Additional scan result of Farbar Recovery Scan Tool (x64) Version:04-09-2015 Ran by Mateorex (2015-09-06 11:40:45) Running from E:\ Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-4181987488-2194885696-3783316534-500 - Administrator - Disabled) Guest (S-1-5-21-4181987488-2194885696-3783316534-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-4181987488-2194885696-3783316534-1002 - Limited - Enabled) Mateorex (S-1-5-21-4181987488-2194885696-3783316534-1001 - Administrator - Enabled) => C:\Users\Mateorex ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-4181987488-2194885696-3783316534-1001\...\uTorrent) (Version: 3.4.4.40911 - BitTorrent Inc.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated) Adobe Flash Player 18 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated) ALLPlayer V6.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLPlayer Group, Ltd.) AVG 2015 (HKLM\...\AVG) (Version: 2015.0.6125 - AVG Technologies) AVG 2015 (Version: 15.0.4409 - AVG Technologies) Hidden AVG 2015 (Version: 15.0.6125 - AVG Technologies) Hidden BynaCam v4.04 (8.60) (HKLM-x32\...\{248C8A6E-D97F-43EB-B86E-AB0F267C93CF}_is1) (Version: - beziak) CCleaner (HKLM\...\CCleaner) (Version: 5.08 - Piriform) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd) ElfBot NG 4.5.9 (HKLM-x32\...\ElfBot NG_is1) (Version: - NGSoft, LLC) Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) GameRanger (HKU\S-1-5-21-4181987488-2194885696-3783316534-1001\...\GameRanger) (Version: - GameRanger Technologies) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.85 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.13 - Google Inc.) Hidden Heroes of Might and Magic V - Dzikie Hordy (HKLM-x32\...\{ACC75323-DB4A-4f7f-9AF3-1D1DEFF2D1B5}_is1) (Version: - Ubisoft) Heroes of Might and Magic V - Tribes of the East (HKLM-x32\...\{ACC75323-DB4A-4F7F-9AF3-1D1DEFF2D1B5}) (Version: - ) Heroes of Might and Magic V Bundle (HKLM-x32\...\Heroes of Might and Magic V Bundle_is1) (Version: - GOG.com) Inkscape 0.91 (HKLM\...\{81922150-317E-4BB0-A31D-FF1C14F707C5}) (Version: 0.91 - inkscape.org) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Mozilla Firefox 38.0.5 (x86 pl) (HKLM-x32\...\Mozilla Firefox 38.0.5 (x86 pl)) (Version: 38.0.5 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 38.0.5 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Need for Speed Most Wanted (black edition) (HKLM-x32\...\Need for Speed Most Wanted (black edition)) (Version: 1.3 - Electronic Arts) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.1 - Notepad++ Team) NSIS Example2 (HKLM-x32\...\Tibia Auto) (Version: - ) Opera beta 32.0.1948.12 (HKLM-x32\...\Opera 32.0.1948.12) (Version: 32.0.1948.12 - Opera Software) PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) Python 2.4.4 (HKLM-x32\...\{60E2C8C9-6CF3-4B1A-9618-E304946C94E6}) (Version: 2.4.4150 - Martin v. Löwis) RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version: - Punk Software) SecurityKISS Tunnel v0.3.0 (HKLM\...\SecurityKISS Tunnel_is1) (Version: - ) Skype™ 7.6 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.6.105 - Skype Technologies S.A.) Stardock CursorFX Free (HKLM-x32\...\CursorFX Free) (Version: 2.16 - Stardock Corporation) TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) The Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts) Tibia (HKLM-x32\...\Tibia_is1) (Version: 8.60 - CipSoft GmbH) Unity Web Player (HKU\S-1-5-21-4181987488-2194885696-3783316534-1001\...\UnityWebPlayer) (Version: 4.6.6f2 - Unity Technologies ApS) Vegas Pro 11.0 (HKLM-x32\...\{6AEFCA01-8DF1-11E1-A17B-F04DA23A5C58}) (Version: 11.0.682 - Sony) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) XAMPP 1.6.6 (HKLM-x32\...\xampp) (Version: - ) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= 06-09-2015 09:47:07 Windows Update ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {3970C322-EFD4-49FD-A7FF-80CF1A5AF058} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser Task: {3C0FECC2-9755-478A-A25F-BB692962F9FA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-22] (Google Inc.) Task: {524C5770-10C8-4E4F-8077-E2E1D5045C38} - System32\Tasks\CCleanerSkipUAC => E:\Program Files\CCleaner\CCleaner.exe [2015-07-17] (Piriform Ltd) Task: {8592B5A0-C90E-4CB1-9F7D-78D63164D1FA} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_232_pepper.exe [2015-08-12] (Adobe Systems Incorporated) Task: {E23BB436-535A-46DC-8AF9-2A7A9A66A078} - System32\Tasks\Opera scheduled Autoupdate 1436523762 => C:\Program Files (x86)\Opera Next\launcher.exe [2015-08-28] (Opera Software) Task: {EB754D1E-16B1-43BC-B8CA-9F83E353DA39} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-22] (Google Inc.) Task: {FA59E9C8-6EFC-429B-A09F-488C2050C3FE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-12] (Adobe Systems Incorporated) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_232_pepper.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2014-05-01 16:13 - 2014-05-01 16:13 - 00470016 _____ () C:\Users\Mateorex\AppData\Local\MEGAsync\ShellExtX64.dll 2015-06-22 12:50 - 2007-09-02 13:58 - 00495616 _____ () E:\Program Files (x86)\RocketDock\RocketDock.exe 2007-12-21 16:54 - 2007-12-21 16:54 - 04653056 _____ () c:\xampp\mysql\bin\mysqld-nt.exe 2014-05-01 16:15 - 2014-05-01 16:15 - 00463360 _____ () C:\Users\Mateorex\AppData\Local\MEGAsync\ShellExtX32.dll 2015-06-22 12:50 - 2007-09-02 13:57 - 00069632 _____ () E:\Program Files (x86)\RocketDock\RocketDock.dll 2008-01-18 01:17 - 2008-01-18 01:17 - 00073782 _____ () c:\xampp\apache\bin\zlib1.dll 2007-02-04 12:14 - 2007-02-04 12:14 - 00020687 _____ () C:\xampp\php\zendOptimizer\lib\ZendExtensionManager.dll 2007-11-09 00:23 - 2007-11-09 00:23 - 00166912 _____ () c:\xampp\apache\bin\libmcrypt.dll 2007-12-21 16:50 - 2007-12-21 16:50 - 01662976 _____ () c:\xampp\apache\bin\LIBMYSQL.dll 2007-10-25 10:34 - 2007-10-25 10:34 - 00163840 _____ () c:\xampp\apache\bin\pslib.dll 2007-10-30 14:28 - 2007-10-30 14:28 - 00086016 _____ () c:\xampp\apache\bin\pxlib.dll 2007-12-21 04:00 - 2007-12-21 04:00 - 00872448 _____ () c:\xampp\apache\bin\iconv.dll 2007-06-14 17:15 - 2007-06-14 17:15 - 00721090 _____ () C:\xampp\php\zendOptimizer\lib\Optimizer\php-5.2.x\ZendOptimizer.dll 2015-08-31 15:57 - 2015-08-31 15:57 - 59651192 _____ () C:\Program Files (x86)\Opera Next\32.0.1948.12\opera.dll 2015-08-31 15:57 - 2015-08-31 15:57 - 01881208 _____ () C:\Program Files (x86)\Opera Next\32.0.1948.12\libglesv2.dll 2015-08-31 15:57 - 2015-08-31 15:57 - 00081528 _____ () C:\Program Files (x86)\Opera Next\32.0.1948.12\libegl.dll 2008-01-18 01:17 - 2008-01-18 01:17 - 00073782 _____ () C:\xampp\apache\bin\zlib1.dll 2007-11-09 00:23 - 2007-11-09 00:23 - 00166912 _____ () C:\xampp\apache\bin\libmcrypt.dll 2007-12-21 16:50 - 2007-12-21 16:50 - 01662976 _____ () C:\xampp\apache\bin\LIBMYSQL.dll 2007-10-25 10:34 - 2007-10-25 10:34 - 00163840 _____ () C:\xampp\apache\bin\pslib.dll 2007-10-30 14:28 - 2007-10-30 14:28 - 00086016 _____ () C:\xampp\apache\bin\pxlib.dll 2007-12-21 04:00 - 2007-12-21 04:00 - 00872448 _____ () C:\xampp\apache\bin\iconv.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00181760 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\tibiaauto_util.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00046592 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\tre.dll 2015-07-24 04:43 - 2015-07-24 04:43 - 00007168 _____ () C:\Program Files (x86)\Tibia\hexera1080\Tibia Auto\tibiaautoinject3.dll 2015-07-23 18:27 - 2015-07-23 18:27 - 00067584 _____ () C:\Program Files (x86)\Tibia\hexera1080\Tibia Auto\zlib1.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00066048 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_looter.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00046592 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_light.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00061440 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_playerinfo.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00055808 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_uh.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00019968 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_grouping.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00064000 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_restack.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00071168 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_fluid.dll 2015-08-14 06:26 - 2015-08-14 06:26 - 00044032 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_aim.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00052224 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_fisher.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00242688 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_spellcaster.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00120320 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_trademon.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00022528 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_memdebug.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00106496 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_showmap.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00046592 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_monstershow.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00095744 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_itemconfig.dll 2015-08-14 06:26 - 2015-08-14 06:26 - 00453120 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_autogo.dll 2015-08-14 06:26 - 2015-08-14 06:26 - 00270848 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_cavebot.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00068608 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_runemaker.dll 2015-08-14 06:26 - 2015-08-14 06:26 - 00020992 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_eater.dll 2015-08-14 06:26 - 2015-08-14 06:26 - 00107008 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_creatureinfo.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00076288 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_responder.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00053248 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_maphack.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00032768 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_team.dll 2015-08-14 06:26 - 2015-08-14 06:26 - 00018944 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_antylogout.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00050688 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_fps.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00072192 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_login.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00045056 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_xray.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00058368 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_sorter.dll 2015-08-14 06:26 - 2015-08-14 06:26 - 00095744 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_banker.dll 2015-08-14 06:27 - 2015-08-14 06:27 - 00124416 _____ () C:\Program Files (x86)\Tibia\Tibia Auto\mods\mod_seller.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:6BE50C2B ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-4181987488-2194885696-3783316534-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Mateorex\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 62.179.1.62 - 62.179.1.63 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupfolder: C:^Users^Mateorex^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Registration Heroes of Might & Magic 5 - Tribes of the East.LNK => C:\Windows\pss\Registration Heroes of Might & Magic 5 - Tribes of the East.LNK.Startup MSCONFIG\startupreg: ALLUpdate => "E:\Program Files (x86)\ALLPlayer\ALLUpdate.exe" "sleep" MSCONFIG\startupreg: CCleaner Monitoring => "E:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: DAEMON Tools Lite Automount => "E:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [TCP Query User{E914ADAB-DC5C-4D14-A8F5-FE18234BCD22}E:\program files (x86)\kolekcja klasyki\sacred - złota edycja\sacred.exe] => (Allow) E:\program files (x86)\kolekcja klasyki\sacred - złota edycja\sacred.exe FirewallRules: [UDP Query User{74A365CC-CC81-4596-97C2-BECF219E9586}E:\program files (x86)\kolekcja klasyki\sacred - złota edycja\sacred.exe] => (Allow) E:\program files (x86)\kolekcja klasyki\sacred - złota edycja\sacred.exe FirewallRules: [TCP Query User{8DAAA983-2BD8-4E9F-903C-AE88A832F302}E:\program files (x86)\kolekcja klasyki\sacred - złota edycja\gameserver.exe] => (Allow) E:\program files (x86)\kolekcja klasyki\sacred - złota edycja\gameserver.exe FirewallRules: [UDP Query User{C15FB131-C964-42AC-B492-407AB15993AC}E:\program files (x86)\kolekcja klasyki\sacred - złota edycja\gameserver.exe] => (Allow) E:\program files (x86)\kolekcja klasyki\sacred - złota edycja\gameserver.exe FirewallRules: [{C18F5D15-CF07-47AE-8C53-428737C05F95}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{5770153E-05FF-4B6E-B4B0-E43C448DAF60}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{EC630381-5B70-4400-A459-D6E4FC383737}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{660E0BC4-6D40-4066-B979-EF250D9969D9}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{1507CC68-1F0F-493A-B78C-C00183BED713}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{DAFEFD39-4154-4A5A-B169-BAC8C481308B}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{CB0F8E87-B930-4CA0-AE91-D396DB6DD17A}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{C29661D7-890D-4021-9975-091DC9A0133E}] => (Allow) C:\Users\Mateorex\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B00251FF-CBC8-4E0F-AC1D-C369CBB393F5}] => (Allow) C:\Users\Mateorex\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{CFF496A7-64F6-45B7-9147-E31D9A39F78C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{31D8A0DD-362F-424D-AA31-E820FDA6436B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{5FC55434-F7CB-4455-AB43-ACC1B0F95D5C}C:\users\mateorex\appdata\local\vghd\bin\virtuagirl_downloader.exe] => (Allow) C:\users\mateorex\appdata\local\vghd\bin\virtuagirl_downloader.exe FirewallRules: [UDP Query User{4229D54F-9316-4413-839F-F18CE36CEAE4}C:\users\mateorex\appdata\local\vghd\bin\virtuagirl_downloader.exe] => (Allow) C:\users\mateorex\appdata\local\vghd\bin\virtuagirl_downloader.exe FirewallRules: [TCP Query User{4F686AF3-F51A-4E69-BAF8-1F31E96AF1DE}E:\program files (x86)\wtfast beta\wtfast.exe] => (Allow) E:\program files (x86)\wtfast beta\wtfast.exe FirewallRules: [UDP Query User{EF560EDE-5652-411D-B8A6-E82C2DBB834B}E:\program files (x86)\wtfast beta\wtfast.exe] => (Allow) E:\program files (x86)\wtfast beta\wtfast.exe FirewallRules: [{103812D9-C05C-4065-93F0-D9A60258EE99}] => (Allow) D:\Program Files (x86)\Ubisoft\Might & Magic Heroes VI\Might & Magic Heroes VI.exe FirewallRules: [{76D2734B-774E-4B00-9E3F-6A91936F13F6}] => (Allow) D:\Program Files (x86)\Ubisoft\Might & Magic Heroes VI\Might & Magic Heroes VI.exe FirewallRules: [TCP Query User{F65FA96E-56FD-493F-A15B-F37D7F341255}E:\delta.force.xtreme.2.pc.game(djdevastate™)\delta.force.xtreme.2.pc.game(djdevastate™)\dfx2.exe] => (Allow) E:\delta.force.xtreme.2.pc.game(djdevastate™)\delta.force.xtreme.2.pc.game(djdevastate™)\dfx2.exe FirewallRules: [UDP Query User{78B8C18B-0984-4B8F-9C77-0C644589E2FB}E:\delta.force.xtreme.2.pc.game(djdevastate™)\delta.force.xtreme.2.pc.game(djdevastate™)\dfx2.exe] => (Allow) E:\delta.force.xtreme.2.pc.game(djdevastate™)\delta.force.xtreme.2.pc.game(djdevastate™)\dfx2.exe FirewallRules: [TCP Query User{4DBDBD2D-B3C6-43EC-BFFF-CAAF6902FBE4}E:\lastivia\s2.lastivia.eu-27-02-2015\_s2.lastivia.eu.exe] => (Allow) E:\lastivia\s2.lastivia.eu-27-02-2015\_s2.lastivia.eu.exe FirewallRules: [UDP Query User{57AB7C78-0328-4FAA-A430-086B5AA41703}E:\lastivia\s2.lastivia.eu-27-02-2015\_s2.lastivia.eu.exe] => (Allow) E:\lastivia\s2.lastivia.eu-27-02-2015\_s2.lastivia.eu.exe FirewallRules: [TCP Query User{BEDDBC7D-6356-45D9-B8D6-7A08CB81BF41}E:\marinermt2.pl\marinermt2.exe] => (Allow) E:\marinermt2.pl\marinermt2.exe FirewallRules: [UDP Query User{911E66D7-6BDD-43A1-A454-A557BA5559A4}E:\marinermt2.pl\marinermt2.exe] => (Allow) E:\marinermt2.pl\marinermt2.exe FirewallRules: [{1B55C110-9FA5-4FE8-AAC3-8D8415A370EE}] => (Allow) E:\Program Files (x86)\AVG\AVG2015\avgnsa.exe FirewallRules: [{5DD98EBF-1033-4F2F-B4A0-0CE5FC3B76D9}] => (Allow) E:\Program Files (x86)\AVG\AVG2015\avgnsa.exe FirewallRules: [{743681A8-56A3-4617-9366-6974C0618446}] => (Allow) E:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe FirewallRules: [{C07E0868-4120-4347-8A29-F414B526F0BC}] => (Allow) E:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe FirewallRules: [{62E7DD52-9C9B-4DAF-8D1B-AA86D04606C3}] => (Allow) E:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{3A4FA911-09B4-4D37-B2FC-B7F9285DD36F}] => (Allow) E:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{E9B194CD-D033-41C6-A8C8-60CE46F39ABA}] => (Allow) E:\Program Files (x86)\AVG\AVG2015\avgemca.exe FirewallRules: [{0973D10E-692D-48E2-A633-AD06657ADBC0}] => (Allow) E:\Program Files (x86)\AVG\AVG2015\avgemca.exe FirewallRules: [TCP Query User{4D1F2DF5-6D8E-488F-9218-5A1F1DC03393}D:\program files (x86)\elfbot ng\navserv.exe] => (Allow) D:\program files (x86)\elfbot ng\navserv.exe FirewallRules: [UDP Query User{45C58DF3-7164-46AA-AA03-AF3384C35CFE}D:\program files (x86)\elfbot ng\navserv.exe] => (Allow) D:\program files (x86)\elfbot ng\navserv.exe FirewallRules: [TCP Query User{C9DAF7F5-C76D-4B36-BDAD-CE3BBCEC52C2}D:\program files (x86)\tibia\tibia\tibia.exe] => (Allow) D:\program files (x86)\tibia\tibia\tibia.exe FirewallRules: [UDP Query User{DC112B1E-99FA-4708-8DF8-6A3A5337DFD8}D:\program files (x86)\tibia\tibia\tibia.exe] => (Allow) D:\program files (x86)\tibia\tibia\tibia.exe FirewallRules: [{DFA099FB-1670-462D-A996-148899DD16DD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{46CAEFF8-7D51-4257-91CF-A585C53195B1}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe FirewallRules: [UDP Query User{331B7DC2-8DE6-45DA-9A48-4D8AD84BF6C7}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe FirewallRules: [TCP Query User{FE811BDC-4505-4207-80E5-50D9F95A8756}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe FirewallRules: [UDP Query User{CE6CDDAA-376A-488F-B7E4-BCBBA8272F3B}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe FirewallRules: [TCP Query User{E35E4111-5F01-4B12-AD27-8B41C03C98A3}C:\xampp\apache\bin\apache.exe] => (Allow) C:\xampp\apache\bin\apache.exe FirewallRules: [UDP Query User{4370C6CD-17BE-4FE0-9268-AD0B47AF8E16}C:\xampp\apache\bin\apache.exe] => (Allow) C:\xampp\apache\bin\apache.exe FirewallRules: [TCP Query User{4F71B96B-DC24-415F-A0BF-627B8002193E}D:\pliki pulpitu\mateorex\theforgottenserver.exe] => (Allow) D:\pliki pulpitu\mateorex\theforgottenserver.exe FirewallRules: [UDP Query User{3F8E6587-6EE5-45EC-90A0-9B1D8A80B42D}D:\pliki pulpitu\mateorex\theforgottenserver.exe] => (Allow) D:\pliki pulpitu\mateorex\theforgottenserver.exe ==================== Faulty Device Manager Devices ============= Name: Microsoft PS/2 Mouse Description: Microsoft PS/2 Mouse Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Standard PS/2 Keyboard Description: Standard PS/2 Keyboard Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318} Manufacturer: (Standard keyboards) Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (09/06/2015 09:53:30 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/06/2015 09:28:10 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/05/2015 11:59:31 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: tibiaauto.exe, version: 1.0.0.1, time stamp: 0x55b1a72d Faulting module name: MSVCR120.dll, version: 12.0.21005.1, time stamp: 0x524f7ce6 Exception code: 0x40000015 Fault offset: 0x000a7676 Faulting process id: 0x72c Faulting application start time: 0xtibiaauto.exe0 Faulting application path: tibiaauto.exe1 Faulting module path: tibiaauto.exe2 Report Id: tibiaauto.exe3 Error: (09/05/2015 08:16:02 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program _uninstall6056 version 5.5.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 11e8 Start Time: 01d0e806b5db8a00 Termination Time: 10 Application Path: C:\Users\Mateorex\AppData\Local\Temp\_uninstall\_uninstall6056 Report Id: Error: (09/05/2015 07:22:40 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (09/05/2015 07:22:40 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (09/05/2015 07:22:37 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (09/05/2015 07:22:37 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Error: (09/05/2015 04:39:01 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/05/2015 02:30:22 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: tibiaauto.exe, version: 1.0.0.1, time stamp: 0x55cd6e4f Faulting module name: MSVCR120.dll, version: 12.0.21005.1, time stamp: 0x524f7ce6 Exception code: 0x40000015 Fault offset: 0x000a7676 Faulting process id: 0x12f0 Faulting application start time: 0xtibiaauto.exe0 Faulting application path: tibiaauto.exe1 Faulting module path: tibiaauto.exe2 Report Id: tibiaauto.exe3 System errors: ============= Error: (09/06/2015 09:51:57 AM) (Source: atikmdag) (EventID: 10261) (User: ) Description: Display is not active Error: (09/06/2015 09:51:57 AM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (09/06/2015 09:51:40 AM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT AUTHORITY) Description: Some processor performance power management features have been disabled due to a known firmware problem. Check with the computer manufacturer for updated firmware. Error: (09/06/2015 09:29:15 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Usługa Google Update (gupdate) service failed to start due to the following error: %%1053 Error: (09/06/2015 09:29:15 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the Usługa Google Update (gupdate) service to connect. Error: (09/06/2015 09:27:13 AM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: The AVGIDSAgent service terminated with service-specific error %%-536753635. Error: (09/06/2015 09:26:59 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The mysql service failed to start due to the following error: %%1053 Error: (09/06/2015 09:26:59 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the mysql service to connect. Error: (09/06/2015 09:26:51 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Apache2.2 service failed to start due to the following error: %%1053 Error: (09/06/2015 09:26:51 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the Apache2.2 service to connect. Microsoft Office: ========================= Error: (09/06/2015 09:53:30 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/06/2015 09:28:10 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/05/2015 11:59:31 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: tibiaauto.exe1.0.0.155b1a72dMSVCR120.dll12.0.21005.1524f7ce640000015000a767672c01d0e7e9a379c0b0C:\Program Files (x86)\Tibia\hexera1080\Tibia Auto\tibiaauto.exeC:\Windows\system32\MSVCR120.dll623ccec0-5419-11e5-9c67-001d92247ab5 Error: (09/05/2015 08:16:02 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: _uninstall60565.5.0.011e801d0e806b5db8a0010C:\Users\Mateorex\AppData\Local\Temp\_uninstall\_uninstall6056 Error: (09/05/2015 07:22:40 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifestD:\Download\SoftonicDownloader_dla_bitcomet.exe Error: (09/05/2015 07:22:40 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifestD:\Download\SoftonicDownloader_dla_bitcomet.exe Error: (09/05/2015 07:22:37 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifestD:\Download\SoftonicDownloader_dla_rmvb-converter.exe Error: (09/05/2015 07:22:37 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifestD:\Download\SoftonicDownloader_dla_rmvb-converter.exe Error: (09/05/2015 04:39:01 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/05/2015 02:30:22 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: tibiaauto.exe1.0.0.155cd6e4fMSVCR120.dll12.0.21005.1524f7ce640000015000a767612f001d0e7b2f6d449d8C:\Program Files (x86)\Tibia\Tibia Auto\tibiaauto.exeC:\Windows\system32\MSVCR120.dlldfd96758-53c9-11e5-a1a5-001d92247ab5 ==================== Memory info =========================== Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 4000+ Percentage of memory in use: 48% Total physical RAM: 4095.43 MB Available physical RAM: 2091.56 MB Total Virtual: 8189.06 MB Available Virtual: 5931.48 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:39.06 GB) (Free:9.31 GB) NTFS ==>[drive with boot components (obtained from BCD)] Drive d: (Gry) (Fixed) (Total:68.89 GB) (Free:30.3 GB) NTFS Drive e: (Filmy i muzyka) (Fixed) (Total:96.16 GB) (Free:34.16 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: EA0AEA0A) Partition 1: (Active) - (Size=39.1 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=193.8 GB) - (Type=OF Extended) ==================== End of Addition.txt ============================