AdrianoCelentano Opublikowano 22 Marca 2023 Zgłoś Udostępnij Opublikowano 22 Marca 2023 Witam, Błąd instalacji zbiorczej aktualizacji Windows 10 Pacjent: https://drive.google.com/file/d/1uLdJ-p ... share_link Błędy win update przy każdej ponownej próbie odinstalowania i zainstalowania aktualizacji: https://drive.google.com/file/d/1y8fAgA ... share_link https://drive.google.com/file/d/1RqokPu ... share_link Usługa rozwiązywanie problemów: https://drive.google.com/file/d/1-s9O5d ... share_link Nie pomogło włączanie i wyłączanie usługi Windows Update, a także komenda sfc/ scannow LOG FRST Spoiler Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 22-03-2023 Uruchomiony przez remik (administrator) DESKTOP-SC66HVQ (Dell Inc. Inspiron 5370) (22-03-2023 20:30:41) Uruchomiony z C:\Users\remik\Downloads Załadowane profile: remik Platform: Microsoft Windows 10 Home Wersja 1709 16299.1087 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxEM.exe (explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe (Intel\DPTF\esif_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <19> (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (services.exe ->) (CyberLink Corp. -> ) C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (services.exe ->) (Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe (services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe (services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe (services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe (services.exe ->) (Dell Inc -> Dell Products, LP.) C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe (services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_2a37e80de0b78f8b\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_2a37e80de0b78f8b\IntelCpHeciSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe (services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_9c788f1d162b1224\RstMwService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm\Bluetooth Suite\AdminService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe <2> (services.exe ->) (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe (services.exe ->) (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe (services.exe ->) (PDFescape -> Red Software) C:\Program Files\PDFescape Desktop\updater-ws.exe (services.exe ->) (PDFescape -> Red Software) C:\Program Files\PDFescape Desktop\ws.exe (services.exe ->) (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe (svchost.exe ->) (CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLMLSvc_P2G8.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1804.11545.0_x64__8wekyb3d8bbwe\Calculator.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9240512 2017-12-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1492928 2017-12-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [1210288 2017-11-14] (Waves Inc -> Waves Audio Ltd.) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [292104 2023-02-28] (Intel Corporation -> Intel) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Ograniczenia <==== UWAGA HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Ograniczenia <==== UWAGA HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [731240 2018-09-13] (AVB Disc Soft, SIA -> Disc Soft Ltd) HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\Run: [ALLUpdate] => C:\Program Files\ALLPlayer\ALLUpdate.exe [3884720 2017-10-04] (ALLPlayer Group -> ALLPlayer.org) HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [39159608 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\Run: [QuickMemoryTestOK] => C:\Users\remik\AppData\Roaming\QuickMemoryTestOK\QuickMemoryTestOK.exe [785728 2022-01-17] (Nenad Hrg -> Nenad Hrg SoftwareOK.com) HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\Run: [Microsoft Edge Update] => C:\Users\remik\AppData\Local\Microsoft\EdgeUpdate\1.3.169.31\MicrosoftEdgeUpdateCore.exe [256440 2022-10-12] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [7475664 2023-03-21] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1 HKLM\...\Windows x64\Print Processors\hpfpp70v: C:\Windows\System32\spool\prtprocs\x64\hpfpp70v.dll [248320 2009-04-16] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\HP 9311 Status Monitor: C:\Windows\system32\hpinksts9311LM.dll [332176 2012-09-12] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP AF11 Status Monitor: C:\Windows\system32\hpinkstsAF11LM.dll [329576 2012-04-02] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Deskjet 3050 J610 series): C:\Windows\system32\HPDiscoPM9311.dll [741480 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\hpf3l70v.dll: C:\Windows\system32\hpf3l70v.dll [136704 2009-04-16] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Company) HKLM\...\Print\Monitors\IppMon: C:\Windows\system32\IPPMon.dll [226816 2017-09-29] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Print\Monitors\PDFescape Desktop Monitor: C:\Windows\system32\spool\DRIVERS\x64\pdfescape desktop_pdfpmon_v.4.12.26.3.dll [932984 2022-11-12] (PDF Tools AG -> PDF Tools AG (hxxp://www.pdf-tools.com)) HKLM\Software\Microsoft\Active Setup\Installed Components: [OpenVPN_UserSetup] -> reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v OPENVPN-GUI /f IFEO\RAVBg64.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\RtkAudioService64.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\RtkNGUI64.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\RtlUpd64.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2019-07-22] ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.) Startup: C:\Users\remik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Powiadomienia monitorowania tuszu - HP Deskjet 3050 J610 series.lnk [2018-10-05] ShortcutAndArgument: Powiadomienia monitorowania tuszu - HP Deskjet 3050 J610 series.lnk -> C:\Windows\system32\RunDll32.exe => "C:\Program Files\HP\HP Deskjet 3050 J610 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN0BH3B47905HX;CONNECTION=USB;MONITOR=1; Startup: C:\Users\remik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk [2021-12-18] ShortcutTarget: Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {17306420-6A93-41B7-80E1-FEFADBFE62C4} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3231104 2022-05-02] (Intel Corporation -> Intel Corporation) Task: {23726D8A-0D19-457A-ADA5-0D116070D481} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (Brak pliku) Task: {27A5D97E-8A7E-4714-BD67-9E389EBB1D90} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe [3904304 2018-08-09] (Microsoft Windows -> Microsoft Corporation) Task: {39B0DFB2-AA90-4596-93ED-5695A6D74397} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1560056 2023-02-01] (Adobe Inc. -> Adobe Inc.) Task: {3AD89E6A-79C4-4521-AB02-B4A8EBE4173B} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_114_Plugin.exe [1456128 2019-01-19] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {563DC49C-618B-4AE7-8689-D4397FAAE74E} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3563797008-3845598522-1844387788-1001UA => C:\Users\remik\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205744 2022-07-17] (Microsoft Corporation -> Microsoft Corporation) Task: {58C19967-E0A4-4E35-B9FC-BAF912FEEF04} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [676256 2023-03-19] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {5EE08E0F-C966-4306-A0E5-7C14B2FD78E6} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3563797008-3845598522-1844387788-1001Core => C:\Users\remik\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205744 2022-07-17] (Microsoft Corporation -> Microsoft Corporation) Task: {60D4D08D-0754-4C1B-9BE6-B44BE9793314} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703544 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "2528e58b-f1db-4204-9a19-235cd8a8eb9b" --version "6.10.10347" --silent Task: {9E85FDBD-9259-4C46-BDE5-C3AE6018FA1B} - Brak ścieżki do pliku Task: {A1237F8B-BCCA-4412-A744-8D3F8F4CB5D2} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [718752 2023-03-19] (Mozilla Corporation -> Mozilla Foundation) Task: {AAEED40D-07A4-4515-A6B3-812723D68E69} - Brak ścieżki do pliku Task: {BB9AD5E1-1DD9-4336-8A9F-7D74EC069D9A} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {CBD6B727-1BB6-42B0-8CEA-9DF6A45B4E1D} - System32\Tasks\CCleanerSkipUAC - remik => C:\Program Files\CCleaner\CCleaner.exe [33038648 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {DE77C6C5-FAB0-4528-8FD8-7642C6EA1056} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLMLSvc_P2G8.exe [110008 2015-06-10] (CyberLink Corp. -> CyberLink) Task: {E2A5D8C0-8C4D-4277-9E4A-82581A8B05B6} - System32\Tasks\Microsoft\Windows\CUAssistant\CULauncher => C:\Program Files\CUAssistant\culauncher.exe (Brak pliku) Task: {F8423E99-805A-441C-8B06-2C984DE86699} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3231104 2022-05-02] (Intel Corporation -> Intel Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe Task: C:\Windows\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132.job => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{02bf68ae-d6b3-4505-9053-cb737ded862e}: [DhcpNameServer] 172.22.255.204 172.22.255.206 Tcpip\..\Interfaces\{0f1128e2-1b92-4a1f-8011-c6c5c4060f5d}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{318fd411-d3e5-421d-ad25-77e0d68a4ce8}: [DhcpNameServer] 8.8.8.8 Tcpip\..\Interfaces\{b090bd44-51dd-4f6a-8250-e4547d1c27c5}: [DhcpNameServer] 208.67.220.220 8.8.8.8 HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <==== UWAGA FireFox: ======== FF DefaultProfile: hp8d5h4m.default FF ProfilePath: C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default [2023-03-22] FF user.js: detected! => C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\user.js [2019-07-23] FF Homepage: Mozilla\Firefox\Profiles\hp8d5h4m.default -> hxxps://www.google.com FF Session Restore: Mozilla\Firefox\Profiles\hp8d5h4m.default -> [funkcja włączona] FF Notifications: Mozilla\Firefox\Profiles\hp8d5h4m.default -> hxxps://tvn24.pl FF Extension: (Hoxx VPN Proxy) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\@hoxx-vpn.xpi [2022-11-30] FF Extension: (FireX Proxy) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\divanproger@gmail.com.xpi [2020-06-22] FF Extension: (Forecastfox (fix version)) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\forecastfox@s3_fix_version.xpi [2020-11-23] FF Extension: (Google Translator for Firefox) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\translator@zoli.bod.xpi [2018-12-04] FF Extension: (Black rain remasterd (dark mode)) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\{0462bbb0-1289-43ad-aa72-1db3667345a6}.xpi [2022-04-03] FF Extension: (Microsoft Office - Dark Gray) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\{1c41d9fb-f904-4d38-850f-074312f06e64}.xpi [2021-06-02] FF Extension: (One Piece the brabo) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\{1f2fd97a-0f20-4d93-81d7-b73d9c77ffc9}.xpi [2022-04-03] FF Extension: (Dark space - The best dynamic theme) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\{22b0eca1-8c02-4c0d-a5d7-6604ddd9836e}.xpi [2022-04-03] FF Extension: (Gamer TIme) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\{3afd3680-7dda-4412-be2c-1494d8162531}.xpi [2021-12-23] FF Extension: (Cyan Galaxy) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\{3bd4f6ac-272c-47da-b288-3706cea55b12}.xpi [2022-04-03] FF Extension: (Breeze Dark) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\{4e507435-d65f-4467-a2c0-16dbae24f288}.xpi [2022-04-03] FF Extension: (NoScript) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2023-03-22] FF Extension: (Video Speed Controller) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\{7be2ba16-0f1e-4d93-9ebc-5164397477a9}.xpi [2021-06-15] FF Extension: (DarkTheme) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\{99c277af-d778-4a0b-9faa-b1d8165f0a55}.xpi [2022-04-03] FF Extension: (Dark No Glass) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\{a243a1bd-b94a-4e0e-ad34-52a176314dde}.xpi [2022-04-03] FF Extension: (Panda Safe Web) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\{b60873b9-51aa-4566-b2fc-c16de2ec8bff}.xpi [2018-09-19] FF Extension: (Easy Youtube Video Downloader Express) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2022-11-01] FF Extension: (Adblock Plus - darmowy adblocker) - C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2023-02-10] FF SearchPlugin: C:\Users\remik\AppData\Roaming\Mozilla\Firefox\Profiles\hp8d5h4m.default\searchplugins\bing-lavasoft-ff59.xml [2019-07-23] FF HKLM\...\Firefox\Extensions: [{90ca575e-4c80-47b5-8a3b-ad862f38a292}] - C:\Program Files (x86)\SafeMyWeb\ff\safe_my_web-1.0.1-fx.xpi => nie znaleziono FF HKLM\...\Firefox\Extensions: [pdfescape_desktop_conv_v.1@pdfescape.com] - C:\Program Files\PDFescape Desktop\creator\plugins\FirefoxAddin\pdfescape_desktop_conv_v.1@pdfescape.com.xpi FF Extension: (PDFescape Desktop Creator) - C:\Program Files\PDFescape Desktop\creator\plugins\FirefoxAddin\pdfescape_desktop_conv_v.1@pdfescape.com.xpi [2019-06-13] FF HKLM-x32\...\Firefox\Extensions: [{90ca575e-4c80-47b5-8a3b-ad862f38a292}] - C:\Program Files (x86)\SafeMyWeb\ff\safe_my_web-1.0.1-fx.xpi => nie znaleziono FF HKLM-x32\...\Firefox\Extensions: [pdfescape_desktop_conv_v.1@pdfescape.com] - C:\Program Files\PDFescape Desktop\creator\plugins\FirefoxAddin\pdfescape_desktop_conv_v.1@pdfescape.com.xpi FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_114.dll [2019-01-19] (Adobe Systems Incorporated -> ) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-03-21] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_114.dll [2019-01-19] (Adobe Systems Incorporated -> ) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [Brak pliku] FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [Brak pliku] FF Plugin HKU\S-1-5-21-3563797008-3845598522-1844387788-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin HKU\S-1-5-21-3563797008-3845598522-1844387788-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin HKU\S-1-5-21-3563797008-3845598522-1844387788-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] Chrome: ======= CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-02-01] (Adobe Inc. -> Adobe Inc.) R2 AtherosSvc; C:\Program Files (x86)\Qualcomm\Bluetooth Suite\adminservice.exe [404384 2022-01-23] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1072440 2023-03-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [208792 2018-02-10] (Dell Inc -> Dell Inc.) R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3346320 2018-02-10] (Dell Inc -> Dell Inc.) R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [217488 2018-02-10] (Dell Inc -> Dell Inc.) S3 Dell.CommandPowerManager.Service; C:\Windows\system32\dllhost.exe /Processid:{E3B3B2DD-BDD1-4775-A5B6-83B74EDD8560} [20888 2017-09-29] (Microsoft Windows -> Microsoft Corporation) R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [45784 2022-07-22] (Dell Inc -> ) R2 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3648616 2018-09-13] (AVB Disc Soft, SIA -> Disc Soft Ltd) R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [42760 2023-02-28] (Intel Corporation -> Intel) R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [211208 2023-02-28] (Intel Corporation -> Intel) S2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [109024 2017-11-08] (Panda Security S.L. -> Panda Security, S.L.) R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Brak podpisu cyfrowego] S2 Panda VPN Service; C:\Program Files (x86)\Panda Security\Panda Security Protection\Hydra.Sdk.Windows.Service.exe [320848 2017-11-20] (AnchorFree Inc -> ) R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [84176 2019-02-19] (Panda Security S.L. -> Panda Security, S.L.) R3 PDFescape Desktop; C:\Program Files\PDFescape Desktop\ws.exe [2452344 2019-07-01] (PDFescape -> Red Software) S3 PDFescape Desktop Creator; C:\Program Files\PDFescape Desktop\creator\common\creator-ws.exe [575352 2019-07-01] (PDFescape -> Red Software) R2 PDFescape Desktop Update Service; C:\Program Files\PDFescape Desktop\updater-ws.exe [1383800 2019-07-01] (PDFescape -> Red Software) R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Brak podpisu cyfrowego] S3 ProtonVPN Service; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPNService.exe [104184 2021-02-26] (Proton Technologies AG -> ) S3 ProtonVPN Update Service; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.UpdateService.exe [62712 2021-02-26] (Proton Technologies AG -> ) R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [48784 2017-10-18] (Panda Security S.L. -> Panda Security, S.L.) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2014-04-14] (CyberLink Corp. -> ) S3 ss_conn_launcher_service; C:\Windows\System32\Samsung\EasySetup\ss_conn_launcher.exe [182392 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-07-22] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.3-0\NisSrv.exe [3224328 2023-03-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.3-0\MsMpEng.exe [133592 2023-03-07] (Microsoft Windows Publisher -> Microsoft Corporation) S2 dcpm-notify; "C:\Program Files\Dell\CommandPowerManager\NotifyService.exe" [X] S4 RNDBWM; "C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe" [X] S2 SmartByte Network Service x64; "C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe" [X] ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 aftap0901; C:\Windows\System32\drivers\aftap0901.sys [48624 2017-11-16] (AnchorFree Inc -> The OpenVPN Project) S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.) S3 athur; C:\Windows\System32\drivers\athurx.sys [1847296 2010-01-05] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.) S3 DBUtilDrv2; C:\Windows\System32\drivers\DBUtilDrv2.sys [24968 2022-07-16] (Microsoft Windows Hardware Compatibility Publisher -> Dell) R3 DDDriver; C:\Windows\system32\drivers\DDDriver64Dcsa.sys [41608 2017-12-14] (Techporch Incorporated -> Dell Inc.) R3 DellProf; C:\Windows\system32\drivers\DellProf.sys [41208 2017-12-14] (Techporch Incorporated -> Dell Computer Corporation) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2018-09-20] (Disc Soft Ltd -> Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2018-09-20] (Disc Soft Ltd -> Disc Soft Ltd) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [218336 2017-10-09] (McAfee, Inc. -> McAfee, Inc.) R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [27552 2022-08-03] (Martin Malik - REALiX -> REALiX(tm)) S4 IObitUnlocker; C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [66824 2017-06-15] (IObit Information Technology -> IObit) R1 networx; C:\Windows\System32\drivers\networx.sys [72632 2016-09-20] (SOFTPERFECT PTY. LTD. -> NetFilterSDK.com) S3 nlwt; C:\Windows\system32\DRIVERS\nlwt.sys [39360 2021-06-15] (TEFINCOM S.A. -> WireGuard LLC) R1 NNSALPC; C:\Windows\system32\DRIVERS\NNSALPC.sys [108000 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSHTTP; C:\Windows\system32\DRIVERS\NNSHTTP.sys [211936 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSHTTPS; C:\Windows\system32\DRIVERS\NNSHTTPS.sys [121312 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSIDS; C:\Windows\system32\DRIVERS\NNSIDS.sys [126432 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSNAHSL; C:\Windows\system32\DRIVERS\NNSNAHSL.sys [99512 2017-09-26] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPICC; C:\Windows\system32\DRIVERS\NNSPICC.sys [118240 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPIHSW; C:\Windows\system32\DRIVERS\NNSPIHSW.sys [91616 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPOP3; C:\Windows\system32\DRIVERS\NNSPOP3.sys [135648 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPROT; C:\Windows\system32\DRIVERS\NNSPROT.sys [336352 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPRV; C:\Windows\system32\DRIVERS\NNSPRV.sys [249312 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSSMTP; C:\Windows\system32\DRIVERS\NNSSMTP.sys [123360 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSSTRM; C:\Windows\system32\DRIVERS\NNSSTRM.sys [281056 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSTLSC; C:\Windows\system32\DRIVERS\NNSTLSC.sys [125920 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) S3 ProtonVPNCallout; C:\Program Files (x86)\Proton Technologies\ProtonVPN\x64\Win10\ProtonVPN.CalloutDriver.sys [34176 2021-02-04] (Microsoft Windows Hardware Compatibility Publisher -> Proton Technologies AG) R2 PSINAflt; C:\Windows\system32\DRIVERS\PSINAflt.sys [191448 2017-11-08] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [153992 2018-01-23] (Panda Security S.L. -> Panda Security, S.L.) R1 PSINKNC; C:\Windows\system32\DRIVERS\PSINKNC.sys [207248 2018-01-30] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [146912 2017-10-17] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINProt; C:\Windows\system32\DRIVERS\PSINProt.sys [159200 2017-10-17] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINReg; C:\Windows\system32\DRIVERS\PSINReg.sys [129504 2017-10-17] (Panda Security S.L. -> Panda Security, S.L.) R2 Sentinel64; C:\Windows\System32\Drivers\Sentinel64.sys [145448 2008-07-11] (SafeNet, Inc. -> SafeNet, Inc.) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\Windows\System32\Drivers\ss_conn_usb_driver2.sys [50720 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 tap0901; C:\Windows\System32\drivers\tap0901.sys [27136 2018-04-24] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S3 tapnordvpn; C:\Windows\System32\drivers\tapnordvpn.sys [44896 2020-06-09] (TEFINCOM S.A. -> The OpenVPN Project) R3 tapprotonvpn; C:\Windows\System32\drivers\tapprotonvpn.sys [49024 2020-12-30] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) S3 tap_ovpnconnect; C:\Windows\System32\drivers\tap_ovpnconnect.sys [40128 2021-05-25] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49624 2023-03-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [495912 2023-03-07] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [99624 2023-03-07] (Microsoft Windows -> Microsoft Corporation) R3 wintun; C:\Windows\system32\DRIVERS\wintun.sys [38704 2021-06-15] (WireGuard LLC -> WireGuard LLC) S3 cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys [X] S3 dgderdrv; System32\drivers\dgderdrv.sys [X] U4 DiagTrack; Brak ImagePath S3 hwdatacard; \SystemRoot\system32\DRIVERS\ewusbmdm.sys [X] S3 hwusbfake; \SystemRoot\system32\DRIVERS\ewusbfake.sys [X] S3 hwusb_wwanecm; \SystemRoot\system32\DRIVERS\ew_wwanecm.sys [X] S3 panda_url_filteringd; \??\C:\Program Files\Panda Security URL Filtering\panda_url_filteringd.sys [X] S3 rsDwf; \SystemRoot\system32\DRIVERS\rsDwf.sys [X] S3 semav6msr64; \??\C:\Windows\system32\drivers\semav6msr64.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-03-22 20:30 - 2023-03-22 20:31 - 000035080 ____C C:\Users\remik\Downloads\FRST.txt 2023-03-22 20:30 - 2023-03-22 20:31 - 000000000 ____D C:\FRST 2023-03-22 20:28 - 2023-03-22 20:29 - 002378752 ____C (Farbar) C:\Users\remik\Downloads\FRST64.exe 2023-03-22 19:01 - 2017-05-22 06:01 - 000072648 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSKMAD.sys 2023-03-22 13:03 - 2023-03-22 13:03 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2023-03-22 13:02 - 2023-03-22 13:02 - 000002077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2023-03-22 13:02 - 2023-03-22 13:02 - 000002065 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2023-03-22 12:07 - 2023-03-22 12:07 - 000000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2023-03-21 17:58 - 2023-03-21 21:23 - 000000157 _____ C:\Windows\Reimage.ini 2023-03-21 16:12 - 2023-03-21 16:12 - 000702816 ____C (Dell Inc.) C:\Users\remik\Desktop\SupportAssistLauncher.exe 2023-03-21 16:10 - 2023-03-21 16:10 - 000000000 ____D C:\Program Files (x86)\WindowsInstallationAssistant 2023-03-21 15:14 - 2023-03-21 15:14 - 003107360 ____C C:\Users\remik\Downloads\windows-repair-toolbox-3-0-3-1 (1).zip 2023-03-21 15:13 - 2023-03-21 15:13 - 003299588 ____C C:\Users\remik\Downloads\windows-repair-toolbox-3-0-3-1.zip 2023-03-21 15:11 - 2023-03-21 15:11 - 001424136 ____C () C:\Users\remik\Desktop\windows-repair-toolbox-3-0-3-1-ks_v4.279.933.578.exe 2023-03-21 09:02 - 2023-03-21 09:02 - 000000000 ____D C:\Windows\LiveKernelReports 2023-03-21 07:55 - 2023-03-21 07:55 - 000000000 ___HD C:\$WINDOWS.~BT 2023-03-21 07:52 - 2023-03-21 07:52 - 000000000 ___HD C:\$WinREAgent 2023-03-21 07:41 - 2023-03-21 07:41 - 000001119 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Waves MaxxAudioPro.lnk 2023-03-21 07:41 - 2023-03-21 07:41 - 000000000 ____D C:\Program Files\Waves 2023-03-21 06:20 - 2023-03-21 06:22 - 000000000 ___HD C:\$GetCurrent 2023-03-20 22:48 - 2023-03-20 22:48 - 000000000 ____D C:\Program Files\CUAssistant 2023-03-20 17:42 - 2023-03-20 18:37 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job 2023-03-20 17:42 - 2023-03-20 17:42 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update 2023-03-20 17:42 - 2023-03-20 17:42 - 000003476 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting 2023-03-20 16:22 - 2023-03-20 16:22 - 000018094 ____C C:\Users\remik\Documents\cc_20230320_162235.reg 2023-03-20 16:21 - 2023-03-20 16:21 - 000000000 ____D C:\ProgramData\Piriform 2023-03-20 15:08 - 2023-03-20 15:08 - 005400700 ____C C:\Users\remik\Desktop\DOC-Pobierz_instrukcję_obsługi_Forda_Fiesta.pdf 2023-03-15 11:17 - 2023-03-15 11:17 - 000105927 ____C C:\Users\remik\Desktop\zamowienie folia.pdf 2023-03-15 11:16 - 2023-03-15 11:16 - 000105927 ____C C:\Users\remik\Downloads\zamowienie_10641_1678875195.pdf 2023-03-13 17:56 - 2023-03-13 17:56 - 000124935 ____C C:\Users\remik\Desktop\pejaaktualizacja13032023.pdf 2023-03-04 08:58 - 2023-03-04 08:58 - 000091796 ____C C:\Users\remik\Desktop\historia-pojazdu-FORD-20230304_085524.pdf 2023-03-02 08:40 - 2023-03-02 08:40 - 000001500 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk 2023-02-27 14:41 - 2023-02-27 14:41 - 000465098 ____C C:\Users\remik\Desktop\IRP_AUTO-pismo 27022023.pdf 2023-02-27 14:40 - 2023-02-27 14:40 - 000465098 ____C C:\Users\remik\Downloads\IRP_AUTO-Echeancier_info_tarif-29_11_2022-1.pdf 2023-02-27 14:37 - 2023-02-27 14:37 - 000465098 ____C C:\Users\remik\Downloads\IRP_AUTO-Echeancier_info_tarif-29_11_2022.pdf 2023-02-26 17:18 - 2023-02-26 17:18 - 000066684 ____C C:\Users\remik\Downloads\Wydruk.pdf 2023-02-26 16:50 - 2023-02-26 16:50 - 000769772 ____C C:\Users\remik\Downloads\PIT-38_(16)__Hanaj_Rajmund_45090602813.pdf ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-03-22 20:26 - 2017-09-29 14:37 - 000000000 ____D C:\Windows\CbsTemp 2023-03-22 20:19 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\system32\NDF 2023-03-22 20:15 - 2018-05-25 00:00 - 000000000 ____D C:\Windows\system32\SleepStudy 2023-03-22 19:54 - 2023-02-01 05:17 - 000000000 ____D C:\Program Files\Mozilla Firefox 2023-03-22 19:06 - 2018-05-25 00:08 - 048294818 _____ C:\Windows\system32\PerfStringBackup.INI 2023-03-22 19:06 - 2017-10-08 01:49 - 023765284 _____ C:\Windows\system32\perfh015.dat 2023-03-22 19:06 - 2017-10-08 01:49 - 007155140 _____ C:\Windows\system32\perfc015.dat 2023-03-22 19:03 - 2018-09-18 20:53 - 000000000 ____D C:\Program Files\CCleaner 2023-03-22 19:03 - 2018-09-18 20:41 - 000000000 ___DC C:\Users\remik\AppData\LocalLow\Mozilla 2023-03-22 19:03 - 2018-09-13 17:30 - 000000000 _SHDC C:\Users\remik\IntelGraphicsProfiles 2023-03-22 19:01 - 2018-10-12 19:00 - 000000000 ___DC C:\Users\remik\AppData\Roaming\uTorrent 2023-03-22 19:01 - 2018-05-25 00:18 - 000000000 ___DC C:\Intel 2023-03-22 19:01 - 2018-05-25 00:00 - 000468112 _____ C:\Windows\system32\FNTCACHE.DAT 2023-03-22 19:01 - 2018-05-25 00:00 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2023-03-22 19:01 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\TextInput 2023-03-22 19:01 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\ShellExperiences 2023-03-22 19:01 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\bcastdvr 2023-03-22 19:01 - 2017-09-29 14:44 - 000000000 ____D C:\Windows\INF 2023-03-22 19:01 - 2017-09-29 09:45 - 000524288 _____ C:\Windows\system32\config\BBI 2023-03-22 18:14 - 2019-03-22 23:33 - 000000000 ___DC C:\Users\remik\AppData\Local\BitTorrentHelper 2023-03-22 18:14 - 2018-11-28 20:52 - 000000000 ___DC C:\Users\remik\Desktop\torrent pobrane 2023-03-22 17:30 - 2018-11-24 09:20 - 000000000 ___DC C:\Users\remik\Desktop\TRENING 2023-03-22 17:29 - 2022-11-17 10:47 - 000000000 ___DC C:\Users\remik\Desktop\AUTOHANDEL 2022 2023-03-22 17:28 - 2021-12-28 14:12 - 000000000 ___DC C:\Users\remik\Desktop\AUTOHANDEL 2021 2023-03-22 15:00 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\system32\Catroot2.old 2023-03-22 13:18 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\DeliveryOptimization 2023-03-22 12:57 - 2018-10-27 14:05 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2023-03-22 12:51 - 2018-05-25 00:13 - 000000000 ____D C:\Program Files (x86)\Intel 2023-03-22 12:46 - 2017-09-29 14:46 - 000000338 _____ C:\Windows\win.ini 2023-03-22 12:36 - 2019-06-28 18:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft 2023-03-22 12:36 - 2019-06-28 18:02 - 000000000 ____D C:\Program Files (x86)\Apowersoft 2023-03-22 12:11 - 2018-10-27 14:07 - 000000000 ____D C:\Program Files (x86)\Microsoft Works 2023-03-21 18:18 - 2018-10-08 14:02 - 000000000 ____D C:\Temp 2023-03-21 16:12 - 2018-05-25 00:23 - 000000000 ____D C:\ProgramData\Dell 2023-03-21 15:58 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\Registration 2023-03-21 15:47 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\AppReadiness 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\vi-VN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\ur-PK 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\ug-CN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\tt-RU 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\tk-TM 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\te-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\ta-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\sw-KE 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\sq-AL 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\si-LK 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\quz-PE 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\prs-AF 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\pa-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\or-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\nn-NO 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\ne-NP 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\mt-MT 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\mr-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\mn-MN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\ml-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\mk-MK 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\mi-NZ 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\lo-LA 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\lb-LU 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\ky-KG 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\kok-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\kn-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\km-KH 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\kk-KZ 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\ka-GE 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\is-IS 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\id-ID 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\hy-AM 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\gu-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\gd-GB 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\ga-IE 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\fil-PH 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\fa-IR 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\cy-GB 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\bn-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\bn-BD 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\be-BY 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\as-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\am-ET 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\SysWOW64\af-ZA 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\vi-VN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\ur-PK 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\ug-CN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\tt-RU 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\tk-TM 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\te-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\ta-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\sw-KE 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\sq-AL 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\si-LK 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\quz-PE 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\prs-AF 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\pa-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\or-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\nn-NO 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\ne-NP 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\mt-MT 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\mr-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\mn-MN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\ml-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\mk-MK 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\mi-NZ 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\lo-LA 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\lb-LU 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\ky-KG 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\kok-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\kn-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\km-KH 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\kk-KZ 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\ka-GE 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\is-IS 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\id-ID 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\hy-AM 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\gu-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\gd-GB 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\ga-IE 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\fil-PH 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\fa-IR 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\cy-GB 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\bn-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\bn-BD 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\be-BY 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\as-IN 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\am-ET 2023-03-21 15:44 - 2017-09-29 15:42 - 000000000 ____D C:\Windows\system32\af-ZA 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ___SD C:\Windows\SysWOW64\F12 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ___SD C:\Windows\system32\UNP 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ___SD C:\Windows\system32\F12 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ___RD C:\Windows\PrintDialog 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ___RD C:\Program Files\Windows Defender 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\SysWOW64\Dism 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\system32\WinMetadata 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\system32\oobe 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\system32\migwiz 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\system32\appraiser 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\Provisioning 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2023-03-21 15:44 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2023-03-21 15:44 - 2017-09-29 09:45 - 000000000 ____D C:\Windows\system32\Dism 2023-03-21 15:44 - 2017-09-29 09:45 - 000000000 ____D C:\Windows\servicing 2023-03-21 09:48 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\rescache 2023-03-21 09:47 - 2018-09-19 17:49 - 000000000 ___DC C:\Users\remik\AppData\Local\ElevatedDiagnostics 2023-03-21 07:58 - 2020-08-30 05:50 - 000000000 ____D C:\Windows\Panther 2023-03-21 07:44 - 2022-11-12 20:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFescape Desktop 2023-03-21 07:44 - 2022-11-12 19:10 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 7.2 2023-03-21 07:44 - 2022-08-03 12:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HWiNFO64 2023-03-21 07:44 - 2022-07-16 13:27 - 000000000 ____D C:\Windows\system32\ihvmanager 2023-03-21 07:44 - 2022-03-06 21:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker 2023-03-21 07:44 - 2022-03-03 11:57 - 000000000 ___DC C:\Users\remik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\QuickMemoryTestOK 2023-03-21 07:44 - 2021-10-20 21:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LockHunter 2023-03-21 07:44 - 2021-06-15 05:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ProtonVPN 2023-03-21 07:44 - 2020-05-19 17:41 - 000000000 ____D C:\Windows\system32\Drivers\wd 2023-03-21 07:44 - 2019-09-28 20:28 - 000000000 ___DC C:\Users\remik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhoXo 2023-03-21 07:44 - 2019-09-06 10:57 - 000000000 ___DC C:\Users\remik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Naviextras 2023-03-21 07:44 - 2019-07-23 07:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeOCR 2023-03-21 07:44 - 2019-04-15 15:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-pity 2023-03-21 07:44 - 2019-01-11 11:31 - 000000000 ____D C:\ProgramData\Packages 2023-03-21 07:44 - 2019-01-10 19:57 - 000000000 ___DC C:\Users\remik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free PDF to Word Converter 2023-03-21 07:44 - 2018-12-27 22:31 - 000000000 ____D C:\Windows\SysWOW64\20-20 Technologies 2023-03-21 07:44 - 2018-11-03 20:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp 2023-03-21 07:44 - 2018-10-27 14:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2023-03-21 07:44 - 2018-10-27 14:05 - 000000000 ____D C:\Windows\SHELLNEW 2023-03-21 07:44 - 2018-09-30 17:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2023-03-21 07:44 - 2018-09-23 07:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\(Default) 2023-03-21 07:44 - 2018-09-20 19:57 - 000000000 ___DC C:\Users\remik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2023-03-21 07:44 - 2018-09-20 19:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2023-03-21 07:44 - 2018-09-20 19:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2023-03-21 07:44 - 2018-09-18 21:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Dome 2023-03-21 07:44 - 2018-09-18 21:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2023-03-21 07:44 - 2018-09-18 20:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2023-03-21 07:44 - 2018-09-13 17:29 - 000000000 ___DC C:\Users\remik 2023-03-21 07:44 - 2018-05-25 00:17 - 000000000 ___HD C:\Windows\system32\WLANProfiles 2023-03-21 07:44 - 2018-05-25 00:13 - 000000000 ____D C:\Windows\system32\RTCOM 2023-03-21 07:44 - 2018-05-25 00:12 - 000000000 ____D C:\Windows\SysWOW64\RTCOM 2023-03-21 07:44 - 2018-05-25 00:12 - 000000000 ____D C:\Program Files\Intel 2023-03-21 07:44 - 2018-05-25 00:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell 2023-03-21 07:44 - 2017-10-08 01:44 - 000000000 ____D C:\Program Files (x86)\MSBuild 2023-03-21 07:44 - 2017-09-29 14:46 - 000000000 ___SD C:\Windows\Downloaded Program Files 2023-03-21 07:44 - 2017-09-29 14:46 - 000000000 ___HD C:\Program Files\WindowsApps 2023-03-21 07:44 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2023-03-21 07:44 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy 2023-03-21 07:44 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\system32\WinBioDatabase 2023-03-21 07:44 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\system32\MsDtc 2023-03-21 07:44 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\system32\Macromed 2023-03-21 07:44 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\system32\GroupPolicy 2023-03-21 07:44 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2023-03-21 06:40 - 2020-08-30 05:50 - 000001908 _____ C:\Windows\diagwrn.xml 2023-03-21 06:40 - 2018-05-25 00:52 - 000001908 _____ C:\Windows\diagerr.xml 2023-03-21 06:26 - 2020-08-30 05:44 - 000000036 _____ C:\Windows\progress.ini 2023-03-21 06:22 - 2020-08-21 03:37 - 000000000 ____D C:\Windows10Upgrade 2023-03-21 06:07 - 2017-09-29 14:46 - 000000000 ____D C:\Windows\system32\spool 2023-03-20 21:44 - 2018-05-25 00:14 - 000000000 ____D C:\Windows\SoftwareDistribution.old 2023-03-20 20:59 - 2017-09-29 09:45 - 000032768 _____ C:\Windows\system32\config\ELAM 2023-03-20 20:44 - 2021-08-02 15:11 - 000000000 ___DC C:\Users\remik\Desktop\auta diagnoza 2023-03-20 19:51 - 2018-09-20 18:31 - 000000000 ____D C:\Program Files\Malwarebytes 2023-03-20 19:50 - 2017-09-29 14:46 - 000000000 ___HD C:\Windows\ELAMBKUP 2023-03-20 19:39 - 2022-11-17 17:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 2023-03-20 19:39 - 2021-05-02 13:18 - 000000000 ___DC C:\Users\remik\AppData\Roaming\Samsung 2023-03-20 19:39 - 2021-05-02 13:13 - 000000000 ____D C:\Program Files (x86)\Samsung 2023-03-20 17:25 - 2018-09-30 17:15 - 000000000 ____D C:\Program Files (x86)\HP 2023-03-20 17:11 - 2018-05-25 00:12 - 000000000 ____D C:\ProgramData\Package Cache 2023-03-20 16:30 - 2018-09-23 07:27 - 000000000 ____D C:\ProgramData\ALLPlayer 2023-03-20 16:24 - 2018-09-18 20:41 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-03-20 16:20 - 2022-11-10 19:26 - 000000000 ___DC C:\Users\remik\AppData\Roaming\Azureus 2023-03-19 05:23 - 2022-01-12 05:08 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2023-03-19 05:23 - 2018-09-18 20:41 - 000001007 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-03-17 06:04 - 2018-09-13 17:30 - 000000000 ___DC C:\Users\remik\AppData\Local\Packages 2023-03-15 04:22 - 2018-09-19 12:09 - 000000000 ____D C:\Windows\system32\MRT 2023-03-15 04:18 - 2018-09-19 12:09 - 153620824 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2023-03-06 17:43 - 2015-05-10 09:27 - 000000000 ____D C:\wow5.00.8R2POLAND ==================== Pliki w katalogu głównym wybranych folderów ======== 2018-09-18 20:52 - 2018-09-18 20:53 - 050063360 _____ () C:\Program Files (x86)\GUTD4D9.tmp 2020-10-30 12:03 - 2020-10-30 12:03 - 000016438 ____C () C:\Users\remik\AppData\Local\partner.bmp 2022-03-15 05:51 - 2022-03-15 05:51 - 000007597 ____C () C:\Users\remik\AppData\Local\Resmon.ResmonCfg 2018-10-13 08:49 - 2018-10-13 08:49 - 023014499 ____C () C:\Users\remik\AppData\Local\SelfExtractible.zip ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) LastRegBack: 2023-03-21 09:47 ==================== Koniec FRST.txt ======================== LOG Addition Spoiler Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 22-03-2023 Uruchomiony przez remik (22-03-2023 20:32:00) Uruchomiony z C:\Users\remik\Downloads Microsoft Windows 10 Home Wersja 1709 16299.1087 (X64) (2018-09-13 16:28:02) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= (Załączenie wejścia w fixlist spowoduje jego usunięcie.) Administrator (S-1-5-21-3563797008-3845598522-1844387788-500 - Administrator - Disabled) Gość (S-1-5-21-3563797008-3845598522-1844387788-501 - Limited - Disabled) Konto domyślne (S-1-5-21-3563797008-3845598522-1844387788-503 - Limited - Disabled) remik (S-1-5-21-3563797008-3845598522-1844387788-1001 - Administrator - Enabled) => C:\Users\remik WDAGUtilityAccount (S-1-5-21-3563797008-3845598522-1844387788-504 - Limited - Disabled) ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Panda Dome (Enabled - Up to date) {CF440CD9-5435-10B1-04E0-7768B6F10320} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Panda Dome (Enabled - Up to date) {7425ED3D-720F-1F3F-3E50-4C1ACD76499D} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\uTorrent) (Version: 3.6.0.46738 - BitTorrent Inc.) 64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1045-1033-7760-BC15014EA700}) (Version: 23.001.20093 - Adobe) Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.114 - Adobe Systems Incorporated) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601042}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version: - Microsoft) ALLPlayer (wersja 8.2) (HKLM\...\{68972948-F221-4267-9EB6-2EB5D913C4CF}_is1) (Version: 8.2 - ALLPlayer Ltd.) Asystent aktualizacji do systemu Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.19041.2183 - Microsoft Corporation) CCleaner (HKLM\...\CCleaner) (Version: 6.10 - Piriform) CyberLink Media Suite 12 (HKLM-x32\...\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 12.0.1.5223 - CyberLink Corp.) Hidden CyberLink Media Suite Essentials (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 12 - CyberLink Corp.) CyberLink PowerDirector 12 (HKLM-x32\...\{E1646825-D391-42A0-93AA-27FA810DA093}) (Version: 12.0.0.4111 - CyberLink Corp.) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.9.0.0630 - Disc Soft Ltd) Dell Mobile Connect Drivers (HKLM\...\{AAB336F0-6FC6-4BFE-AD7E-315FCDF20156}) (Version: 1.1.3750 - Screenovate Technologies Ltd.) Dell SupportAssist OS Recovery Plugin for Dell Update (HKLM\...\{08E7C8D5-F2B5-4F09-B0EA-F28913BEFDB0}) (Version: 5.5.1.16143 - Dell Inc.) Hidden Dell SupportAssist OS Recovery Plugin for Dell Update (HKLM-x32\...\{2a8bafd6-22ae-4d0e-87a4-686b2a4a2ab0}) (Version: 5.5.1.16143 - Dell Inc.) Dell SupportAssist Remediation (HKLM\...\{D5DA219C-155F-45A8-9736-B9350978F2BE}) (Version: 5.5.4.16189 - Dell Inc.) Hidden Dell SupportAssist Remediation (HKLM-x32\...\{619cf756-16ec-42a3-9b4a-d99ad99fd636}) (Version: 5.5.4.16189 - Dell Inc.) Dell Update (HKLM-x32\...\{051401F9-2A83-4E2B-9454-9ED39AA60491}) (Version: 4.6.0 - Dell Inc.) DellRegistryManager (HKLM\...\{BAF6686A-36D9-40D1-8B04-B78BBE88C808}) (Version: 21.50.0.0 - Intel Corporation) Hidden Delphi DS150E (New VCI) (HKLM-x32\...\Delphi DS150E (New VCI)) (Version: - ) DSC/AA Factory Installer (HKLM\...\{F7A70D00-F283-45C8-B163-49EC365D7E27}) (Version: 2.0.6875.402 - PC-Doctor, Inc.) Hidden e-pity 11.2.5 za rok 2019 (HKLM-x32\...\{80D8170E-5590-218-B9ED-E24E4C99A11D}_is1) (Version: 11.2.5 - e-file sp. z o.o. sp.k.) Free PDF to Word Converter 5.1.0.383 (HKLM\...\Free PDF to Word Converter_is1) (Version: 5.1.0.383 - Smart Soft) FreeOCR v5.4 (HKLM-x32\...\freeocr_is1) (Version: - ) HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP DeskJet 3700 series — podstawowe oprogramowanie urządzenia (HKLM\...\{74CE317A-A05D-40F5-9545-B9DA12DB9B11}) (Version: 40.12.1161.1896 - HP Inc.) HP DeskJet 3700 series Pomoc (HKLM-x32\...\{17F6D66F-3498-48D2-95C6-3F63B40C1447}) (Version: 40.0.0 - HP) HP Dropbox Plugin (HKLM-x32\...\{8A3F1F3A-A88B-4090-83C6-3C4CBDE3F8CC}) (Version: 36.0.41.58587 - HP) HP Google Drive Plugin (HKLM-x32\...\{958F5926-D507-4C87-B83B-8D6CA34195D9}) (Version: 36.0.41.58587 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.9572 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HWiNFO64 Version 5.70 (HKLM\...\HWiNFO64_is1) (Version: 5.70 - Martin Malík - REALiX) Intel Driver && Support Assistant (HKLM-x32\...\{91672422-9B98-4606-A6D7-E164D7037B06}) (Version: 23.1.9.7 - Intel) Hidden Intel(R) Chipset Device Software (HKLM\...\{94E05108-3E4E-4F2E-AC5F-33A1B22B779C}) (Version: 10.1.1.44 - Intel Corporation) Hidden Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.3.10209.6897 - Intel Corporation) Intel(R) HID Event Filter (HKLM-x32\...\3FB06EEC-013D-4366-9918-71B97DFB84EB) (Version: 2.2.1.377 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{12608A44-F264-42E2-B458-0F87E324057A}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2141.15.0.2511 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{97C59670-D20F-4FF0-AB3D-9F58938D45B9}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Driver (HKLM\...\{AE124AA8-923E-48AB-9D56-9D615A028B46}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) ME UninstallLegacy (HKLM\...\{E9B9A1A5-6398-4C99-8FDE-10794F6505C5}) (Version: 1.0.1.0 - Intel Corporation) Hidden Intel(R) Serial IO (HKLM\...\{4150A94D-A96A-413F-ACA3-B6CC368ECE43}) (Version: 30.100.1943.2 - Intel Corporation) Hidden Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1943.2 - Intel Corporation) Intel(R) Trusted Connect Service Client x64 (HKLM\...\{C9552825-7BF2-4344-BA91-D3CD46F4C442}) (Version: 1.63.1155.1 - Intel Corporation) Hidden Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.63.1155.1 - Intel Corporation) Hidden Intel(R) Trusted Connect Services Client (HKLM-x32\...\{1abcb68a-399f-47fe-aa39-6da46522db0b}) (Version: 1.63.1155.1 - Intel Corporation) Hidden Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000200-0220-1045-84C8-B8D95FA3C8C3}) (Version: 22.200.0.2 - Intel Corporation) Intel® Driver & Support Assistant (HKLM-x32\...\{a532c7c7-1594-49bb-a186-f44c52c9509e}) (Version: 23.1.9.7 - Intel) Intel® PROSet/Wireless WiFi Software (HKLM\...\{E6F800A9-64D3-4E93-8E8E-AB53E21D4840}) (Version: 20.50.0.1450 - Intel Corporation) Hidden Intel® Software Installer (HKLM-x32\...\{87b96d86-07d6-4c0d-85b0-bcfb3a4550bb}) (Version: 21.70.0.6 - Intel Corporation) Hidden IObit Unlocker (HKLM-x32\...\IObit Unlocker_is1) (Version: 1.1.2.1 - IObit) LockHunter 3.4, 32/64 bit (HKLM\...\LockHunter_is1) (Version: - Crystal Rich Ltd) Maxx Audio Installer (x64) (HKLM\...\{307032B2-6AF2-46D7-B933-62438DEB2B9A}) (Version: 2.7.9326.0 - Waves Audio Ltd.) Hidden Microsoft .NET Core Host - 3.1.28 (x64) (HKLM\...\{26ECE92F-518E-40AF-9108-7B7B444A46DE}) (Version: 24.112.31513 - Microsoft Corporation) Hidden Microsoft .NET Core Host FX Resolver - 3.1.28 (x64) (HKLM\...\{CDEA72F4-1367-4E0A-AC5F-0EBAF7C6825A}) (Version: 24.112.31513 - Microsoft Corporation) Hidden Microsoft .NET Core Runtime - 3.1.28 (x64) (HKLM\...\{3691148D-EF42-4812-8956-AE11FC413B8D}) (Version: 24.112.31513 - Microsoft Corporation) Hidden Microsoft .NET Core Runtime - 3.1.28 (x64) (HKLM-x32\...\{231e3b76-4d0f-4e60-9d69-f11c9c448630}) (Version: 3.1.28.31513 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}) (Version: - Microsoft) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}) (Version: - Microsoft) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}) (Version: - Microsoft) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}) (Version: - Microsoft) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}) (Version: - Microsoft) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}) (Version: - Microsoft) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}) (Version: - Microsoft) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}) (Version: - Microsoft) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}) (Version: - Microsoft) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}) (Version: - Microsoft) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}) (Version: - Microsoft) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}) (Version: - Microsoft) Hidden Microsoft Office Access MUI (Polish) 2007 (HKLM-x32\...\{90120000-0015-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Enterprise 2007 (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Excel MUI (Polish) 2007 (HKLM-x32\...\{90120000-0016-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Groove MUI (Polish) 2007 (HKLM-x32\...\{90120000-00BA-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (Polish) 2007 (HKLM-x32\...\{90120000-0044-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Office 64-bit Components 2007 (HKLM\...\{90120000-002A-0000-1000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (Polish) 2007 (HKLM-x32\...\{90120000-00A1-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (Polish) 2007 (HKLM-x32\...\{90120000-001A-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (Polish) 2007 (HKLM-x32\...\{90120000-0018-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2007 (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (HKLM-x32\...\{90120000-001F-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Polish) 2007 (HKLM-x32\...\{90120000-001F-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (Polish) 2007 (HKLM-x32\...\{90120000-002C-0415-0000-0000000FF1CE}) (Version: 12.0.4518.1020 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}) (Version: - Microsoft) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}) (Version: - Microsoft) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}) (Version: - Microsoft) Hidden Microsoft Office Publisher MUI (Polish) 2007 (HKLM-x32\...\{90120000-0019-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (Polish) 2007 (HKLM\...\{90120000-002A-0415-1000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (Polish) 2007 (HKLM-x32\...\{90120000-006E-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (Polish) 2007 (HKLM-x32\...\{90120000-001B-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft VC++ redistributables repacked. (HKLM\...\{DCC23296-C2DB-43AA-9424-934649EF52F5}) (Version: 12.0.0.0 - Intel Corporation) Hidden Microsoft VC++ redistributables repacked. (HKLM-x32\...\{EBF615F0-0A5A-4F05-AFF0-5C96386BFF15}) (Version: 12.0.0.0 - Intel Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.32.31332 (HKLM-x32\...\{3746f21b-c990-4045-bb33-1cf98cff7a68}) (Version: 14.32.31332.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.32.31332 (HKLM-x32\...\{a98dc6ff-d360-4878-9f0a-915eba86eaf3}) (Version: 14.32.31332.0 - Microsoft Corporation) Microsoft Visual C++ 2022 X64 Additional Runtime - 14.32.31332 (HKLM\...\{F4499EE3-A166-496C-81BB-51D1BCDC70A9}) (Version: 14.32.31332 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.32.31332 (HKLM\...\{3407B900-37F5-4CC2-B612-5CD5D580A163}) (Version: 14.32.31332 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Additional Runtime - 14.32.31332 (HKLM-x32\...\{8972AC25-452E-4FFE-945A-EB9E28C20322}) (Version: 14.32.31332 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.32.31332 (HKLM-x32\...\{AEAA18F7-9C96-4A43-BC07-8B88A4913EEB}) (Version: 14.32.31332 - Microsoft Corporation) Hidden Mozilla Firefox (x64 pl) (HKLM\...\Mozilla Firefox 111.0 (x64 pl)) (Version: 111.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 62.0 - Mozilla) Naviextras Toolbox (HKLM-x32\...\Naviextras Toolbox) (Version: 3.18.5.761538 - NNG Llc.) Naviextras Toolbox Prerequesities (HKLM-x32\...\{537575D6-3B96-474C-BD8F-DFF667363DBD}) (Version: 1.0.0 - NNG Llc.) Oprogramowanie Intel® PROSet/Wireless (HKLM-x32\...\{06b2cd73-b5f5-47a1-9f49-23d0ef75d568}) (Version: 20.50.0 - Intel Corporation) Oprogramowanie mikroukładu Intel® (HKLM-x32\...\{17408817-d415-4768-a160-ae6d46d6bdb0}) (Version: 10.1.1.44 - Intel(R) Corporation) Hidden OptaneDowngradeGuard (HKLM\...\{86B0E6C1-32E0-42CC-BC4F-BF3C0730CECB}) (Version: 18.0.0.0 - Intel Corporation) Hidden Panda Devices Agent (HKLM-x32\...\{DB0164A2-ADE9-4FEE-B080-D506BDD6427F}) (Version: 1.08.09 - Panda Security) Hidden Panda Devices Agent (HKLM-x32\...\Panda Devices Agent) (Version: 1.03.09 - Panda Security) Hidden Panda Dome (HKLM\...\{2D17A736-B95E-411E-9397-6C5F16EA26BE}) (Version: 9.12.00 - Panda Security) Hidden Panda Dome (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 18.05.00.0000 - Panda Security) PDFescape Desktop (HKLM-x32\...\PDFescape Desktop) (Version: 4.0.24.1356 - RedSoftware) PDFescape Desktop Asian Fonts Pack (HKLM\...\{D81F9B76-24DE-4DFF-8869-B31289B36FAC}) (Version: 4.0.24.4617 - Red Software) Hidden PDFescape Desktop Convert Module (HKLM\...\{CC6DC81A-06C1-4933-8117-794710375AD3}) (Version: 4.0.24.4617 - Red Software) Hidden PDFescape Desktop Create Module (HKLM\...\{CCBE3E06-E721-410C-8D36-EDEF37F56743}) (Version: 4.0.24.4617 - Red Software) Hidden PDFescape Desktop Edit Module (HKLM\...\{00CEFC51-9626-4E7E-920B-4757DF0B9491}) (Version: 4.0.24.4617 - Red Software) Hidden PDFescape Desktop Forms Module (HKLM\...\{87391E47-A919-4E89-8D07-EA259AD63DB8}) (Version: 4.0.24.4617 - Red Software) Hidden PDFescape Desktop Insert Module (HKLM\...\{8B686E57-76A7-4330-A981-4AB69DF7A568}) (Version: 4.0.24.4617 - Red Software) Hidden PDFescape Desktop Review Module (HKLM\...\{42EF2557-7C52-40EE-81CF-B658B64C7095}) (Version: 4.0.24.4617 - Red Software) Hidden PDFescape Desktop Secure Module (HKLM\...\{B9EB4384-5195-4ED6-BAB0-661FC5B36E14}) (Version: 4.0.24.4617 - Red Software) Hidden PDFescape Desktop View Module (HKLM\...\{F108BACE-2CE0-447B-A953-68E2019F7B66}) (Version: 4.0.24.4617 - Red Software) Hidden PhoXo (HKLM-x32\...\PhoXo) (Version: 8.4.0.0 - PhoXo) PicoPDF PDF Editor (HKLM-x32\...\PicoPDF) (Version: 3.61 - NCH Software) ProtonVPN (HKLM-x32\...\{5D1527AF-2AAA-431D-B3D3-B98763E30C18}) (Version: 1.19.2 - Proton Technologies AG) Hidden ProtonVPN (HKLM-x32\...\ProtonVPN 1.19.2) (Version: 1.19.2 - Proton Technologies AG) ProtonVPNTap (HKLM-x32\...\{5DA710E2-1B81-4675-BFC5-76BAF63AE1F6}) (Version: 1.1.3 - Proton Technologies AG) ProtonVPNTun (HKLM-x32\...\{10242617-4DA6-4E16-98D8-92B16E54BAEB}) (Version: 0.10.0 - Proton Technologies AG) Qualcomm 11ac Wireless LAN&Bluetooth Installer (HKLM-x32\...\{E7086B15-806E-4519-A876-DBA9FDDE9A13}) (Version: 11.0.0.10531 - Qualcomm) QuickMemoryTestOK (HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\QuickMemoryTestOK) (Version: - com) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8328 - Realtek Semiconductor Corp.) Revo Uninstaller 2.3.5 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.3.5 - VS Revo Group, Ltd.) RstDowngradeGuard (HKLM\...\{13C2A26E-7AD4-4D82-BB4F-DEA6E871B958}) (Version: 18.0.0.0 - Intel Corporation) Hidden Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.61.0 - Samsung Electronics Co., Ltd.) Sentinel Protection Installer 7.5.0 (HKLM-x32\...\{A5A63519-F5C2-4F4A-849A-F28A1AB3D522}) (Version: 7.5.0 - SafeNet, Inc.) Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) Środowisko uruchomieniowe Microsoft Edge WebView2 (HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\Microsoft EdgeWebView) (Version: 107.0.1418.26 - Microsoft Corporation) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{8F2D6CEB-BC98-4B69-A5C1-78BED238FE77}) (Version: 2.71.0.0 - Microsoft Corporation) Hidden Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{0746492E-47B6-4251-940C-44462DFD74BB}) (Version: 2.55.0.0 - Microsoft Corporation) UpdateAssistant (HKLM\...\{76A22428-2400-4521-96AF-7AC4A6174CA5}) (Version: 1.25.0.0 - Microsoft Corporation) Hidden VdhCoApp 1.6.3 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper) Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version: - ) WinRAR 5.61 (32-bitowy) (HKLM-x32\...\WinRAR archiver) (Version: 5.61.0 - win.rar GmbH) Packages: ========= Dell Customer Connect -> C:\Program Files\WindowsApps\DellInc.DellCustomerConnect_5.4.1.0_x64__htrsf667h5kn2 [2022-11-18] (Dell Inc) Dell Power Manager -> C:\Program Files\WindowsApps\DellInc.DellPowerManager_3.10.10.0_x64__htrsf667h5kn2 [2021-11-17] (Dell Inc) Dell Product Registration -> C:\Program Files\WindowsApps\DellInc.DellProductRegistration_3.4.6.0_x64__htrsf667h5kn2 [2018-05-25] (Dell Inc) Dell SupportAssist for PCs -> C:\Program Files\WindowsApps\DellInc.DellSupportAssistforPCs_3.3.8.0_x64__htrsf667h5kn2 [2019-10-31] (Dell Inc) LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2018-09-18] (LinkedIn) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-17] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-17] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.10.7290.0_x64__8wekyb3d8bbwe [2021-08-03] (Microsoft Studios) [MS Ad] ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) CustomCLSID: HKU\S-1-5-21-3563797008-3845598522-1844387788-1001_Classes\CLSID\{5EA43877-C6D8-4885-B77A-C0BB27E94372}\InprocServer32 -> C:\Users\remik\AppData\Local\Microsoft\EdgeUpdate\1.3.169.31\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3563797008-3845598522-1844387788-1001_Classes\CLSID\{81093D63-7825-417B-BFC8-ADC63FA4E53D}\InprocServer32 -> C:\Users\remik\AppData\Local\Microsoft\EdgeUpdate\1.3.169.31\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3563797008-3845598522-1844387788-1001_Classes\CLSID\{997809F3-33FD-4FD6-A2ED-CEF50F3263B1}\InprocServer32 -> C:\Users\remik\AppData\Local\Microsoft\EdgeUpdate\1.3.169.31\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3563797008-3845598522-1844387788-1001_Classes\CLSID\{a9872fee-5a55-4ecb-9b0f-b06fedcf14d1}\localserver32 -> C:\Program Files\Waves\MaxxAudio\MaxxAudioPro.exe (Waves Inc -> Waves Audio Ltd) ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Brak pliku ContextMenuHandlers1: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => -> Brak pliku ContextMenuHandlers1: [CMPCContextMenu] -> {1650dc30-2343-498a-b49a-37b90918f611} => -> Brak pliku ContextMenuHandlers1: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2021-04-26] (Crystal Rich Ltd -> Crystal Rich Ltd) ContextMenuHandlers1: [PDFescapeDesktop_ManagerExt] -> {D3C28D54-72B8-4B8D-B204-157EFA9BF3E7} => C:\Program Files\PDFescape Desktop\context-menu.dll [2019-07-01] (PDFescape -> Red Software) ContextMenuHandlers1: [PhoXo] -> {47F14307-F923-44F9-86CB-A1E193DA6070} => C:\Program Files (x86)\PhoXo\ExploreMenu64.dll [2014-09-05] (Fu Li -> PhoXo) ContextMenuHandlers1: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2018-01-30] (Panda Security S.L. -> Panda Security, S.L.) ContextMenuHandlers1: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2018-05-17] (IObit Information Technology -> IObit) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2018-10-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2018-10-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => -> Brak pliku ContextMenuHandlers2: [DaemonShellExtDriveLite] -> [CC]{C06369D6-E77D-4626-9656-1256312BD576} => -> Brak pliku ContextMenuHandlers2: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2021-04-26] (Crystal Rich Ltd -> Crystal Rich Ltd) ContextMenuHandlers3: [DaemonShellExtImageLite] -> [CC]{1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => -> Brak pliku ContextMenuHandlers4: [CMPCContextMenu] -> {1650dc30-2343-498a-b49a-37b90918f611} => -> Brak pliku ContextMenuHandlers4: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2021-04-26] (Crystal Rich Ltd -> Crystal Rich Ltd) ContextMenuHandlers4: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2018-05-17] (IObit Information Technology -> IObit) ContextMenuHandlers5: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2018-01-30] (Panda Security S.L. -> Panda Security, S.L.) ContextMenuHandlers6: [UAContextMenu] -> {A9B8E64D-3F7E-4D32-8FC9-E391DEE67D75} => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAShell.dll [2018-01-30] (Panda Security S.L. -> Panda Security, S.L.) ContextMenuHandlers6: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2018-05-17] (IObit Information Technology -> IObit) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2018-10-27] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2018-10-27] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (filtrowane) ==================== ==================== Skróty & WMI ======================== ==================== Załadowane moduły (filtrowane) ============= 2022-08-09 14:02 - 2022-08-09 14:02 - 005998080 _____ () [Brak podpisu cyfrowego] C:\Program Files (x86)\Intel\Driver and Support Assistant\irmfuu_module_win32.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000071680 _____ (Hewlett-Packard) [Brak podpisu cyfrowego] c:\windows\system32\hpzinw12.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000089600 _____ (Hewlett-Packard) [Brak podpisu cyfrowego] c:\windows\system32\hpzipm12.dll 2017-09-29 14:41 - 2018-04-12 00:33 - 000280576 _____ (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Windows\system32\spool\DRIVERS\x64\3\FXSAPI.DLL 2017-09-29 14:41 - 2018-04-12 00:33 - 007040512 _____ (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Windows\system32\spool\DRIVERS\x64\3\FXSRES.DLL 2017-09-29 14:41 - 2018-04-12 00:33 - 000411136 _____ (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Windows\system32\spool\DRIVERS\x64\3\FXSTIFF.dll 2017-09-29 14:41 - 2018-04-12 00:33 - 000140800 _____ (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Windows\system32\spool\DRIVERS\x64\3\FXSUI.DLL 2017-09-29 14:41 - 2018-04-12 00:33 - 000134656 _____ (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Windows\system32\spool\DRIVERS\x64\3\FXSWZRD.dll 2018-12-10 10:29 - 2018-12-10 10:29 - 000438272 _____ (The curl library, hxxps://curl.haxx.se/) [Brak podpisu cyfrowego] C:\Program Files\PDFescape Desktop\libcurl.dll ==================== Alternate Data Streams (filtrowane) ======== ==================== Tryb awaryjny (filtrowane) ================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service" ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer (filtrowane) ========== HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell17win10.msn.com/?pc=DCTE SearchScopes: HKU\S-1-5-21-3563797008-3845598522-1844387788-1001 -> DefaultScope {799F6E90-2249-4D88-AB0A-2930119D432D} URL = SearchScopes: HKU\S-1-5-21-3563797008-3845598522-1844387788-1001 -> {799F6E90-2249-4D88-AB0A-2930119D432D} URL = BHO: PDFescape Desktop Helper -> {9AF15867-1D90-423B-9853-E99761714165} -> C:\Program Files\PDFescape Desktop\creator\plugins\IEAddin\creator-ie-helper.dll [2019-07-01] (PDFescape -> Red Software) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: PDFescape Desktop Helper -> {9AF15867-1D90-423B-9853-E99761714165} -> C:\Program Files (x86)\PDFescape Desktop\creator\plugins\IEAddin\creator-ie-helper.dll [2019-07-01] (PDFescape -> Red Software) Toolbar: HKLM - Brak nazwy - {b60873b9-51aa-4566-b2fc-c16de2ec8bff} - Brak pliku Toolbar: HKLM - PDFescape Desktop Toolbar - {A6D4ADF0-4C82-4712-B9B8-69EE9CF06462} - C:\Program Files\PDFescape Desktop\creator\plugins\IEAddin\creator-ie-plugin.dll [2019-07-01] (PDFescape -> Red Software) Toolbar: HKLM-x32 - Brak nazwy - {b60873b9-51aa-4566-b2fc-c16de2ec8bff} - Brak pliku Toolbar: HKLM-x32 - PDFescape Desktop Toolbar - {A6D4ADF0-4C82-4712-B9B8-69EE9CF06462} - C:\Program Files (x86)\PDFescape Desktop\creator\plugins\IEAddin\creator-ie-plugin.dll [2019-07-01] (PDFescape -> Red Software) DPF: HKLM-x32 {1ABA5FAC-1417-422B-BA82-45C35E2C908B} hxxps://kitchenplanner.ikea.com/pl/Core/Player/2020PlayerAX_IKEA_Win32.cab (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE trusted site: HKU\.DEFAULT\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\localhost -> localhost ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2018-09-20 11:43 - 2022-11-01 11:43 - 000000820 _____ C:\Windows\system32\drivers\etc\hosts 127.0.0.1 localhost 2019-09-05 07:55 - 2019-09-05 08:19 - 000000514 _____ C:\Windows\system32\drivers\etc\hosts.ics ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\dell\BlueLava_1112000xx_inspiron_wallpaper58095_16x9_72dpi_RGB.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk" HKLM\...\StartupApproved\Run: => "SecurityHealth" HKLM\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" HKLM\...\StartupApproved\Run32: => "SecurityHealth" HKLM\...\StartupApproved\Run32: => "GrooveMonitor" HKLM\...\StartupApproved\Run32: => "DAEMON Tools Lite Automount" HKLM\...\StartupApproved\Run32: => "HP Software Update" HKLM\...\StartupApproved\Run32: => "KiesTrayAgent" HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\StartupApproved\StartupFolder: => "Powiadomienia monitorowania tuszu - HP Deskjet 3050 J610 series.lnk" HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\StartupApproved\StartupFolder: => "Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk" HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\StartupApproved\StartupFolder: => "Moto Scanner.lnk" HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\StartupApproved\Run: => "Uninstall 17.3.6816.0313_1" HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\StartupApproved\Run: => "ALLPlayer WiFi Remote" HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\StartupApproved\Run: => "ALLUpdate" HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\StartupApproved\Run: => "Napisy24Update" HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\StartupApproved\Run: => "Adobe Acrobat Synchronizer" HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\StartupApproved\Run: => "QuickMemoryTestOK" HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\...\StartupApproved\Run: => "Microsoft Edge Update" ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [TCP Query User{42EBDE67-9354-456B-B9F9-A061D2BA9036}C:\users\remik\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\remik\appdata\roaming\utorrent\utorrent.exe (Rainberry Inc -> BitTorrent Inc.) FirewallRules: [UDP Query User{237C2C74-C387-4215-8FFA-B037BE7CCCF0}C:\users\remik\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\remik\appdata\roaming\utorrent\utorrent.exe (Rainberry Inc -> BitTorrent Inc.) FirewallRules: [{A41B76B7-DD7A-41AF-8AF3-22674843E03B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{59108454-E3F5-4F0D-9ACE-1ACEEE8E2C4E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [TCP Query User{143C85EE-AA37-4696-BEA0-35D013E7FBF4}C:\users\remik\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\remik\appdata\roaming\utorrent\utorrent.exe (Rainberry Inc -> BitTorrent Inc.) FirewallRules: [UDP Query User{F6E25755-CAFB-4FEB-AFA6-6A9C6AB5C323}C:\users\remik\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\remik\appdata\roaming\utorrent\utorrent.exe (Rainberry Inc -> BitTorrent Inc.) FirewallRules: [TCP Query User{DFC3B7E9-385A-434B-8885-F6FA200FD299}C:\program files (x86)\winamp\winamp.exe] => (Block) C:\program files (x86)\winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [UDP Query User{4E01321D-98F7-46C1-997D-B5DD177EA1A1}C:\program files (x86)\winamp\winamp.exe] => (Block) C:\program files (x86)\winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [TCP Query User{3968A58F-6C49-4DF4-A40C-499F1295598A}C:\program files\hp\hp deskjet 3700 series\bin\hpnetworkcommunicatorcom.exe] => (Block) C:\program files\hp\hp deskjet 3700 series\bin\hpnetworkcommunicatorcom.exe (Hewlett Packard -> HP Inc.) FirewallRules: [UDP Query User{6D6DB3AC-72E1-4970-8DD1-E704863FDFDA}C:\program files\hp\hp deskjet 3700 series\bin\hpnetworkcommunicatorcom.exe] => (Block) C:\program files\hp\hp deskjet 3700 series\bin\hpnetworkcommunicatorcom.exe (Hewlett Packard -> HP Inc.) FirewallRules: [TCP Query User{99CDF007-2653-498B-A1B2-44C5137E6304}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [UDP Query User{F034A4B5-BB05-47B8-8EE7-8CCA22CE63DB}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [TCP Query User{BF349A51-A1DD-491A-98A1-9208D70577B2}C:\program files\hp\hp deskjet 3700 series\bin\hpnetworkcommunicatorcom.exe] => (Block) C:\program files\hp\hp deskjet 3700 series\bin\hpnetworkcommunicatorcom.exe (Hewlett Packard -> HP Inc.) FirewallRules: [UDP Query User{7F68C13A-6E2B-4023-8EDC-3259C78340CA}C:\program files\hp\hp deskjet 3700 series\bin\hpnetworkcommunicatorcom.exe] => (Block) C:\program files\hp\hp deskjet 3700 series\bin\hpnetworkcommunicatorcom.exe (Hewlett Packard -> HP Inc.) FirewallRules: [TCP Query User{01F8434D-53E6-4ABC-B569-C5C0F93D6D23}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [UDP Query User{26BB76DC-EA33-444E-B050-84F75C5420BC}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe (Nullsoft Inc. -> Nullsoft, Inc.) FirewallRules: [TCP Query User{48880ED3-E4D1-49CD-8546-4F1735E27331}C:\program files (x86)\microsoft office\office12\groove.exe] => (Block) C:\program files (x86)\microsoft office\office12\groove.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{163AD433-7990-4B08-A7B6-614428F1E85D}C:\program files (x86)\microsoft office\office12\groove.exe] => (Block) C:\program files (x86)\microsoft office\office12\groove.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{0BBE9EFD-62B9-46C5-89B6-8C29F83AA392}] => (Allow) C:\Users\remik\AppData\Roaming\uTorrent\uTorrent.exe (Rainberry Inc -> BitTorrent Inc.) FirewallRules: [{B8492E57-BBFE-420C-8ED1-5C1E2BD99C23}] => (Allow) C:\Users\remik\AppData\Roaming\uTorrent\uTorrent.exe (Rainberry Inc -> BitTorrent Inc.) FirewallRules: [TCP Query User{F88A5450-0F01-41E8-A7C2-4BF77D18EEB0}C:\users\remik\appdata\roaming\utorrent\updates\utorrent.exe] => (Allow) C:\users\remik\appdata\roaming\utorrent\updates\utorrent.exe (Rainberry Inc -> BitTorrent Inc.) FirewallRules: [UDP Query User{C8EED69F-CBE9-4BC6-93A6-CF5659EC7ADB}C:\users\remik\appdata\roaming\utorrent\updates\utorrent.exe] => (Allow) C:\users\remik\appdata\roaming\utorrent\updates\utorrent.exe (Rainberry Inc -> BitTorrent Inc.) FirewallRules: [{3D824E90-4190-4410-AF90-818FE7CCB8B2}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel Corporation -> ) ==================== Punkty Przywracania systemu ========================= ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (03/22/2023 07:01:54 PM) (Source: .NET Runtime) (EventID: 1024) (User: ) Description: .NET Runtime version : 4.0.30319.0 - This application could not be started.This application requires one of the following versions of the .NET Framework: .NETFramework,Version=v4.7.2 Do you want to install this .NET Framework version now? Error: (03/22/2023 07:01:54 PM) (Source: .NET Runtime) (EventID: 1024) (User: ) Description: .NET Runtime version : 4.0.30319.0 - This application could not be started.This application requires one of the following versions of the .NET Framework: .NETFramework,Version=v4.7.2 Do you want to install this .NET Framework version now? Error: (03/22/2023 04:49:03 PM) (Source: .NET Runtime) (EventID: 1024) (User: ) Description: .NET Runtime version : 4.0.30319.0 - This application could not be started.This application requires one of the following versions of the .NET Framework: .NETFramework,Version=v4.7.2 Do you want to install this .NET Framework version now? Error: (03/22/2023 04:49:03 PM) (Source: .NET Runtime) (EventID: 1024) (User: ) Description: .NET Runtime version : 4.0.30319.0 - This application could not be started.This application requires one of the following versions of the .NET Framework: .NETFramework,Version=v4.7.2 Do you want to install this .NET Framework version now? Error: (03/22/2023 04:19:48 PM) (Source: .NET Runtime) (EventID: 1024) (User: ) Description: .NET Runtime version : 4.0.30319.0 - This application could not be started.This application requires one of the following versions of the .NET Framework: .NETFramework,Version=v4.7.2 Do you want to install this .NET Framework version now? Error: (03/22/2023 04:19:48 PM) (Source: .NET Runtime) (EventID: 1024) (User: ) Description: .NET Runtime version : 4.0.30319.0 - This application could not be started.This application requires one of the following versions of the .NET Framework: .NETFramework,Version=v4.7.2 Do you want to install this .NET Framework version now? Error: (03/22/2023 04:04:51 PM) (Source: .NET Runtime) (EventID: 1024) (User: ) Description: .NET Runtime version : 4.0.30319.0 - This application could not be started.This application requires one of the following versions of the .NET Framework: .NETFramework,Version=v4.7.2 Do you want to install this .NET Framework version now? Error: (03/22/2023 04:04:51 PM) (Source: .NET Runtime) (EventID: 1024) (User: ) Description: .NET Runtime version : 4.0.30319.0 - This application could not be started.This application requires one of the following versions of the .NET Framework: .NETFramework,Version=v4.7.2 Do you want to install this .NET Framework version now? Dziennik System: ============= Error: (03/22/2023 08:34:46 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SC66HVQ) Description: Serwer {4BD3E4E1-7BD4-4A2B-9964-496400DE5193} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (03/22/2023 08:23:53 PM) (Source: volsnap) (EventID: 36) (User: ) Description: Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error: (03/22/2023 07:15:40 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-SC66HVQ) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} i identyfikatorem aplikacji APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} użytkownikowi DESKTOP-SC66HVQ\remik o identyfikatorze zabezpieczeń SID (S-1-5-21-3563797008-3845598522-1844387788-1001) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/22/2023 07:15:40 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-SC66HVQ) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} i identyfikatorem aplikacji APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} użytkownikowi DESKTOP-SC66HVQ\remik o identyfikatorze zabezpieczeń SID (S-1-5-21-3563797008-3845598522-1844387788-1001) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/22/2023 07:01:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Wireless PAN DHCP Server niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (03/22/2023 07:01:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi igccservice z powodu następującego błędu: Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie. Error: (03/22/2023 07:01:54 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą igccservice. Error: (03/22/2023 07:01:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi SmartByte Network Service x64 z powodu następującego błędu: Nie można odnaleźć określonego pliku. Windows Defender: ================ Date: 2023-03-21 09:47:51.838 Description: Skanowanie produktu Program antywirusowy Microsoft Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania: {EE02D58C-BA2D-40C0-9110-164746EC08B7} Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem Parametry skanowania: Szybkie skanowanie Użytkownik: ZARZĄDZANIE NT\SYSTEM Event[0]: Date: 2023-02-16 15:56:52.883 Description: Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń. Nowa wersja analizy zabezpieczeń: Poprzednia wersja analizy zabezpieczeń: 1.381.3595.0 Źródło aktualizacji: Serwer usługi Microsoft Update Typ analizy zabezpieczeń: Oprogramowanie antywirusowe Typ aktualizacji: Pełne Użytkownik: ZARZĄDZANIE NT\SYSTEM Bieżąca wersja aparatu: Poprzednia wersja aparatu: 1.1.20000.2 Kod błędu: 0x80070643 Opis błędu: Błąd krytyczny podczas instalacji. Date: 2023-02-15 11:32:06.061 Description: Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń. Nowa wersja analizy zabezpieczeń: Poprzednia wersja analizy zabezpieczeń: 1.381.3595.0 Źródło aktualizacji: Serwer usługi Microsoft Update Typ analizy zabezpieczeń: Oprogramowanie antywirusowe Typ aktualizacji: Pełne Użytkownik: ZARZĄDZANIE NT\SYSTEM Bieżąca wersja aparatu: Poprzednia wersja aparatu: 1.1.20000.2 Kod błędu: 0x80070643 Opis błędu: Błąd krytyczny podczas instalacji. Date: 2023-02-15 11:31:31.535 Description: Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń. Nowa wersja analizy zabezpieczeń: Poprzednia wersja analizy zabezpieczeń: 1.381.3595.0 Źródło aktualizacji: Użytkownik Typ analizy zabezpieczeń: Oprogramowanie antyszpiegowskie Typ aktualizacji: Pełne Użytkownik: ZARZĄDZANIE NT\SYSTEM Bieżąca wersja aparatu: Poprzednia wersja aparatu: 1.1.20000.2 Kod błędu: 0x80070070 Opis błędu: Za mało miejsca na dysku. Date: 2023-02-15 11:31:31.533 Description: Produkt Program antywirusowy Microsoft Defender napotkał błąd podczas próby aktualizacji analizy zabezpieczeń. Nowa wersja analizy zabezpieczeń: Poprzednia wersja analizy zabezpieczeń: 1.381.3595.0 Źródło aktualizacji: Użytkownik Typ analizy zabezpieczeń: Oprogramowanie antywirusowe Typ aktualizacji: Pełne Użytkownik: ZARZĄDZANIE NT\SYSTEM Bieżąca wersja aparatu: Poprzednia wersja aparatu: 1.1.20000.2 Kod błędu: 0x80070070 Opis błędu: Za mało miejsca na dysku. ==================== Statystyki pamięci =========================== BIOS: Dell Inc. 1.22.0 03/09/2022 Płyta główna: Dell Inc. 01N2CV Procesor: Intel(R) Core(TM) i3-7130U CPU @ 2.70GHz Procent pamięci w użyciu: 29% Całkowita pamięć fizyczna: 16284.07 MB Dostępna pamięć fizyczna: 11535.45 MB Całkowita pamięć wirtualna: 32668.07 MB Dostępna pamięć wirtualna: 27703.52 MB ==================== Dyski ================================ Drive c: (OS) (Fixed) (Total:106.05 GB) (Free:14.56 GB) (Model: SK hynix SC311 SATA 128GB) NTFS Drive d: (TOSHIBA) (Removable) (Total:57.74 GB) (Free:57.74 GB) exFAT \\?\Volume{996765d2-33e5-49f4-8736-38296fd81a0c}\ (ESP) (Fixed) (Total:0.63 GB) (Free:0.57 GB) FAT32 \\?\Volume{cef1698a-608a-4ba9-8567-c42c660d2943}\ () (Fixed) (Total:0.79 GB) (Free:0.39 GB) NTFS \\?\Volume{49170d79-d974-4e3f-951c-612c6e5a244d}\ (Image) (Fixed) (Total:10.5 GB) (Free:0.16 GB) NTFS \\?\Volume{2fe0ce30-cf10-40f0-9e0c-96858d05b35f}\ (DELLSUPPORT) (Fixed) (Total:1.14 GB) (Free:0.32 GB) NTFS ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 1 (Size: 57.7 GB) (Disk ID: 3D2D3AFF) Partition 1: (Not Active) - (Size=57.7 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ======================= Odnośnik do komentarza
jessica Opublikowano 22 Marca 2023 Zgłoś Udostępnij Opublikowano 22 Marca 2023 Są logi FRST, więc przejrzałam je z przyzwyczajenia. Uruchom FRST. Skopiuj to poniższe: (ale nigdzie nie wklejaj tego!) - FRST sam znajdzie "fixlist" w schowku systemowym Spoiler START:: HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Ograniczenia <==== UWAGA SearchScopes: HKU\S-1-5-21-3563797008-3845598522-1844387788-1001 -> DefaultScope {799F6E90-2249-4D88-AB0A-2930119D432D} URL = SearchScopes: HKU\S-1-5-21-3563797008-3845598522-1844387788-1001 -> {799F6E90-2249-4D88-AB0A-2930119D432D} URL = Toolbar: HKLM - Brak nazwy - {b60873b9-51aa-4566-b2fc-c16de2ec8bff} - Brak pliku Toolbar: HKLM-x32 - Brak nazwy - {b60873b9-51aa-4566-b2fc-c16de2ec8bff} - Brak pliku C:\Windows\Reimage.ini S3 cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys [X] S3 dgderdrv; System32\drivers\dgderdrv.sys [X] U4 DiagTrack; Brak ImagePath S3 hwdatacard; \SystemRoot\system32\DRIVERS\ewusbmdm.sys [X] S3 hwusbfake; \SystemRoot\system32\DRIVERS\ewusbfake.sys [X] S3 hwusb_wwanecm; \SystemRoot\system32\DRIVERS\ew_wwanecm.sys [X] S3 panda_url_filteringd; \??\C:\Program Files\Panda Security URL Filtering\panda_url_filteringd.sys [X] S3 rsDwf; \SystemRoot\system32\DRIVERS\rsDwf.sys [X] S3 semav6msr64; \??\C:\Windows\system32\drivers\semav6msr64.sys [X] S2 dcpm-notify; "C:\Program Files\Dell\CommandPowerManager\NotifyService.exe" [X] S4 RNDBWM; "C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe" [X] S2 SmartByte Network Service x64; "C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe" [X] FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [Brak pliku] FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [Brak pliku] FF Plugin HKU\S-1-5-21-3563797008-3845598522-1844387788-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin HKU\S-1-5-21-3563797008-3845598522-1844387788-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin HKU\S-1-5-21-3563797008-3845598522-1844387788-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <==== UWAGA Task: {E2A5D8C0-8C4D-4277-9E4A-82581A8B05B6} - System32\Tasks\Microsoft\Windows\CUAssistant\CULauncher => C:\Program Files\CUAssistant\culauncher.exe (Brak pliku) Task: {AAEED40D-07A4-4515-A6B3-812723D68E69} - Brak ścieżki do pliku Task: {9E85FDBD-9259-4C46-BDE5-C3AE6018FA1B} - Brak ścieżki do pliku IFEO\RAVBg64.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\RtkAudioService64.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\RtkNGUI64.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\RtlUpd64.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe HKLM-x32\...\Run: [] => [X] EmptyEventLogs: EmptyTemp: END:: W FRST kliknij na Fix (NAPRAW). Zrób log z Farbar Service Scanner > http://download.bleepingcomputer.com/farbar/FSS.exe (do skanowania zaznacz wszystko). W necie jest bardzo dużo na temat błędu "0x80240034", ale nie ma tam ani jednego rozwiązania problemu - niestety. Wszystkie to tylko mydlenie oczu użytkowników. jessi Odnośnik do komentarza
AdrianoCelentano Opublikowano 23 Marca 2023 Autor Zgłoś Udostępnij Opublikowano 23 Marca 2023 FIXLOG FRST Spoiler Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 22-03-2023 Uruchomiony przez remik (23-03-2023 14:33:41) Run:1 Uruchomiony z C:\Users\remik\Downloads Załadowane profile: remik Tryb startu: Normal ============================================== fixlist - zawartość: ***************** START:: HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Ograniczenia <==== UWAGA SearchScopes: HKU\S-1-5-21-3563797008-3845598522-1844387788-1001 -> DefaultScope {799F6E90-2249-4D88-AB0A-2930119D432D} URL = SearchScopes: HKU\S-1-5-21-3563797008-3845598522-1844387788-1001 -> {799F6E90-2249-4D88-AB0A-2930119D432D} URL = Toolbar: HKLM - Brak nazwy - {b60873b9-51aa-4566-b2fc-c16de2ec8bff} - Brak pliku Toolbar: HKLM-x32 - Brak nazwy - {b60873b9-51aa-4566-b2fc-c16de2ec8bff} - Brak pliku C:\Windows\Reimage.ini S3 cpuz143; \??\C:\Windows\temp\cpuz143\cpuz143_x64.sys [X] S3 dgderdrv; System32\drivers\dgderdrv.sys [X] U4 DiagTrack; Brak ImagePath S3 hwdatacard; \SystemRoot\system32\DRIVERS\ewusbmdm.sys [X] S3 hwusbfake; \SystemRoot\system32\DRIVERS\ewusbfake.sys [X] S3 hwusb_wwanecm; \SystemRoot\system32\DRIVERS\ew_wwanecm.sys [X] S3 panda_url_filteringd; \??\C:\Program Files\Panda Security URL Filtering\panda_url_filteringd.sys [X] S3 rsDwf; \SystemRoot\system32\DRIVERS\rsDwf.sys [X] S3 semav6msr64; \??\C:\Windows\system32\drivers\semav6msr64.sys [X] S2 dcpm-notify; "C:\Program Files\Dell\CommandPowerManager\NotifyService.exe" [X] S4 RNDBWM; "C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe" [X] S2 SmartByte Network Service x64; "C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe" [X] FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [Brak pliku] FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [Brak pliku] FF Plugin HKU\S-1-5-21-3563797008-3845598522-1844387788-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin HKU\S-1-5-21-3563797008-3845598522-1844387788-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin HKU\S-1-5-21-3563797008-3845598522-1844387788-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <==== UWAGA Task: {E2A5D8C0-8C4D-4277-9E4A-82581A8B05B6} - System32\Tasks\Microsoft\Windows\CUAssistant\CULauncher => C:\Program Files\CUAssistant\culauncher.exe (Brak pliku) Task: {AAEED40D-07A4-4515-A6B3-812723D68E69} - Brak ścieżki do pliku Task: {9E85FDBD-9259-4C46-BDE5-C3AE6018FA1B} - Brak ścieżki do pliku IFEO\RAVBg64.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\RtkAudioService64.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\RtkNGUI64.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\RtlUpd64.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe HKLM-x32\...\Run: [] => [X] EmptyEventLogs: EmptyTemp: END:: ***************** HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate => pomyślnie usunięto "HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => pomyślnie usunięto HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{799F6E90-2249-4D88-AB0A-2930119D432D} => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{b60873b9-51aa-4566-b2fc-c16de2ec8bff}" => pomyślnie usunięto "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{b60873b9-51aa-4566-b2fc-c16de2ec8bff}" => pomyślnie usunięto C:\Windows\Reimage.ini => pomyślnie przeniesiono HKLM\System\CurrentControlSet\Services\cpuz143 => pomyślnie usunięto cpuz143 => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\dgderdrv => pomyślnie usunięto dgderdrv => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\DiagTrack => pomyślnie usunięto DiagTrack => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\hwdatacard => pomyślnie usunięto hwdatacard => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\hwusbfake => pomyślnie usunięto hwusbfake => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\hwusb_wwanecm => pomyślnie usunięto hwusb_wwanecm => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\panda_url_filteringd => pomyślnie usunięto panda_url_filteringd => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\rsDwf => pomyślnie usunięto rsDwf => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\semav6msr64 => pomyślnie usunięto semav6msr64 => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\dcpm-notify => pomyślnie usunięto dcpm-notify => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\RNDBWM => pomyślnie usunięto RNDBWM => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\SmartByte Network Service x64 => pomyślnie usunięto SmartByte Network Service x64 => serwis pomyślnie usunięto HKLM\Software\Wow6432Node\MozillaPlugins\@tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf => pomyślnie usunięto HKLM\Software\Wow6432Node\MozillaPlugins\@tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf => pomyślnie usunięto HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf => pomyślnie usunięto "C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll" => nie znaleziono HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf => pomyślnie usunięto "C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll" => nie znaleziono HKU\S-1-5-21-3563797008-3845598522-1844387788-1001\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf => pomyślnie usunięto "C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll" => nie znaleziono HKLM\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf => pomyślnie usunięto HKLM\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf => pomyślnie usunięto HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E2A5D8C0-8C4D-4277-9E4A-82581A8B05B6}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E2A5D8C0-8C4D-4277-9E4A-82581A8B05B6}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\CUAssistant\CULauncher => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\CUAssistant\CULauncher" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AAEED40D-07A4-4515-A6B3-812723D68E69}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AAEED40D-07A4-4515-A6B3-812723D68E69}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9E85FDBD-9259-4C46-BDE5-C3AE6018FA1B}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9E85FDBD-9259-4C46-BDE5-C3AE6018FA1B}" => pomyślnie usunięto HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\RAVBg64.exe => pomyślnie usunięto HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\RtkAudioService64.exe => pomyślnie usunięto HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\RtkNGUI64.exe => pomyślnie usunięto HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\RtlUpd64.exe => pomyślnie usunięto "HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\" => pomyślnie usunięto =========== EmptyEventLogs: ========== 1082 Event logs cleared. ================================ =========== EmptyTemp: ========== FlushDNS => ukończone BITS transfer queue => 0 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 12793173 B Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B Windows/system/drivers => 356176 B Edge => 9728 B Firefox => 900902008 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 11861686 B LocalService => 11876506 B NetworkService => 11902298 B remik => 60948454 B RecycleBin => 92062 B EmptyTemp: => 963.9 MB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 14:34:36 ==== LOG FSS Spoiler Farbar Service Scanner Version: 19-03-2023 Ran by remik (administrator) on 23-03-2023 at 14:41:49 Running from "C:\Users\remik\Downloads" Microsoft Windows 10 Home (X64) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Policy: ======================== Windows Security: ============ Windows Update: ============ WaaSMedicSvc Service is not running. Error while attempting to start WaaSMedicSvc: Nazwa usugi jest nieprawidowa. Dost©pne sĄ dalsze informacje Pomocy; aby je uzyska†, wpisz NET HELPMSG 2185. Checking service configuration: Checking Start type of WaaSMedicSvc: ATTENTION!=====> Unable to open WaaSMedicSvc registry key. The service key does not exist. Checking ImagePath: ATTENTION!=====> Unable to open WaaSMedicSvc registry key. The service key does not exist. Checking ServiceDll of WaaSMedicSvc: ATTENTION!=====> Unable to open WaaSMedicSvc registry key. The service key does not exist. Windows Autoupdate Disabled Policy: ============================ Windows Defender: ============== WinDefend Service is not running. Checking service configuration: The start type of WinDefend service is set to Demand. The default start type is Auto. The ImagePath of WinDefend: ""C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.3-0\MsMpEng.exe"". Windows Defender Disabled Policy: ========================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender] "DisableAntiSpyware"=DWORD:1 Other Services: ============== File Check: ======== C:\Windows\System32\nsisvc.dll => File is digitally signed C:\Windows\System32\Drivers\nsiproxy.sys => File is digitally signed C:\Windows\System32\Drivers\netbt.sys => File is digitally signed C:\Windows\System32\Drivers\tdx.sys => File is digitally signed C:\Windows\System32\Drivers\afd.sys => File is digitally signed C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed C:\Windows\System32\dnsrslvr.dll => File is digitally signed C:\Windows\System32\dnsapi.dll => File is digitally signed C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed C:\Windows\System32\mpssvc.dll => File is digitally signed C:\Windows\System32\bfe.dll => File is digitally signed C:\Windows\System32\Drivers\mpsdrv.sys => File is digitally signed C:\Windows\System32\SDRSVC.dll => File is digitally signed C:\Windows\System32\vssvc.exe => File is digitally signed C:\Windows\System32\SecurityHealthService.exe => File is digitally signed C:\Windows\System32\wscsvc.dll => File is digitally signed C:\Windows\System32\\wbem\WMIsvc.dll => File is digitally signed C:\Windows\System32\wuaueng.dll => File is digitally signed C:\Windows\System32\qmgr.dll => File is digitally signed C:\Windows\System32\es.dll => File is digitally signed C:\Windows\System32\cryptsvc.dll => File is digitally signed ATTENTION!=====> C:\Windows\System32\usosvc.dll FILE IS MISSING. ATTENTION!=====> C:\Windows\System32\WaaSMedicSvc.dll FILE IS MISSING. C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed C:\Windows\System32\ipnathlp.dll => File is digitally signed C:\Windows\System32\iphlpsvc.dll => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed **** End of log **** Rozumiem, byłoby jednak miło jakby nam się udało znaleźć rozwiązanie bez formatowania. Adrian Odnośnik do komentarza
jessica Opublikowano 23 Marca 2023 Zgłoś Udostępnij Opublikowano 23 Marca 2023 Usługa "Windows Update" jest OK. Natomiast usługa "Windows Update Medic Service" jest zniszczona całkowicie: Spoiler WaaSMedicSvc Service is not running. Error while attempting to start WaaSMedicSvc: Nazwa usugi jest nieprawidowa. Dost©pne sĄ dalsze informacje Pomocy; aby je uzyska†, wpisz NET HELPMSG 2185. Checking service configuration: Checking Start type of WaaSMedicSvc: ATTENTION!=====> Unable to open WaaSMedicSvc registry key. The service key does not exist. Checking ImagePath: ATTENTION!=====> Unable to open WaaSMedicSvc registry key. The service key does not exist. Checking ServiceDll of WaaSMedicSvc: ATTENTION!=====> Unable to open WaaSMedicSvc registry key. The service key does not exist. ATTENTION!=====> C:\Windows\System32\WaaSMedicSvc.dll FILE IS MISSING. To, być może, przyczynia się do problemu z Windows Update. Temat zostawiam dla fachowców z tego działu forum (o ile tacy się tu pojawią) jessi . Odnośnik do komentarza
amp Opublikowano 24 Marca 2023 Zgłoś Udostępnij Opublikowano 24 Marca 2023 Próbowałeś takiego skryptu do naprawy WU WUReset i np. DISM.exe /Online /Cleanup-image /Restorehealth? Tak tylko zapytam dlaczego nie aktualizowałeś systemu na bieżąco, wiem że tacy są i to są właśnie skutki takiego postępowania. Mam kolegę który też się naczytał że trzeba poczekać bo błędy są itd. itp. i teraz nie ma możliwości aktualizacji a próbowałem różnymi sposobami to zrobić i się nie udało a czytając w necie takich osób jest sporo szczególnie na starszej wersji systemu. Twój problem jest trochę inny tak mi się wydaje skoro masz wyłączone jakieś opcje serwisowe, pewnie na skutek wyłączania aktualizacji, może jakimiś skryptami czy programem aby system się sam nie aktualizował. Możesz jeszcze spróbować aktualizacji z zachowaniem danych, wypakuj iso na dysk i spróbuj z setup. Odnośnik do komentarza
Rekomendowane odpowiedzi
Jeśli chcesz dodać odpowiedź, zaloguj się lub zarejestruj nowe konto
Jedynie zarejestrowani użytkownicy mogą komentować zawartość tej strony.
Zarejestruj nowe konto
Załóż nowe konto. To bardzo proste!
Zarejestruj sięZaloguj się
Posiadasz już konto? Zaloguj się poniżej.
Zaloguj się