بنابراین، من در حال بررسی چیزهای قدیمی خود در لپ تاپم بودم و به یک فایل خفاش عجیب و غریب برخورد کردم. به جای حذف آن، "open as administrator" را فشار دادم و هیچ هشداری به من نداد که یک پرچم قرمز اصلی است. من نمی دانم که آیا این مخرب است، اما فقط می خواهم مطمئن باشم.
نتایج اسکن Farbar Recovery Scan Tool (FRST) (x64) نسخه: 27-12-2021
اجرا شده توسط kubsons07 (مدیر) در DESKTOP-7J71UVT (08-01-2022:5022:01-01) ]قابل اجرا از پوشه C:Userskubsons07DesktopNowy
نمایههای بارگذاریشده: kubsons07
پلتفرم: Microsoft Windows 10 نسخه اصلی 21H1 19043.1415 (X64) مرورگر (X64)Default[01:1415(X64)Dece/
حالت بوت: عادی
===================== فرآیندها (در لیست سفید) =================
(اگر ورودی در لیست ثابت گنجانده شود، فرآیند بسته میشود. فایل منتقل نمیشود.)
(Arvato Digital Services Canada Inc -> arvato digital services llc) C:Program Files (x86) )Common FilesProtexisLicense ServicePsiService_2.exe
(Arvato Digital Services Canada Inc -> arvato digital services llc) C:Program FilesCommon FilesProtexisLicense ServicePsiService_5.9[04]( Discord Inc. -> Discord Inc.) C:ProgramDatakubsons07Discordapp-1.0.9003Discord.ex e <6>
(Electronic Arts, Inc. -> Electronic Arts) C:Program Files (x86)OriginOriginWebHelperService.exe
(Even Balance, Inc. -> ) C:WindowsSysWOWstr64. exe
(Even Balance, Inc. -> ) C:WindowsSysWOW64PnkBstrB.exe
(Intel Corporation – Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:Program Files (x86) IntelIntel Management Engine ComponentsDALjhi_service.exe
(Intel Corporation – Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:Program Files (x86)IntelIntel Management Engine ComponentsLMS LMS.exe
(Intel Corporation) [File not signed] C:Program Files (x86)IntelIntel® Security Assistisa.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsImmersiveControlPanel SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32MoUsoCoreWorker.exe]9(Microsoft. Wi ndows -> Microsoft Corporation) C:WindowsSystem32rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C: WindowsSystem32Taskmgr.exe
(Mozilla Corporation -> Mozilla Corporation) C:Program Files (x86)Mozilla Firefoxfirefox.exe <6>
(NortonLifeLock Inc. -> Broadcomes Files) C: Norton SecurityNorton SecurityEngine22.21.11.46NortonSecurity.exe <2>
(NortonLifeLock Inc. -> NortonLifeLock Inc.) C:Program FilesNorton SecurityNorton SecurityEngine22.26.c.1.
(Nvidia Corporation -> Node.js) C:Program Files (x86)NVIDIA CorporationNvNodeNVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:Program CorporationN NvContainernvcontainer.exe <3>
(Nvidia Corporation -> NVIDIA Corporation) C:Program FilesNVIDIA CorporationNVIDIA GeForce ExperienceNVIDIA Share.exe <3>
(Nvidia Corporati در -> NVIDIA Corporation) C:Program FilesNVIDIA CorporationShadowPlaynvsphelper64.exe
(Nvidia Corporation -> NVIDIA Corporation) C:WindowsSystem32DriverStoreFileRepository.b200000000000DDriverStoreFileRepository. NVDisplay.Container.exe <2>
(Oracle America, Inc. -> Oracle Corporation) C:Program Files (x86)Common FilesJavaJava Updatejusched.exe
(Realtek Semiconductor Corp -> Realtek Semicon ) C:Program FilesRealtekAudioHDARtkNGUI64.exe
(Skutta, Kristjan -> ) C:Program Files (x86)Steamsteamappscommonwallpaper_enginewallpaper35.9[04](14) Valve Corp. -> Valve Corporation) C:Program Files (x86)Common FilesSteamSteamService.exe
(Valve Corp. -> Valve Corporation) C:Program Files (x86)Steambin cefcef.win7x64steamwebhelper.exe <7>
(Valve Corp. -> Valve Corporation) C:Program Files (x86)Steamsteam.exe
============ ======== رجیستری (در لیست سفید) ===================
(اگر ورودی در لیست ثابت گنجانده شده است، مورد رجیستری به حالت پیش فرض بازیابی یا حذف می شود. فایل منتقل نخواهد شد.)
HKLM…Run: [RTHDVCPL] => C:Program FilesRealtekAudioHDARtkNGUI64.exe [8495320 2015-06-23] (Realtek Semiconductor Corp -> Realtek Semicon )
HKLM-x32…Run: [SunJavaUpdateSched] => C:Program Files (x86)Common FilesJavaJava Updatejusched.exe [706344 2021-09-27] (Oracle America, Inc. -> Oracle Corporation)
HKUS-1-5-21-2944253907-4126696763-4153681683-1001…Run: [Steam] => C:Program Files (xexete.am. [4267432 2021-12-16] (Valve Corp. -> Valve Corporation)
HKUS-1-5-21-2944253907-4126696763-4153681683-1001…Run: [19456=C)OriginOriginexe[3145920 2021-12-02] (Electronic Arts, Inc. -> Electronic Arts)
HKUS-1-5-21-2944253907-4126696763-415368101683-4153681683-41536811683-4153681683-41536811683-41536811683-1941 ] => C:ProgramDatakubsons07DiscordUpdate.exe [1512760 2020-12-03] (Discord Inc. -> GitHub)
HKUS-1-5-21-2944253907-41266967363-04 Run: [WallpaperEngine] => C:Program Files (x86)Steamsteamappscommonwallpaper_enginewal lpaper32.exe [2703520 2021-12-04] (Skutta, Kristjan -> )
HKUS-1-5-21-2944253907-4126696763-4153681683-1001…59 = C1001…59 اجرا: kubsons07AppDataLocalMicrosoftTeamsUpdate.exe [2459304 2021-12-21] (جزء برنامه شخص ثالث مایکروسافت -> شرکت مایکروسافت)
HKLM…PrintMonitorsHP E611Windows وضعیت: C: system32hpinkstsE611LM.dll [401920 2019-07-01] (Hewlett Packard -> HP Inc.)
HKLMSoftwareWow6432NodeMicrosoftActive SetupInstalled Components: [1945900->Google:x30] ChromeApplication97.0.4692.71Installerchrmstp.exe [2022-01-07] (Google LLC -> Google LLC)
===================== وظایف زمانبندی شده ( در لیست سفید) ============
(اگر ورودی در لیست ثابت گنجانده شود، از رجیستری حذف خواهد شد. فایل منتقل نمیشود مگر اینکه بهطور جداگانه فهرست شود.)
وظیفه: {026C09C6-6379-4323-88DD-5B91FE8EFA09} – System32TasksCorelUpdateHelperTaskCore => C:CUH/Program Files CUH.exe [3774160 2021-01-21] (Corel Corporation -> Corel Corporation)
وظیفه: {06CAA493-F24B-4597-906E-9D6F4CD8C2B1} – System32TasksTasksGoogleUpdatepGooglexpGooglepdateTaskM GoogleUpdate.exe [153752 2017-06-13] (Google Inc -> Google Inc.)
وظیفه: {077D1E12-5B79-468F-969A-191D2B638468} – System32TasksNorton SecurityNorton = امنیت FilesNorton SecurityNorton SecurityEngine22.21.11.46SymErr.exe [108752 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc)
وظیفه: {2526E702-F672-11-45 RemediationAntimalwareMigrationTask => C:Program FilesCommon FilesAVNorton SecurityUpgrade.exe [2353000 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
وظیفه: {33259004F3515F35F35F35F35F35F35F75F8F } – System32TasksN vTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:Program FilesNVIDIA CorporationNvBackendNvTmRep.exe [1650384 2021-11-24] (Nvidia Corporation:30B39T19:Nvidia 30B390394-5953939393939-39903939-59239-59) -9D9E-2367A600B259} – System32TasksMozillaFirefox Default Browser Agent E7CF176E110C211B => C:Program Files (x86)Mozilla Firefoxdefault-browser-agent.exe:7T-browser-agent.exe7T1B017Task. 3C53A03A-1174-4273-B0FA-985F1B545935} – System32TasksNvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5C3-BAEC-A80AA35AC5BC-A80AA35AC5B8 -System32TasksNvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5Cor. > NVIDIA Corporation)
وظیفه: {408C8BAF-F318-4E4E-B76F-1E7BC3C3D9F8} – System32TasksNorton SecurityNorton Security Error Processor => C:Program FilesNorton2 Securityng. 11.46SymErr.exe [108752 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc)
وظیفه: {594895E5-92E1-4807-9E23-238E39BE432TW4318} یکپارچه سازیN-Sc gram FilesNorton SecurityNorton SecurityEngine22.21.11.46WSCSTub.exe [646520 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
وظیفه: {643B9DC1-A7E-A29E TasksPostponeDeviceSetupToast_S-1-5-21-2944253907-4126696763-4153681683-1001_1 => {5ded83ef-1e99-48cf-bf83-676d-bf83-676d20001-1-1-1-1-1-1-1-1-2944253907-4126696763 Microsoft Corporation)
وظیفه: {6E4A689C-3563-4FC4-8D14-19672D55139F} – System32TasksNvProfileUpdaterDaily_{B2FE1952-0186-46C3 =B2FE1952-0186-46C3:P2FE1952-0186-46C3:C32FE1952-0186-46C3: NvProfileUpdater64.exe [904904 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
وظیفه: {805B9DAE-9DC5-4BD0-B087-6E223094DE04} – SystemNton>AutogramNVorTonSecurityTon SecurityNorton SecurityEngine22.21.11.46SymErr.exe [108752 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc)
وظیفه: {A736C766-DDCC-4153-38BA141-DDCC-4153-38BA141} pdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:Program FilesNVIDIA CorporationUpdate CoreNvProfileUpdater64.exe [904904 2021-11-24] (Nvidia Corporation:49T8:NVI19-490419:NVIDIA 19459041) (Nvidia 8-5-8-19) 4EE2-817A-3A2A740EF396} – System32TasksCorelUpdateHelperTask-45CC80C6D416E0FEF8DDDF9C309D17D0 => C:Program Files (x86)[CorelCUH5Corel{BD88C28E-7CAE-47CE-A3E9-7996B30947C5}-System32TasksNvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=>C:NoprogramCorporationNx(NvidiaCorporation->NVIDIACorporation)
وظیفه: {C570DEA7-F659-442B-9055-0112C78A19AA} – System32TasksNvTmRep_CrashReport2_{B2-0FE18-CrashReport2_{2-0FE19-CrashReport2_{2-0100000000F15CF15-196-1966. CorporationNvBackendNvTmRep.exe [1650384 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
وظیفه: {C7409BFD-FADC-40E3-B141-3546F119A321DickSystemUV11DVD -Rick {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe [903024 2021-11-16] (NVIDIA Corporation -> NVIDIA Corporation:>Program" ->Fila شرکت nvdriverupdatecheck "-l 3 -f c: programdata nvidia nvcontainerdriverupdatecheck.log
Task: {D1CD397F-D51D-4F81-B479-79A2CDBF8862} – System32 Tasks nvtmrep_crashreport3_ {B2FE1952-0186-46C3-BAEC- A80AA35AC5B8} => C:Program FilesNVIDIA CorporationNvBackendNvTmRep.exe [1650384 2021-11-24] (Nvidia Corporation -> NVIDIA Corporation)
وظیفه: {D42161FF8-8903C NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:Program FilesNVIDIA CorporationNVIDIA GeForce ExperienceNVIDIA GeForce ExperienceNVIDIA GeForce Experience.exe) : {DF26F89F-54B9-49E1-8760-798A296A3D1C} – System32TasksGoogleUpdateTaskMachineUA => C:Program Files (x86)GoogleUpdateGoogleUpdate.exe [194590G] e Inc -> Google Inc.)
(اگر ورودی در لیست رفع اشکال گنجانده شود، فایل کار (job.) منتقل خواهد شد. فایلی که توسط کار اجرا می شود منتقل نمی شود.)
==================== اینترنت (در لیست سفید) ========== ===========
(اگر موردی در لیست اصلاحی گنجانده شود، اگر یک مورد رجیستری باشد حذف میشود یا به حالت پیشفرض بازیابی میشود.)
TcpipParameters: [DhcpNameServer] 192.168.31.1. نمایه: C:Userskubsons07AppDataLocalMicrosoftEdgeUser DataDefault [2021-12-23]
FireFox:
=========
FF33 DefaultProfile3. 1523276245035
FF ProfilePath: C:Userskubsons07AppDataRoamingMozillaFirefoxProfilesaq3w9l33.default-1523276245035 -1523276245035 [19659-1523276245035-1523276245035-1523276245035-1523276245035-1523276245035wwwgooglecom
افزونه FF: (جستجوی ایمن Norton) – C:Userskubsons07AppDataRoamingMozillaFirefoxProfilesaq3w9l33.default-1523276245035Extensionsafesearch_uton [email protected] [2022-01-06] [UpdateUrl:hxxps://static.nortoncdn.com/idscp/firefox/nsss/ds_modified/updates.json]
افزونه FF: (UBlock Origin) – C:Userskubsons07AppDataRoamingMozillaFirefoxProfilesaq3w9l33.default-15232762445035 [2021-12-27]
افزونه FF: (دریای روشن) – C:Userskubsons07AppDataRoamingMozillaFirefoxProfilesaq3w9l33.default-1523276245035Extensions{124ac69-38-124ac69-39-124ac69-39-124ac69-39-124ac69-200-124. 19659029]افزونه FF: (NoScript) – C:Userskubsons07AppDataRoamingMozillaFirefoxProfilesaq3w9l33.default-1523276245035Extensions{750500000000000000000000000000000. برنامه افزودنی FF: (رنگین کمان تاری) – C:Userskubsons07AppDataRoamingMozillaFirefoxProfilesaq3w9l33.default-1523276245035Extensions{7477ce-5973-4efe.7477ce-5973. برنامه افزودنی: (Adblock Plus – darmowy adblocker) – C:Userskubsons07AppDataRoamingMozillaFirefoxProfilesaq3w9l33.default-1523276245035Extensions{d10d5b5-8-8-2006. ]افزونه FF: @java.com/DTPlugin,version=11 0.311.2 -> C:Program FilesJavajre1.8.0_311bindtpluginnpDeployJava1.dll [2021-10-22] (Oracle America, Inc. -> Oracle Corporation)
افزونه FF: @javalu.com ,version=11.311.2 -> C:Program FilesJavajre1.8.0_311binplugin2npjp2.dll [2021-10-22] (Oracle America, Inc. -> Oracle Corporation)
FF2 Plugin-x3 @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:Program Files (x86)IntelIntel® Management Engine ComponentsIPTnpIntelWebAPIIPT.dll [2015-04-21] (Intel® Identity Protection نرمافزار فناوری -> شرکت اینتل)
افزونه FF-x32: @intel-webapi.intel.com/بهروزرسانیکننده WebAPI Intel -> C:Program Files (x86)IntelIntel® Management Engine ComponentsIPTnpIntelWebAPIUpdater. dll [2015-04-21] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.311.2 -> C:Program Files (x86)Javajre1 .8.0_311bindtpluginnpDeployJava1.dll [2021-10-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.311.2 -> C:Program Files (x86)Javajre1.8.0_311binplugin2npjp2.dll [2021-10-22] Americacle (Oracle , Inc. -> Oracle Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:Program Files (x86)VideoLANVLCnpvlc.dll [2021-06-18] ( VideoLAN -> VideoLAN)
Chrome:
=======
نمایه CHR: C:Userskubsons07AppDataLocalGoogleChromeUser DataDefault [2021-12-05]
: پیشفرض -> hxxps://www.youtube.com
برنامه افزودنی CHR: (منبع uBlock) – C:Userskubsons07AppDataLocalGoogleChromeUser DataDefaultExtensionscjpalhdlnbhcmphamejd [39i99] برنامه افزودنی CHR: (NoScript) – C:Userskubsons07AppDataLocalGoogleChromeUser DataDefaultExtensionsdoojmbjmlfjjnbmnoijecmcbfeoakpjm [2021-12-02]
CHR Extension: (PłieStore) CHR: (Płiesskno) kubsons07AppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2021-08-29]
CHR Profile e: C:Userskubsons07AppDataLocalGoogleChromeUser DataGuest Profile [2020-06-03]
نمایه CHR: C:Userskubsons07AppDataLocalGoogleChromeUser DataSystem Profile [196593]CHR HKLM…ChromeExtension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] – C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46ExtsChrome.crx
CHR HKLM-x32… ChromeExtension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] – C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46ExtsChrome.crx
=========== ======== خدمات (در لیست سفید) ===================
(اگر ورودی در لیست ثابت گنجانده شود، از فهرست حذف خواهد شد ثبت. فایل منتقل نخواهد شد مگر اینکه به طور جداگانه فهرست شود.)
S3 BEService; C:Program Files (x86)Common FilesBattlEyeBEService.exe [8901968 2021-06-19] (BattlEye Innovations e.K. -> )
S3 EasyAntiCheat; C:Program Files (x86)EasyAntiCheatEasyAntiCheat.exe [803440 2021-10-24] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S3 EpicOnlineServices; C:Program Files (x86)Epic GamesEpic Online ServicesserviceEpicOnlineServicesHost.exe [16029472 2021-11-29] (Epic Games Inc. -> Epic Games, Inc.)
S3 EQU8_19; C:ProgramDataEQU8Totally Accurate Battlegroundsbinanticheat.x64.equ8.exe [8359056 2021-12-05] (Int3 Software AB -> Int3 Software AB)
R3 Intel® Security Assist; C:Program Files (x86)IntelIntel® Security Assistisa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:Program Files (x86)IntelIntel® Security AssistisaHelperService.exe [7680 2015-05-19] () [File not signed]
R2 NortonSecurity; C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46NortonSecurity.exe [343336 2021-12-13] (NortonLifeLock Inc. -> Broadcom)
R2 nsWscSvc; C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46nsWscSvc.exe [1059176 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
S4 Origin Client Service; C:Program Files (x86)OriginOriginClientService.exe [2559704 2021-12-02] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:Program Files (x86)OriginOriginWebHelperService.exe [3477728 2021-12-02] (Electronic Arts, Inc. -> Electronic Arts)
R2 PnkBstrA; C:WINDOWSSysWOW64PnkBstrA.exe [76888 2022-01-02] (Even Balance, Inc. -> )
R2 PnkBstrB; C:WINDOWSSysWOW64PnkBstrB.exe [281688 2022-01-05] (Even Balance, Inc. -> )
R2 PSI_SVC_2; C:Program Files (x86)Common FilesProtexisLicense ServicePsiService_2.exe [277360 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc)
R2 PSI_SVC_2_x64; C:Program FilesCommon FilesProtexisLicense ServicePsiService_2.exe [337776 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc)
S3 Rockstar Service; C:Program FilesRockstar GamesLauncherRockstarService.exe [2017072 2021-11-17] (Rockstar Games, Inc. -> Rockstar Games)
S3 WdNisSvc; C:Program FilesWindows DefenderNisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:Program FilesWindows DefenderMsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:WINDOWSSystem32DriverStoreFileRepositorynv_dispi.inf_amd64_642e50d7b66aa2a4Display.NvContainerNVDisplay.Container.exe -s NVDisplay.Container% -S NVDisplay.Container%VOgram. WINDOWSSystem32DriverStoreFileRepositorynv_dispi.inf_amd64_642e50d7b66aa2a4Display.NvContainerpluginsLocalSystem -r -p 30000 -cfg NVDistainer==00000 -cfg NVDisplay=6=0=S5=0=S1=4=0=S1=4=S5=0=Se1=4=0=S1=0=S1=0=System. ===== درایورها (در لیست سفید) ===================
(اگر ورودی در لیست ثابت گنجانده شود، از رجیستری حذف خواهد شد. فایل منتقل نخواهد شد مگر اینکه به طور جداگانه فهرست شود.)
R1 BHDrvx64; C:Program FilesNorton SecurityNorton SecurityNortonData22.20.2.57DefinitionsBASHDefs20220106.011BHDrvx64.sys [2018784 2021-09-15] (Microsoft Windows Hardware Compatibility Publisher -19Broad)[0>94BroadCombatibility)C:WINDOWSSystem32driversBthA2dpsys[279040 2020-10-12] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:WINDOWSSystem32driversbthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R1 ccSet_NGC; C:WINDOWSSystem32driversNGCx6416150B0.02EccSetx64.sys [192256 2021-12-13] (Symantec Corporation -> Symantec Corporation)
S3 CorsairGamingAudioService; C:WindowsSystem32driversCorsairGamingAudio64.sys [60312 2021-01-11] (ناشر سازگاری سخت افزار ویندوز مایکروسافت -> Corsair Memory, Inc.)
R1 eeCtrl; C:Program Files (x86)Common FilesSymantec SharedEENGINEeeCtrl64.sys [509904 2021-11-10] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom)
R3 EraserUtilRebootDrv; C:Program Files (x86)Common FilesSymantec SharedEENGINEEraserUtilRebootDrv.sys [145376 2021-12-07] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom)
S3 Hamachi; C:WINDOWSsystem32DRIVERSHamdrv.sys [45680 2019-04-02] (ناشر سازگاری سخت افزار مایکروسافت ویندوز -> LogMeIn Inc.)
R1 IDSVia64; C:Program FilesNorton SecurityNorton SecurityNortonData22.20.2.57DefinitionsIPSDefs20220107.061IDSvia64.sys [1480144 2021-09-28] (Microsoft Windows Hardware Compatibility Publisher -109S39S35 Com) C:WINDOWSSystem32driversLarmkanal.sys [33112 2015-09-02] (ADORIASOFT LLC -> Adoriasoft LLC)
S3 logi_joy_bus_enum; C:WINDOWSsystem32driverslogi_joy_bus_enum.sys [38136 2020-02-18] (Logitech Inc -> Logitech)
S3 logi_joy_vir_hid; C:WINDOWSsystem32driverslogi_joy_vir_hid.sys [26672 2020-08-10] (Logitech Inc -> Logitech)
S3 logi_joy_xlcore; C:WINDOWSsystem32driverslogi_joy_xlcore.sys [66808 2020-02-18] (Logitech Inc -> Logitech)
S3 nsvst_NGC; C:WINDOWSSystem32driversNGCx6416150B0.02Ensvst.sys [56080 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
R3 nvvad_WaveExtens C:WINDOWSsystem32driversnvvad64v.sys [48552 2021-11-01] (ناشر سازگاری سختافزار Microsoft Windows -> NVIDIA Corporation)
S3 Phosgene; C:WINDOWSsystem32DRIVERSPhosgene.sys [34136 2015-09-02] (ADORIASOFT LLC -> Adoriasoft LLC)
R0 pwdrvio; C:WINDOWSSystem32pwdrvio.sys [19152 2013-09-30] (MiniTool Solution Ltd -> )
S3 pwdspio; C:Windowssystem32pwdspio.sys [12504 2013-09-30] (MiniTool Solution Ltd -> )
S3 RzCommon; C:WINDOWSSystem32driversRzCommon.sys [51776 2020-02-17] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_021e; C:WINDOWSSystem32driversRzDev_021e.sys [52288 2020-02-17] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_0306; C:WINDOWSSystem32driversRzDev_0306.sys [52504 2020-02-17] (Razer USA Ltd. -> Razer Inc)
R3 SRTSP; C:WINDOWSSystem32driversNGCx6416150B0.02ESRTSP64.SYS [892600 2021-12-13] (ناشر سازگاری سخت افزار ویندوز مایکروسافت -> Broadcom)
R1 SRTSPX; C:WINDOWSSystem32driversNGCx6416150B0.02ESRTSPX64.SYS [48824 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom)
S3 sshid; C:WINDOWSSystem32driverssshid.sys [48040 2018-09-25] (SteelSeries ApS -> SteelSeries ApS)
S3 ssudmdm; C:WINDOWSsystem32DRIVERSssudmdm.sys [166760 2019-09-26] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 SteamStreamingMicrophone; C:WINDOWSsystem32driversSteamStreamingMicrophone.sys [40736 2017-07-28] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:WINDOWSsystem32driversSteamStreamingSpeakers.sys [40736 2017-07-21] (Valve Corp. -> )
R0 SymEFASI; C:WINDOWSSystem32driversNGCx6416150B0.02ESYMEFASI64.SYS [2030768 2021-12-13] (ناشر سازگاری سخت افزار ویندوز مایکروسافت -> Broadcom)
S0 SymELAM; C:WINDOWSSystem32driversNGCx6416150B0.02ESymELAM.sys [31984 2021-12-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Broadcom Corporation)
R3 SymEvent; C:WINDOWSsystem32DriversSYMEVENT64x86.SYS [93152 2021-08-04] (ناشر سازگاری سخت افزار ویندوز مایکروسافت -> Broadcom)
R3 SymEvnt; C:Program FilesNorton SecurityNorton SecurityNortonData22.20.2.57SymPlatformSymEvnt.sys [712432 2021-07-13] (Symantec Corporation -> Symantec Corporation)
R1 SymIRON; C:WINDOWSSystem32driversNGCx6416150B0.02EIronx64.SYS [319152 2021-12-13] (ناشر سازگاری سخت افزار ویندوز مایکروسافت -> Broadcom)
R1 SymNetS; C:WINDOWSSystem32driversNGCx6416150B0.02Esymnets.sys [575344 2021-12-13] (Symantec Corporation -> Symantec Corporation)
R3 tap0901; C:WINDOWSSystem32driverstap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> پروژه OpenVPN)
S3 tapnordvpn; C:WINDOWSSystem32driverstapnordvpn.sys [44896 2018-07-24] (TEFINCOM S.A. -> The OpenVPN Project)
S2 vcs; C:Program Files (x86)Common FilesAvnexvcs64.sys [4096 2017-07-15] () [File not signed]
R3 VCSVADHWSer; C:WINDOWSSystem32driversvcsvad.sys [29320 2015-10-01] (AVSOFT CORP. -> AVSOFT Corp.)
S3 VOICEMOD_Driver; C:WINDOWSsystem32driversvmdrv.sys [45408 2018-03-15] (Voicemod Sociedad Limitada -> Windows ® Win 7 DDK provider)
S3 WdBoot; C:WINDOWSsystem32driversWdBoot.sys [46688 2019-12-07] (ناشر ضد بدافزار راه اندازی اولیه مایکروسافت ویندوز -> شرکت مایکروسافت)
S3 WdFilter; C:WINDOWSsystem32driversWdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:WINDOWSSystem32DriversWdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 wpCtrlDrv_NGC; C:WINDOWSSystem32driversNGCx6416150B0.02EwpCtrlDrv.sys [1015760 2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
S3 equ8_helper; ??C:WINDOWSsystem32DRIVERSequ8_helper.sys [X]
S3 EQU8_HELPER_19; ??C:WINDOWSsystem32DRIVERSEQU8_HELPER_19.sys [X]
===================== NetSvcs (فهرست سفید) ==== ===============
(اگر ورودی در لیست اصلاحی گنجانده شود، از رجیستری حذف خواهد شد. فایل منتقل نخواهد شد مگر اینکه به طور جداگانه فهرست شود.)
===================== یک ماه (ایجاد شده) (در لیست سفید) =========
(اگر ورودی در لیست ثابت گنجانده شده باشد، فایل/پوشه منتقل خواهد شد.)
2022-01-08 22:54 – 2022-01-08 22:55 – 000000000 ____D C:Userskubsons07DesktopNowy folder20-20-19[04] 08 12:03 – 2022-01-08 12:03 – 000000000 ____D C:WINDOWSsystem32TasksRemediation
2022-01-07 13:08 – 13:08 – 1-_02 – 2022 – 1-02 :Userskubsons07DesktopPortal Stories Mel.url
2022-01-06 12:59 – 2022-01-06 12:59 – 000004040 ______ C:WINDOWS1-Toastssy -21-2944253907-4126696763-4153681683-1001_1
2022-01-05 19:04 – 2022-01-05 19:04 – 0000000D LocalMy Games
2022-01-04 19:52 – 2022-01-04 19:52 – 000000219 _____ C:Userskubsons07DesktopLeft 4 Dead.url20-20-20-14 10:55 – 2022-01-03 10:55 – 000025260 _____ C:Userskubsons07AppDataLocalrecently-used.xbel
2022-01-03 10:49-10:49 10:49-01-03 37 – 000000185 _____ C:Userskubsons07DesktopHalf-Life Blue Shift.url
2022-01-03 09:42 – 2022-01-03 09:42 – 2022-01-03 09:42 – 09:42 – 09:42_01-01-03 09:42 – 09:42 – 09:42 – 09:42_01-01-01: DesktopHalf-Life Opposing Force.url
2022-01-02 19:22 – 2022-01-02 20:06 – 000000000 ____D C:Userskubsons07AppData/AppData/Userskubsons07[1-4-205/19:22-01-0219:22-01-0218:17-2022-01-0218:17-000000000____DC:Userskubsons07AppDataLocalPunkBuster
2022-01-02-02-1201 – 18:02 – 000281688 _____ C:WINDOWSSysWOW64PnkBstrB.exe
2022-01-02 18:12 – 2022-01-02 18:12 – 000076888 18:12 – 000076888 18:12 – 000076888 18:12 – 000076888 000076888 18:12 – 000076888 18:12 – 000076888 18:12 – 000076888 C -01-02 17:44 – 2022-01-02 17:44 – 000000222 _____ C:Userskubsons07DesktopFar Cry® 3.url
202 1-12-30 20:13 – 2021-12-30 20:13 – 000000000 ____D C:Userskubsons07AppDataLocalRocket League
2021-12-1212 – 2026 – 12-12-20: 20:21 – 000000219 _____ C:Userskubsons07DesktopHalf-Life 2 Deathmatch.url
2021-12-24 18:26 – 2021-12-24 – C_002: kubsons07DocumentsMirrors Edge Catalyst
2021-12-24 18:02 – 2021-12-24 18:02 – 000000223 _____ C:Userskubsons07. 12-23 22:06 – 2021-12-23 22:06 – 000000000 ____D C:Userskubsons07AppDataLocalHaloInfinite
2021-12-251 – 220-221: – 000000220 _____ C:Userskubsons07DesktopPlants vs. Zombies. kubsons07AppDataLocalLowAnuman Interactive
2021-12-23 20:34 – 2021-12-23 20:34 – 000000222 _____ C:Userskubsons 7-07/Desk -23 19:01 – 2021-12-23 19:01 – 000000222 _____ C:Userskubsons07Deskto pThe Binding of Isaac Rebirth.url
2021-12-22 08:40 – 2021-12-22 08:40 – 000000000 ____D C:Userskubsons07Userskubsons07AppData/AppDataN19-2014/19-20-12-12-22-22 08:40 -22 08:25 – 2022-01-08 17:22 – 000000000 ____D C:WINDOWSsystem32TasksNorton Security
2021-12-08 08:24 – 2020-8-20201 یکپارچه سازی WSC
2021-12-21 08:55 – 2021-12-21 08:55 – 000000000 ____D C:WINDOWSsystem32TasksMozilla[1945901-1945201-1945201-201-201-1945901-1945901-1945901-201-201-20201-2021-2021-2021-2021-2021-2021-2021-19459001-2020-2020-2008:02-000000000____DC:ProgramFiles(x86)MozillaFirefox
2021-12-18 23:52 – 2021-12-18 23:52 – 0000_U 000023 Halo Infinite.url
2021-12-18 19:03 – 2021-12-18 19:03 – 000000220 _____ C:Userskubsons07DesktopStar Wars Battlefront,49,491201. ]2021-12-17 17:10 – 2021-12-17 17:10 – 000057979 _____ C:Users kubsons07DownloadsInstagram_zastosowanie_soli.pdf
2021-12-16 23:51 – 2021-12-16 23:51 – 000000000 ____D C:WINDOWS 201-201-201-1-1-1-1-1-000000 ____D C:WINDOWS 201-201-16 12-16 16:49 – 000000000 ____D C:Userskubsons07AppDataLocaltechland
2021-12-16 16:39 – 2021-12-16 16:39 – 2021-12-16 16:021 – 16:0239 – 16:02-12-16:02-16:39 – 16:02 – 16:39 – DownloadsPraca dodatkowa-sole.pdf
2021-12-16 16:08 – 2021-12-16 16:08 – 000011979 _____ C:WINDOWSsystem32th[1-20-2001-2001-16-16-16-16-16-20-10-10-20-10-00:00:0016:07-2021-12-1616:07-000223744_____C:WINDOWSSysWOW64TpmToolexe
2021-12-16 16:06 – 2016 – 2011_06: WINDOWSsystem32TpmTool.exe
2021-12-16 16:06 – 2021-12-16 16:06 – 000162816 _____ C:WINDOWSsystem32[12-12-12-14-14-14-16-16-16-16-2021-16-12-2021DataStoreolC:58-2021-12-1614:58-000000000___HDC:$WinREAgent
2021-12-14 21:28 – 2021-12-14 21:28 – 000000000 – 21:28 – 01:28 – 01:28 – 0000 VVVVVV.url
2021-12-14 17:15 – 2021-12-14 17:15 – 000000222 _____ C:Userskubsons07DesktopCall of Juarez Gunslinger.url
2021-12-13 18:31 – 2021-12-13 18:31 – 000003592 _____STaports. -S-1-5-21-2944253907-4126696763-4153681683-1001
2021-12-11 13:35 – 2021-12-11 13:35 – 13:35 – 000000000012012121201211212012:13:30 – 13:35 – 0030000000000000. url
2021-12-10 15:59 – 2021-12-10 15:59 – 000000000 ____D C:Userskubsons07DocumentsGTA San Andreas User Files:[194251201-194251000] 2021-12-10 15:25 – 000000000 ____D C:UsersPublicDocumentsGTA San Andreas User Files
===================== یک ماه (اصلاح شده) =================
(اگر ورودی در لیست اصلاحی گنجانده شود، فایل/پوشه منتقل خواهد شد.)
2022-01- 08 23:00 – 2020-11-15 02:37 – 000000000 ____D C:FRST
2022-01-08 22:58 – 2017-09-13 16:0_36_Ubs 000 AppDataRoamingdiscord
2022-01-08 22:53 – 2017-06-14 18:39 – 000000000 ____D C:Program Files (x86)Steam
2022-01-08 22:3 0 – 2019-12-07 10:14 – 000000000 ____D C:ProgramDataregid.1991-06.com.microsoft
2022-01-08 22:18 – 2017-06-13 10:28 – 000000000 ____D C:Program Files (x86)Google
2022-01-08 20:39 – 2020-10-12 17:09 – 000000000 ____D C:WINDOWSsystem32SleepStudy
2022-01-08 19:07 – 2017-06-13 10:22 – 000000000 ____D C:ProgramDataNVIDIA
2022-01-08 16:35 – 2017-06-14 16:11 – 000000000 ____D C:Userskubsons07AppDataLocalLowMozilla
2022-01-08 13:44 – 2021-05-19 15:03 – 000003344 _____ C:WINDOWSsystem32TasksCorelUpdateHelperTask-45CC80C6D416E0FEF8DDDF9C309D17D0
2022-01-08 11:50 – 2020-12-20 23:44 – 000002455 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsMicrosoft Edge.lnk
2022-01-08 11:50 – 2019-12-07 10:14 – 000000000 ___HD C:Program FilesWindowsApps
2022-01-08 11:50 – 2019-12-07 10:14 – 000000000 ____D C:WINDOWSAppReadiness
2022-01-07 07:55 – 2017-06-13 10:28 – 000002314 _____ C:ProgramDataMic rosoftWindowsStart MenuProgramsGoogle Chrome.lnk
2022-01-06 20:23 – 2019-12-07 10:03 – 000032768 _____ C:WINDOWSsystem32configELAM
2022-01-05 18:47 – 2017-11-07 20:13 – 000281688 _____ C:WINDOWSSysWOW64PnkBstrB.xtr
2022-01-05 18:40 – 2017-11-07 20:09 – 000281688 _____ C:WINDOWSSysWOW64PnkBstrB.ex0
2022-01-05 18:38 – 2018-04-21 10:26 – 000000000 ____D C:Userskubsons07AppDataLocalUbisoft Game Launcher
2022-01-05 14:56 – 2021-12-03 17:18 – 000000000 ____D C:Userskubsons07AppDataRoamingvlc
2022-01-04 12:55 – 2021-01-03 15:56 – 000000000 ____D C:Userskubsons07AppDataLocalGeometryDash
2022-01-04 09:05 – 2018-05-15 19:19 – 000000000 ____D C:Userskubsons07AppDataLocalPlaceholderTileLogoFolder
2022-01-03 20:39 – 2019-12-07 10:14 – 000000000 ____D C:WINDOWSLiveKernelReports
2022-01-03 10:58 – 2021-11-30 12:40 – 000000000 ____D C:Userskubsons07DesktopSchool
2022-01-03 10:58 – 2019-03-30 22:04 – 000000000 ___RD C:Userskubsons07DesktopTools
2022-01-03 10:58 – 2019-03-30 22:03 – 000000000 ____D C:Userskubsons07DesktopGames Stuff
2022-01-03 10:57 – 2019-12-08 16:52 – 000000000 ____D C:Userskubsons07Desktopsome bleep
2022-01-03 10:55 – 2020-10-30 12:51 – 000000000 ____D C:Userskubsons07AppDataLocalbabl-0.1
2022-01-03 10:55 – 2017-07-28 22:24 – 000000000 ____D C:Userskubsons07AppDataLocalgtk-2.0
2022-01-02 18:17 – 2018-05-16 16:33 – 000000000 ____D C:Userskubsons07AppDataLocalD3DSCache
2022-01-02 18:17 – 2017-08-28 10:39 – 000000000 ____D C:Userskubsons07DocumentsMy Games
2022-01-02 01:31 – 2018-01-10 19:03 – 000000000 ____D C:Userskubsons07AppDataRoamingaudacity
2022-01-01 05:33 – 2020-10-12 17:15 – 000000000 ____D C:Userskubsons07
2022-01-01 05:29 – 2020-11-27 19:37 – 000000000 ____D C:Userskubsons07AppDataLocalBattle.net
2022-01-01 01:45 – 2019-06-02 10:55 – 000000000 ____D C:Userskubsons07AppDataRoaming.minecraft
2021-12-31 23:55 – 2017-06-15 09:43 – 000000000 ____D C:Userskubsons07AppDataLocalCrashDumps
2021-12-30 20:12 – 2021-10-27 18:31 – 000000000 ____D C:Userskubsons07AppDataLocalEpic Games
2021-12-30 18:52 – 2020-05-29 21:26 – 000000000 ____D C:Userskubsons07DocumentsThe Escapists
2021-12-27 14:23 – 2017-10-10 17:58 – 000000000 ____D C:Userskubsons07AppDataLocalLowUnity
2021-12-26 20:22 – 2017-08-19 20:16 – 000000000 ____D C:Userskubsons07AppDataRoamingOrigin
2021-12-26 20:22 – 2017-08-19 19:26 – 000000000 ____D C:ProgramDataOrigin
2021-12-26 20:18 – 2017-08-19 20:16 – 000000000 ____D C:Userskubsons07AppDataLocalOrigin
2021-12-26 19:14 – 2017-08-24 17:04 – 000000000 ____D C:Userskubsons07AppDataLocalUnrealEngine
2021-12-25 18:48 – 2017-08-19 19:26 – 000000000 ____D C:Program Files (x86)Origin
2021-12-24 16:27 – 2019-12-07 10:13 – 000000000 ____D C:WINDOWSINF
2021-12-22 15:59 – 2016-10-07 02:27 – 000000000 __RHD C:UsersPublicAccountPictures
2021-12-22 09:09 – 2017-06-26 19:29 – 000000000 ____D C:Program FilesCommon FilesAV
2021-12-22 08:40 – 2017-06-14 18:09 – 000000000 ____D C:ProgramDataNorton
2021-12-22 08:28 – 2018-07-11 15:28 – 000000000 ____D C:ProgramDataPackages
2021-12-22 08:28 – 2018-01-20 22:55 – 000000000 ____D C:Userskubsons07AppDataLocalPackages
2021-12-22 08:24 – 2019-07-21 17:17 – 000000000 ____D C:WINDOWSsystem32DriversNGCx64
2021-12-21 11:10 – 2017-12-06 22:22 – 000000000 ____D C:Userskubsons07AppDataRoamingMMFApplications
2021-12-21 09:27 – 2021-11-03 14:49 – 000002395 _____ C:Userskubsons07AppDataRoamingMicrosoftWindowsStart MenuProgramsMicrosoft Teams.lnk
2021-12-21 09:27 – 2021-11-03 14:49 – 000002387 _____ C: Userskubsons07DesktopMicrosoft Teams.lnk
2021-12-21 08:55 – 2017-06-13 10:27 – 000001239 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsFirefox.lnk
2021-12-17 20:02 – 2021-07-19 23:30 – 000000000 ____D C:Userskubsons07AppDataLocalLowNorton
2021-12-17 14:04 – 2020-10-12 17:28 – 001758684 _____ C:WINDOWSsystem32PerfStringBackup.INI
2021-12-17 14:04 – 2019-12-07 16:08 – 000780534 _____ C:WINDOWSsystem32perfh015.dat
2021-12-17 14:04 – 2019-12-07 16:08 – 000151102 _____ C:WINDOWSsystem32perfc015.dat
2021-12-17 14:00 – 2017-06-13 10:27 – 000000000 ____D C:Program Files (x86)Mozilla Maintenance Service
2021-12-17 13:57 – 2020-10-12 17:24 – 000000006 ____H C:WINDOWSTasksSA.DAT
2021-12-17 13:57 – 2020-10-12 17:09 – 000008192 ___SH C:DumpStack.log.tmp
2021-12-16 23:57 – 2019-12-07 10:03 – 000524288 _____ C:WINDOWSsystem32configBBI
2021-12-16 23:55 – 2020-10-12 17:09 – 000320520 _____ C:WINDOWSsystem32FNTCACHE.DAT
2021-12-16 23:52 – 2019-12-07 10:14 – 000000000 ____D C:WINDOWSSystemResources
2021-12-16 23:52 – 2019-12-07 10:14 – 000000000 ____D C:WINDOWSsystem32setup
2021-12-16 23:52 – 2019-12-07 10:14 – 000000000 ____D C:WINDOWSsystem32oobe
2021-12-16 23:52 – 2019-12-07 10:14 – 000000000 ____D C:WINDOWSsystem32lv-LV
2021-12-16 23:52 – 2019-12-07 10:14 – 000000000 ____D C:WINDOWSsystem32lt-LT
2021-12-16 23:52 – 2019-12-07 10:14 – 000000000 ____D C:WINDOWSsystem32et-EE
2021-12-16 23:52 – 2019-12-07 10:14 – 000000000 ____D C:WINDOWSsystem32es-MX
2021-12-16 23:51 – 2019-12-07 10:14 – 000000000 ___RD C:WINDOWSImmersiveControlPanel
2021-12-16 23:51 – 2019-12-07 10:14 – 000000000 ____D C:WINDOWSProvisioning
2021-12-16 23:51 – 2019-12-07 10:14 – 000000000 ____D C:WINDOWSbcastdvr
2021-12-16 19:32 – 2021-10-15 11:04 – 000000000 ____D C:WINDOWSMinidump
2021-12-16 16:16 – 2019-12-07 10:03 – 000000000 ____D C:WINDOWSCbsTemp
2021-12-16 14:55 – 2017-06-15 17:39 – 000000000 ____D C:WINDOWSsystem32MRT
2021-12-16 14:50 – 2017-06-15 17:39 – 137938848 ____C (Microsoft Corporation) C:WINDOWSsystem32MRT.exe
2021-12-15 17:43 – 2021-08-13 13:38 – 000000000 ____D C:Userskubsons07AppDataLocalRockstar Games
2021-12-14 21:27 – 2021-11-30 12:49 – 000000222 _____ C:Userskubsons07DesktopDARK SOULS™ III.url
2021-12-14 21:27 – 2020-04-28 17:29 – 000000221 _____ C:Userskubsons07DesktopBorderlands 2.url
2021-12-14 17:15 – 2021-11-30 11:35 – 000000222 _____ C:Userskubsons07DesktopFortress Forever.url
2021-12-14 17:13 – 2019-03-30 22:03 – 000000000 ____D C:Userskubsons07DesktopRecords
2021-12-13 18:31 – 2020-10-12 17:24 – 000003388 _____ C:WINDOWSsystem32TasksOneDrive Standalone Update Task-S-1-5-21-2944253907-4126696763-41536 81683-1001
2021-12-13 18:31 – 2020-10-12 17:15 – 000002446 _____ C:Userskubsons07AppDataRoamingMicrosoftWindowsStart MenuProgramsOneDrive.lnk
2021-12-10 16:50 – 2017-06-14 17:57 – 000000000 ___HD C:Program Files (x86)InstallShield Installation Information
2021-12-10 16:49 – 2021-11-26 15:02 – 000000000 ____D C:Userskubsons07AppDataLocalmodloader
2021-12-10 16:49 – 2021-11-26 15:02 – 000000000 ____D C:ProgramDatamodloader
2021-12-10 15:26 – 2017-09-22 15:14 – 000000000 ____D C:Userskubsons07AppDataLocalElevatedDiagnostics
2021-12-09 00:52 – 2020-12-20 23:44 – 000003510 _____ C:WINDOWSsystem32TasksMicrosoftEdgeUpdateTaskMachineUA
2021-12-09 00:52 – 2020-12-20 23:44 – 000003386 _____ C:WINDOWSsystem32TasksMicrosoftEdgeUpdateTaskMachineCore
==================== Files in the root of some directories ========
2020-11-04 22:18 – 2021-01-29 15:23 – 000000015 _____ () C:Userskubsons 07AppDataRoamingobs-virtualcam.txt
2020-06-05 12:14 – 2020-06-05 12:14 – 000000000 _____ () C:Userskubsons07AppDataLocaloobelibMkey.log
2022-01-03 10:55 – 2022-01-03 10:55 – 000025260 _____ () C:Userskubsons07AppDataLocalrecently-used.xbel
2021-11-09 17:26 – 2021-11-09 17:26 – 000007602 _____ () C:Userskubsons07AppDataLocalResmon.ResmonCfg
2021-07-03 09:02 – 2021-07-03 09:02 – 000000000 _____ () C:Userskubsons07AppDataLocal{DA5824DB-FA14-4EB0-8D86-9EBAFB8A2473}
2021-07-03 09:02 – 2021-07-03 09:02 – 000000000 _____ () C:Userskubsons07AppDataLocal{EEFC0F91-6DDE-4E17-8CED-35F781788B96}
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-12-2021
Ran by kubsons07 (08-01- 2022 23:02:15)
Running from C:Userskubsons07DesktopNowy folder
Microsoft Windows 10 Home Version 21H1 19043.1415 (X64) (2020-10-12 16:46:50)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-2944253907-4126696763-4153681683-500 – Administrator – Disabled)
defaultuser0 (S-1-5-21-2944253907-4126696763-4153681683-1000 – Limited – Disabled) => C:Usersdefaultuser0
Gość (S-1-5-21-2944253907-4126696763-4153681683-501 – Limited – Disabled)
Konto domyślne (S-1-5-21-2944253907-4126696763-4153681683-503 – Limited – Disabled)
kubsons07 (S-1-5-21-2944253907-4126696763-4153681683-1001 – Administrator – Enabled) => C:Userskubsons07
postgres (S-1-5-21-2944253907-4126696763-4153681683-1004 – Limited – Enabled) => C:U serspostgres
WDAGUtilityAccount (S-1-5-21-2944253907-4126696763-4153681683-504 – Limited – Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Norton Security (Enabled – Up to date) {1122B19A-E671-38EC-8EAC-87048FD4528D}
AV: Norton Security (Enabled – Up to date) {A2708B76-6835-6565-CB96-694212954A75}
AV: Windows Defender (Disabled – Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Norton Security (Enabled – Up to date) {AECE2126-F4E7-6909-11F2-1B69D1FBCBD0}
AV: Norton Security (Enabled – Up to date) {9E3FD331-C4C2-7AC4-0537-131EEF1B1F8A}
FW: Norton Security (Enabled) {9A4B0A53-225A-643D-E0C9-C077EC460D0E}
FW: Norton Security (Enabled) {A6045214-8EAD-7B9C-2E68-BA2B11C858F1}
FW: Norton Security (Enabled) {96F5A003-BE88-6851-3AAD-B25C2F288CAB}
FW: Norton Security (Enabled) {291930BF-AC1E-39 B4-A5F3-2E31710715F6}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Audacity 2.4.1 (HKLM-x32…Audacity_is1) (Version: 2.4.1 – Audacity Team)
Battle.net (HKLM-x32…Battle.net) (Version: – Blizzard Entertainment)
Blackmagic RAW Common Components (HKLM…{28612306-CE2C-429F-8288-D707C9A84838}) (Version: 1.8.1 – Blackmagic Design)
Brother Driver Deployment Wizard (HKLM-x32…{0ED38503-B69A-44B4-98BE-21BFF284A9B6}) (Version: 1.09.000 – Brother)
Corel Painter Essentials 6 – Content (HKLM…{56F051E4-C179-425E-9AA8-4B3FBC2F05B7}) (Version: 6.1 – Corel Corporation) Hidden
Corel Painter Essentials 6 – Core (HKLM…{FA3FA2BE-94D1-41CA-89BF-29AE2EB61E46}) (Version: 6.1 – Corel Corporation) Hidden
Corel Painter Essentials 6 – CT (HKLM…{404B42A1-47EF-44D5-B390-E0CB3F879497}) (Version: 6.1 – Corel Corporation) Hidden
Corel Painter Essentials 6 – DE (HKLM…{13CD16A8-0B5E-469D-A8C2-1BD41B58999F}) (Version: 6.1 – Corel Corpo ration) Hidden
Corel Painter Essentials 6 – EN (HKLM…{1B3DFFA0-0CE7-4607-8E55-FB64B8628995}) (Version: 6.1 – Corel Corporation) Hidden
Corel Painter Essentials 6 – FR (HKLM…{E39BC105-2204-4BA8-BB9F-D08E5BDD1493}) (Version: 6.1 – Corel Corporation) Hidden
Corel Painter Essentials 6 – IPM (HKLM…{B1AA1DD1-FC10-499C-B802-6C9558CBBC1A}) (Version: 6.1 – Corel Corporation) Hidden
Corel Painter Essentials 6 – IPM Content (HKLM…{68FC3BC5-C3AA-4B36-86F7-D4ED105E1D7B}) (Version: 6.1 – Corel Corporation) Hidden
Corel Painter Essentials 6 – JP (HKLM…{9BAC9F81-DE28-450F-B0F8-C319D08C2A6A}) (Version: 6.1 – Corel Corporation) Hidden
Corel Painter Essentials 6 (HKLM…_{0EDEDA40-4B3A-46D0-A0D8-0FE8834390DE}) (Version: 6.1.0.238 – Corel Corpopration)
Corel Painter Essentials 6 (HKLM…{D5ACBF88-A251-4E63-8DFE-1EF7491D601E}) (Version: 6.1 – Corel Corporation) Hidden
Corel Painter Thumbnail Previewer (HKLM… {50139369-99B2-496A-8726-D3DC5D6D4235}) (Version: 18.0 – Corel Corporation)
Corel Update Manager (HKLM…{5039B7BE-F79B-4121-A9D3-D66ED4169414}) (Version: 2.14.626 – Corel corporation) Hidden
DaVinci Resolve (HKLM…{22644994-D6EC-4A29-8A82-7DEF9A6A9BA9}) (Version: 17.2.20004 – Blackmagic Design)
DaVinci Resolve Keyboards (HKLM…{04F776FB-37A2-4116-84F2-6CF3D731999D}) (Version: 1.0.0.0 – Blackmagic Design)
DaVinci Resolve Panels (HKLM…{567706B7-1501-43BC-81AB-C7E306B40C73}) (Version: 1.3.2.0 – Blackmagic Design)
Discord (HKUS-1-5-21-2944253907-4126696763-4153681683-1001…Discord) (Version: 0.0.309 – Discord Inc.)
dwdinst (HKLM-x32…{8EC8F7F1-DBF1-4137-B8A9-9DE690605F85}) (Version: 1.0.0.0 – HanWIS GmbH)
Epic Games Launcher (HKLM-x32…{30C7A3B1-644C-423F-AB2C-743E007A84EC}) (Version: 1.3.0.0 – Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM…{F9C5C994-F6B9-4D75-B3E7-AD01B84073 E9}) (Version: 1.0.0.0 – Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32…{32C68D93-D32F-4B01-8250-61642BFC22F8}) (Version: 2.0.28.0 – Epic Games, Inc.)
ForHonor (HKLM-x32…Uplay Install 569) (Version: – Ubisoft)
GCFScape 1.8.6 (HKLM…GCFScape_is1) (Version: – Ryan Gregg)
GIMP 2.10.22 (HKUS-1-5-21-2944253907-4126696763-4153681683-1001…GIMP-2_is1) (Version: 2.10.22 – The GIMP Team)
Glorious Model O Software (HKLM-x32…{0969D386-B5B4-41BD-98E3-4A1A7D32CB97}_is1) (Version: 1.0.9 – Glorious PC Gaming Race LLC.)
Google Chrome (HKLM-x32…{ABB67988-B698-39BE-99E3-E41B2027AC1F}) (Version: 97.0.4692.71 – Google, Inc.)
Grand Theft Auto V (HKLM-x32…{5EFC6C07-6B87-43FC-9524-F9E967241741}) (Version: 1.0.2545.0 – Rockstar Games)
ICA (HKLM…{0EDEDA40-4B3A-46D0-A0D8-0FE8834390DE}) (Version: 6.1 – Corel Corpopration) Hidden
Intel® Management Engine Components (HKLM…{1CEAC85D-2590-47 60-800F-8DE5E91F3700}) (Version: 11.0.0.1158 – Intel Corporation)
Intel® Processor Graphics (HKLM-x32…{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4463 – Intel Corporation)
Intel® Security Assist (HKLM-x32…{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 – Intel Corporation)
IrfanView 4.44 (64-bit) (HKLM…IrfanView64) (Version: 4.44 – Irfan Skiljan)
Java 8 Update 311 (64-bit) (HKLM…{26A24AE4-039D-4CA4-87B4-2F64180311F0}) (Version: 8.0.3110.11 – Oracle Corporation)
Java 8 Update 311 (HKLM-x32…{26A24AE4-039D-4CA4-87B4-2F32180311F0}) (Version: 8.0.3110.11 – Oracle Corporation)
Java SE Development Kit 8 Update 151 (HKLM-x32…{32A3A4F4-B792-11D6-A78A-00B0D0180151}) (Version: 8.0.1510.12 – Oracle Corporation)
Java SE Development Kit 8 Update 20 (64-bit) (HKLM…{64A3A4F4-B792-11D6-A78A-00B0D0180200}) (Version: 8.0.200.26 – Oracle Corporation)
Launcher Prerequisites (x64) ( HKLM-x32…{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 – Epic Games, Inc.) Hidden
Launcher Prerequisites (x64) (HKLM-x32…{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 – Epic Games, Inc.) Hidden
Lunar Client (HKUS-1-5-21-2944253907-4126696763-4153681683-1001…1fcec38f-e773-5444-8669-32b8eb41524b) (Version: 2.8.8 – Moonsworth, LLC)
Microsoft Edge (HKLM-x32…Microsoft Edge) (Version: 97.0.1072.55 – Microsoft Corporation)
Microsoft OneDrive (HKUS-1-5-21-2944253907-4126696763-4153681683-1001…OneDriveSetup.exe) (Version: 21.230.1107.0004 – Microsoft Corporation)
Microsoft Teams (HKUS-1-5-21-2944253907-4126696763-4153681683-1001…Teams) (Version: 1.4.00.32771 – Microsoft Corporation)
Microsoft Update Health Tools (HKLM…{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 – Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM…{071c9b48-7c32-4621-a 0ac-3f809523288f}) (Version: 8.0.56336 – Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable – x64 9.0.30729.17 (HKLM…{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 – Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable – x64 9.0.30729.4148 (HKLM…{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 – Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable – x64 9.0.30729.6161 (HKLM…{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 – Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable – x86 9.0.21022 (HKLM-x32…{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 – Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable – x86 9.0.30729.17 (HKLM-x32…{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 – Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable – x86 9.0.30729.6161 (HKLM-x32…{9BE51 8E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 – Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable – 10.0.40219 (HKLM…{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 – Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable – 10.0.40219 (HKLM-x32…{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 – Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) – 11.0.61030 (HKLM-x32…{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 – Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) – 11.0.61030 (HKLM-x32…{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 – Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) – 12.0.30501 (HKLM-x32…{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 – Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) – 12.0.40 664 (HKLM-x32…{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 – Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) – 12.0.30501 (HKLM-x32…{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 – Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) – 12.0.40664 (HKLM-x32…{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 – Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) – 14.28.29913 (HKLM-x32…{855e31d2-9031-46e1-b06d-c9d7777deefb}) (Version: 14.28.29913.0 – Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) – 14.28.29913 (HKLM-x32…{03d1453c-7d5c-479c-afea-8482f406e036}) (Version: 14.28.29913.0 – Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32…{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 – Microsoft Corporation)
Minecraft (HKLM-x32. ..{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 – Mojang)
Mozilla Firefox (x64 pl) (HKLM…Mozilla Firefox 95.0.2 (x64 pl)) (Version: 95.0.2 – Mozilla)
Mozilla Maintenance Service (HKLM…MozillaMaintenanceService) (Version: 95.0 – Mozilla)
Norton Security (HKLM-x32…NGC) (Version: 22.21.11.46 – Symantec Corporation)
Notepad++ (32-bit x86) (HKLM-x32…Notepad++) (Version: 7.6.6 – Notepad++ Team)
NVIDIA FrameView SDK 1.2.4999.30397803 (HKLM…{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.2.4999.30397803 – NVIDIA Corporation)
NVIDIA GeForce Experience 3.24.0.123 (HKLM…{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.24.0.123 – NVIDIA Corporation)
NVIDIA Oprogramowanie systemu PhysX 9.21.0713 (HKLM…{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 – NVIDIA Corporation)
NVIDIA Sterownik dźwięku HD 1.3.38.94 (HKLM…{B2F E1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.94 – NVIDIA Corporation)
NVIDIA Sterownik graficzny 497.09 (HKLM…{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 497.09 – NVIDIA Corporation)
OBS Studio (HKLM-x32…OBS Studio) (Version: 26.0.2 – OBS Project)
Oprogramowanie mikroukładu Intel® (HKLM-x32…{60c073df-e736-4210-9c3a-5fc2b651cef3}) (Version: 10.1.1.7 – Intel® Corporation) Hidden
Origin (HKLM-x32…Origin) (Version: 10.5.108.49699 – Electronic Arts, Inc.)
Overwatch (HKLM-x32…Overwatch) (Version: – Blizzard Entertainment)
paint.net (HKLM…{B56F4594-AA51-450A-BBD0-2CE48675D33A}) (Version: 4.2.14 – dotPDN LLC)
PunkBuster Services (HKLM-x32…PunkBusterSvc) (Version: 0.993 – Even Balance, Inc.)
Realtek High Definition Audio Driver (HKLM-x32…{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7543 – Realtek Semiconductor Corp.)
Rockstar Ga mes Launcher (HKLM-x32…Rockstar Games Launcher) (Version: 1.0.52.574 – Rockstar Games)
Rockstar Games Social Club (HKLM-x32…Rockstar Games Social Club) (Version: 2.0.9.3 – Rockstar Games)
Sprawdzanie kondycji komputera z systemem Windows (HKLM…{497ED226-5E88-4EC5-9340-373B1C56906F}) (Version: 3.2.2110.14001 – Microsoft Corporation)
Steam (HKLM-x32…Steam) (Version: 2.10.91.91 – Valve Corporation)
TAP-Windows 9.21.2 (HKLM…TAP-Windows) (Version: 9.21.2 – )
Total Commander 64-bit (Remove or Repair) (HKLM…Totalcmd64) (Version: 9.0a – Ghisler Software GmbH)
TP-LINK TL-WN821N Driver (HKLM-x32…{03468BE2-4451-416D-B045-60F2101122D4}) (Version: 1.3.1 – TP-LINK)
Ubisoft Connect (HKLM-x32…Uplay) (Version: 10.0 – Ubisoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM…{16AD6161-2E47-4BF1-AA77-0946EFE93E08}) (Version: 2.61.0.0 – Microsoft Corporation)
VLC media player ( HKLM-x32…VLC media player) (Version: 3.0.16 – VideoLAN)
VTFEdit 1.3.3 (HKLM…VTFEdit_is1) (Version: – Neil Jedrzejewski & Ryan Gregg)
Vulkan Run Time Libraries 1.0.54.1 (HKLM…VulkanRT1.0.54.1) (Version: 1.0.54.1 – Intel Corporation Inc.)
WinRAR 5.70 (64-bit) (HKLM…WinRAR archiver) (Version: 5.70.0 – win.rar GmbH)
Packages:
=========
Adobe Photoshop Express: edytor obrazów, regulacje, filtry, efekty, krawędzie -> C:Program FilesWindowsAppsAdobeSystemsIncorporated.AdobePhotoshopExpress_3.5.381.0_x64__ynb6jyjzte8ga [2021-11-17] (Adobe Inc.)
Dodatek Aparat multimediów dla aplikacji Zdjęcia -> C:Program FilesWindowsAppsMicrosoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-05-03] (Microsoft Corporation)
Dodatek Zdjęcia -> C:Program FilesWindowsAppsMicrosoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2021-05-01] (Microsoft Corporation)
HP Smart -> C:Program Files WindowsAppsAD2F1837.HPPrinterControl_133.1.340.0_x64__v10z8vjag6ke6 [2021-12-13] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:Program FilesWindowsAppsMicrosoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-02-09] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:Program FilesWindowsAppsMicrosoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-02-09] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:Program FilesWindowsAppsMicrosoft.MicrosoftSolitaireCollection_4.11.12030.0_x64__8wekyb3d8bbwe [2021-12-10] (Microsoft Studios) [MS Ad]
Norton Security -> C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46 [2022-01-08] (0)
NVIDIA Control Panel -> C:Program FilesWindowsAppsNVIDIACorp.NVIDIAControlPanel_8.1.961.0_x64__56jybvy8sckqj [2021-12-03] (NVIDIA Corp.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be re moved from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKUS-1-5-21-2944253907-4126696763-4153681683-1001_ClassesCLSID{19A6E644-14E6-4A60-B8D7-DD20610A871D}InprocServer32 -> C:Userskubsons07AppDataLocalMicrosoftTeamsMeetingAddin1.0.21264.3x64Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46buShell.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46buShell.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46buShell.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46buShell.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46buShell.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46buShell.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:Program Files (x86)Notepad++NppShell_06.dll [2017-12-05] (Notepad++ -> )
ContextMenuHandlers1: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C: Program FilesNorton SecurityNorton SecurityEngine22.21.11.46buShell.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46NavShExt.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:Program FilesWinRARrarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:Program FilesWinRARrarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46NavShExt.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08 FA86A9} => C:WINDOWSSystem32DriverStoreFileRepositorynv_dispi.inf_amd64_642e50d7b66aa2a4nvshext.dll [2021-11-27] (Nvidia Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46buShell.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers6: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46NavShExt.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:Program FilesWinRARrarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:Program FilesWinRARrarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2018-08-29 10:48 – 2021-10-06 02:30 – 126961152 _____ () [File not signed] C:Program Files (x86)Steambincefcef.win7x64libcef.dll
2018-08-29 10:48 – 2021-10-06 02:30 – 000384000 _____ () [File not signed] C:Program Files (x86)Steambincefcef.win7x64libegl.dll
2018-08-29 10:48 – 2021-10-06 02:30 – 008006656 _____ () [File not signed] C:Program Files (x86)Steambincefcef.win7x64libglesv2.dll
2018-08-29 10:48 – 2021-10-06 02:30 – 000983552 _____ (The Chromium Authors) [File not signed] C:Program Files (x86)Steambincefcef.win7x64chrome_elf.dll
2021-02-17 08:30 – 2021-07-15 11:53 – 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:Program Files (x86)OriginLIBEAY32.dll
2020-08-26 08:48 – 2021-07-15 11:53 – 000279040 _____ (The OpenSSL Project, hxxp://www. openssl.org/) [File not signed] C:Program Files (x86)Originssleay32.dll
2021-02-17 08:30 – 2021-07-15 11:53 – 001611264 _____ (The Qt Company Ltd) [File not signed] C:Program Files (x86)Originplatformsqwindows.dll
2021-12-24 18:25 – 2021-07-15 11:53 – 005487104 _____ (The Qt Company Ltd) [File not signed] C:Program Files (x86)OriginQt5Core.dll
2021-12-24 18:25 – 2021-07-15 11:53 – 005841920 _____ (The Qt Company Ltd) [File not signed] C:Program Files (x86)OriginQt5Gui.dll
2021-12-24 18:25 – 2021-07-15 11:53 – 001179136 _____ (The Qt Company Ltd) [File not signed] C:Program Files (x86)OriginQt5Network.dll
2021-12-24 18:25 – 2021-07-15 11:53 – 000146432 _____ (The Qt Company Ltd) [File not signed] C:Program Files (x86)OriginQt5WebSockets.dll
2021-12-24 18:25 – 2021-07-15 11:53 – 005089792 _____ (The Qt Company Ltd) [File not signed] C:Program Files (x86)OriginQt5Widgets.dll
2021-12-24 18:25 – 2021-07-15 11:53 – 000184832 _____ (The Qt Company Ltd) [File not signed] C:Program Files (x86)OriginQt5Xml.dll
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:UsersPublicShared Files:VersionCache [6748]
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
SearchScopes: HKUS-1-5-21-2944253907-4126696763-4153681683-1001 -> DefaultScope {E612B9F0-2EF8-4FDE-AF1A-3AF50C638B15} URL = hxxp://www.x-kom.pl
SearchScopes: HKUS-1-5-21-2944253907-4126696763-4153681683-1001 -> {E612B9F0-2EF8-4FDE-AF1A-3AF50C638B15} URL = hxxp://www.x-kom.pl
BHO: Norton Password Manager -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46coIEPlg.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:Program FilesJavajre1.8.0_311binssv.dll [2021-10-22] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:Program FilesJavajre1.8.0_311binjp2ssv.dll [2021-10-22] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Norton Password Manager -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:Program FilesNorton SecurityNorton SecurityEngine3222.21.11.46coIEPlg.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:Program Files (x86)Javajre1.8.0_311binssv.dll [2021-10-22] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:Program Files (x86)Javajre1.8.0_311binjp2ssv.dll [2021-10-22] (Oracle America, Inc. -> Oracle Corporation)
Toolbar: HKLM – Norton Toolbar – {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} – C:Program FilesNorton SecurityNorton SecurityEngine22.21.11.46coIEPlg.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
Toolbar: HKLM-x32 – Norton Toolbar – {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} – C:Program FilesNorton SecurityNorton SecurityEngine3222.21.11.46coIEPlg.dll [2021-12-13] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2016-07-16 12:47 – 2020-07-11 09:17 – 000000000 ____N C:WINDOWSsystem32driversetchosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLMSystemCurrentControlSetControlSession ManagerEnvironment\Path -> C:Program Files (x86)Razer Chroma SDKbin;C:Pro gram FilesRazer Chroma SDKbin;C:Program Files (x86)RazerChromaBroadcastbin;C:Program FilesRazerChromaBroadcastbin;C:Program Files (x86)Common FilesOracleJavajavapath;C:ProgramDataOracleJavajavapath;C:Program Files (x86)InteliCLS Client;C:Program FilesInteliCLS Client;C:Windowssystem32;C:Windows;C:WindowsSystem32Wbem;C:WindowsSystem32WindowsPowerShellv1.0;C:Program Files (x86)IntelIntel® Management Engine ComponentsDAL;C:Program FilesIntelIntel® Management Engine ComponentsDAL;C:Program Files (x86)IntelIntel® Management Engine ComponentsIPT;C:Program FilesIntelIntel® Management Engine ComponentsIPT;C:WINDOWSsystem32;C:WINDOWS;C:WINDOWSSystem32Wbem;C:WINDOWSSystem32WindowsPowerShellv1.0;C:WINDOWSSystem32OpenSSH;C:Program FilesNVIDIA CorporationNVIDIA NvDLISR;C:WINDOWSsystem32configsystemprofileAppDataLocalMicrosoftWindowsApps;;C:Userskubsons07AppDataLocalMicrosoftWindowsApps;C:WINDOWSsystem32;C:WINDO WS;C:WINDOWSSystem32Wbem;C:WINDOWSSystem32WindowsPowerShellv1.0;C:WINDOWSSystem32OpenSSH;C:Program Files (x86)NVIDIA CorporationPhysXCommon
HKCUEnvironment\Path -> %USERPROFILE%AppDataLocalMicrosoftWindowsApps
HKUS-1-5-21-2944253907-4126696763-4153681683-1000Control PanelDesktop\Wallpaper -> C:WindowsWebWallpaperWindowsimg0.jpg
HKUS-1-5-21-2944253907-4126696763-4153681683-1001Control PanelDesktop\Wallpaper -> C:Userskubsons07DesktopBez tytułu.png
DNS Servers: 192.168.31.1
HKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
MSCO NFIGServices: Origin Client Service => 3
MSCONFIGServices: Origin Web Helper Service => 2
HKLM…StartupApprovedRun: => "WinZip FAH"
HKLM…StartupApprovedRun: => "WinZip PreLoader"
HKLM…StartupApprovedRun: => "WinZip UN"
HKLM…StartupApprovedRun: => "XMouseButtonControl"
HKLM…StartupApprovedRun: => "AdobeGCInvoker-1.0"
HKLM…StartupApprovedRun32: => "LogMeIn Hamachi Ui"
HKLM…StartupApprovedRun32: => "RoccatKoneXTD"
HKUS-1-5-21-2944253907-4126696763-4153681683-1001…StartupApprovedStartupFolder: => "Twitch.lnk"
HKUS-1-5-21-2944253907-4126696763-4153681683-1001…StartupApprovedStartupFolder: => "MEGAsync.lnk"
HKUS-1-5-21-2944253907-4126696763-4153681683-1001…StartupApprovedRun: => "Discord"
HKUS-1-5-21-2944253907-4126696763-4153681683-1001…StartupApprovedRun: => "OneDrive"
HKUS-1-5-21-2944253907-4126696763-4153681683-1 001…StartupApprovedRun: => "OmikronService"
HKUS-1-5-21-2944253907-4126696763-4153681683-1001…StartupApprovedRun: => "EpicGamesLauncher"
HKUS-1-5-21-2944253907-4126696763-4153681683-1001…StartupApprovedRun: => "ProductAuthenticationService"
HKUS-1-5-21-2944253907-4126696763-4153681683-1001…StartupApprovedRun: => "SteamServerBrowser"
HKUS-1-5-21-2944253907-4126696763-4153681683-1001…StartupApprovedRun: => "com.squirrel.Teams.Teams"
HKUS-1-5-21-2944253907-4126696763-4153681683-1001…StartupApprovedRun: => "EADM"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{921B9159-2562-45ED-B337-05A20B59B2C6}] => (Allow) C:Program Files (x86)Steamsteamappscommonwallpaper_enginelauncher.exe (Skutta, Kristjan -> )
FirewallRules: [{877ACCA0-4952-475C-AEB6-DDF682CEF4C5}] => (Allow) C:Program Files (x86)Steamsteamappscommonwallpaper_enginelauncher.exe (Skutta, Kristjan -> )
FirewallRules: [{95CBB797-8519-4D1A-A510-5E04225F4676}] => (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{E167BB23-BA07-4AB8-9C3A-0A40CC5D8A8E}] => (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{BAC8CE6D-F46D-4647-80EF-40DAEF03C446}] => (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{0C95E7AE-FAFE-4129-814F-25BA82A1A1C7}] => (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{D2745A35-FCBF-460B-AA49-8DF8D520C018}] => (Allow) C:Program Files (x8 6)SteamSteam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{F901D7B1-2EDF-4962-90A0-8764899B8BB0}] => (Allow) C:Program Files (x86)SteamSteam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{24743FD6-9EF7-49BE-B8A1-1FF6895C4EB7}] => (Allow) C:Program Files (x86)SteamsteamappscommonPortal 2portal2.exe () [File not signed]
FirewallRules: [{22A8F001-E55A-410D-9F61-1D01C1468239}] => (Allow) C:Program Files (x86)SteamsteamappscommonPortal 2portal2.exe () [File not signed]
FirewallRules: [{C1F4908D-12EB-4C56-97F9-A6BDA3532E75}] => (Allow) C:Program Files (x86)SteamsteamappscommonGarrysModhl2.exe () [File not signed]
FirewallRules: [{8FE819B1-A6C6-475D-8735-17CD765FE2E9}] => (Allow) C:Program Files (x86)SteamsteamappscommonGarrysModhl2.exe () [File not signed]
FirewallRules: [{76D911EE-8702-43C1-AC31-B19E57B0EC60}] => (Allow) C:Program Files (x86)Steambincefcef.win7x64steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{F736BCCD-3AE3-4BD3-A6C6-97FFD59C0426}] => (Allow) C:Program Files (x86)Steambincefcef.win7x64steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{F0750252-98AF-4BA7-BD81-9A31F8D9298F}] => (Allow) C:Program Files (x8 6)SteamsteamappscommonGeometry DashGeometryDash.exe () [File not signed]
FirewallRules: [{DB8AE7F5-677F-44C9-9820-1BD09DE20CCD}] => (Allow) C:Program Files (x86)SteamsteamappscommonGeometry DashGeometryDash.exe () [File not signed]
FirewallRules: [{52099BE2-FB0F-4112-B533-5AA7D738FC12}] => (Allow) D:Program Files (x86)Resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{C8EE9CD3-3618-4A96-9B5D-6FC333ECA461}] => (Allow) D:Program Files (x86)bmdpaneld.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{941510D3-24F6-4C2C-B1C2-444273A5A113}] => (Allow) D:Program Files (x86)DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{03503EF2-29F9-4B59-A367-B933F667A129}] => (Allow) D:Program Files (x86)JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{77844A45-1C81-488F-9100-376E323B34FE}] => (Allow) D:Program Files (x86)EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{29985779-520F-42BE-BAF7-0F7049DF31A7}] => (Allow) D:Program Files (x86)TangentPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{6117D4E2-67DA-4E4D-BD63-FBF5DA885F61}] => (Allow) D:Program Fi les (x86)fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{25B3604D-61C1-4CC6-8487-3A781AAB3DD7}] => (Allow) D:Program Files (x86)DPDecoder.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{F871DC56-020D-41B1-9742-A658489F2B6D}] => (Allow) D:Steam Dsteamappscommonthe witcher 2Launcher.exe => No File
FirewallRules: [{288D762D-46E8-4FF5-9811-A1D462E2EF5A}] => (Allow) D:SteamsteamappscommonLeft 4 Dead 2left4dead2.exe () [File not signed]
FirewallRules: [{D66FB68D-F321-4F22-8D9A-1F03F43F5A9E}] => (Allow) D:SteamsteamappscommonLeft 4 Dead 2left4dead2.exe () [File not signed]
FirewallRules: [{22E62AA3-532C-42FB-B296-6CFEDB534F15}] => (Allow) D:SteamsteamappscommonSven Co-opsvencoop.exe (Sven Co-op team) [File not signed]
FirewallRules: [{525D7A00-E554-490E-95F1-037491CC6E2B}] => (Allow) D:SteamsteamappscommonSven Co-opsvencoop.exe (Sven Co-op team) [File not signed]
FirewallRules: [{2B0C8D71-20C2-4D0E-B699-83D731515437}] => (Allow) D:SteamsteamappscommonSven Co-opsvends.exe (Sven Co-op team) [File not signed]
FirewallRules: [{8EB9D97E-03E5-4E87-B58C-20B099225151}] => (Allow) D:SteamsteamappscommonSven Co-opsvends.exe (Sven Co-op team) [File not signed]
FirewallRules: [{712F0412-7AB1-4191-BC6E-DBF0FB6D0C7F}] => (Allow) D:SteamsteamappscommonGarrysModhl2.exe () [File not signed]
FirewallRules: [{FBF73576-F64D-4C2F-9D0D-8ADD6B1347F8}] => (Allow) D:SteamsteamappscommonGarrysModhl2.exe () [File not signed]
FirewallRules: [{97D9A2A3-1391-4593-A2C3-16348782AC55}] => (Allow) D:SteamsteamappscommonTeam Fortress 2hl2.exe (Valve -> )
FirewallRules: [{5C046449-1215-4B41-83F3-C7602D99FA48}] => (Allow) D:SteamsteamappscommonTeam Fortress 2hl2.exe (Valve -> )
FirewallRules: [{A7DE79B9-288D-432A-A931-A145F641034A}] => (Allow) D:SteamsteamappscommonCounter-Strike Global Offensivecsgo.exe (Valve Corp. -> )
FirewallRules: [{F2975F53-CDAA-465E-A800-DFDC7D7B023A}] => (Allow) D:SteamsteamappscommonCounter-Strike Global Offensivecsgo.exe (Valve Corp. -> )
FirewallRules: [{B1B0833D-C120-4BFE-AD48-ADF78E1DD81A}] => (Allow) D:SteamsteamappscommonTerrariaTerraria.exe (Re-Logic) [File not signed]
FirewallRules: [{84D8D331-888D-45A4-9CE1-80684A93E9A8}] => (Allow) D:SteamsteamappscommonTerrariaTerraria.exe (Re-Logic) [File not signed]
FirewallRules: [{93DC3AA9-FE16-407C-B4C5-94231B2CC045}] => (Allow) D:SteamsteamappscommonDoom 2rereleaseDOOM II.exe () [File not signed]
FirewallRules: [{7EC7F6BF-16EB-49DF-B56C-12151D6CCBCC}] => (All ow) D:SteamsteamappscommonDoom 2rereleaseDOOM II.exe () [File not signed]
FirewallRules: [{0D9B4B72-D1D2-44B3-B99F-B2BAC13B28D0}] => (Allow) C:Program Files (x86)SteamsteamappscommonSourceSDKbinSDKLauncher.exe (Valve -> )
FirewallRules: [{734E7F0C-0FFC-4669-B206-A3458C04DD90}] => (Allow) C:Program Files (x86)SteamsteamappscommonSourceSDKbinSDKLauncher.exe (Valve -> )
FirewallRules: [{8602B070-92D4-45A7-A2BA-98430EA4D247}] => (Allow) C:Program Files (x86)SteamsteamappscommonPOSTAL2CompleteSystemPostal2.exe () [File not signed]
FirewallRules: [{B8E8D415-DCCB-4194-8D9E-E16A2DC5D8FB}] => (Allow) C:Program Files (x86)SteamsteamappscommonPOSTAL2CompleteSystemPostal2.exe () [File not signed]
FirewallRules: [{91F6E771-0A14-4F8A-90B8-6B33FC360CA3}] => (Allow) C:Program Files (x86)SteamsteamappscommonPOSTAL2CompleteShareThePainSystemPostal2MP.exe () [File not signed]
FirewallRules: [{7893EDC7-5067-456F-8A3F-75C197E6C69C}] => (Allow) C:Program Files (x86)SteamsteamappscommonPOSTAL2CompleteShareThePainSystemPostal2MP.exe () [File not signed]
FirewallRules: [{6585CA87-A89C-4537-9598-DFEACB334CB3}] => (Allow) C:Program Files (x86)SteamsteamappscommonPOSTAL2CompleteParadis e LostSystemParadiseLost.exe () [File not signed]
FirewallRules: [{93EE61FC-C286-45D0-A372-EC7CDEA0FF7C}] => (Allow) C:Program Files (x86)SteamsteamappscommonPOSTAL2CompleteParadise LostSystemParadiseLost.exe () [File not signed]
FirewallRules: [{901EF584-E776-4A94-9647-791AE355B7FE}] => (Allow) D:SteamsteamappscommonHalf-Life 2hl2.exe (Valve -> )
FirewallRules: [{E26D5CFC-E117-4D4A-8CF2-9110BE247FBB}] => (Allow) D:SteamsteamappscommonHalf-Life 2hl2.exe (Valve -> )
FirewallRules: [{9CC735D6-B5E5-46B1-AAC4-08B30EBDD269}] => (Allow) D:SteamsteamappscommonvvvvvvVVVVVV.exe () [File not signed]
FirewallRules: [{8378D0FE-FC56-487F-B276-F9DEF89EDC67}] => (Allow) D:SteamsteamappscommonvvvvvvVVVVVV.exe () [File not signed]
FirewallRules: [{E592565A-8AD9-4324-BC1E-01FB78C8FA31}] => (Allow) C:Program Files (x86)SteamsteamappscommonULTRAKILLULTRAKILL.exe () [File not signed]
FirewallRules: [{9D2DC8FC-BE37-4339-8D19-2042BD6C4641}] => (Allow) C:Program Files (x86)SteamsteamappscommonULTRAKILLULTRAKILL.exe () [File not signed]
FirewallRules: [{ADF47EFE-AADA-45C3-BE96-949C9B33BE1A}] => (Allow) C:Program Files (x86)SteamsteamappscommonTomb Raider (IV) The Last Revelationtomb4.exe () [File not signed]
FirewallRules: [{C0DCF8A8-D529-4EC2-9FF5-6F9C24E6642F}] = > (Allow) C:Program Files (x86)SteamsteamappscommonTomb Raider (IV) The Last Revelationtomb4.exe () [File not signed]
FirewallRules: [{7A11E869-5D6C-45FD-9F56-E40ED6BDAD50}] => (Allow) D:SteamsteamappscommonBLOCKADE ClassicBlockadeClassic.exe () [File not signed]
FirewallRules: [{5D80CED0-B11E-43DF-A583-A532B5B4E0C6}] => (Allow) D:SteamsteamappscommonBLOCKADE ClassicBlockadeClassic.exe () [File not signed]
FirewallRules: [{93A762EA-04CF-4137-AC99-26B12ABCEB58}] => (Allow) C:Program Files (x86)SteamsteamappscommonVRChatVRChat.exe () [File not signed]
FirewallRules: [{AE05CD7A-4817-4FD2-AB9E-8C406CFA10D8}] => (Allow) C:Program Files (x86)SteamsteamappscommonVRChatVRChat.exe () [File not signed]
FirewallRules: [TCP Query User{1A3F0CEE-E40C-4355-85BE-34DF88171B82}D:rockstar gamesgrand theft auto vgta5.exe] => (Allow) D:rockstar gamesgrand theft auto vgta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [UDP Query User{86F5E91D-D419-4F0F-8F9A-16875AD63427}D:rockstar gamesgrand theft auto vgta5.exe] => (Allow) D:rockstar gamesgrand theft auto vgta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [TCP Query User{E2B5A903-220F-4C00-B50B-22D0BDC09E3E}D:steamsteamappscommonthe witcher 2binwitcher2.exe] => (Allow) D:steamsteamappscommonthe witcher 2binwitcher2.exe () [File not signed]
FirewallRules: [UDP Query User{0790CD07-6750-4618-AA47-6BCCCA1A0B5E}D:steamsteamappscommonthe witcher 2binwitcher2.exe] => (Allow) D:steamsteamappsc ommonthe witcher 2binwitcher2.exe () [File not signed]
FirewallRules: [{A9B94FC1-583C-4BF7-80E9-134D3EEB1F42}] => (Allow) D:SteamsteamappscommonDARK SOULS IIIGameDarkSoulsIII.exe (FromSoftware,Inc. -> BANDAI NAMCO Entertainment Inc.)
FirewallRules: [{80C3DBCA-F287-4A0E-9290-25FAA8F9FCCD}] => (Allow) D:SteamsteamappscommonDARK SOULS IIIGameDarkSoulsIII.exe (FromSoftware,Inc. -> BANDAI NAMCO Entertainment Inc.)
FirewallRules: [TCP Query User{D76F1AF5-6899-4533-842D-E6D7061A0581}C:userskubsons07.lunarclientjrezulu16.30.15-ca-fx-jre16.0.1-win_x64binjavaw.exe] => (Block) C:userskubsons07.lunarclientjrezulu16.30.15-ca-fx-jre16.0.1-win_x64binjavaw.exe
FirewallRules: [UDP Query User{29DBA357-0743-4C41-875C-E660CC60A784}C:userskubsons07.lunarclientjrezulu16.30.15-ca-fx-jre16.0.1-win_x64binjavaw.exe] => (Block) C:userskubsons07.lunarclientjrezulu16.30.15-ca-fx-jre16.0.1-win_x64binjavaw.exe
FirewallRules: [{B4F9FD9C-CF78-4AC4-A264-34618AC24CFB}] => (Allow) D:SteamsteamappscommonKnights of the Old Republic IIswkotor2.exe (Obsidian Entertainment, Inc.) [File not signed]
FirewallRules: [{549D4630-63CC-428A-8E49-E8233AF581C6}] => (Allow) D:SteamsteamappscommonKnights of the Old Republic IIswkotor2.exe (Obsidian Entertainment, Inc.) [File not signed]
FirewallRules: [{9CD12A6B-378D-416E-8B76-FFA26D6ECD62}] => (Allow) D:SteamsteamappscommonTotallyAccurateBattlegroundsTotallyAccurateBattlegrounds.exe => No File
FirewallRules: [{2EA514FC-14FB-4FC4-9822-CA65A0EC5DD0}] => (Allow) D:SteamsteamappscommonTotallyAccurateBattle groundsTotallyAccurateBattlegrounds.exe => No File
FirewallRules: [{17AF264C-B8B4-437D-A0A9-694A2F8E0BB9}] => (Allow) D:SteamsteamappscommonJedi AcademyGameDatajasp.exe (Activision Inc) [File not signed]
FirewallRules: [{4811E10F-9C79-4B43-BCBA-38BB0E230B5E}] => (Allow) D:SteamsteamappscommonJedi AcademyGameDatajasp.exe (Activision Inc) [File not signed]
FirewallRules: [{22168E1E-C2E2-449F-9DCA-8CE390CCD313}] => (Allow) D:SteamsteamappscommonJedi AcademyGameDatajamp.exe (Activision Inc) [File not signed]
FirewallRules: [{1FDACD96-FDBE-417D-B525-95203AC1FA66}] => (Allow) D:SteamsteamappscommonJedi AcademyGameDatajamp.exe (Activision Inc) [File not signed]
FirewallRules: [{608BFA3D-793C-431B-BE27-D77D1453BD39}] => (Allow) D:SteamsteamappscommonFortress Foreverhl2.exe () [File not signed]
FirewallRules: [{EE31C54C-D0C1-409D-88C5-C778A6BF08C5}] => (Allow) D:SteamsteamappscommonFortress Foreverhl2.exe () [File not signed]
FirewallRules: [{1A01E310-8C77-492D-A688-1AB6A6190FDD}] => (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{A078BF2F-8FA0-4EB6-9BEE-596E56AEF4BE}] => (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{5559C868-5E28-4988-AB7A-322288037E4E}] => (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{D9449EAC-8994-44A4-8F9E-11A325BDF52C}] => (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{BFEE85BB-C999-4973-998B-D5507AB4F188}] => (Allow) D:SteamsteamappscommonLEWDAPOCALYPSELewdapocalypseLewdapocalypse.exe => No File
FirewallRules: [{D4E242DA-A823-4BC2-9F12-9E4AFA407D24}] => (Allow) D:SteamsteamappscommonLEWDAPOCALYPSELewdapocalypseLewdapocalypse.exe => No File
FirewallRules: [{A8A1D0D0-F6A4-4002-A77E-7C52F9CC409E}] => (Allow) D:SteamsteamappscommonCoJ GunslingerCoJGunslinger.exe (TECHLAND SP Z O O -> Techland)
FirewallRules: [{FEA8A234-01C7-4EC6-97D8-1159C2A86682}] => (Allow) D:SteamsteamappscommonCoJ GunslingerCoJGunslinger.exe (TECHLAND SP Z O O -> Techland)
FirewallRules: [{7D608439-9FBF-482B-A7B0-D8E4AF91DF78}] => (Allow) D:SteamsteamappscommonBorderlands 2BinariesWin32Launcher.exe (Take-Two Interactive Software, Inc. -> Gearbox Software)
FirewallRules: [{C0D4AB7F-83CD-4B6E-972B-55292D309AAF}] => (Allow) D:SteamsteamappscommonBorderlands 2BinariesWin32Launcher.exe (Take-Two Interactive Software, Inc. -> Gearbox Software)
FirewallRules: [{DB107201-0F50-49AE-AA1C-62FD382C0B4F}] => (Allow) D:SteamsteamappscommonStar Wars Battlefront II ClassicGameDataBattlefrontII.exe () [File not signed]
FirewallRules: [{D22FA9E7-C246-4558-8731-95C144BD01B4}] => (Allow) D:SteamsteamappscommonStar Wars Battlefront II ClassicGameDataBattlefrontII.exe () [File not signed]
FirewallRules: [{D457CD41-0315-4FCF-B689-782B7D5E39F4}] => (Allow) D:SteamsteamappscommonBorderlands 2BinariesWin32Borderlands2.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.)
FirewallRules: [{CEEF27EA-0E9F-4E38-B2BC-50EFA699DBAC}] => (Allow) D:SteamsteamappscommonBorderlands 2BinariesWin32Borderlands2.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.)
FirewallRules: [{4C36E793-00F2-413E-A84D-F63DD25287AC}] => (Allow) D:SteamsteamappscommonHalo InfiniteHaloInfinite.exe (343 Industries (Microsoft Corporation) -> Microsoft Corporation)
FirewallRules: [{6B93A2D3-DCAF-4B94-A7CA-E353D0C2C647}] => (Allow) D:SteamsteamappscommonHalo InfiniteHaloInfinite.exe (343 Industries (Microsoft Corporation) -> Microsoft Corporation)
FirewallRules: [{3E77D0A3-8429-4867-BCA0-F86ACDEBD478}] => (Allow) C:Program Files (x86)Steamsteamappscommonwallpaper_enginebinui32.exe (Skutta, Kristjan -> )
FirewallRules: [{EB355668-1A94-4809-8851-7133D8BAD879}] => (Allow) C:Program Files (x86)Steamsteamappscommonwallpaper_enginebinui32.exe (Skutta, Kristjan -> )
FirewallRules: [{AA242182-723B-4A29-BF48-84CF27BC0807}] => (Allow) D:SteamsteamappscommonHatinTimeBinariesWin64HatinTimeGame.exe => No File
FirewallRules: [{B8DC1DA6-F288-44BE-ABAE-B7D1CB49A6E7}] => (Allow) D:SteamsteamappscommonHatinTimeBinariesWin64HatinTimeGame.exe => No File
FirewallRules: [{0FACB031-7839-4E99-B65D-3F639A3FAAED}] => (Allow) D:SteamsteamappscommonThe Talos PrincipleBinx64Talos.exe (GHI Media LLC -> Croteam)
FirewallRules: [{4F7BB045-153D-4D53-AC64-F3549F41063E}] => (Allow) D:SteamsteamappscommonThe Talos Principle Binx64Talos.exe (GHI Media LLC -> Croteam)
FirewallRules: [{07A5339E-308A-492D-B514-A14FB0EC4EF0}] => (Allow) D:SteamsteamappscommonThe Talos PrincipleBinx64Talos_Unrestricted.exe (GHI Media LLC -> Croteam)
FirewallRules: [{E182D9ED-FC72-4295-A054-AF7417AE4D6F}] => (Allow) D:SteamsteamappscommonThe Talos PrincipleBinx64Talos_Unrestricted.exe (GHI Media LLC -> Croteam)
FirewallRules: [{899D47F3-573F-4F34-933C-F6B393E6382E}] => (Allow) D:SteamsteamappscommonThe Binding of Isaac Rebirthisaac-ng.exe () [File not signed]
FirewallRules: [{B04069D6-9F95-43C5-AB12-C4E5A783FD46}] => (Allow) D:SteamsteamappscommonThe Binding of Isaac Rebirthisaac-ng.exe () [File not signed]
FirewallRules: [{BD697290-57D3-4EB6-A079-9CB800B58EFF}] => (Allow) D:SteamsteamappscommonGarfield KartGarfieldKartNoMulti.exe => No File
FirewallRules: [{A7C6E6A0-C3B4-418D-9720-44E79C3BA100}] => (Allow) D:SteamsteamappscommonGarfield KartGarfieldKartNoMulti.exe => No File
FirewallRules: [{814FD07E-2B43-49CC-9D4D-E7B82F1D8982}] => (Allow) D:SteamsteamappscommonPlants Vs ZombiesPlantsVsZombies.exe (PopCap Games -> )
FirewallRules: [{BD5368D5-31B0-4AE0-8ADE-0926CD270FCD}] => (Allow) D :SteamsteamappscommonPlants Vs ZombiesPlantsVsZombies.exe (PopCap Games -> )
FirewallRules: [{E9B14596-AEA0-4385-9467-04AC0133B873}] => (Allow) D:SteamsteamappscommonGarfield KartGarfield_Master7.exe () [File not signed]
FirewallRules: [{C48834C1-F28B-4FB0-8BFA-AE118A9DBE0B}] => (Allow) D:SteamsteamappscommonGarfield KartGarfield_Master7.exe () [File not signed]
FirewallRules: [{7E690D87-B167-4141-9F75-55BBC8F5484A}] => (Allow) D:SteamsteamappscommonHalf-Life 2 Deathmatchhl2.exe (Valve -> )
FirewallRules: [{E1544B35-1B2A-43B8-A98B-91597869A364}] => (Allow) D:SteamsteamappscommonHalf-Life 2 Deathmatchhl2.exe (Valve -> )
FirewallRules: [{4E2E06DC-A002-4D00-BB33-ABD9FE3547A5}] => (Allow) D:SteamsteamappscommonCounter-Strike Global OffensivebinSDKLauncher.exe (Valve Corp. -> )
FirewallRules: [{FA949FE2-0165-49B1-9553-239C45314E0D}] => (Allow) D:SteamsteamappscommonCounter-Strike Global OffensivebinSDKLauncher.exe (Valve Corp. -> )
FirewallRules: [{6CD4AD41-A6B0-4095-93E4-635EC907FB88}] => (Allow) D:Steamsteamappscommonthe witcher 2Launcher.exe (CD Projekt RED) [File not signed]
FirewallRules: [{C022CBF8-3421-4CCC-AE57-E146F928DD05}] => (Allow) D:Steamsteamapps commonthe witcher 2Launcher.exe (CD Projekt RED) [File not signed]
FirewallRules: [{02CB12CB-3B5A-4A1F-B647-A3C7F7FE7727}] => (Allow) D:SteamsteamappscommonFar Cry 3binFC3UpdaterSteam.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{7B77E69F-F3DA-4786-B446-D74A3DF4DF4C}] => (Allow) D:SteamsteamappscommonFar Cry 3binFC3UpdaterSteam.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{D7B4C5E7-8127-411C-A211-A94805472B29}] => (Allow) D:SteamsteamappscommonDark ForcesDosBoxdosbox.exe => No File
FirewallRules: [{5D8B8290-6D49-4C71-8906-44C2A90F146D}] => (Allow) D:SteamsteamappscommonDark ForcesDosBoxdosbox.exe => No File
FirewallRules: [{35CD6D88-23D5-44C1-A4B9-A5A5D754B557}] => (Allow) C:WindowsSysWOW64PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{B4197928-5019-417C-908D-9F327131D87D}] => (Allow) C:WindowsSysWOW64PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{EF8E36B5-8CBE-468E-8850-886EA2302D2E}] => (Allow) C:WindowsSysWOW64PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{A9B034FE-57BB-4E1D-9C41-D5B1DAD336F5}] => (Allow) C:WindowsSysWOW64PnkBstrB.exe (Even Balance, Inc. -> )
Firew allRules: [{887BB810-3455-4783-A1C2-165242D3B95C}] => (Allow) D:SteamsteamappscommonFar Cry 3binfarcry3.exe (Ubisoft Entertainment -> Ubisoft Entertainment)
FirewallRules: [{A56F4E1B-C708-4106-B8C2-2B55A5C03FEC}] => (Allow) D:SteamsteamappscommonFar Cry 3binfarcry3.exe (Ubisoft Entertainment -> Ubisoft Entertainment)
FirewallRules: [{7366C27E-C759-43F4-B0C0-9A702F9E250C}] => (Allow) D:SteamsteamappscommonFar Cry 3binfarcry3_d3d11.exe (Ubisoft Entertainment -> Ubisoft Entertainment)
FirewallRules: [{19FE88C2-846D-4469-8590-C0AFA3046FAC}] => (Allow) D:SteamsteamappscommonFar Cry 3binfarcry3_d3d11.exe (Ubisoft Entertainment -> Ubisoft Entertainment)
FirewallRules: [{145BEA9D-C97F-4C2C-A769-65C1B386A435}] => (Allow) D:SteamsteamappscommonHalf-Lifehl.exe (Valve -> Valve)
FirewallRules: [{FAB70914-25A2-43F7-BD90-901E6A38B87C}] => (Allow) D:SteamsteamappscommonHalf-Lifehl.exe (Valve -> Valve)
FirewallRules: [{98BBD71A-144F-4502-9044-FA9ACBE22DCD}] => (Allow) D:Steamsteamappscommonleft 4 deadleft4dead.exe () [File not signed]
FirewallRules: [{70A992D3-C1A3-4BB8-A289-51E4E78CB3F2}] => (Allow) D:Steamsteamappscommonleft 4 deadleft4dead.exe () [File not signed]
FirewallRules: [{6EDA6BFB-0913-48E0-824C-F32317C1BAC1}] => (Allow) C:Program Files (x86)Steamsteamappscommonwallpaper_enginebindiagnostics32.exe (Skutta, Kristjan -> )
FirewallRules: [{A9CD9236-8678-4A08-B389-137666FF0FD6}] => (Allow) C:Program Files (x86)Steamsteamappscommonwallpaper_enginebindiagnostics32.exe (Skutta, Kristjan -> )
FirewallRules: [{4614F4E9-BA0D-43B8-8634-8731B681881D}] => (Allow) C:Program Files (x86)GoogleChromeApplicationchrome.exe (Google LLC -> Google LLC)
FirewallRules: [{628BB0F7-ECCC-46D2-929B-43602224A097}] => (Allow) D:SteamsteamappscommonPortal Stories Melportal2.exe () [File not signed]
FirewallRules: [{397C1B7B-EC19-4688-BC4C-B8C4CF9A581E}] => (Allow) D:SteamsteamappscommonPortal Stories Melportal2.exe () [File not signed]
FirewallRules: [{54E574A9-D436-4C1A-8F67-D734DBC58874}] => (Allow) D:SteamsteamappscommonGrand Theft Auto IVGTAIVPlayGTAIV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{EFE27255-14EF-4991-A9F8-4430679E82FA}] => (Allow) D:SteamsteamappscommonGrand Theft Auto IVGTAIVPlayGTAIV.exe (Rockstar Games, Inc. -> Rockstar Games)
==================== Restore Points =========================
04-01-2022 22:19:00 Zaplanowany punkt kontrolny
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (01/03/2022 09:24:11 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optymalizator magazynów nie może zakończyć operacji ograniczenie ponowne na Windows (C:) z następującego powodu: Żądana operacja nie jest obsługiwana przez sprzęt obsługujący wolumin. (0x8900002A)
Error: (01/02/2022 06:10:16 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury QueryFullProcessImageNameW. hr = 0x80070006, Nieprawidłowe dojście.
.
Operacja:
Wykonywanie operacji asynchronicznej
Kontekst:
Stan bieżący: DoSnapshotSet
Error: (12/31/2021 11:55:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: VRChat.exe, wersja: 2019.4.31.23231, sygnatura czasowa: 0x6152dd43
Nazwa modułu powodującego błąd: UnityPlayer.dll, wersja: 2019.4.31.23231, sygnatura czasowa: 0x6152de59
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x00000000005a99f0
Identyfikator procesu powodującego błąd: 0x2898
Godzina uruchomienia aplikacji powodującej błąd: 0x01d7fe98fda45f39
Ścieżka aplikacji powodującej błąd: C:Program Files (x86)SteamsteamappscommonVRChatVRChat.exe
Ścieżka modułu powodującego błąd: C:Program Files (x86)SteamsteamappscommonVRChatUnityPlayer.dll
Identyfikator raportu: ffdad44a-70d0-4715-9ec0- b6a1330cd874
Pełna nazwa pakietu powodującego błąd:
Identyfikator aplikacji względem pakietu powodującego błąd:
Error: (12/30/2021 08:50:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: RocketLeague.exe, wersja: 1.0.10897.0, sygnatura czasowa: 0x619d66f5
Nazwa modułu powodującego błąd: EOSSDK-Win64-Shipping.dll, wersja: 1.13.0.0, sygnatura czasowa: 0x616a18ef
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x000000000040677f
Identyfikator procesu powodującego błąd: 0x53c
Godzina uruchomienia aplikacji powodującej błąd: 0x01d7fdb10bbe3a01
Ścieżka aplikacji powodującej błąd: D:GRYrocketleagueBinariesWin64RocketLeague.exe
Ścieżka modułu powodującego błąd: D:GRYrocketleagueBinariesWin64EOSSDK-Win64-Shipping.dll
Identyfikator raportu: a9b72c48-8e1c-43d2-b466-c7ef74e27eb0
Pełna nazwa pakietu powodującego błąd:
Identyfikator aplikacji względem pakietu powodującego błąd:
Error: (12/30/2021 07:51:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: hl.exe, wersja: 1.1.1.1, sygnatura czasowa: 0x5f28cd59
Nazwa modułu powodującego błąd: crashhandler.dll, wersja: 6.96.74.78, sygnatura czasowa: 0x61bbc018
Kod wyjątku: 0xc0000409
Przesunięcie błędu: 0x0002b241
Identyfikator procesu powodującego błąd: 0x1e64
Godzina uruchomienia aplikacji powodującej błąd: 0x01d7fda65f84a67e
Ścieżka aplikacji powodującej błąd: D:SteamsteamappscommonHalf-Lifehl.exe
Ścieżka modułu powodującego błąd: C:Program Files (x86)Steamcrashhandler.dll
Identyfikator raportu: 97ce5f64-3531-4b1f-b54c-a3c58fe7386d
Pełna nazwa pakietu powodującego błąd:
Identyfikator aplikacji względem pakietu powodującego błąd:
Error: (12/27/2021 02:23:14 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: PaintTheTownRed.exe, wersja: 2020.3.3.25184, sygnatura czasowa: 0x605fddc8
Nazwa modułu powodującego błąd: GameAssembly.dll, wersja: 0.0.0.0, sygnatura czasowa: 0x61c92baa
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x0000000000340d86
Identyfikator procesu powodującego błąd: 0x3250
Godzina uruchomienia aplikacji powodującej błąd: 0x01d7fb1ebc3ce284
Ścieżka aplikacji powodującej błąd: D:SteamsteamappscommonPaint the Town RedPaintTheTownRed.exe
Ścieżka modułu powodującego błąd: D:SteamsteamappscommonPaint the Town RedGameAssembly.dll
Identyfikator raportu: fc60d97a-c362-4299-845f-2dc3c984ce8d
Pełna nazwa pakietu powodującego błąd:
Identyfikator aplikacji względem pakietu powodującego błąd:
Error: (12/20/2021 05:13:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: hl2.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x6142721b
Nazwa modułu powodującego błąd: filesystem_stdio.dll, wersja: 0.0.0.0, sygnatura czasowa: 0x61bd243d
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x000025c0
Identyfikator procesu powodującego błąd: 0x38c4
Godzina uruchomienia aplikacji powodującej błąd: 0x01d7f5bbfe9c6be0
Ścieżka aplikacji powodującej błąd: D:SteamsteamappscommonTeam Fortress 2hl2.exe
Ścieżka modułu powodującego błąd: D:SteamsteamappscommonTeam Fortress 2binfilesystem_stdio.dll
Identyfikator raportu: 90c1ea7e-57a8-4a27-be0b-99c29cfa5ce5
Pełna nazwa pakietu powodującego błąd:
Identyfikator aplikacji względem pakietu powodującego błąd:
Error: (12/18/2021 06:48:37 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 12) (User: DESKTOP-7J71UVT)
Description: Microsoft.AAD.BrokerPlugin_cw5n1h2txyewy-2147 023878
System errors:
=============
Error: (01/08/2022 06:09:36 PM) (Source: Schannel) (EventID: 4103) (User: ZARZĄDZANIE NT)
Description: Wystąpił błąd krytyczny podczas tworzenia poświadczeń TLS klient. Stan błędu wewnętrznego: 10013.
Error: (01/07/2022 06:06:57 PM) (Source: Schannel) (EventID: 4103) (User: ZARZĄDZANIE NT)
Description: Wystąpił błąd krytyczny podczas tworzenia poświadczeń TLS klient. Stan błędu wewnętrznego: 10013.
Error: (01/07/2022 06:06:45 PM) (Source: Schannel) (EventID: 4103) (User: ZARZĄDZANIE NT)
Description: Wystąpił błąd krytyczny podczas tworzenia poświadczeń TLS klient. Stan błędu wewnętrznego: 10013.
Error: (01/06/2022 09:13:05 PM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-7J71UVT)
Description: Model DCOM odebrał błąd 1053 podczas próby uruchomienia usługi BcastDVRUserService_8c61169f z argumentami Niedostępny w celu uruchomienia serwera:
Windows.Media.Capture.Internal.AppCaptureShell
Error: (01/06/2022 09:13:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Usługa użytkownika DVR z gry i transmisja_8c61169f z powodu następującego błędu:
Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie.
Error: (01/06/2022 09:13:04 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Usługa użytkownika DVR z gry i transmisja_8c61169f.
Error: (01/04/2022 10:02:52 PM) (Source: Schannel) (EventID : 4103) (User: ZARZĄDZANIE NT)
Description: Wystąpił błąd krytyczny podczas tworzenia poświadczeń TLS klient. Stan błędu wewnętrznego: 10013.
Error: (01/04/2022 12:06:04 AM) (Source: volsnap) (EventID: 25) (User: )
Description: Kopie w tle woluminu C: zostały usunięte, ponieważ nie można było powiększyć magazynu kopii w tle. Rozważ zmniejszenie obciążenia We/Wy w systemie lub wybierz wolumin magazynu kopii w tle, który nie jest kopiowany w tle.
CodeIntegrity:
===============
Date: 2022-01-08 18:11:36
Description:
Code Integrity determined that a process (DeviceHarddiskVolume3WindowsSystem32svchost.exe) attempted to load DeviceHarddiskVolume3Program FilesNorton SecurityNorton SecurityEngine22.21.11.46symamsi.dll that did not meet the Windows signing level requirements.
Date: 2022-01-08 11:44:02
Description:
Code Integrity determined that a process (DeviceHarddiskVolume3WindowsSystem32SIHClient.exe) attempted to load DeviceHarddiskVolume3Program FilesNorton SecurityNorton SecurityEngine22.21.11.46symamsi.dll that did not meet the Windows signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 2002 09/20/2016
Motherboard: A SUSTeK COMPUTER INC. H110M-D
Processor: Intel® Core™ i7-6700 CPU @ 3.40GHz
Percentage of memory in use: 50%
Total physical RAM: 16320.33 MB
Available physical RAM: 8122.88 MB
Total Virtual: 22819.47 MB
Available Virtual: 11262.68 MB
==================== Drives ================================
Drive c: (Windows) (Fixed) (Total:249.35 GB) (Free:17.97 GB) NTFS
Drive d: (DATA) (Fixed) (Total:681.07 GB) (Free:68.12 GB) NTFS
\?Volume{2cc5fdfc-e689-4fe5-a27e-a85e25ca15a6} () (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
\?Volume{45487371-e36b-49e1-ae6f-6039d74e6d76} (SYSTEM) (Fixed) (Total:0.44 GB) (Free:0.41 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 36939A5E)
Partition: GPT.
==================== End of Addition.txt ======= ================
.