Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-08-2016 Ran by Cypisek (07-09-2016 20:14:53) Running from C:\Users\Cypisek\Downloads Windows 7 Ultimate Service Pack 1 (X64) (2015-08-26 23:28:46) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3944126502-1092578214-2840689287-500 - Administrator - Disabled) Cypisek (S-1-5-21-3944126502-1092578214-2840689287-1000 - Administrator - Enabled) => C:\Users\Cypisek Guest (S-1-5-21-3944126502-1092578214-2840689287-501 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-3944126502-1092578214-2840689287-1000\...\uTorrent) (Version: 3.4.8.42499 - BitTorrent Inc.) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.017.20053 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.5.1.17730 - Adobe Systems Inc.) Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.1.102.64 - Adobe Systems Incorporated) Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated) Adobe Media Encoder CC 2014 (HKLM-x32\...\{663DEEEF-EF34-4DCB-8687-73A7AA146E02}) (Version: 8.0.1 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Adobe Premiere Pro CC 2014 (HKLM-x32\...\{07BE616F-9E42-4C90-AF4F-0F32A5B088E7}) (Version: 8.0.1 - Adobe Systems Incorporated) Anno 2205 (HKLM-x32\...\Anno 2205_is1) (Version: - ) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.21 - Piriform) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd) f.lux (HKU\S-1-5-21-3944126502-1092578214-2840689287-1000\...\Flux) (Version: - ) Farming Simulator 15 Gold Edition version 1.4.2.0 (HKLM-x32\...\Farming Simulator 15 Gold Edition_is1) (Version: 1.4.2.0 - Mr DJ) Flashback (Demo) 1.0 (HKLM-x32\...\{A0830D05-C810-40BB-A5A4-27DA608FCA16}_is1) (Version: 1.0 - Ubisoft Entertainment, Inc.) foobar2000 v1.3.8 (HKLM-x32\...\foobar2000) (Version: 1.3.8 - Peter Pawlowski) Full Throttle (HKU\S-1-5-21-3944126502-1092578214-2840689287-1000\...\Full Throttle) (Version: - ) Gobliiins Pack (HKLM-x32\...\GOGPACKGOBLINS_is1) (Version: 2.0.0.62 - GOG.com) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden HP Deskjet 1510 series Basic Device Software (HKLM\...\{D17E60E8-478A-4D4A-8147-21D481B5CA55}) (Version: 32.2.188.47710 - Hewlett-Packard Co.) ImageScanTool V2.0.4 (HKLM-x32\...\{1F63766F-0F09-4779-BD50-863229D0919A}) (Version: 2.0.4 - Nazwa firmy) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.1.50.1172 - Intel Corporation) Jade Empire (HKLM-x32\...\{EEAA7AC3-F651-4842-86E0-4C755181388B}) (Version: 1.0.1.1 - Electronic Arts) Last.fm Scrobbler 2.1.37 (HKLM-x32\...\LastFM_is1) (Version: - Last.fm) Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech) LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.493 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.493 - LogMeIn, Inc.) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) MKVToolNix 8.7.0 (32bit) (HKLM-x32\...\MKVToolNix) (Version: 8.7.0 - Moritz Bunkus) Mozilla Firefox 40.0.3 (x86 pl) (HKLM-x32\...\Mozilla Firefox 40.0.3 (x86 pl)) (Version: 40.0.3 - Mozilla) Mozilla Firefox 48.0.2 (x86 pl) (HKU\S-1-5-21-3944126502-1092578214-2840689287-1000\...\Mozilla Firefox 48.0.2 (x86 pl)) (Version: 48.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 38.2.0 - Mozilla) Mozilla Thunderbird 38.2.0 (x86 pl) (HKLM-x32\...\Mozilla Thunderbird 38.2.0 (x86 pl)) (Version: 38.2.0 - Mozilla) Mozilla Thunderbird 45.2.0 (x86 pl) (HKU\S-1-5-21-3944126502-1092578214-2840689287-1000\...\Mozilla Thunderbird 45.2.0 (x86 pl)) (Version: 45.2.0 - Mozilla) MPC-HC 1.7.10 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.10 - MPC-HC Team) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Nero Burning ROM 2014 (HKLM-x32\...\{B0E4ACBC-4CFA-4B6D-9B7B-E13C171BCC23}) (Version: 15.0.05300 - Nero AG) Nero Info (HKLM-x32\...\{B791E0AB-87A9-41A4-8D98-D13C2E37D928}) (Version: 15.1.0030 - Nero AG) Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google) NVIDIA 3D Vision Controller Driver 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA 3D Vision Driver 359.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 359.06 - NVIDIA Corporation) NVIDIA GeForce Experience 2.7.4.10 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.7.4.10 - NVIDIA Corporation) NVIDIA Graphics Driver 359.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 359.06 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation) NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation) NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) Obsługa programów Apple (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) OpenOffice 4.1.1 (HKLM-x32\...\{B5373BA3-BAD7-4EAC-A9D2-B66B41B82C57}) (Version: 4.11.9775 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.11.2.10120 - Electronic Arts, Inc.) PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Plants vs. Zombies™ (HKLM-x32\...\{5E6536C2-E79A-49CF-83EA-817AD81F9FC8}) (Version: 1.2.0.1093 - Electronic Arts, Inc.) Prerequisite installer (x32 Version: 15.0.0005 - Nero AG) Hidden PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.) QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.89.716.2014 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7293 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver and Utility (HKLM-x32\...\{9C049499-055C-4a0c-A916-1D8CA1FF45EB}) (Version: 1.00.0165 - ) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.34.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0 - Renesas Electronics Corporation) Hidden Rosetta Stone Ltd Services (HKLM-x32\...\{7BB2EF8A-5376-4BAE-96D0-38BE49501F40}) (Version: 3.2.17 - Rosetta Stone Ltd.) Rosetta Stone TOTALe (HKLM-x32\...\com.rosettastone.rosettastonetotale) (Version: 4.1.15.1 - Rosetta Stone, Ltd) Rosetta Stone TOTALe (x32 Version: 4.1.1 - Rosetta Stone, Ltd) Hidden Rosetta Stone TOTALe (x32 Version: 4.1.15.1 - Rosetta Stone, Ltd) Hidden SHIELD Streaming (Version: 4.1.0240 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.7.4.10 - NVIDIA Corporation) Hidden Shift 2 Unleashed (HKLM-x32\...\Steam App 47920) (Version: - Slightly Mad Studios) Skype™ 7.24 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.24.104 - Skype Technologies S.A.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Subtitle Edit 3.4.9 (HKLM-x32\...\SubtitleEdit_is1) (Version: 3.4.9.0 - Nikse) Switch Off (HKLM-x32\...\SwitchOff) (Version: 2.3 - YaSoft) TeamSpeak 3 Client (HKU\S-1-5-21-3944126502-1092578214-2840689287-1000\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH) TeraCopy 2.3 (HKLM\...\TeraCopy_is1) (Version: - Code Sector) The Cave (c) SEGA version 1 (HKLM-x32\...\The Cave (c) SEGA_is1) (Version: 1 - ) The Cave PL [BDIP] wersja 1.0 (HKLM-x32\...\{90C4B3D9-CF97-4784-AA4A-51B667E5A6B9}_is1) (Version: 1.0 - BDIP) Tlen.pl (HKLM-x32\...\Tlen.pl) (Version: 6.0.3.72 - o2.pl Sp. z o. o.) To The Moon (HKLM-x32\...\To The Moon_is1) (Version: - ) Trials Fusion (HKLM-x32\...\Uplay Install 297) (Version: - Ubisoft) Uplay (HKLM-x32\...\Uplay) (Version: 13.0 - Ubisoft) UsbFix (HKLM-x32\...\Usbfix) (Version: 8.204 - El Desaparecido - www.usb-antivirus.com - www.sosvirus.net) video.NET 0.9.2.0 (HKLM\...\{4FECE72B-785B-48CD-A30B-5AE10D9DFDC0}_is1) (Version: 0.9.2.0 - clone.AD) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) Warhammer® 40,000™: Dawn of War® II – Retribution™ (HKLM\...\Steam App 56400) (Version: - Relic Entertainment) WinRAR 5.30 beta 3 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.30.3 - win.rar GmbH) Wolfenstein - Enemy Territory (HKLM-x32\...\Wolfenstein - Enemy Territory) (Version: 2.60b - ACTIVISION) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {090CFFE0-DC5A-4328-A32D-93D6BD100E75} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [2013-10-16] (Nero AG) Task: {0E3F2112-E8E0-433A-BC5C-A16926638D6A} - System32\Tasks\AdobeAAMUpdater-1.0-STITCH-Cypisek => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-02-27] (Adobe Systems Incorporated) Task: {AB62D02C-D1A3-4CC4-B798-A61BD603D10F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-06-25] (Adobe Systems Incorporated) Task: {B2899ED5-A481-48D8-A8B2-D0C691DC4A62} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {B4A5D2F8-E7FF-4E4D-ABBA-A21B23B82EFA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-22] (Google Inc.) Task: {BF9E2933-BDB8-456A-B4A0-F29512454E9D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-22] (Google Inc.) Task: {D2D4A9E2-7A03-4074-A54D-92DCD3EBD0FE} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-08-05] (Piriform Ltd) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2015-08-27 10:03 - 2015-11-24 20:40 - 00116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-11-28 18:20 - 2015-11-28 18:23 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2015-08-27 10:04 - 2015-11-12 20:39 - 00012080 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2007-10-05 15:00 - 2007-10-05 15:00 - 00181248 _____ () C:\Program Files (x86)\Tlen.pl\LIBUTIL.DLL 2008-06-19 14:15 - 2008-06-19 14:15 - 00139264 _____ () C:\Program Files (x86)\Tlen.pl\LIBEXPAT2.DLL 2008-06-19 14:15 - 2008-06-19 14:15 - 00030720 _____ () C:\Program Files (x86)\Tlen.pl\LIBUTIL2.DLL 2008-11-17 14:34 - 2008-11-17 14:34 - 00151552 _____ () C:\Program Files (x86)\Tlen.pl\LIBGADU.DLL 2003-01-30 06:04 - 2003-01-30 06:04 - 00618496 _____ () C:\Program Files (x86)\Tlen.pl\STLPMT45.DLL 2008-11-13 11:33 - 2008-11-13 11:33 - 00033792 _____ () C:\Program Files (x86)\Tlen.pl\languages\polish.dll 2008-06-19 14:20 - 2008-06-19 14:20 - 00017408 _____ () C:\Program Files (x86)\Tlen.pl\hook.dll 2008-07-22 09:49 - 2008-07-22 09:49 - 00106520 _____ () C:\Program Files (x86)\Tlen.pl\Plugins\File.tpl 2008-07-22 09:49 - 2008-07-22 09:49 - 00075800 _____ () C:\Program Files (x86)\Tlen.pl\Plugins\FileTM.tpl 2007-09-17 11:36 - 2007-09-17 11:36 - 00048176 _____ () C:\Program Files (x86)\Tlen.pl\Plugins\TlenDostep.tpl 2007-09-17 11:36 - 2007-09-17 11:36 - 00031768 _____ () C:\Program Files (x86)\Tlen.pl\Plugins\TlenNewsy.tpl 2008-11-19 13:16 - 2008-11-19 13:16 - 00323608 _____ () C:\Program Files (x86)\Tlen.pl\Plugins\Tlenofon.tpl 2008-08-05 13:46 - 2008-08-05 13:46 - 00061464 _____ () C:\Program Files (x86)\Tlen.pl\Plugins\TlenSMS.tpl 2008-07-22 09:49 - 2008-07-22 09:49 - 00195096 _____ () C:\Program Files (x86)\Tlen.pl\Plugins\Video.tpl 2008-07-22 09:49 - 2008-07-22 09:49 - 00093208 _____ () C:\Program Files (x86)\Tlen.pl\Plugins\Voice.tpl 2005-11-18 11:33 - 2005-11-18 11:33 - 00054784 _____ () C:\Program Files (x86)\Tlen.pl\libs\libexpat.dll 2016-08-18 14:46 - 2009-12-09 21:20 - 00126976 _____ () C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\EnumDevLib.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-3944126502-1092578214-2840689287-1000\...\trendmicro.com -> hxxps://pwm.trendmicro.com ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3944126502-1092578214-2840689287-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Cypisek\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 62.179.1.60 - 62.179.1.61 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupfolder: C:^Users^Cypisek^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^revoSleep - Shortcut.lnk => C:\Windows\pss\revoSleep - Shortcut.lnk.Startup MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCS6ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start MSCONFIG\startupreg: NUSB3MON => "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" MSCONFIG\startupreg: SwitchBoard => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{1FCD3E7B-1792-4B04-8159-9909B3C61202}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{522D0B50-94EA-400E-8F40-9E854C2C8ECB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{257E9427-1E8F-48E4-9E6C-7BB1145F333D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{EF679F6C-0FDA-4325-A876-2298AAE10A86}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{7D044944-E548-4F50-9343-90C2928E60AD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{BDF62284-7829-48C6-8F39-AC06DB05668C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{AD4B3E83-2F2B-41FF-A0CC-44D2F8B78ACC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{4F1F3C6F-3452-4562-AF67-EA378DCAA5A2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{43E3E1E7-CC36-46F6-9D0B-7A3D437C436C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{8C4523A9-3C13-4E27-9C32-10A2E28E143A}] => (Allow) C:\Users\Cypisek\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{E7DEF774-35E6-482A-89AA-A9D767359D4D}] => (Allow) C:\Users\Cypisek\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{451FA23B-21DD-447C-8E7B-BAC4E9BC530D}] => (Allow) C:\Users\Cypisek\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{9FFA18D3-8D4D-414E-8D63-2B50DB62B390}] => (Allow) C:\Users\Cypisek\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{183A8A38-DDDE-41A4-9F55-62359D6130A3}] => (Allow) C:\Users\Cypisek\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{F9C99AB0-CA46-47D0-A559-E53B2B35E351}] => (Allow) C:\Users\Cypisek\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{36723671-75A3-497B-BC68-C87653CB5303}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{79B07F66-7CF2-442B-990B-635055E72EA4}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{0D0F0806-5F82-4F32-ACC3-7A97AF0F5D9E}] => (Allow) C:\Program Files\HP\HP Deskjet 1510 series\Bin\USBSetup.exe FirewallRules: [{A534C9E8-D340-4703-A8D6-01F022389652}] => (Allow) C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{2D1CAA6A-4DF9-40BB-8EE6-3FE553B04A1C}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{1300CD2A-D629-4EF1-BA55-0DEBA3921501}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{0FB54034-AE00-411E-B20E-66ED3BB89CCA}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{C678BF16-EE4B-4DE5-BE69-A2F31FA3D004}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [TCP Query User{C3826358-A40A-48EE-9B83-1C1C206574BC}C:\program files (x86)\wolfenstein - enemy territory\et.exe] => (Allow) C:\program files (x86)\wolfenstein - enemy territory\et.exe FirewallRules: [UDP Query User{4C877F69-1715-4858-8941-D42B2D6C27AE}C:\program files (x86)\wolfenstein - enemy territory\et.exe] => (Allow) C:\program files (x86)\wolfenstein - enemy territory\et.exe FirewallRules: [{162B94BD-F4AE-4650-B35F-CBF2F2E5F127}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{4379CF0E-1C97-4D90-9D44-9E75668F63B1}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{83D531EB-0522-4C3F-8B75-B478B49E9048}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{70754BBB-61D9-44FE-8D06-259D42DF9508}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{40149410-4E21-4121-B0C1-D850684381B8}] => (Allow) D:\Gry\Trials Fusion\datapack\trials_fusion.exe FirewallRules: [{351B579D-1086-43A7-A40B-F020D7D66EC0}] => (Allow) D:\Gry\Trials Fusion\datapack\trials_fusion.exe FirewallRules: [{DF64E4CA-DDEB-4852-B260-50D0F33728AA}] => (Allow) C:\Program Files (x86)\Ubisoft\VectorCell\Flashback (Demo)\Binaries\Win32\Flashback.exe FirewallRules: [{2BA63951-2264-4131-A471-7A9138AC5DD4}] => (Allow) C:\Program Files (x86)\Ubisoft\VectorCell\Flashback (Demo)\Binaries\Win32\Flashback.exe FirewallRules: [{E35EDC06-F183-470E-8A37-1DF7BF1AC125}] => (Allow) C:\Program Files (x86)\RosettaStoneLtdServices\RosettaStoneLtdServices.exe FirewallRules: [{C0C6FB88-1C5B-4CE8-BBDB-44BE1E280527}] => (Allow) C:\Program Files (x86)\RosettaStoneLtdServices\RosettaStoneLtdServices.exe FirewallRules: [{12346C85-AF99-4472-AB0D-9832F34D07DB}] => (Allow) C:\Program Files (x86)\RosettaStoneLtdServices\RosettaStoneDaemon.exe FirewallRules: [{07CA5360-BE7D-4AA3-8D83-BA8CCFF05BD6}] => (Allow) C:\Program Files (x86)\RosettaStoneLtdServices\RosettaStoneDaemon.exe FirewallRules: [{F614786B-3FF2-43B1-B76F-496E31096449}] => (Allow) C:\Program Files (x86)\RosettaStoneLtdServices\RosettaStoneDaemon.exe FirewallRules: [{93506A35-426D-467C-8163-5DD0F6B9D91E}] => (Allow) C:\Program Files (x86)\RosettaStoneLtdServices\RosettaStoneDaemon.exe FirewallRules: [{31C73204-5B8C-451C-A143-F2BEED6AAB07}] => (Allow) C:\Program Files (x86)\RosettaStoneLtdServices\RosettaStoneLtdServices.exe FirewallRules: [{030E3190-2F85-428E-AB9D-E2300D4BE016}] => (Allow) C:\Program Files (x86)\RosettaStoneLtdServices\RosettaStoneLtdServices.exe FirewallRules: [TCP Query User{866D785D-D807-4E00-B089-58FF920DC37F}C:\dzony-loker\mirc.exe] => (Allow) C:\dzony-loker\mirc.exe FirewallRules: [UDP Query User{C5F17ABC-EDDC-41B0-8EC7-4B0B0A6C82BA}C:\dzony-loker\mirc.exe] => (Allow) C:\dzony-loker\mirc.exe FirewallRules: [{6BC7D67D-9A8D-43D3-899E-A641A05A21B3}] => (Allow) C:\Program Files (x86)\Origin Games\Plants vs. Zombies\PlantsVsZombies.exe FirewallRules: [{88806E7C-0D52-4971-834A-B2F40A3BC804}] => (Allow) C:\Program Files (x86)\Origin Games\Plants vs. Zombies\PlantsVsZombies.exe FirewallRules: [{B4D8E903-9616-430E-8C3B-CB2DB5546F03}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{5FA9BB5D-E3B4-408A-8630-4DD6A0A5BCB9}] => (Allow) D:\Gry\SteamLibrary\steamapps\common\Need For Speed Shift 2\SHIFT2U.exe FirewallRules: [{2BE6951B-06A9-4709-A509-6154B7668552}] => (Allow) D:\Gry\SteamLibrary\steamapps\common\Need For Speed Shift 2\SHIFT2U.exe FirewallRules: [TCP Query User{14B013FC-A6C1-443F-96BF-8AE653683A05}C:\program files (x86)\tlen.pl\tlen.exe] => (Block) C:\program files (x86)\tlen.pl\tlen.exe FirewallRules: [UDP Query User{715A71BD-E380-4887-B839-9DAE746D039B}C:\program files (x86)\tlen.pl\tlen.exe] => (Block) C:\program files (x86)\tlen.pl\tlen.exe FirewallRules: [{3F863452-C759-4213-84EC-E6A5E4B74CA0}] => (Allow) D:\Gry\SteamLibrary\steamapps\common\Dawn of War II - Retribution\DOW2.exe FirewallRules: [{91825991-FB78-4241-A0CA-24F5A9C19621}] => (Allow) D:\Gry\SteamLibrary\steamapps\common\Dawn of War II - Retribution\DOW2.exe FirewallRules: [TCP Query User{A80746A8-ABE6-411C-9148-86A5420B1A18}C:\quake iii arena\quake3\quake3.exe] => (Allow) C:\quake iii arena\quake3\quake3.exe FirewallRules: [UDP Query User{4047643D-4700-446E-BE09-98A60A9F27D7}C:\quake iii arena\quake3\quake3.exe] => (Allow) C:\quake iii arena\quake3\quake3.exe FirewallRules: [{EE4CCDA8-1D42-4D7E-B42B-9249A85EA52C}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{A89627CD-C25F-480A-B813-6C95D69C7996}] => (Allow) C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{DB106AC2-A773-4D06-A4DC-B3AB44EDC58D}] => (Allow) C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{35627921-2BA2-4BFC-9CCC-7EE9489D3FFD}] => (Allow) LPort=1542 FirewallRules: [{EF5D13B1-D7F2-4BF8-A1FF-A13DCB4C6351}] => (Allow) LPort=1542 FirewallRules: [{980650E3-35E5-4A88-8369-1CA1E83C8123}] => (Allow) LPort=53 FirewallRules: [{F893FA4C-D2CE-4FC4-9C68-9FEE98B991A4}] => (Allow) C:\Program Files (x86)\Mr DJ\Farming Simulator 15 Gold Edition\x86\FarmingSimulator2015Game.exe FirewallRules: [{6BFC1D99-9F3E-4F3B-8101-137F3E510798}] => (Allow) C:\Program Files (x86)\Mr DJ\Farming Simulator 15 Gold Edition\x86\FarmingSimulator2015Game.exe FirewallRules: [{A87FBC1C-87C2-43FF-A0D0-6845B31C9307}] => (Allow) C:\Program Files (x86)\Mr DJ\Farming Simulator 15 Gold Edition\x64\FarmingSimulator2015Game.exe FirewallRules: [{C1E22BC6-B0AD-43D9-9791-BB847786BDE0}] => (Allow) C:\Program Files (x86)\Mr DJ\Farming Simulator 15 Gold Edition\x64\FarmingSimulator2015Game.exe ==================== Restore Points ========================= 02-09-2016 22:47:56 Scheduled Checkpoint 04-09-2016 14:25:06 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/07/2016 08:03:22 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: License Activation Scheduler (sppuinotify.dll) failed with the following error code: 0x80070005 Error: (09/07/2016 07:03:22 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: License Activation Scheduler (sppuinotify.dll) failed with the following error code: 0x80070005 Error: (09/07/2016 06:16:38 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (09/07/2016 06:14:54 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Windows license activation failed. Error 0x80070005. Error: (09/07/2016 01:25:17 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: License Activation Scheduler (sppuinotify.dll) failed with the following error code: 0x80070005 Error: (09/07/2016 12:25:17 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: License Activation Scheduler (sppuinotify.dll) failed with the following error code: 0x80070005 Error: (09/07/2016 11:25:17 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: License Activation Scheduler (sppuinotify.dll) failed with the following error code: 0x80070005 Error: (09/07/2016 10:25:17 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: License Activation Scheduler (sppuinotify.dll) failed with the following error code: 0x80070005 Error: (09/07/2016 09:38:31 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (09/07/2016 09:36:47 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Windows license activation failed. Error 0x80070005. System errors: ============= Error: (09/07/2016 07:03:22 PM) (Source: DCOM) (EventID: 10001) (User: ) Description: Unable to start a DCOM Server: {F87B28F1-DA9A-4F35-8EC0-800EFCF26B83} as /. The error: "5" Happened while starting this command: C:\Windows\System32\slui.exe -Embedding Error: (09/07/2016 01:55:51 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume MUZYKA. Error: (09/07/2016 01:55:51 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume MUZYKA. Error: (09/07/2016 01:55:13 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume G:. Error: (09/07/2016 01:55:13 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume . Error: (09/07/2016 01:55:13 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume . Error: (09/07/2016 01:55:13 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume . Error: (09/07/2016 01:55:13 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume . Error: (09/07/2016 01:55:13 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume . Error: (09/07/2016 01:55:13 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume . ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz Percentage of memory in use: 27% Total physical RAM: 8162.12 MB Available physical RAM: 5889.04 MB Total Virtual: 16322.45 MB Available Virtual: 13914.25 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:195.31 GB) (Free:24.21 GB) NTFS ==>[drive with boot components (obtained from BCD)] Drive d: (CARGO) (Fixed) (Total:736.2 GB) (Free:22.41 GB) NTFS Drive e: (Projekty) (Fixed) (Total:465.76 GB) (Free:30.87 GB) NTFS Drive f: (CZAS APOKALIPSY POWROT) (CDROM) (Total:7.22 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 6B732052) No partition Table on disk 0. ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 3495454D) Partition 1: (Active) - (Size=195.3 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=736.2 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================