Additional scan result of Farbar Recovery Scan Tool (x64) Version:27-01-2016 Ran by Patrycjusz (2016-02-04 21:35:20) Running from C:\Users\Patrycjusz\Desktop\New folder (3) Windows 8.1 (X64) (2014-09-14 08:51:25) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1542458404-1444137664-256976008-500 - Administrator - Disabled) Guest (S-1-5-21-1542458404-1444137664-256976008-501 - Limited - Disabled) Patrycjusz (S-1-5-21-1542458404-1444137664-256976008-1002 - Administrator - Enabled) => C:\Users\Patrycjusz ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 20.0.0.233 - Adobe Systems Incorporated) Adobe Digital Editions 4.0 (HKLM-x32\...\Adobe Digital Editions 4.0) (Version: 4.0.3 - Adobe Systems Incorporated) Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.286 - Adobe Systems Incorporated) Adobe Photoshop CS3 (HKLM-x32\...\Adobe_678cd98c8365a5647f9a2e539d120a8) (Version: 10.0 - Adobe Systems Incorporated) Adobe Reader XI (11.0.13) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.13 - Adobe Systems Incorporated) Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.3.133 - Adobe Systems, Inc.) ALLPlayer Remote Control (HKLM-x32\...\{146BDBDD-ACD9-4B04-A286-C27471841E8E}_is1) (Version: 1.2 - ALLPlayer Group, Ltd.) ALLPlayer V6.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLPlayer Group, Ltd.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) CCleaner (HKLM\...\CCleaner) (Version: 5.09 - Piriform) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Curse (HKLM-x32\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 6.0.0.0 - Curse) Curse Client (HKU\S-1-5-21-1542458404-1444137664-256976008-1002\...\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.4.6515 - CyberLink Corp.) CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.6.3728 - CyberLink Corp.) Cyberlink PhotoDirector (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.2.4128 - CyberLink Corp.) CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.4.3130 - CyberLink Corp.) CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.4.3122 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 5.0.1.3202 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 5.0.1.0407 - Disc Soft Ltd) DAEMON Tools Ultra (HKLM-x32\...\DAEMON Tools Ultra) (Version: 2.4.0.0280 - Disc Soft Ltd) dBpoweramp (HKLM-x32\...\dBpoweramp) (Version: Release 15.3 - Illustrate) dBpoweramp DSP Effects (HKLM-x32\...\dBpoweramp DSP Effects) (Version: Release 11 - Illustrate) Dead Island (HKLM-x32\...\Steam App 91310) (Version: - Techland) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Dying Light (HKLM-x32\...\Steam App 239140) (Version: - Techland) Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.103 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden H1Z1 (HKLM-x32\...\Steam App 295110) (Version: - Daybreak Games) H1Z1 Test Server (HKLM-x32\...\Steam App 362300) (Version: - ) Heroes of Might and Magic V - Collectors Edition (HKLM-x32\...\Heroes of Might and Magic V - Collectors Edition3.1) (Version: 3.1 - Ubisoft) Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP 3D DriveGuard (HKLM-x32\...\{F90A86C9-7779-47DD-AC06-8EE832C55F55}) (Version: 6.0.18.1 - Hewlett-Packard Company) HP Connected Music (Meridian - installer) (HKLM-x32\...\StartHPConnectedMusic) (Version: 1.0 - Meridian Audio Ltd) HP CoolSense (HKLM-x32\...\{59F8C5AA-91BD-423D-BF05-09A80F39898F}) (Version: 2.10.62 - Hewlett-Packard Company) HP Documentation (HKLM-x32\...\{1154543C-D5D0-49BE-A004-82EE0A3746AE}) (Version: 1.1.0.0 - Hewlett-Packard) HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7045.4591 - Hewlett-Packard) HP SimplePass (HKLM-x32\...\InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}) (Version: 8.00.57 - Hewlett-Packard) HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company) HP System Event Utility (HKLM-x32\...\{DEF23826-DB71-4654-BC00-D5D6C20802EA}) (Version: 1.1.4 - Hewlett-Packard Company) HP Utility Center (HKLM\...\{AED1C141-3AFC-47FE-AE90-C820AA60B103}) (Version: 2.2.5 - Hewlett-Packard Company) HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company) IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6491.0 - IDT) Inst5675 (Version: 8.00.57 - Softex Inc.) Hidden Inst5676 (Version: 8.00.57 - Softex Inc.) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.13.1706 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3304 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.1.1000 - Intel Corporation) Intel(R) Smart Connect Technology (HKLM\...\{9B5FD763-5074-474C-B898-24567E6450C8}) (Version: 4.2.40.2439 - Intel Corporation) Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217071FF}) (Version: 7.0.710 - Oracle) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.410 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.410 - LogMeIn, Inc.) Hidden Malwarebytes Anti-Malware wersja 2.0.3.1025 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation) Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SkyDrive (HKU\S-1-5-21-1542458404-1444137664-256976008-1002\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Firefox 35.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 35.0.1 (x86 pl)) (Version: 35.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla) Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation) NVIDIA Graphics Driver 344.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 344.48 - NVIDIA Corporation) NVIDIA PhysX System Software 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation) Opera Stable 29.0.1795.47 (HKLM-x32\...\Opera 29.0.1795.47) (Version: 29.0.1795.47 - Opera Software ASA) PDF Settings (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Plus500 (HKLM-x32\...\Plus500) (Version: - ) Polsko-angielskie multimedialne TESTY NA PRAWO JAZDY w UK (HKLM-x32\...\Polsko-angielskie-multimedialne-TESTY-NA-PRAWO-JAZDY-w-UK) (Version: 4.0 - UNKNOWN) Polsko-angielskie multimedialne TESTY NA PRAWO JAZDY w UK (x32 Version: 4.0 - UNKNOWN) Hidden Ralink Bluetooth Stack64 (HKLM\...\{8A2E2A41-B814-407E-2F96-4E433C42AB78}) (Version: 11.0.739.0 - Mediatek) Ralink RT3290 802.11bgn Wi-Fi Adapter (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 5.0.29.8105 - Mediatek) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.21239 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.19.726.2013 - Realtek) SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation) Skype™ 7.10 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.10.101 - Skype Technologies S.A.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.8.0 - Synaptics Incorporated) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Validity WBF DDK (HKLM\...\{21498212-1146-4540-8A81-6A1328BA19F2}) (Version: 4.5.228.0 - Validity Sensors, Inc.) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {02964302-EE58-4818-88E9-B03F84D3F37A} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {0DD21480-9898-44E2-B74D-4C910E13F14D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company) Task: {1D56EEB5-C0D9-4970-9487-4970275F5266} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {1ED058D0-FD16-44CD-B918-8F6354619190} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-08-19] (Piriform Ltd) Task: {262195E6-81AD-4940-9C7C-D1CAF1B4232F} - System32\Tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [2013-06-07] (Hewlett-Packard Development Company, L.P.) Task: {4E773AB4-8DB1-4490-B89C-BD676F615365} - System32\Tasks\Opera scheduled Autoupdate 1430843227 => C:\Program Files (x86)\Opera\launcher.exe [2015-04-17] (Opera Software) Task: {6B6E51F3-F3D4-498C-9D4D-77CF96CD3443} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation) Task: {7E657FF5-0934-47A4-A1A6-6B567A069D17} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-08-02] (Synaptics Incorporated) Task: {7F8478B2-21D5-4343-984E-9AFEBC2D5425} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2013-03-12] (CyberLink Corp.) Task: {87DA7230-33DB-4878-A057-8B408931FD62} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated) Task: {95A9F13C-B0B8-4A09-B3A7-CCFB0DC6DE70} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {A11AD238-EFC9-4984-845B-EFCF03545CE4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {BA48FCCD-F364-42BF-B684-E7B4DCC4D3D1} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto Task: {BD38A04D-BA51-4E93-96BF-C2A0D86C77E4} - System32\Tasks\HPCeeScheduleForPatrycjusz => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard) Task: {C167168C-52A4-4400-B926-AF04B1309A63} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2016-01-06] (HP Inc.) Task: {C2FC588F-C063-404E-96E5-16E79366CAA7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {C49BBA94-F59A-42FC-8F36-64B6965EB745} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {E7A9607A-A219-4135-81D8-5728CC904E0A} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-03-12] (CyberLink) Task: {EBCCE6C3-9019-4BE5-86A1-3691AF04E91E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-20] (Adobe Systems Incorporated) Task: {FF6EDEF1-C91B-4589-AD02-413062A6B404} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2016-01-13] (Microsoft Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\HPCeeScheduleForPatrycjusz.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2013-10-14 10:23 - 2013-10-14 10:23 - 00109568 _____ () C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe 2013-10-14 10:24 - 2013-10-14 10:24 - 00627200 _____ () C:\Program Files\Hewlett-Packard\SimplePass\cachedrv.dll 2013-10-14 10:25 - 2013-10-14 10:25 - 02541056 _____ () C:\Program Files\Hewlett-Packard\SimplePass\autheng.dll 2013-10-14 10:22 - 2013-10-14 10:22 - 00035328 _____ () C:\Program Files\Hewlett-Packard\SimplePass\ssplogon.dll 2013-10-14 10:22 - 2013-10-14 10:22 - 00055296 _____ () C:\Program Files\Hewlett-Packard\SimplePass\RandomPass.dll 2013-10-14 10:22 - 2013-10-14 10:22 - 00021504 _____ () C:\Program Files\Hewlett-Packard\SimplePass\cryptodll.dll 2013-10-14 10:35 - 2013-10-14 10:35 - 00306064 _____ () C:\Program Files\Hewlett-Packard\SimplePass\mstrpwd.dll 2013-10-14 10:35 - 2013-10-14 10:35 - 01297296 _____ () C:\Program Files\Hewlett-Packard\SimplePass\GraphicalPwd.dll 2013-08-12 18:06 - 2013-08-12 18:06 - 00198120 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe 2013-08-12 18:06 - 2013-08-12 18:06 - 00054760 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll 2013-08-12 18:06 - 2013-08-12 18:06 - 00034792 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTNetMon.dll 2014-05-09 22:57 - 2014-10-16 14:11 - 00116880 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-10-14 10:30 - 2013-10-14 10:30 - 00065024 _____ () C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe 2014-05-09 22:57 - 2013-08-09 12:25 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-05-09 23:12 - 2013-03-12 14:51 - 00626240 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2013-03-12 21:53 - 2013-03-12 21:53 - 00015424 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 13:25 - 2013-08-22 13:25 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1542458404-1444137664-256976008-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Patrycjusz\AppData\Roaming\Microsoft\Windows Photo Viewer\Windows Photo Viewer Wallpaper.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKU\S-1-5-21-1542458404-1444137664-256976008-1002\...\StartupApproved\StartupFolder: => "CurseClientStartup.ccip" HKU\S-1-5-21-1542458404-1444137664-256976008-1002\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-1542458404-1444137664-256976008-1002\...\StartupApproved\Run: => "DAEMON Tools Ultra Agent" HKU\S-1-5-21-1542458404-1444137664-256976008-1002\...\StartupApproved\Run: => "screenshooter" HKU\S-1-5-21-1542458404-1444137664-256976008-1002\...\StartupApproved\Run: => "ALLUpdate" HKU\S-1-5-21-1542458404-1444137664-256976008-1002\...\StartupApproved\Run: => "ALLPlayer WiFi Remote" HKU\S-1-5-21-1542458404-1444137664-256976008-1002\...\StartupApproved\Run: => "DAEMON Tools Lite" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{8080AA35-EDB5-41E5-B934-1B702F3C3124}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{FA266F6C-776A-4A6D-830A-1E5AA7FEFE9D}] => (Allow) LPort=2869 FirewallRules: [{700462DC-EC02-4369-8E2A-2A0B59386BCB}] => (Allow) LPort=1900 FirewallRules: [{AE56DEBA-EC2F-4847-BA7E-6706458D5439}] => (Allow) C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe FirewallRules: [{5125C0A7-818D-4C8D-9CA8-2B6C76133555}] => (Allow) C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe FirewallRules: [{39B7DB59-2288-48B8-A22C-4C7CFBDEB948}] => (Allow) %LocalAppData%\HPConnectedMusic\Application\HPConnectedMusic.exe FirewallRules: [{B2BD47EE-9EB1-454A-9460-6474EAB441DB}] => (Allow) %LocalAppData%\HPConnectedMusic\Application\HPConnectedMusic.exe FirewallRules: [{228D9F73-645F-4BEE-9C4C-18FA20C07051}] => (Allow) %LocalAppData%\HPConnectedMusic\Application\spotify_helper.exe FirewallRules: [{0E2823F1-2341-4E81-BB44-49E3A08FDD23}] => (Allow) %LocalAppData%\HPConnectedMusic\Application\spotify_helper.exe FirewallRules: [{2BD6E699-F5C0-4CB1-9AC2-BBC899856EF5}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{F00D414D-4380-4D0E-9539-FEA54D73102F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{BCFBA938-BA27-40D9-8F6A-43228130227E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{BA38F16F-C2BB-415F-9FEF-F2E1FE40600B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{FB5054BC-0A86-4E5B-AB81-FE72340F017A}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe FirewallRules: [{EB69437C-5979-4AF7-8B7B-5FB8B63FCF41}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe FirewallRules: [{B2555543-67ED-4CF7-97D0-D9C5C3CFF884}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe FirewallRules: [{0AB83F22-ED76-4A29-88D6-1B9C95006074}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe FirewallRules: [{D69C72FD-69AF-449B-A003-80B2D9839322}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe FirewallRules: [{6DABC65B-BAB0-4DDC-9B3B-C357D178D6C7}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe FirewallRules: [{00F6044D-7862-4524-B81E-C780F09A8C2B}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE FirewallRules: [{A689B0B2-F7E5-489E-BDA3-A1331D57FEA4}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{DD1989D6-398A-49E9-AEED-5174DBFBF79F}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{A6FF7AF5-D210-41AE-A3CD-6CAEA0166CB5}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{818A9E49-8F16-498D-AC00-567CD9F13543}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{83010E53-F3FE-4710-A8BD-3DD6F2A6E3EA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{F1F940E8-1153-4783-A093-FBE2A134EC0A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{89F0603A-3FB9-44BD-8BDD-856F1CF40822}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{8FC1398C-FFD4-4136-9241-CFF35CFFC6FD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{FDA298FC-704A-4458-99C1-51C8F6AA6980}] => (Allow) C:\Users\Patrycjusz\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{2A57A849-157E-47D2-824B-AFA5044619BA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3372\Agent.exe FirewallRules: [{DED8CDDA-9F06-4534-929F-124E8D75AAE1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3372\Agent.exe FirewallRules: [{DE4A8666-7F92-4DA9-B02F-B4FEE4FB30FA}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{88D75B78-6FC2-435E-A74E-B50888DEC13B}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{F936E628-6FAA-4B10-9A0D-4367DE664CB3}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe FirewallRules: [{E9B972E3-F8F6-48D3-8CAB-B9A672D1B623}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe FirewallRules: [{5478BFE0-0270-4746-9BE4-966F9BD34F90}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{73DCEDD5-6B1E-48D0-BAE5-A4673FF3F7E1}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{CDE5CC40-227A-47D4-AD3D-7D9A8D3A9E14}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{8F15DAE5-B92E-4B3A-B183-CE1EBB36784C}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{2648BF5E-C047-48DC-8CA4-6B0E74FE34AA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe FirewallRules: [{41085640-2E18-4D83-8967-8C612B00E4D1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe FirewallRules: [{F135A65E-8990-42DB-8233-EE4C22F7FC58}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3454\Agent.exe FirewallRules: [{026670D0-F8FB-4AC0-AFAC-02DFF4C62D32}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3454\Agent.exe FirewallRules: [{DA704E1D-BD29-498E-BC1E-30E4B3D044BE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe FirewallRules: [{6DA9CB08-8248-47D9-A6F7-91D5C4DCA7BA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe FirewallRules: [{4AFA07A2-AA13-4532-9040-80EFD78901E5}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe FirewallRules: [{B9530226-3C47-42D1-BEEC-A728B882E22D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe FirewallRules: [{5A3EACE0-9256-45F1-B303-053857317D22}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [{C55636DE-1AC5-464B-95AD-E369393CE0BA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [{743123EE-CC92-4530-AFBE-42E4D3E74F6E}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{F47AC30B-C9E3-4264-A69E-3B6FD62F0D74}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{3373F4E6-0EB8-46EB-B95F-6F33EFC692C1}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{5A3E10E5-0B10-4663-9987-134C2E8A146E}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{E9625639-57A2-4828-9DD4-815BB0DC855F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [{86D7357A-67EA-4245-BC01-985FA1899C90}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [TCP Query User{CC7F91B0-2752-4232-A29B-6ED2C76EFDA1}C:\program files (x86)\diablo iii\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [UDP Query User{0B6ADD79-FAD9-4C5C-A42A-81CFDA0A5093}C:\program files (x86)\diablo iii\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [TCP Query User{3FFEFD1A-1B04-4EC4-850E-4ADA263D2AD6}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{68D83EE8-5836-40A3-98DB-35A8EA7DC46F}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{C8663A31-ED2A-43C0-8D90-942C30F1B9E6}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{10F52B36-6C22-4278-9F41-D2FC1C26600F}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{264B9A21-8D8E-49F0-B677-3DDCD513559E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe FirewallRules: [{79CFA9C0-FA53-445E-83AC-F5439199BAF2}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe FirewallRules: [{EC767757-35EE-4D5F-8852-CB8A39734C9A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [{495E8CFF-BF2E-47B3-9107-D84CCACA21A1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [{7329F98C-92B0-487B-B69F-3414AAB44B14}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe FirewallRules: [{D4827311-5B49-4561-A36B-FF47034A71A0}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe FirewallRules: [{186F2DD3-E11E-4804-B7A7-6DDDE4ED7338}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe FirewallRules: [{F718FA8E-386C-4D9D-B9B9-036E5D5BB863}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe FirewallRules: [{BD1E7328-A430-4264-924C-88FE71E1A690}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe FirewallRules: [{590B94FC-6ADB-4B87-BD6A-BC07B8A4F348}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe FirewallRules: [{8882DFFF-21C1-4AF7-86FD-DBE19BFFCAF5}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe FirewallRules: [{78388749-A2AD-43CB-90A5-2855979C1BED}] => (Allow) C:\Riot Games\League of Legends\lol.launcher.exe FirewallRules: [{05BF3D92-05DE-42BD-BAC2-575F675CC816}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe FirewallRules: [{04F8C1FE-F6BB-41CA-91DD-8DB2A3EBEE22}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe FirewallRules: [{80DE42DC-E94C-4DE8-8102-513C64D59D5C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe FirewallRules: [{7592839E-6DE0-4A07-87B3-9404D0BBA724}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe FirewallRules: [{6BD02566-7E79-48ED-9970-0EB725A812A8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Island\DeadIslandGame.exe FirewallRules: [{03D3FEAD-C12F-4445-A307-A973AF789760}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Island\DeadIslandGame.exe FirewallRules: [{FCF45334-527F-494F-8034-E464ECEA2185}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dying Light\DyingLightGame.exe FirewallRules: [{5EE2545D-E39B-43F6-9DEB-A0017929719D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dying Light\DyingLightGame.exe FirewallRules: [{9A4D6441-DB42-403F-9267-7A0B25D7ECBD}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{77C600E9-9A42-4DA2-8F76-297D0DE8FAEC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{CCD2AAE4-857C-43C1-996D-056ACD608F8E}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] => (Allow) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe FirewallRules: [UDP Query User{81D23C15-62B8-4A47-9987-075701FABACB}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] => (Allow) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe FirewallRules: [TCP Query User{C97B004A-63E9-4FFE-B585-2BD8D3ED4DD4}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] => (Block) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe FirewallRules: [UDP Query User{8D172516-2B01-46B1-AFAC-A7CBE9FB2533}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] => (Block) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe FirewallRules: [{A35C013C-7D04-4181-9DCE-61A9B6C68CD5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{AE8C2D12-1BD5-458F-AC2A-46FB895256A1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [TCP Query User{D7346DD4-9B7D-4CF9-AFA0-7C0F1393A24E}C:\users\patrycjusz\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\patrycjusz\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{8EC37C86-E562-496C-8B1F-630AC8CD12BB}C:\users\patrycjusz\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\patrycjusz\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [{3FEAE7CC-6ADB-4BD4-93A2-A58C04671AF0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\H1Z1 Test\LaunchPad.exe FirewallRules: [{355CE698-068B-4E9E-A14B-91B25B7E5269}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\H1Z1 Test\LaunchPad.exe FirewallRules: [{22950D2B-4294-4444-9A4B-AAB44279CF2B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\H1Z1\LaunchPad.exe FirewallRules: [{565B61AD-C3C9-4E8A-866D-231FC6AB7B35}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\H1Z1\LaunchPad.exe FirewallRules: [TCP Query User{B418D64A-4D03-4D25-97F4-52877DC10C24}C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe FirewallRules: [UDP Query User{D7D29E19-3328-4AAF-A4DA-219EAA91A9E3}C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe FirewallRules: [TCP Query User{E3D11B76-5D43-489E-8030-07A16ADECCA3}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{440AD4D1-09F3-475C-B7AA-8AA55195AB9D}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [TCP Query User{53D9424C-D5D0-43D3-8947-5EDBCEFE2E44}C:\users\patrycjusz\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\patrycjusz\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{7A031FBE-F9E7-46B9-B1DF-FC371AECE871}C:\users\patrycjusz\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\patrycjusz\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [{9767D973-7ACF-4C6A-9E2E-80E3D5781F87}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe FirewallRules: [{7F46D3F7-EFA4-4998-8B46-9A0FC96D382D}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe FirewallRules: [{6D77BF2B-CFDC-4A42-8E5D-9778797334B6}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe FirewallRules: [{7C7BE08F-9EBD-4829-A3DB-621C2F23C0B1}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe FirewallRules: [{59B53117-9DFE-4399-A7F7-A4A5827758AC}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe FirewallRules: [{7C3058DE-28C6-4521-A76D-887737545793}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{108FADC4-81BF-4B41-B62A-1A1AD3503F51}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{81A9608C-5C9E-4C7F-979A-5B5DA101E74F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Restore Points ========================= 13-01-2016 16:52:45 Windows Update 22-01-2016 22:13:58 Scheduled Checkpoint 27-01-2016 23:48:47 Installed LogMeIn Hamachi 03-02-2016 00:52:38 Installed DirectX ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/04/2016 12:05:24 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (02/03/2016 05:10:20 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (02/03/2016 01:38:37 AM) (Source: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe) (EventID: 1) (User: ) Description: C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeCan't get user token [1008] Error: (02/03/2016 12:37:43 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: csgo.exe, version: 0.0.0.0, time stamp: 0x5653d523 Faulting module name: tier0.dll, version: 0.0.0.0, time stamp: 0x5653d3d1 Exception code: 0xc0000005 Fault offset: 0x000093c4 Faulting process ID: 0x1bc4 Faulting application start time: 0xcsgo.exe0 Faulting application path: csgo.exe1 Faulting module path: csgo.exe2 Report ID: csgo.exe3 Faulting package full name: csgo.exe4 Faulting package-relative application ID: csgo.exe5 Error: (02/02/2016 03:46:49 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (02/01/2016 11:04:28 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program systempropertiesadvanced.exe version 6.3.9600.17415 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 1e90 Start Time: 01d15ce02e76e060 Termination Time: 1 Application Path: C:\Windows\system32\systempropertiesadvanced.exe Report Id: 8d696342-c8d3-11e5-82e1-0071cc2f8bbc Faulting package full name: Faulting package-relative application ID: Error: (02/01/2016 10:53:07 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (01/31/2016 02:00:25 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (01/30/2016 03:55:19 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (01/29/2016 09:21:54 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 System errors: ============= Error: (02/03/2016 05:00:25 PM) (Source: NetBT) (EventID: 4307) (User: ) Description: Initialization failed because the transport refused to open initial addresses. Error: (02/03/2016 01:38:32 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (02/03/2016 01:38:32 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (02/02/2016 11:09:45 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Steam Client Service service failed to start due to the following error: %%1053 Error: (02/02/2016 11:09:45 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect. Error: (02/02/2016 01:36:07 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (02/02/2016 01:36:07 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (02/01/2016 06:09:44 PM) (Source: Tcpip) (EventID: 4199) (User: ) Description: The system detected an address conflict for IP address 0.0.0.0 with the system having network hardware address 00-00-00-00-00-00. Network operations on this system may be disrupted as a result. Error: (01/30/2016 10:02:59 PM) (Source: bowser) (EventID: 8003) (User: ) Description: The master browser has received a server announcement from the computer LENOVO-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{A90E91CF-CE5E-4E4E-98C7-9741400CACD9}. The master browser is stopping or an election is being forced. Error: (01/30/2016 05:05:01 PM) (Source: bowser) (EventID: 8003) (User: ) Description: The master browser has received a server announcement from the computer LENOVO-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{A90E91CF-CE5E-4E4E-98C7-9741400CACD9}. The master browser is stopping or an election is being forced. CodeIntegrity: =================================== Date: 2016-02-04 16:25:42.313 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-02-04 16:25:42.090 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-30 16:11:51.151 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-30 16:11:50.715 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-28 19:50:31.210 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-28 19:50:30.919 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-15 23:43:04.051 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-15 23:43:03.835 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-05 19:17:34.985 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-05 19:17:34.777 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-4700MQ CPU @ 2.40GHz Percentage of memory in use: 14% Total physical RAM: 12220.02 MB Available physical RAM: 10403.33 MB Total Virtual: 14076.02 MB Available Virtual: 12013.87 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:909.44 GB) (Free:412.75 GB) NTFS Drive d: (RECOVERY) (Fixed) (Total:21.29 GB) (Free:2.15 GB) NTFS ==>[system with boot components (obtained from drive)] Drive e: (Disc) (CDROM) (Total:0.14 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 1E1F4777) Partition: GPT. ==================== End of Addition.txt ============================