Additional scan result of Farbar Recovery Scan Tool (x64) Version:11-08-2015 02 Ran by Marcin (2015-08-12 19:19:29) Running from C:\Users\Marcin\Desktop\frst Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-622708417-3539147826-3392651387-500 - Administrator - Disabled) Gość (S-1-5-21-622708417-3539147826-3392651387-501 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-622708417-3539147826-3392651387-1058 - Limited - Enabled) Marcin (S-1-5-21-622708417-3539147826-3392651387-1001 - Administrator - Enabled) => C:\Users\Marcin ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden 7-Zip 9.22 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0922-000001000000}) (Version: 9.22.00.0 - Igor Pavlov) ABBYY FineReader 11 Corporate Edition (HKLM-x32\...\{F11000CE-0010-0000-0000-074957833700}) (Version: 11.11.141 - ABBYY) ACE Mega CoDecS Pack (HKLM-x32\...\{FFFF6D5C-E2F1-4B40-BC89-8923312E89EB}}_is1) (Version: 6.03.0911 - ACE DESIGN Software) Acer Backup Manager (HKLM-x32\...\InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}) (Version: 2.0.0.68 - NewTech Infosystems) Acer Crystal Eye webcam Ver:1.1.191.726 (HKLM-x32\...\{D0ACE89D-EC7F-470F-80BE-4C98ED366B32}) (Version: 1.1.191.726 - Chicony Electronics Co.,Ltd.) Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 5.00.3005 - Acer Incorporated) Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 4.05.3013 - Acer Incorporated) Acer GameZone Console (HKLM-x32\...\{58F4D244-314F-4D26-B5EF-C28AB32E22CB}_is1) (Version: 6.1.0.9 - Oberon Media, Inc.) Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.03.3003 - Acer Incorporated) Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0707.2010 - Acer Incorporated) Acer Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3001 - Acer Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 13.0.0.111 - Adobe Systems Incorporated) Adobe Flash Player 18 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 18.0.0.232 - Adobe Systems Incorporated) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated) Adobe Reader XI (11.0.12) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.20.1165, 21.12.2012 - AIMP DevTeam) Aktualizacje NVIDIA 2.5.12.11 (Version: 2.5.12.11 - NVIDIA Corporation) Hidden ALLPlayer V5.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLCinema Ltd.) Archiwizator WinRAR (HKLM\...\WinRAR archiver) (Version: - ) Ashampoo Burning Studio 2012 v10.0.15 (HKLM-x32\...\Ashampoo Burning Studio 2012_is1) (Version: 10.0.15 - Ashampoo GmbH & Co. KG) Avira (HKLM-x32\...\{a5e00a72-db4a-4f77-8874-d1265b8fcd7e}) (Version: 1.1.42.10415 - Avira Operations GmbH & Co. KG) Avira (x32 Version: 1.1.42.10415 - Avira Operations GmbH & Co. KG) Hidden Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.12.408 - Avira Operations GmbH & Co. KG) Backup Manager Basic (x32 Version: 2.0.0.68 - NewTech Infosystems) Hidden BankBrowser (HKU\S-1-5-21-622708417-3539147826-3392651387-1001\...\BankBrowser) (Version: 3.6 - DialCom24 Sp. z o.o.) Battlefield 2(TM) (HKLM-x32\...\{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}) (Version: - ) Battlefield 2: Jednostki Specjalne (HKLM-x32\...\{50D4CB89-AF34-4978-96DC-C3034062E901}) (Version: - ) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.6.2 - EA Digital Illusions CE AB) BB FlashBack Express 5 (HKLM-x32\...\BB FlashBack Express 5) (Version: 5.3.0.3386 - Blueberry) BitTorrent (HKU\S-1-5-21-622708417-3539147826-3392651387-1001\...\BitTorrent) (Version: 7.9.3.40299 - BitTorrent Inc.) Broadcom Gigabit NetLink Controller (HKLM\...\{A84DB02B-9C2B-4272-9D2D-A80E00A56513}) (Version: 14.0.2.3 - Broadcom Corporation) BufferChm (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden CCleaner (HKLM\...\CCleaner) (Version: 4.14 - Piriform) Centrum obsługi urządzeń z systemem Windows Mobile (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation) ChomikBox (HKLM-x32\...\{4F7B7598-88EA-4442-A54E-65EADCF06D97}) (Version: 2.0.4.3 - Chomikuj.pl) Copy (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden CPUID CPU-Z 1.71 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) Creative Centrale (HKLM-x32\...\Creative Centrale) (Version: - Creative Technology Ltd.) Creative Centrale (x32 Version: 1.03.01 - Creative Technology Ltd.) Hidden Creative Software Update (x32 Version: 1.01.02 - Creative Technology Ltd.) Hidden Creative ZEN X-Fi User's Guide (HKLM-x32\...\ZENX-FI) (Version: - Creative Technology Ltd.) Creative ZEN X-Fi Video Converter (HKLM-x32\...\Creative ZEN X-Fi Video Converter) (Version: - Creative Technology Ltd.) Creative ZEN X-Fi Video Converter (x32 Version: 1.00.03 - Creative Technology Ltd.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Destinations (x32 Version: 140.0.77.000 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden DivX Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.44 - DivX, LLC) DJ_AIO_06_F2400_SW_Min (x32 Version: 140.0.690.000 - Hewlett-Packard) Hidden Document Express DjVu Plug-in (HKLM-x32\...\{3F24F641-BF83-47AA-BBF9-A5DC1FF7A0A3}) (Version: 6.1.26155 - Caminova, Inc.) DriverEasy 4.5.1 (HKLM\...\DriverEasy_is1) (Version: 4.5.1.0 - Easeware) eSobi v2 (HKLM-x32\...\InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}) (Version: 2.0.4.000274 - esobi Inc.) eSobi v2 (x32 Version: 2.0.4.000274 - esobi Inc.) Hidden F2400 (x32 Version: 140.0.690.000 - Hewlett-Packard) Hidden Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych (HKLM-x32\...\{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}) (Version: 15.4.5722.2 - Microsoft Corporation) Free WAV To MP3 Converter 2.1 (HKLM-x32\...\FreeWAVToMP3Converter) (Version: 2.1 - FreeWAVToMP3Converter Software Inc) Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden GIMP 2.6.11 (HKLM-x32\...\WinGimp-2.0_is1) (Version: 2.6.11 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.130 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden GPBaseService2 (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden Happyland Adventures - Xmas Edition v1.3.1 (HKLM-x32\...\Happyland Adventures - Xmas Edition_is1) (Version: - Free Lunch Design) Hewlett-Packard ACLM.NET v1.1.0.0 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Deskjet F2400 All-in-One Driver Software 14.0 Rel. 6 (HKLM\...\{819CA3BC-2FF8-4811-B42F-421F7BFD3559}) (Version: 14.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Smart Web Printing 4.60 (HKLM\...\HP Smart Web Printing) (Version: 4.60 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPDiagnosticAlert (x32 Version: 1.00.0000 - Microsoft) Hidden HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3003 - Acer Incorporated) Infinite HD™ App (HKU\S-1-5-21-622708417-3539147826-3392651387-1001\...\Octoshape Streaming Services) (Version: - Octoshape ApS) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.2.1001 - Intel Corporation) Java 8 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418051F0}) (Version: 8.0.510 - Oracle Corporation) Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation) Juniper Networks Network Connect 7.1.18 (HKLM-x32\...\Juniper Network Connect 7.1.18) (Version: 7.1.18.29707 - Juniper Networks) Juniper Networks Network Connect 7.1.20 (HKLM-x32\...\Juniper Network Connect 7.1.20) (Version: 7.1.20.32727 - Juniper Networks) Juniper Networks, Inc. Setup Client (HKU\S-1-5-21-622708417-3539147826-3392651387-1001\...\Juniper_Setup_Client) (Version: 7.1.19.47369 - Juniper Networks, Inc.) Juniper Networks, Inc. Setup Client Activex Control (HKLM-x32\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks, Inc.) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Launch Manager (HKLM-x32\...\LManager) (Version: 4.0.12 - Acer Inc.) Legion PL (HKLM-x32\...\Legion PL) (Version: - ) MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Media Go (HKLM-x32\...\{BE4F388F-E7B6-43E8-8856-6B74AC375A87}) (Version: 1.8.121 - Sony) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office 2010 Service Pack 1 (SP1) (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{7BC9B5EB-125A-4E9B-97E1-8D85B5E960B8}) (Version: - Microsoft) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.6029.1000 - Microsoft Corporation) Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Mozilla Firefox 40.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 40.0 (x86 pl)) (Version: 40.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 40.0.0.5697 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MyWinLocker (x32 Version: 3.1.212.0 - Egis Technology Inc.) Hidden MyWinLocker Suite (HKLM-x32\...\InstallShield_{738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE}) (Version: 3.1.212.0 - Egis Technology Inc.) MyWinLocker Suite (x32 Version: 3.1.212.0 - Egis Technology Inc.) Hidden NapiProjekt 2.0.0 (build 1932) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) NFOlux (HKLM-x32\...\NFOlux) (Version: - ) NTI Media Maker 9 (HKLM-x32\...\InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.8928 - NTI Corporation) NTI Media Maker 9 (x32 Version: 9.0.2.8928 - NTI Corporation) Hidden NVIDIA GeForce Experience 2.5.12.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.12.11 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.62 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA Sterownik graficzny 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.62 - NVIDIA Corporation) Obsługa programów Apple (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.) Opera 12.17 (HKLM-x32\...\Opera 12.17.1863) (Version: 12.17.1863 - Opera Software ASA) Origin (HKLM-x32\...\Origin) (Version: 9.5.2.2829 - Electronic Arts, Inc.) Panel sterowania NVIDIA 353.62 (Version: 353.62 - NVIDIA Corporation) Hidden PDF Scissors (HKU\S-1-5-21-622708417-3539147826-3392651387-1001\...\PDF Scissors) (Version: - PDF Scisssors) PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation) PlayStation(R)Network Downloader (HKLM-x32\...\{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}) (Version: 2.06.00741 - Sony Computer Entertainment Inc.) PlayStation(R)Store (HKLM-x32\...\{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}) (Version: 4.3.3.12540 - Sony Computer Entertainment Inc.) Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation) Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Pomocnik Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Pro Evolution Soccer 2012 (HKLM-x32\...\{E737A098-F161-4B6F-AF22-86AAE34F6FBD}) (Version: 1.00.0000 - KONAMI) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.) Real Alternative 2.0.2 (HKLM-x32\...\RealAlt_is1) (Version: 2.0.2 - ) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6141 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30122 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.39 - Piriform) Samsung Drive Manager (HKLM-x32\...\{9F1A6A24-4901-42F6-A355-5DD2B82E62AE}) (Version: 1.0.172 - Clarus, Inc.) Scan (x32 Version: 140.0.80.000 - Hewlett-Packard) Hidden SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.12.11 - NVIDIA Corporation) Hidden Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) Shredder (Version: 2.0.8.3 - Egis Technology Inc.) Hidden Shredder (x32 Version: 2.0.8.3 - Egis Technology Inc.) Hidden SIW version 2010.07.14 (HKLM-x32\...\{AB67580-257C-45FF-B8F4-C8C30682091A}_is1) (Version: 2010.07.14 - Topala Software Solutions) SmartWebPrinting (x32 Version: 140.0.186.000 - Hewlett-Packard) Hidden SolutionCenter (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden Sony Mobile Update Engine (HKLM-x32\...\Update Engine) (Version: 2.15.8.201506031110 - Sony Mobile Communications Inc.) Sony PC Companion 2.10.259 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.259 - Sony) Status (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden SWF Player version 3 (HKLM-x32\...\{6E0D82FD-960E-4B83-83BD-E441F27BCD66}_is1) (Version: 3 - TerSoft) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 14.0.19.0 - Synaptics Incorporated) System Requirements Lab for Intel (HKLM-x32\...\{C7CA731B-BF9A-46D9-92CF-8A8737AE9240}) (Version: 4.5.13.0 - Husdawg, LLC) TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) The KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: - ) Toolbox (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden USB Vibration Joystick (HKLM-x32\...\{4999B2F1-3E74-409A-B8B5-E94448AA9EA6}) (Version: 2007.08.17 - ) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Veetle TV 0.9.18 (HKLM-x32\...\Veetle TV) (Version: 0.9.18 - Veetle, Inc) VLC media player 1.1.5 (HKLM-x32\...\VLC media player) (Version: 1.1.5 - VideoLAN) WapSter AQQ (HKLM-x32\...\AQQ) (Version: 2.6.0.10 - Creative Team S.A.) WebReg (x32 Version: 140.0.212.017 - Hewlett-Packard) Hidden Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3002 - Acer Incorporated) Windows Live Sync (HKLM-x32\...\{2E522ED6-01E2-4207-82D5-B3BFB31B8BD4}) (Version: 14.0.8089.726 - Microsoft Corporation) Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) Xilisoft Video Converter Ultimate 6 (HKLM-x32\...\Xilisoft Video Converter Ultimate 6) (Version: 6.5.2.0216 - Xilisoft) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-622708417-3539147826-3392651387-1001_Classes\CLSID\{80D35456-F5B4-1EE6-123A-ED21833246D4}\InprocServer32 -> C:\Windows\system32\ole32.dll (Microsoft Corporation) ==================== Restore Points ========================= 03-08-2015 19:30:00 Kopia zapasowa systemu Windows 09-08-2015 19:00:32 Kopia zapasowa systemu Windows 11-08-2015 00:05:50 Removed Skype™ 7.5 11-08-2015 14:51:59 WinThruster Wt, sie 11, 15 14:51 11-08-2015 16:30:15 Windows Update ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2015-06-26 15:10 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {09EA38D2-0E4C-4DB0-B804-0B59B243A1FE} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-622708417-3539147826-3392651387-1001Core => C:\Users\Marcin\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-12-02] (Facebook Inc.) Task: {2EEB614E-2F02-4AD3-8498-F77B9DF28EDC} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-05-20] (Piriform Ltd) Task: {344C3A06-5113-4BAF-8DD4-AB3C749F0E4C} - System32\Tasks\{1542F675-B9CF-40AD-B673-CBBADF665A07} => C:\Users\Marcin\Desktop\Setup.exe Task: {397323E7-CF71-4A6A-9E77-91BFE65A6AE9} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-11] (Adobe Systems Incorporated) Task: {4E09195E-5068-41CB-AAB4-E3A8D5EE8376} - System32\Tasks\{17208604-0B35-4D9B-B358-A8A8E21E063A} => C:\Users\Marcin\Desktop\Setup.exe Task: {51FDAC66-F786-4F6E-9601-65212E2C1402} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-31] (Google Inc.) Task: {7054D35D-99E2-41CA-BDDF-9F1CE97D1948} - System32\Tasks\DriverEasy Scheduled Scan => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe [2013-05-21] (Easeware) Task: {73ECC031-745A-451E-8CC9-8C2E087ED9A4} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-622708417-3539147826-3392651387-1001UA => C:\Users\Marcin\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-12-02] (Facebook Inc.) Task: {8AF34012-7E49-4C3E-A1CE-9F0AB439CFDA} - System32\Tasks\{AEAEB19E-A89B-437C-8A7B-9E00E105F1E5} => C:\Users\Marcin\Desktop\Setup.exe Task: {B152FB12-527F-4C54-9233-54CFAC5B81D6} - System32\Tasks\{D3B1018D-393B-4493-8CAC-BA91A60F4B5B} => C:\Program Files (x86)\Ulead Systems\Ulead VideoStudio 11\vstudio.exe Task: {C2B86D94-2B9D-4A5B-A058-B66DA87DF86F} - System32\Tasks\{36EE28D5-508F-49FD-9369-1C755FE6E151} => C:\Program Files (x86)\Skype\\Phone\Skype.exe Task: {DC921CC9-7B73-4D6B-9587-C90B7CCD0098} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-31] (Google Inc.) Task: {DDB30812-0DD8-48D1-9295-AFCA0754C322} - System32\Tasks\{C9807674-07CB-4860-B74B-34B6F66589BD} => C:\Users\Marcin\Desktop\Setup.exe Task: {F6F9875E-EADA-407D-B63C-BB24D5A950F8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {FC408D03-B115-4085-886B-0E932D496B93} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2014-11-23] () (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe Task: C:\Windows\Tasks\DriverEasy Scheduled Scan.job => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-622708417-3539147826-3392651387-1001Core.job => C:\Users\Marcin\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-622708417-3539147826-3392651387-1001UA.job => C:\Users\Marcin\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2015-08-11 16:17 - 2015-07-23 03:31 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2011-03-17 01:07 - 2011-03-17 01:07 - 04297568 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2014-06-02 13:28 - 2014-06-02 13:28 - 00008192 _____ () C:\Windows\SysWOW64\srvany.exe 2014-06-02 13:28 - 2014-06-02 13:28 - 00151552 _____ () C:\Windows\KMService.exe 2014-11-30 21:00 - 2015-03-24 21:20 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2010-06-29 00:20 - 2010-06-29 00:20 - 00465576 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\sqlite3.dll 2010-06-29 00:12 - 2010-06-29 00:12 - 01081600 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\ACE.dll 2015-05-09 22:55 - 2015-07-24 06:22 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2010-07-25 08:10 - 2009-05-20 08:02 - 00072200 _____ () C:\Program Files (x86)\Launch Manager\CdDirIo.dll 2014-11-04 22:19 - 2014-11-04 22:19 - 00170496 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\89753abff3827095ec7f3d3fb79f744a\IsdiInterop.ni.dll 2010-07-13 13:32 - 2010-04-13 18:52 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\Temp:0B9176C0 AlternateDataStreams: C:\ProgramData\Temp:1A60DE96 AlternateDataStreams: C:\ProgramData\Temp:4D066AD2 AlternateDataStreams: C:\ProgramData\Temp:5D7E5A8F AlternateDataStreams: C:\ProgramData\Temp:798A3728 AlternateDataStreams: C:\ProgramData\Temp:93EB7685 AlternateDataStreams: C:\ProgramData\Temp:CDFF58FE AlternateDataStreams: C:\ProgramData\Temp:E1F04E8D AlternateDataStreams: C:\ProgramData\Temp:E36F5B57 AlternateDataStreams: C:\ProgramData\Temp:E3C56885 ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-622708417-3539147826-3392651387-1001\Control Panel\Desktop\\Wallpaper -> DNS Servers: 89.231.1.206 - 217.172.224.160 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\Services: AxAutoMntSrv => 2 MSCONFIG\Services: CTDevice_Srv => 2 MSCONFIG\Services: CTUPnPSv => 3 MSCONFIG\Services: SZDrvSvc => 2 MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: AlcoholAutomount => "C:\Program Files (x86)\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe" -automount MSCONFIG\startupreg: ALLUpdate => "C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe" "sleep" MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: AQQ => C:\WSZELK~1\PROGRA~1\WapSter\WAPSTE~1\AQQ.exe MSCONFIG\startupreg: BCSSync => "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices MSCONFIG\startupreg: Clarus Drive Manager => C:\Program Files (x86)\Clarus\Samsung Drive Manager\Drive Manager.exe -Hide MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: DivXMediaServer => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe MSCONFIG\startupreg: DivXUpdate => "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW MSCONFIG\startupreg: Facebook Update => "C:\Users\Marcin\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver MSCONFIG\startupreg: Nvtmru => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" MSCONFIG\startupreg: PLFSetI => C:\Windows\PLFSetI.exe MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: SoftAuto.exe => "C:\Program Files (x86)\Creative\Software Update 3\SoftAuto.exe" MSCONFIG\startupreg: Sony Ericsson PC Companion => "C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe" /Background ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{4E5B3EEA-D259-467D-B5B3-280949833CE0}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{1AFC3EDA-97F8-47CC-B218-5DEDE7C11775}] => (Allow) svchost.exe FirewallRules: [{5C973927-5089-4C0A-90F1-742AC5379618}] => (Allow) C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe FirewallRules: [TCP Query User{D8BD7F95-7338-4F36-B0A6-51BAB275C420}C:\wszelkie programy\program files (x86)\wapster\wapster aqq\aqq.exe] => (Allow) C:\wszelkie programy\program files (x86)\wapster\wapster aqq\aqq.exe FirewallRules: [UDP Query User{332BDDC6-5011-47EF-91AD-34CFD2346150}C:\wszelkie programy\program files (x86)\wapster\wapster aqq\aqq.exe] => (Allow) C:\wszelkie programy\program files (x86)\wapster\wapster aqq\aqq.exe FirewallRules: [{78A018BB-C9E4-4181-9A95-C4DED7CEB62A}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{CED112C1-36C8-403F-8B09-AAC586E15093}] => (Allow) LPort=2869 FirewallRules: [{A586E563-1DFC-4158-A599-0DAC90E2F595}] => (Allow) LPort=1900 FirewallRules: [{8F84FBAF-AA7F-46FC-B76F-E76B043F11A2}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [{E00451C0-E30B-40E6-BA5B-CAE27C91B832}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{CCC6F801-6DDB-470C-A469-043A2D8E6228}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{437E1674-4CC9-493B-8D85-D4952C24D83F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{E36B96E2-A7AF-4809-A0B1-0B0039DE88C7}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{E5ACD783-8632-4A0C-8649-408AEEEB14CA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{FD8E748E-A45F-4AC6-A858-B470791B8D0D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{0C9AB30B-EEBC-4499-B2B5-99E4810A7030}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{72132606-0F70-407E-9383-49223DFB8A07}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{E0A6F19C-F2B4-4843-9E5E-312AA4384C34}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{F6BC07D2-0194-4DA9-AF99-9E825CD16560}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{081088A5-C8A9-4938-BF1F-BAA65FFBB436}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{DA97D16D-E4E5-424E-A50E-0278107166C5}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{EF5AB29C-695F-499E-A5A7-3BE439D3ED33}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{C478C1D0-792E-4DFF-ACCE-7F25406814F1}] => (Allow) C:\Program Files (x86)\HP\digital imaging\smart web printing\smartwebprintexe.exe FirewallRules: [TCP Query User{9D62581D-2A1A-42F9-9F04-E054AE9B71C0}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{3492569D-7ED8-4904-A621-EFDF67F57FC9}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{8204CD8B-D112-4C8D-8FD9-652E99FEE4A6}C:\wszelkie programy\program files (x86)\wapster\wapster aqq\aqq.exe] => (Allow) C:\wszelkie programy\program files (x86)\wapster\wapster aqq\aqq.exe FirewallRules: [UDP Query User{62F6AC20-34AE-48E2-B829-95A73D95B4CB}C:\wszelkie programy\program files (x86)\wapster\wapster aqq\aqq.exe] => (Allow) C:\wszelkie programy\program files (x86)\wapster\wapster aqq\aqq.exe FirewallRules: [{9BB20C78-CD08-4719-87BD-22D4EB664D9B}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{CBA4181F-CD91-43AC-93E7-36199E90547C}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{1A47401C-4DBF-4C85-BC2F-0A09B90CAE86}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{FD9E26CB-9FAF-46E0-BEA8-EBDB6D828907}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{7D92EC5C-EB15-49F9-894E-CD02FA5ED2BF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{B4F21983-E16C-40E2-AA58-33DD7555494B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{C936A8BA-D17D-4C6A-A48B-402455630065}] => (Allow) C:\Users\Marcin\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{76A2534C-2E89-4312-8813-8456733465CF}] => (Allow) C:\Users\Marcin\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{4A6E45C4-245F-4AB2-B293-1E546C952DAC}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{98FB3BEE-C96A-43AC-8E1E-A8FE93A51134}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [TCP Query User{6AFD98E2-9CF7-4AE9-B70D-936542D0CD56}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [UDP Query User{8AF6C12D-89B7-4D14-9ACF-375AFBB22D03}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [{99EA203A-C7D0-4D30-83C6-28D092552D4E}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe FirewallRules: [{C12AC752-03A6-48CB-BE1F-3A433DDB75CB}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe FirewallRules: [{19C6FE95-8794-49E9-8FCA-610ED1B5425E}] => (Allow) C:\Program Files (x86)\EA GAMES\Battlefield 2\BF2.exe FirewallRules: [{5F1C226D-B23C-443E-A6D7-B59774D13CED}] => (Allow) C:\Program Files (x86)\EA GAMES\Battlefield 2\BF2.exe FirewallRules: [{F6BFBE49-C2F8-46B6-8B0C-135ABDA53AE1}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{044D9ADA-CE85-4198-B06F-FD699A1C7BEB}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{DCFE2C0D-AE67-4DA5-97CF-34B7120B6616}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{B36200B7-52C3-4C13-AB89-43C7717F438B}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{F97C7730-1D72-4BB0-9908-7B569584D444}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{D13C4021-35E2-48ED-A336-CDDD6111FD55}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [TCP Query User{CBE9404C-7D62-451E-AB46-07FF9A246A0C}C:\program files (x86)\ea games\battlefield 2\bf2.exe] => (Block) C:\program files (x86)\ea games\battlefield 2\bf2.exe FirewallRules: [UDP Query User{F3380456-7614-4F41-8A50-C222380F1E7F}C:\program files (x86)\ea games\battlefield 2\bf2.exe] => (Block) C:\program files (x86)\ea games\battlefield 2\bf2.exe FirewallRules: [{767E8FF5-BBD1-4C45-98C5-282754210EBE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{5BFDDE88-F617-42A3-94BC-9DE0BDAF93BF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{81042A50-0616-4058-AC80-661955103229}C:\users\marcin\appdata\roaming\octoshape\octoshape streaming services\octoshapeclient.exe] => (Allow) C:\users\marcin\appdata\roaming\octoshape\octoshape streaming services\octoshapeclient.exe FirewallRules: [UDP Query User{D2C779BF-12C8-4665-9216-00A75AD19844}C:\users\marcin\appdata\roaming\octoshape\octoshape streaming services\octoshapeclient.exe] => (Allow) C:\users\marcin\appdata\roaming\octoshape\octoshape streaming services\octoshapeclient.exe FirewallRules: [{FE2134F4-E478-4F93-9974-6CE8ED2EB8DA}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe FirewallRules: [{78801C78-AFE5-460B-B1B4-4BA5035B75F3}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe FirewallRules: [{D73C0788-A9EE-4809-B568-5801D87E6121}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{741B3944-D21A-419A-AAE9-F4273D2A4DF0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{60201D1D-759D-498D-AB9E-4F57F9A4ABDD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{078154EE-00E9-474C-8761-7ADA658FBD84}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{24B6FD65-CD92-41C0-BA2E-3D0AF806B32F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{DC044F06-E84D-49D0-BBBC-FE21A2828C18}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe ==================== Faulty Device Manager Devices ============= Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: %TsUsbGD.DeviceDesc.Generic% Description: %TsUsbGD.DeviceDesc.Generic% Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318} Manufacturer: %StdMfg% Service: TsUsbGD Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (08/12/2015 05:33:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: atieclxx.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x55c24fd6 Nazwa modułu powodującego błąd: MSVCR120.dll, wersja: 12.0.21005.1, sygnatura czasowa: 0x524f83ff Kod wyjątku: 0x40000015 Przesunięcie błędu: 0x0000000000074a46 Identyfikator procesu powodującego błąd: 0x16ec Godzina uruchomienia aplikacji powodującej błąd: 0xatieclxx.exe0 Ścieżka aplikacji powodującej błąd: atieclxx.exe1 Ścieżka modułu powodującego błąd: atieclxx.exe2 Identyfikator raportu: atieclxx.exe3 Error: (08/11/2015 06:05:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: thoo0hdj.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Nazwa modułu powodującego błąd: thoo0hdj.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Kod wyjątku: 0xc0000409 Przesunięcie błędu: 0x000728d6 Identyfikator procesu powodującego błąd: 0xaec Godzina uruchomienia aplikacji powodującej błąd: 0xthoo0hdj.exe0 Ścieżka aplikacji powodującej błąd: thoo0hdj.exe1 Ścieżka modułu powodującego błąd: thoo0hdj.exe2 Identyfikator raportu: thoo0hdj.exe3 Error: (08/11/2015 05:44:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: thoo0hdj.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Nazwa modułu powodującego błąd: thoo0hdj.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000011aa Identyfikator procesu powodującego błąd: 0x178c Godzina uruchomienia aplikacji powodującej błąd: 0xthoo0hdj.exe0 Ścieżka aplikacji powodującej błąd: thoo0hdj.exe1 Ścieżka modułu powodującego błąd: thoo0hdj.exe2 Identyfikator raportu: thoo0hdj.exe3 Error: (08/11/2015 05:42:57 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: thoo0hdj.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Nazwa modułu powodującego błąd: thoo0hdj.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000011aa Identyfikator procesu powodującego błąd: 0x938 Godzina uruchomienia aplikacji powodującej błąd: 0xthoo0hdj.exe0 Ścieżka aplikacji powodującej błąd: thoo0hdj.exe1 Ścieżka modułu powodującego błąd: thoo0hdj.exe2 Identyfikator raportu: thoo0hdj.exe3 Error: (08/11/2015 05:29:48 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: thoo0hdj.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Nazwa modułu powodującego błąd: thoo0hdj.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000011aa Identyfikator procesu powodującego błąd: 0x16d8 Godzina uruchomienia aplikacji powodującej błąd: 0xthoo0hdj.exe0 Ścieżka aplikacji powodującej błąd: thoo0hdj.exe1 Ścieżka modułu powodującego błąd: thoo0hdj.exe2 Identyfikator raportu: thoo0hdj.exe3 Error: (08/11/2015 05:27:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: zhvwwjl4.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Nazwa modułu powodującego błąd: zhvwwjl4.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000011aa Identyfikator procesu powodującego błąd: 0x6a4 Godzina uruchomienia aplikacji powodującej błąd: 0xzhvwwjl4.exe0 Ścieżka aplikacji powodującej błąd: zhvwwjl4.exe1 Ścieżka modułu powodującego błąd: zhvwwjl4.exe2 Identyfikator raportu: zhvwwjl4.exe3 Error: (08/11/2015 05:25:59 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: zhvwwjl4.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Nazwa modułu powodującego błąd: zhvwwjl4.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000011aa Identyfikator procesu powodującego błąd: 0x1704 Godzina uruchomienia aplikacji powodującej błąd: 0xzhvwwjl4.exe0 Ścieżka aplikacji powodującej błąd: zhvwwjl4.exe1 Ścieżka modułu powodującego błąd: zhvwwjl4.exe2 Identyfikator raportu: zhvwwjl4.exe3 Error: (08/11/2015 04:07:33 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: setup.exe_NVIDIA Install Application, wersja: 2.1002.180.1515, sygnatura czasowa: 0x559f0102 Nazwa modułu powodującego błąd: setup.exe, wersja: 2.1002.180.1515, sygnatura czasowa: 0x559f0102 Kod wyjątku: 0x40000015 Przesunięcie błędu: 0x0001fa48 Identyfikator procesu powodującego błąd: 0x10cc Godzina uruchomienia aplikacji powodującej błąd: 0xsetup.exe_NVIDIA Install Application0 Ścieżka aplikacji powodującej błąd: setup.exe_NVIDIA Install Application1 Ścieżka modułu powodującego błąd: setup.exe_NVIDIA Install Application2 Identyfikator raportu: setup.exe_NVIDIA Install Application3 Error: (08/11/2015 02:56:55 PM) (Source: NvStreamSvc) (EventID: 2001) (User: ) Description: An error has occurred (SSAU restarted too many times in a short period. Aborting. [0]). Error: (08/11/2015 12:05:09 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program Skype.exe w wersji 7.5.0.102 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 684 Godzina rozpoczęcia: 01d0d3b822e9a038 Godzina zakończenia: 24 Ścieżka aplikacji: C:\Program Files (x86)\Skype\Phone\Skype.exe Identyfikator raportu: System errors: ============= Error: (08/12/2015 07:12:29 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (08/12/2015 05:49:08 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (08/12/2015 05:40:17 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Windows Update zawiesiła się podczas uruchamiania. Error: (08/12/2015 05:35:19 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Microsoft .NET Framework NGEN v4.0.30319_X64. Error: (08/12/2015 05:34:48 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Microsoft .NET Framework NGEN v4.0.30319_X86. Error: (08/12/2015 05:32:28 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (08/11/2015 08:50:56 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Menedżer sterowania usługami próbował podjąć akcję korekcyjną (Uruchom usługę ponownie) po nieoczekiwanym zakończeniu usługi Usługa Asystent zgodności programów, ale ta akcja nie powiodła się przy następującym błędzie: %%1056. Error: (08/11/2015 08:49:56 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Autokonfiguracja sieci WLAN niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/11/2015 08:49:56 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Host systemu diagnostyki niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (08/11/2015 08:49:56 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Menedżer sesji Menedżera okien pulpitu niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Microsoft Office: ========================= Error: (08/12/2015 05:33:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: atieclxx.exe0.0.0.055c24fd6MSVCR120.dll12.0.21005.1524f83ff400000150000000000074a4616ec01d0d514444ca02fC:\Users\Marcin\AppData\Local\Temp\_MEI16122\bin\eth\atieclxx.exeC:\Users\Marcin\AppData\Local\Temp\_MEI16122\bin\eth\MSVCR120.dll84cb781b-4107-11e5-aca1-88ae1d87fd86 Error: (08/11/2015 06:05:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: thoo0hdj.exe2.1.19357.052e7ea83thoo0hdj.exe2.1.19357.052e7ea83c0000409000728d6aec01d0d44e1884206cC:\Users\Marcin\Desktop\thoo0hdj.exeC:\Users\Marcin\Desktop\thoo0hdj.execd0dae82-4042-11e5-8663-88ae1d87fd86 Error: (08/11/2015 05:44:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: thoo0hdj.exe2.1.19357.052e7ea83thoo0hdj.exe2.1.19357.052e7ea83c0000005000011aa178c01d0d44c95ed1651C:\Users\Marcin\Desktop\thoo0hdj.exeC:\Users\Marcin\Desktop\thoo0hdj.exedb4d3d38-403f-11e5-a894-88ae1d87fd86 Error: (08/11/2015 05:42:57 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: thoo0hdj.exe2.1.19357.052e7ea83thoo0hdj.exe2.1.19357.052e7ea83c0000005000011aa93801d0d44c594eed38C:\Users\Marcin\Desktop\thoo0hdj.exeC:\Users\Marcin\Desktop\thoo0hdj.exea2fcac71-403f-11e5-a894-88ae1d87fd86 Error: (08/11/2015 05:29:48 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: thoo0hdj.exe2.1.19357.052e7ea83thoo0hdj.exe2.1.19357.052e7ea83c0000005000011aa16d801d0d44a8bfd7ceaC:\Users\Marcin\Desktop\thoo0hdj.exeC:\Users\Marcin\Desktop\thoo0hdj.execcb05dea-403d-11e5-a8a4-88ae1d87fd86 Error: (08/11/2015 05:27:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: zhvwwjl4.exe2.1.19357.052e7ea83zhvwwjl4.exe2.1.19357.052e7ea83c0000005000011aa6a401d0d44a3361d916C:\Users\Marcin\Desktop\zhvwwjl4.exeC:\Users\Marcin\Desktop\zhvwwjl4.exe74002058-403d-11e5-a8a4-88ae1d87fd86 Error: (08/11/2015 05:25:59 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: zhvwwjl4.exe2.1.19357.052e7ea83zhvwwjl4.exe2.1.19357.052e7ea83c0000005000011aa170401d0d44a00d88dd7C:\Users\Marcin\Desktop\zhvwwjl4.exeC:\Users\Marcin\Desktop\zhvwwjl4.exe43e4d0f5-403d-11e5-a8a4-88ae1d87fd86 Error: (08/11/2015 04:07:33 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: setup.exe_NVIDIA Install Application2.1002.180.1515559f0102setup.exe2.1002.180.1515559f0102400000150001fa4810cc01d0d43ed2a28f31C:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\setup.exeC:\ProgramData\NVIDIA Corporation\GeForce Experience\Update\setup.exe4f561e7b-4032-11e5-ac67-88ae1d87fd86 Error: (08/11/2015 02:56:55 PM) (Source: NvStreamSvc) (EventID: 2001) (User: ) Description: NvStreamSvcSSAU restarted too many times in a short period. Aborting. [0] Error: (08/11/2015 12:05:09 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Skype.exe7.5.0.10268401d0d3b822e9a03824C:\Program Files (x86)\Skype\Phone\Skype.exe ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3 CPU M 370 @ 2.40GHz Percentage of memory in use: 33% Total physical RAM: 8054.71 MB Available physical RAM: 5384.04 MB Total Virtual: 16107.63 MB Available Virtual: 13419.65 MB ==================== Drives ================================ Drive c: (Acer) (Fixed) (Total:237.91 GB) (Free:26.51 GB) NTFS Drive d: (Dysk) (Fixed) (Total:100 GB) (Free:28.3 GB) NTFS Drive e: (Dysk) (Fixed) (Total:114.75 GB) (Free:46.36 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 2242F33A) Partition 1: (Not Active) - (Size=13 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=237.9 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=214.8 GB) - (Type=OF Extended) ==================== End of log ============================