Additional scan result of Farbar Recovery Scan Tool (x64) Version:29-11-2015 Ran by Artur (2015-11-30 14:00:01) Running from C:\FRST\FRST-OlderVersion\FRST-OlderVersion Windows 7 Ultimate Service Pack 1 (X64) (2012-07-14 02:31:09) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3076302344-2742556548-4197340800-500 - Administrator - Disabled) Artur (S-1-5-21-3076302344-2742556548-4197340800-1000 - Administrator - Enabled) => C:\Users\Artur ASPNET (S-1-5-21-3076302344-2742556548-4197340800-1005 - Limited - Enabled) Guest (S-1-5-21-3076302344-2742556548-4197340800-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3076302344-2742556548-4197340800-1002 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Norton Internet Security (Disabled - Up to date) {53C7D717-52E2-B95E-FA61-6F32ECC805DB} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Norton Internet Security (Disabled - Up to date) {E8A636F3-74D8-B6D0-C0D1-5440974F4F66} FW: Norton Internet Security (Disabled) {6BFC5632-188D-B806-D13E-C607121B42A0} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-3076302344-2742556548-4197340800-1000\...\uTorrent) (Version: 3.4.5.41202 - BitTorrent Inc.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Reader X (10.1.6) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AA1000000001}) (Version: 10.1.6 - Adobe Systems Incorporated) Aktualizacje NVIDIA 2.5.15.54 (Version: 2.5.15.54 - NVIDIA Corporation) Hidden Aliens vs. Predator (HKLM-x32\...\{2A086701-1EEE-43F5-A9DB-DE2D73DC543D}_is1) (Version: - ) ALLMediaServer (HKLM-x32\...\{FE77909E-B782-4554-A92A-4D887CEF0ACC}_is1) (Version: 0.95 - ALLCinema Ltd.) Android Sync Manager WiFi (HKLM-x32\...\{563254C9-FBFC-0200-0000-000000000000}) (Version: 12.05.1071 - Mobile Action) Ashampoo Undeleter v.1.00 (HKLM-x32\...\Ashampoo Undeleter_is1) (Version: 1.0.0 - Ashampoo GmbH & Co. KG) Aslain's XVM Mod wersja 3.8.2 (HKLM-x32\...\ZRwTINhSZfduKONYrSCTiCiGPggQZdcLRvoAVxyCOXXpkHeC~1DC3968F_is1) (Version: 3.8.2 - Aslain) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.14.3.0 - Asmedia Technology) AVNavigator 2013.I (HKU\S-1-5-21-3076302344-2742556548-4197340800-1000\...\AVNavigator 2013.I) (Version: 1.14.0.005.1 - PIONEER CORPORATION) Canon Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version: - ) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: - ) Canon IJ Network Scan Utility (HKLM-x32\...\Canon_IJ_Network_Scan_UTILITY) (Version: - ) Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: - ) Canon MP640 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP640_series) (Version: - ) Chrome Remote Desktop Host (HKLM-x32\...\{CDF9E1C8-4B97-4F8B-A848-7DD0E8BEB89F}) (Version: 47.0.2526.18 - Google Inc.) Full Player 8.2 (HKLM-x32\...\{82A51915-32C3-4D86-8015-9C8D64EB5383}_is1) (Version: - Full Software Studio) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 46.0.2490.86 - Google Inc.) Google Drive (HKLM-x32\...\{1C3D2F92-D25E-4D98-B810-3F3B0857BF26}) (Version: 1.26.0707.2863 - Google, Inc.) Google Update Helper (x32 Version: 1.3.23.9 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden Google+ Auto Backup (HKLM-x32\...\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}) (Version: 1.0.21.81 - Google) Happy Cloud Client (HKU\S-1-5-21-3076302344-2742556548-4197340800-1000\...\HappyCloud) (Version: 3.41 - Happy Cloud, Inc.) Hearts of Iron III Gold (HKLM-x32\...\{ACBE6747-6FC1-48DB-8E5D-E81EFCB1EC72}) (Version: 2.03.00.0 - Paradox Interactive) Java(TM) 7 Update 5 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417005FF}) (Version: 7.0.50 - Oracle) LG On-Screen Phone (HKLM-x32\...\LG On-Screen Phone) (Version: 4.2.001.140114 - LG Electronics) LG United Mobile Drivers (HKLM-x32\...\{55031CEF-CE75-4A5C-8DEA-60577820529B}) (Version: 3.10.1.0 - LG Electronics) Malwarebytes Anti-Malware wersja 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30320 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30320 - Microsoft Corporation) Microsoft Games for Windows - LIVE (HKLM-x32\...\{B45FABE7-D101-4D99-A671-E16DA40AF7F0}) (Version: 3.0.86.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{B578C85A-A84C-4230-A177-C5B2AF565B8C}) (Version: 3.0.17.0 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Office Excel Viewer (HKLM-x32\...\{95120000-003F-0409-0000-0000000FF1CE}) (Version: 12.0.6219.1000 - Microsoft Corporation) Microsoft Office Word Viewer 2003 (HKLM-x32\...\{90850415-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual J# .NET Redistributable Package 1.1 (HKLM-x32\...\{1A655D51-1423-48A3-B748-8F5A0BE294C8}) (Version: 1.1.4322 - Microsoft) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 38.2.0 - Mozilla) Mozilla Thunderbird 38.3.0 (x86 pl) (HKLM-x32\...\Mozilla Thunderbird 38.3.0 (x86 pl)) (Version: 38.3.0 - Mozilla) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Norton Internet Security (HKLM-x32\...\NIS) (Version: 22.5.5.15 - Symantec Corporation) NVIDIA GeForce Experience 2.5.15.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.15.54 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 358.91 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 358.91 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation) NVIDIA Sterownik graficzny 358.91 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 358.91 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) OpenOffice 4.1.1 (HKLM-x32\...\{B5373BA3-BAD7-4EAC-A9D2-B66B41B82C57}) (Version: 4.11.9775 - Apache Software Foundation) Pakiet sterowników systemu Windows - Ralink Technology Corp. (rt61x64) Net (10/16/2009 3.00.02.0000) (HKLM\...\5B2D6A2ABF6B08AEBB4564BDF09423388923DD83) (Version: 10/16/2009 3.00.02.0000 - Ralink Technology Corp.) Pakiet zgodności dla systemu Office 2007 (HKLM-x32\...\{90120000-0020-0415-0000-0000000FF1CE}) (Version: 12.0.6514.5001 - Microsoft Corporation) Panel sterowania NVIDIA 358.91 (Version: 358.91 - NVIDIA Corporation) Hidden PC Connectivity Solution (HKLM-x32\...\{83258E90-1F76-4E13-9F60-A0F8ED41E76F}) (Version: 8.22.7.0 - Nokia) Pioneer N-70A N-50A USB Audio (HKLM-x32\...\{966BAFD7-3425-4A6A-BC72-128EDA706632}) (Version: 1.0.0 - PIONEER HOME ELECTRONICS CORP.) Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile PLK Language Pack) (Version: 4.0.30320 - Microsoft Corporation) Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended PLK Language Pack) (Version: 4.0.30320 - Microsoft Corporation) Ralink RT6x Wireless LAN Card (HKLM-x32\...\{FAB1F336-1B7C-4057-A7BC-2922CD82A781}) (Version: 1.5.4.0 - Ralink) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6526 - Realtek Semiconductor Corp.) Samsung Story Album Viewer (HKLM-x32\...\InstallShield_{698BBAD8-B116-495D-B879-0F07A533E57F}) (Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.) Samsung Story Album Viewer (x32 Version: 1.0.0.13054_1 - Samsung Electronics Co., Ltd.) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.34.0 - SAMSUNG Electronics Co., Ltd.) SHIELD Streaming (Version: 4.1.500 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.15.54 - NVIDIA Corporation) Hidden Splash PRO EX (HKLM-x32\...\Mirillis Splash PRO EX) (Version: 1.13.0 - Mirillis) Spotify (HKU\S-1-5-21-3076302344-2742556548-4197340800-1000\...\Spotify) (Version: 1.0.18.60.g5fe0413d - Spotify AB) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) The Bat! Professional v5.0.32 (HKLM-x32\...\{AF29562E-B318-4132-8AA9-2E3C4D6567A5}) (Version: 5.0.32 - Ritlabs) Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.0 - Ghisler Software GmbH) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Windows Driver Package - Nokia pccsmcfd (08/22/2008 7.0.0.0) (HKLM\...\FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D) (Version: 08/22/2008 7.0.0.0 - Nokia) Windows Essentials Media Codec Pack 4.0 [64-Bit] (HKLM-x32\...\Windows Essentials Media Codec Pack) (Version: 4.0 - Media Codec) World of Warships (HKU\S-1-5-21-3076302344-2742556548-4197340800-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C814eu}_is1) (Version: - Wargaming.net) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= 29-11-2015 18:00:08 Dr.Web Security Space uninstallation 29-11-2015 22:32:13 Usunięto: Nokia Connectivity Cable Driver ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {030CDB80-D74C-4573-8A37-1CE1F7BAA382} - System32\Tasks\Norton Internet Security\Norton Error Processor => C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\SymErr.exe [2015-11-05] (Symantec Corporation) Task: {10BFDF0D-F5D9-46BC-8CAE-C54E0D52DB5A} - System32\Tasks\Norton Internet Security\Norton Error Analyzer => C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\SymErr.exe [2015-11-05] (Symantec Corporation) Task: {179C3EA3-F99C-46B0-8E22-E4930370DEC1} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Internet Security\Engine\22.5.5.15\WSCStub.exe [2015-11-20] (Symantec Corporation) Task: {3E0E401E-EFA2-4AC4-9209-CC4573A2AB82} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton Internet Security\Upgrade.exe [2015-07-27] (Symantec Corporation) Task: {476F56CA-80B3-46D0-AD77-C1663359EC66} - \SN.Booster-S-1532781606 -> No File <==== ATTENTION Task: {4B558FEA-37B1-4BA9-B960-18B95DC7F54C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated) Task: {650703A3-D789-491B-A84A-D337BD5AF22E} - System32\Tasks\{1FC95851-41CB-4A38-AD8E-0BB1249B0C33} => pcalua.exe -a "C:\Program Files (x86)\Steam\steam.exe" -c steam://uninstall/8980 Task: {7117F969-966D-421A-92C7-E99EE2CC945A} - System32\Tasks\ASUS\i-Setup194115 => C:\Windows\Chipset\AsusSetup.exe [2010-09-08] (ASUSTeK Computer Inc.) Task: {9F15FC93-DAEF-4A69-9657-4AE785788497} - System32\Tasks\Norton Identity Safe\Norton Error Analyzer => C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.0.43\SymErr.exe Task: {A720DE49-D3A2-4BA6-BC8F-B3F308A5108A} - System32\Tasks\Norton Identity Safe\Norton Error Processor => C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.0.43\SymErr.exe Task: {B80A454A-C101-438D-9F1D-F5512CEF9918} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-04] (Google Inc.) Task: {D0B7DF1D-247D-42DD-BE08-3F4EE5B543B6} - System32\Tasks\Windows Codec Update Service => C:\Program Files (x86)\Essentials Codec Pack\WECPUpdate.exe [2012-02-03] (MediaCodec.Org) Task: {E513CD0B-6946-4CDF-BAEB-C5E53F920A85} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-04] (Google Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2012-07-14 04:07 - 2015-11-05 16:13 - 00116528 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-11-11 11:49 - 2015-11-05 18:13 - 00013088 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-11-30 12:05 - 2015-11-30 12:05 - 00098816 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\win32api.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00110080 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\pywintypes27.dll 2015-11-30 12:05 - 2015-11-30 12:05 - 00364544 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\pythoncom27.dll 2015-11-30 12:05 - 2015-11-30 12:05 - 00046080 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\_socket.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 01208320 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\_ssl.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00320512 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\win32com.shell.shell.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00776704 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\_hashlib.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 01176576 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\wx._core_.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00806400 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\wx._gdi_.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00816128 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\wx._windows_.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 01067008 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\wx._controls_.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00733184 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\wx._misc_.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00682496 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\pysqlite2._sqlite.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00088064 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\_ctypes.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00119808 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\win32file.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00108544 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\win32security.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00007168 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\hashobjs_ext.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00017920 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\thumbnails_ext.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00079360 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\usb_ext.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00167936 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\win32gui.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00018432 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\win32event.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00128512 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\_elementtree.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00127488 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\pyexpat.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00013824 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\common.time34.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00036864 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\_psutil_windows.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00038912 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\win32inet.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00525640 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\windows._lib_cacheinvalidation.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00011264 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\win32crypt.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00077312 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\wx._html2.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00027136 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\_multiprocessing.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00020480 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\_yappi.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00035840 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\win32process.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00686080 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\unicodedata.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00123392 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\wx._wizard.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00024064 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\win32pipe.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00010240 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\select.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00025600 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\win32pdh.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00017408 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\win32profile.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00022528 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\win32ts.pyd 2015-11-30 12:05 - 2015-11-30 12:05 - 00078848 _____ () C:\Users\Artur\AppData\Local\Temp\_MEI23962\wx._animate.pyd ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:373E1720 ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Xesmitge => ""="service" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3076302344-2742556548-4197340800-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 104.197.191.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{0B55CBD7-5528-44D4-9252-17225C7E74D7}] => (Allow) C:\Program Files (x86)\Opera\pluginwrapper\opera_plugin_wrapper.exe FirewallRules: [{2AEDFCE5-DBE0-4BC4-B2C9-D103F04ED1C9}] => (Allow) C:\Program Files (x86)\Opera\pluginwrapper\opera_plugin_wrapper.exe FirewallRules: [{EB3DB53D-5A21-4CB6-BBD3-DF15C17949A4}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{A7AB84C1-F124-4D12-953F-6CB4BDE69E40}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [TCP Query User{2644AD01-0AED-4152-AA10-219870D7D761}F:\gry\world_of_tanks\worldoftanks.exe] => (Allow) F:\gry\world_of_tanks\worldoftanks.exe FirewallRules: [UDP Query User{D8B3D98A-7A0C-47EA-ADD7-B7A7DD1F23A7}F:\gry\world_of_tanks\worldoftanks.exe] => (Allow) F:\gry\world_of_tanks\worldoftanks.exe FirewallRules: [{7D014B58-BCD1-482F-9EDD-FFC01DCB27FE}] => (Allow) C:\Program Files (x86)\IVT Corporation\BlueSoleil\BlueSoleilCS.exe FirewallRules: [{0442B943-00F4-43EE-B06B-A8A95F22C501}] => (Allow) C:\Program Files (x86)\IVT Corporation\BlueSoleil\BlueSoleilCS.exe FirewallRules: [{7346318A-BE9B-4564-8CA1-CF8D34B9615E}] => (Allow) C:\Program Files (x86)\Mirillis\Splash PRO\SplashPro.exe FirewallRules: [{1C537218-E82C-4324-9ED9-48C9AE5D8D11}] => (Allow) C:\Program Files (x86)\Mirillis\Splash PRO\SplashPro.exe FirewallRules: [{0D432D52-FF61-4A74-8EFB-450B87D05F34}] => (Allow) C:\Program Files (x86)\Mirillis\Splash PRO EX\SplashProEx.exe FirewallRules: [{7F5E9975-E16B-4647-BAAD-108144B5E926}] => (Allow) C:\Program Files (x86)\Mirillis\Splash PRO EX\SplashProEx.exe FirewallRules: [TCP Query User{D9959DA9-AF25-439E-ACFE-0CA84CF1765A}F:\gry\world_of_tanks\wotlauncher.exe] => (Allow) F:\gry\world_of_tanks\wotlauncher.exe FirewallRules: [UDP Query User{61671AAF-C97A-49FD-808D-048FBB6C70AF}F:\gry\world_of_tanks\wotlauncher.exe] => (Allow) F:\gry\world_of_tanks\wotlauncher.exe FirewallRules: [{A19635BC-0006-414E-9150-172B9E75B757}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe FirewallRules: [{D2F00C3B-33D6-4A70-A3E7-9B338C375D97}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{FC888F6C-AFF2-478E-9ABF-A6361689D97B}F:\gry\wottest\wotlauncher.exe] => (Allow) F:\gry\wottest\wotlauncher.exe FirewallRules: [UDP Query User{EE9CAA23-8C95-4F0C-A081-20E71AFFF96F}F:\gry\wottest\wotlauncher.exe] => (Allow) F:\gry\wottest\wotlauncher.exe FirewallRules: [TCP Query User{AE9EA4B2-D8F0-4C3B-9272-205B63B86EE1}F:\gry\wottest\worldoftanks.exe] => (Allow) F:\gry\wottest\worldoftanks.exe FirewallRules: [UDP Query User{EC004CA3-8017-4289-8A21-51F139772E15}F:\gry\wottest\worldoftanks.exe] => (Allow) F:\gry\wottest\worldoftanks.exe FirewallRules: [{1422212C-4AC5-4B86-8B31-84DAFA8CD8A6}] => (Allow) F:\Gry\BioShock Infinite\unins000.exe FirewallRules: [{AF28DA48-A0C4-44A3-AF33-549CD65BC331}] => (Allow) F:\Gry\BioShock Infinite\unins000.exe FirewallRules: [{47BCA950-03C8-4552-8ABB-6E2E6390AB08}] => (Allow) F:\Gry\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe FirewallRules: [{8F5D56F0-ED20-434D-99F5-1DA593164399}] => (Allow) F:\Gry\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe FirewallRules: [{39382146-DCFE-404E-8F3C-70FC223359B8}] => (Block) F:\Gry\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe FirewallRules: [{93A1DC0B-5398-4B82-810A-64CBA23EE05D}] => (Block) F:\Gry\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe FirewallRules: [TCP Query User{2478DE91-2C81-48A2-9A80-E57021B0B80A}F:\gry\aliens colonial marines\binaries\win32\acm.exe] => (Block) F:\gry\aliens colonial marines\binaries\win32\acm.exe FirewallRules: [UDP Query User{21B463E2-1E49-4BE6-A90C-9A0BE6BAB5BE}F:\gry\aliens colonial marines\binaries\win32\acm.exe] => (Block) F:\gry\aliens colonial marines\binaries\win32\acm.exe FirewallRules: [TCP Query User{B6BCAFF5-ADF7-41B8-A648-BFDE7182DFFA}F:\gry\war thunder\aces.exe] => (Allow) F:\gry\war thunder\aces.exe FirewallRules: [UDP Query User{A981D3CC-167B-4443-ACA3-C6A905A42098}F:\gry\war thunder\aces.exe] => (Allow) F:\gry\war thunder\aces.exe FirewallRules: [{3A4935B2-D2A8-49E8-9053-EAD542A68CA0}] => (Allow) F:\HappyCloud\Cache\The Lord of the Rings Online\lotroclient.exe FirewallRules: [{8075125C-44A6-41FF-A230-C754F3D150D0}] => (Allow) F:\HappyCloud\Cache\The Lord of the Rings Online\lotroclient.exe FirewallRules: [{52C2BAE7-85E5-4DD8-8E75-A76DE8135BB8}] => (Allow) F:\HappyCloud\Cache\The Lord of the Rings Online\TurbineLauncher.exe FirewallRules: [{83653137-2850-4E04-9E0A-F736CF088D0E}] => (Allow) F:\HappyCloud\Cache\The Lord of the Rings Online\TurbineLauncher.exe FirewallRules: [{9812159A-71FE-4569-94F2-5ADFB77DE5A7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{0AC6547B-8C43-4D12-8B30-08D89251E21A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{FDF58585-51EC-4738-8760-2359DB3D28AD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{ADA7B699-B476-4BA8-BAAC-2A65543DF095}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{FC97583D-2F72-4F70-9886-7594EDF0553F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [TCP Query User{5EF8F74A-A05B-42CD-ABE5-2973FA91E656}F:\gry\acr\assassin's creed revelations\acrsp.exe] => (Block) F:\gry\acr\assassin's creed revelations\acrsp.exe FirewallRules: [UDP Query User{CF574C63-12A0-4AB0-BBFB-05ECF999448D}F:\gry\acr\assassin's creed revelations\acrsp.exe] => (Block) F:\gry\acr\assassin's creed revelations\acrsp.exe FirewallRules: [{9E92D323-BD50-46DA-B788-05152507CF73}] => (Block) F:\Gry\ACR\Assassin's Creed Revelations\Play_ACR.exe FirewallRules: [TCP Query User{CCDC2339-ACA1-47EC-A555-A7F20B15EDE9}F:\gry\test\war thunder\launcher.exe] => (Allow) F:\gry\test\war thunder\launcher.exe FirewallRules: [UDP Query User{75BAB463-DC7C-48D1-9727-881EAAA25E7F}F:\gry\test\war thunder\launcher.exe] => (Allow) F:\gry\test\war thunder\launcher.exe FirewallRules: [TCP Query User{460B1874-3899-421D-87AB-1FCF5084DF03}F:\gry\test\war thunder\aces.exe] => (Block) F:\gry\test\war thunder\aces.exe FirewallRules: [UDP Query User{4F5B33A9-7628-47EF-B96C-94089217F7E9}F:\gry\test\war thunder\aces.exe] => (Block) F:\gry\test\war thunder\aces.exe FirewallRules: [{98B053A1-DFA3-4E1E-A15F-6C31F0D22AD9}] => (Allow) F:\Gry\Steem\Steam.exe FirewallRules: [{2C502BD0-01E3-4442-AB13-BAC288DEB8DB}] => (Allow) F:\Gry\Steem\Steam.exe FirewallRules: [TCP Query User{22DEED40-9DF6-42E7-ADF2-1F6193CC6CDC}F:\gry\steem\steamapps\common\total war rome ii\rome2.exe] => (Block) F:\gry\steem\steamapps\common\total war rome ii\rome2.exe FirewallRules: [UDP Query User{8667E18D-57E5-472E-A837-731E7AD91B15}F:\gry\steem\steamapps\common\total war rome ii\rome2.exe] => (Block) F:\gry\steem\steamapps\common\total war rome ii\rome2.exe FirewallRules: [{B938FDEF-FD50-442B-8BA2-541147DD1DCC}] => (Allow) LPort=53168 FirewallRules: [{3E9228EF-C273-4D27-857F-9BF2FFE09C4E}] => (Allow) LPort=2869 FirewallRules: [{E7A7CB36-831D-47D0-8A74-B06B6F7E9FC9}] => (Allow) LPort=1900 FirewallRules: [{54A4C01D-3D6E-44A0-BA89-0001D57F3D5E}] => (Allow) LPort=53168 FirewallRules: [{4471EBFC-70F5-49B9-884B-7280230C3A17}] => (Allow) LPort=2869 FirewallRules: [{DDC9F38F-034D-4E66-8B6D-8DC9F86CDBFC}] => (Allow) LPort=1900 FirewallRules: [{2AA20F84-0CC1-4B69-AECF-D5D3DB3FBB51}] => (Allow) LPort=53168 FirewallRules: [{A9FCFD80-DE52-4CBB-A114-0EF272CEF6B4}] => (Allow) LPort=2869 FirewallRules: [{95DE6B48-EC61-4E62-B507-807875640E18}] => (Allow) LPort=1900 FirewallRules: [TCP Query User{8A89BC52-75AF-4400-B7AC-1E8B557C8E64}C:\program files (x86)\allmediaserver\mediaserver.exe] => (Allow) C:\program files (x86)\allmediaserver\mediaserver.exe FirewallRules: [UDP Query User{008ACE60-D7F1-43E9-AF62-6E8593D99E6E}C:\program files (x86)\allmediaserver\mediaserver.exe] => (Allow) C:\program files (x86)\allmediaserver\mediaserver.exe FirewallRules: [{5501A0A5-EC82-4451-96DC-0114BB164725}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{885C8E9A-3DD1-4173-9445-2B308316AFC5}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{ED5AFEA1-62CE-4050-84B9-E3335E72BDD0}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{40E285B3-F3C2-4B73-A8B0-7E850CF44FE9}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{B43C87A1-0296-488C-8B37-7E8E951FA05F}] => (Allow) F:\Gry\Steem\SteamApps\common\Total War Rome II\launcher\launcher.exe FirewallRules: [{47E507A2-1FCE-4E11-95AC-4C22D7BDB0BD}] => (Allow) F:\Gry\Steem\SteamApps\common\Total War Rome II\launcher\launcher.exe FirewallRules: [TCP Query User{074828B4-288A-473D-8BF3-0470CD4A4A00}F:\gry\test\war thunder\launcher.exe] => (Allow) F:\gry\test\war thunder\launcher.exe FirewallRules: [UDP Query User{0D4DA341-9B39-469C-A4D9-43C2A610285D}F:\gry\test\war thunder\launcher.exe] => (Allow) F:\gry\test\war thunder\launcher.exe FirewallRules: [TCP Query User{80264975-E620-47F2-B3A3-FE934B390CE3}F:\gry\test\war thunder\aces.exe] => (Block) F:\gry\test\war thunder\aces.exe FirewallRules: [UDP Query User{677C02CA-4E82-4622-B24E-6374D39F0B33}F:\gry\test\war thunder\aces.exe] => (Block) F:\gry\test\war thunder\aces.exe FirewallRules: [TCP Query User{8C508493-A792-4589-9AA2-ADF7D179DDCB}F:\gry\war thunder\launcher.exe] => (Allow) F:\gry\war thunder\launcher.exe FirewallRules: [UDP Query User{AB1BE6EE-C205-4D90-A326-419035D4C12D}F:\gry\war thunder\launcher.exe] => (Allow) F:\gry\war thunder\launcher.exe FirewallRules: [{8E64528D-E3D8-4B64-8646-408FAAC2F79B}] => (Allow) C:\Users\Artur\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{488C1C82-4761-4520-B967-C25ECADCB1C5}] => (Allow) C:\Users\Artur\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{30300AD9-5773-488B-8E20-A902A53A25B2}] => (Allow) F:\Gry\Steem\SteamApps\common\Sniper Elite V2\bin\SniperEliteV2.exe FirewallRules: [{60C977C2-0376-4E19-AF67-A24B6C6705F1}] => (Allow) F:\Gry\Steem\SteamApps\common\Sniper Elite V2\bin\SniperEliteV2.exe FirewallRules: [{530E9C6D-2C22-492B-BB06-32E533E60B4A}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{5C6B8253-5F4B-4044-BA1B-656F970991C3}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [TCP Query User{062E24A3-E9AF-45BE-9CD3-A0449561805A}C:\program files (x86)\allmediaserver\mediaserver.exe] => (Allow) C:\program files (x86)\allmediaserver\mediaserver.exe FirewallRules: [UDP Query User{CAA76F1F-EB2A-4489-8609-A14DF2A3C99B}C:\program files (x86)\allmediaserver\mediaserver.exe] => (Allow) C:\program files (x86)\allmediaserver\mediaserver.exe FirewallRules: [TCP Query User{D9EBDB1E-7281-461E-AA71-57D4E099DB5C}C:\games\world_of_tanks\worldoftanks.exe] => (Block) C:\games\world_of_tanks\worldoftanks.exe FirewallRules: [UDP Query User{885D3B08-CCBF-4BFB-8600-1EA382FB372B}C:\games\world_of_tanks\worldoftanks.exe] => (Block) C:\games\world_of_tanks\worldoftanks.exe FirewallRules: [{178B2954-45F7-4D98-9D16-D98A633A5BD3}] => (Allow) F:\Gry\Steem\bin\steamwebhelper.exe FirewallRules: [{CB8FF622-D043-445F-87E6-7666B18D65BD}] => (Allow) F:\Gry\Steem\bin\steamwebhelper.exe FirewallRules: [{D4D5C2E5-49DA-471D-909B-525B645271D6}] => (Allow) C:\Users\Artur\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{193BD95D-0309-4244-9B10-04BA525C7328}] => (Allow) C:\Users\Artur\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{8276C720-FEEC-4F60-A0A3-EC526A99ADCF}] => (Allow) F:\Gry\Aliens vs. Predator\AvP.exe FirewallRules: [{9213330F-82E8-4CBB-9095-41FC4C3CBA31}] => (Allow) F:\Gry\Aliens vs. Predator\AvP.exe FirewallRules: [{0DEECAA9-643A-4454-985A-938FE81489FE}] => (Allow) F:\Gry\Aliens vs. Predator\AvP_DX11.exe FirewallRules: [{4224D509-A269-47BD-A000-F3187BA89451}] => (Allow) F:\Gry\Aliens vs. Predator\AvP_DX11.exe FirewallRules: [{F3AA7C00-1549-45CA-99BA-B6656444C46B}] => (Block) F:\Gry\Metro 2033 Redux\metro.exe FirewallRules: [{6C9C3CC5-CCD9-4DF7-B265-6C4C579A1D44}] => (Block) F:\Gry\Metro 2033 Redux\metro.exe FirewallRules: [{201F99B7-D9F6-4CD8-8F14-4E23A2BF53A1}] => (Allow) F:\Gry\Steem\SteamApps\common\Alan Wake\AlanWake.exe FirewallRules: [{03CD6626-EA0B-40D7-95C7-018EAEAD8C94}] => (Allow) F:\Gry\Steem\SteamApps\common\Alan Wake\AlanWake.exe FirewallRules: [{AF5BCB00-B09E-4A8A-8ED7-C165FA4232DD}] => (Allow) C:\Users\Artur\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{2547609E-E3F3-4F07-87A3-595443D39498}] => (Allow) C:\Users\Artur\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{9FD36DFB-3459-4B85-A8B9-BD63F6D1F1CA}F:\gry\world_of_warships\wowslauncher.exe] => (Allow) F:\gry\world_of_warships\wowslauncher.exe FirewallRules: [UDP Query User{EEABF4EF-A851-4FCD-BA2B-91C397875672}F:\gry\world_of_warships\wowslauncher.exe] => (Allow) F:\gry\world_of_warships\wowslauncher.exe FirewallRules: [TCP Query User{6154E37B-43C2-481A-9678-C41A671737D2}F:\gry\wot\worldoftanks.exe] => (Allow) F:\gry\wot\worldoftanks.exe FirewallRules: [UDP Query User{B5FCB822-D502-431D-9F9D-F340A4DBFBFA}F:\gry\wot\worldoftanks.exe] => (Allow) F:\gry\wot\worldoftanks.exe FirewallRules: [TCP Query User{9713B7E4-5A92-4FBC-87D1-0FD79EDA1876}F:\gry\wot\wotlauncher.exe] => (Allow) F:\gry\wot\wotlauncher.exe FirewallRules: [UDP Query User{B859330F-5C25-4ADA-BE0C-616A5E6A8801}F:\gry\wot\wotlauncher.exe] => (Allow) F:\gry\wot\wotlauncher.exe FirewallRules: [{8BE732D0-A2A6-42E5-B698-2AA5963D01C7}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\47.0.2526.18\remoting_host.exe FirewallRules: [{AF9D2631-D7C4-4282-8089-EC97D4F6D6C0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{D0E2DA3C-93C4-4198-8A2D-DFCEF1CCF092}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{BAB7E519-4237-47E3-B76F-46BF5FF2AE09}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{FCB3E6A8-90AF-45C8-B33E-808B1696718C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{70BB26EB-F0E6-4670-9A19-39DC3922A504}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{F7C00B6E-8114-4D14-9A92-AB4426B0BFCA}] => (Allow) F:\Gry\Steem\SteamApps\common\Total War Rome II\launcher\launcher.exe FirewallRules: [{1137B117-81DB-4F63-8109-8F955AB8D490}] => (Allow) F:\Gry\Steem\SteamApps\common\Total War Rome II\launcher\launcher.exe FirewallRules: [{6FC0E9FF-F385-47A4-97F2-3C19D78BEFD6}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{FCAE4534-B1C2-4CAA-8BEC-3B1D8EFDDA83}] => (Allow) C:\Users\Artur\AppData\Local\Temp\7zSC052.tmp\SymNRT.exe FirewallRules: [{33EC2E39-F41F-4008-B928-8295C6E03161}] => (Allow) C:\Users\Artur\AppData\Local\Temp\7zSC052.tmp\SymNRT.exe FirewallRules: [{8CBF3B86-0D31-4D83-8972-869606B41CEA}] => (Allow) C:\Program Files\DrWeb\dwservice.exe FirewallRules: [{91CE15C6-E28D-4929-B9F2-C79225183996}] => (Allow) C:\Program Files\DrWeb\spideragent.exe FirewallRules: [{D442A852-D264-4B7E-9E59-0CF893E53A12}] => (Allow) C:\Program Files\DrWeb\dwnetfilter.exe ==================== Faulty Device Manager Devices ============= Name: E:\ Description: Storage Device Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: Generic Service: WUDFRd Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19) Resolution: A registry problem was detected. This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options: On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver. Name: Ralink RT61 Turbo Wireless LAN Card Description: Ralink RT61 Turbo Wireless LAN Card Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Ralink Technology Corp. Service: rt61x64 Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (11/30/2015 01:37:31 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: mf6smjmo.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Nazwa modułu powodującego błąd: mf6smjmo.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0008d93e Identyfikator procesu powodującego błąd: 0x1618 Godzina uruchomienia aplikacji powodującej błąd: 0xmf6smjmo.exe0 Ścieżka aplikacji powodującej błąd: mf6smjmo.exe1 Ścieżka modułu powodującego błąd: mf6smjmo.exe2 Identyfikator raportu: mf6smjmo.exe3 Error: (11/30/2015 00:05:23 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error: (11/30/2015 11:03:40 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 Error: (11/30/2015 10:03:40 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 Error: (11/30/2015 09:03:40 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 Error: (11/30/2015 08:03:40 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 Error: (11/30/2015 07:03:40 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 Error: (11/30/2015 06:03:40 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 Error: (11/30/2015 05:03:40 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 Error: (11/30/2015 04:03:40 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 System errors: ============= Error: (11/30/2015 01:28:14 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error: (11/30/2015 01:28:14 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error: (11/30/2015 01:28:14 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error: (11/30/2015 01:20:27 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error: (11/30/2015 01:20:27 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error: (11/30/2015 01:20:27 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error: (11/30/2015 01:14:12 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error: (11/30/2015 01:14:12 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error: (11/30/2015 01:07:52 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. Error: (11/30/2015 01:07:52 PM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY) Description: Został wygenerowany następujący alert krytyczny: 10. Stan błędu wewnętrznego: 10. CodeIntegrity: =================================== Date: 2015-11-26 21:36:45.216 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. Date: 2015-11-26 21:36:45.184 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. Date: 2015-11-26 21:36:45.118 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpa.exe because the set of per-page image hashes could not be found on the system. Date: 2015-11-26 21:36:45.087 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpa.exe because the set of per-page image hashes could not be found on the system. Date: 2015-11-26 21:35:50.753 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. Date: 2015-11-26 21:35:50.724 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. Date: 2015-11-26 21:35:50.672 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpa.exe because the set of per-page image hashes could not be found on the system. Date: 2015-11-26 21:35:50.641 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpa.exe because the set of per-page image hashes could not be found on the system. Date: 2015-11-26 21:35:49.117 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. Date: 2015-11-26 21:35:49.073 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-2120 CPU @ 3.30GHz Percentage of memory in use: 32% Total physical RAM: 8159.14 MB Available physical RAM: 5541.73 MB Total Virtual: 16316.47 MB Available Virtual: 13801.31 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:99.9 GB) (Free:38.61 GB) NTFS Drive d: (Fallout 4) (CDROM) (Total:5.22 GB) (Free:0 GB) UDF Drive f: (Rozne) (Fixed) (Total:365.76 GB) (Free:345.91 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 7BD88A8E) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=99.9 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=365.8 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================