Additional scan result of Farbar Recovery Scan Tool (x86) Version: 09-05-2015 Ran by Kris at 2015-05-12 21:31:25 Running from C:\Users\Kris\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-253979043-1355852229-1747663412-500 - Administrator - Disabled) Gość (S-1-5-21-253979043-1355852229-1747663412-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-253979043-1355852229-1747663412-1003 - Limited - Enabled) jjjj (S-1-5-21-253979043-1355852229-1747663412-1004 - Administrator - Enabled) => C:\Users\jjjj Kris (S-1-5-21-253979043-1355852229-1747663412-1000 - Administrator - Enabled) => C:\Users\Kris ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 14 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.4.154 - Adobe Systems, Inc.) Advertising Center (Version: 0.0.0.2 - Nero AG) Hidden Age of Empires III (HKLM\...\InstallShield_{7B9CC60A-9B81-46A3-A953-76B6BF9EEC97}) (Version: 1.00.0000 - Microsoft Game Studios) Age of Empires III (Version: 1.00.0000 - Microsoft Game Studios) Hidden AION Free-to-Play (HKLM\...\{82E73E8D-E1E7-45A4-A311-6D31492AA913}_is1) (Version: - Gameforge) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.10.0.0 - Asmedia Technology) ASUS VGA Driver (Version: 3.0.0.1 - Nazwa firmy) Hidden ATI AVIVO Codecs (Version: 11.6.0.10405 - ATI Technologies Inc.) Hidden ATI Catalyst Install Manager (HKLM\...\{9B04F6E4-E1FA-FB84-D061-8075221E75F6}) (Version: 3.0.820.0 - ATI Technologies, Inc.) Battlefield 3™ (HKLM\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlefield Play4Free (HKU\S-1-5-21-253979043-1355852229-1747663412-1000\...\{87686C21-8A15-4b4d-A3F1-11141D9BE094}) (Version: - EA Digital illusions) Battlelog Web Plugins (HKLM\...\Battlelog Web Plugins) (Version: 2.6.2 - EA Digital Illusions CE AB) Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Dragon Age: Origins (HKLM\...\{AEC81925-9C76-4707-84A9-40696C613ED3}) (Version: 1.05.0.0 - Electronic Arts) Dragon's Prophet (HKLM\...\{C31556D7-F2B9-4787-B223-F7A035067E89}_is1) (Version: 2.2.1523.32 - Infernum Productions AG) Factorio version 0.11.22 (HKLM\...\Factorio_is1) (Version: - ) FileZilla Client 3.10.3 (HKU\S-1-5-21-253979043-1355852229-1747663412-1000\...\FileZilla Client) (Version: 3.10.3 - Tim Kosse) Firefall (HKLM\...\Steam App 227700) (Version: - Red 5 Studios) Gameforge Live 2.0.6 (HKLM\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.6 - Gameforge) Gear Up (HKLM\...\Steam App 214420) (Version: - Doctor Entertainment AB) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Google Chrome (HKLM\...\Google Chrome) (Version: 42.0.2311.135 - Google Inc.) Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden HAWKEN (HKLM\...\Steam App 271290) (Version: - Adhesive Games) Hi-Rez Studios Authenticate and Update Service (HKLM\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) HydraVision (Version: 4.2.188.0 - ATI Technologies Inc.) Hidden ImagXpress (Version: 7.0.74.0 - Nero AG) Hidden Java 7 Update 65 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217065FF}) (Version: 7.0.650 - Oracle) Java(TM) 6 Update 22 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216022FF}) (Version: 6.0.220 - Oracle) Korner 5 (HKLM\...\Korner 5(4.996)) (Version: (4.996) - IDC Games) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Mount&Blade (HKLM\...\Mount&Blade) (Version: - ) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Nero 9 Essentials (HKLM\...\{4e44b3b3-f919-437c-a783-0bcaf94768bb}) (Version: - Nero AG) No Man's Land (HKLM\...\No Man's Land) (Version: - ) NVIDIA PhysX (HKLM\...\{64467D47-FFE4-4FBC-ABBA-A0DB829A17EB}) (Version: 9.12.0613 - NVIDIA Corporation) OpenOffice.org 3.3 (HKLM\...\{EB87675F-5281-4767-A54B-31931794C23D}) (Version: 3.3.9567 - OpenOffice.org) Origin (HKLM\...\Origin) (Version: 9.3.6.4639 - Electronic Arts, Inc.) PunkBuster Services (HKLM\...\PunkBusterSvc) (Version: 0.990 - Even Balance, Inc.) REALTEK Wireless LAN Driver and Utility (HKLM\...\{9C049499-055C-4a0c-A916-1D12314F45EB}) (Version: 1.00.0179 - REALTEK Semiconductor Corp.) Robocraft version 0.3.290 (HKU\S-1-5-21-253979043-1355852229-1747663412-1000\...\{9F101691-69D3-422E-BB5C-8CAD7110781B}_is1) (Version: 0.3.290 - Freejam) Skype™ 6.21 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.) Steam (HKLM\...\Steam) (Version: - Valve Corporation) Stronghold Kingdoms (HKLM\...\{D1D632A2-E249-466D-A094-B1B934D37645}_is1) (Version: 1.17 - Firefly Studios) swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TeamSpeak 3 Client (HKU\S-1-5-21-253979043-1355852229-1747663412-1000\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) The Sims™ 3 (HKLM\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.42.130 - Electronic Arts) The Sims™ 4 (HKLM\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.6.69.1020 - Electronic Arts Inc.) Tibia (HKLM\...\Tibia_is1) (Version: 8.60 - CipSoft GmbH) Tom Clancy's Ghost Recon Phantoms - EU (HKLM\...\Steam App 272350) (Version: - Ubisoft Singapore) Tribes Ascend (HKLM\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF010}) (Version: 1.0.1268.1 - Hi-Rez Studios) Unity Web Player (HKU\S-1-5-21-253979043-1355852229-1747663412-1000\...\UnityWebPlayer) (Version: 4.6.0f3 - Unity Technologies ApS) War of the Roses (HKLM\...\Steam App 42160) (Version: - Fatshark) Warface Launcher (Beta) (HKLM\...\{28D1723C-31C4-4A83-9799-DFFB3739026D}) (Version: 1.0.0 - Crytek GmbH) Wind of Luck Arena (HKLM\...\Wind of Luck Arena) (Version: 0.9.0 (Beta) - Trazzy Entertainment Ltd.) Wizard101(PL) (HKU\S-1-5-21-253979043-1355852229-1747663412-1000\...\Wizard101(PL)_is1) (Version: - Gameforge 4D GmbH) Xiph.Org Open Codecs 0.85.17777 (HKLM\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org) XSplit Gamecaster (HKLM\...\{031899A3-1B82-49FE-A647-345A44515756}) (Version: 1.9.1408.1513 - SplitmediaLabs) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-253979043-1355852229-1747663412-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\Kris\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS) ==================== Restore Points ========================= 31-03-2015 16:31:10 Installed Warframe 31-03-2015 16:32:47 Zainstalowany program DirectX 15-04-2015 20:29:31 Windows Update 19-04-2015 13:25:00 Zainstalowany program DirectX 22-04-2015 20:33:02 Zainstalowany program DirectX 23-04-2015 06:58:06 Removed Warframe 06-05-2015 18:18:31 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2015-03-22 14:34 - 2015-03-22 14:37 - 00000927 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 genuine.microsoft.com 127.0.0.1 mpa.one.microsoft.com 127.0.0.1 sls.microsoft.com ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {1B10433F-9326-4919-9AA5-A6D5237B6D65} - System32\Tasks\{AACA078A-FC87-464C-A91B-BF0C2FBD0D19} => C:\Users\Kris\Desktop\SpaceEngineers.exe [2014-04-19] (Keen Software House) Task: {1BCC4028-EB4E-470B-89BC-BD72E2066003} - System32\Tasks\{6A24CA74-627C-4027-8E7C-F54592A0F265} => pcalua.exe -a C:\Users\Kris\Downloads\CreativeOne-Setup.exe -d C:\Users\Kris\Downloads Task: {39F58EE3-23E3-4E11-BC76-39CCB661A279} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-07-28] (Google Inc.) Task: {A3CA3466-2206-47B9-BE87-D1C45624E343} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-07-28] (Google Inc.) Task: {AE9D1EEF-4354-4BCC-BFB8-B4787B0BF93D} - System32\Tasks\{AD6F751E-E486-4B48-8E42-DBE01F33B26D} => C:\Users\Kris\Desktop\SpaceEngineers.exe [2014-04-19] (Keen Software House) Task: {B87C4EBA-4336-448C-86ED-CA6DB8255BBE} - System32\Tasks\ASUS\RunDAOD => C:\Windows\DAODx.exe [2009-03-30] () Task: {E7CF3C50-B94C-4121-8CFB-1A8AACCB4DB6} - System32\Tasks\{A4C04B9C-7871-4EA2-A143-632B6A9445D2} => C:\Users\Kris\AppData\Local\Warframe\Downloaded\Public\Tools\Launcher.exe (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== 2011-04-05 22:13 - 2011-04-05 22:13 - 00065024 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2014-08-04 11:31 - 2015-05-04 17:22 - 00076888 _____ () C:\Windows\system32\PnkBstrA.exe 2015-03-29 12:29 - 2015-03-29 12:29 - 00039384 _____ () D:\Game\FileZilla FTP Client\fzshellext.dll 2014-07-27 16:34 - 2009-12-09 21:20 - 00126976 _____ () C:\Program Files\REALTEK\11n USB Wireless LAN Utility\EnumDevLib.dll 2011-04-05 22:12 - 2011-04-05 22:12 - 00095232 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2011-03-14 14:20 - 2011-03-14 14:20 - 00430080 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll 2011-03-14 14:20 - 2011-03-14 14:20 - 00032768 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Branding\BrandingResources.dll 2011-04-05 22:16 - 2011-04-05 22:16 - 00243712 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2009-03-30 08:32 - 2009-03-30 08:32 - 00032768 ____R () C:\Windows\DAODx.exe 2015-04-30 14:16 - 2015-04-28 04:07 - 01252680 _____ () C:\Program Files\Google\Chrome\Application\42.0.2311.135\libglesv2.dll 2015-04-30 14:16 - 2015-04-28 04:07 - 00080712 _____ () C:\Program Files\Google\Chrome\Application\42.0.2311.135\libegl.dll 2015-04-30 14:16 - 2015-04-28 04:07 - 14980424 _____ () C:\Program Files\Google\Chrome\Application\42.0.2311.135\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, the associated entry will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-253979043-1355852229-1747663412-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Kris\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 31.130.96.142 - 195.238.168.2 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (whitelisted) =============== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{AF74FFC9-53EB-4ABA-AA47-ED910ED77652}] => (Allow) C:\Program Files\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{6478B198-5955-4356-B914-0D15FC558512}] => (Allow) C:\Program Files\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{89EFF792-0838-400E-B481-4E6FF544049C}] => (Allow) LPort=1542 FirewallRules: [{ABACF83B-224C-4E40-8167-F1C8BD5DCBF6}] => (Allow) LPort=1542 FirewallRules: [{506BB3A5-4AA5-4914-8B51-091DA199E19D}] => (Allow) LPort=53 FirewallRules: [TCP Query User{7399C774-DFFB-4508-B48F-D0625128EA78}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{AC687AC3-9449-4D65-AAF7-A72BBE96137D}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [{9B224D1C-45F8-4732-B8AE-DF18FF64947B}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{675B129F-9634-4D57-AE6B-2D88CB207C19}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [{8D5A58A2-CBDA-43EC-8269-8298209CE668}] => (Allow) C:\Windows\System32\PnkBstrA.exe FirewallRules: [{3ECCEFD3-8D41-4A0F-871E-44B213AC7627}] => (Allow) C:\Windows\System32\PnkBstrA.exe FirewallRules: [{1F5432FA-81E3-4245-B67E-618F38E9DED0}] => (Allow) C:\Windows\System32\PnkBstrB.exe FirewallRules: [{77E34BDD-78D6-42C9-A134-3BA7008EDD7C}] => (Allow) C:\Windows\System32\PnkBstrB.exe FirewallRules: [TCP Query User{1CBED06D-BB18-431F-9617-7A468B0C1B5C}E:\tibia\utherverse vww client\utherverse.exe] => (Allow) E:\tibia\utherverse vww client\utherverse.exe FirewallRules: [UDP Query User{E8A07FCD-8A82-48AB-BBAA-2988F84FC214}E:\tibia\utherverse vww client\utherverse.exe] => (Allow) E:\tibia\utherverse vww client\utherverse.exe FirewallRules: [TCP Query User{82E3C73D-210F-4164-973D-F8412A6F0CFA}C:\program files\java\jre7\bin\javaw.exe] => (Block) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{8E6B9733-CC6B-46FB-88E8-43DFCCC6B7CF}C:\program files\java\jre7\bin\javaw.exe] => (Block) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [{355FC9B5-6E05-4A61-996A-C329DC9283AF}] => (Allow) D:\Program Files\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{75442E0C-AF68-4075-9B9F-5EEBF12EF353}] => (Allow) D:\Program Files\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{868D2C0A-7939-4736-9BFF-48B135F865FD}] => (Allow) E:\Steam\Steam.exe FirewallRules: [{95CFBD8E-C950-4C7C-A9B7-53C7DA7683DE}] => (Allow) E:\Steam\Steam.exe FirewallRules: [{65AEB16B-1D12-48E8-8FB4-D1A4342838D0}] => (Allow) E:\Steam\bin\steamwebhelper.exe FirewallRules: [{B9348B37-C477-42B5-8BBC-B46A87B2C618}] => (Allow) E:\Steam\bin\steamwebhelper.exe FirewallRules: [{313BCE87-822F-4CBC-B747-F0CBE5EC2E91}] => (Allow) D:\Program Files\Origin Games\Dragon Age\bin_ship\daorigins.exe FirewallRules: [{2144C518-F390-4A32-9400-728D51F2D076}] => (Allow) D:\Program Files\Origin Games\Dragon Age\bin_ship\daorigins.exe FirewallRules: [{B6957BDC-1959-41A7-AB9C-25E7CFFDA877}] => (Allow) E:\Steam\SteamApps\common\Hawken\Binaries\Win32\HawkenGame-Win32-Shipping.exe FirewallRules: [{41FA0A22-0E7E-402B-99FF-1AA7281899F7}] => (Allow) E:\Steam\SteamApps\common\Hawken\Binaries\Win32\HawkenGame-Win32-Shipping.exe FirewallRules: [{A56A66A8-569F-41FE-95B6-6BB090BC7292}] => (Allow) E:\Steam\SteamApps\common\Warframe\Tools\Launcher.exe FirewallRules: [{47BBA0BA-30B6-4F2A-A015-933FA4FFEE11}] => (Allow) E:\Steam\SteamApps\common\Warframe\Tools\Launcher.exe FirewallRules: [{A5B3CACA-B752-4B68-A176-A5893F4DA1D7}] => (Allow) E:\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{4F58700C-813B-490E-857F-1B585239EBD6}] => (Allow) E:\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{2C3FDD8D-F040-40B9-AFE2-BC74C98C07CE}] => (Allow) E:\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{77FF43BF-8F6E-4EAE-AA5D-58080576DF4F}] => (Allow) E:\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{A4C86B24-1FE9-4343-9E61-ECCD17FFF41C}] => (Allow) E:\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{0DFDE7D2-B2B0-44C8-96EE-4A5275132FC4}] => (Allow) E:\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{3078B163-C73F-457C-961D-E18C8399BC0C}] => (Allow) E:\Steam\steamapps\common\Warframe\Tools\Launcher.exe FirewallRules: [{B2B39A21-980B-4ADB-8C49-24293DB13F29}] => (Allow) E:\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe FirewallRules: [TCP Query User{C37D5D05-178F-48E9-B8B7-C4859D15B70F}C:\program files\microsoft games\age of empires iii\age3.exe] => (Block) C:\program files\microsoft games\age of empires iii\age3.exe FirewallRules: [UDP Query User{42CB2EC2-8F0B-4CC5-8BE9-00164F6B3B6E}C:\program files\microsoft games\age of empires iii\age3.exe] => (Block) C:\program files\microsoft games\age of empires iii\age3.exe FirewallRules: [{32B2C980-44D9-432F-860D-78F5E9FF5E09}] => (Allow) E:\Steam\SteamApps\common\Tom Clancy's Ghost Recon Phantoms - EU\Launcher.exe FirewallRules: [{0179037A-CA37-4375-9072-FBC1F198AE91}] => (Allow) E:\Steam\SteamApps\common\Tom Clancy's Ghost Recon Phantoms - EU\Launcher.exe FirewallRules: [TCP Query User{2C7D7354-8A64-499D-A2E7-80413B32F58C}E:\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe] => (Allow) E:\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe FirewallRules: [UDP Query User{CC56123B-D9B8-4CA3-B0BA-A370870F4150}E:\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe] => (Allow) E:\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe FirewallRules: [TCP Query User{7B72B58B-D5C5-44F4-83D0-A08ABC2D89DA}D:\hirezgames\tribes\binaries\win32\tribesascend.exe] => (Allow) D:\hirezgames\tribes\binaries\win32\tribesascend.exe FirewallRules: [UDP Query User{53C03BFF-847A-49F3-AC4D-88B296CB69E0}D:\hirezgames\tribes\binaries\win32\tribesascend.exe] => (Allow) D:\hirezgames\tribes\binaries\win32\tribesascend.exe FirewallRules: [TCP Query User{97C93700-BA6F-487B-8E83-0C3A1CD1B66B}D:\launcher.exe] => (Allow) D:\launcher.exe FirewallRules: [UDP Query User{0518595F-CB00-4269-A226-A05E8C390578}D:\launcher.exe] => (Allow) D:\launcher.exe FirewallRules: [TCP Query User{31B42DB3-1131-4EDA-87B6-7051FD3781C6}D:\game\wola.exe] => (Allow) D:\game\wola.exe FirewallRules: [UDP Query User{23216831-5F8B-4DB4-BAF6-5CD4DF0A80E8}D:\game\wola.exe] => (Allow) D:\game\wola.exe FirewallRules: [TCP Query User{6917244E-4513-4251-9E36-83EE9C5D9F00}D:\game\port royale\portroyale.exe] => (Block) D:\game\port royale\portroyale.exe FirewallRules: [UDP Query User{16E2322D-BB84-4A78-B1D4-D2FC93E8C625}D:\game\port royale\portroyale.exe] => (Block) D:\game\port royale\portroyale.exe FirewallRules: [{C61F2D7B-313A-4367-91B5-A4D99E4467AA}] => (Allow) E:\Steam\SteamApps\common\GearUp\bin\Traktor.Amalgam.App.exe FirewallRules: [{D1B45794-777A-4FE0-95AB-1DF4C49EAC8C}] => (Allow) E:\Steam\SteamApps\common\GearUp\bin\Traktor.Amalgam.App.exe FirewallRules: [{F5BA0394-C85E-43B9-B3A7-492B5E60655A}] => (Allow) E:\Steam\SteamApps\common\War of the Roses\run_game.exe FirewallRules: [{63DC47B9-73C6-401A-8032-DFFCAB71E082}] => (Allow) E:\Steam\SteamApps\common\War of the Roses\run_game.exe FirewallRules: [{D47BAF77-0146-4905-96EC-6D0BC8D3297E}] => (Allow) D:\Game\Downloaded\Public\Warframe.exe FirewallRules: [{0F22C9D2-335F-41D3-A1DE-F64554704D97}] => (Allow) D:\Game\Downloaded\Public\Warframe.x64.exe FirewallRules: [{4357B81C-4932-403A-AC49-627C230D0E66}] => (Allow) D:\Game\Downloaded\Public\Warframe.exe FirewallRules: [{4B4C0BF4-288F-41BF-ACB4-69A0B178C0EB}] => (Allow) D:\Game\Downloaded\Public\Warframe.x64.exe FirewallRules: [{EDE42FD0-B44F-467D-928E-D4FA8EF9277D}] => (Allow) C:\Users\Kris\AppData\Local\Warframe\Downloaded\Public\Tools\Launcher.exe FirewallRules: [{C5162431-A750-4CAA-8A89-8AF17B1F8065}] => (Allow) D:\Game\Downloaded\Public\Tools\RemoteCrashSender.exe FirewallRules: [{852729FD-0DA9-4D65-9EF1-248E9BD447CE}] => (Allow) D:\Game\Downloaded\Public\Warframe.exe FirewallRules: [{C97BC67B-FD37-4F4B-AE1D-C9937E769DF6}] => (Allow) D:\Game\Downloaded\Public\Warframe.x64.exe FirewallRules: [{7876DB36-4998-42C1-B8D0-0FA2AC92C695}] => (Allow) D:\Game\Downloaded\Public\Warframe.exe FirewallRules: [{107E3C31-A194-4DDE-9AEC-AA7175B6EFDB}] => (Allow) D:\Game\Downloaded\Public\Warframe.x64.exe FirewallRules: [{04379F72-2114-4309-90E1-FA61909F7388}] => (Allow) C:\Users\Kris\AppData\Local\Warframe\Downloaded\Public\Tools\Launcher.exe FirewallRules: [{D45767A1-AABB-4141-B2CD-3C485DE345B7}] => (Allow) D:\Game\Downloaded\Public\Tools\RemoteCrashSender.exe FirewallRules: [TCP Query User{4F785F25-55FE-47FC-9E71-6BD1C61BE7B1}D:\game\gry\wotlauncher.exe] => (Allow) D:\game\gry\wotlauncher.exe FirewallRules: [UDP Query User{CFC009B8-EA87-4B5B-AD81-B14158A16610}D:\game\gry\wotlauncher.exe] => (Allow) D:\game\gry\wotlauncher.exe FirewallRules: [TCP Query User{9A49B7CC-0FA1-44E0-ABA8-94A1DF777093}D:\game\gry\worldoftanks.exe] => (Allow) D:\game\gry\worldoftanks.exe FirewallRules: [UDP Query User{259186EF-B8A9-4D66-A895-B1CDE4196B67}D:\game\gry\worldoftanks.exe] => (Allow) D:\game\gry\worldoftanks.exe FirewallRules: [{06C50226-0666-40BC-972A-36F7275152A2}] => (Allow) D:\Game\gry\GameforgeLive\gfl_client.exe FirewallRules: [TCP Query User{91EF1A32-3F26-4DDB-8150-1528A6AF7EEE}D:\game\gry\gameforgelive\games\pol_pol\aion\nclauncher.exe] => (Allow) D:\game\gry\gameforgelive\games\pol_pol\aion\nclauncher.exe FirewallRules: [UDP Query User{2F265763-09B7-4ED5-BD95-590F4CBD5B2E}D:\game\gry\gameforgelive\games\pol_pol\aion\nclauncher.exe] => (Allow) D:\game\gry\gameforgelive\games\pol_pol\aion\nclauncher.exe FirewallRules: [{2596022C-2DF7-40B4-BD86-FBB8EAFE141D}] => (Allow) D:\Game\gry\Dragon's Prophet\Dragon's Prophet\launcher.exe FirewallRules: [{AC682E6A-FBA4-4D28-BF68-AE989AEAA541}] => (Allow) D:\Game\gry\Dragon's Prophet\Dragon's Prophet\launcher.exe FirewallRules: [{7F96A2C2-41B0-4101-8E7C-81125C7C78E4}] => (Allow) D:\Game\gry\Dragon's Prophet\Dragon's Prophet\dp_x86.exe FirewallRules: [{202D0EC9-79E6-4B07-A779-9646E87D67E9}] => (Allow) D:\Game\gry\Dragon's Prophet\Dragon's Prophet\dp_x86.exe FirewallRules: [{5E23E6DC-1FF3-4C95-9CC9-E7817F5B9CFB}] => (Allow) D:\Game\gry\Dragon's Prophet\Dragon's Prophet\dp_x64.exe FirewallRules: [{7422FE14-59E3-4954-9C85-F62F335D2565}] => (Allow) D:\Game\gry\Dragon's Prophet\Dragon's Prophet\dp_x64.exe FirewallRules: [{E7F251EA-0863-4DBA-A326-3EBDBCB0AA62}] => (Allow) E:\Steam\SteamApps\common\Firefall\system\bin\FirefallClient.exe FirewallRules: [{1587A968-C71B-4B1B-AFE8-1D845078051F}] => (Allow) E:\Steam\SteamApps\common\Firefall\system\bin\FirefallClient.exe FirewallRules: [{023549F1-227C-41B7-86AE-F52E1B154DF0}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{BEE0DB12-4D01-4204-A7F9-2A2F2704F733}D:\game\gry\bfp4f.exe] => (Allow) D:\game\gry\bfp4f.exe FirewallRules: [UDP Query User{EB5F26C9-BA9B-4ADD-8F0A-71160CA43B00}D:\game\gry\bfp4f.exe] => (Allow) D:\game\gry\bfp4f.exe FirewallRules: [{D7DA9C17-8896-4695-94FB-6065793553F2}] => (Allow) D:\Program Files\Origin Games\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{FB677D36-5F83-4CBB-9C11-904062082CD1}] => (Allow) D:\Program Files\Origin Games\The Sims 4\Game\Bin\TS4.exe ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (05/12/2015 08:21:18 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error: (05/12/2015 08:21:18 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error: (05/12/2015 05:20:06 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error: (05/12/2015 05:20:06 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error: (05/12/2015 05:07:47 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error: (05/12/2015 05:07:47 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error: (05/12/2015 04:34:46 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error: (05/12/2015 04:34:45 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error: (05/12/2015 04:26:30 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error: (05/12/2015 04:26:30 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 System errors: ============= Error: (05/12/2015 09:21:10 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: Wystąpił błąd podczas próby odczytu lokalnego pliku hosts. Error: (05/12/2015 08:21:14 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: Wystąpił błąd podczas próby odczytu lokalnego pliku hosts. Error: (05/12/2015 07:56:45 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} Error: (05/12/2015 07:19:56 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: Wystąpił błąd podczas próby odczytu lokalnego pliku hosts. Error: (05/12/2015 06:22:58 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: Wystąpił błąd podczas próby odczytu lokalnego pliku hosts. Error: (05/12/2015 05:20:01 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: Wystąpił błąd podczas próby odczytu lokalnego pliku hosts. Error: (05/12/2015 05:19:18 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: ZARZĄDZANIE NT) Description: Nastąpiło nieoczekiwane zatrzymanie modułu rozszerzalności sieci WLAN. Ścieżka modułu: C:\Windows\system32\Rtlihvs.dll Error: (05/12/2015 05:19:18 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: ZARZĄDZANIE NT) Description: Nastąpiło nieoczekiwane zatrzymanie modułu rozszerzalności sieci WLAN. Ścieżka modułu: C:\Windows\system32\Rtlihvs.dll Error: (05/12/2015 05:19:17 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: ZARZĄDZANIE NT) Description: Nastąpiło nieoczekiwane zatrzymanie modułu rozszerzalności sieci WLAN. Ścieżka modułu: C:\Windows\system32\Rtlihvs.dll Error: (05/12/2015 05:19:09 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0 niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. Microsoft Office Sessions: ========================= Error: (05/12/2015 08:21:18 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x000000000x00000001 Error: (05/12/2015 08:21:18 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: 0x800401F9 Error: (05/12/2015 05:20:06 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x000000000x00000001 Error: (05/12/2015 05:20:06 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: 0x800401F9 Error: (05/12/2015 05:07:47 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x000000000x00000001 Error: (05/12/2015 05:07:47 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: 0x800401F9 Error: (05/12/2015 04:34:46 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x000000000x00000001 Error: (05/12/2015 04:34:45 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: 0x800401F9 Error: (05/12/2015 04:26:30 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x000000000x00000001 Error: (05/12/2015 04:26:30 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: 0x800401F9 ==================== Memory info =========================== Processor: AMD Phenom(tm) II X2 565 Processor Percentage of memory in use: 56% Total physical RAM: 3034.46 MB Available physical RAM: 1323.98 MB Total Pagefile: 6067.23 MB Available Pagefile: 3871.29 MB Total Virtual: 2047.88 MB Available Virtual: 1884.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:117.09 GB) (Free:60.46 GB) NTFS Drive d: () (Fixed) (Total:117.19 GB) (Free:14 GB) NTFS Drive e: (Dysk lokalny) (Fixed) (Total:117.19 GB) (Free:75.83 GB) NTFS Drive f: (Dysk lokalny) (Fixed) (Total:114.2 GB) (Free:88.75 GB) NTFS Drive h: (Zastrzeżone przez system) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: EE4A3BFE) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=117.1 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=117.2 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=231.4 GB) - (Type=OF Extended) ==================== End Of Log ============================