Additional scan result of Farbar Recovery Scan Tool (x64) Version:21-06-2015 01 Ran by Justyna at 2015-06-24 20:24:47 Running from C:\Users\Justyna\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-745078335-3284917955-1969653430-500 - Administrator - Disabled) Gość (S-1-5-21-745078335-3284917955-1969653430-501 - Limited - Disabled) Justyna (S-1-5-21-745078335-3284917955-1969653430-1002 - Administrator - Enabled) => C:\Users\Justyna UpdatusUser (S-1-5-21-745078335-3284917955-1969653430-1001 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 6000E609_eDocs (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden 6000E609_Help (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden 6000E609a (x32 Version: 140.0.001.000 - Hewlett-Packard) Hidden 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden Adobe Reader 9.3 - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-A93000000001}) (Version: 9.3.0 - Adobe Systems Incorporated) Aktualizacje NVIDIA 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation) Alchemy Classic (HKLM-x32\...\{CCB1D148-6F0B-407D-9101-9DD11C784C44}) (Version: 1.4.8 - NIAsoft) Angry Birds Breakfast 1 (HKLM-x32\...\{DE5BE262-C5E7-49B2-A673-56A3E2522F06}) (Version: 1.0.16 - Rovio Entertainment Ltd.) Angry Birds Breakfast 2 (HKLM-x32\...\{89FD4D6C-E280-4D6E-B96D-64882F5AD199}) (Version: 1.0.16 - Rovio Entertainment Ltd.) Apple Application Support (HKLM-x32\...\{A83279FD-CA4B-4206-9535-90974DE76654}) (Version: 2.1.5 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.7 - Atheros Communications Inc.) AudioConsole 3.3.2 (HKLM-x32\...\AudioConsole 3.3.2_is1) (Version: 3.3.2 - Inmedico A/S) Autodesk Pixlr (HKLM-x32\...\Autodesk Pixlr) (Version: 1.0.3.0 - Autodesk) Autodesk Pixlr (x32 Version: 1.0.3.0 - Autodesk) Hidden Battle Quiz wersja 1.0 (HKLM-x32\...\{B1FA5F78-753B-4275-9854-94921BE6CEEE}_is1) (Version: 1.0 - Play sp. z o. o.) Bing Bar (HKLM-x32\...\{3365E735-48A6-4194-9988-CE59AC5AE503}) (Version: 7.3.132.0 - Microsoft Corporation) Bitwa o Śródziemie™ II (HKLM-x32\...\{2A9F95AB-65A3-432c-8631-B8BC5BF7477A}) (Version: - ) Bolek i Lolek j. angielski (HKLM-x32\...\BiL_j._angielski_DEMO_Polish) (Version: - ) BPDSoftware (x32 Version: 140.0.001.000 - Hewlett-Packard) Hidden BPDSoftware_Ini (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden Bubble Ball Lite (HKLM-x32\...\{A876DDA6-52A9-41FB-B915-A36105ADD14F}) (Version: 1.7.0 - ClockStone Software GmbH) BufferChm (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden calibre (HKLM-x32\...\{AB116F72-C91A-40F2-A25A-949B5D065EBB}) (Version: 2.3.0 - Kovid Goyal) Chicken Invaders 4 demo (App) (HKLM-x32\...\{41BC8BBF-D234-4AAC-961F-D976AE3DD216}) (Version: 4.05.1 - InterAction studios) Classic Shell (HKLM\...\{7F34ADBE-77C0-47A0-BBC6-B3DA16CE8E68}) (Version: 3.6.7 - IvoSoft) Cogs GO Lite (HKLM-x32\...\{3B1329C8-C239-45F8-A4A7-E4477A9B0FED}) (Version: 1.0.0 - Lazy 8 Studios) Combined Community Codec Pack 2014-07-13 (HKLM-x32\...\Combined Community Codec Pack_is1) (Version: 2014.07.13.0 - CCCP Project) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.44.50 - Conexant) Copy (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden Destinations (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden DJ_AIO_06_F2400_SW_Min (x32 Version: 140.0.851.000 - Hewlett-Packard) Hidden Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.8000.16 - Dolby Laboratories Inc) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.5 - Lenovo) Energy Management (x32 Version: 8.0.2.5 - Lenovo) Hidden F2400 (x32 Version: 140.0.851.000 - Hewlett-Packard) Hidden Free to Play (HKLM-x32\...\Steam App 245550) (Version: - Valve) Frisbee Forever (HKLM-x32\...\Frisbee Forever) (Version: - ) GeoVision AAC (HKLM-x32\...\GeoAAC) (Version: - ) GeoVision ADPCM (HKLM-x32\...\GeoADPCM) (Version: - ) GeoVision H264 (HKLM-x32\...\Codec_264) (Version: - ) GeoVision JPEG (HKLM-x32\...\Codec_jpeg) (Version: - ) GeoVision MJPG (HKLM-x32\...\Codec_MJPG) (Version: - ) GeoVision MPEG2 (HKLM-x32\...\Codec_mp2) (Version: - ) GeoVision MPEG4 (HKLM-x32\...\GEOXCodec) (Version: - ) GeoVision MPEG4 ASP (HKLM-x32\...\Codec_amp4) (Version: - ) GeoVision MPEG4 AVC (HKLM-x32\...\Codec_AVC) (Version: - ) GeoVision MXPG (HKLM-x32\...\Codec_MXPG) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.130 - Google Inc.) Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden GPBaseService2 (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Deskjet F2400 All-in-One Driver Software 14.0 Rel. 6 (HKLM\...\{BCDD692B-172D-440A-9A1B-501C71D72CC8}) (Version: 14.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Officejet 6000 E609 Series (HKLM\...\{B16A196A-B3C9-4C19-A968-59365071A39F}) (Version: 14.0 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Support Solutions Framework (HKLM-x32\...\{FC3C2B77-6800-48C6-A15D-9D1031130C16}) (Version: 11.51.0049 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden Informator 1.2.0.426 (HKLM-x32\...\Paseczek_is1) (Version: 1.2.0.426 - ) Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33057) (Version: 3.6.1.33057.10 - Intel) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.6.0.1030 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) iPlus manager 2.2 (HKLM-x32\...\iPlus manager_is1) (Version: - ) Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.670 - Oracle) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.8400.10186 - Realtek Semiconductor Corp.) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.1219 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 8.0.0.1219 - CyberLink Corp.) Hidden Lenovo pointing device (HKLM\...\Elantech) (Version: 11.4.10.2 - ELAN Microelectronic Corp.) Lenovo PowerDVD10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4310.52 - CyberLink Corp.) Lenovo PowerDVD10 (x32 Version: 10.0.4310.52 - CyberLink Corp.) Hidden Lenovo Solution Center (HKLM\...\{C51863E5-EB09-43A5-9D43-26A32587EEAC}) (Version: 2.4.002.00 - Lenovo Group Limited) Lenovo YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.1.3127 - CyberLink Corp.) Lenovo YouCam (x32 Version: 4.1.3127 - CyberLink Corp.) Hidden MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden MaturaRom - Geografia (HKLM-x32\...\{C2765BE9-1E4F-408E-8065-CC8C9462BE37}) (Version: 1.10.0006 - YDP) Microsoft Office 2013 dla Użytkowników Domowych i Uczniów - pl-pl (HKLM\...\HomeStudentRetail - pl-pl) (Version: 15.0.4727.1003 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-745078335-3284917955-1969653430-1002\...\OneDriveSetup.exe) (Version: 17.3.5860.0512 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Might & Magic: Duel of Champions (HKLM-x32\...\Steam App 256410) (Version: - Ubisoft Quebec) Motocross Kings FREE (HKLM-x32\...\{8B7E6860-8C15-402A-9FB2-A26EC038F204}) (Version: 1.0 - Gorizonts) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 17.0.6 - Mozilla) Mozilla Thunderbird 17.0.6 (x86 pl) (HKLM-x32\...\Mozilla Thunderbird 17.0.6 (x86 pl)) (Version: 17.0.6 - Mozilla) My Little Artist (HKLM-x32\...\{31F6B2A6-B951-4485-8841-787A6F117529}) (Version: 1.6.0 - Intelloware) NetPanel (HKLM-x32\...\NetPanel) (Version: - Gemius SA.) Network64 (Version: 140.0.306.000 - Hewlett-Packard) Hidden Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.69 - ) NVIDIA Oprogramowanie systemu PhysX 9.12.0604 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.0604 - NVIDIA Corporation) NVIDIA Sterownik graficzny 327.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.62 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4727.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden Opera Stable 30.0.1835.59 (HKLM-x32\...\Opera 30.0.1835.59) (Version: 30.0.1835.59 - Opera Software) Pakiet Programów SPW 3.1.8. (HKLM-x32\...\Pakiet Programów SPW 3.1.8.) (Version: - ) Pakiet sterowników systemu Windows - Lenovo (ACPIVPC) System (06/15/2012 8.1.0.1) (HKLM\...\71BC3FD63F450BA0A957AAECBDB4A000C4F2BE42) (Version: 06/15/2012 8.1.0.1 - Lenovo) Pakiet sterowników systemu Windows - Lenovo (WUDFRd) LenovoVhid (06/19/2012 10.13.29.733) (HKLM\...\8A223E56FB1ED4F697B54E5BF96F1EB63B512684) (Version: 06/19/2012 10.13.29.733 - Lenovo) Panel sterowania NVIDIA 327.62 (Version: 327.62 - NVIDIA Corporation) Hidden PLAY ONLINE (HKLM-x32\...\PLAY ONLINE) (Version: 11.002.03.11.264 - Huawei Technologies Co.,Ltd) PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation) Podręcznik użytkownika (x32 Version: 1.0.0.9 - Lenovo) Hidden Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) Porusz Umysł (HKLM-x32\...\Porusz Umysł) (Version: 1.0 - ) Power2Go (HKLM-x32\...\{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 5.6.0.9109 - CyberLink Corp.) ProductContext (x32 Version: 140.0.001.000 - Hewlett-Packard) Hidden Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.220 - Qualcomm Atheros Communications) Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros) QuickTime (HKLM-x32\...\{7BE15435-2D3E-4B58-867F-9C75BED0208C}) (Version: 7.71.80.42 - Apple Inc.) QuickTransfer (x32 Version: 140.0.98.000 - Hewlett-Packard) Hidden Rabbids Go Home - Rozdział 1 (HKLM-x32\...\{0E065330-E9AD-4FB2-96BB-1EB08971C3E2}) (Version: 1.00.0000 - Ubisoft) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.39030 - Realtek Semiconductor Corp.) Scan (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden Sebran wersja 1.49 (HKLM-x32\...\{E824B461-1612-4764-A1BB-2E4BC3B388CE}_is1) (Version: 1.49 - Marianne Wartoft AB) Serious Sam HD: The Second Encounter (HKLM-x32\...\Steam App 41010) (Version: - Croteam) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) Simple World Clock (HKLM-x32\...\{6FCE84EA-263C-4B14-9309-1FDDA3A963C2}) (Version: 1.0.0 - Shubhasoft Mobi Solutions Pvt Ltd) SolutionCenter (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden Status (x32 Version: 140.0.342.000 - Hewlett-Packard) Hidden Subway Surfers (HKLM-x32\...\Subway Surfers) (Version: - ) SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.61.90905 - SugarSync, Inc.) Testy IQ (HKLM-x32\...\Testy IQ) (Version: - ) Toolbox (x32 Version: 140.0.596.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden Trening czytania (HKLM-x32\...\Trening czytania) (Version: 2.0.1 - pwn.pl) UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.9 - Lenovo) Viking Defense (HKLM-x32\...\com.miniclip.vikingdefense.none) (Version: 1.0.1 - Miniclip SA) Viking Defense (x32 Version: 1.0.1 - Miniclip SA) Hidden WebReg (x32 Version: 140.0.297.017 - Hewlett-Packard) Hidden Widevine Media Optimizer Chrome 6.0.0 (HKLM-x32\...\optimizer_chrome) (Version: 6.0.0.12442 - Widevine Technologies) Widevine Media Optimizer Chrome 6.0.0 (HKU\.DEFAULT\...\optimizer_chrome) (Version: 6.0.0.12757 - Widevine Technologies) Widevine Media Optimizer Chrome 6.0.0 (HKU\S-1-5-21-745078335-3284917955-1969653430-1002\...\optimizer_chrome) (Version: 6.0.0.12442 - Widevine Technologies) WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) X264 (HKLM-x32\...\Codec_X264) (Version: - ) XVID (HKLM-x32\...\Codec_XVID) (Version: - ) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-745078335-3284917955-1969653430-1002_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Justyna\AppData\Local\Microsoft\OneDrive\17.3.5860.0512\amd64\FileSyncApi64.dll (Microsoft Corporation) ==================== Restore Points ========================= 08-06-2015 09:50:32 Windows Update 11-06-2015 10:03:02 Windows Update 14-06-2015 13:10:25 Windows Update 17-06-2015 17:47:18 Windows Update 19-06-2015 10:14:57 Installed HP Support Solutions Framework 24-06-2015 19:16:13 Usunięte Rabbids Go Home - Rozdział 2 ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {040FF560-0D1D-4178-914D-07EF647F11CA} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2014-02-19] (Lenovo) Task: {1874A08E-62D9-4F5F-8D6D-4DA99A7FA45F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-09] (Google Inc.) Task: {1AE41FEB-977A-4F38-AF9C-797E1E35F1D8} - System32\Tasks\MirageAgent => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2012-07-27] (CyberLink) Task: {283CD556-B824-4FC6-BF76-72F6DB6FFBC9} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {4853800A-359B-415C-AAB3-42A1ACB261D0} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Logon => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {4D60360F-3AE0-4484-A091-CD65340F341D} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-745078335-3284917955-1969653430-1002 => %localappdata%\Microsoft\OneDrive\OneDrive.exe Task: {4F333268-465F-4A19-A6DE-1A3BCFA8F8FB} - System32\Tasks\Opera scheduled Autoupdate 1422187665 => C:\Program Files (x86)\Opera\launcher.exe [2015-06-10] (Opera Software) Task: {5226C67F-4E72-4A6C-B4C3-563F45C355FD} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {6005FD9F-045F-454E-BEB0-D96907A9286B} - System32\Tasks\Lenovo\LSC\LSCTaskService => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCTaskService.exe [2014-02-19] () Task: {67C84170-8D4E-4697-9764-44C8FEE0791E} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks Task: {7236FBB0-6B5E-48EE-9B7D-65FA69B90846} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-09] (Google Inc.) Task: {738117B5-8CD6-4C30-B99D-13535BA45C83} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation) Task: {7BE22AA1-3FEC-40F6-9841-8696C21BF974} - System32\Tasks\GoogleUpdateTaskMachineCore1d00189a1048def => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-10-09] (Google Inc.) Task: {7E9BB848-DAA5-49AA-8A62-3ED1441EDA4C} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2014-02-19] () Task: {8A53F05D-CBC5-4C8C-ADC0-956993112584} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2014-02-19] (Lenovo) Task: {9BE60DB4-04B7-43BF-844F-103FC17BDDDD} - System32\Tasks\Lenovo\LSC\RebootCountTask => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2014-02-19] () Task: {ABC13574-953E-4F16-BC60-57D989E0457D} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-06] (Microsoft Corporation) Task: {BA95EC1C-7167-4A4D-87E0-7BF00B87280D} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => C:\Windows\system32\compattel\DiagTrackRunner.exe [2015-03-16] (Microsoft Corporation) Task: {CFC94752-9D75-45EF-8A69-2EBB2C4733FE} - System32\Tasks\Lenovo\Lenovo-28874 => C:\ProgramData\Lenovo-28874.vbs [2013-04-09] () Task: {D24DA401-84D1-45C9-AAF6-09A916410129} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2014-02-19] () Task: {E5832F72-18DD-451E-9008-E256B1FE7F47} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-06-14] (Microsoft Corporation) Task: {E5CD4E92-2EFA-4C70-B02C-42AE65A8CF01} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {ECC86CF5-829B-45F9-8AB5-46CEDB5A604C} - System32\Tasks\Lenovo\LSC\Time72Task => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2014-02-19] () Task: {F1AD6B0A-CA37-4A30-A290-F74A80CE812E} - System32\Tasks\Microsoft Office 15 Sync Maintenance for LENOVO-Justyna Lenovo => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-05-28] (Microsoft Corporation) Task: {F4740C92-467E-43F7-BD17-9BC79A24B186} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation) Task: {F4C21E75-05EA-4C87-AF40-27E8D8D77DB0} - System32\Tasks\{99DB0479-7937-483A-843B-A443B0182784} => pcalua.exe -a E:\instaluj.exe -d E:\ Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d00189a1048def.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2013-12-26 19:42 - 2013-12-26 19:42 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll 2013-01-25 00:09 - 2013-01-25 00:09 - 00011264 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll 2013-01-25 00:05 - 2013-01-25 00:05 - 00084992 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\Map\MAP.dll 2013-01-25 00:12 - 2013-01-25 00:12 - 00012928 _____ () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe 2014-01-29 23:02 - 2014-01-29 23:02 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2014-03-19 09:48 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2013-04-09 10:06 - 2012-07-12 14:59 - 00891392 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\QtNetwork4.dll 2013-04-09 10:06 - 2012-07-12 14:59 - 02281984 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\QtCore4.dll 2013-04-09 10:06 - 2012-07-12 14:59 - 00016896 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\featureController.dll 2013-04-09 10:06 - 2012-07-12 14:59 - 00062976 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\osEvents.dll 2013-04-09 10:06 - 2012-07-12 14:59 - 00322048 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\log4cplus.dll 2013-04-09 10:06 - 2012-07-12 14:59 - 00339456 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\QtXml4.dll 2013-04-09 10:06 - 2012-07-12 14:59 - 00400384 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\sqlite3.dll 2013-04-09 10:06 - 2012-07-12 14:59 - 00195584 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\libgsoap.dll 2013-04-09 10:06 - 2012-07-12 14:59 - 00062464 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\zlib1.dll 2013-04-09 10:06 - 2012-07-12 14:59 - 00446976 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\deviceProfile.dll 2013-04-09 10:06 - 2012-07-12 14:59 - 00019456 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\eventsSender.dll 2013-04-09 10:06 - 2012-07-12 14:59 - 00062976 _____ () C:\Program Files (x86)\Intel\IntelAppStore\bin\serviceManagerStarter.dll 2013-04-09 09:21 - 2012-06-25 10:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2015-06-22 23:42 - 2015-06-20 07:46 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.130\libglesv2.dll 2015-06-22 23:42 - 2015-06-20 07:46 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.130\libegl.dll 2015-06-22 23:42 - 2015-06-20 07:46 - 15003976 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.130\PepperFlash\pepflashplayer.dll 2014-11-18 23:02 - 2014-11-18 23:02 - 00316576 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Justyna\OneDrive:ms-properties AlternateDataStreams: C:\Users\Justyna\Downloads\list-0a0d71-4.eml:OECustomProperty ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-745078335-3284917955-1969653430-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Justyna\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta z Przeglądarki fotografii systemu Windows.jpg DNS Servers: 192.168.1.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{604C0E6D-A546-40F8-9FA2-14E6E4160CC7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Free to Play\FTP.exe FirewallRules: [{D1E27800-EE19-469B-91D6-709D61EB98AB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Free to Play\FTP.exe FirewallRules: [{C9F7CBD2-560D-4452-B575-69F8C2576DD7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe FirewallRules: [{D5595531-A0B0-4F6F-9453-DC659C6B156E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe FirewallRules: [{AE7F9553-E229-41A0-983C-A82EDC74DA4D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Might & Magic - Duel of Champions\Game.exe FirewallRules: [{87CE9DC4-8675-411D-87A7-63FE659FE360}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Might & Magic - Duel of Champions\Game.exe FirewallRules: [{5CF293F3-DCCF-4A6E-9C7F-88FA77E779FB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE_Unrestricted.exe FirewallRules: [{D121F02E-D1E1-454E-A8FB-A85BE1820D21}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE_Unrestricted.exe FirewallRules: [{6555A12F-C047-49A1-B85C-3D5F21B12CF6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE.exe FirewallRules: [{E27297A9-996F-44D2-A37D-7620C7FADD9D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE.exe FirewallRules: [{EF772035-F684-45D4-A7DA-32EBFB7F783F}] => (Allow) C:\Program Files (x86)\Electronic Arts\Bitwa o Śródziemie II\game.dat FirewallRules: [{7FF52D34-696A-4C9E-A8FF-7A553948D312}] => (Allow) C:\Program Files (x86)\Electronic Arts\Bitwa o Śródziemie II\game.dat FirewallRules: [{1D1C5505-3938-4A73-8596-CF84EC1003A2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Worms Reloaded\WormsReloaded.exe FirewallRules: [{32F43285-3E73-42A5-9201-B9691E5C8FE5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Worms Reloaded\WormsReloaded.exe FirewallRules: [{B08A3B40-133E-4665-9FCC-BFF4ABE28608}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{0164C4B1-B2EC-4610-982A-6C28F997E15F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{B28A2417-3575-4F33-8198-8E23007C153A}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{78168FB2-F80E-4ADB-A980-60A990752549}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{31A5D8E9-0AD8-479C-AB13-464FEDA44854}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{7D60910E-65F2-4A24-BAB4-0E6DC3242D40}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{799B928E-F2F3-4FC3-B44D-AB19CA47A579}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{F6924A4E-5584-4556-8E07-25D51D517EFF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{03DE047B-02C7-4781-BD57-CFA4ABC03701}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{562C10CF-4C3C-48C7-B230-9D2532DA7CBD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{7FF02748-FAF0-434F-BE01-E271E7D9BB30}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{2436767E-340F-4506-B290-9BE135440430}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{88EE61B9-805D-4929-A662-FC458E9F0CFB}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{775ED5D4-2A30-40D4-84AC-355AB762D6C3}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{3CE36A6C-7032-4F1A-B070-E3398A7B9575}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{BBB18BEF-CFD9-4925-80A2-FEDEF23E9482}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{2B2BFEAB-4256-47AA-A1DD-82C6E622D281}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [UDP Query User{39A286E4-BEA0-4AA5-96EC-C1DA8A255B84}C:\program files (x86)\intel\intelappstore\bin\ismagent.exe] => (Allow) C:\program files (x86)\intel\intelappstore\bin\ismagent.exe FirewallRules: [TCP Query User{DBC46F17-E0D2-4EDE-BC4A-96CCE94C3D1D}C:\program files (x86)\intel\intelappstore\bin\ismagent.exe] => (Allow) C:\program files (x86)\intel\intelappstore\bin\ismagent.exe FirewallRules: [{E9BBF76E-A7A0-4745-B379-D279B2DC6794}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [{E6EEAEAB-D280-40CB-9583-AF9DE8CD174B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [{8B2A710B-C2AF-473A-9EA1-8D56773DDF0C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life\hlds.exe FirewallRules: [{CE890F7C-7CAD-4078-8200-E77580B945E7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life\hlds.exe FirewallRules: [{4587ED14-15B5-4593-8FB7-FBBEA9EF6D5A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\KillingFloor\System\KillingFloor.exe FirewallRules: [{C6C1A286-16B8-4A49-AEE1-A9BC00AAC26A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\KillingFloor\System\KillingFloor.exe FirewallRules: [{4744E96C-BFF1-4EAD-9B48-B71AC9CD8790}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [{CDA8FDCC-BD6C-4B48-84C8-88FA830C9D0C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [{B4E79CF0-366B-4CEF-BB22-1680BABA31BD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Darwinia\darwinia.exe FirewallRules: [{AF03E3FB-8DA2-4382-8BD1-356369EAB598}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Darwinia\darwinia.exe FirewallRules: [{2EA53347-74BB-462A-9010-D8434B7252F5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Multiwinia\multiwinia.exe FirewallRules: [{26BBF10C-78EA-47A5-80B7-B5F61954B970}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Multiwinia\multiwinia.exe FirewallRules: [{CC9843BF-E38E-48C8-9DED-C48D91866FEF}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [UDP Query User{1441ED9A-005F-4F7B-B0F6-1BC5E47D6C11}C:\program files (x86)\intel\intelappstore\bin\ismagent.exe] => (Allow) C:\program files (x86)\intel\intelappstore\bin\ismagent.exe FirewallRules: [TCP Query User{076DC2E4-3CD8-4DBF-9C7F-064F84B62C93}C:\program files (x86)\intel\intelappstore\bin\ismagent.exe] => (Allow) C:\program files (x86)\intel\intelappstore\bin\ismagent.exe FirewallRules: [{5D11C2B8-AB47-4B3F-8CE9-C7D16D2AB787}] => (Allow) C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{B2FA36F4-1A55-4402-8F59-1E5C66546C28}] => (Allow) C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{ADF13454-F8B6-40A1-9113-F39EB2BFBFDF}] => (Allow) C:\Users\Justyna\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{C26F4AC4-5B8C-4D96-8091-E1052A14FF78}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{83AA35B4-3AFE-48E9-9798-907D5442D2C6}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{3BFD24D3-98EA-44A0-AA1B-833BDB741E19}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD10.EXE FirewallRules: [{020B914F-1C58-49AE-B57F-E70332F42108}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe FirewallRules: [{6969D5DB-928A-4D67-9A54-EDE3125DA24A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{0C2BCFBB-A85D-488D-AC08-D6BF9A7B16EA}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{83431ADE-3BD5-470D-80BF-3E2D9D863ACE}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{0579900E-7740-47E8-A5F3-349F87B21687}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{8DEA1B64-75EE-4F58-83D3-0C01B89B7F2E}C:\program files (x86)\counter-strike\cstrike.exe] => (Block) C:\program files (x86)\counter-strike\cstrike.exe FirewallRules: [UDP Query User{683C990F-5E9D-4D42-B2E2-632A65F6F655}C:\program files (x86)\counter-strike\cstrike.exe] => (Block) C:\program files (x86)\counter-strike\cstrike.exe FirewallRules: [{B01C4B42-D302-466D-9A8E-E9E4AD6E7DF8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{EC282BAA-FFED-4791-8986-7212E93FB98D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{814309F5-9D58-4EB4-BBFF-82115182018D}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: Qualcomm Atheros AR3012 Bluetooth 4.0 + HS Description: Qualcomm Atheros AR3012 Bluetooth 4.0 + HS Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Qualcomm Atheros Communications Service: BTHUSB Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (06/24/2015 08:03:43 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program backgroundTaskHost.exe w wersji 6.3.9600.17415 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: e18 Godzina rozpoczęcia: 01d0aea6b23e809f Godzina zakończenia: 4294967295 Ścieżka aplikacji: C:\WINDOWS\system32\backgroundTaskHost.exe Identyfikator raportu: 581f1ea4-1a9b-11e5-bf0e-2089848d6b16 Pełna nazwa pakietu powodującego błąd: C59AD0AF.LenovoCloudStorageBySugarSync_1.3.0.889_neutral__m3tnjedffpfhj Identyfikator aplikacji względem pakietu powodującego błąd: App Error: (06/24/2015 06:45:14 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program Explorer.EXE w wersji 6.3.9600.17667 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 1f04 Godzina rozpoczęcia: 01d0ae9cf926934e Godzina zakończenia: 4294967295 Ścieżka aplikacji: C:\WINDOWS\Explorer.EXE Identyfikator raportu: 613b4ef3-1a90-11e5-bf0c-001e101fbf7d Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (06/24/2015 11:56:27 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LENOVO) Description: Aktywacja aplikacji microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (06/24/2015 11:15:05 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program backgroundTaskHost.exe w wersji 6.3.9600.17415 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 6f4 Godzina rozpoczęcia: 01d0ae5d2e6692ea Godzina zakończenia: 4294967295 Ścieżka aplikacji: C:\WINDOWS\system32\backgroundTaskHost.exe Identyfikator raportu: 7eb8f4d7-1a51-11e5-bf0c-001e101fbf7d Pełna nazwa pakietu powodującego błąd: C59AD0AF.LenovoCloudStorageBySugarSync_1.3.0.889_neutral__m3tnjedffpfhj Identyfikator aplikacji względem pakietu powodującego błąd: App Error: (06/24/2015 11:00:07 AM) (Source: SideBySide) (EventID: 9) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "1". Błąd w pliku manifestu lub w pliku zasad "2" w wierszu 3. Element główny pliku manifestu musi być zmontowany. Error: (06/24/2015 09:44:54 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: CSISYNCCLIENT.EXE, wersja: 15.0.4719.1000, sygnatura czasowa: 0x552cf1b6 Nazwa modułu powodującego błąd: csi.dll, wersja: 0.0.0.0, sygnatura czasowa: 0x552cf4cb Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0001e6f7 Identyfikator procesu powodującego błąd: 0x1e00 Godzina uruchomienia aplikacji powodującej błąd: 0xCSISYNCCLIENT.EXE0 Ścieżka aplikacji powodującej błąd: CSISYNCCLIENT.EXE1 Ścieżka modułu powodującego błąd: CSISYNCCLIENT.EXE2 Identyfikator raportu: CSISYNCCLIENT.EXE3 Pełna nazwa pakietu powodującego błąd: CSISYNCCLIENT.EXE4 Identyfikator aplikacji względem pakietu powodującego błąd: CSISYNCCLIENT.EXE5 Error: (06/24/2015 09:40:15 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program backgroundTaskHost.exe w wersji 6.3.9600.17415 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 1a5c Godzina rozpoczęcia: 01d0ae4f96afcf69 Godzina zakończenia: 4294967295 Ścieżka aplikacji: C:\WINDOWS\system32\backgroundTaskHost.exe Identyfikator raportu: 3d1cc916-1a44-11e5-bf0c-001e101fbf7d Pełna nazwa pakietu powodującego błąd: C59AD0AF.LenovoCloudStorageBySugarSync_1.3.0.889_neutral__m3tnjedffpfhj Identyfikator aplikacji względem pakietu powodującego błąd: App Error: (06/23/2015 01:16:37 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program backgroundTaskHost.exe w wersji 6.3.9600.17415 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 10ec Godzina rozpoczęcia: 01d0ada5018a877a Godzina zakończenia: 4294967295 Ścieżka aplikacji: C:\WINDOWS\system32\backgroundTaskHost.exe Identyfikator raportu: 4e93de0c-1999-11e5-bf0b-2089848d6b16 Pełna nazwa pakietu powodującego błąd: C59AD0AF.LenovoCloudStorageBySugarSync_1.3.0.889_neutral__m3tnjedffpfhj Identyfikator aplikacji względem pakietu powodującego błąd: App Error: (06/23/2015 10:30:46 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program backgroundTaskHost.exe w wersji 6.3.9600.17415 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 38d0 Godzina rozpoczęcia: 01d0ad8dd5dece86 Godzina zakończenia: 4294967295 Ścieżka aplikacji: C:\WINDOWS\system32\backgroundTaskHost.exe Identyfikator raportu: 22f4e26b-1982-11e5-bf0b-2089848d6b16 Pełna nazwa pakietu powodującego błąd: C59AD0AF.LenovoCloudStorageBySugarSync_1.3.0.889_neutral__m3tnjedffpfhj Identyfikator aplikacji względem pakietu powodującego błąd: App Error: (06/23/2015 10:23:10 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 System errors: ============= Error: (06/24/2015 08:03:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi pcicsa.sys z powodu następującego błędu: %%2 Error: (06/24/2015 07:55:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi NVIDIA Update Service Daemon z powodu następującego błędu: %%1069 Error: (06/24/2015 07:55:52 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Usługa nvUpdatusService nie może zalogować się jako .\UpdatusUser za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%1326 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error: (06/24/2015 07:41:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi pcicsa.sys z powodu następującego błędu: %%2 Error: (06/24/2015 07:32:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi NVIDIA Update Service Daemon z powodu następującego błędu: %%1069 Error: (06/24/2015 07:32:54 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Usługa nvUpdatusService nie może zalogować się jako .\UpdatusUser za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%1326 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error: (06/24/2015 07:29:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Windows Search z powodu następującego błędu: %%1069 Error: (06/24/2015 07:29:22 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Usługa WSearch nie może zalogować się jako NT AUTHORITY\SYSTEM za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%50 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error: (06/24/2015 07:28:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (06/24/2015 07:28:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Bufor wydruku niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Microsoft Office: ========================= Error: (06/24/2015 08:03:43 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: backgroundTaskHost.exe6.3.9600.17415e1801d0aea6b23e809f4294967295C:\WINDOWS\system32\backgroundTaskHost.exe581f1ea4-1a9b-11e5-bf0e-2089848d6b16C59AD0AF.LenovoCloudStorageBySugarSync_1.3.0.889_neutral__m3tnjedffpfhjApp Error: (06/24/2015 06:45:14 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Explorer.EXE6.3.9600.176671f0401d0ae9cf926934e4294967295C:\WINDOWS\Explorer.EXE613b4ef3-1a90-11e5-bf0c-001e101fbf7d Error: (06/24/2015 11:56:27 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LENOVO) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2144927141 Error: (06/24/2015 11:15:05 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: backgroundTaskHost.exe6.3.9600.174156f401d0ae5d2e6692ea4294967295C:\WINDOWS\system32\backgroundTaskHost.exe7eb8f4d7-1a51-11e5-bf0c-001e101fbf7dC59AD0AF.LenovoCloudStorageBySugarSync_1.3.0.889_neutral__m3tnjedffpfhjApp Error: (06/24/2015 11:00:07 AM) (Source: SideBySide) (EventID: 9) (User: ) Description: c:\program files\windowsapps\c59ad0af.lenovocloudstoragebysugarsync_1.3.0.889_neutral__m3tnjedffpfhj\SugarSyncWin8.exec:\program files\windowsapps\c59ad0af.lenovocloudstoragebysugarsync_1.3.0.889_neutral__m3tnjedffpfhj\SugarSyncWin8.exe2 Error: (06/24/2015 09:44:54 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: CSISYNCCLIENT.EXE15.0.4719.1000552cf1b6csi.dll0.0.0.0552cf4cbc00000050001e6f71e0001d0ae51a7e89bdbC:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXEC:\Program Files (x86)\Common Files\Microsoft Shared\Office15\csi.dlle68443a3-1a44-11e5-bf0c-001e101fbf7d Error: (06/24/2015 09:40:15 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: backgroundTaskHost.exe6.3.9600.174151a5c01d0ae4f96afcf694294967295C:\WINDOWS\system32\backgroundTaskHost.exe3d1cc916-1a44-11e5-bf0c-001e101fbf7dC59AD0AF.LenovoCloudStorageBySugarSync_1.3.0.889_neutral__m3tnjedffpfhjApp Error: (06/23/2015 01:16:37 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: backgroundTaskHost.exe6.3.9600.1741510ec01d0ada5018a877a4294967295C:\WINDOWS\system32\backgroundTaskHost.exe4e93de0c-1999-11e5-bf0b-2089848d6b16C59AD0AF.LenovoCloudStorageBySugarSync_1.3.0.889_neutral__m3tnjedffpfhjApp Error: (06/23/2015 10:30:46 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: backgroundTaskHost.exe6.3.9600.1741538d001d0ad8dd5dece864294967295C:\WINDOWS\system32\backgroundTaskHost.exe22f4e26b-1982-11e5-bf0b-2089848d6b16C59AD0AF.LenovoCloudStorageBySugarSync_1.3.0.889_neutral__m3tnjedffpfhjApp Error: (06/23/2015 10:23:10 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 CodeIntegrity Errors: =================================== Date: 2015-06-23 13:09:17.646 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-23 13:09:17.086 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-23 13:09:16.497 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-23 13:09:14.111 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-23 13:09:13.405 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-23 13:09:13.133 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-23 13:04:52.133 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-23 13:04:51.599 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-23 13:04:50.969 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-23 13:04:50.119 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-2348M CPU @ 2.30GHz Percentage of memory in use: 53% Total physical RAM: 3959.77 MB Available physical RAM: 1859.69 MB Total Pagefile: 4727.77 MB Available Pagefile: 2529.37 MB Total Virtual: 131072 MB Available Virtual: 131071.75 MB ==================== Drives ================================ Drive c: (Windows8_OS) (Fixed) (Total:883.74 GB) (Free:742.66 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:22.06 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: AB97C958) Partition: GPT Partition Type. ==================== End of log ============================