Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-07-2016 Ran by Norbix (2016-07-24 16:44:29) Running from C:\Users\Norbix\Downloads Windows 7 Ultimate Service Pack 1 (X64) (2016-03-17 18:26:50) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2906863885-3013527000-343546376-500 - Administrator - Disabled) Guest (S-1-5-21-2906863885-3013527000-343546376-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2906863885-3013527000-343546376-1002 - Limited - Enabled) Norbix (S-1-5-21-2906863885-3013527000-343546376-1000 - Administrator - Enabled) => C:\Users\Norbix ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: AVG Internet Security (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: AVG Internet Security (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE} FW: AVG Internet Security (Enabled) {757AB44A-78C2-7D1A-E37F-CA42A037B368} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 21 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 21.0.0.242 - Adobe Systems Incorporated) Alien Shooter 2 (HKLM-x32\...\Alien Shooter 2_is1) (Version: 1.0 - GameTop Pte. Ltd.) ALLPlayer V6.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLPlayer Group, Ltd.) AVG (HKLM\...\AvgZen) (Version: 1.72.2.24716 - AVG Technologies) AVG (Version: 16.91.7688 - AVG Technologies) Hidden AVG 2016 (Version: 16.0.4627 - AVG Technologies) Hidden AVG Protection (HKLM\...\AVG) (Version: 2016.91.7688 - AVG Technologies) AVG Zen (Version: 1.72.1 - AVG Technologies) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.14 - Piriform) Command & Conquer™ Red Alert™ 3 (HKLM-x32\...\{296D8550-CB06-48E4-9A8B-E5034FB64715}) (Version: 1.0.1.0 - Electronic Arts) CPUID CPU-Z 1.75 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) Crysis(R) (HKLM-x32\...\{000E79B7-E725-4F01-870A-C12942B7F8E4}) (Version: 1.21.0000 - Electronic Arts) FMW 1 (Version: 1.102.4 - AVG Technologies) Hidden FreeArc 0.666 (HKLM-x32\...\FreeArc) (Version: 0.666 - Bulat Ziganshin) Heroes of Might and Magic III - Złota Edycja (HKLM-x32\...\{8B743AA0-53B2-11D2-808A-00600895FB43}) (Version: 1.0 - ) Intel(R) Chipset Device Software (x32 Version: 10.0.27 - Intel(R) Corporation) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.9.0.1001 - Intel Corporation) Mad Tracks PL 1.2 (HKLM-x32\...\Mad Tracks_is1) (Version: - ) Malwarebytes Anti-Malware wersja 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Mass Effect wersja 1.0.2.0 (HKLM-x32\...\Mass Effect_is1) (Version: 1.0.2.0 - GTX Box Team) Medal of Honor: Pacific Assault™ (HKLM-x32\...\{56CFA833-F44F-4199-8C58-7F8B38F2BC7B}) (Version: 1.2.1.280 - Electronic Arts) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Mozilla Firefox 47.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 47.0.1 (x86 en-US)) (Version: 47.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 47.0.1 - Mozilla) MSI Afterburner 4.2.0 (HKLM-x32\...\Afterburner) (Version: 4.2.0 - MSI Co., LTD) NVIDIA 3D Vision Controller Driver 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation) NVIDIA 3D Vision Driver 341.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 341.95 - NVIDIA Corporation) NVIDIA GeForce Experience 2.2.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.2 - NVIDIA Corporation) NVIDIA Graphics Driver 341.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.95 - NVIDIA Corporation) NVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.11.6.18139 - Electronic Arts, Inc.) PlanetSide 2 (HKU\S-1-5-21-2906863885-3013527000-343546376-1000\...\DG0-PlanetSide 2) (Version: - Sony Online Entertainment) PlanetSide 2 (HKU\S-1-5-21-2906863885-3013527000-343546376-1000\...\DGC-PlanetSide 2) (Version: 1.0.3.192 - Daybreak Game Company) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.77.1126.2013 - Realtek) Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 2.0.2.7 - Realtek) SHIELD Streaming (Version: 4.0.1000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 17.12.8 - NVIDIA Corporation) Hidden Sorcerer King (HKLM-x32\...\Sorcerer King_is1) (Version: - ) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) SunAge Battle for Elysium Remastered (HKLM-x32\...\SunAge Battle for Elysium Remastered_is1) (Version: - ) The Witness (HKLM\...\dGhld2l0bmVzcw_is1) (Version: 1 - ) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.3 - VideoLAN) Worms Armageddon (HKLM-x32\...\{9B4E5CB1-7A1A-420A-B851-3F9206B5D0C1}) (Version: 1.00 - ) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {28BEA60A-73FC-4838-8C57-23EC528F9595} - System32\Tasks\{3A92E735-ADB3-49CF-9AFF-D8C5394B69F2} => pcalua.exe -a C:\Users\Norbix\Downloads\crysis_demo.exe -d C:\Users\Norbix\Downloads Task: {2CE7A3A5-D915-4B6A-824F-ABC29B793AD4} - System32\Tasks\{95A8C737-132B-4FA1-A654-DCA62B155367} => pcalua.exe -a "N:\gry\Fighting Force\ffsetup.exe" -d "N:\gry\Fighting Force" Task: {2FC4E482-3BE3-4FAB-BFEF-1BC38F23C2F3} - System32\Tasks\{641F1D72-85B7-49C2-B613-63206AD629F4} => pcalua.exe -a "C:\Users\Norbix\Downloads\Serious.Sam.3.BFE.Multi.part1\Serious.Sam.3.BFE.Multi\Serious.Sam.3.BFE.Multi\Serious Sam 3 BFE - Multi\setup.exe" -d "C:\Users\Norbix\Downloads\Serious.Sam.3.BFE.Multi.part1\Serious.Sam.3.BFE.Multi\Serious.Sam.3.BFE.Multi\Serious Sam 3 BFE - Multi" Task: {424CA61C-3548-4530-8B81-333E64103C7D} - System32\Tasks\Games\UpdateCheck_S-1-5-21-2906863885-3013527000-343546376-1000 Task: {4C10B117-3F79-4A82-9E79-F2A3B6F499C8} - System32\Tasks\{CADFB33E-3993-49AA-B166-EAAACF54ED9E} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{D29920C8-EA21-425A-B19F-0C4491A9CF14}\setup.exe" -c -runfromtemp -l0x0015 -removeonly Task: {56BC418C-0E7D-4842-977E-705072245A02} - System32\Tasks\{CDC1354B-5EC1-4FF2-9BA2-A1196C23690A} => pcalua.exe -a C:\Users\Norbix\Downloads\CoD4MWDemoSetup.exe -d C:\Users\Norbix\Downloads Task: {625986D1-5AD2-46FB-B821-5742EBDBACA4} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.) Task: {7614324B-D278-42EC-9EA4-DB251F8B51F7} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.) Task: {ABC4CCB2-3DE5-46A2-A46B-7E3156A0E752} - System32\Tasks\{425FA32A-C5E4-4275-9A5C-20D7C567E061} => pcalua.exe -a "C:\Users\Norbix\Downloads\Serious.Sam.3.BFE.Multi.part1\Serious.Sam.3.BFE.Multi\Serious Sam 3 BFE - Multi\setup.exe" -d "C:\Users\Norbix\Downloads\Serious.Sam.3.BFE.Multi.part1\Serious.Sam.3.BFE.Multi\Serious Sam 3 BFE - Multi" Task: {E2B5DACB-C0CB-433F-8036-02BF96C70657} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-01-15] (Piriform Ltd) Task: {EC9781A9-DF75-474B-B719-8956B3045361} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) Shortcut: C:\Users\Norbix\AppData\Local\Microsoft\Windows\GameExplorer\{301488E8-8FA6-4DDA-9109-2F5A3E37C761}\SupportTasks\0\Support.lnk -> hxxp://www.microprose.com/ ==================== Loaded Modules (Whitelisted) ============== 2016-01-15 22:45 - 2016-01-15 22:45 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2016-07-21 20:08 - 2016-07-21 20:07 - 40500224 _____ () C:\Program Files (x86)\AVG\UiDll\2171\libcef.dll 2016-07-16 23:29 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2016-07-16 23:29 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2016-07-16 23:29 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2016-07-16 23:29 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2016-07-16 23:29 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:56E2E879 [135] ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\05812241.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\05812241.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys => ""="Driver" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2906863885-3013527000-343546376-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Norbix\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.2.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" MSCONFIG\startupreg: SDTray => "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" MSCONFIG\startupreg: ShadowPlay => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart MSCONFIG\startupreg: SpybotPostWindows10UpgradeReInstall => "C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe" MSCONFIG\startupreg: VirtualCloneDrive => "C:\Program Files (x86)\VirtualCloneDrive\VCDDaemon.exe" /s ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{7D4B1C99-DD37-46FD-9F18-211F266C7BA8}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{67D22B77-E2BA-43AE-9762-F45E47121CD6}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{8454CAAA-F1FF-4C13-8D51-C13C0C8D70D6}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{C461D79D-BDE5-42E7-AE98-0498A4760A9F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{0A690293-E59A-40A6-A251-13813BB446C2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{FA7C04E5-AF9F-4BBC-A4CD-520D712B2C33}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{763D8924-EA39-45D4-B78E-4EFD8CFC7432}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{810FC1D7-0686-4CB7-8015-F03BA60A3ACD}] => (Allow) C:\Program Files (x86)\Origin Games\Medal of Honor Pacific Assault\mohpa.exe FirewallRules: [{7B5D2FB8-7117-4C7C-B062-99E06FBFADB3}] => (Allow) C:\Program Files (x86)\Origin Games\Medal of Honor Pacific Assault\mohpa.exe FirewallRules: [{AD6EDD88-6AFA-4D9B-9557-D87A29D414B4}] => (Allow) C:\Program Files (x86)\Origin Games\Medal of Honor Pacific Assault\mohpa_setup.exe FirewallRules: [{39AA4464-7D18-4C0D-ABAF-E4032AE3E633}] => (Allow) C:\Program Files (x86)\Origin Games\Medal of Honor Pacific Assault\mohpa_setup.exe FirewallRules: [{F3681536-D940-470B-BA51-F9FB750475A4}] => (Allow) N:\GRY\crysis\Bin32\Crysis.exe FirewallRules: [{0CCB072C-719A-4A7D-8F1B-7217030DE485}] => (Allow) N:\GRY\crysis\Bin32\Crysis.exe FirewallRules: [{29F852E4-A8DF-485E-B0D9-FFB3FCF6A1B0}] => (Allow) N:\GRY\crysis\Bin32\CrysisDedicatedServer.exe FirewallRules: [{F4F37BAB-FF33-470C-8C9C-6648110E44F1}] => (Allow) N:\GRY\crysis\Bin32\CrysisDedicatedServer.exe FirewallRules: [{52AAEB40-981A-49B5-9648-4357D4BB836C}] => (Allow) N:\GRY\crysis\Bin64\Crysis.exe FirewallRules: [{7918DA42-F06D-4F3A-8D1D-A0520B906860}] => (Allow) N:\GRY\crysis\Bin64\Crysis.exe FirewallRules: [{29DA3C86-B252-4B3A-B467-41DD1F5B412F}] => (Allow) N:\GRY\crysis\Bin64\CrysisDedicatedServer.exe FirewallRules: [{8F252DCA-65CD-4815-B893-B3E96E041CA2}] => (Allow) N:\GRY\crysis\Bin64\CrysisDedicatedServer.exe FirewallRules: [{5BCA0CBD-B405-47B6-B762-D5950DF2CC0D}] => (Allow) C:\Program Files (x86)\GTX Box Team\Mass Effect\MassEffectLauncher.exe FirewallRules: [{1579FDA8-615F-402A-82AE-B19A04A9D8AE}] => (Allow) C:\Program Files (x86)\GTX Box Team\Mass Effect\MassEffectLauncher.exe FirewallRules: [TCP Query User{E3A39287-40A9-4D61-9618-3BCE889CECB9}N:\gry\codex\sunage battle for elysium remastered\sunage_win7_steam.exe] => (Allow) N:\gry\codex\sunage battle for elysium remastered\sunage_win7_steam.exe FirewallRules: [UDP Query User{86404CD1-BD45-40AA-B3F3-D054113E26C0}N:\gry\codex\sunage battle for elysium remastered\sunage_win7_steam.exe] => (Allow) N:\gry\codex\sunage battle for elysium remastered\sunage_win7_steam.exe FirewallRules: [TCP Query User{65C96FD0-6773-4FBE-922D-98B7663E96C2}C:\program files (x86)\tensons\download accelerator manager\mgrabber.exe] => (Block) C:\program files (x86)\tensons\download accelerator manager\mgrabber.exe FirewallRules: [UDP Query User{562BD628-44C5-4D4C-B946-8F0889F1008D}C:\program files (x86)\tensons\download accelerator manager\mgrabber.exe] => (Block) C:\program files (x86)\tensons\download accelerator manager\mgrabber.exe FirewallRules: [{2EC540AB-F9A7-497B-A675-B82305BC35FD}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{663F8754-7F08-4D05-B7C1-DA2C29EAB125}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{11A7DE69-CEA2-41C9-A136-5C22EF0ECE7C}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe FirewallRules: [{B8838C0B-3B42-4EA8-9390-5A3E8FF39E64}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe FirewallRules: [{AA4D8B9B-C09C-48CE-BECF-2798CCF0717E}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [{12D8B8B7-38C1-47B4-8E32-D124D8953CC9}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [{A45B6767-BA29-4B55-ACE4-D8D841F197BA}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe FirewallRules: [{E839CE3B-FDC3-4E96-A9BC-FD8AAA7E14F7}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Restore Points ========================= 13-07-2016 22:05:43 Windows Update 16-07-2016 12:36:49 Removed SSDlife Pro 17-07-2016 17:18:49 Punkt przywracania utworzony przez HitmanPro 17-07-2016 17:23:53 Punkt przywracania utworzony przez HitmanPro 19-07-2016 17:24:21 Windows Update 19-07-2016 17:30:04 Punkt przywracania utworzony przez HitmanPro 21-07-2016 20:09:20 Installed AVG 2016 21-07-2016 20:09:45 Installed AVG 23-07-2016 20:10:26 Installed AVG 2016 ==================== Faulty Device Manager Devices ============= Name: PCI Simple Communications Controller Description: PCI Simple Communications Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (07/24/2016 04:39:53 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/24/2016 12:15:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/23/2016 08:17:18 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/23/2016 08:07:21 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/22/2016 08:39:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/22/2016 04:58:50 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/22/2016 04:46:49 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/22/2016 04:39:14 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/22/2016 04:13:43 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/22/2016 12:44:56 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (07/23/2016 08:17:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Spybot-S&D 2 Scanner Service service failed to start due to the following error: %%1053 = The service did not respond to the start or control request in a timely fashion. Error: (07/23/2016 08:17:14 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the Spybot-S&D 2 Scanner Service service to connect. Error: (07/22/2016 04:12:55 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 14:30:50 on ‎2016-‎07-‎22 was unexpected. Error: (07/22/2016 12:44:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Spybot-S&D 2 Scanner Service service failed to start due to the following error: %%1053 = The service did not respond to the start or control request in a timely fashion. Error: (07/22/2016 12:44:39 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the Spybot-S&D 2 Scanner Service service to connect. Error: (07/21/2016 05:18:00 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The Intel(R) Rapid Storage Technology service terminated unexpectedly. It has done this 1 time(s). Error: (07/21/2016 05:18:00 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service. Error: (07/21/2016 05:18:00 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Spybot-S&D 2 Security Center Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service. Error: (07/21/2016 05:17:59 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Spybot-S&D 2 Updating Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service. Error: (07/21/2016 05:17:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The NVIDIA Streamer Service service terminated unexpectedly. It has done this 1 time(s). ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-3240 CPU @ 3.40GHz Percentage of memory in use: 30% Total physical RAM: 8139.89 MB Available physical RAM: 5690.21 MB Total Virtual: 16277.96 MB Available Virtual: 13828.48 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:240.62 GB) (Free:88.13 GB) NTFS ==>[drive with boot components (obtained from BCD)] Drive n: (Dysk) (Fixed) (Total:220 GB) (Free:176.22 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 2400CDA0) Partition 1: (Active) - (Size=240.6 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=220 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=4.7 GB) - (Type=27) ==================== End of Addition.txt ============================