Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 19-01-2025 Uruchomiony przez ITI1032 (20-01-2025 14:11:56) Uruchomiony z E:\test Microsoft Windows 10 Pro Wersja 22H2 19045.5371 (X64) (2021-09-07 06:38:25) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= (Załączenie wejścia w fixlist spowoduje jego usunięcie.) Administrator (S-1-5-21-1999557217-327936263-3457369781-500 - Administrator - Disabled) gks (S-1-5-21-1999557217-327936263-3457369781-1004 - Limited - Enabled) Gość (S-1-5-21-1999557217-327936263-3457369781-501 - Limited - Disabled) ITI1032 (S-1-5-21-1999557217-327936263-3457369781-1001 - Administrator - Enabled) => C:\Users\ITI1032 Konto domyślne (S-1-5-21-1999557217-327936263-3457369781-503 - Limited - Disabled) scanbizhub (S-1-5-21-1999557217-327936263-3457369781-1003 - Limited - Enabled) => C:\Users\scanbizhub SUZ (S-1-5-21-1999557217-327936263-3457369781-1002 - Administrator - Enabled) => C:\Users\SUZ WDAGUtilityAccount (S-1-5-21-1999557217-327936263-3457369781-504 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: mks_vir (Enabled - Up to date) {44F188AD-B446-C4D8-C36C-70DFB0403719} AV: Dr.Web Anti-virus (Enabled - Up to date) {A73F5931-44B0-E90A-30EC-125D9F51EA9F} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: mks_vir (Enabled) {7CCA0988-FE29-C580-E833-D9EA4E937062} FW: Dr.Web Firewall (Enabled) {9F04D814-0EDF-E852-1BB3-BB686182ADE4} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) 7-Zip 21.03 beta (x64) (HKLM\...\7-Zip) (Version: 21.03 beta - Igor Pavlov) Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1045-1033-7760-BC15014EA700}) (Version: 24.005.20320 - Adobe) Adobe Illustrator 2020 (HKLM-x32\...\ILST_24_0_1) (Version: 24.0.1 - Adobe Systems Incorporated) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601102}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden AnyDesk (HKLM-x32\...\AnyDesk) (Version: ad 9.0.1 - AnyDesk Software GmbH) AppLogLibSetup (HKLM-x32\...\{52FB0C8F-DF05-4C61-AEB6-18C55F8C385F}) (Version: 1.0.3.0 - Brother Industries Ltd.) Hidden Axence nVision 12.5 (HKLM-x32\...\Axence nVision_is1) (Version: - Axence Inc.) Axence nVision Agent 2.0.4.30890 (HKLM-x32\...\{CDBBC40B-A8E0-487B-8FEF-FD24646F54BD}_is1) (Version: - Axence Inc.) B1 Free Archiver (HKLM-x32\...\B1FreeArchiver) (Version: 0.0.0.0 - Catalina Group Ltd) balenaEtcher (HKU\S-1-5-21-1999557217-327936263-3457369781-1001\...\balena_etcher) (Version: 1.19.21 - Balena Ltd. ) BCS Manager 1.8.36260 (HKLM\...\BCSManager_is1) (Version: 1.8.36260 - NSS Sp. z o.o.) BrLauncher (HKLM-x32\...\{42D26B47-887C-45FC-BCAE-0BE485C5C0BB}) (Version: 2.0.11.0 - Brother Industries Ltd.) Hidden BrLogRx (HKLM-x32\...\{190861E7-09C5-42D8-BB4B-0AFB234BCFC1}) (Version: 1.0.3.1 - Brother Industries Ltd.) Hidden Brother IPPoverUSB Driver (HKLM-x32\...\{F461DE2F-0FE0-4749-80F1-76FA8C423FE5}) (Version: 1.2.0.0 - Brother Industries Ltd.) Hidden Brother Printer Driver (HKLM-x32\...\{D2980B5A-61DE-4C04-A65C-FE888CDB88E0}) (Version: 1.9.0.0 - Brother Industries Ltd.) Hidden BrSupportTools (HKLM-x32\...\{32F47565-84B1-42CC-B09A-4CDDD9A32F94}) (Version: 1.0.20.0 - Brother Industries Ltd.) Hidden Cisco Packet Tracer 8.2.1 64Bit (HKLM\...\Cisco Packet Tracer 8.2.1 64Bit_is1) (Version: 8.2.1.118 - Cisco Systems, Inc.) Classic Shell (HKLM\...\{CABCE573-0A86-42FA-A52A-C7EA61D5BE08}) (Version: 4.3.1 - IvoSoft) Comarch SmartCard (HKLM\...\Comarch SmartCard) (Version: 2.4.9.0 - Comarch S.A.) ComarchCryptoProvider (HKLM-x32\...\{79AB44C1-896A-4AB9-927E-437E874E0B80}) (Version: 3.0.51.0 - Comarch) Hidden ComarchCryptoProvider (HKLM-x32\...\{a00b1166-4c87-48c9-abff-c89047fa96d6}) (Version: 3.0.51.0 - Comarch) CryptoCard Suite (32/64 bit) (HKLM-x32\...\{d96fbaa0-b61f-4755-8854-381526209d43}) (Version: 2.1.170 - CryptoTech) CryptoCard Suite (64bit) (HKLM\...\{BEB9EE64-0733-4A81-BE59-78A8F2DDB09A}) (Version: 2.01.00170 - CryptoTech) Hidden CryptoCard Suite (HKLM-x32\...\{8D3ACF38-127E-4E9F-AEA4-102499413E9E}) (Version: 2.01.00170 - CryptoTech) Hidden D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden DRUKI Gofin 3.17.118.0 (HKLM-x32\...\{2D3D3F57-C52D-484C-AFA0-43F0E95ABA6F}) (Version: 3.17.118.0 - Wydawnictwo Podatkowe GOFIN sp. z o.o.) Hidden DRUKI Gofin 3.17.118.0 (HKLM-x32\...\{9bc97c14-4fcd-4340-a363-a2956b839a83}) (Version: 3.17.118.0 - Wydawnictwo Podatkowe GOFIN sp. z o.o.) Dynamic Application Loader Host Interface Service (HKLM\...\{5509B79F-D323-4265-941C-C4402A915A38}) (Version: 1.0.0.0 - Intel Corporation) Hidden Ferro Backup System (HKLM-x32\...\Ferro Backup System_is1) (Version: 5.7.2.1902 - Ferro Software) FileZilla Client 3.57.0 (HKLM-x32\...\FileZilla Client) (Version: 3.57.0 - Tim Kosse) GC UPS (HKLM\...\{21679046-788C-455B-8BAF-4E787C720A4F}) (Version: 1.1.7.0 - GreenCell) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 131.0.6778.266 - Google LLC) HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version: - ) IDProtect Client 7.19.04 (HKLM\...\{000CB3BE-6ADF-46B9-8D8F-9D162B0A8A0F}) (Version: 7.19.04 - NXP Semiconductors) iMazing Converter 2.0.9.0 (HKLM\...\{907AAA47-68DC-4FB3-A50E-E69A8994D2B0}_is1) (Version: 2.0.9.0 - DigiDNA) InfoMedica Launcher (HKLM\...\{A8B99FF9-7C15-4D7D-83EB-DFC8A14A968B}) (Version: 1.0.1.4 - Asseco Poland S.A.) Hidden InfoMedica Launcher (HKLM-x32\...\{3de75ff8-98a5-46ee-9773-25bb50ec5238}) (Version: 1.0.1.4 - Asseco Poland S.A.) Intel(R) Chipset Device Software (HKLM\...\{06D713D6-9845-436D-B857-5BF2596B4554}) (Version: 10.1.18634.8254 - Intel Corporation) Hidden Intel(R) Chipset Device Software (HKLM-x32\...\{99926fb7-5da9-4101-b79f-eec3674ca64b}) (Version: 10.1.18634.8254 - Intel(R) Corporation) Intel(R) LMS (HKLM\...\{EBE07B2C-43AB-4FA7-9783-D07C6A1124DE}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2105.15.0.2155 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{39479C27-85A6-40FF-BEFC-1F27F824F303}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{BC46A079-3405-414F-8157-B7C1FC40AAA3}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Driver (HKLM\...\{469E67E3-F4BD-4EC7-B5F2-81CF63A1A25C}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Serial IO (HKLM\...\{3717BB4D-8085-4A84-8952-8CC8F988DC39}) (Version: 30.100.2051.37 - Intel Corporation) Hidden Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.2051.37 - Intel Corporation) Java 8 Update 361 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180361F0}) (Version: 8.0.3610.9 - Oracle Corporation) Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden KONICA MINOLTA 958_558_368_367Series (HKLM\...\KONICA MINOLTA 958_558_368_367Series Installer) (Version: - KONICA MINOLTA) Magical Jelly Bean KeyFinder (HKLM-x32\...\KeyFinder_is1) (Version: 2.0.10.13 - Magical Jelly Bean) Microsoft .NET Host - 5.0.14 (x64) (HKLM\...\{61A6E3A7-F406-418A-B2A6-0606DB55B325}) (Version: 40.56.30907 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 5.0.14 (x64) (HKLM\...\{8D88F0E2-CE9B-4A6D-8309-FDC562195F5B}) (Version: 40.56.30907 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 5.0.14 (x64) (HKLM\...\{B810ACDF-1C0C-4108-9B92-12F1674FA444}) (Version: 40.56.30907 - Microsoft Corporation) Hidden Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 132.0.2957.115 - Microsoft Corporation) Microsoft Office Professional 2016 - pl-pl (HKLM\...\ProfessionalRetail - pl-pl) (Version: 16.0.18324.20194 - Microsoft Corporation) Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 24.232.1118.0003 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (HKLM-x32\...\{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (HKLM-x32\...\{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 (HKLM\...\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 (HKLM\...\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.32.31332 (HKLM-x32\...\{3746f21b-c990-4045-bb33-1cf98cff7a68}) (Version: 14.32.31332.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 (HKLM-x32\...\{7e9fae12-5bbf-47fb-b944-09c49e75c061}) (Version: 14.15.26706.0 - Microsoft Corporation) Microsoft Visual C++ 2017 x86 Additional Runtime - 14.15.26706 (HKLM-x32\...\{2757496A-3E74-320A-B007-36120A9F126D}) (Version: 14.15.26706 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.15.26706 (HKLM-x32\...\{39E15475-23F2-345D-8977-B5DC47A94E26}) (Version: 14.15.26706 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Additional Runtime - 14.32.31332 (HKLM\...\{F4499EE3-A166-496C-81BB-51D1BCDC70A9}) (Version: 14.32.31332 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.32.31332 (HKLM\...\{3407B900-37F5-4CC2-B612-5CD5D580A163}) (Version: 14.32.31332 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 5.0.14 (x64) (HKLM\...\{4CD6FFC6-FA14-4016-A7A6-B7E3D6286331}) (Version: 40.56.30911 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 5.0.14 (x64) (HKLM-x32\...\{d21a4f20-968a-4b0c-bf04-a38da5f06e41}) (Version: 5.0.14.30911 - Microsoft Corporation) mks_vir (HKLM\...\mks_vir) (Version: - Arcabit/mks_vir) mMedica (HKLM-x32\...\MMEDICA) (Version: 7.1.3.0 - ASSECO POLAND SA) Mozilla Firefox (x64 pl) (HKLM\...\Mozilla Firefox 134.0.1 (x64 pl)) (Version: 134.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 92.0 - Mozilla) MSI to redistribute MS VS2005 CRT libraries (HKLM-x32\...\{A8D93648-9F7F-407D-915C-62044644C3DA}) (Version: 8.0.50727.42 - The Firebird Project) MSVCRT (HKLM-x32\...\{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}) (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (HKLM-x32\...\{D0B44725-3666-492D-BEF6-587A14BD9BD9}) (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (HKLM-x32\...\{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}) (Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (HKLM\...\{E9FA781F-3E80-4399-825A-AD3E11C28C77}) (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) NetworkRepairTool (HKLM-x32\...\{86E68F57-FAFE-4052-BDD4-3B90C38236AE}) (Version: 1.2.16.0 - Brother Industries, Ltd.) Hidden Npcap (HKLM-x32\...\NpcapInst) (Version: 1.71 - Nmap Project) NSS Smart Player wersja 3.10.0 (HKLM-x32\...\{DACF6EE0-5AAE-48EA-B44A-A92A449D9D12}_is1) (Version: 3.10.0 - NSS) nVision Agent 2 (HKLM-x32\...\{0E7E091E-75A5-4557-938F-58A1DE06E28D}) (Version: 2.0.4.30890 - Axence Inc.) Hidden Ofertowanie 2 2023 (Podkarpacki OW NFZ) (HKLM-x32\...\OFERT_2_09) (Version: 15.61.1204 - KAMSOFT S.A.) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.18324.20194 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.18324.20194 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.18324.20168 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0415-0000-0000000FF1CE}) (Version: 16.0.18324.20194 - Microsoft Corporation) Hidden Pakiet sterowników systemu Windows - Athena Smartcard Solutions (UmPass) SmartCard (01/02/2019 7.1.9.1) (HKLM\...\F29DB3A1B05EE7F338AFA87006E160B357C69ADB) (Version: 01/02/2019 7.1.9.1 - Athena Smartcard Solutions) Pakiet sterowników systemu Windows - Athena Smartcard Solutions (UmPass) SmartCard (07/08/2018 7.1.7.0) (HKLM\...\21EEC61C981C79FB8737C8CDED94B901A267D1BE) (Version: 07/08/2018 7.1.7.0 - Athena Smartcard Solutions) Photo Common (HKLM-x32\...\{3EEF6B1E-38AA-4F22-BA70-30A73BB06AAE}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Poczta usługi Windows Live (HKLM-x32\...\{45FF54A4-ECD4-455D-89A2-D209737AD726}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM-x32\...\{8FFD72FC-4FFA-472D-9F76-AEC85F602F9D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9075.1 - Realtek Semiconductor Corp.) RustDesk (HKLM\...\RustDesk) (Version: 1.1.9 - RustDesk) Sigillum SIGN (HKLM\...\{935BB4D2-D970-46C4-968C-5467F0638CD6}) (Version: 1.10.86 - PWPW S.A.) SoftwareUpdateNotification (HKLM-x32\...\{E28A6F15-BFBE-4D20-8B5F-6EABAA1E545E}) (Version: 1.0.14.0 - Brother Industries, Ltd.) Hidden Sprawdzanie kondycji komputera z systemem Windows (HKLM\...\{41E85393-7ED3-4C54-AC25-51F8CDF39CDF}) (Version: 3.6.2204.08001 - Microsoft Corporation) StatusMonitor (HKLM-x32\...\{EBAC9324-2CBC-4DFC-BD9F-6CDC01DCADB4}) (Version: 1.32.1.0 - Brother Industries, Ltd.) Hidden Stormshield SSL VPN Client (HKLM\...\{594FEC96-6560-46CE-B7D6-A9E9C18E9A40}) (Version: 3.2.4 - Stormshield) Stormshield SSL VPN Client (HKLM-x32\...\{21171DDA-77BB-4A8E-ADCA-5C65FF561906}) (Version: 2.8.0 - Stormshield) Surveillance Viewer IPC NB version 0.3.5.6 (HKLM-x32\...\{A16CB19B-2F86-4821-89CF-DD083AB47BA7}_is1) (Version: 0.3.5.6 - Surveillance Viewer) Szafir Host 1.0.7 (HKLM\...\{18D62851-38C5-4D90-8CC9-1D57559C1659}) (Version: 1.0.7 - Krajowa Izba Rozliczeniowa S.A.) Środowisko uruchomieniowe Microsoft Edge WebView2 (HKLM-x32\...\Microsoft EdgeWebView) (Version: 131.0.2903.146 - Microsoft Corporation) Hidden UltraViewer version 6.6.19 (HKLM-x32\...\{E0FABD74-083B-47F4-AC5B-CA4237BF8913}_is1) (Version: 6.6.19 - DucFabulous) UltraVnc (HKLM\...\Ultravnc2_is1) (Version: 1.2.1.1 - uvnc bvba) Update for x64-based Windows Systems (KB5001716) (HKLM\...\{DA80A019-4C3B-4DAA-ACA1-6937D7CAAF9E}) (Version: 8.94.0.0 - Microsoft Corporation) USBPcap 1.5.4.0 (HKLM\...\USBPcap) (Version: 1.5.4.0 - Tomasz Mon) UsbRepairTool (HKLM-x32\...\{F8762A81-32B5-4144-9F3C-9274F515A651}) (Version: 1.4.0.0 - Brother Industries, Ltd.) Hidden Web Components (HKLM-x32\...\{03B13AF8-9625-478A-AF0E-205337B9415A}_is1) (Version: 3.0.7.7 - ) Windows Live Communications Platform (HKLM-x32\...\{41C61308-6CFD-4D54-AB6A-7136ED08A18E}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Installer (HKLM-x32\...\{659CB81C-B54E-4DF1-B618-F35777393A54}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Mail (HKLM-x32\...\{B775C26B-EAA8-4A11-ACBF-76E52DF6B805}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live MIME IFilter (HKLM\...\{25058321-C33E-496B-8915-6FD64D362CAF}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Photo Common (HKLM-x32\...\{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live PIMT Platform (HKLM-x32\...\{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE (HKLM-x32\...\{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (HKLM-x32\...\{D1893000-EA77-493C-8DDD-E262436E959B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform (HKLM-x32\...\{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (HKLM-x32\...\{AC57543E-EC54-4AB7-A18C-4B04BB1CF09A}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (HKLM-x32\...\{714E162E-CD4F-4F1B-8302-7F5179409C25}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer Resources (HKLM-x32\...\{E0848A2E-A162-45B2-9F5A-A3921DB444C2}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden WinSCP 6.3.4 (HKU\S-1-5-21-1999557217-327936263-3457369781-1001\...\winscp3_is1) (Version: 6.3.4 - Martin Prikryl) Wireshark 4.0.5 64-bit (HKLM-x32\...\Wireshark) (Version: 4.0.5 - The Wireshark developer community, hxxps://www.wireshark.org) Wtyczka e-Deklaracje (HKLM-x32\...\{707197F1-9848-4992-8A37-1AC449BC7FC2}) (Version: 11.0.0 - Ministerstwo Finansów) ZeroTier One (HKLM-x32\...\{D92ABBAA-7B92-45E8-9B95-97ADE90B9B94}) (Version: 1.6.6 - ZeroTier, Inc.) Hidden ZeroTier One (HKLM-x32\...\ZeroTier One 1.6.6) (Version: 1.6.6 - ZeroTier, Inc.) ZeroTier One Virtual Network Port (HKLM\...\{272B1192-65BE-4BDE-894B-6D3AD8BF7FD2}) (Version: 1.0.1 - ZeroTier) Hidden Zoom (HKU\S-1-5-21-1999557217-327936263-3457369781-1001\...\ZoomUMX) (Version: 5.17.11 (34827) - Zoom Video Communications, Inc.) Packages: ========= Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2024-12-12] () Centrum sterowania grafiką Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2024-11-13] (INTEL CORP) [Startup Task] Dodatek Aparat multimediów dla aplikacji Zdjęcia -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-10-15] (Microsoft Corporation) HEIC To JPG, PNG, PDF - Image Converter -> C:\Program Files\WindowsApps\26031PicsCanvas.HEICToJPGPNGPDF-ImageConverter_1.0.5.0_x64__wgnm7284c5d2a [2024-10-29] (PicsCanvas) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_157.1.1186.0_x64__v10z8vjag6ke6 [2025-01-10] (HP Inc.) KONICA MINOLTA Print Experience -> C:\Program Files\WindowsApps\KONICAMINOLTAINC.KONICAMINOLTAPrintExperience_2.4.0.0_neutral__s63fsn2sety0r [2024-03-05] (KONICA MINOLTA INC) Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.22.240.0_x64__dt26b99r8h8gj [2023-09-14] (Realtek Semiconductor Corp) Spotify – muzyka i podcasty -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.440.0_x64__zpdnekdrzrea0 [2025-01-13] (Spotify AB) [Startup Task] Windows File Recovery -> C:\Program Files\WindowsApps\Microsoft.WindowsFileRecovery_0.1.20151.0_x64__8wekyb3d8bbwe [2023-10-04] (Microsoft Corporation) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-1999557217-327936263-3457369781-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe) CustomCLSID: HKU\S-1-5-21-1999557217-327936263-3457369781-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe) CustomCLSID: HKU\S-1-5-21-1999557217-327936263-3457369781-1001_Classes\CLSID\{E15E1D68-0D1C-49F7-BEB8-812B1E00FA60}\InprocServer32 -> C:\Users\ITI1032\AppData\Local\Programs\WinSCP\DragExt64.dll (Martin Prikryl -> Martin Prikryl) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-07-20] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers1: [B1ShellEx] -> {76CF52AF-2B2D-4999-8CE8-495187BB11CD} => C:\Program Files (x86)\B1 Free Archiver\B1Shellext64.dll [2015-09-16] (Catalina Group Limited -> b1.org) [Brak podpisu cyfrowego] ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-07-20] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncShell64.dll [2025-01-15] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-07-20] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers6: [B1ShellEx] -> {76CF52AF-2B2D-4999-8CE8-495187BB11CD} => C:\Program Files (x86)\B1 Free Archiver\B1Shellext64.dll [2015-09-16] (Catalina Group Limited -> b1.org) [Brak podpisu cyfrowego] ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\WINDOWS\system32\StartMenuHelper64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] ==================== Codecs (filtrowane) ==================== ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) Shortcut: C:\Users\ITI1032\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stormshield SSL VPN Client\add_driver_w10.lnk -> D:\Program Files\Stormshield\Stormshield SSL VPN Client\scripts\add_driver_w10.bat () Shortcut: C:\Users\ITI1032\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stormshield SSL VPN Client\add_user_to_openvpn_administrators.lnk -> D:\Program Files\Stormshield\Stormshield SSL VPN Client\scripts\add_user_to_openvpn_administrators.bat () Shortcut: C:\Users\ITI1032\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stormshield SSL VPN Client\delete_driver_w10.lnk -> D:\Program Files\Stormshield\Stormshield SSL VPN Client\scripts\delete_driver_w10.bat () Shortcut: C:\Users\ITI1032\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stormshield SSL VPN Client\generate_ovpn_auth.lnk -> D:\Program Files\Stormshield\Stormshield SSL VPN Client\scripts\generate_ovpn_auth.bat () ==================== Załadowane moduły (filtrowane) ============= 2021-10-25 08:13 - 2021-05-10 06:30 - 000071168 _____ () [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files (x86)\Axence\nVision Agent 2\ZLIB1.dll 2025-01-20 13:45 - 2025-01-20 13:45 - 000724992 _____ () [Brak podpisu cyfrowego] \\?\C:\Users\ITI1032\AppData\Local\Temp\13a96a6a-43f6-4a63-89c6-d065016247fe.tmp.node 2025-01-20 13:45 - 2025-01-20 13:45 - 000232960 _____ () [Brak podpisu cyfrowego] \\?\C:\Users\ITI1032\AppData\Local\Temp\2f713c3b-18f1-4c10-b21d-92c3a075fd22.tmp.node 2025-01-20 13:45 - 2025-01-20 13:45 - 000498176 _____ () [Brak podpisu cyfrowego] \\?\C:\Users\ITI1032\AppData\Local\Temp\809a8450-c237-405f-ad09-5f79d4b9e658.tmp.node 2025-01-20 13:45 - 2025-01-20 13:45 - 000515584 _____ () [Brak podpisu cyfrowego] \\?\C:\Users\ITI1032\AppData\Local\Temp\9d557ce9-bd28-4f69-a077-a7eb457666d4.tmp.node 2025-01-20 13:45 - 2025-01-20 13:45 - 000498176 _____ () [Brak podpisu cyfrowego] \\?\C:\Users\ITI1032\AppData\Local\Temp\b2ea275c-55ee-47d4-86ef-c37c4b72a5cd.tmp.node 2021-10-27 13:15 - 2021-05-31 06:09 - 000290304 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Axence\nVision\PostgreSQL\12\bin\libpq.dll 2021-10-27 13:15 - 2021-05-10 06:30 - 000082432 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Axence\nVision\PostgreSQL\12\bin\ZLIB1.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 005516800 _____ () [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\dhconfigsdk.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 026932736 _____ () [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\dhnetsdk.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 003133440 _____ () [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\HCCore.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 001187840 _____ () [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\HCNetSDK.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 000078774 _____ () [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\libbz2-1.dll 2024-04-24 12:26 - 2024-03-05 00:10 - 000093184 _____ () [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\lprdb.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 000056320 _____ () [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\QtSolutions_Service-head.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 002204160 _____ () [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\Sadp.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 000100279 _____ () [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\zlib1.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 000777728 _____ () [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\zlplaysdk.dll 2022-05-25 07:13 - 2015-09-16 15:27 - 000838552 _____ (Catalina Group Limited -> b1.org) [Brak podpisu cyfrowego] C:\Program Files (x86)\B1 Free Archiver\B1Shellext64.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 015217664 _____ (FFmpeg Project) [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\avcodec-60.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 002458112 _____ (FFmpeg Project) [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\avformat-60.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 001055744 _____ (FFmpeg Project) [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\avutil-58.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 000125440 _____ (FFmpeg Project) [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\swresample-4.dll 2024-04-24 12:26 - 2024-03-05 00:08 - 001056753 _____ (Free Software Foundation) [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\libiconv-2.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 003336192 _____ (Hangzhou Zeno Technology Co., Ltd.) [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\zlnetsdk.dll 2021-09-15 09:17 - 2021-07-20 10:00 - 000077824 _____ (Igor Pavlov) [Brak podpisu cyfrowego] C:\Program Files\7-Zip\7-zip.dll 2018-07-15 12:15 - 2018-07-15 12:15 - 000885560 _____ (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] C:\Program Files\Classic Shell\ClassicExplorer64.dll 2018-07-15 12:15 - 2018-07-15 12:15 - 003664696 _____ (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll 2018-07-15 12:15 - 2018-07-15 12:15 - 000291128 _____ (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] C:\WINDOWS\system32\StartMenuHelper64.dll 2024-04-24 12:26 - 2024-03-05 00:06 - 000063434 _____ (MinGW-W64 Project. All rights reserved.) [Brak podpisu cyfrowego] d:\Program Files\BCS Manager\libwinpthread-1.dll 2021-10-25 08:13 - 2021-05-10 06:30 - 001281024 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files (x86)\Axence\nVision Agent 2\libeay32.dll 2021-10-25 08:13 - 2021-05-10 06:30 - 000278528 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files (x86)\Axence\nVision Agent 2\ssleay32.dll 2021-10-27 13:15 - 2021-05-10 06:30 - 002107904 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files (x86)\Axence\nVision\PostgreSQL\12\bin\libeay32.dll 2021-10-27 13:15 - 2021-05-10 06:30 - 000354816 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Brak podpisu cyfrowego] C:\Program Files (x86)\Axence\nVision\PostgreSQL\12\bin\ssleay32.dll 2021-10-25 08:13 - 2021-05-10 06:31 - 002417152 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files (x86)\Axence\nVision Agent 2\libcrypto-1_1.dll 2021-10-25 08:13 - 2021-05-10 06:31 - 000503296 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files (x86)\Axence\nVision Agent 2\libssl-1_1.dll ==================== Alternate Data Streams (filtrowane) ======== ==================== Tryb awaryjny (filtrowane) ================== ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer (filtrowane) ============= HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-1999557217-327936263-3457369781-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://192.168.1.10:82/ BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2024-12-17] (Microsoft Corporation -> Microsoft Corporation) BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_361\bin\ssv.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_361\bin\jp2ssv.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation) BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-01-13] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2021-09-07 08:32 - 2021-09-07 08:32 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;D:\ORACLE\product\11.2.0\client_1\bin;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\CryptoTech\CryptoCard\;C:\Program Files\CryptoTech\CryptoCard\;D:\RUNTIME7.0;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files (x86)\ZeroTier\One\;C:\Program Files\dotnet\ HKU\S-1-5-21-1999557217-327936263-3457369781-1001\Control Panel\Desktop\\Wallpaper -> D:\!tmp\ciekawe\wphd\earth.jpg HKU\S-1-5-21-1999557217-327936263-3457369781-1002\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg HKU\S-1-5-21-1999557217-327936263-3457369781-1003\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Zapora systemu Windows [funkcja wyłączona] Network Binding: ============= Połączenie lokalne: TAP-Windows Adapter V9 -> tap0901.sys Ethernet: Realtek Gaming GbE Family Controller -> rt640x64.sys ZeroTier One [3efa5cb78a8c3087]: ZeroTier Virtual Port -> zttap300.sys Połączenie lokalne 2: TAP-Windows Adapter V9 #2 -> tap0901.sys INSECURE_NPCAP: Npcap Packet Driver (NPCAP) INSECURE_NPCAP_WIFI: Npcap Packet Driver (NPCAP) (Wi-Fi) ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) HKLM\...\StartupApproved\StartupFolder: => "AnyDesk.lnk" HKLM\...\StartupApproved\StartupFolder: => "Stormshield SSL VPN Client.lnk" HKLM\...\StartupApproved\Run32: => "CryptoCard Suite Cert Monitor" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "st_global" HKLM\...\StartupApproved\Run32: => "BrotherSoftwareUpdateNotification" HKLM\...\StartupApproved\Run32: => "BrStsMon00" HKLM\...\StartupApproved\Run32: => "WidgetPodatnikInfo" HKU\S-1-5-21-1999557217-327936263-3457369781-1001\...\StartupApproved\StartupFolder: => "Stormshield SSL VPN Client.lnk" HKU\S-1-5-21-1999557217-327936263-3457369781-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_F9DD321172C629C79F4ACE84063C9F43" HKU\S-1-5-21-1999557217-327936263-3457369781-1001\...\StartupApproved\Run: => "CCXProcess" ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [{1CE49090-B9AF-44B9-B38F-D8651DDF0832}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{19297C02-BF2E-4AD2-A1AF-0B5D893BD8E1}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{61E187B5-3E70-4F06-B856-8B2182AFCC65}] => (Allow) C:\Program Files (x86)\FERRO Software\Ferro Backup System\FBSWorker.exe (Paweł Kania Ferro Software -> FERRO Software) FirewallRules: [{69C154BF-F108-48C8-B37C-FC7FFC829D26}] => (Allow) C:\Program Files\uvnc bvba\UltraVNC\vncviewer.exe (uvnc bvba -> UltraVNC) FirewallRules: [{E0966CFD-7E99-46D1-B523-117AD1BBB26E}] => (Allow) C:\Program Files\uvnc bvba\UltraVNC\vncviewer.exe (uvnc bvba -> UltraVNC) FirewallRules: [{B823EA5A-ED84-43F1-B4BE-DC2DE4AC7F10}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{82D8A187-0657-496A-A96C-E45829692E80}] => (Allow) LPort=2869 FirewallRules: [{B66C3DBF-9784-4988-B4AE-7A27D13F410F}] => (Allow) LPort=1900 FirewallRules: [{CEC327A3-0D2D-4EC6-8E2C-CDD4870FBF4D}] => (Allow) C:\Program Files (x86)\FERRO Software\Ferro Backup System\FBSWorker.exe (Paweł Kania Ferro Software -> FERRO Software) FirewallRules: [{E84AB54B-85D6-4B4D-96F3-02CD627509FE}] => (Allow) C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe (ZeroTier, Inc. -> ) FirewallRules: [{FC62D136-66F1-4931-B303-196A8038B6A9}] => (Allow) LPort=9993 FirewallRules: [{D2BE63BE-232C-49E2-87DE-0D853FE4C35A}] => (Allow) LPort=9993 FirewallRules: [{AC6B4659-43BA-4F44-A131-CFC272D87724}] => (Allow) C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe (ZeroTier, Inc. -> ) FirewallRules: [{0778249B-033A-4997-9C2A-2810E70B8034}] => (Allow) C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe (ZeroTier, Inc. -> ) FirewallRules: [{A07D914C-BBBA-4AE0-A66A-67DD60CA860A}] => (Allow) C:\Program Files (x86)\Axence\nVision Agent 2\nVisionA.exe (AXENCE INC. -> Axence Inc.) FirewallRules: [{E32E3583-D068-43F7-85ED-957BA997C135}] => (Allow) C:\Program Files (x86)\Axence\nVision Agent 2\nVisionA.exe (AXENCE INC. -> Axence Inc.) FirewallRules: [{0A31F032-3981-40CD-A640-317B40474A89}] => (Allow) C:\Program Files (x86)\Axence\nVision\nVision.exe (AXENCE INC. -> Axence Inc.) FirewallRules: [{5617F91B-2C3C-4CB4-B7F2-CFCA162B2343}] => (Allow) C:\Program Files (x86)\Axence\nVision\netTools.exe (AXENCE INC. -> Axence Inc.) FirewallRules: [{44229CAA-030C-47A8-A972-8E186A02CF52}] => (Allow) C:\Program Files (x86)\Axence\nVision\nVision.exe (AXENCE INC. -> Axence Inc.) FirewallRules: [{36BADAF5-86F2-4F5E-84FA-9BE7923EB8D6}] => (Allow) C:\Program Files (x86)\Axence\nVision\nVisionHelper32.exe (AXENCE INC. -> Axence Inc.) FirewallRules: [{F71BF84F-58D6-458B-8EA3-FBB4DC039D98}] => (Allow) C:\Program Files (x86)\Axence\nVision\netTools.exe (AXENCE INC. -> Axence Inc.) FirewallRules: [{E5AE9AC5-7FC0-4953-BB41-F5501E8DEB81}] => (Allow) %USERPROFILE%\Downloads\TeamViewer_Setup_x64.exe => Brak pliku FirewallRules: [{BFAF8886-B77E-4126-8DA6-44C135646F49}] => (Allow) C:\Program Files (x86)\Browny02\Brother\BrPrintFinishNotice\BrPrintFinishNotice.exe (Brother Industries, Ltd. -> ) FirewallRules: [{EC2D79AA-30BD-44DD-925D-531E700369E9}] => (Allow) C:\Program Files (x86)\Browny02\Brother\BrPrintFinishNotice\BrPrintFinishNotice.exe (Brother Industries, Ltd. -> ) FirewallRules: [{F3B8D52A-22A1-4CF7-838B-ABEAF10E72A1}] => (Allow) C:\Program Files\RustDesk\RustDesk.exe (Zhou Huabing -> ) FirewallRules: [{DA6192C0-36FC-4B37-8381-5FA4C073B448}] => (Allow) C:\Program Files (x86)\Sigillum Sign\sigillum.exe (PWPW S.A. -> ) FirewallRules: [{AB46A454-F1FA-461F-8B60-F8BB1D7B2800}] => (Allow) C:\Program Files (x86)\Sigillum Sign\sigillum.exe (PWPW S.A. -> ) FirewallRules: [{7E24FEA9-DCB5-41DE-A42C-EC9A86FE6015}] => (Allow) C:\Program Files (x86)\Sigillum Sign\sigillumCli.exe (PWPW S.A. -> ) FirewallRules: [{7B4F7645-4538-4F22-BF11-549DB4ECD083}] => (Allow) C:\Program Files (x86)\Sigillum Sign\sigillumCli.exe (PWPW S.A. -> ) FirewallRules: [{2E3C73AF-5488-44B4-9246-3B01610A4E3B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.114.3214.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Brak pliku FirewallRules: [{F64E1F43-DE33-4EB7-8AC1-D92D4063757E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.114.3214.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Brak pliku FirewallRules: [{015D41BD-CD55-4159-9A2C-0EC68BF6726D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.114.3214.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Brak pliku FirewallRules: [{65448C23-7B58-4B87-96D0-ED0E8ECA1A3B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.114.3214.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Brak pliku FirewallRules: [{FD17900F-4F60-468D-8B4F-D908C5807678}] => (Allow) C:\Users\ITI1032\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{6FC484BF-55E7-4D12-8D47-8B291A3B012D}] => (Allow) C:\Users\ITI1032\AppData\Roaming\Zoom\bin\airhost.exe => Brak pliku FirewallRules: [{98150389-AD5B-457F-AD31-2BE560526F66}] => (Allow) C:\Users\ITI1032\AppData\Roaming\Zoom\bin\airhost.exe => Brak pliku FirewallRules: [{1DF41973-F9B3-4146-82F5-663F2A7C84BD}] => (Allow) D:\Program Files\BCS Manager\BCSManager.exe () [Brak podpisu cyfrowego] FirewallRules: [{D58965EB-15F7-45F8-B716-6345A13AD27A}] => (Allow) D:\Program Files\BCS Manager\BCSManager.exe () [Brak podpisu cyfrowego] FirewallRules: [{A735EA7F-AE30-4D78-9B6E-F737078AA80C}] => (Allow) d:\Program Files\BCS Manager\BCSManager.exe () [Brak podpisu cyfrowego] FirewallRules: [{D24B71E9-91C1-427C-AC64-CB8104E9AFF1}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.120.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Brak pliku FirewallRules: [{C97B838F-8FA6-42BE-8849-2086A1F98703}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.120.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Brak pliku FirewallRules: [{AE7AA4D2-CEB8-4260-BF99-5FFE15D5DE72}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.120.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Brak pliku FirewallRules: [{7E5D96EC-D761-403D-A364-D4A3D3843B1C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.120.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Brak pliku FirewallRules: [{179656C6-6F07-4864-8732-5A8E706353B8}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{7223F808-EC24-4860-AF45-0771DA3209B3}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.134.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{CA69403F-723D-4B85-A887-94273FC7AC8A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.134.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{4B2E8334-BE8E-4162-924D-6FEB261F06BE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.134.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{D5243A89-9612-4386-B163-86E465E41E11}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.134.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{73AB3F08-F48B-485D-898F-417A1A4B787D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.440.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{5AFBB3D6-D441-453D-9DC9-44F63C39E876}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.440.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{3B4A3A4A-4AC1-4C9F-9EE3-266DF455BE63}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.440.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{6149C2DA-6764-44FC-B0E3-4A766B9591E6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.440.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{11214933-82D6-4C73-9044-85F1205337FF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.440.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{CAC74B11-433D-4B5C-BE7A-8577C7EADFC6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.440.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{1C929512-266C-4DCC-84F8-CF727CAAEA72}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.440.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{08B6E156-9558-45A3-926B-DE25AE089145}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.440.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{A8A758B1-9E71-431C-B1A1-B21801E5181F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.440.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{B083E7C1-7932-48BF-A38B-A2B173508D0F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.253.440.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{0CCFF4C9-6ACD-4F5C-BB4E-7EF20BDF1BB6}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{F76E1989-013C-4DC0-B906-D3B197D23AB1}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\131.0.2903.146\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{87A3901E-FCB3-43A1-8129-87F754883BDF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{CA653725-E0D0-4931-B24C-179D4D9A3A5C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{62BAA7E5-9EC2-427E-A5FF-9394EB621900}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{B74AA840-2942-4360-926A-B2D2EF1EBBE1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{2F1F71FD-8810-4F23-BB7B-D65FC9597F48}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{4A10803B-C0DB-4A07-9FAE-2B973D108E93}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{6E7B5F2A-3597-4515-83C7-E07269DF2FEF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{C6C2FBD6-EBEE-4D7A-9DCF-309FDC28A8A9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{F6D182BE-9679-41F6-A911-4A0BCE4FB772}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{EC6F0B43-E75C-4BB6-A11A-C85B9066A977}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{EB34C3F4-70E2-417C-B226-C9B821CE779F}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [{356EC920-5C07-4BCD-BFA9-589A828F235C}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [{7DE6FACD-FFF3-4079-82E6-88CCDD9C198C}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [{39E7A990-87E0-4607-A65A-7B3896D3687D}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [{4499BC61-5378-4322-B7EF-D32AB1E805FA}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [{CC762178-398D-4D79-93BB-BAD08865243B}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) ==================== Punkty Przywracania systemu ========================= 30-12-2024 08:45:56 Zaplanowany punkt kontrolny 07-01-2025 08:17:17 Zaplanowany punkt kontrolny 16-01-2025 08:17:35 Zaplanowany punkt kontrolny ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ Name: ZeroTier Virtual Port Description: ZeroTier Virtual Port Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: ZeroTier Service: zttap300 Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (01/20/2025 02:11:37 PM) (Source: ComarchCardServer) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/20/2025 02:11:34 PM) (Source: ComarchCardServer) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/20/2025 02:10:30 PM) (Source: ComarchCardServer) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/20/2025 02:10:26 PM) (Source: ComarchCardServer) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/20/2025 02:09:23 PM) (Source: ComarchCardServer) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/20/2025 02:09:19 PM) (Source: ComarchCardServer) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/20/2025 02:08:15 PM) (Source: ComarchCardServer) (EventID: 0) (User: ) Description: Event-ID 0 Error: (01/20/2025 02:08:12 PM) (Source: ComarchCardServer) (EventID: 0) (User: ) Description: Event-ID 0 Dziennik System: ============= Error: (01/20/2025 01:47:21 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Broker monitorów czasu wykonywania funkcji System Guard zakończyła działanie; wystąpił następujący błąd: %%3489660935 Error: (01/20/2025 01:47:20 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa Google Update (gupdate) z powodu następującego błędu: Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. Error: (01/20/2025 01:47:20 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (180000 ms) podczas oczekiwania na połączenie się z usługą Usługa Google Update (gupdate). Error: (01/20/2025 01:47:19 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: ZARZĄDZANIE NT) Description: The Secure Boot update failed to update a Secure Boot variable with error (-2147020471 = Funkcja bezpiecznego rozruchu nie jest włączona na tym komputerze.). For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931 Error: (01/20/2025 01:45:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi WinPcap Packet Driver (NPF) z powodu następującego błędu: Nie można odnaleźć określonego pliku. Error: (01/20/2025 01:45:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi WinPcap Packet Driver (NPF) z powodu następującego błędu: Nie można odnaleźć określonego pliku. Error: (01/20/2025 01:45:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi WinPcap Packet Driver (NPF) z powodu następującego błędu: Nie można odnaleźć określonego pliku. Error: (01/20/2025 01:45:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi WinPcap Packet Driver (NPF) z powodu następującego błędu: Nie można odnaleźć określonego pliku. Windows Defender: ================Event[0]: Date: 2022-02-28 07:33:13 Description: Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń. Nowa wersja analizy zabezpieczeń: Poprzednia wersja analizy zabezpieczeń: 1.303.25.0 Źródło aktualizacji: Centrum firmy Microsoft ds. ochrony przed złośliwym oprogramowaniem Typ analizy zabezpieczeń: Oprogramowanie antywirusowe Typ aktualizacji: Pełne Użytkownik: ZARZĄDZANIE NT\USŁUGA SIECIOWA Bieżąca wersja aparatu: Poprzednia wersja aparatu: 1.1.16400.2 Kod błędu: 0x80072ee7 Opis błędu: Nie można określić nazwy serwera lub adresu. Date: 2022-02-28 07:33:13 Description: Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń. Nowa wersja analizy zabezpieczeń: Poprzednia wersja analizy zabezpieczeń: 1.303.25.0 Źródło aktualizacji: Centrum firmy Microsoft ds. ochrony przed złośliwym oprogramowaniem Typ analizy zabezpieczeń: Oprogramowanie antyszpiegowskie Typ aktualizacji: Pełne Użytkownik: ZARZĄDZANIE NT\USŁUGA SIECIOWA Bieżąca wersja aparatu: Poprzednia wersja aparatu: 1.1.16400.2 Kod błędu: 0x80072ee7 Opis błędu: Nie można określić nazwy serwera lub adresu. Date: 2022-02-28 07:33:13 Description: Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń. Nowa wersja analizy zabezpieczeń: Poprzednia wersja analizy zabezpieczeń: 1.303.25.0 Źródło aktualizacji: Centrum firmy Microsoft ds. ochrony przed złośliwym oprogramowaniem Typ analizy zabezpieczeń: Oprogramowanie antywirusowe Typ aktualizacji: Pełne Użytkownik: ZARZĄDZANIE NT\USŁUGA SIECIOWA Bieżąca wersja aparatu: Poprzednia wersja aparatu: 1.1.16400.2 Kod błędu: 0x80072ee7 Opis błędu: Nie można określić nazwy serwera lub adresu. Date: 2022-02-28 07:33:13 Description: Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń. Nowa wersja analizy zabezpieczeń: Poprzednia wersja analizy zabezpieczeń: 1.303.25.0 Źródło aktualizacji: Centrum firmy Microsoft ds. ochrony przed złośliwym oprogramowaniem Typ analizy zabezpieczeń: Oprogramowanie antywirusowe Typ aktualizacji: Pełne Użytkownik: ZARZĄDZANIE NT\USŁUGA SIECIOWA Bieżąca wersja aparatu: Poprzednia wersja aparatu: 1.1.16400.2 Kod błędu: 0x80072ee7 Opis błędu: Nie można określić nazwy serwera lub adresu. Date: 2022-02-28 07:33:13 Description: Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń. Nowa wersja analizy zabezpieczeń: Poprzednia wersja analizy zabezpieczeń: 1.303.25.0 Źródło aktualizacji: Centrum firmy Microsoft ds. ochrony przed złośliwym oprogramowaniem Typ analizy zabezpieczeń: Oprogramowanie antyszpiegowskie Typ aktualizacji: Pełne Użytkownik: ZARZĄDZANIE NT\USŁUGA SIECIOWA Bieżąca wersja aparatu: Poprzednia wersja aparatu: 1.1.16400.2 Kod błędu: 0x80072ee7 Opis błędu: Nie można określić nazwy serwera lub adresu. CodeIntegrity: =============== Date: 2022-12-20 07:15:13 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Mozilla Firefox\firefox.exe) attempted to load \Device\HarddiskVolume3\Program Files\Mozilla Firefox\mozavcodec.dll that did not meet the Microsoft signing level requirements. Date: 2022-12-20 07:15:13 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Mozilla Firefox\firefox.exe) attempted to load \Device\HarddiskVolume3\Program Files\Mozilla Firefox\mozavutil.dll that did not meet the Microsoft signing level requirements. ==================== Statystyki pamięci =========================== BIOS: American Megatrends International, LLC. F3 03/16/2021 Płyta główna: Gigabyte Technology Co., Ltd. B560M DS3H Procesor: 11th Gen Intel(R) Core(TM) i9-11900 @ 2.50GHz Procent pamięci w użyciu: 22% Całkowita pamięć fizyczna: 32565.29 MB Dostępna pamięć fizyczna: 25119.7 MB Całkowita pamięć wirtualna: 37429.29 MB Dostępna pamięć wirtualna: 29908.24 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:232.26 GB) (Free:55.35 GB) (Model: Samsung SSD 970 EVO Plus 250GB) NTFS Drive d: (Dane) (Fixed) (Total:886.45 GB) (Free:726.81 GB) (Model: ST2000DM008-2FR102) NTFS Drive e: (Instalki) (Fixed) (Total:976.56 GB) (Free:844.22 GB) (Model: ST2000DM008-2FR102) NTFS \\?\Volume{87e9eccc-11ff-4252-b1ee-a2639c5687ec}\ () (Fixed) (Total:0.51 GB) (Free:0.08 GB) NTFS \\?\Volume{41c52ade-f128-43c4-9caa-5fd161c34c3d}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: B2BFB944) Partition 1: (Not Active) - (Size=886.5 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=976.6 GB) - (Type=07 NTFS) ========================================================== Disk: 1 (Protective MBR) (Size: 232.9 GB) (Disk ID: 00000000) Partition: GPT. ==================== Koniec Addition.txt =======================