Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 20.06.2018
- Uruchomiony przez domin (29-06-2018 14:27:46)
- Uruchomiony z C:\Users\domin\Downloads
- Windows 10 Enterprise Wersja 1709 16299.492 (X64) (2018-03-01 18:38:30)
- Tryb startu: Normal
- ==========================================================
- ==================== Konta użytkowników: =============================
- Administrator (S-1-5-21-628336397-1476835057-3598675240-500 - Administrator - Disabled)
- defaultuser0 (S-1-5-21-628336397-1476835057-3598675240-1000 - Limited - Disabled) => C:\Users\defaultuser0
- domin (S-1-5-21-628336397-1476835057-3598675240-1001 - Administrator - Enabled) => C:\Users\domin
- Gość (S-1-5-21-628336397-1476835057-3598675240-501 - Limited - Disabled)
- Konto domyślne (S-1-5-21-628336397-1476835057-3598675240-503 - Limited - Disabled)
- WDAGUtilityAccount (S-1-5-21-628336397-1476835057-3598675240-504 - Limited - Disabled)
- ==================== Centrum zabezpieczeń ========================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie.)
- AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
- AV: AVG Antivirus (Disabled - Up to date) {C50510DE-367A-330C-FD5C-556ACFB11243}
- AS: AVG Antivirus (Disabled - Up to date) {7E64F13A-1040-3C82-C7EC-6E18B43658FE}
- AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
- AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- ==================== Zainstalowane programy ======================
- (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)
- AMD Settings (HKLM\...\WUCCCApp) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.)
- AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.8 - Advanced Micro Devices, Inc.)
- AVG AntiVirus FREE (HKLM-x32\...\AVG Antivirus) (Version: 18.5.3059 - AVG Technologies)
- Catalyst Control Center Next Localization BR (HKLM\...\{51F85784-6799-5CA3-97B2-2E5904FC3E58}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization BR (HKLM\...\{A16E186C-58C4-3BDC-5CCE-714EFEF5F27F}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization BR (HKLM\...\{E7AA1A02-575C-14C6-FBEF-4BE6D46A5B74}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization CHS (HKLM\...\{8E6F5592-ED7E-9C50-74AC-BF417B1FE291}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization CHS (HKLM\...\{E42911E5-48F8-8557-ED20-D72AD1907D25}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization CHS (HKLM\...\{EB6C44F1-0F78-FE10-BC63-90BA50AB0CE9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization CHT (HKLM\...\{AD28960A-6190-C991-C964-308B86EAA2E2}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization CHT (HKLM\...\{B26D75B8-FAB7-6F8B-767F-BAF975383D91}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization CHT (HKLM\...\{B4C30EF4-B2C5-1395-B534-7B63BCB6E8E4}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization CS (HKLM\...\{36EDC500-E4C0-371C-9865-08450415C1E9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization CS (HKLM\...\{62098A5F-E03B-31A3-5F9C-51A7F7D25744}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization CS (HKLM\...\{84C3F2C5-F7B2-2F08-CDF4-79EF7CC55D74}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization DA (HKLM\...\{0E8A3B17-D603-B1B6-C205-1685EBDD23E9}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization DA (HKLM\...\{1757AD9B-0E3C-05F9-FE43-4343BED7DA85}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization DA (HKLM\...\{4C2FB7FD-89FD-BA5C-585A-3811F326AD34}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization DE (HKLM\...\{1E7D3072-1D28-E33A-99DF-85D9F7ECD06E}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization DE (HKLM\...\{66B06F29-EE4F-9130-D96A-754826093FEA}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization DE (HKLM\...\{D74218A3-C503-57EF-AC9F-2220082E7ADE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization EL (HKLM\...\{821D0A0E-F246-BE40-0D68-93883C14C410}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization EL (HKLM\...\{BA26B70C-3D8C-2D14-4122-211FB3E6F691}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization EL (HKLM\...\{DA433FCF-90A1-19A5-65A7-FDF82DE4826D}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization ES (HKLM\...\{5FEACE78-C338-9AED-FF05-7DE7E273C774}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization ES (HKLM\...\{88BD74C4-23AB-4554-915C-6E1F0C81F6CD}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization ES (HKLM\...\{949F125B-A6CC-5A5E-EEE7-4AC50305C1FA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization FI (HKLM\...\{20D46801-147B-30AD-7C5A-AC4560A79096}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization FI (HKLM\...\{A3795528-F572-6314-C4E3-EE9DAF0FBF02}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization FI (HKLM\...\{A48E2AB0-0866-7783-9657-E1709EB18D02}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization FR (HKLM\...\{22C39711-2747-D264-319A-1550BEEAAEC6}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization FR (HKLM\...\{4853A56D-7931-A08B-5BA7-8E2D61043DF9}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization FR (HKLM\...\{E61CEF9A-BAC3-EAEE-F735-E257D2354DF2}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization HU (HKLM\...\{1DBACFDB-5E43-7882-36BD-53526D34BD22}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization HU (HKLM\...\{B28CF677-E2C8-12CA-52BB-19B6F066D36A}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization HU (HKLM\...\{DA0326BB-657D-AAFC-752C-363E8FA33755}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization IT (HKLM\...\{43F6D22B-E0E9-EE90-9B62-1C5FC5D15A55}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization IT (HKLM\...\{A91FC4BF-C1EC-ADCA-79D1-F4F0671F1D60}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization IT (HKLM\...\{B873A1FB-5EA0-EE5F-A861-1E38880AD08E}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization JA (HKLM\...\{D4490E0F-8E7B-1097-B56A-7643C75F1C28}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization JA (HKLM\...\{EC9DF9FF-9D75-4CDD-1D58-A2E887B0A42E}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization JA (HKLM\...\{ED75A775-03A7-F214-868D-497748707968}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization KO (HKLM\...\{07BFBD5C-2F63-6828-1B61-B41A44113F3B}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization KO (HKLM\...\{7ABACA7E-6E59-0EF9-8FA3-6B32E5F58127}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization KO (HKLM\...\{DAB44116-0266-C65B-B643-AC11217C3041}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization NL (HKLM\...\{3AF70346-52C7-0334-606F-118D1C1CB7A2}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization NL (HKLM\...\{3E196AAF-F81C-B384-E2AB-28EE2398FE5F}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization NL (HKLM\...\{E6038D3E-5D87-8DF7-6D05-BE7532C3E73E}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization NO (HKLM\...\{53AE8AC7-5213-67AF-0DC0-CED696B77643}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization NO (HKLM\...\{DAEFFE0C-CD05-1355-6AFC-7B3D4106A820}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization NO (HKLM\...\{DFAD9DAC-4768-C8BB-4E0E-5239605A9BEA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization PL (HKLM\...\{DC9DFCBF-87DA-892C-6151-99CC9EF46E3E}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization PL (HKLM\...\{E392A425-53A7-DF90-96A0-E287A75DD3B2}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization PL (HKLM\...\{FFBFBD1F-B160-A119-7C43-8584FA2E5665}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization RU (HKLM\...\{4D1D5407-9B69-6422-629C-8518A26004A4}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization RU (HKLM\...\{C1EFF2A2-DF4A-F6D1-B99C-1ED194AE9E78}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization RU (HKLM\...\{D6F47BB4-700A-F612-0671-5F69EA311BB7}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization SV (HKLM\...\{01FD9A26-3F61-9236-B360-BE5D043D82C0}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization SV (HKLM\...\{46EB68BE-8AAC-8C2B-7284-8DEDE6B5CD2A}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization SV (HKLM\...\{A8379BAB-59A9-C0A3-8BCC-4852EA403692}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization TH (HKLM\...\{24DF617A-CD23-6E6A-126B-23630D2781CE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization TH (HKLM\...\{64D4CCC3-63DF-252D-D29D-03491670225D}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization TH (HKLM\...\{7A6E431B-CF43-EC3E-FD7E-0A0AAB1B25FC}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization TR (HKLM\...\{83DDDFD8-AD42-72F9-E4F1-5456FDB304C9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization TR (HKLM\...\{89A1F076-19B8-A2B1-D5A3-E8247EFAF157}) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
- Catalyst Control Center Next Localization TR (HKLM\...\{8DF90937-B869-9F76-5D45-5A8BDA0A33B6}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
- CCleaner (HKLM\...\CCleaner) (Version: 5.32 - Piriform)
- CPUID HWMonitor 1.31 (HKLM\...\CPUID HWMonitor_is1) (Version: - )
- DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.6.0.0275 - Disc Soft Ltd)
- Epic Games Launcher (HKLM-x32\...\{565F3270-F13B-4B2F-91C9-D04BAB404318}) (Version: 1.1.143.0 - Epic Games, Inc.)
- Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
- FACEIT (HKU\S-1-5-21-628336397-1476835057-3598675240-1001\...\FACEITApp) (Version: 0.17.1 - FACEIT Ltd.)
- FACEIT (HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310\...\FACEITApp) (Version: 0.17.1 - FACEIT Ltd.)
- FACEIT (HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745\...\FACEITApp) (Version: 0.17.1 - FACEIT Ltd.)
- FACEIT AC version 1.0 (HKLM\...\{1419E44C-0EF4-4822-9194-9F1A4D43973D}_is1) (Version: 1.0 - FACEIT LTD)
- Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
- GIMP 2.8.22 (HKLM\...\GIMP-2_is1) (Version: 2.8.22 - The GIMP Team)
- Google Chrome (HKLM-x32\...\Google Chrome) (Version: 67.0.3396.99 - Google Inc.)
- Google Earth Pro (HKLM\...\{D9EF644E-2FAE-493B-8180-5617CC774C4F}) (Version: 7.3.1.4507 - Google)
- Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
- Java 8 Update 161 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180161F0}) (Version: 8.0.1610.12 - Oracle Corporation)
- Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
- Malwarebytes (wersja 3.5.1.2522) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.5.1.2522 - Malwarebytes)
- Microsoft OneDrive (HKU\S-1-5-21-628336397-1476835057-3598675240-1001\...\OneDriveSetup.exe) (Version: 18.091.0506.0007 - Microsoft Corporation)
- Microsoft OneDrive (HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310\...\OneDriveSetup.exe) (Version: 18.091.0506.0007 - Microsoft Corporation)
- Microsoft OneDrive (HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745\...\OneDriveSetup.exe) (Version: 18.091.0506.0007 - Microsoft Corporation)
- Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
- Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
- Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
- Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
- Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
- Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
- Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
- Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
- Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
- Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
- Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.5.6 - Notepad++ Team)
- OpenOffice 4.1.3 (HKLM-x32\...\{4D71C348-C964-442D-B2DB-5160E46FB664}) (Version: 4.13.9783 - Apache Software Foundation)
- Origin (HKLM-x32\...\Origin) (Version: 10.5.21.179 - Electronic Arts, Inc.)
- Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek)
- Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.3.8 - Rockstar Games)
- SafeFinder (HKLM-x32\...\{FE460A5C-B07E-4D84-82A2-3371B32AA814}) (Version: 1.0.0.0 - Linkury) <==== UWAGA
- SHU (HKLM-x32\...\{DF11DD92-DBB8-4F3F-9564-A8BBDBE986F5}_is1) (Version: 1.0 - ScreenShu Software)
- ShutdownTime version 1.0 (HKLM-x32\...\ShutdownTime_is1) (Version: 1.0 - )
- Spotify (HKU\S-1-5-21-628336397-1476835057-3598675240-1001\...\Spotify) (Version: 1.0.83.318.g6c07039d - Spotify AB)
- Spotify (HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310\...\Spotify) (Version: 1.0.83.318.g6c07039d - Spotify AB)
- Spotify (HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745\...\Spotify) (Version: 1.0.83.318.g6c07039d - Spotify AB)
- Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
- SteelSeries Engine 3.12.3 (HKLM\...\SteelSeries Engine 3) (Version: 3.12.3 - SteelSeries ApS)
- TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.5 - TeamSpeak Systems GmbH)
- The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.43.14.1020 - Electronic Arts Inc.)
- Total War Arena (HKLM-x32\...\Total War Arena) (Version: - )
- TunnelBear (HKLM-x32\...\{8092fbe5-9e59-4729-a5de-5bb6a64873cc}) (Version: 3.0.37.12 - TunnelBear)
- TunnelBear (HKLM-x32\...\{ABC9BE61-B890-4100-BCA4-5AC3BF1F3CB5}) (Version: 3.0.37.12 - TunnelBear) Hidden
- Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{E345A108-D9E8-456B-9550-435132D5C9CE}) (Version: 2.13.0.0 - Microsoft Corporation)
- UpdateAssistant (HKLM-x32\...\{035FFC43-55D6-4F5C-BCC5-21FED122C8B4}) (Version: 1.11.0.0 - Microsoft Corporation) Hidden
- Vegas Pro 13.0 (64-bit) (HKLM\...\{D0360940-CCC6-11E3-B9C6-F04DA23A5C58}) (Version: 13.0.310 - Sony)
- Windows 10 Update Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22350 - Microsoft Corporation)
- WinRAR 5.40 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
- ==================== Niestandardowe rejestracje CLSID (filtrowane): ==========================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310_Classes\CLSID\{087B3AE3-E237-4467-B8DB-5A38AB959AC9}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310_Classes\CLSID\{3B092F0C-7696-40E3-A80F-68D74DA84210}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310_Classes\CLSID\{63542C48-9552-494A-84F7-73AA6A7C99C1}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310_Classes\CLSID\{7BC0E710-5703-45BE-A29D-5D46D8B39262}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\ooofilt_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310_Classes\CLSID\{AE424E85-F6DF-4910-A6A9-438797986431}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\propertyhdl_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310_Classes\CLSID\{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745_Classes\CLSID\{087B3AE3-E237-4467-B8DB-5A38AB959AC9}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745_Classes\CLSID\{3B092F0C-7696-40E3-A80F-68D74DA84210}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745_Classes\CLSID\{63542C48-9552-494A-84F7-73AA6A7C99C1}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745_Classes\CLSID\{7BC0E710-5703-45BE-A29D-5D46D8B39262}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\ooofilt_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745_Classes\CLSID\{AE424E85-F6DF-4910-A6A9-438797986431}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\propertyhdl_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745_Classes\CLSID\{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001_Classes\CLSID\{087B3AE3-E237-4467-B8DB-5A38AB959AC9}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001_Classes\CLSID\{3B092F0C-7696-40E3-A80F-68D74DA84210}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001_Classes\CLSID\{63542C48-9552-494A-84F7-73AA6A7C99C1}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001_Classes\CLSID\{7BC0E710-5703-45BE-A29D-5D46D8B39262}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\ooofilt_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001_Classes\CLSID\{AE424E85-F6DF-4910-A6A9-438797986431}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\propertyhdl_x64.dll (Apache Software Foundation)
- CustomCLSID: HKU\S-1-5-21-628336397-1476835057-3598675240-1001_Classes\CLSID\{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
- ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku
- ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2017-08-29] ()
- ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShA64.dll [2018-05-13] (AVG Technologies CZ, s.r.o.)
- ContextMenuHandlers1: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => -> Brak pliku
- ContextMenuHandlers2: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => -> Brak pliku
- ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku
- ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-09] (Malwarebytes)
- ContextMenuHandlers4: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => -> Brak pliku
- ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2017-09-22] (Advanced Micro Devices, Inc.)
- ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShA64.dll [2018-05-13] (AVG Technologies CZ, s.r.o.)
- ContextMenuHandlers6: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => -> Brak pliku
- ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-09] (Malwarebytes)
- ==================== Zaplanowane zadania (filtrowane) =============
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- Task: {17640DFC-6540-4931-BDAC-924E11BFB12E} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [2017-09-22] (Advanced Micro Devices, Inc.)
- Task: {2200D5C5-FAC1-412B-853C-55B374E4A75F} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\avg\overseer\overseer.exe [2018-06-05] (AVG Technologies CZ, s.r.o.)
- Task: {2DF911E8-4677-417F-BFBA-25369FBA3A88} - \Microsoft\Windows\UNP\RunCampaignManager -> Brak pliku <==== UWAGA
- Task: {31653444-7035-4B49-BBD4-43EEE1A31AA8} - System32\Tasks\S-1-5-21-628336397-1476835057-3598675240-1001\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe [2017-09-29] (Microsoft Corporation)
- Task: {3B2D4CA4-DEDE-4A17-8544-D143DE8EEDE7} - System32\Tasks\SVC Update => C:\WINDOWS\explorer.exe "hxxp://lktoday.ru" <==== UWAGA
- Task: {5B0D1A0D-A2B3-4984-832B-BEB5AEFDCFD0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-09-10] (Google Inc.)
- Task: {B7990F06-CC84-4CFE-9F1C-3A9AD3E50F8A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-09-10] (Google Inc.)
- Task: {D45B4314-3EBB-4558-8051-1DD12972B06C} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [2018-06-21] (AVG Technologies CZ, s.r.o.)
- Task: {DCCA0786-06F7-4652-AA1D-54C17A9B821C} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-06-30] (Piriform Ltd)
- (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
- ==================== Skróty & WMI ========================
- (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)
- ShortcutWithArgument: C:\Users\domin\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> %SNP%
- ShortcutWithArgument: C:\Users\domin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> %SNP%
- ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> %SNP%
- ==================== Załadowane moduły (filtrowane) ==============
- 2017-09-06 17:48 - 2017-09-06 17:48 - 000037248 _____ () C:\Program Files (x86)\TunnelBear\TunnelBear.Maintenance.exe
- 2017-09-29 15:41 - 2017-09-29 15:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
- 2018-06-13 15:57 - 2018-06-08 08:00 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
- 2018-06-13 15:57 - 2018-06-08 07:56 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
- 2018-03-04 13:56 - 2018-03-04 13:57 - 098275328 _____ () C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libcef.dll
- 2018-03-04 13:57 - 2018-03-04 13:58 - 003922432 _____ () C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libGLESv2.dll
- 2018-03-04 13:57 - 2018-03-04 13:57 - 000092672 _____ () C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libEGL.dll
- 2016-09-13 03:01 - 2016-09-13 03:01 - 000014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
- 2016-09-13 03:01 - 2016-09-13 03:01 - 000739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
- 2016-09-13 03:01 - 2016-09-13 03:01 - 000014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
- 2016-09-13 03:01 - 2016-09-13 03:01 - 000071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
- 2016-09-13 03:01 - 2016-09-13 03:01 - 000011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll
- 2016-09-13 03:01 - 2016-09-13 03:01 - 002013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
- 2016-09-13 03:01 - 2016-09-13 03:01 - 000191488 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
- 2018-06-27 01:02 - 2018-06-22 21:15 - 002663768 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\swiftshader\libglesv2.dll
- 2018-06-27 01:02 - 2018-06-22 21:15 - 000128856 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\swiftshader\libegl.dll
- 2018-06-29 14:15 - 2018-04-25 13:16 - 002297040 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
- 2018-06-29 14:15 - 2018-05-30 09:22 - 002493648 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
- 2018-03-24 15:49 - 2018-03-24 15:49 - 067127976 _____ () C:\Program Files\AVG\Antivirus\libcef.dll
- 2018-05-13 00:27 - 2018-05-13 00:27 - 000481008 _____ () C:\Program Files\AVG\Antivirus\streamback.dll
- ==================== Alternate Data Streams (filtrowane) =========
- (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.)
- AlternateDataStreams: C:\Users\Public\AppData:CSM [474]
- ==================== Tryb awaryjny (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.)
- HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
- HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
- ==================== Powiązania plików (filtrowane) ===============
- (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.)
- ==================== Internet Explorer - Witryny zaufane i z ograniczeniami ===============
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)
- ==================== Hosts - zawartość: ==========================
- (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)
- 2017-08-02 21:29 - 2018-06-29 13:44 - 000000525 _____ C:\WINDOWS\system32\Drivers\etc\hosts
- 127.0.0.1 cpm.paneladmin.pro
- 127.0.0.1 publisher.hmdiadmingate.xyz
- 127.0.0.1 hmdicrewtracksystem.xyz
- 127.0.0.1 mydownloaddomain.com
- 127.0.0.1 linkmate.space
- 127.0.0.1 space1.adminpressure.space
- 127.0.0.1 trackpressure.website
- 127.0.0.1 doctorlink.space
- 127.0.0.1 plugpackdownload.net
- 127.0.0.1 texttotalk.org
- 127.0.0.1 gambling577.xyz
- 127.0.0.1 htagdownload.space
- 127.0.0.1 mybcnmonetize.com
- 127.0.0.1 360devtraking.website
- 127.0.0.1 dscdn.pw
- 127.0.0.1 bcnmonetize.go2affise.com
- 127.0.0.1 beautifllink.xyz
- ==================== Inne obszary ============================
- (Obecnie brak automatycznej naprawy dla tej sekcji.)
- HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141815684\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
- HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826012\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
- HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816036\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
- HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826319\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
- HKU\S-1-5-21-628336397-1476835057-3598675240-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
- HKU\S-1-5-21-628336397-1476835057-3598675240-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816197\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
- HKU\S-1-5-21-628336397-1476835057-3598675240-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826522\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\domin\Desktop\asd.png
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310\Control Panel\Desktop\\Wallpaper -> C:\Users\domin\Desktop\asd.png
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745\Control Panel\Desktop\\Wallpaper -> C:\Users\domin\Desktop\asd.png
- DNS Servers: 82.163.143.146 - 82.163.142.148
- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
- Zapora systemu Windows [funkcja włączona]
- ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==
- MSCONFIG\Services: gupdate => 2
- MSCONFIG\Services: gupdatem => 3
- MSCONFIG\Services: Steam Client Service => 3
- HKLM\...\StartupApproved\Run: => "SecurityHealth"
- HKLM\...\StartupApproved\Run32: => "WindowsDefender"
- HKLM\...\StartupApproved\Run32: => "SlimCleaner Plus"
- HKLM\...\StartupApproved\Run32: => "SecurityHealth"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001\...\StartupApproved\StartupFolder: => "Registration Heroes of Might & Magic 5.LNK"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001\...\StartupApproved\Run: => "Gyazo"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001\...\StartupApproved\Run: => "Spotify Web Helper"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001\...\StartupApproved\Run: => "Spotify"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310\...\StartupApproved\StartupFolder: => "Registration Heroes of Might & Magic 5.LNK"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310\...\StartupApproved\Run: => "Gyazo"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310\...\StartupApproved\Run: => "CCleaner Monitoring"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310\...\StartupApproved\Run: => "Spotify Web Helper"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141816310\...\StartupApproved\Run: => "Spotify"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745\...\StartupApproved\StartupFolder: => "Registration Heroes of Might & Magic 5.LNK"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745\...\StartupApproved\Run: => "Gyazo"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745\...\StartupApproved\Run: => "CCleaner Monitoring"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745\...\StartupApproved\Run: => "Spotify Web Helper"
- HKU\S-1-5-21-628336397-1476835057-3598675240-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-06292018141826745\...\StartupApproved\Run: => "Spotify"
- ==================== Reguły Zapory systemu Windows (filtrowane) ===============
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- FirewallRules: [{241E54FD-6749-4C9E-B8C9-92680487AF6D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\H1Z1_BE.exe
- FirewallRules: [{5A062B31-55CB-4E40-93EE-6472132CD18F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\H1Z1_BE.exe
- FirewallRules: [UDP Query User{2D2DBAE3-F4D7-4534-A5F3-F4A07A9A6462}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Block) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe
- FirewallRules: [TCP Query User{04FF4FF6-34C6-46E3-B071-55AFAD42AD0E}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Block) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe
- FirewallRules: [{89BFA0BE-DE0D-46A8-B92E-5DACBD1B1A26}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
- FirewallRules: [{3DEB1A65-DACD-489A-ADD4-F8EC59A30D7E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
- FirewallRules: [UDP Query User{81704F82-5662-43A7-984C-E4FD4F87BF37}C:\users\domin\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\domin\appdata\roaming\spotify\spotify.exe
- FirewallRules: [TCP Query User{1F5D0B0F-7D4A-4CDF-B925-C94319E2E996}C:\users\domin\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\domin\appdata\roaming\spotify\spotify.exe
- FirewallRules: [{A233A0F7-4125-48E9-8CDD-5EEAAAE73CD2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher 3\bin\x64\witcher3.exe
- FirewallRules: [{CD468FA7-F5C4-4237-B1D6-D6BEBD84F446}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher 3\bin\x64\witcher3.exe
- FirewallRules: [UDP Query User{E39EDF3D-4548-482A-A12B-31581643E643}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
- FirewallRules: [TCP Query User{2C5B9E4F-2B85-4129-8F02-E3C07437F92A}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
- FirewallRules: [{53740608-12EA-4772-A08D-05A25D557E39}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
- FirewallRules: [{41F62548-5DBD-400B-894C-44445B501505}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
- FirewallRules: [{3EB1DA98-3D75-41A5-9303-C75D43FFCA8C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
- FirewallRules: [{DF41E938-202F-41D0-B6E4-C708335CF95E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
- FirewallRules: [{FFF56A8C-ADE5-4739-BF25-831F3E297786}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- FirewallRules: [{FB517FA4-E95A-4B3A-8BAD-B99823AAE523}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- FirewallRules: [{A7720286-6FAE-4137-A2B6-4DB3751B8C3E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
- FirewallRules: [{5772AA55-BBB9-4E6C-A6A6-E29EC47E30F1}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
- FirewallRules: [TCP Query User{C26F6F0B-0BBC-427A-8218-612E1978F433}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
- FirewallRules: [UDP Query User{F2BA0524-76CC-44CC-9BDC-9FE3ACBDA71C}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
- FirewallRules: [TCP Query User{F907E230-E9A1-45FF-B87B-AE5B9F1DF714}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
- FirewallRules: [UDP Query User{39AC889B-28A4-4D1B-BAA7-A46E806EF6BF}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
- FirewallRules: [TCP Query User{83407A19-F33E-4CE6-8C0F-51C9998D750C}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
- FirewallRules: [UDP Query User{0237021D-C26D-4300-8E01-FFDD9EEBFDD1}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
- FirewallRules: [TCP Query User{24D20224-6ED7-4CD8-B196-2EBD57A7F49F}C:\program files\java\jre1.8.0_161\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_161\bin\javaw.exe
- FirewallRules: [UDP Query User{354DA836-C101-46C4-8379-B45C96930CDF}C:\program files\java\jre1.8.0_161\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_161\bin\javaw.exe
- FirewallRules: [{92660E4B-B502-4EE9-A72D-8999B6B52D8B}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe
- FirewallRules: [{0E72AB28-41DF-4951-9902-09EBFA636199}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe
- FirewallRules: [{5BA98D50-A4E2-4A8F-B33E-4DC04D443457}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe
- FirewallRules: [{0BD093E8-3755-495C-AF30-6AB58D9131B4}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe
- FirewallRules: [{61939FFA-09BA-4C23-80F7-8F1A3F1D2123}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Risen 2\system\Risen2.exe
- FirewallRules: [{5020156C-0D52-465B-823C-3A223EF52DCB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Risen 2\system\Risen2.exe
- FirewallRules: [{E83828DE-F122-4177-8255-31E7B1E69C82}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Sims 3\Game\Bin\Sims3Launcher.exe
- FirewallRules: [{2F1F29E4-51A4-4336-AB09-AA9E0CC5493D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Sims 3\Game\Bin\Sims3Launcher.exe
- FirewallRules: [{23C347DE-FB8D-408A-85C1-3081D4657DE0}] => (Allow) C:\Program Files\AVG\Antivirus\AvEmUpdate.exe
- FirewallRules: [{95684D53-A5A1-4BA7-9845-BEBBE25E8150}] => (Allow) C:\Program Files\AVG\Antivirus\AvEmUpdate.exe
- FirewallRules: [TCP Query User{F3027C49-EC97-47FD-804F-C26DEEB0E09B}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Block) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
- FirewallRules: [UDP Query User{6A525D40-469B-489B-80BE-4B16CF482634}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Block) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
- FirewallRules: [{26456157-8176-4CA5-9E61-D02E15A837FD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- FirewallRules: [TCP Query User{0BA09510-BD21-45AF-A7D8-8E60A51C1B29}C:\users\domin\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\domin\appdata\roaming\spotify\spotify.exe
- FirewallRules: [UDP Query User{1C58EF27-7C8D-41EC-947A-C3E63E71ED8B}C:\users\domin\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\domin\appdata\roaming\spotify\spotify.exe
- FirewallRules: [TCP Query User{BC086F37-5BCE-4425-928A-E63631F09669}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe
- FirewallRules: [UDP Query User{A2756D4E-97EF-411A-A75F-FFABA1B30A20}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe
- ==================== Punkty Przywracania systemu =========================
- 20-06-2018 13:55:53 Zaplanowany punkt kontrolny
- ==================== Wadliwe urządzenia w Menedżerze urządzeń =============
- ==================== Błędy w Dzienniku zdarzeń: =========================
- Dziennik Aplikacja:
- ==================
- Error: (06/29/2018 01:48:55 PM) (Source: Perflib) (EventID: 1023) (User: )
- Description: System Windows nie może załadować biblioteki DLL licznika rozszerzalnego rdyboost. Pierwsze cztery bajty (DWORD) sekcji danych Data zawierają kod błędu systemu Windows.
- Error: (06/29/2018 01:48:54 PM) (Source: Perflib) (EventID: 1008) (User: )
- Description: Nie powiodło się wykonanie procedury otwierania dla usługi „BITS” w bibliotece DLL „C:\Windows\System32\bitsperf.dll”. Dane wydajności dla tej usługi nie będą dostępne. Pierwsze cztery bajty (DWORD) sekcji danych Data zawierają kod błędu.
- Error: (06/29/2018 01:29:39 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
- Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu:
- hr=0xC004F074
- Argumenty wiersza polecenia:
- RuleId=dca14e37-0c5c-444f-9b35-1e2f161f5ac3;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=73111121-5638-40f6-bc11-f1d7b0d64300;NotificationInterval=1440;Trigger=TimerEvent
- Error: (06/29/2018 01:27:58 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
- Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu:
- hr=0xC004F074
- Argumenty wiersza polecenia:
- RuleId=dca14e37-0c5c-444f-9b35-1e2f161f5ac3;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=73111121-5638-40f6-bc11-f1d7b0d64300;NotificationInterval=1440;Trigger=TimerEvent
- Error: (06/29/2018 01:26:16 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
- Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu:
- hr=0xC004F074
- Argumenty wiersza polecenia:
- RuleId=dca14e37-0c5c-444f-9b35-1e2f161f5ac3;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=73111121-5638-40f6-bc11-f1d7b0d64300;NotificationInterval=1440;Trigger=TimerEvent
- Error: (06/29/2018 01:24:34 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
- Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu:
- hr=0xC004F074
- Argumenty wiersza polecenia:
- RuleId=dca14e37-0c5c-444f-9b35-1e2f161f5ac3;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=73111121-5638-40f6-bc11-f1d7b0d64300;NotificationInterval=1440;Trigger=TimerEvent
- Error: (06/29/2018 01:22:54 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
- Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu:
- hr=0xC004F074
- Argumenty wiersza polecenia:
- RuleId=dca14e37-0c5c-444f-9b35-1e2f161f5ac3;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=73111121-5638-40f6-bc11-f1d7b0d64300;NotificationInterval=1440;Trigger=TimerEvent
- Error: (06/29/2018 01:21:13 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
- Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu:
- hr=0xC004F074
- Argumenty wiersza polecenia:
- RuleId=dca14e37-0c5c-444f-9b35-1e2f161f5ac3;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=73111121-5638-40f6-bc11-f1d7b0d64300;NotificationInterval=1440;Trigger=TimerEvent
- Dziennik System:
- =============
- Error: (06/29/2018 02:14:41 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-4BKG2L8)
- Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
- {D63B10C5-BB46-4990-A94F-E40B9D520160}
- i identyfikatorem aplikacji APPID
- {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
- użytkownikowi DESKTOP-4BKG2L8\domin o identyfikatorze zabezpieczeń SID (S-1-5-21-628336397-1476835057-3598675240-1001) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
- Error: (06/29/2018 02:04:53 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-4BKG2L8)
- Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
- {D63B10C5-BB46-4990-A94F-E40B9D520160}
- i identyfikatorem aplikacji APPID
- {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
- użytkownikowi DESKTOP-4BKG2L8\domin o identyfikatorze zabezpieczeń SID (S-1-5-21-628336397-1476835057-3598675240-1001) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
- Error: (06/29/2018 02:02:43 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-4BKG2L8)
- Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
- {D63B10C5-BB46-4990-A94F-E40B9D520160}
- i identyfikatorem aplikacji APPID
- {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
- użytkownikowi DESKTOP-4BKG2L8\domin o identyfikatorze zabezpieczeń SID (S-1-5-21-628336397-1476835057-3598675240-1001) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
- Error: (06/29/2018 01:58:31 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-4BKG2L8)
- Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
- {D63B10C5-BB46-4990-A94F-E40B9D520160}
- i identyfikatorem aplikacji APPID
- {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
- użytkownikowi DESKTOP-4BKG2L8\domin o identyfikatorze zabezpieczeń SID (S-1-5-21-628336397-1476835057-3598675240-1001) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
- Error: (06/29/2018 01:55:38 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-4BKG2L8)
- Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
- {D63B10C5-BB46-4990-A94F-E40B9D520160}
- i identyfikatorem aplikacji APPID
- {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
- użytkownikowi DESKTOP-4BKG2L8\domin o identyfikatorze zabezpieczeń SID (S-1-5-21-628336397-1476835057-3598675240-1001) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
- Error: (06/29/2018 01:52:31 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-4BKG2L8)
- Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
- {D63B10C5-BB46-4990-A94F-E40B9D520160}
- i identyfikatorem aplikacji APPID
- {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
- użytkownikowi DESKTOP-4BKG2L8\domin o identyfikatorze zabezpieczeń SID (S-1-5-21-628336397-1476835057-3598675240-1001) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
- Error: (06/29/2018 01:49:50 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-4BKG2L8)
- Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
- {D63B10C5-BB46-4990-A94F-E40B9D520160}
- i identyfikatorem aplikacji APPID
- {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
- użytkownikowi DESKTOP-4BKG2L8\domin o identyfikatorze zabezpieczeń SID (S-1-5-21-628336397-1476835057-3598675240-1001) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
- Error: (06/29/2018 01:49:06 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-4BKG2L8)
- Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
- {D63B10C5-BB46-4990-A94F-E40B9D520160}
- i identyfikatorem aplikacji APPID
- {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
- użytkownikowi DESKTOP-4BKG2L8\domin o identyfikatorze zabezpieczeń SID (S-1-5-21-628336397-1476835057-3598675240-1001) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
- Windows Defender:
- ===================================
- Date: 2018-03-10 00:04:20.115
- Description:
- Produkt Program antywirusowy Windows Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie.
- Aby uzyskać więcej informacji, zobacz:
- https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Tiggre!rfn&threatid=2147723625&enterprise=0
- Nazwa: Trojan:Win32/Tiggre!rfn
- Identyfikator: 2147723625
- Ważność: Poważny
- Kategoria: Koń trojański
- Ścieżka: containerfile:_C:\Users\domin\Downloads\CSCHANGER_PUBLIC_10023.zip;file:_C:\Users\domin\Downloads\CSCHANGER_PUBLIC_10023.zip->CSCHANGER_PUBLIC_10023/bin/regcleaner.exe;file:_C:\Users\domin\Downloads\CSCHANGER_PUBLIC_10023.zip->CSCHANGER_PUBLIC_10023/bin/vefixer.exe;webfile:_C:\Users\domin\Downloads\CSCHANGER_PUBLIC_10023.zip|blob:6B1E11E9-56BC-4633-A391-C7D93469425A|pid:7832,ProcessStart:131651102285317178
- Pochodzenie wykrycia: Internet
- Typ wykrycia: Konkretne
- Źródło wykrycia: Pobrania i załączniki
- Użytkownik: DESKTOP-4BKG2L8\domin
- Nazwa procesu: Unknown
- Wersja podpisu: AV: 1.263.403.0, AS: 1.263.403.0, NIS: 118.5.0.0
- Wersja aparatu: AM: 1.1.14600.4, NIS: 2.1.14202.0
- Date: 2018-03-04 18:44:54.399
- Description:
- Skanowanie produktu Program antywirusowy Windows Defender zostało zatrzymane przed ukończeniem.
- Identyfikator skanowania: {84CBA5BA-7997-47B0-8E62-995A0FBFEAC9}
- Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
- Parametry skanowania: Szybkie skanowanie
- Użytkownik: ZARZĄDZANIE NT\SYSTEM
- CodeIntegrity:
- ===================================
- Date: 2018-06-29 14:16:04.329
- Description:
- Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
- Date: 2018-06-20 13:09:46.527
- Description:
- Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftPdfReader.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements.
- Date: 2018-06-20 13:09:46.045
- Description:
- Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements.
- Date: 2018-06-20 13:09:45.133
- Description:
- Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements.
- Date: 2018-06-19 16:16:56.269
- Description:
- Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftPdfReader.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements.
- Date: 2018-06-19 16:16:55.900
- Description:
- Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements.
- Date: 2018-06-19 16:16:55.029
- Description:
- Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements.
- Date: 2018-06-19 15:43:31.570
- Description:
- Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftPdfReader.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\amdihk64.dll that did not meet the Store signing level requirements.
- ==================== Statystyki pamięci ===========================
- Procesor: Intel(R) Core(TM) i5 CPU 760 @ 2.80GHz
- Procent pamięci w użyciu: 55%
- Całkowita pamięć fizyczna: 8157.99 MB
- Dostępna pamięć fizyczna: 3621.9 MB
- Całkowita pamięć wirtualna: 11969.93 MB
- Dostępna pamięć wirtualna: 3769.68 MB
- ==================== Dyski ================================
- Drive c: () (Fixed) (Total:464.25 GB) (Free:180.65 GB) NTFS
- \\?\Volume{16fd2a28-0000-0000-0000-100000000000}\ () (Fixed) (Total:0.1 GB) (Free:0.05 GB) NTFS
- \\?\Volume{16fd2a28-0000-0000-0000-a05474000000}\ () (Fixed) (Total:0.44 GB) (Free:0.04 GB) NTFS
- ==================== MBR & Tablica partycji ==================
- ========================================================
- Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 16FD2A28)
- Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
- Partition 2: (Not Active) - (Size=464.2 GB) - (Type=07 NTFS)
- Partition 3: (Not Active) - (Size=1000 MB) - (Type=0F Extended)
- Partition 4: (Not Active) - (Size=449 MB) - (Type=27)
- ==================== Koniec Addition.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement