Additional scan result of Farbar Recovery Scan Tool (x64) Version:11-10-2015 01 Ran by Tommy (2015-10-11 16:34:51) Running from C:\Users\Tommy\Desktop Windows 7 Professional Service Pack 1 (X64) (2011-02-01 14:33:01) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3093395151-1990011749-1491869111-500 - Administrator - Disabled) Gosia (S-1-5-21-3093395151-1990011749-1491869111-1004 - Limited - Enabled) => C:\Users\Gosia Guest (S-1-5-21-3093395151-1990011749-1491869111-501 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-3093395151-1990011749-1491869111-1002 - Limited - Enabled) Piotr (S-1-5-21-3093395151-1990011749-1491869111-1000 - Administrator - Enabled) => C:\Users\Piotr Tommy (S-1-5-21-3093395151-1990011749-1491869111-1003 - Administrator - Enabled) => C:\Users\Tommy ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) «Life Is Strange» 1.0.0.312843 (HKLM-x32\...\«Life Is Strange»_is1) (Version: 1.0.0.312843 - Square Enix) µTorrent (HKLM-x32\...\uTorrent) (Version: 3.3.0.29544 - BitTorrent Inc.) 64 Bit HP CIO Components Installer (Version: 8.2.1 - Hewlett-Packard) Hidden 7-Zip 9.21beta (HKLM-x32\...\7-Zip) (Version: - ) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 17.0.0.124 - Adobe Systems Incorporated) Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.152 - Adobe Systems Incorporated) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated) Adobe Reader XI (11.0.12) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) AIMP2: Audio Tools (HKLM-x32\...\AIMP2at) (Version: - AIMP DevTeam) Analog Lab 1.2.2 (HKLM-x32\...\Analog Lab_is1) (Version: 1.2.2 - Arturia) Archiwizator WinRAR (HKLM\...\WinRAR archiver) (Version: - ) ARP 2600 V2 2.6.2 (HKLM-x32\...\ARP 2600 V2_is1) (Version: 2.6.2 - Arturia) Arturia Software Center 1.0.5 (HKLM-x32\...\Arturia Software Center_is1) (Version: 1.0.5 - Arturia) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.12 - Michael Tippach) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.22 - Atheros Communications Inc.) ATI AVIVO64 Codecs (Version: 11.6.0.50706 - ATI Technologies Inc.) Hidden ATI Catalyst Install Manager (HKLM\...\{397878FC-1B1B-EED7-04A8-3184CE494A3B}) (Version: 3.0.782.0 - ATI Technologies, Inc.) AutoCAD 2012 - English (HKLM\...\AutoCAD 2012 - English) (Version: 18.2.51.0 - Autodesk) AutoCAD 2012 - English (Version: 18.2.107.0 - Autodesk) Hidden AutoCAD 2012 - English SP1 (HKLM\...\AutoCAD 2012 - English SP1) (Version: 1 - Autodesk) AutoCAD 2012 Language Pack - English (Version: 18.2.51.0 - Autodesk) Hidden Autodesk Content Service (HKLM-x32\...\Autodesk Content Service) (Version: 3.1.3.0 - Autodesk) Autodesk Content Service (x32 Version: 3.1.3.0 - Autodesk) Hidden Autodesk Content Service Language Pack (x32 Version: 3.1.3.0 - Autodesk) Hidden Autodesk Design Review 2012 (HKLM-x32\...\Autodesk Design Review 2012) (Version: 12.0.0.93 - Autodesk, Inc.) Autodesk Design Review 2012 (x32 Version: 12.0.0.93 - Autodesk, Inc.) Hidden Autodesk Material Library 2012 (HKLM-x32\...\{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}) (Version: 2.5.0.8 - Autodesk) Autodesk Material Library Base Resolution Image Library 2012 (HKLM-x32\...\{65420DC9-306E-4371-905F-F4DC3B418E52}) (Version: 2.5.0.8 - Autodesk) Autodesk Material Library Low Resolution Image Library 2012 (HKLM-x32\...\{24FF088D-CDCF-480C-8A4B-98F14A54CAA8}) (Version: 2.5.0.8 - Autodesk) Autodesk Material Library Medium Resolution Image Library 2012 (HKLM-x32\...\{B5751715-EC10-43D9-8C95-62E1368433EF}) (Version: 2.5.0.8 - Autodesk) Autodesk Network License Manager (HKLM\...\{4BE91685-1632-47FC-B563-A8A542C6664C}) (Version: 1.0.0 - Autodesk) Autodesk Revit Structure 2012 (HKLM\...\Autodesk Revit Structure 2012) (Version: 11.03.09231 - Autodesk) Autodesk Robot Structural Analysis Professional 2013 - English regional settings (Version: 2013.0.0.4254 - Autodesk) Hidden Autodesk Robot Structural Analysis Professional 2013 (HKLM\...\Autodesk Robot Structural Analysis Professional 2013) (Version: 2013.0.0.4254 - Autodesk, Inc.) Autodesk Robot Structural Analysis Professional 2013 (Version: 2013.0.0.4254 - Autodesk) Hidden Autodesk Vault 2012 (Client) (HKLM-x32\...\Autodesk Vault 2012 (Client)) (Version: 16.0.56.200 - Autodesk, Inc.) Autodesk Vault 2012 (Client) (Version: 16.0.56.200 - Autodesk, Inc.) Hidden Autodesk Vault 2012 (Client) English Language Pack (Version: 16.0.56.200 - Autodesk, Inc.) Hidden Bitdefender Antivirus Free Edition (HKLM\...\BitDefender Gonzales) (Version: 1.0.21.1099 - Bitdefender) Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Activision) Call of Duty(R) 4 - Modern Warfare(TM) (x32 Version: 1.00.0000 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: 1.6 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: 1.7 - Activision) Hidden ccc-core-static (x32 Version: 2010.0706.2128.36662 - Nazwa firmy) Hidden Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) CS-80 V2 2.6.2 (HKLM-x32\...\CS-80 V2_is1) (Version: 2.6.2 - Arturia) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dassault Systemes Doc English CATIA_P3 B18SP3 (HKLM-x32\...\Dassault Systemes Doc English CATIA_P3 B18SP3) (Version: - ) Dassault Systemes Software B18 (HKLM\...\Dassault Systemes B18_0) (Version: - ) Dassault Systemes Software Prerequisites x86-x64 (HKLM\...\{82B2394D-F5CC-42F0-8DC1-48B3CAA382CC}) (Version: 8.0.2 - Dassault Systemes) Debugging Tools for Windows (x64) (HKLM\...\{DBFC6AAE-DCCB-4C23-B01C-3EDDDC03298B}) (Version: 6.12.2.633 - Microsoft Corporation) Dropbox (HKU\S-1-5-21-3093395151-1990011749-1491869111-1003\...\Dropbox) (Version: 3.4.3 - Dropbox, Inc.) DWG TrueView 2012 (HKLM\...\DWG TrueView 2012) (Version: 18.2.51.0 - Autodesk) DWG TrueView 2012 (Version: 18.2.51.0 - Autodesk) Hidden EasyBCD 2.0 (HKLM-x32\...\EasyBCD) (Version: 2.0 - NeoSmart Technologies) Eco Materials Adviser (x64) (HKLM\...\{E027C59C-4C47-4BE8-8078-BCD3D2680EC3}) (Version: 1.32.0.0 - Granta Design Limited) e-Deklaracje Desktop (HKLM-x32\...\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1) (Version: 7.0.3 - Ministerstwo Finansow) e-Deklaracje Desktop (x32 Version: 7.0.3 - Ministerstwo Finansow) Hidden Europa Universalis IV Common Sense (HKLM-x32\...\Europa Universalis IV Common Sense_is1) (Version: - ) FARO LS 1.1.406.58 (HKLM-x32\...\{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}) (Version: 4.6.58.2 - FARO Scanner Production) forteManager (HKLM-x32\...\{DA6FAB8D-E87A-4E8E-A3D3-B7B9F479C725}) (Version: 3.18 - LG Soft India) GameSpy Arcade (HKLM-x32\...\GameSpy Arcade) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.101 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden Grand Theft Auto IV Complete Edition MULTi-5 Plus EXTRAS 1.0 (HKLM-x32\...\Grand Theft Auto IV Complete Edition MULTi-5 Plus EXTRAS 1.0) (Version: - ) h3hota (HKLM-x32\...\HotA_is1) (Version: - ) Haihaisoft Universal Player (HKLM-x32\...\Haihaisoft Universal Player) (Version: 1.4.6.0 - Haihaisoft) Heroes of Might and Magic 3 Complete (HKLM-x32\...\Heroes of Might and Magic 3 Complete_is1) (Version: - GOG.com) HydraVision (x32 Version: 4.2.174.0 - ATI Technologies Inc.) Hidden IncrediMail (x32 Version: 6.2.9.5079 - IncrediMail) Hidden IncrediMail 2.0 (HKLM-x32\...\IncrediMail) (Version: 6.2.9.5079 - IncrediMail Ltd.) Java 8 Update 45 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418045F0}) (Version: 8.0.450 - Oracle Corporation) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Jupiter-8 V2 2.6.1 (HKLM-x32\...\Jupiter-8 V2_is1) (Version: 2.6.1 - Arturia) Kalkulator parametrów geotechnicznych gruntów metodą B - v. 1.1 (HKLM-x32\...\Kalkulator parametrów geotechnicznych gruntów metodą B_is1) (Version: - SPECBUD) K-Lite Mega Codec Pack 10.9.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.9.0 - ) Komunikator WTW 0.9.18.3794 (HKLM\...\{1DF5019A-68B5-4ba1-8E59-E185C7B7FF11}) (Version: 0.9.18.3794 - K2T.eu) MediaMonkey 4.0 (HKLM-x32\...\MediaMonkey_is1) (Version: 4.0 - Ventis Media Inc.) MeldaProduction MFreeEffectsBundle 8 (HKLM-x32\...\MeldaProduction MFreeEffectsBundle 8) (Version: - MeldaProduction) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Office 2003 Web Components (HKLM-x32\...\{90120000-00A4-0409-0000-0000000FF1CE}) (Version: 12.0.6213.1000 - Microsoft Corporation) Microsoft Office XP Media Content (HKLM-x32\...\{90300409-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.2619.0 - Microsoft Corporation) Microsoft Office XP Polish User Interface Pack (HKLM-x32\...\{901E0415-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation) Microsoft Office XP Professional with FrontPage (HKLM-x32\...\{90280409-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU (HKLM\...\Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU) (Version: - Microsoft Corporation) Microsoft Visual Studio 2005 Tools for Applications - ENU (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Applications - ENU) (Version: - Microsoft Corporation) Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU (HKLM\...\Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU) (Version: - Microsoft Corporation) Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU Service Pack 1 (KB945140) (HKLM-x32\...\{90A80D89-A0E4-33C1-B13D-B93CB3496867}.KB945140) (Version: 1 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM-x32\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Windows SDK for Windows 7 (7.1) (HKLM\...\SDKSetup_7.1.7600.0.30514) (Version: 7.1.7600.0.30514 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Mini V2 2.6.2 (HKLM-x32\...\Mini V2_is1) (Version: 2.6.2 - Arturia) Modular V2 2.7.2 (HKLM-x32\...\Modular V2_is1) (Version: 2.7.2 - Arturia) Mozilla Firefox 38.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 38.0.1 (x86 pl)) (Version: 38.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 37.0.1 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version: - Native Instruments) Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: - Native Instruments) Native Instruments Traktor (HKLM-x32\...\Native Instruments Traktor) (Version: - Native Instruments) Nero 8 Micro 8.3.2.1 (HKLM-x32\...\Nero8Lite_is1) (Version: 8.3.2.1 - Updatepack.nl) Norma Expert (edukacyjna) (HKLM-x32\...\{E495A7C9-2429-467E-84AA-F529EBCC3381}) (Version: 5.4.302.2 - Athenasoft) Norma Expert (edukacyjna) (x32 Version: 5.4.302.2 - Athenasoft) Hidden Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.2.3 - ) NVIDIA PhysX (HKLM-x32\...\{64467D47-FFE4-4FBC-ABBA-A0DB829A17EB}) (Version: 9.12.0613 - NVIDIA Corporation) Oberheim SEM V 1.3.1 (HKLM-x32\...\Oberheim SEM V_is1) (Version: 1.3.1 - Arturia) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Opera 12.17 (HKLM-x32\...\Opera 12.17.1863) (Version: 12.17.1863 - Opera Software ASA) Opera Stable 30.0.1835.59 (HKLM-x32\...\Opera 30.0.1835.59) (Version: 30.0.1835.59 - Opera Software) Oxford Advanced Learner's Dictionary - 8th Edition (HKLM-x32\...\NSIS_oald8) (Version: - ) PDF Architect 3 (HKLM-x32\...\PDF Architect 3) (Version: 3.0.45.22485 - pdfforge GmbH) PerfectDisk 10 Professional (HKLM\...\{7B738CD9-D107-48C7-8E65-2E6639A39C8D}) (Version: 10.0.93 - Raxco Software Inc.) Platform (x32 Version: 1.34 - VIA Technologies, Inc.) Hidden Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Prophet V2 2.6.2 (HKLM-x32\...\Prophet V2_is1) (Version: 2.6.2 - Arturia) PTC Mathcad Prime 3.0 (HKLM\...\{C4AB999A-D981-4913-BA26-E4776B598E7D}) (Version: 3.0.0 - PTC) PTC Quality Agent (HKLM-x32\...\{5B7F8A19-AF71-4517-B49C-683AFC5B639C}) (Version: 2.0.0.0 - PTC) Quake Live Internet Explorer Plugin (HKLM-x32\...\{A392A7FE-2216-4F7B-AF2F-24F1533DB860}) (Version: 1.0.520 - id Software) Quake Live Mozilla Plugin (HKLM-x32\...\{52A4E146-A102-4ED0-970F-6B1715EB3C86}) (Version: 1.0.433 - id Software) Quick Uninstall Tool for Autodesk Inventor 2012 (HKLM\...\{D25FF5C1-1664-469A-9794-69309387C193}) (Version: 16.0.16000.0000 - Autodesk) QuickTime (HKLM-x32\...\{57752979-A1C9-4C02-856B-FBB27AC4E02C}) (Version: 7.69.80.9 - Apple Inc.) Revit Structure 2012 (Version: 11.03.09231 - Autodesk) Hidden Revit Structure 2012 Language Pack - English (Version: 11.03.09231 - Autodesk) Hidden Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.0.2.11071_128 - Samsung Electronics Co., Ltd.) Samsung Kies (x32 Version: 2.0.2.11071_128 - Samsung Electronics Co., Ltd.) Hidden SAMSUNG Mobile Modem V2 Software (HKLM\...\SAMSUNG Mobile Modem V2) (Version: - ) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - Microsoft Corporation) Skype™ 7.6 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.6.105 - Skype Technologies S.A.) Soldis PROJEKTANT (HKLM-x32\...\E94B1101-7675-4E37-9CB2-2E38A872154A) (Version: 7.0 - Soldis Team) SolidWorks Explorer 2012 SP04 x64 Edition (Version: 20.40.64 - SolidWorks Corporation) Hidden SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spotify (HKU\S-1-5-21-3093395151-1990011749-1491869111-1003\...\Spotify) (Version: 1.0.6.80.g2a801a53 - Spotify AB) Steinberg Cubase 5 (HKLM-x32\...\{4A19D6AC-ADE0-4A07-80FF-9C9812C45557}) (Version: 5.1.2 - Steinberg Media Technologies GmbH) Steinberg Drum Loop Expansion 01 (HKLM-x32\...\{490BF87E-1F75-4453-BF55-9F540543A3CA}) (Version: 1.0.0.1 - Steinberg Media Technologies GmbH) Steinberg Groove Agent ONE Content (HKLM-x32\...\{BD86F1AC-B594-46E4-85DC-1258AC9E2232}) (Version: 1.0.0.003 - Steinberg Media Technologies GmbH) Steinberg HALionOne (HKLM-x32\...\{E70E7159-93B1-470D-9FBD-D8E9EF34B538}) (Version: 1.1.0.457 - Steinberg Media Technologies GmbH) Steinberg HALionOne Additional Content Set 01 (HKLM-x32\...\{F3AFD063-8BAD-485E-B641-E7F5A2C5AE71}) (Version: 1.0.0.001 - Steinberg Media Technologies GmbH) Steinberg HALionOne Expression Set (HKLM-x32\...\{E22AD5D3-EB60-4A8F-835C-6C10E369DCE2}) (Version: 1.0.1.0 - Steinberg Media Technologies GmbH) Steinberg HALionOne GM Drum Set (HKLM-x32\...\{AC997F93-0757-4ED4-A701-F40C2D654D09}) (Version: 1.0.1.457 - Steinberg Media Technologies GmbH) Steinberg HALionOne GM Set (HKLM-x32\...\{F057965A-D974-4C64-ADB1-4381CD4B8956}) (Version: 1.0.1.457 - Steinberg Media Technologies GmbH) Steinberg HALionOne Pro Set (HKLM-x32\...\{D82CDA0D-C182-42C8-8FF2-5649C98D6003}) (Version: 1.0.1.457 - Steinberg Media Technologies GmbH) Steinberg HALionOne Studio Drum Set (HKLM-x32\...\{865D9ED1-EAC2-436D-AFA7-0B750EB5AAAB}) (Version: 1.0.1.457 - Steinberg Media Technologies GmbH) Steinberg HALionOne Studio Set (HKLM-x32\...\{D23CBFDA-C46B-4920-BA70-FC7878A3F05A}) (Version: 1.0.1.457 - Steinberg Media Technologies GmbH) Steinberg LoopMash Content (HKLM-x32\...\{4D454CF8-12FD-464D-B57B-B46FE27B78BB}) (Version: 1.0.0.005 - Steinberg Media Technologies GmbH) Steinberg REVerence Content 01 (HKLM-x32\...\{532B917B-8235-4FA5-BE36-643A8BB053A5}) (Version: 1.0.0.006 - Steinberg Media Technologies GmbH) SubEdit-Player (HKLM-x32\...\SubEdit-Player_is1) (Version: 4072 - Artur Sikora) SuperMemo Extreme English! (HKLM-x32\...\SuperMemo Extreme English!) (Version: - ) SystemTL+ (HKLM-x32\...\SystemTL+) (Version: - ) Tekla Structures Learning (HKLM-x32\...\{C6D0A74B-98A6-428D-8BA6-E723CAEEB8C7}) (Version: 201.0.102.0 - Tekla Corporation) Tekla Structures Learning (x32 Version: 201.0.102.0 - Tekla Corporation) Hidden Tekla Structures Learning Default Env (x32 Version: 201.0.102.0 - Tekla Corporation) Hidden Total Commander (Remove or Repair) (HKLM-x32\...\Totalcmd) (Version: 7.57a - Ghisler Software GmbH) VBA (2627.01) (x32 Version: 6.03.00.9402 - Microsoft Corporation) Hidden VBA (3821b) (x32 Version: 6.01.00.1234 - Microsoft Corporation) Hidden VIA Platforma Menedżera urządzeń (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.34 - VIA Technologies, Inc.) Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{6DA2B636-698A-3294-BF4A-B5E11B238CDD}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{8CCEA24C-51AE-3B71-9092-7D0C44DDA2DF}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{C3A57BB3-9AA6-3F6F-9395-6C062BDD5FC4}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{F6F09DD8-F39B-3A16-ADB9-C9E6B56903F9}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{04B34E21-5BEE-3D2B-8D3D-E3E80D253F64}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{14866AAD-1F23-39AC-A62B-7091ED1ADE64}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{4B90093A-5D9C-3956-8ABB-95848BE6EFAD}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{B42E259C-E4D4-37F1-A1B2-EB9C4FC5A04D}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Wielki słownik angielsko-polski i polsko-angielski PWN-OXFORD (HKLM-x32\...\{1035B082-201E-466E-9084-D096589C05CD}) (Version: 3.0.0 - WN PWN SA) Wielki słownik niemiecko-polski polsko-niemiecki PWN (HKLM-x32\...\{DAD9B35F-0B6B-4AC9-8D0B-E21AA46BB721}) (Version: 1.00.0000 - WN PWN SA) Winamp (HKLM-x32\...\Winamp) (Version: 5.601 - Nullsoft, Inc) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) WinZipper (HKLM-x32\...\WinZipper) (Version: 1.5.112 - Taiwan Shui Mu Chih Ching Technology Limited.) <==== ATTENTION Wtyczka e-Deklaracje (HKLM-x32\...\{81BF6353-3C5B-4E6E-A566-7E162A00BF72}_is1) (Version: 4.1.0 - Ministerstwo Finansów) WUFI® 5 (HKLM-x32\...\{6FF01718-0D38-4B14-9283-74D65091A1E2}_is1) (Version: 5.0 - Fraunhofer IBP, Holzkirchen, Germany) WUFI®-DB 24 (HKLM-x32\...\3E1C8753-1521-43D2-A153-D4898AF108D8_is1) (Version: 24.67 - Fraunhofer IBP, Holzkirchen) Wurlitzer V 1.1.1 (HKLM-x32\...\Wurlitzer V_is1) (Version: 1.1.1 - Arturia) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Tommy\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay => No File CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{083C82AE-568E-45dd-A92C-01422CA45760}\InprocServer32 -> C:\Program Files\Autodesk\Revit Structure 2012\Program\APIContext.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> H:\Autocad Civil 3D\Civil 3D\Autodesk AutoCAD Civil 3D 2014\acad.exe => No File CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> H:\Autocad2012\AUTOCAD2012\AutoCAD 2012 - English\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{7DE1BE5C-CEBA-4F1D-ACBC-9CE11EE9A2A1}\localserver32 -> H:\Autocad Civil 3D\Civil 3D\Autodesk AutoCAD Civil 3D 2014\acad.exe /Automation => No File CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{B77E471C-FBF3-4CB5-880F-D7528AD4B349}\localserver32 -> H:\Autocad2012\AUTOCAD2012\AutoCAD 2012 - English\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{BD0DEB94-63DB-4392-9420-6EEE05094B1F}\localserver32 -> H:\Autocad Civil 3D\Civil 3D\Autodesk AutoCAD Civil 3D 2014\acad.exe /Automation => No File CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{C92FB640-AD4D-498A-9979-A51A2540C977}\localserver32 -> H:\Autocad2012\AUTOCAD2012\AutoCAD 2012 - English\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> H:\Autocad2012\AUTOCAD2012\AutoCAD 2012 - English\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> H:\Autocad2012\AUTOCAD2012\AutoCAD 2012 - English\acadficn.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Tommy\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Tommy\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Tommy\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Tommy\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Tommy\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Tommy\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Tommy\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Tommy\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3093395151-1990011749-1491869111-1003_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Tommy\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ==================== Restore Points ========================= ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2012-08-03 17:19 - 00006236 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 activate.adobe.com 127.0.0.1 www.adobe.com/activate 127.0.0.1 adobe.com/activate/ 127.0.0.1 www.adobe.com/activate* 127.0.0.1 *adobe.com/activate/* 127.0.0.1 practivate.adobe.com 127.0.0.1 ereg.adobe.com 127.0.0.1 activate.wip3.adobe.com 127.0.0.1 wip3.adobe.com 127.0.0.1 3dns-3.adobe.com 127.0.0.1 3dns-2.adobe.com 127.0.0.1 adobe-dns.adobe.com 127.0.0.1 adobe-dns-2.adobe.com 127.0.0.1 adobe-dns-3.adobe.com 127.0.0.1 ereg.wip3.adobe.com 127.0.0.1 activate-sea.adobe.com 127.0.0.1 pagead2.googlesyndication.com 127.0.0.1 wwis-dubc1-vip60.adobe.com 127.0.0.1 activate-sjc0.adobe.com 127.0.0.1 3dns-2.adobe.com 127.0.0.1 3dns-3.adobe.com 127.0.0.1 3dns-4.adobe.com 127.0.0.1 3dns-5.adobe.com 127.0.0.1 adobe-dns.adobe.com 127.0.0.1 adobe-dns-2.adobe.com 127.0.0.1 adobe-dns-3.adobe.com 127.0.0.1 adobe.activate.com 127.0.0.1 activate.adobe.com 127.0.0.1 activate.wip3.adobe.com 127.0.0.1 activate.wip4.adobe.com 127.0.0.1 activate-sea.adobe.com 127.0.0.1 activate-sjc0.adobe.com 127.0.0.1 ereg.adobe.com 127.0.0.1 ereg.wip3.adobe.com 127.0.0.1 ereg.wip4.adobe.com 127.0.0.1 practivate.adobe.com 127.0.0.1 www.wip3.adobe.com 127.0.0.1 www.wip4.adobe.com 127.0.0.1 www.adobeereg.com 127.0.0.1 adobeereg.com 127.0.0.1 hl2rcv.adobe.com 127.0.0.1 wwis-dubc1-vip30.adobe.com 127.0.0.1 wwis-dubc1-vip31.adobe.com 127.0.0.1 wwis-dubc1-vip32.adobe.com 127.0.0.1 wwis-dubc1-vip33.adobe.com 127.0.0.1 wwis-dubc1-vip34.adobe.com 127.0.0.1 wwis-dubc1-vip35.adobe.com 127.0.0.1 wwis-dubc1-vip36.adobe.com 127.0.0.1 wwis-dubc1-vip37.adobe.com 127.0.0.1 wwis-dubc1-vip38.adobe.com 127.0.0.1 wwis-dubc1-vip39.adobe.com 127.0.0.1 wwis-dubc1-vip40.adobe.com 127.0.0.1 wwis-dubc1-vip41.adobe.com 127.0.0.1 wwis-dubc1-vip42.adobe.com 127.0.0.1 wwis-dubc1-vip43.adobe.com 127.0.0.1 wwis-dubc1-vip44.adobe.com 127.0.0.1 wwis-dubc1-vip45.adobe.com 127.0.0.1 wwis-dubc1-vip46.adobe.com 127.0.0.1 wwis-dubc1-vip47.adobe.com 127.0.0.1 wwis-dubc1-vip48.adobe.com 127.0.0.1 wwis-dubc1-vip49.adobe.com 127.0.0.1 wwis-dubc1-vip50.adobe.com 127.0.0.1 wwis-dubc1-vip51.adobe.com 127.0.0.1 wwis-dubc1-vip52.adobe.com 127.0.0.1 wwis-dubc1-vip53.adobe.com 127.0.0.1 wwis-dubc1-vip54.adobe.com 127.0.0.1 wwis-dubc1-vip55.adobe.com 127.0.0.1 wwis-dubc1-vip56.adobe.com 127.0.0.1 wwis-dubc1-vip57.adobe.com 127.0.0.1 wwis-dubc1-vip58.adobe.com 127.0.0.1 wwis-dubc1-vip59.adobe.com 127.0.0.1 wwis-dubc1-vip60.adobe.com 127.0.0.1 wwis-dubc1-vip61.adobe.com 127.0.0.1 wwis-dubc1-vip62.adobe.com 127.0.0.1 wwis-dubc1-vip63.adobe.com 127.0.0.1 wwis-dubc1-vip64.adobe.com 127.0.0.1 wwis-dubc1-vip65.adobe.com 127.0.0.1 wwis-dubc1-vip66.adobe.com 127.0.0.1 wwis-dubc1-vip67.adobe.com 127.0.0.1 wwis-dubc1-vip68.adobe.com 127.0.0.1 wwis-dubc1-vip69.adobe.com 127.0.0.1 wwis-dubc1-vip70.adobe.com 127.0.0.1 wwis-dubc1-vip71.adobe.com 127.0.0.1 wwis-dubc1-vip72.adobe.com 127.0.0.1 wwis-dubc1-vip73.adobe.com 127.0.0.1 wwis-dubc1-vip74.adobe.com 127.0.0.1 wwis-dubc1-vip75.adobe.com 127.0.0.1 wwis-dubc1-vip76.adobe.com 127.0.0.1 wwis-dubc1-vip77.adobe.com 127.0.0.1 wwis-dubc1-vip78.adobe.com 127.0.0.1 wwis-dubc1-vip79.adobe.com 127.0.0.1 wwis-dubc1-vip80.adobe.com 127.0.0.1 wwis-dubc1-vip81.adobe.com 127.0.0.1 wwis-dubc1-vip82.adobe.com 127.0.0.1 wwis-dubc1-vip83.adobe.com 127.0.0.1 wwis-dubc1-vip84.adobe.com 127.0.0.1 wwis-dubc1-vip85.adobe.com 127.0.0.1 wwis-dubc1-vip86.adobe.com 127.0.0.1 wwis-dubc1-vip87.adobe.com 127.0.0.1 wwis-dubc1-vip88.adobe.com 127.0.0.1 wwis-dubc1-vip89.adobe.com 127.0.0.1 wwis-dubc1-vip90.adobe.com 127.0.0.1 wwis-dubc1-vip91.adobe.com 127.0.0.1 wwis-dubc1-vip92.adobe.com 127.0.0.1 wwis-dubc1-vip93.adobe.com 127.0.0.1 wwis-dubc1-vip94.adobe.com 127.0.0.1 wwis-dubc1-vip95.adobe.com 127.0.0.1 wwis-dubc1-vip96.adobe.com 127.0.0.1 wwis-dubc1-vip97.adobe.com 127.0.0.1 wwis-dubc1-vip98.adobe.com 127.0.0.1 wwis-dubc1-vip99.adobe.com 127.0.0.1 wwis-dubc1-vip100.adobe.com 127.0.0.1 wwis-dubc1-vip101.adobe.com 127.0.0.1 wwis-dubc1-vip102.adobe.com 127.0.0.1 wwis-dubc1-vip103.adobe.com 127.0.0.1 wwis-dubc1-vip104.adobe.com 127.0.0.1 wwis-dubc1-vip105.adobe.com 127.0.0.1 wwis-dubc1-vip106.adobe.com 127.0.0.1 wwis-dubc1-vip107.adobe.com 127.0.0.1 wwis-dubc1-vip108.adobe.com 127.0.0.1 wwis-dubc1-vip109.adobe.com 127.0.0.1 wwis-dubc1-vip110.adobe.com 127.0.0.1 wwis-dubc1-vip111.adobe.com 127.0.0.1 wwis-dubc1-vip112.adobe.com 127.0.0.1 wwis-dubc1-vip113.adobe.com 127.0.0.1 wwis-dubc1-vip114.adobe.com 127.0.0.1 wwis-dubc1-vip115.adobe.com 127.0.0.1 wwis-dubc1-vip116.adobe.com 127.0.0.1 wwis-dubc1-vip117.adobe.com 127.0.0.1 wwis-dubc1-vip118.adobe.com 127.0.0.1 wwis-dubc1-vip119.adobe.com 127.0.0.1 wwis-dubc1-vip120.adobe.com 127.0.0.1 wwis-dubc1-vip121.adobe.com 127.0.0.1 wwis-dubc1-vip122.adobe.com 127.0.0.1 wwis-dubc1-vip123.adobe.com 127.0.0.1 wwis-dubc1-vip124.adobe.com 127.0.0.1 wwis-dubc1-vip125.adobe.com 127.0.0.1 activate.adobe.com/servlets/inet_sl/sl_v1_5_rclient 127.0.0.1 adobe.com/go/activation 127.0.0.1 practivate.adobe.com/servlets/inet/alm_rclient 127.0.0.1 adobe.com/alm/2009/SLConfig 127.0.0.1 ns.adobe.com/ 127.0.0.1 ns.adobe.com/asf/asf_1_0.dtd ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {091C3FDC-EF2A-4AD0-ABE1-C4EF99E5C7B0} - System32\Tasks\{FACF5F33-A3B1-43E8-8DC0-B04E920E37DE} => pcalua.exe -a C:\Users\Tommy\Desktop\Downloads\PDF2Word_Converter.exe -d C:\Users\Tommy\Desktop\Downloads Task: {18B8310C-4EFF-4D15-8C6B-030DCFF24CC3} - System32\Tasks\{11ADE6D4-3326-492C-90A8-03F7541AAD0E} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{E48469CC-635E-4FD5-A122-1497C286D217}\setup.exe" -c -runfromtemp -l0x0409 Task: {1B6D43D1-476E-4EF8-80EB-5C3889656499} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-29] (Google Inc.) Task: {274E6538-1DF9-4637-A256-21D1302D9FED} - System32\Tasks\{AE52296F-F3AB-4A8D-9940-923C8841EC41} => pcalua.exe -a "C:\Users\Piotr\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\W7HV2DE8\Autodesk_Inventor_2012_English_Win_64bit[1].exe" -d C:\Users\Piotr\Desktop Task: {2C349071-A81F-411C-A417-A7D5F97BFA72} - System32\Tasks\{D85A774F-F5DA-44FC-8044-78DC7986416A} => pcalua.exe -a D:\setup.exe -d D:\ Task: {6FA59BE1-97A2-4F43-A447-8D570B200479} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-29] (Google Inc.) Task: {70F9B6DC-8E8E-4E71-8CD1-5A6FA31EA409} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-05-17] (Adobe Systems Incorporated) Task: {9A5E52B0-C97C-4CE1-AF62-D40BA0B22B77} - System32\Tasks\{7F33B0AE-2DE1-4141-BD0E-E8C705603EAE} => pcalua.exe -a I:\setup.exe -d I:\ Task: {A7B8504E-EB9E-4AB5-B4E0-3682D9DA2275} - System32\Tasks\{FCC0E830-EA93-4654-90B9-62E4FE19E6E9} => pcalua.exe -a "C:\Users\Piotr\Desktop\!!! Instalki [19-10-2009]\Sterowniki\Scanner\HP ScanJet 3670 [Win7, Vista, XP x64].exe" -d "C:\Users\Piotr\Desktop\!!! Instalki [19-10-2009]\Sterowniki\Scanner" Task: {AE6B169E-1571-4E52-82DE-2AF81696E595} - System32\Tasks\{C079DF0C-39C1-4FEB-AB6C-A3400ED02B3A} => pcalua.exe -a "H:\!nowe\Might.and.Magic.Heroes.VI.Shades.of.Darkness .exe + Crack www.thepiratebay.sx\rld-hmm6sod\setup.exe" -d "H:\!nowe\Might.and.Magic.Heroes.VI.Shades.of.Darkness .exe + Crack www.thepiratebay.sx\rld-hmm6sod" Task: {D0580091-572C-4D57-95BD-907EBC2CBC03} - System32\Tasks\{4BC61A98-4446-42CA-92F5-BEF51FB1EB15} => pcalua.exe -a H:\SolidWorks1\setup.exe -d H:\SolidWorks1 Task: {F3A27103-E4D5-4ABF-9402-F7A94F2104DC} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corporation) Task: {F7DDA9FB-7EA7-4A6D-909B-FB39B65456B9} - System32\Tasks\{B16B1EE3-2BEA-4DC0-83EB-AE5F91B109C4} => pcalua.exe -a F:\Autodesk\AutoCAD_2010_Polish_SLD_WIN_64bit.exe -d F:\Autodesk (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Acrobat Update Task.job => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf8e5e3ee07be1.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cff099bc7adc46.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d000d331a9cf51.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d04521de1421ed.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d08eebebae025a.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0ca97eca3d0ff.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0fa8bd8717191.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Opera scheduled Autoupdate 1415993570.job => C:\Program Files (x86)\Opera\launcher.exe ==================== Loaded Modules (Whitelisted) ============== 2013-12-23 20:36 - 2013-03-19 13:07 - 00696632 _____ () C:\Program Files\Bitdefender\Antivirus Free Edition\sqlite3.dll 2013-12-23 20:36 - 2013-09-03 15:29 - 00101328 _____ () C:\Program Files\Bitdefender\Antivirus Free Edition\BDMetrics.dll 2011-09-14 20:44 - 2011-08-02 11:47 - 00159232 _____ () C:\Program Files (x86)\Samsung\USB Drivers\26_VIA_driver2\amd64\VIAService.exe 2015-09-22 10:50 - 2015-09-22 10:50 - 00431616 _____ () C:\Program Files (x86)\SFK\SFKEX64.dll 2012-06-18 17:24 - 2012-06-18 17:24 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_05.dll 2015-09-22 10:48 - 2015-09-22 10:48 - 00124416 _____ () C:\Program Files (x86)\SFK\SFKEX64.exe 2011-02-01 17:30 - 2010-07-06 10:01 - 00078448 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll 2011-02-01 17:30 - 2010-07-06 10:00 - 00386160 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll 2011-02-01 17:30 - 2010-07-06 10:01 - 00105584 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\VMicApi.dll 2011-02-01 17:30 - 2010-07-06 10:01 - 64643696 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Skin.dll 2010-04-16 15:20 - 2010-04-16 15:20 - 00016384 ____R () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll 2010-07-06 22:26 - 2010-07-06 22:26 - 00270336 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2015-09-29 09:50 - 2015-08-06 05:47 - 00582144 _____ () C:\Program Files (x86)\WinZipper\curlpp.dll 2015-09-29 09:50 - 2015-07-15 07:58 - 00065688 _____ () C:\Program Files (x86)\WinZipper\zlib1.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:87F63D60 ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3093395151-1990011749-1491869111-1003\Control Panel\Desktop\\Wallpaper -> C:\Users\Tommy\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 62.179.1.63 - 62.179.1.62 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^forteManager.lnk => C:\Windows\pss\forteManager.lnk.CommonStartup MSCONFIG\startupreg: Acrobat Assistant 8.0 => "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe" MSCONFIG\startupreg: Adobe Acrobat Speed Launcher => "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe" MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: ISUSScheduler => "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe" -start MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: Spotify => "C:\Users\Tommy\AppData\Roaming\Spotify\spotify.exe" -autostart -minimized MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Tommy\AppData\Roaming\Spotify\SpotifyWebHelper.exe" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{9E87C463-DDF0-4B19-BB72-F144381F68FC}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{3BDAD5F3-449C-4D6F-B51F-2D9892035055}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{DF0BAED3-59FF-4E76-B9EF-65BE2A5FE6D8}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{0B13E332-098C-4303-A2CB-BCABA5B95916}] => (Allow) LPort=2869 FirewallRules: [{04BE8B38-8C48-42DB-B335-3384E85A4FB9}] => (Allow) LPort=1900 FirewallRules: [TCP Query User{EB4A08A7-90E2-4D56-96DB-47882AE171F3}C:\program files\dassault systemes\b18\win_b64\code\bin\orbixd.exe] => (Allow) C:\program files\dassault systemes\b18\win_b64\code\bin\orbixd.exe FirewallRules: [UDP Query User{422D53F1-2133-42C3-96D4-298E09B5BDE9}C:\program files\dassault systemes\b18\win_b64\code\bin\orbixd.exe] => (Allow) C:\program files\dassault systemes\b18\win_b64\code\bin\orbixd.exe FirewallRules: [TCP Query User{9E0C58D5-298C-44EB-BC2A-7702989442F7}C:\program files\dassault systemes\b18\win_b64\code\bin\cnext.exe] => (Allow) C:\program files\dassault systemes\b18\win_b64\code\bin\cnext.exe FirewallRules: [UDP Query User{EB592283-77F0-4829-A9C8-89D40C4F0684}C:\program files\dassault systemes\b18\win_b64\code\bin\cnext.exe] => (Allow) C:\program files\dassault systemes\b18\win_b64\code\bin\cnext.exe FirewallRules: [TCP Query User{D8066FB2-F44D-41A0-8EC5-4D921BC555F8}C:\windows\explorer.exe] => (Allow) C:\windows\explorer.exe FirewallRules: [UDP Query User{B746D56D-B69C-401F-B1B5-D52B22C8BC05}C:\windows\explorer.exe] => (Allow) C:\windows\explorer.exe FirewallRules: [{FF32DA5E-0CBE-40AE-B151-00127D15BB08}] => (Allow) H:\Tom\RUSE\Steam.exe FirewallRules: [{227FF975-EF5E-48A2-8E3F-66BAA11C814A}] => (Allow) H:\Tom\RUSE\Steam.exe FirewallRules: [{7D99F153-BF62-435A-8F93-567BA62C5444}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe FirewallRules: [{5D70F603-A7FE-40FB-A448-3D5FC06ACBEB}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{C77C95A0-3789-4B4D-8130-D87C16A6FF55}H:\bitwa\wesnothd.exe] => (Allow) H:\bitwa\wesnothd.exe FirewallRules: [UDP Query User{7D940A7C-304F-4770-BB56-0A39447A1370}H:\bitwa\wesnothd.exe] => (Allow) H:\bitwa\wesnothd.exe FirewallRules: [TCP Query User{33B151E9-9A24-418F-9CDE-C4C0A62C34D2}C:\program files (x86)\gadu-gadu\gg.exe] => (Allow) C:\program files (x86)\gadu-gadu\gg.exe FirewallRules: [UDP Query User{EC6AA21D-58BA-499B-B408-C6CB3C35E8E4}C:\program files (x86)\gadu-gadu\gg.exe] => (Allow) C:\program files (x86)\gadu-gadu\gg.exe FirewallRules: [TCP Query User{60200ED3-DF95-47B8-A777-A47D52EADC08}H:\gry\wesnoth 1.9.5\wesnothd.exe] => (Allow) H:\gry\wesnoth 1.9.5\wesnothd.exe FirewallRules: [UDP Query User{C76ACC4F-875C-4F47-97AA-98CD17ACFEA7}H:\gry\wesnoth 1.9.5\wesnothd.exe] => (Allow) H:\gry\wesnoth 1.9.5\wesnothd.exe FirewallRules: [{E4CA2F55-F0C6-47EE-96F3-A346675EFC05}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{1FF8539D-9946-491A-B5D6-74F1EC33FAA4}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [TCP Query User{7382D46C-3FAC-4D46-A000-2B4D555BD226}H:\program files (x86)\anno1701.exe] => (Block) H:\program files (x86)\anno1701.exe FirewallRules: [UDP Query User{F673C0AC-29B9-4CBD-A63B-2E59CB6B3C50}H:\program files (x86)\anno1701.exe] => (Block) H:\program files (x86)\anno1701.exe FirewallRules: [TCP Query User{61E5BF41-18AC-45A7-8F4E-43005D8BA834}H:\wesnoth\wesnothd.exe] => (Allow) H:\wesnoth\wesnothd.exe FirewallRules: [UDP Query User{C9FA44E3-C39B-47A6-9FE7-E2AB594496E6}H:\wesnoth\wesnothd.exe] => (Allow) H:\wesnoth\wesnothd.exe FirewallRules: [{D671064C-829B-4E2B-AA4E-0A576C380E54}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{20FAE91B-54CA-41A3-A875-BF58DFDD9805}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{5678C8D8-8460-402D-ABBF-96E179B64434}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{2F90CA72-8851-417B-9124-E1224A1868CC}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{624386A1-D166-489C-AB33-689C451E2800}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{27152ED5-00FA-47BB-9EB9-A92E2B4BA829}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{4D98D467-3C0D-49EA-9DF2-C5D399E3B86B}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{5889B9FD-DCB9-4BFF-B7F7-8708FEFEDDE1}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{6913AA21-E5B7-4E1A-8BB7-88E082FF835B}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{31DB644D-2369-4B41-AF10-DABD31BA3410}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{E2C7279D-0ACD-43A1-A85D-B512EAE0A8C4}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{94117C2D-BB08-4534-937C-65E140AF8728}] => (Allow) C:\Users\Tommy\AppData\Local\Akamai\netsession_win.exe FirewallRules: [{B483405C-6C31-4C10-9A06-BA453DAB7E00}] => (Allow) C:\Users\Tommy\AppData\Local\Akamai\netsession_win.exe FirewallRules: [{6B491694-D56C-41BD-9270-C71434B18E4F}] => (Allow) H:\Gry\Might & Magic Heroes VI.exe FirewallRules: [{07D271EB-2F78-4EF9-8FD5-F3E6A30E652B}] => (Allow) H:\Gry\Might & Magic Heroes VI.exe FirewallRules: [TCP Query User{46AD797E-CC1A-4CE7-9CF5-BF17937E7CD7}C:\users\tommy\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\tommy\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{26C7C26A-9C86-4AB2-9A4F-1A59B57FCE6C}C:\users\tommy\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\tommy\appdata\local\akamai\netsession_win.exe FirewallRules: [{18736FD4-334A-40E4-A706-B527CA8475B9}] => (Allow) C:\Program Files (x86)\GameSpy Arcade\Aphex.exe FirewallRules: [{C55E3C7E-E078-4248-AFEA-F680F7A377EC}] => (Allow) C:\Program Files (x86)\GameSpy Arcade\Aphex.exe FirewallRules: [TCP Query User{361DCCAB-1024-42F5-BE44-237F0CADF633}H:\tom\medal of honor allied assault (rip)\medal of honor allied assault (rip)\mohaa.exe] => (Allow) H:\tom\medal of honor allied assault (rip)\medal of honor allied assault (rip)\mohaa.exe FirewallRules: [UDP Query User{4ED0ED22-962B-42E8-AE66-8B23FA6FF316}H:\tom\medal of honor allied assault (rip)\medal of honor allied assault (rip)\mohaa.exe] => (Allow) H:\tom\medal of honor allied assault (rip)\medal of honor allied assault (rip)\mohaa.exe FirewallRules: [{6F24D5AF-0DA5-48A2-8E1F-2CE56DDAD1AF}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{AB002E99-2B9A-45D3-9C6B-64D96DDB1C27}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [TCP Query User{B7FA9006-AA53-4299-8E7C-391452102E05}H:\program files (x86)\anno1701.exe] => (Block) H:\program files (x86)\anno1701.exe FirewallRules: [UDP Query User{26FA1EFA-7157-41F5-B4EC-16B64FE4F2A7}H:\program files (x86)\anno1701.exe] => (Block) H:\program files (x86)\anno1701.exe FirewallRules: [TCP Query User{B89B6DB9-BC30-47FE-948F-AE5587384BAC}C:\program files (x86)\gadu-gadu\gg.exe] => (Block) C:\program files (x86)\gadu-gadu\gg.exe FirewallRules: [UDP Query User{08F313A1-5005-4EB6-B018-379DE6777EC5}C:\program files (x86)\gadu-gadu\gg.exe] => (Block) C:\program files (x86)\gadu-gadu\gg.exe FirewallRules: [{9435FC10-8ED3-4C79-AED7-EC7625B4F8D1}] => (Allow) C:\Program Files (x86)\Opera\pluginwrapper\opera_plugin_wrapper.exe FirewallRules: [{18FCF9F9-3D7A-435E-A1EC-BE5936A9F03F}] => (Allow) C:\Program Files (x86)\Opera\pluginwrapper\opera_plugin_wrapper.exe FirewallRules: [{90CC5569-F968-488E-B6A8-27787E379193}] => (Allow) C:\Program Files (x86)\GameSpy Arcade\Aphex.exe FirewallRules: [{65056BA7-E7BF-4755-9C01-83A557D43DA8}] => (Allow) C:\Program Files (x86)\GameSpy Arcade\Aphex.exe FirewallRules: [{EB6F753F-B63E-4E67-9D7F-45A1568ADC96}] => (Allow) C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe FirewallRules: [{95DC65D8-2C83-44A6-9DF5-D8F499018224}] => (Allow) C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe FirewallRules: [{75435F83-6DEB-4FCB-BB5A-9A0B33E8195A}] => (Allow) C:\Program Files\SolidWorks Corp\SolidWorks\photoview\photoview360.exe FirewallRules: [{61031A7E-7FC6-4DEE-92CB-A414C9541F35}] => (Allow) C:\Program Files\SolidWorks Corp\SolidWorks\photoview\photoview360.exe FirewallRules: [{4EEDB897-1A6D-4079-90E5-2CD3FF6A5CFA}] => (Allow) C:\Program Files\SolidWorks Corp\SolidWorks\photoview\photoview360_cl.exe FirewallRules: [{FDB4DAF9-1276-4AB4-A38B-6F0A92DE4208}] => (Allow) C:\Program Files\SolidWorks Corp\SolidWorks\photoview\photoview360_cl.exe FirewallRules: [TCP Query User{8137A143-F48E-4815-BC46-69B02D0AADCE}H:\portal 2\portal2.exe] => (Block) H:\portal 2\portal2.exe FirewallRules: [UDP Query User{C0289018-7D9B-43A3-A1D4-B28D9B8F05FB}H:\portal 2\portal2.exe] => (Block) H:\portal 2\portal2.exe FirewallRules: [{6113E066-A5F6-4CE9-A858-70CB3352E484}] => (Allow) H:\Gry\Call Of Duty Modern Warfare\iw3mp.exe FirewallRules: [{E782804B-88BA-4720-A608-9F10E8D8F9BF}] => (Allow) H:\Gry\Call Of Duty Modern Warfare\iw3mp.exe FirewallRules: [TCP Query User{444DBDC4-3DE2-4D63-BF8A-9E4A70EF7270}H:\gry\call of duty - black ops\blackops.exe] => (Block) H:\gry\call of duty - black ops\blackops.exe FirewallRules: [UDP Query User{4761F91B-11F6-4E53-B738-7CD79B549DCB}H:\gry\call of duty - black ops\blackops.exe] => (Block) H:\gry\call of duty - black ops\blackops.exe FirewallRules: [TCP Query User{5C366294-7539-4461-86E5-08D600727D18}H:\gry\dishonored\binaries\win32\dishonored.exe] => (Block) H:\gry\dishonored\binaries\win32\dishonored.exe FirewallRules: [UDP Query User{FFBBCE96-7B12-4275-897B-34786D49D193}H:\gry\dishonored\binaries\win32\dishonored.exe] => (Block) H:\gry\dishonored\binaries\win32\dishonored.exe FirewallRules: [{012A9403-7C20-4890-8F0B-DFC551E8147F}] => (Allow) C:\Users\Tommy\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{3E970184-E16D-4AFC-8077-E0FF9DF7445F}] => (Allow) C:\Users\Tommy\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{E7EE463F-943D-41D4-B8CF-BDDCCE3F49FA}] => (Allow) C:\Users\Piotr\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{EE43FBFE-AA6E-4BE7-894E-730D11E7C3CA}] => (Allow) C:\Users\Piotr\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{C5141A97-71E8-471C-A48F-C9F7DAC2BB12}] => (Allow) C:\Users\Piotr\AppData\Roaming\TorrentStream\engine\tsengine.exe FirewallRules: [{CE5AC931-FF26-4173-900E-55369D1A7B55}] => (Allow) C:\Users\Piotr\AppData\Roaming\TorrentStream\engine\tsengine.exe FirewallRules: [{2C5BB065-7D47-4C0E-97A9-06CC290DFEA5}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{655CE558-BC33-48B5-9E22-967AA4D5D8A2}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{D41640B3-6004-48A2-B05B-98C7A1474539}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{815C2A07-4234-4F00-B73B-C0EF88467CF0}] => (Allow) C:\Program Files\K2T\WTW\wtw.exe FirewallRules: [{264B0737-2837-46E1-9412-94DCF8BDF0A2}] => (Allow) C:\Program Files\K2T\WTW\wtw.exe FirewallRules: [TCP Query User{87B55C8F-FB13-4C84-B760-6B6D5C3E9524}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{8C411B72-22BC-4DE3-A2AD-08C22D4CEDE3}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [TCP Query User{D65083F9-40D8-4A06-ADB8-502CB7BA92B9}C:\windows\syswow64\java.exe] => (Allow) C:\windows\syswow64\java.exe FirewallRules: [UDP Query User{25951EDF-86D9-4346-A3ED-066ED69D0CBB}C:\windows\syswow64\java.exe] => (Allow) C:\windows\syswow64\java.exe FirewallRules: [TCP Query User{D8DBE0BF-3C42-48C8-858E-ECBB71926FD0}H:\gry\borderlands2\borderlands 2 nosteam\binaries\win32\borderlands2.exe] => (Block) H:\gry\borderlands2\borderlands 2 nosteam\binaries\win32\borderlands2.exe FirewallRules: [UDP Query User{C4D5E769-99FF-4C92-A47C-783418248DB6}H:\gry\borderlands2\borderlands 2 nosteam\binaries\win32\borderlands2.exe] => (Block) H:\gry\borderlands2\borderlands 2 nosteam\binaries\win32\borderlands2.exe FirewallRules: [{176F20E0-09BD-421A-9479-DFECC41F2901}] => (Block) H:\Gry\Europa Universalis IV\eu4.exe FirewallRules: [{072B81F1-C539-41B3-BC8A-902206F0C9C4}] => (Block) H:\Gry\Europa Universalis IV\eu4_launch.exe FirewallRules: [{AD9DF2C7-02CA-48A9-8E49-31C4A374B1D0}] => (Block) H:\Gry\Europa Universalis IV\eu4_Server.exe FirewallRules: [{20432D05-1AC9-41B8-B80B-DE7AE66F5157}] => (Block) H:\Gry\Europa Universalis IV\update.exe FirewallRules: [{58A74855-92FE-4442-84A5-7F91D2A6B557}] => (Block) H:\Gry\Europa Universalis IV\update.exe FirewallRules: [TCP Query User{087AB83F-0D12-4D87-A0A8-250C70C476D3}H:\ibp-software\wufi5\animation1d.exe] => (Block) H:\ibp-software\wufi5\animation1d.exe FirewallRules: [UDP Query User{B0D3216E-54FF-47B4-8431-DBA8D53E5F39}H:\ibp-software\wufi5\animation1d.exe] => (Block) H:\ibp-software\wufi5\animation1d.exe FirewallRules: [{41B9CD9D-C474-440B-B228-58E8EA001590}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe FirewallRules: [{1D770D4B-E412-436E-9A04-EB467B744DFC}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe FirewallRules: [{3CF452E9-57EA-4636-AB78-7C628C046646}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe FirewallRules: [{D9EBF5F3-8CF3-469C-A207-599574B430C0}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe FirewallRules: [TCP Query User{EE201981-E277-4FE0-91FF-A2255A30010C}C:\users\tommy\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\tommy\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{BF1613F3-B103-4122-8373-1DF1475D54C3}C:\users\tommy\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\tommy\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{789F7A14-431D-421E-A267-2222F4B277D2}] => (Allow) C:\Program Files\K2T\WTW\wtw.exe FirewallRules: [{98DA8DEC-D58D-464B-B661-95AB2AB56B1C}] => (Allow) C:\Program Files\K2T\WTW\wtw.exe FirewallRules: [TCP Query User{8BA992C0-B162-4E78-B631-7CF9CBAFBB3A}C:\users\piotr\appdata\roaming\torrentstream\engine\tsengine.exe] => (Block) C:\users\piotr\appdata\roaming\torrentstream\engine\tsengine.exe FirewallRules: [UDP Query User{3868FB60-2808-45FF-A287-3CD82184F82A}C:\users\piotr\appdata\roaming\torrentstream\engine\tsengine.exe] => (Block) C:\users\piotr\appdata\roaming\torrentstream\engine\tsengine.exe FirewallRules: [{3CFBBBA4-59AC-43F9-B670-38441323DBF0}] => (Block) H:\Gry\Europa Universalis IV Res Publica\eu4.exe FirewallRules: [TCP Query User{6CEE756D-8EFB-4E25-8226-FB125F21867A}H:\gry\new folder\grand theft auto iv complete edition\gtaiv.exe] => (Block) H:\gry\new folder\grand theft auto iv complete edition\gtaiv.exe FirewallRules: [UDP Query User{778F3F16-A9B0-4F29-98F4-2E53E665507E}H:\gry\new folder\grand theft auto iv complete edition\gtaiv.exe] => (Block) H:\gry\new folder\grand theft auto iv complete edition\gtaiv.exe FirewallRules: [{5105B549-91C3-4110-BF7B-CD41A42A4B35}] => (Block) H:\Gry\New folder\Grand Theft Auto IV Complete Edition\LaunchGTAIV.exe FirewallRules: [TCP Query User{3475CBBE-9D12-4E28-87E5-6B3E6EA5FFCB}H:\gry\gta iv\grand theft auto iv complete edition\gtaiv.exe] => (Block) H:\gry\gta iv\grand theft auto iv complete edition\gtaiv.exe FirewallRules: [UDP Query User{3A9631A5-4456-490A-8AD6-3DA57DAD62E4}H:\gry\gta iv\grand theft auto iv complete edition\gtaiv.exe] => (Block) H:\gry\gta iv\grand theft auto iv complete edition\gtaiv.exe FirewallRules: [{886130E8-C9EE-45D8-8CCE-BD4E2028088E}] => (Block) H:\Gry\GTA IV\Grand Theft Auto IV Complete Edition\GTAIV.exe FirewallRules: [{01060177-06ED-4D2A-BA6F-470F81886808}] => (Block) H:\Gry\GTA IV\Grand Theft Auto IV Complete Edition\GTAIV.exe FirewallRules: [{0708EEE3-CA82-4718-947A-0A6A192DA06D}] => (Allow) LPort=50248 FirewallRules: [{310A4C9C-F5D7-4AB4-A22A-D0C3CF155F76}] => (Block) H:\Gry\EUIV Art of War\eu4.exe FirewallRules: [{F1DB3D4E-B320-4DA8-8137-670A733E6EA6}] => (Allow) C:\Users\Tommy\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{D995F357-42C3-4AA5-8CFE-A30BF1BDC490}] => (Allow) C:\Users\Tommy\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{AAD0408C-6DB6-4142-8E5A-5AD636216538}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{4F95A8F9-23D9-4BC3-B2F5-7170EA585C9A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{B68CAFE7-DD0E-4047-9FD2-C3FA87A3F495}C:\users\tommy\desktop\s25rttr_0.8.1\s25client.exe] => (Block) C:\users\tommy\desktop\s25rttr_0.8.1\s25client.exe FirewallRules: [UDP Query User{F81F6DF7-1C8A-4970-A7A3-22D6355E6FAC}C:\users\tommy\desktop\s25rttr_0.8.1\s25client.exe] => (Block) C:\users\tommy\desktop\s25rttr_0.8.1\s25client.exe FirewallRules: [TCP Query User{092A55C3-5B57-4AA8-B1B9-30FED56245D3}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{0741234D-BA84-428F-8476-CE1C77D13363}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{2A39F3DE-43D9-466D-9050-910CBC7E16A9}C:\users\tommy\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\tommy\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{572ADA7D-AF06-41A4-BACE-4201519E0338}C:\users\tommy\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\tommy\appdata\roaming\spotify\spotify.exe FirewallRules: [{8E14C710-C464-4BA9-828B-BE9BB3EE416E}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe FirewallRules: [{B5C7F478-4650-4B14-96D5-ABE195B406C1}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe FirewallRules: [{C69EF379-1B81-4C1A-A4BC-E631D83F1D92}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe FirewallRules: [{429EEE9B-7C7B-44D1-84B8-517DF158DE0D}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe FirewallRules: [{8E83B42F-5D4B-4D2C-A99C-E63C109F998D}] => (Block) H:\Gry\Europa Universalis IV Common Sense\eu4.exe FirewallRules: [{8D08E2F3-F120-4A34-88BC-C0C6EBC39735}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: wafd_1_10_0_18 Description: wafd_1_10_0_18 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: wafd_1_10_0_18 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: PCI Input Device Description: PCI Input Device Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (10/11/2015 01:56:15 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Failed to create restore point (Process = C:\Windows\system32\msiexec.exe /V; Description = Removed Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219; Error = 0x8004231f). Error: (10/11/2015 01:56:10 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Failed to create restore point (Process = C:\Windows\system32\msiexec.exe /V; Description = Removed Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219; Error = 0x8004231f). Error: (10/11/2015 01:55:19 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Failed to create restore point (Process = C:\Windows\system32\msiexec.exe /V; Description = Removed Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219; Error = 0x8004231f). Error: (10/11/2015 01:55:13 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Failed to create restore point (Process = C:\Windows\system32\msiexec.exe /V; Description = Removed Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219; Error = 0x8004231f). Error: (10/11/2015 12:53:31 PM) (Source: .NET Runtime) (EventID: 1022) (User: ) Description: .NET Runtime version 4.0.30319.18444 - There was a failure initializing profiling API attach infrastructure. This process will not allow a profiler to attach. HRESULT: 0x80004005. Process ID (decimal): 3132. Message ID: [0x2509]. Error: (10/11/2015 12:51:47 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: KiesPDLR.exe, version: 1.0.0.0, time stamp: 0x4fbbbcdf Faulting module name: KERNELBASE.dll, version: 6.1.7601.18939, time stamp: 0x55afd8e7 Exception code: 0xe0434352 Fault offset: 0x0000c42d Faulting process id: 0xd64 Faulting application start time: 0xKiesPDLR.exe0 Faulting application path: KiesPDLR.exe1 Faulting module path: KiesPDLR.exe2 Report Id: KiesPDLR.exe3 Error: (10/11/2015 12:51:46 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application: KiesPDLR.exe Framework Version: v4.0.30319 Description: The process was terminated due to an unhandled exception. Exception Info: System.Windows.Markup.XamlParseException Stack: at System.Windows.Markup.WpfXamlLoader.Load(System.Xaml.XamlReader, System.Xaml.IXamlObjectWriterFactory, Boolean, System.Object, System.Xaml.XamlObjectWriterSettings, System.Uri) at System.Windows.Markup.WpfXamlLoader.LoadBaml(System.Xaml.XamlReader, Boolean, System.Object, System.Xaml.Permissions.XamlAccessLevel, System.Uri) at System.Windows.Markup.XamlReader.LoadBaml(System.IO.Stream, System.Windows.Markup.ParserContext, System.Object, Boolean) at System.Windows.Application.LoadBamlStreamWithSyncInfo(System.IO.Stream, System.Windows.Markup.ParserContext) at System.Windows.Application.LoadComponent(System.Uri, Boolean) at System.Windows.Application.DoStartup() at System.Windows.Application.<.ctor>b__1(System.Object) at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.DispatcherOperation.InvokeImpl() at System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) at System.Windows.Threading.DispatcherOperation.Invoke() at System.Windows.Threading.Dispatcher.ProcessQueue() at System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) at System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) at System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) at System.Windows.Threading.Dispatcher.Run() at System.Windows.Application.RunDispatcher(System.Object) at System.Windows.Application.RunInternal(System.Windows.Window) at System.Windows.Application.Run(System.Windows.Window) at KiesPDLR.App.Main() Error: (10/11/2015 12:40:06 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: KiesPDLR.exe, version: 1.0.0.0, time stamp: 0x4fbbbcdf Faulting module name: KERNELBASE.dll, version: 6.1.7601.18939, time stamp: 0x55afd8e7 Exception code: 0xe0434352 Fault offset: 0x0000c42d Faulting process id: 0xde0 Faulting application start time: 0xKiesPDLR.exe0 Faulting application path: KiesPDLR.exe1 Faulting module path: KiesPDLR.exe2 Report Id: KiesPDLR.exe3 Error: (10/11/2015 12:40:06 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application: KiesPDLR.exe Framework Version: v4.0.30319 Description: The process was terminated due to an unhandled exception. Exception Info: System.Windows.Markup.XamlParseException Stack: at System.Windows.Markup.WpfXamlLoader.Load(System.Xaml.XamlReader, System.Xaml.IXamlObjectWriterFactory, Boolean, System.Object, System.Xaml.XamlObjectWriterSettings, System.Uri) at System.Windows.Markup.WpfXamlLoader.LoadBaml(System.Xaml.XamlReader, Boolean, System.Object, System.Xaml.Permissions.XamlAccessLevel, System.Uri) at System.Windows.Markup.XamlReader.LoadBaml(System.IO.Stream, System.Windows.Markup.ParserContext, System.Object, Boolean) at System.Windows.Application.LoadBamlStreamWithSyncInfo(System.IO.Stream, System.Windows.Markup.ParserContext) at System.Windows.Application.LoadComponent(System.Uri, Boolean) at System.Windows.Application.DoStartup() at System.Windows.Application.<.ctor>b__1(System.Object) at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.DispatcherOperation.InvokeImpl() at System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object) at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) at System.Windows.Threading.DispatcherOperation.Invoke() at System.Windows.Threading.Dispatcher.ProcessQueue() at System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) at MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) at MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) at System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) at System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame) at System.Windows.Threading.Dispatcher.Run() at System.Windows.Application.RunDispatcher(System.Object) at System.Windows.Application.RunInternal(System.Windows.Window) at System.Windows.Application.Run(System.Windows.Window) at KiesPDLR.App.Main() Error: (10/11/2015 12:06:52 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Failed to create restore point (Process = C:\Windows\system32\svchost.exe -k netsvcs; Description = Windows Update; Error = 0x8004231f). System errors: ============= Error: (10/11/2015 12:51:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The IHProtect Service service failed to start due to the following error: %%2 Error: (10/11/2015 12:49:38 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: gzflt wafd_1_10_0_18 Error: (10/11/2015 12:49:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The IHProtect Service service failed to start due to the following error: %%2 Error: (10/11/2015 12:49:01 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 12:46:38 on ‎2015-‎10-‎11 was unexpected. Error: (10/11/2015 12:40:10 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The IHProtect Service service failed to start due to the following error: %%2 Error: (10/11/2015 12:37:46 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: gzflt wafd_1_10_0_18 Error: (10/11/2015 12:36:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The IHProtect Service service failed to start due to the following error: %%2 Error: (10/11/2015 12:36:38 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 12:07:37 on ‎2015-‎10-‎11 was unexpected. Error: (10/11/2015 12:07:51 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for Microsoft .NET Framework 4.5, 4.5.1 and 4.5.2 on Windows 7, Vista, Server 2008, Server 2008 R2 x64 (KB2972107). Error: (10/11/2015 12:07:45 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for Microsoft .NET Framework 4.5, 4.5.1 and 4.5.2 on Windows 7, Vista, Server 2008, Server 2008 R2 x64 (KB2979578). CodeIntegrity: =================================== Date: 2012-04-14 13:48:45.843 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2012-04-14 13:48:45.796 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2012-04-14 13:48:45.718 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atksgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2012-04-14 13:48:45.656 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atksgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2012-04-14 10:58:10.605 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2012-04-14 10:58:10.559 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2012-04-14 10:58:10.481 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atksgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2012-04-14 10:58:10.418 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atksgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2012-04-14 10:22:44.556 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2012-04-14 10:22:44.509 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\lirsgt.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Processor: AMD Phenom(tm) II X4 955 Processor Percentage of memory in use: 71% Total physical RAM: 4095.18 MB Available physical RAM: 1147.15 MB Total Virtual: 10235.38 MB Available Virtual: 7002.07 MB ==================== Drives ================================ Drive c: (Windows 7) (Fixed) (Total:99.9 GB) (Free:1.02 GB) NTFS Drive e: (Windows XP) (Fixed) (Total:31.5 GB) (Free:1.99 GB) NTFS Drive f: (Piotr) (Fixed) (Total:250 GB) (Free:0.69 GB) NTFS Drive g: (Piotr2) (Fixed) (Total:300.01 GB) (Free:0.01 GB) NTFS Drive h: (Tomek) (Fixed) (Total:250 GB) (Free:1.58 GB) NTFS Drive i: (U3 System) (CDROM) (Total:0.01 GB) (Free:0 GB) CDFS Drive j: () (Removable) (Total:7.48 GB) (Free:5.88 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: CBDFCBDF) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=99.9 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=31.5 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=800 GB) - (Type=OF Extended) ======================================================== Disk: 1 (MBR Code: Windows XP) (Size: 7.5 GB) (Disk ID: E1A8E1A8) Partition 1: (Active) - (Size=7.5 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================