Additional scan result of Farbar Recovery Scan Tool (x64) Version:13-06-2015 Ran by x at 2015-06-16 13:37:48 Running from C:\Users\x\Desktop\logi Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2124950284-226613669-3199816109-500 - Administrator - Disabled) ASPNET (S-1-5-21-2124950284-226613669-3199816109-1007 - Limited - Enabled) Gość (S-1-5-21-2124950284-226613669-3199816109-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2124950284-226613669-3199816109-1004 - Limited - Enabled) x (S-1-5-21-2124950284-226613669-3199816109-1000 - Administrator - Enabled) => C:\Users\x ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A} AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-2124950284-226613669-3199816109-1000\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated) Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.188 - Adobe Systems Incorporated) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.188 - Adobe Systems Incorporated) Age of Empires II HD (c) Microsoft Studios version 1 (HKLM-x32\...\QWdlIG9mIEVtcGlyZXMgSUkgSEQgKGMpIE1pY3Jvc29mdCBTdHVkaW9z_is1) (Version: 1 - ) Aktualizacje NVIDIA 16.13.42 (Version: 16.13.42 - NVIDIA Corporation) Hidden Archeage (HKLM-x32\...\Glyph Archeage) (Version: - Trion Worlds, Inc.) Aslain's WoT Modpack wersja 4.4.19 (HKLM-x32\...\ZRwTINhSZfduKONYrSCTiCiGPggQZdcLRvoAVxyCOXXpkHeC~1DC3968F_is1) (Version: 4.4.19 - Aslain) AutoIt v3.3.12.0 (HKLM-x32\...\AutoItv3) (Version: 3.3.12.0 - AutoIt Team) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Blade and Soul (HKLM-x32\...\{CEF766E5-6E15-441F-B14A-C44CB168DBE7}) (Version: 1.0.0 - PlayBns.com) CABAL Online (EU) (HKU\S-1-5-21-2124950284-226613669-3199816109-1000\...\CabalOnline(EU)) (Version: - ) CABAL Online (NA - Global) (HKU\S-1-5-21-2124950284-226613669-3199816109-1000\...\CabalOnline(NA - Global)) (Version: - ) CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.2.4478 - CDBurnerXP) CLEO 4.3 (HKLM-x32\...\{A8F37EB0-C741-41D7-8CAB-5B40ECEEF094}_is1) (Version: 4.3 - Seemann, Deji, Alien) CodeBlocks (HKU\S-1-5-21-2124950284-226613669-3199816109-1000\...\CodeBlocks) (Version: 10.05 - The Code::Blocks Team) Counter-Strike (HKLM-x32\...\Steam App 10) (Version: - Valve) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Crusader Kings II - Collection version 2.2.1 (HKLM-x32\...\{45E94465-16F2-4729-B94F-1ECAD1B88EFC}_is1) (Version: 2.2.1 - Yuzutu, Inc.) Crusader Kings II (HKLM-x32\...\Steam App 203770) (Version: - Paradox Development Studio) Crusader Kings II ver. 2.3.2.0 (HKLM-x32\...\{03202377-34HG-56DR-11F5-43DD6F7886AC}_is1) (Version: 2.3.2.0 - Paradox Interactive) Duel of Champions (HKU\S-1-5-21-2124950284-226613669-3199816109-1000\...\MMDoC-PDCLive) (Version: - Ubisoft) EA SPORTS FIFA World (HKLM-x32\...\{8F9AC744-EEF6-43DB-A4B6-FA1A18F1C640}) (Version: 9.5.0.61021 - Electronic Arts, Inc.) FormatFactory 3.5.1.0 (HKLM-x32\...\FormatFactory) (Version: 3.5.1.0 - Format Factory) Gameforge Live 2.0.5 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.5 - Gameforge) GameMaker-Studio 1.3 (HKU\S-1-5-21-2124950284-226613669-3199816109-1000\...\GameMaker-Studio13) (Version: - YoYo Games Ltd.) GameRanger (HKU\S-1-5-21-2124950284-226613669-3199816109-1000\...\GameRanger) (Version: - GameRanger Technologies) Gaming Mouse (HKLM-x32\...\{A7B243AA-6D4C-4575-A873-6F01A1EFC5E2}}_is1) (Version: - ) Gigabyte Raid Configurer (HKLM-x32\...\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.17.59.0 - GIGABYTE Technologies, Inc.) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Glyph (HKLM-x32\...\Glyph) (Version: - Trion Worlds, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.124 - Google Inc.) Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden Graph 4.4.2 (HKLM-x32\...\Graph_is1) (Version: - Ivan Johansen) Heroes of Might and Magic III (HKLM-x32\...\{8B743AA0-53B2-11D2-808A-00600895FB43}) (Version: 1.0 - ) Heroes of Might and Magic V - Dzikie Hordy (HKLM-x32\...\{0CF77150-B480-4F9F-8100-FF410AC86EE3}) (Version: 1.00.0000 - Ubisoft) Heroes of Might and Magic V - Dzikie Hordy (HKLM-x32\...\{ACC75323-DB4A-4f7f-9AF3-1D1DEFF2D1B5}_is1) (Version: - Ubisoft) Heroes of Might and Magic V - Tribes of the East (HKLM-x32\...\{ACC75323-DB4A-4F7F-9AF3-1D1DEFF2D1B5}) (Version: - ) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) inCloak VPN (HKLM-x32\...\{DFC5A448-F93F-48A0-AA3D-6FD0CD67A560}) (Version: 1.04 - inCloak Network Ltd.) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.6.0.1002 - Intel Corporation) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.328 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.328 - LogMeIn, Inc.) Hidden Medieval II Total War (HKLM-x32\...\{C0698BDA-0D29-40EE-8570-A31106DF9AB1}) (Version: 1.03.000 - SEGA) Medieval II Total War : Kingdoms : Americas (HKLM-x32\...\{75983B66-804C-40D1-BA13-64DAF652A6F1}) (Version: 1.05.000 - SEGA) Medieval II Total War : Kingdoms : Britannia (HKLM-x32\...\{CEDDEE73-3D36-41C2-AA40-29355D9FBD63}) (Version: 1.05.000 - SEGA) Medieval II Total War : Kingdoms : Crusades (HKLM-x32\...\{02A10468-2F1C-447C-AD8E-4DEDDEA25AE2}) (Version: 1.05.000 - SEGA) Medieval II Total War : Kingdoms : Teutonic (HKLM-x32\...\{7AEE1963-7001-4C37-BC20-2FAEB74AA41C}) (Version: 1.05.000 - SEGA) Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft) Microsoft .NET Framework 4.5.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Age of Empires (HKLM-x32\...\Age of Empires) (Version: - ) Microsoft Office 365 - pl-pl (HKLM\...\O365HomePremRetail - pl-pl) (Version: 15.0.4719.1002 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2124950284-226613669-3199816109-1000\...\OneDriveSetup.exe) (Version: 17.3.4604.0120 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{3bcf8c72-b231-4d28-9f39-3405c22d8b5a}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual J# .NET Redistributable Package 1.1 (HKLM-x32\...\{1A655D51-1423-48A3-B748-8F5A0BE294C8}) (Version: 1.1.4322 - Microsoft) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Mozilla Firefox 38.0.5 (x86 pl) (HKLM-x32\...\Mozilla Firefox 38.0.5 (x86 pl)) (Version: 38.0.5 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 32.0.3 - Mozilla) MSI Afterburner 4.0.0 (HKLM-x32\...\Afterburner) (Version: 4.0.0 - MSI Co., LTD) Mumble 1.2.8 (HKLM-x32\...\{71EE2EC3-AF95-4907-BBC4-7A9A867765DD}) (Version: 1.2.8 - Thorvald Natvig) Need For Speed™ World (HKLM-x32\...\{3AF1B16A-7DC9-4C80-BAEC-70B088A7C5B8}) (Version: 1.0.0.0 - Electronic Arts) Neverwinter (HKLM-x32\...\Steam App 109600) (Version: - Cryptic Studios) Neverwinter Nights 2 Complete (HKLM-x32\...\GOGPACKNWN2COMPLETE_is1) (Version: 2.1.0.6 - GOG.com) NVIDIA GeForce Experience 2.1.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.2 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 344.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 344.11 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.32.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.32.1 - NVIDIA Corporation) NVIDIA Sterownik graficzny 344.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 344.11 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 344.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 344.11 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4719.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4719.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4719.1002 - Microsoft Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 9.5.1.571 - Electronic Arts, Inc.) Panel sterowania NVIDIA 344.11 (Version: 344.11 - NVIDIA Corporation) Hidden Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) POV-Ray for Windows v3.62 (HKLM\...\{D0CE053E-0E5E-4C12-9BAE-D0F36021E911}) (Version: 3.62 - Persistence of Vision Raytracer Pty. Ltd.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6074 - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.30.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.30.0 - Renesas Electronics Corporation) Hidden RivaTuner Statistics Server 6.2.0 (HKLM-x32\...\RTSS) (Version: 6.2.0 - Unwinder) Setup - Total War Attila ... (HKLM-x32\...\Setup - Total War Attila ...) (Version: ... - SEGA) SHIELD Streaming (Version: 3.1.200 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 16.13.42 - NVIDIA Corporation) Hidden Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.) Skype™ 7.5 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.5.102 - Skype Technologies S.A.) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Stronghold Crusader (HKLM-x32\...\{8C3727F2-8E37-49E4-820C-03B1677F53B6}) (Version: - ) TeamSpeak 3 Client (HKU\S-1-5-21-2124950284-226613669-3199816109-1000\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TERA (HKLM-x32\...\{A2F166A0-F031-4E27-A057-C69733219434}_is1) (Version: 28 - Gameforge Productions GmbH) The Binding of Isaac Rebirth 1.0 (HKLM-x32\...\The Binding of Isaac Rebirth 1.0) (Version: 1.0 - Games on Cat-A-Cat.Net) This War of Mine (HKLM-x32\...\{5FD7B6B3-08C7-4FEE-9C37-A2134C699885}}_is1) (Version: 1 - 11 bit studios) Tibia (HKLM-x32\...\Tibia_is1) (Version: 10.78 - CipSoft GmbH) Total War Attila (HKLM-x32\...\Total War Attila_is1) (Version: 1.0.0 - Релиз от R.G. Steamgames) Total War Battles: KINGDOM (HKLM-x32\...\Steam App 300080) (Version: - Creative Assembly) War Thunder Launcher 1.0.1.502 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment) Wargame: European Escalation (HKLM-x32\...\Steam App 58610) (Version: - Eugen Systems) Wargame: Red Dragon (HKLM-x32\...\Steam App 251060) (Version: - Eugen Systems) Wiedźmin 2 Edycja Rozszerzona (HKLM-x32\...\{D7556F86-8878-4AAD-8755-6146D4500EB0}_is1) (Version: 3.4 - CD Projekt RED) Windows 7 Codec Pack 4.1.0 (HKLM-x32\...\Windows 7 - Codec Pack) (Version: 4.1.0 - Windows 7 Codec Pack) WinRAR 5.11 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) World of Tanks - Common Test (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812CT}_is1) (Version: - Wargaming.net) World of Tanks (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version: - Wargaming.net) World of Warships (HKU\S-1-5-21-2124950284-226613669-3199816109-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C814eu}_is1) (Version: - Wargaming.net) YTD Video Downloader 4.8.8 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 4.8.8 - GreenTree Applications SRL) <==== ATTENTION ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2124950284-226613669-3199816109-1000_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\x\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2124950284-226613669-3199816109-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\x\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2124950284-226613669-3199816109-1000_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\x\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2124950284-226613669-3199816109-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\x\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2124950284-226613669-3199816109-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\x\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2124950284-226613669-3199816109-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\x\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64\FileSyncShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2124950284-226613669-3199816109-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\x\AppData\Local\Microsoft\OneDrive\17.3.4604.0120\amd64\FileSyncApi64.dll (Microsoft Corporation) ==================== Restore Points ========================= 24-05-2015 17:29:09 Windows Update 28-05-2015 19:51:33 Windows Update 01-06-2015 14:30:47 Windows Update 01-06-2015 19:18:30 Instalacja pakietu sterownika urządzenia: TAP-Windows Provider V9 Karty sieciowe 01-06-2015 19:22:46 Instalacja pakietu sterownika urządzenia: TAP Provider V9 for Private Tunnel Karty sieciowe 01-06-2015 19:27:17 Installed inCloak VPN. 04-06-2015 18:44:53 Windows Update 08-06-2015 13:56:31 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2015-02-19 22:56 - 00001035 ____A C:\Windows\system32\Drivers\etc\hosts 0.0.0.0 nw2master.bioware.com 0.0.0.0 nwn2.master.gamespy.com 0.0.0.0 peerchat.gamespy.com 127.0.0.1 nwmaster.bioware.com 0.0.0.0 nw2master.bioware.com 0.0.0.0 nwn2.master.gamespy.com ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {1BD23B68-AC76-4E20-9FFD-8940349849DF} - System32\Tasks\{BF8603B0-3C2E-4910-A4AC-494BFDF19000} => Firefox.exe http://ui.skype.com/ui/0/7.2.0.103/pl/abandoninstall?page=tsMain Task: {1F2DEF8A-4904-4F4A-A454-52AF039C5F93} - System32\Tasks\{55D57177-CC7A-4F69-AB6E-FB3DF8C333EC} => pcalua.exe -a C:\Users\x\Downloads\GameRangerSetup(1).exe -d C:\Users\x\Downloads Task: {1FE0A33C-0267-45A2-819D-4D0AA87F88D9} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-04-14] (Microsoft Corporation) Task: {39F6D3D9-31BE-45CD-8959-937A52EE67F7} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-05-19] (Microsoft Corporation) Task: {3B2D5211-1ED9-4C28-B25B-F69852685D80} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-22] (Google Inc.) Task: {42FAD4B4-C831-4FE9-A919-448F4C59D86D} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2014-09-27] (Microsoft Corporation) Task: {62D99291-CCBA-49E0-BE51-ADF3E7374B8C} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-07] (Microsoft Corporation) Task: {79635548-A79D-4A88-8182-EB95E45F3846} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) Task: {8DECC11A-18C2-41AA-8BBC-DF85A7D04B22} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) Task: {9311AA64-E192-46E9-985D-621C41B40066} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-22] (Google Inc.) Task: {A5C4C586-AD6A-4369-9C91-50BCEA698DBF} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Logon => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) Task: {B3C9B153-4E3A-4B68-86E3-31078C1A23BD} - System32\Tasks\Origin => C:\Users\x\AppData\Roaming\Origin\update.vbe [2015-03-15] () <==== ATTENTION Task: {BA94D82A-D30F-4F0C-BC96-EE5C9BA66AA0} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-04-14] (Microsoft Corporation) Task: {BF8D1CF9-1B8B-49C2-8819-EEA991D4C733} - System32\Tasks\MSIAfterburner => G:\Programy\MSI Afterburner\MSIAfterburner.exe [2014-08-31] () Task: {C0A6739E-764C-4308-93B2-AEC0CCD807F4} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-03-07] (Adobe Systems Incorporated) Task: {DD3149C1-42B8-4C20-973B-BE5E830EFC04} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-10] (Adobe Systems Incorporated) Task: {EB8BB173-10C6-45B2-AF4E-366C86EF428F} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks Task: {ECD19FAB-99B6-4F25-B108-F59F390B811A} - System32\Tasks\{8ECE97A1-B9BC-410A-BD66-F2FB6A9D448C} => pcalua.exe -a C:\Users\x\Downloads\jxpiinstall.exe -d C:\Users\x\Downloads Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2014-09-26 13:43 - 2014-09-13 23:53 - 00116880 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-05-03 13:20 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2014-12-22 23:24 - 2012-06-07 11:11 - 00262656 _____ () C:\Program Files (x86)\GamingMouse\hid.exe 2014-12-22 23:24 - 2011-11-22 15:18 - 00256512 _____ () C:\Program Files (x86)\GamingMouse\trayicon.exe 2014-09-26 14:29 - 2010-09-07 11:46 - 00072280 _____ () C:\Windows\SysWOW64\XSrvSetup.exe 2014-12-22 23:24 - 2011-11-22 15:18 - 00061440 _____ () C:\Program Files (x86)\GamingMouse\HidDevice.dll 2014-12-22 23:24 - 2011-11-22 15:18 - 00249856 _____ () C:\Program Files (x86)\GamingMouse\language.dll 2014-10-16 08:02 - 2014-10-16 08:02 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\b2363cf94faf59386ab4778a39c16e2b\IsdiInterop.ni.dll 2014-09-26 14:19 - 2011-05-20 10:05 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2015-06-10 20:03 - 2015-06-05 20:22 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\libglesv2.dll 2015-06-10 20:03 - 2015-06-05 20:22 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\libegl.dll 2015-06-10 20:03 - 2015-06-05 20:22 - 15003464 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2124950284-226613669-3199816109-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\x\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [TCP Query User{E9036999-22E2-4EE1-9E24-02ACA8AABEB4}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{4206FA07-2D8F-4D93-9477-A147EE4EBDB6}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{D3164DE6-9C49-4987-8AD4-B6EF6D7A7103}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{B2D3851D-F478-45AD-BE4B-4BE4756D4848}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{9ABAE6FE-5D71-4528-84D7-29BCB06BC9A3}G:\warthunder\aces.exe] => (Allow) G:\warthunder\aces.exe FirewallRules: [UDP Query User{C5DEC93C-F342-48C5-9F70-500440A8FED4}G:\warthunder\aces.exe] => (Allow) G:\warthunder\aces.exe FirewallRules: [{72964C26-6F67-4ECB-B2F1-B9714C6606B8}] => (Allow) G:\Gry\Steam\Steam.exe FirewallRules: [{C07ECCF5-90E7-44D8-9AA3-F452C5187DCE}] => (Allow) G:\Gry\Steam\Steam.exe FirewallRules: [TCP Query User{B43B6493-4317-4177-B7F0-9F0F9B6BD16A}G:\gry\steam\steamapps\common\counter-strike global offensive\csgo.exe] => (Allow) G:\gry\steam\steamapps\common\counter-strike global offensive\csgo.exe FirewallRules: [UDP Query User{D459CED4-7485-4506-B944-E2B6F82FA93C}G:\gry\steam\steamapps\common\counter-strike global offensive\csgo.exe] => (Allow) G:\gry\steam\steamapps\common\counter-strike global offensive\csgo.exe FirewallRules: [TCP Query User{F02C2F1E-601E-499F-9DAF-44BA88497FD8}G:\program files (x86)\origin games\fifa world\fifaworld.exe] => (Allow) G:\program files (x86)\origin games\fifa world\fifaworld.exe FirewallRules: [UDP Query User{66496C2E-2265-4944-950A-86F6CB07EAD4}G:\program files (x86)\origin games\fifa world\fifaworld.exe] => (Allow) G:\program files (x86)\origin games\fifa world\fifaworld.exe FirewallRules: [{1F08CF45-39F8-4ADD-B5E6-273390B87D76}] => (Allow) C:\Users\x\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{0A3F187B-1666-41F6-8A78-9E5AF0EC64F0}] => (Allow) C:\Users\x\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{57AB8A4D-F4BA-4F1F-98DA-483D44B3C34C}G:\gry\worldoftanks\worldoftanks.exe] => (Allow) G:\gry\worldoftanks\worldoftanks.exe FirewallRules: [UDP Query User{0BCD5010-59E0-4724-AC73-ADF67C7043D6}G:\gry\worldoftanks\worldoftanks.exe] => (Allow) G:\gry\worldoftanks\worldoftanks.exe FirewallRules: [TCP Query User{28DFEDA4-BB9E-4917-850C-8635103F1381}C:\users\x\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\x\appdata\roaming\gameranger\gameranger\gameranger.exe FirewallRules: [UDP Query User{70A6EB30-E3A2-4E5F-BC9B-5D343736A55B}C:\users\x\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\x\appdata\roaming\gameranger\gameranger\gameranger.exe FirewallRules: [TCP Query User{7C1850EA-8C3D-484C-9A0C-3B739268415E}G:\gry\firefly studios\stronghold crusader\stronghold crusader.exe] => (Allow) G:\gry\firefly studios\stronghold crusader\stronghold crusader.exe FirewallRules: [UDP Query User{9AD4BC15-0DEB-401A-A39F-56CC721650B9}G:\gry\firefly studios\stronghold crusader\stronghold crusader.exe] => (Allow) G:\gry\firefly studios\stronghold crusader\stronghold crusader.exe FirewallRules: [TCP Query User{AB4C92F0-DB7C-4FB3-BE44-BA793416E00B}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe FirewallRules: [UDP Query User{B08DBE77-D367-4766-8EFD-D5531F19CD79}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe FirewallRules: [{930ED9FE-93CE-4AAE-81AD-C9CCC48A3CC9}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{79D9A67B-F662-4B9C-8DF4-EF82772D6689}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{DF06E49A-EE30-4E98-9A7F-ECD23CB051FA}] => (Allow) G:\Gry\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{077BC5BB-DAAD-42BA-B8FF-4CD5F250BCA9}] => (Allow) G:\Gry\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [TCP Query User{BC20F258-0E5A-4F22-AD3D-F2CCB25242B1}C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe FirewallRules: [UDP Query User{FED9CD5E-6B98-4F31-A353-94824E70F26A}C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe FirewallRules: [TCP Query User{B73242C4-0F29-4927-AE48-89D7406E96B6}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{759C51D8-37AC-4534-97A3-02B215BEEB60}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [{BBA43450-1318-4C95-9ADE-5BE3DF6EA0F3}] => (Allow) G:\Gry\Steam\SteamApps\common\Total War Battles KINGDOM\TWB_Kingdom.exe FirewallRules: [{7C24DDF5-3E17-4438-917A-1F09995F5C55}] => (Allow) G:\Gry\Steam\SteamApps\common\Total War Battles KINGDOM\TWB_Kingdom.exe FirewallRules: [{5BB85664-DEC0-4ABF-92A2-A401F03A4F5C}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{629A828C-A390-4A41-9D82-837F9CA0A6B3}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{95529F96-E6FE-4CBD-B65E-A9C76CC49465}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [TCP Query User{EC88FFCC-C117-4397-974B-6F20F1219BE8}C:\program files (x86)\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{4F036899-A380-4068-A32E-A4483951E00C}C:\program files (x86)\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe FirewallRules: [{614B231A-38EF-49B7-94E1-1002E971305C}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe FirewallRules: [{D0A87998-CC4F-47E5-AAED-BDDA63FAFDA7}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe FirewallRules: [TCP Query User{64AACF51-C99B-4E6F-8549-52EB512112FE}G:\gry\ck2olf\ck2 2.0.4\ck2.exe] => (Allow) G:\gry\ck2olf\ck2 2.0.4\ck2.exe FirewallRules: [UDP Query User{BC631184-73D1-4BB7-A9F0-561D7162057B}G:\gry\ck2olf\ck2 2.0.4\ck2.exe] => (Allow) G:\gry\ck2olf\ck2 2.0.4\ck2.exe FirewallRules: [TCP Query User{0CA967E3-CA20-4385-BD0E-B5C37FD6D380}G:\gry\cabal online (eu)\launcher\launcher.exe] => (Allow) G:\gry\cabal online (eu)\launcher\launcher.exe FirewallRules: [UDP Query User{8976D095-A3C0-4D2C-BCE6-7C1B1874851F}G:\gry\cabal online (eu)\launcher\launcher.exe] => (Allow) G:\gry\cabal online (eu)\launcher\launcher.exe FirewallRules: [TCP Query User{66494BB7-F184-4E92-840E-193164F2AE3C}G:\cabal online (na - global)\launcher\launcher.exe] => (Allow) G:\cabal online (na - global)\launcher\launcher.exe FirewallRules: [UDP Query User{7602D7C0-9FEC-4883-A011-419465822FBD}G:\cabal online (na - global)\launcher\launcher.exe] => (Allow) G:\cabal online (na - global)\launcher\launcher.exe FirewallRules: [{4E1B1121-D3FF-4F34-ADA6-50790BA499A0}] => (Allow) G:\Gry\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [{1FD75E0B-4366-446C-B55C-270F75F9F74B}] => (Allow) G:\Gry\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [{EB7784DC-B905-4EE1-9517-0A5FEAC2E74B}] => (Allow) G:\Gry\bs\bin\Client.exe FirewallRules: [{F9A21CE1-35EE-434C-8B7E-DF7C2EBC29B0}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe FirewallRules: [{DA863A4E-C6F1-4515-A0D2-03197AA05720}] => (Allow) C:\Users\x\AppData\Local\Microsoft\OneDrive\OneDrive.exe FirewallRules: [{8BBD8427-A7B4-4C00-B090-25CD3040C5F5}] => (Allow) G:\Gry\Steam\SteamApps\common\Crusader Kings II\CK2game.exe FirewallRules: [{52CF51EA-5DB3-463E-AD2E-5626EC1F2522}] => (Allow) G:\Gry\Steam\SteamApps\common\Crusader Kings II\CK2game.exe FirewallRules: [TCP Query User{391540F1-4616-445A-872C-A3D2BCDBBD21}C:\program files (x86)\gog.com\heroes of might and magic 3 complete\heroes3.exe] => (Allow) C:\program files (x86)\gog.com\heroes of might and magic 3 complete\heroes3.exe FirewallRules: [UDP Query User{D8C13DDF-DD85-4EC8-B68F-7730D2BA869E}C:\program files (x86)\gog.com\heroes of might and magic 3 complete\heroes3.exe] => (Allow) C:\program files (x86)\gog.com\heroes of might and magic 3 complete\heroes3.exe FirewallRules: [TCP Query User{E90F2238-D108-4E2C-B028-4F25A56C5CAA}G:\gry\homm3pl\gra\heroes3.exe] => (Allow) G:\gry\homm3pl\gra\heroes3.exe FirewallRules: [UDP Query User{06AFF258-FD88-44F9-BD71-78C4F1CB0EF8}G:\gry\homm3pl\gra\heroes3.exe] => (Allow) G:\gry\homm3pl\gra\heroes3.exe FirewallRules: [TCP Query User{3CE1C785-2933-40E8-964B-CAD03ABC5099}G:\gry\worldoftanks\wotlauncher.exe] => (Allow) G:\gry\worldoftanks\wotlauncher.exe FirewallRules: [UDP Query User{76ED1716-6177-4930-BB5A-17EF7FCE16F7}G:\gry\worldoftanks\wotlauncher.exe] => (Allow) G:\gry\worldoftanks\wotlauncher.exe FirewallRules: [{350D8013-2B39-4FD6-B063-15F93554D1C9}] => (Allow) G:\Gry\Steam\SteamApps\common\Cryptic Studios\Neverwinter.exe FirewallRules: [{72593BC0-05D0-48B5-ACE3-DE60D1755F91}] => (Allow) G:\Gry\Steam\SteamApps\common\Cryptic Studios\Neverwinter.exe FirewallRules: [TCP Query User{0507A65E-4972-4268-94ED-288116FDFE6C}G:\gry\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) G:\gry\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe FirewallRules: [UDP Query User{DEB5566C-951C-4535-B1D0-413078457F86}G:\gry\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) G:\gry\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe FirewallRules: [TCP Query User{11F16300-B127-4288-870C-66115867554C}G:\gry\wows\wowslauncher.exe] => (Allow) G:\gry\wows\wowslauncher.exe FirewallRules: [UDP Query User{5DA318DD-8BC5-4FA1-9D14-E4405B402B32}G:\gry\wows\wowslauncher.exe] => (Allow) G:\gry\wows\wowslauncher.exe FirewallRules: [{3C7BFA97-01EF-499C-9878-84012CC3DEF0}] => (Allow) G:\Gry\Steam\SteamApps\common\Wargame European Escalation\WarGame.exe FirewallRules: [{C7A13D60-ABDA-46A5-8915-03615CAD2A77}] => (Allow) G:\Gry\Steam\SteamApps\common\Wargame European Escalation\WarGame.exe FirewallRules: [{F60CC42A-D032-4211-8A19-699593E2651B}] => (Allow) G:\Gry\Steam\SteamApps\common\Wargame Red Dragon\WarGame3.exe FirewallRules: [{17D1A8A2-7B7C-4D94-9463-8683314C21BC}] => (Allow) G:\Gry\Steam\SteamApps\common\Wargame Red Dragon\WarGame3.exe FirewallRules: [TCP Query User{8864C957-486E-401E-BCF5-C5B95C0BE18C}G:\gry\heroes 5 dzikie hordy\bin\h5_game.exe] => (Allow) G:\gry\heroes 5 dzikie hordy\bin\h5_game.exe FirewallRules: [UDP Query User{8C927A42-9E08-4BF8-9915-290ED8D26A30}G:\gry\heroes 5 dzikie hordy\bin\h5_game.exe] => (Allow) G:\gry\heroes 5 dzikie hordy\bin\h5_game.exe FirewallRules: [TCP Query User{56AFBC62-1D25-47BE-A585-B3E800756A7F}G:\gry\h530\heroes of might and magic v - dzikie hordy\bin\h5_game.exe] => (Allow) G:\gry\h530\heroes of might and magic v - dzikie hordy\bin\h5_game.exe FirewallRules: [UDP Query User{FAAE7076-6960-4068-A041-3F59002652A8}G:\gry\h530\heroes of might and magic v - dzikie hordy\bin\h5_game.exe] => (Allow) G:\gry\h530\heroes of might and magic v - dzikie hordy\bin\h5_game.exe FirewallRules: [TCP Query User{1463B6D1-A22E-46B3-BCC0-4767BB608425}C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{A8099DF0-6E7D-4C32-9657-B737573D16A5}C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe FirewallRules: [{E66BF9F1-8DAF-4020-947B-7AAA9A083B6B}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/16/2015 01:18:52 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/16/2015 01:17:55 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (06/16/2015 01:17:55 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (06/16/2015 01:17:55 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD endpoint registration failed [0] Error: (06/16/2015 00:57:14 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/16/2015 00:46:48 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/15/2015 05:50:42 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: CK2game.exe, wersja: 1.0.0.0, sygnatura czasowa: 0x55793582 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000 Identyfikator procesu powodującego błąd: 0x3a4 Godzina uruchomienia aplikacji powodującej błąd: 0xCK2game.exe0 Ścieżka aplikacji powodującej błąd: CK2game.exe1 Ścieżka modułu powodującego błąd: CK2game.exe2 Identyfikator raportu: CK2game.exe3 Error: (06/15/2015 04:54:34 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/15/2015 10:42:26 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/14/2015 08:25:52 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (06/16/2015 01:18:22 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (06/16/2015 01:05:52 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: ) Description: Produkt %ZARZĄDZANIE NT60 napotkał błąd podczas próby aktualizacji podpisów. Nowa wersja podpisu: Poprzednia wersja podpisu: 1.199.2577.0 Źródło aktualizacji: %ZARZĄDZANIE NT59 Etap aktualizacji: 4.8.0204.00 Ścieżka źródła: 4.8.0204.01 Typ podpisu: %ZARZĄDZANIE NT602 Typ aktualizacji: %ZARZĄDZANIE NT604 Użytkownik: ZARZĄDZANIE NT\SYSTEM Bieżąca wersja aparatu: %ZARZĄDZANIE NT605 Poprzednia wersja aparatu: %ZARZĄDZANIE NT606 Kod błędu: %ZARZĄDZANIE NT607 Opis błędu: %ZARZĄDZANIE NT608 Error: (06/16/2015 00:58:38 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (06/16/2015 00:55:35 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 12:49:58 na ‎2015-‎06-‎16 było nieoczekiwane. Error: (06/16/2015 00:50:15 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Moduł wyliczający magistrali PnP-X IP zawiesiła się podczas uruchamiania. Error: (06/16/2015 00:46:30 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (06/15/2015 04:54:09 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (06/15/2015 10:42:11 AM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (06/14/2015 08:34:29 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: ) Description: Produkt %ZARZĄDZANIE NT60 napotkał błąd podczas próby aktualizacji podpisów. Nowa wersja podpisu: Poprzednia wersja podpisu: 1.199.2528.0 Źródło aktualizacji: %ZARZĄDZANIE NT59 Etap aktualizacji: 4.8.0204.00 Ścieżka źródła: 4.8.0204.01 Typ podpisu: %ZARZĄDZANIE NT602 Typ aktualizacji: %ZARZĄDZANIE NT604 Użytkownik: ZARZĄDZANIE NT\SYSTEM Bieżąca wersja aparatu: %ZARZĄDZANIE NT605 Poprzednia wersja aparatu: %ZARZĄDZANIE NT606 Kod błędu: %ZARZĄDZANIE NT607 Opis błędu: %ZARZĄDZANIE NT608 Error: (06/14/2015 08:26:10 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Microsoft Office: ========================= Error: (06/16/2015 01:18:52 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/16/2015 01:17:55 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (06/16/2015 01:17:55 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (06/16/2015 01:17:55 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD endpoint registration failed [0] Error: (06/16/2015 00:57:14 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/16/2015 00:46:48 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/15/2015 05:50:42 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: CK2game.exe1.0.0.055793582unknown0.0.0.000000000c0000005000000003a401d0a77d9c49da64G:\Gry\Steam\steamapps\common\Crusader Kings II\CK2game.exeunknown467a3db2-1376-11e5-b9f2-1c6f65318fdf Error: (06/15/2015 04:54:34 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/15/2015 10:42:26 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/14/2015 08:25:52 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7 CPU 950 @ 3.07GHz Percentage of memory in use: 32% Total physical RAM: 6142.39 MB Available physical RAM: 4154.28 MB Total Pagefile: 12282.99 MB Available Pagefile: 9923.71 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: (system) (Fixed) (Total:488.28 GB) (Free:379.51 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (magazyn1) (Fixed) (Total:390.62 GB) (Free:383.76 GB) NTFS Drive e: (magazyn2) (Fixed) (Total:439.45 GB) (Free:439.35 GB) NTFS Drive g: (magazyn3) (Fixed) (Total:544.66 GB) (Free:100.05 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 642618AA) Partition 1: (Active) - (Size=488.3 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=390.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=439.5 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=544.7 GB) - (Type=OF Extended) ==================== End of log ============================