved\Run: => "com.squirrel.Teams.Teams" HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\...\StartupApproved\Run: => "MyDriveConnect.exe" HKU\S-1-5-21-1538588995-4231726738-1408357200-1003\...\StartupApproved\Run: => "BitTorrent" ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{101D2A3C-EE4C-479B-BEF7-967DC50DE404}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) FirewallRules: [{BCF59EC6-B24D-4CAE-9E20-BE56E4507497}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) FirewallRules: [{93F3736E-EF20-4E79-8571-8DFD760CE47F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) FirewallRules: [{070CF15B-80D0-4CB8-AEDC-D529FCB746C7}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) FirewallRules: [{0C445300-DA6A-43C7-8A8F-735620169ABA}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.12730.20352.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{F555A2A3-8789-4A34-B399-0374BE9745D7}] => (Allow) C:\Program Files (x86)\Amolto Call Recorder for Skype\AmoltoRecorder.exe (Sergey Krivosheev -> Amolto) FirewallRules: [{CA772DF0-33DD-4C9F-88BB-638F4FFE0F76}] => (Allow) C:\Program Files (x86)\Amolto Call Recorder for Skype\AmoltoRecorder.exe (Sergey Krivosheev -> Amolto) FirewallRules: [{A48E5483-2531-4D5C-B348-75D5DEF8F983}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 16\fifasetup\fifaconfig.exe (Electronic Arts -> Electronic Arts) FirewallRules: [{7D778F86-3217-4A35-86D1-3BFDE396BA05}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 16\fifasetup\fifaconfig.exe (Electronic Arts -> Electronic Arts) FirewallRules: [{43BC1A51-D3AA-47D6-AEC0-78FA09E11806}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{D005D99F-A3AE-4E22-8599-D2E7929BBA29}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{B4ECB785-44F5-4393-B406-4B208C5D8302}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{84B5E616-54CE-4BFF-8240-572B74A15FF9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{5432D6BF-6198-4ACA-B88F-56917A32EA11}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin_LE\TS4.exe (Electronic Arts Inc.) [Brak podpisu cyfrowego] FirewallRules: [{888126E9-35D9-4A2A-AF96-D122A2B4E3EF}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin_LE\TS4.exe (Electronic Arts Inc.) [Brak podpisu cyfrowego] FirewallRules: [{CE66A513-BE4D-479A-8B54-65DCD6178FA8}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts Inc.) [Brak podpisu cyfrowego] FirewallRules: [{4C1AA9DF-D9BE-4C22-B6F1-F9BD43C11E22}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts Inc.) [Brak podpisu cyfrowego] FirewallRules: [{0F543863-BCBB-48D3-98B4-CBBEEBAEC422}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe (Bethesda Softworks) [Brak podpisu cyfrowego] FirewallRules: [{6CF7B597-EE16-4039-9B27-88E9FC4E28BF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe (Bethesda Softworks) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{F4D294C3-BF3D-4C12-9AB6-258079CFEA20}C:\program files (x86)\gog galaxy\games\the witcher 2\bin\witcher2.exe] => (Allow) C:\program files (x86)\gog galaxy\games\the witcher 2\bin\witcher2.exe () [Brak podpisu cyfrowego] FirewallRules: [UDP Query User{F188F7F9-5F54-4D14-9D17-B794C93BB2B0}C:\program files (x86)\gog galaxy\games\the witcher 2\bin\witcher2.exe] => (Allow) C:\program files (x86)\gog galaxy\games\the witcher 2\bin\witcher2.exe () [Brak podpisu cyfrowego] FirewallRules: [{9B336216-DD37-43A1-A95B-57E8D65655C9}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{A7E3BDA3-39F2-4F70-9C12-323BEC821C2E}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{BF208136-E008-4B30-9254-5DCAEE1AAE38}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{166CF712-5F0E-4EF4-BE30-D8D6C0D4804D}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{713EA565-4BBE-40CC-9CAA-9443704679FD}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FirewallRules: [{AC2EB2F8-E4BB-474B-9D9D-C02E228FB97C}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FirewallRules: [{D69E67C9-E961-49F0-8BB7-49DE6BC70ECA}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [{A36BC330-CAA4-4AD5-A5B6-FFF46C49A9AD}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [{858CA40E-1A15-4785-B523-375DE391F5F8}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher_x86.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [{C8563B41-20FB-4696-A788-00F2F2162909}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher_x86.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [TCP Query User{83D0F5EA-CAC4-4FD6-9A45-61DF3E8A7288}C:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Block) C:\program files (x86)\origin games\battlefield 4\bf4.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [UDP Query User{CD82E2F9-DF55-41A2-A68F-3D914B4C77EE}C:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Block) C:\program files (x86)\origin games\battlefield 4\bf4.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [{21B3E585-BCEF-4BC5-9D75-F5A49C16E350}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{E336058D-11E5-4F20-9198-84EC2B40C1BB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{B595A7F1-33B5-4334-B810-4BA43B137A0D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{4D2ADA61-CDC1-49B0-B32B-E308928CD451}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{9AFF9307-9BE8-4796-821A-2A31B130684C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{A8F0045A-ED92-477A-A035-3897FCDB2D38}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{4E90CE7F-196A-4F1B-BB05-071B147D3932}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{149B6606-0D98-481C-983D-2F888FF648A4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{D71935C4-3087-49EE-8FAA-E99CCC84DD71}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin_LE\TS4.exe (Electronic Arts Inc.) [Brak podpisu cyfrowego] FirewallRules: [{DAF7E36E-05BA-4541-A004-0110990513DA}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin_LE\TS4.exe (Electronic Arts Inc.) [Brak podpisu cyfrowego] FirewallRules: [{B94F6BE1-B51E-431D-95EA-AE8ED46A97AC}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts Inc.) [Brak podpisu cyfrowego] FirewallRules: [{7FE6DCA6-F07E-4348-89CA-1498D8B4BE63}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts Inc.) [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{E2D83937-71FF-4EC7-998B-F6DEBFCB3065}C:\program files (x86)\origin games\medal of honor allied assault warchest\moh_spearhead.exe] => (Allow) C:\program files (x86)\origin games\medal of honor allied assault warchest\moh_spearhead.exe (Electronic Arts -> Electronic Arts Inc.) FirewallRules: [UDP Query User{20FFEF33-2D23-4F90-9526-C9EF31F51929}C:\program files (x86)\origin games\medal of honor allied assault warchest\moh_spearhead.exe] => (Allow) C:\program files (x86)\origin games\medal of honor allied assault warchest\moh_spearhead.exe (Electronic Arts -> Electronic Arts Inc.) FirewallRules: [TCP Query User{ED783C2E-42C2-47B8-B50E-F45156177EA4}C:\program files (x86)\origin games\medal of honor allied assault warchest\moh_breakthrough.exe] => (Allow) C:\program files (x86)\origin games\medal of honor allied assault warchest\moh_breakthrough.exe (Electronic Arts -> Electronic Arts Inc.) FirewallRules: [UDP Query User{9E50529B-C9C4-41A6-87E4-3367D22C5684}C:\program files (x86)\origin games\medal of honor allied assault warchest\moh_breakthrough.exe] => (Allow) C:\program files (x86)\origin games\medal of honor allied assault warchest\moh_breakthrough.exe (Electronic Arts -> Electronic Arts Inc.) FirewallRules: [TCP Query User{433A8B7C-DE99-4278-8372-01F525ECCDD4}C:\program files (x86)\gog galaxy\games\far cry 2\bin\farcry2.exe] => (Allow) C:\program files (x86)\gog galaxy\games\far cry 2\bin\farcry2.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment) FirewallRules: [UDP Query User{CDBECC82-BEED-473A-A478-D3834156A697}C:\program files (x86)\gog galaxy\games\far cry 2\bin\farcry2.exe] => (Allow) C:\program files (x86)\gog galaxy\games\far cry 2\bin\farcry2.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment) FirewallRules: [{046BF0A4-D0B3-4A78-A2FA-D85CE245AD5A}] => (Allow) C:\Program Files (x86)\Origin Games\Medal of Honor Allied Assault Warchest\MOHAA.exe (Electronic Arts -> Electronic Arts Inc.) FirewallRules: [{C64BA25B-9F3C-45D1-AE4F-F71E893D02EA}] => (Allow) C:\Program Files (x86)\Origin Games\Medal of Honor Allied Assault Warchest\MOHAA.exe (Electronic Arts -> Electronic Arts Inc.) FirewallRules: [{3BA3D5D4-FA79-4635-BE35-17FF92429699}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{66D8EB84-E2AD-46FF-AE67-07C3E4193743}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{848544ED-BC26-4B84-BC78-6F46F42A5FF1}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{6454BFAC-03B5-4C95-83DD-149350E2222D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{9C05001B-D1D9-43CC-863C-2F7767314992}] => (Allow) LPort=12972 FirewallRules: [{C14483DE-E163-41E5-A66D-ADD9B2F44DC8}] => (Allow) LPort=14714 FirewallRules: [{8A23D161-3D8A-48AA-AE6C-A0C5B70EF4D3}] => (Allow) LPort=31931 FirewallRules: [{7CA851FD-3BE0-43D0-89FA-4156C04A4156}] => (Allow) C:\Program Files (x86)\Audials\Audials 2019\Audials.exe (Audials AG -> Audials AG) FirewallRules: [{CC65B193-E4D4-43E2-BDC8-C4887B4A738D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AlienRage\Singleplayer\Binaries\Win32\ShippingPC-AFEARGame.exe (City Interactive S.A.) [Brak podpisu cyfrowego] FirewallRules: [{37BCC5B1-CEDD-415A-90BC-89920F2D5E10}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AlienRage\Singleplayer\Binaries\Win32\ShippingPC-AFEARGame.exe (City Interactive S.A.) [Brak podpisu cyfrowego] FirewallRules: [{C10E0671-4758-484D-BD45-5EF271BC70A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AlienRage\Multiplayer\Binaries\Win32\ARageMP.exe () [Brak podpisu cyfrowego] FirewallRules: [{2AD9F56A-824D-4D8A-8493-567E636DA71D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AlienRage\Multiplayer\Binaries\Win32\ARageMP.exe () [Brak podpisu cyfrowego] FirewallRules: [{8B4C8EAC-489A-4583-B397-C8C04EF98058}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> ) FirewallRules: [{09363B71-1779-4317-A05C-078EE4BC9D63}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> ) FirewallRules: [{CEE30C18-BFD6-4413-8B98-DC0E0CEAFA1A}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\87.0.664.75\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{31E5D669-091C-40D0-B101-AAEE98E50124}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\LEGO - The Hobbit\LEGOHobbit.exe (Travellers Tales (UK) Ltd -> Warner Bros. Interactive Entertainment) FirewallRules: [{C724E770-A563-4681-A6BF-88F8CE25F547}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\LEGO - The Hobbit\LEGOHobbit.exe (Travellers Tales (UK) Ltd -> Warner Bros. Interactive Entertainment) ==================== Punkty Przywracania systemu ========================= 06-01-2021 14:50:44 Zaplanowany punkt kontrolny 14-01-2021 21:47:57 Zaplanowany punkt kontrolny ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (01/11/2021 03:30:41 PM) (Source: ATIeRecord) (EventID: 16387) (User: ) Description: Error: (01/09/2021 11:25:28 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: ) Description: Optymalizator magazynów nie może zakończyć operacji ograniczenie ponowne na LENOVO (D:) z następującego powodu: Żądana operacja nie jest obsługiwana przez sprzęt obsługujący wolumin. (0x8900002A) Error: (01/09/2021 11:25:26 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: ) Description: Optymalizator magazynów nie może zakończyć operacji ograniczenie ponowne na Windows (C:) z następującego powodu: Żądana operacja nie jest obsługiwana przez sprzęt obsługujący wolumin. (0x8900002A) Error: (01/08/2021 11:32:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: GameBar.exe, wersja: 5.420.11102.0, sygnatura czasowa: 0x5faaa7cb Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 10.0.19041.662, sygnatura czasowa: 0xec58f015 Kod wyjątku: 0xc000027b Przesunięcie błędu: 0x000000000010bd5c Identyfikator procesu powodującego błąd: 0x35f8 Godzina uruchomienia aplikacji powodującej błąd: 0x01d6e3abfa69cf70 Ścieżka aplikacji powodującej błąd: C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.420.11102.0_x64__8wekyb3d8bbwe\GameBar.exe Ścieżka modułu powodującego błąd: C:\WINDOWS\System32\KERNELBASE.dll Identyfikator raportu: 193eb008-0a95-4366-a0ca-6308ebb26489 Pełna nazwa pakietu powodującego błąd: Microsoft.XboxGamingOverlay_5.420.11102.0_x64__8wekyb3d8bbwe Identyfikator aplikacji względem pakietu powodującego błąd: App Error: (01/05/2021 11:16:16 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program UI7.exe w wersji 7.0.0.0 przestał współpracować z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemów w oknie Zabezpieczenia i konserwacja w Panelu sterowania. Identyfikator procesu: 2430 Godzina rozpoczęcia: 01d6e3b032bc506e Godzina zakończenia: 37 Ścieżka aplikacji: C:\Program Files (x86)\Ashampoo\Ashampoo UnInstaller 7\UI7.exe Identyfikator raportu: 5f8d6d17-9de7-4c1d-9096-cc73df6a0de9 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji powiązanej z pakietem powodującym błąd: Typ zawieszenia: Unknown Error: (01/05/2021 11:06:48 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: OpenFM.Windows.exe, wersja: 1.0.0.0, sygnatura czasowa: 0x561fb2c7 Nazwa modułu powodującego błąd: Windows.UI.Xaml.dll, wersja: 10.0.19041.662, sygnatura czasowa: 0x70a12a9e Kod wyjątku: 0xc000027b Przesunięcie błędu: 0x008361e1 Identyfikator procesu powodującego błąd: 0x2c94 Godzina uruchomienia aplikacji powodującej błąd: 0x01d6e3af063a6f8a Ścieżka aplikacji powodującej błąd: C:\Program Files\WindowsApps\WirtualnaPolska.OpenFM-RadiodostrojonedoCiebie_2.1.0.0_neutral__thkbbxcrkrpcw\OpenFM.Windows.exe Ścieżka modułu powodującego błąd: C:\Windows\System32\Windows.UI.Xaml.dll Identyfikator raportu: c9d11df9-948a-408a-a8f6-6a9f05e0ac59 Pełna nazwa pakietu powodującego błąd: WirtualnaPolska.OpenFM-RadiodostrojonedoCiebie_2.1.0.0_neutral__thkbbxcrkrpcw Identyfikator aplikacji względem pakietu powodującego błąd: App Error: (01/05/2021 09:46:47 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance. hr = 0x8007045b, Trwa proces zamykania systemu. . Error: (01/05/2021 09:46:47 PM) (Source: VSS) (EventID: 13) (User: ) Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} i nazwą CEventSystem. [0x8007045b, Trwa proces zamykania systemu. ] Dziennik System: ============= Error: (01/15/2021 02:09:57 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi System Interface Foundation Service z powodu następującego błędu: Nie można odnaleźć określonego pliku. Error: (01/15/2021 01:57:12 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Windows Search zawiesiła się podczas uruchamiania. Error: (01/15/2021 01:55:57 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi System Interface Foundation Service z powodu następującego błędu: Nie można odnaleźć określonego pliku. Error: (01/15/2021 01:55:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi System Interface Foundation Service z powodu następującego błędu: Nie można odnaleźć określonego pliku. Error: (01/15/2021 01:54:57 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi System Interface Foundation Service z powodu następującego błędu: Nie można odnaleźć określonego pliku. Error: (01/15/2021 01:54:55 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Usługa wiadomości_fd815 zakończyła działanie; wystąpił następujący błąd: Urządzenie nie jest gotowe. Error: (01/15/2021 01:53:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi System Interface Foundation Service z powodu następującego błędu: Nie można odnaleźć określonego pliku. Error: (01/15/2021 01:52:45 PM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT) Description: Serwer {E60687F7-01A1-40AA-86AC-DB1CBF673334} nie zarejestrował się w modelu DCOM w wymaganym czasie. Windows Defender: =================================== Date: 2021-01-02 13:16:17.7530000Z Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {F6F29094-6145-45B7-9BCE-FC8E3FA2A1AE} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Date: 2020-12-30 19:15:06.0650000Z Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {937BC7C1-D7AE-41C2-A653-1AFF771C9A5A} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Date: 2020-12-29 15:48:39.7310000Z Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {AB4E6FFB-8AB9-42DF-8492-07E1C76B232F} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Date: 2020-12-28 21:02:21.0070000Z Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {B9B3B78D-C2C5-4147-8680-9099AAB4C503} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Date: 2020-12-24 22:37:54.4140000Z Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {F7C3D485-ABD2-4B41-8F94-0A625D4F9FEE} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Date: 2021-01-15 14:00:09.5020000Z Description: Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń. Nowa wersja analizy zabezpieczeń: Poprzednia wersja analizy zabezpieczeń: 1.329.2223.0 Źródło aktualizacji: Serwer usługi Microsoft Update Typ analizy zabezpieczeń: Oprogramowanie antywirusowe Typ aktualizacji: Pełne Użytkownik: ZARZĄDZANIE NT\SYSTEM Bieżąca wersja aparatu: Poprzednia wersja aparatu: 1.1.17700.4 Kod błędu: 0x80070102 Opis błędu: Upłynął limit czasu operacji oczekiwania. CodeIntegrity: =================================== Date: 2021-01-15 13:54:34.5660000Z Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Panda Security\Panda Security Protection\PAV3WSC.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2021-01-15 13:54:34.5580000Z Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Panda Security\Panda Security Protection\PAV3WSC.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2021-01-15 13:54:34.5460000Z Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Panda Security\Panda Security Protection\PAV3WSC.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2021-01-15 13:54:34.5400000Z Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files (x86)\Panda Security\Panda Security Protection\PAV3WSC.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2020-12-18 19:07:12.5070000Z Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\WindowManagementAPI.dll because the set of per-page image hashes could not be found on the system. Date: 2020-12-18 19:07:08.4740000Z Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\WindowManagementAPI.dll because the set of per-page image hashes could not be found on the system. Date: 2020-12-16 20:40:59.7210000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements. Date: 2020-12-16 20:40:59.7110000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements. ==================== Statystyki pamięci =========================== BIOS: LENOVO 5QCN20WW 11/29/2017 Płyta główna: LENOVO LNVNB161216 Procesor: AMD A12-9720P RADEON R7, 12 COMPUTE CORES 4C+8G Procent pamięci w użyciu: 53% Całkowita pamięć fizyczna: 7567.98 MB Dostępna pamięć fizyczna: 3504.64 MB Całkowita pamięć wirtualna: 8783.98 MB Dostępna pamięć wirtualna: 4549.79 MB ==================== Dyski ================================ Drive c: (Windows) (Fixed) (Total:904.72 GB) (Free:532.71 GB) NTFS Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:24.86 GB) NTFS \\?\Volume{b158803a-24c1-418b-ba45-56f5e6151435}\ () (Fixed) (Total:0.54 GB) (Free:0.08 GB) NTFS \\?\Volume{42ba460c-d6ac-41c9-a6d5-20c0a40268e3}\ (WINRE_DRV) (Fixed) (Total:0.97 GB) (Free:0.47 GB) NTFS \\?\Volume{04412310-9b92-402c-bb75-854e19e50320}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32 ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: EF5EE8E9) Partition: GPT. ==================== Koniec Addition.txt =======================