Additional scan result of Farbar Recovery Scan Tool (x64) Version:14-05-2016 Ran by PC (2016-05-15 19:46:58) Running from C:\Users\PC\Desktop Windows 10 Pro Version 1511 (X64) (2016-05-03 15:42:18) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1546773632-979897978-1268184761-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1546773632-979897978-1268184761-503 - Limited - Disabled) Guest (S-1-5-21-1546773632-979897978-1268184761-501 - Limited - Disabled) Mama (S-1-5-21-1546773632-979897978-1268184761-1003 - Limited - Enabled) => C:\Users\Mama PC (S-1-5-21-1546773632-979897978-1268184761-1001 - Administrator - Enabled) => C:\Users\PC Tata (S-1-5-21-1546773632-979897978-1268184761-1002 - Limited - Enabled) => C:\Users\Tata ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Aktualizacje NVIDIA 2.11.3.5 (Version: 2.11.3.5 - NVIDIA Corporation) Hidden AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.) Arma 3 (HKLM\...\Steam App 107410) (Version: - Bohemia Interactive) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.17.273 - Avira Operations GmbH & Co. KG) Avira Launcher (HKLM-x32\...\{28d41884-9b36-4f54-bed2-92863f08e65d}) (Version: 1.1.62.21333 - Avira Operations GmbH & Co. KG) Avira Launcher (x32 Version: 1.1.62.21333 - Avira Operations GmbH & Co. KG) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.17 - Piriform) Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve) DayZ (HKLM\...\Steam App 221100) (Version: - Bohemia Interactive) Epic Games Launcher Prerequisites (x64) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.118 - Etron Technology) Etron USB3.0 Host Controller (x32 Version: 0.118 - Etron Technology) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 50.0.2661.102 - Google Inc.) Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden Launcher Prerequisites (x64) (x32 Version: 1.0.0.0 - Epic Games, Inc.) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{14297226-E0A0-3781-8911-E9D529552663}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.9.1 - Notepad++ Team) NVIDIA GeForce Experience 2.11.3.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.3.5 - NVIDIA Corporation) NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 365.19 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 365.19 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation) NVIDIA Sterownik graficzny 365.19 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 365.19 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.12.1.43352 - Electronic Arts, Inc.) Panel sterowania NVIDIA 365.19 (Version: 365.19 - NVIDIA Corporation) Hidden SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.3.5 - NVIDIA Corporation) Hidden Skype™ 7.22 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.22.109 - Skype Technologies S.A.) STAR WARS™ Battlefront™ (HKLM-x32\...\{E402D891-4E45-4ce9-B41F-DD35864EF170}) (Version: 1.0.5.13082 - Electronic Arts) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKU\S-1-5-21-1546773632-979897978-1268184761-1001\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH) Unravel™ (HKLM-x32\...\{5105E605-9EE7-4050-9CC0-005093BBF89A}) (Version: 1.0.0.0 - Electronic Arts, Inc.) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1546773632-979897978-1268184761-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\PC\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\FileCoAuth.exe (Microsoft Corporation) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) "{01C7C80F-DA6A-4698-BA70-4DA27991C5A9}" task was unlocked. <===== ATTENTION "{08629A58-75ED-46AA-8646-8C7015698215}" task was unlocked. <===== ATTENTION "{0A493256-4ADB-4CF2-8AB5-8CCBEFDFC5FE}" task was unlocked. <===== ATTENTION "{0C20E8DB-DCF0-4C48-B9B9-482E02BD9F1F}" task was unlocked. <===== ATTENTION "{0CFE2E40-6A97-48C5-9F38-DE82315CF1B0}" task was unlocked. <===== ATTENTION Task: {0E1954EA-1545-49D7-855C-C40D816D3189} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-05-03] (Advanced Micro Devices, Inc.) "{11406457-2C26-401D-B271-B7393CAD7F85}" task was unlocked. <===== ATTENTION "{181EF958-CF2C-45C1-BFE2-0048458E3EFC}" task was unlocked. <===== ATTENTION "{1A289232-BCB9-4599-A894-898D820255F8}" task was unlocked. <===== ATTENTION "{1A438DBA-6F47-44D6-8207-124A92E1597E}" task was unlocked. <===== ATTENTION "{1A8A1750-6B60-430B-A914-E01C395D222E}" task was unlocked. <===== ATTENTION "{1F0B1B6D-6FB8-495E-8D1D-0B6BA27883EB}" task was unlocked. <===== ATTENTION "{216D44FB-2DD3-4478-8395-49C0E0D2D767}" task was unlocked. <===== ATTENTION "{22DF95EE-A3BC-4A00-8468-0FF46BF970FC}" task was unlocked. <===== ATTENTION "{2300B6D1-D409-499E-92DF-030662B73A6B}" task was unlocked. <===== ATTENTION "{27A7ABEB-AF7C-40F4-BAD4-95630EB0C1FA}" task was unlocked. <===== ATTENTION "{2B307AD0-33EA-4DB6-81B3-05FEADBE1140}" task was unlocked. <===== ATTENTION "{2CCA2563-023C-4159-8011-59C6C9E1973A}" task was unlocked. <===== ATTENTION "{301FE6A2-8AE4-407A-B63D-29A3C8150B5A}" task was unlocked. <===== ATTENTION "{317107BF-13F6-48B4-AA5A-BA0B03A02F4B}" task was unlocked. <===== ATTENTION "{33046BDC-2974-457F-A198-055760713D46}" task was unlocked. <===== ATTENTION "{330DDC8E-A32D-4363-9C85-527F2673DDF7}" task was unlocked. <===== ATTENTION "{3627755F-6629-4D94-850A-FBE43D28BEB8}" task was unlocked. <===== ATTENTION "{37307B43-41DC-4BBE-BF3B-9B1631BEE311}" task was unlocked. <===== ATTENTION "{3788B008-08AE-42A1-AECB-404EE0EFEAA5}" task was unlocked. <===== ATTENTION "{4208A7BF-D622-476E-A1A3-F9EB2719ECD4}" task was unlocked. <===== ATTENTION "{433F9AA4-973A-4220-B769-66BF13A6D570}" task was unlocked. <===== ATTENTION "{43744BF4-03F7-4B73-87FC-2BA232F6D655}" task was unlocked. <===== ATTENTION "{44AF46C9-4AA6-4851-959E-023D755ED880}" task was unlocked. <===== ATTENTION "{44EA678F-7E08-4531-92E2-587CA13B5D2C}" task was unlocked. <===== ATTENTION "{45A1E736-EAAA-4735-ABBA-A9C5CF2BDAEF}" task was unlocked. <===== ATTENTION "{48A98229-5C8E-4DDD-8139-CF35F7262A95}" task was unlocked. <===== ATTENTION "{48E4EF46-2962-499E-B496-FD87DEFA9D4D}" task was unlocked. <===== ATTENTION "{4A944005-EAD7-4E3D-A0CB-E36A03948234}" task was unlocked. <===== ATTENTION "{4ADD02F8-8A80-4037-93AF-01F0D391A8D4}" task was unlocked. <===== ATTENTION "{4BC5D02D-368A-405A-B471-F9CAB6666731}" task was unlocked. <===== ATTENTION "{4C5A8A03-2384-464F-AEAA-F58928D854D8}" task was unlocked. <===== ATTENTION "{4E3CB8C2-8A0C-4570-A32E-7319C6E8E432}" task was unlocked. <===== ATTENTION "{4E4954A6-C22F-4537-87FE-9A696B7BF9C4}" task was unlocked. <===== ATTENTION "{511CB694-F6BB-49BA-AC20-E2916B05BD90}" task was unlocked. <===== ATTENTION "{52362630-34B3-46AA-8508-9857D8B13B4F}" task was unlocked. <===== ATTENTION "{5587F1DC-15D0-4331-A673-6EF75E5CD9C0}" task was unlocked. <===== ATTENTION "{57ED60D2-6B0B-4069-90B4-50B067491212}" task was unlocked. <===== ATTENTION "{59CBDFB9-8D90-4443-9AF8-5C3B45220F5E}" task was unlocked. <===== ATTENTION "{59CE74C9-886F-4121-8052-508A4B829DC6}" task was unlocked. <===== ATTENTION "{5B4C02FF-5C7C-42FB-877E-4F57C6198A71}" task was unlocked. <===== ATTENTION "{61E97BCB-528E-4B3C-A43A-CDFC978E48E7}" task was unlocked. <===== ATTENTION "{62C6204C-B449-4C2C-B915-D8E513C8D2DC}" task was unlocked. <===== ATTENTION "{64EFDCE4-067E-45AD-80B7-9ACADBA7145A}" task was unlocked. <===== ATTENTION "{669B944E-926D-4382-AB83-710022AE3EA2}" task was unlocked. <===== ATTENTION "{66FE0026-8E27-493D-BED2-EF4ACF50814C}" task was unlocked. <===== ATTENTION "{679EB820-C80C-4B8C-81EB-D3B5A83C3BF3}" task was unlocked. <===== ATTENTION "{697E18DD-943C-470A-B9E3-6E5DDCB42D05}" task was unlocked. <===== ATTENTION "{6AE2F605-214C-4B7B-ABC4-7D0D72C3D30E}" task was unlocked. <===== ATTENTION "{6B0D6754-588A-4B5C-95F7-7F39A9780F7E}" task was unlocked. <===== ATTENTION "{6B696BCF-C866-41CA-B4E4-3D19FB1E9250}" task was unlocked. <===== ATTENTION "{6CBA2464-1DAD-4F1D-919F-4E6DFC499277}" task was unlocked. <===== ATTENTION "{6D88DE84-0813-4C51-99FC-12A9A98DD1D9}" task was unlocked. <===== ATTENTION "{70AD8D46-91D7-49CD-934C-E0D38310EC44}" task was unlocked. <===== ATTENTION "{70CF17D8-ACB3-4DBF-B283-6A71C9BF3D0E}" task was unlocked. <===== ATTENTION "{71E53243-3A2D-47EE-9DAB-6D71B2366657}" task was unlocked. <===== ATTENTION "{73F84A2E-E267-44CD-AE43-26F5FADC07BC}" task was unlocked. <===== ATTENTION "{7464E64D-F916-44C4-8B4D-8285C95325A1}" task was unlocked. <===== ATTENTION "{7506EE3F-10D4-4FCF-9DDD-77B8FF1182D4}" task was unlocked. <===== ATTENTION "{75336275-E3E0-4BC0-B373-3CFB8C1E4130}" task was unlocked. <===== ATTENTION "{75EEC801-5298-41FE-BD51-F07E4178CA3E}" task was unlocked. <===== ATTENTION "{7A6FA6EC-ED66-42B8-B9D7-06523FB6E039}" task was unlocked. <===== ATTENTION "{7AE1BCAC-061D-4672-BACB-88BC74CE1D7A}" task was unlocked. <===== ATTENTION "{7BC12C89-A012-46EA-B9EB-052EB5CD4326}" task was unlocked. <===== ATTENTION "{7BD8F44E-530D-41CF-B1D0-B9BB0B0C1C73}" task was unlocked. <===== ATTENTION "{7F64EAF9-FFE6-49DB-90DD-80D2B8774614}" task was unlocked. <===== ATTENTION "{7FAF6FA5-8557-4C4D-9206-7460555EAB06}" task was unlocked. <===== ATTENTION "{830038A6-9046-42E5-B03C-1455E6BDFBAF}" task was unlocked. <===== ATTENTION "{84E4A8CF-CE13-47C4-ABC1-BC5DD42C6C83}" task was unlocked. <===== ATTENTION "{860F596C-A1D8-4651-B747-D134041D80AD}" task was unlocked. <===== ATTENTION "{8865CC07-3C24-475C-896D-8ABA96F2471A}" task was unlocked. <===== ATTENTION "{90D79106-3D12-40AF-A9BA-231F2327770C}" task was unlocked. <===== ATTENTION "{94582C27-CA52-4593-9A48-A317C4D361E3}" task was unlocked. <===== ATTENTION "{955E8D5B-0718-411A-9D8F-83454788272B}" task was unlocked. <===== ATTENTION "{97601E9E-9C9C-415D-B81D-9F86ACA7CDC5}" task was unlocked. <===== ATTENTION "{9A58602B-2D48-4E55-BA94-672A29521C76}" task was unlocked. <===== ATTENTION "{9B3A6CD7-4CDE-4432-BE99-B316D2296C86}" task was unlocked. <===== ATTENTION "{9FFB29C5-38ED-47CB-B89B-EA84708EBA65}" task was unlocked. <===== ATTENTION "{A483A62A-BEE2-43EF-B43D-C4B6555D6F1E}" task was unlocked. <===== ATTENTION "{A4D1B478-9D9D-489F-98BF-846F21D1EA6C}" task was unlocked. <===== ATTENTION "{A6D9FF76-0705-4B3D-9D8E-0BB183A7D3E9}" task was unlocked. <===== ATTENTION "{AE229047-6634-45F4-A0F4-6A9522659F2D}" task was unlocked. <===== ATTENTION "{AF8621E4-DD0A-4E22-AEBD-D252114A7D89}" task was unlocked. <===== ATTENTION "{AFD4A8A3-508B-4785-8271-CDEBAEED3F46}" task was unlocked. <===== ATTENTION "{B3DD4C81-C4AC-4263-806F-E5B540C1B26A}" task was unlocked. <===== ATTENTION "{B4A5B97B-E0F1-4984-ADA4-432088751E1B}" task was unlocked. <===== ATTENTION "{BA3388B9-C9D3-47A9-A9B5-E79B50DD0270}" task was unlocked. <===== ATTENTION "{BB94B31D-4FE5-42FB-A144-A393F6C54A6F}" task was unlocked. <===== ATTENTION "{BD62F7BB-7242-4904-A8A8-4E358ED75D6B}" task was unlocked. <===== ATTENTION "{BF589992-F6BB-4FFC-8766-FB138C7DE18D}" task was unlocked. <===== ATTENTION "{C0A4DF9B-B00D-4626-8994-BF17C88860B0}" task was unlocked. <===== ATTENTION "{C1E1F555-5EEC-4D6B-98FB-9934616F00E9}" task was unlocked. <===== ATTENTION "{C349BB67-3672-4975-AE02-517BAD9318EE}" task was unlocked. <===== ATTENTION "{C4E89737-E6D8-4D86-B15E-50A93654BBC1}" task was unlocked. <===== ATTENTION "{C7752DC6-148D-4AB0-93E1-D84AEB7AA014}" task was unlocked. <===== ATTENTION "{C881A742-1A15-4EAC-96B9-9C6EA38AC7FA}" task was unlocked. <===== ATTENTION "{C8DB9D2B-AB0A-4D3F-8409-427C806748D6}" task was unlocked. <===== ATTENTION "{CA1E905A-B064-48AF-9F06-68C7E71498B9}" task was unlocked. <===== ATTENTION "{CA4BE44E-107E-4B2D-91AF-FC3B077B02FC}" task was unlocked. <===== ATTENTION "{CC8236FF-A055-4083-A37E-D0F85E135DE3}" task was unlocked. <===== ATTENTION "{CFC77F13-E27C-4C44-8D9B-CB2163D27C89}" task was unlocked. <===== ATTENTION "{D7F0F250-0978-4FFA-BA28-A14C0AB462FF}" task was unlocked. <===== ATTENTION "{DAAFAEC3-BC03-44D7-A77D-05760FE578AD}" task was unlocked. <===== ATTENTION "{DB458018-DEBA-4577-AB8B-EA1506110FB8}" task was unlocked. <===== ATTENTION "{DE9EF05D-D131-41FC-87C9-ABF449872934}" task was unlocked. <===== ATTENTION "{E03596C8-B2A4-4553-B379-B678F0EBCA95}" task was unlocked. <===== ATTENTION "{E15B0834-C96C-40E1-8995-12FE38D52648}" task was unlocked. <===== ATTENTION Task: {E2FAC6C3-67E7-4AA3-8E6F-986F8C172B0F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-03] (Google Inc.) "{E506F4C9-20BB-40AE-AD65-2304E5EF9B80}" task was unlocked. <===== ATTENTION "{E5217668-D921-4907-8CE1-276EABA44515}" task was unlocked. <===== ATTENTION Task: {E7219F21-EB90-41F3-B157-19B81CE732C9} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-04-15] (Piriform Ltd) "{E7D61507-58B7-44DC-8D1E-932F96FC2D62}" task was unlocked. <===== ATTENTION "{EA5D5FA7-79F4-4BC8-8C91-CA1A24F86527}" task was unlocked. <===== ATTENTION "{EC59CC4E-A8CB-476D-8421-92558446E9A3}" task was unlocked. <===== ATTENTION "{ED0A9639-586D-4BF2-A35B-3281EB32BA5A}" task was unlocked. <===== ATTENTION "{EF3EC7C4-1CB5-43F1-A074-D1D74BB07D7A}" task was unlocked. <===== ATTENTION "{EFB2C913-BFA0-4FB9-8130-48BEE6BD1B12}" task was unlocked. <===== ATTENTION "{F120A436-C215-4927-87AA-934387AF5782}" task was unlocked. <===== ATTENTION Task: {F1F53585-ADCE-452C-847B-EC54D2DCF78F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-03] (Google Inc.) "{F2341244-5F02-41C5-BA40-4FBADCD67206}" task was unlocked. <===== ATTENTION "{F35162BA-CDE7-4746-A368-D590640A3FA9}" task was unlocked. <===== ATTENTION "{F3ECD561-A2D7-4F50-9ED9-87EE7DB5A162}" task was unlocked. <===== ATTENTION "{F3FE6BA2-AAD2-49EE-BB32-D061C21784A0}" task was unlocked. <===== ATTENTION "{F48B449A-2323-4702-B435-26C501992C66}" task was unlocked. <===== ATTENTION "{F4BF89A9-8488-4988-B163-F7F0341D521B}" task was unlocked. <===== ATTENTION "{F5F0DB71-A907-4040-99F2-A56E95BF5FD7}" task was unlocked. <===== ATTENTION "{F6734075-627C-47CE-918F-B51866D629BB}" task was unlocked. <===== ATTENTION "{F775C69D-FE09-4105-8F98-5DC6D956FA4E}" task was unlocked. <===== ATTENTION "{F98BB314-575B-453F-A9F9-A13B9D088426}" task was unlocked. <===== ATTENTION "{F98C81FF-D786-4067-AAFB-D67F2BA8542A}" task was unlocked. <===== ATTENTION "{FA625267-66E0-464A-AE95-8754007E78AD}" task was unlocked. <===== ATTENTION "{FB1868EE-5CA8-4DE9-A8B1-6171EB0EDB5A}" task was unlocked. <===== ATTENTION "{FC52F032-45F0-4B04-99DA-5A5F43CB0392}" task was unlocked. <===== ATTENTION "{FC5681F1-C930-414C-8049-16F7B32D0FEF}" task was unlocked. <===== ATTENTION "{FEF85651-4DD3-461C-AB7B-44FC3276E219}" task was unlocked. <===== ATTENTION (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2016-05-03 19:31 - 2016-05-02 07:54 - 00369208 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll 2016-05-03 19:31 - 2016-05-02 07:55 - 00289848 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll 2016-05-03 19:31 - 2016-05-02 07:54 - 01148984 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll 2016-05-03 19:31 - 2016-05-02 07:55 - 03613240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll 2016-05-03 19:31 - 2016-05-02 07:55 - 02667576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll 2016-05-03 19:31 - 2016-05-02 07:55 - 01990200 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll 2016-05-03 19:31 - 2016-05-02 07:55 - 01842232 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll 2016-05-03 19:31 - 2016-05-02 07:55 - 00208952 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll 2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\Windows\SYSTEM32\ism32k.dll 2016-05-03 17:52 - 2016-05-10 01:35 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-05-03 17:50 - 2016-03-29 12:20 - 02656952 _____ () C:\Windows\system32\CoreUIComponents.dll 2016-05-03 17:50 - 2016-03-29 12:20 - 02656952 _____ () C:\Windows\System32\CoreUIComponents.dll 2016-05-03 17:46 - 2016-05-03 17:46 - 00959176 _____ () C:\Users\PC\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64\ClientTelemetry.dll 2016-02-13 14:54 - 2016-02-13 14:54 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-05-10 19:33 - 2016-04-23 06:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-05-10 19:34 - 2016-04-23 06:02 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-05-10 19:34 - 2016-04-23 05:58 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-05-10 19:34 - 2016-04-23 05:58 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-05-10 19:34 - 2016-04-23 06:01 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-05-03 19:31 - 2016-05-02 07:54 - 00035896 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll 2016-05-03 19:31 - 2016-05-02 07:54 - 00921656 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll 2016-05-03 19:31 - 2016-05-02 08:02 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2016-05-03 22:03 - 2016-04-29 22:10 - 00785920 _____ () D:\Steam\SDL2.dll 2016-05-03 22:03 - 2015-07-03 18:12 - 04962816 _____ () D:\Steam\v8.dll 2016-05-03 22:03 - 2016-04-30 02:10 - 02549840 _____ () D:\Steam\video.dll 2016-05-03 22:03 - 2016-02-09 01:14 - 02549760 _____ () D:\Steam\libavcodec-56.dll 2016-05-03 22:03 - 2016-02-09 01:14 - 00491008 _____ () D:\Steam\libavformat-56.dll 2016-05-03 22:03 - 2016-02-09 01:14 - 00332800 _____ () D:\Steam\libavresample-2.dll 2016-05-03 22:03 - 2016-02-09 01:14 - 00442880 _____ () D:\Steam\libavutil-54.dll 2016-05-03 22:03 - 2016-02-09 01:14 - 00485888 _____ () D:\Steam\libswscale-3.dll 2016-05-03 22:03 - 2015-07-03 18:12 - 01556992 _____ () D:\Steam\icui18n.dll 2016-05-03 22:03 - 2015-07-03 18:12 - 01187840 _____ () D:\Steam\icuuc.dll 2016-05-03 22:03 - 2016-04-30 02:10 - 00829008 _____ () D:\Steam\bin\chromehtml.DLL 2016-05-03 22:03 - 2016-02-18 00:25 - 00281088 _____ () D:\Steam\openvr_api.dll 2016-05-03 22:03 - 2016-04-28 03:00 - 49825056 _____ () D:\Steam\bin\libcef.dll 2016-05-03 22:03 - 2015-09-25 01:56 - 00119208 _____ () D:\Steam\winh264.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2015-10-30 09:24 - 2015-10-30 09:21 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1546773632-979897978-1268184761-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\PC\Desktop\saasd.jpg DNS Servers: 8.8.4.4 - 213.241.79.37 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{4B2126BA-B2FC-41A6-9AFF-48566EF89686}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{206074EA-C7AE-41B6-A6A9-DB3EE4C423CC}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{679B4961-14F9-4F35-A36E-9E33DF045206}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{06E70BBD-4081-4B9F-9130-D8CD747AC17D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{F5F528EA-06EF-4D67-A74A-C6620D0E2508}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{513945E3-B214-4ABE-91D8-ECA084D3363A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{41853E2F-1A45-4BC7-BDE1-7D7403C140C8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{7FB067BF-3829-4061-9D86-67CB396FFB39}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{30A6B29F-DA69-4F45-8618-00ED2DAB3D71}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{5CE578D4-92F7-464D-B02F-E203E44D932B}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{3075AA5A-48C9-4EF2-8AAD-884557A5DDD2}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{26F0A05B-010D-4EA6-BA99-2DBA668608AE}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{0F960F5D-E750-498F-917B-F1ED13CE1E03}] => (Allow) D:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{70F43F49-BFFA-494E-8769-26CAF08B4390}] => (Allow) D:\Steam\steamapps\common\DayZ\DayZ_BE.exe FirewallRules: [{A3884DA8-8B32-4173-A64A-A2CCFF1E37F1}] => (Allow) D:\Steam\steamapps\common\DayZ\DayZ_BE.exe FirewallRules: [TCP Query User{AEA950D7-5E5E-4F71-B9A5-692D5AD35407}D:\steam\steamapps\common\dayz\dayz.exe] => (Allow) D:\steam\steamapps\common\dayz\dayz.exe FirewallRules: [UDP Query User{C444D78B-1F45-4328-859F-0168D4A534EA}D:\steam\steamapps\common\dayz\dayz.exe] => (Allow) D:\steam\steamapps\common\dayz\dayz.exe FirewallRules: [{08320D99-205C-4DF7-86FD-47416AB3249E}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{98047FA2-3E15-48E9-9F86-F70FCA6C908B}] => (Allow) D:\Steam\steamapps\common\Arma 3\arma3launcher.exe FirewallRules: [{DF188956-FF49-4DCF-A285-A0CD5BE8C234}] => (Allow) D:\Steam\steamapps\common\Arma 3\arma3launcher.exe FirewallRules: [{2103FFE5-5A7E-4759-B1D6-3256F96BAFB0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{AD9AA00C-38EB-46DD-9D8C-9F6B8F3F59A3}D:\steam\steamapps\common\arma 3\arma3.exe] => (Allow) D:\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [UDP Query User{6DDC2061-0FB9-4879-A165-B402E9EF9A69}D:\steam\steamapps\common\arma 3\arma3.exe] => (Allow) D:\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [TCP Query User{17810FFC-45DB-44C3-8CBC-70DD8C6A77FA}D:\program files (x86)\origin games\star wars battlefront\starwarsbattlefronttrial.exe] => (Allow) D:\program files (x86)\origin games\star wars battlefront\starwarsbattlefronttrial.exe FirewallRules: [UDP Query User{4F135251-B7DD-42A5-87A0-AB51647F8D9A}D:\program files (x86)\origin games\star wars battlefront\starwarsbattlefronttrial.exe] => (Allow) D:\program files (x86)\origin games\star wars battlefront\starwarsbattlefronttrial.exe ==================== Restore Points ========================= ATTENTION: System Restore is disabled ==================== Faulty Device Manager Devices ============= Name: Root Print Queue Description: Lokalna kolejka wydruku Class Guid: {1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc} Manufacturer: Microsoft Service: Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (05/15/2016 07:46:58 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2116-04-21T17:46:58Z. Kod błędu: 0x80070005. Error: (05/15/2016 07:46:28 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2116-04-21T17:46:28Z. Kod błędu: 0x80070005. Error: (05/15/2016 07:45:58 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2116-04-21T17:45:58Z. Kod błędu: 0x80070005. Error: (05/15/2016 07:45:28 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2116-04-21T17:45:28Z. Kod błędu: 0x80070005. Error: (05/15/2016 07:44:58 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2116-04-21T17:44:58Z. Kod błędu: 0x80070005. Error: (05/15/2016 07:44:28 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2116-04-21T17:44:28Z. Kod błędu: 0x80070005. Error: (05/15/2016 07:43:58 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2116-04-21T17:43:58Z. Kod błędu: 0x80070005. Error: (05/15/2016 07:43:28 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2116-04-21T17:43:28Z. Kod błędu: 0x80070005. Error: (05/15/2016 07:42:58 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2116-04-21T17:42:58Z. Kod błędu: 0x80070005. Error: (05/15/2016 07:42:28 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2116-04-21T17:42:28Z. Kod błędu: 0x80070005. System errors: ============= Error: (05/15/2016 05:34:46 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Sync Host_2fa9e niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 10000 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service. Error: (05/15/2016 05:34:46 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable Error: (05/15/2016 02:39:15 PM) (Source: Microsoft-Windows-TaskScheduler) (EventID: 413) (User: NT AUTHORITY) Description: Usługa Harmonogram zadań nie może załadować zadań podczas uruchamiania usługi. Dane dodatkowe: Wartość błędu: 2147942405. Error: (05/15/2016 02:39:15 PM) (Source: Microsoft-Windows-TaskScheduler) (EventID: 413) (User: NT AUTHORITY) Description: Usługa Harmonogram zadań nie może załadować zadań podczas uruchamiania usługi. Dane dodatkowe: Wartość błędu: 2147942405. Error: (05/15/2016 02:39:15 PM) (Source: Microsoft-Windows-TaskScheduler) (EventID: 412) (User: NT AUTHORITY) Description: Usługa Harmonogram zadań nie może uruchomić zadań wyzwalanych podczas uruchamiania komputera. Dodatkowe dane: Wartość błędu: 2147942405. Error: (05/15/2016 02:38:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa State Repository Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service. Error: (05/15/2016 02:38:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa User Data Access_5f9697 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 10000 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service. Error: (05/15/2016 02:38:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa User Data Storage_5f9697 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 10000 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service. Error: (05/15/2016 02:38:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Contact Data_5f9697 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 10000 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service. Error: (05/15/2016 02:38:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Sync Host_5f9697 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 10000 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service. CodeIntegrity: =================================== Date: 2016-05-15 13:25:39.515 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-14 22:40:20.133 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-13 14:36:48.536 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-12 20:48:42.373 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-11 21:32:04.539 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-10 20:17:45.076 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-04 21:21:53.442 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-04 08:11:50.848 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-03 20:18:01.424 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-03 19:29:49.206 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: AMD FX(tm)-6300 Six-Core Processor Percentage of memory in use: 40% Total physical RAM: 8152.75 MB Available physical RAM: 4858.29 MB Total Virtual: 10478.39 MB Available Virtual: 6707.74 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:101.09 GB) (Free:73.56 GB) NTFS Drive d: () (Fixed) (Total:488.18 GB) (Free:124.12 GB) NTFS Drive e: () (Fixed) (Total:341.8 GB) (Free:324.9 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 21BFC36A) Partition 1: (Not Active) - (Size=488.2 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=341.8 GB) - (Type=07 NTFS) Partition 3: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=101.1 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================