Additional scan result of Farbar Recovery Scan Tool (x86) Version: 30-10-2016 Ran by dkgod (03-11-2016 16:32:00) Running from C:\Users\dkgod\Downloads Microsoft Windows 10 Pro Version 1607 (X86) (2016-09-29 01:58:28) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2147580673-1131091785-3466399999-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2147580673-1131091785-3466399999-503 - Limited - Disabled) dkgod (S-1-5-21-2147580673-1131091785-3466399999-1001 - Administrator - Enabled) => C:\Users\dkgod Guest (S-1-5-21-2147580673-1131091785-3466399999-501 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-2147580673-1131091785-3466399999-1001\...\uTorrent) (Version: 3.4.8.42449 - BitTorrent Inc.) Ace Stream Media 3.1.2 (HKU\S-1-5-21-2147580673-1131091785-3466399999-1001\...\AceStream) (Version: 3.1.2 - Ace Stream Media) <==== ATTENTION ACP Application (Version: 2016.0718.1650.38 - Advanced Micro Devices, Inc.) Hidden Adobe Flash Player 23 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 23.0.0.205 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) AIMP (HKLM\...\AIMP) (Version: v4.00.1645 Beta 1, 07.08.2015 - AIMP DevTeam) ALLPlayer Pilot (HKLM\...\{146BDBDD-ACD9-4B04-A286-C27471841E8E}_is1) (Version: 1.3 - ALLPlayer Group, Ltd.) ALLPlayer V6.X (HKLM\...\ALLPlayer_is1) (Version: - ALLPlayer Group, Ltd.) AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.) AMD Radeon Settings (HKLM\...\WUCCCApp) (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) AnySend (HKLM\...\ASPackage) (Version: - CMI Limited) <==== ATTENTION Battle.net (HKLM\...\Battle.net) (Version: - Blizzard Entertainment) Call of Duty: World at War (HKLM\...\Steam App 10090) (Version: - Treyarch) CCleaner (HKLM\...\CCleaner) (Version: 5.23 - Piriform) Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve) Free YouTube To MP3 Converter (HKLM\...\Free YouTube To MP3 Converter_is1) (Version: 4.1.1.119 - DVDVideoSoft Ltd.) Google Chrome (HKLM\...\Google Chrome) (Version: 54.0.2840.87 - Google Inc.) Google Update Helper (Version: 1.3.31.5 - Google Inc.) Hidden Hearthstone (HKLM\...\Hearthstone) (Version: - Blizzard Entertainment) HPRewriter2 (HKLM\...\HPRewriter2) (Version: - ) <==== ATTENTION Intel Security True Key (HKLM\...\TrueKey) (Version: 4.4.135.1 - Intel Security) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.427.2 - McAfee, Inc.) MEGAsync (HKLM\...\MEGAsync) (Version: - Mega Limited) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Napisy24 (HKLM\...\{D1985DBC-F09E-4317-91B8-932AD0FD4A27}_is1) (Version: 1.4 - Napisy24.pl) OpenFM (HKU\S-1-5-21-2147580673-1131091785-3466399999-1001\...\OpenFM) (Version: 2 - GG Network S.A.) Opera Stable 41.0.2353.46 (HKLM\...\Opera 41.0.2353.46) (Version: 41.0.2353.46 - Opera Software) PDF Settings CS6 (Version: 11.0 - Adobe Systems Incorporated) Hidden PlaysTV (HKLM\...\PlaysTV) (Version: 1.13.3-r115627-release - Plays.tv, LLC) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.) ROCCAT Lua Mouse Driver (HKLM\...\InstallShield_{0F5183CD-4A86-43A4-8CAA-1045871F54DE}) (Version: 1.14 - ROCCAT) ROCCAT Lua Mouse Driver (Version: 1.14 - ROCCAT) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.49.0 - SAMSUNG Electronics Co., Ltd.) Setup (HKLM\...\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}) (Version: - ) <==== ATTENTION Spotify (HKU\S-1-5-21-2147580673-1131091785-3466399999-1001\...\Spotify) (Version: 1.0.41.375.g040056ca - Spotify AB) Steam (HKLM\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.17 - TeamSpeak Systems GmbH) WinRAR 5.21 (32-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) Youtube AdBlock (HKLM\...\Youtube AdBlock) (Version: 2.0.0.67 - Company Inc.) <==== ATTENTION ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2147580673-1131091785-3466399999-1001_Classes\CLSID\{79690976-ED6E-403C-BBBA-F8928B5EDE17}\InprocServer32 -> C:\Users\dkgod\AppData\Roaming\ACEStream\player\npace_plugin.dll (Innovative Digital Technologies) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {127B59DE-C737-43C8-9413-2ECD63BED8B3} - System32\Tasks\188975a70fa6f2ec57ac5beb81d6e70a => Rundll32.exe "C:\Program Files\Common Files\4lggmu.dll",e62dc6c6547f46bda862da2d05af6862 <==== ATTENTION Task: {1686D74F-5926-4EDC-894E-F5FA8DD35E90} - System32\Tasks\Kercersreufury Schedule => C:\Program Files\Sacing\anapury.exe [2016-11-02] (Glarysoft Ltd) Task: {4B4F0F4E-492C-426E-B2DF-3A12377090A7} - System32\Tasks\Update Service for Youtube AdBlock => C:\Program Files\Youtube AdBlock\n2nUpfq.exe [2016-11-03] () <==== ATTENTION Task: {4E16FB40-A85A-4E8D-82B4-3F20745F5010} - System32\Tasks\Opera scheduled Autoupdate 1478028453 => C:\Program Files\Opera\launcher.exe [2016-10-24] (Opera Software) Task: {556F799D-C22A-4CDA-80EE-5F1FB29E3998} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-10-15] (Microsoft Corporation) Task: {58DFC528-8FE3-425B-B5D4-6215732BBA82} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-09-28] (Piriform Ltd) Task: {59CCD98A-E4D5-4E0A-93B2-36A5B5BFBF0B} - System32\Tasks\Update Service for Youtube AdBlock2 => C:\Program Files\Youtube AdBlock\n2nUpfq.exe [2016-11-03] () <==== ATTENTION Task: {65A4D761-3A71-4DDF-8EF7-B9E06EDF0858} - System32\Tasks\Driver Booster SkipUAC (dkgod) => C:\Program Files\IObit\Driver Booster\4.0.4\DriverBooster.exe Task: {6D1D6598-A4DE-443B-A2E3-99AFD1749487} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-31] (Adobe Systems Incorporated) Task: {6E04BB3D-62D7-41B5-BACF-1A54AF72EDEB} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin\InstallManagerApp.exe [2016-07-18] (Advanced Micro Devices, Inc.) Task: {9CE036F4-0B74-431B-9EBE-080243881790} - System32\Tasks\Satelybutoge Configuration => C:\Program Files\Ckerdesp\couvight.exe [2016-10-25] (Glarysoft Ltd) Task: {A62D9C2D-DA03-4E7C-BB27-348DDB21062B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-07-31] (Google Inc.) Task: {A9CF884B-2AF5-4432-880F-1396E6A8766A} - System32\Tasks\ChelfNotify Task => C:\ProgramData\ChelfNotify\BrowserUpdate.exe [2016-06-30] (Tencent) <==== ATTENTION Task: {AC8C5596-0340-4FE7-ACBE-93BF8ED82374} - System32\Tasks\snf => C:\ProgramData\awna\awna.exe [2016-11-03] () <==== ATTENTION Task: {C464AC0C-7F5E-439E-AC65-776DE1EC25FD} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\dkgod\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-08-26] (Microsoft Corporation) Task: {CB9E4360-C805-4822-BC0E-07C986A6CC45} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-07-31] (Google Inc.) Task: {CD6CDBA4-6815-4BF9-B4C2-6DE83D5583C6} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_23_0_0_205_pepper.exe [2016-10-31] (Adobe Systems Incorporated) Task: {E11C8234-4506-424A-8379-2B5DF3578B40} - System32\Tasks\snp => C:\ProgramData\awna\awna.exe [2016-11-03] () <==== ATTENTION Task: {E3EF6962-C645-462A-9661-371061FC3ED2} - System32\Tasks\Microsoft\Windows\Multimedia\ReportSender => C:\Users\dkgod\ReportSender\ReportSender.exe [2016-10-10] () (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_23_0_0_205_pepper.exe Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Update Service for Youtube AdBlock.job => C:\Program Files\Youtube AdBlock\n2nUpfq.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\Update Service for Youtube AdBlock2.job => C:\Program Files\Youtube AdBlock\n2nUpfq.exe <==== ATTENTION ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ShortcutWithArgument: C:\Users\dkgod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Dingit Infinitе НD Арр.lnk -> C:\Users\dkgod\AppData\Roaming\HPRewriter2\RewRun3.exe (QIIXU APZEDEEMFA) -> 1 0 <===== Cyrillic ShortcutWithArgument: C:\Users\dkgod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Intеrnеt Ехрlоrеr.lnk -> C:\Users\dkgod\AppData\Roaming\HPRewriter2\RewRun3.exe (QIIXU APZEDEEMFA) -> 3 0 <===== Cyrillic ShortcutWithArgument: C:\Users\dkgod\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> %SNP% ShortcutWithArgument: C:\Users\dkgod\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Gооglе Сhrоmе.lnk -> C:\Users\dkgod\AppData\Roaming\HPRewriter2\RewRun3.exe (QIIXU APZEDEEMFA) -> 1 0 <===== Cyrillic ShortcutWithArgument: C:\Users\dkgod\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\360c22b137d62ce9\Gооglе Сhrоmе.lnk -> C:\Users\dkgod\AppData\Roaming\HPRewriter2\RewRun3.exe (QIIXU APZEDEEMFA) -> 1 0 <===== Cyrillic ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gооglе Сhrоmе.lnk -> C:\Users\dkgod\AppData\Roaming\HPRewriter2\RewRun3.exe (QIIXU APZEDEEMFA) -> 1 0 <===== Cyrillic ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ореrа.lnk -> C:\Users\dkgod\AppData\Roaming\HPRewriter2\RewRun3.exe (QIIXU APZEDEEMFA) -> 4 0 <===== Cyrillic ShortcutWithArgument: C:\Users\Public\Desktop\Gооglе Сhrоmе.lnk -> C:\Users\dkgod\AppData\Roaming\HPRewriter2\RewRun3.exe (QIIXU APZEDEEMFA) -> 1 0 <===== Cyrillic ShortcutWithArgument: C:\Users\Public\Desktop\Ореrа.lnk -> C:\Users\dkgod\AppData\Roaming\HPRewriter2\RewRun3.exe (QIIXU APZEDEEMFA) -> 4 0 <===== Cyrillic ==================== Loaded Modules (Whitelisted) ============== 2016-10-18 17:43 - 2016-10-18 17:43 - 05175296 _____ () C:\Users\dkgod\AppData\Roaming\HPRewriter2\HPWriterSrv3.exe 2016-10-25 19:21 - 2016-10-25 19:21 - 00277504 _____ () c:\program files\ckerdesp\thavuywifiiedreports.dll 2015-08-21 12:05 - 2016-01-19 04:02 - 00110952 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\zlib1.dll 2015-08-21 12:05 - 2016-01-19 04:02 - 00253800 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\collector.dll 2015-08-21 12:05 - 2016-01-19 04:02 - 00295272 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\stat.dll 2015-08-21 12:05 - 2016-01-19 04:02 - 00104296 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll 2015-08-21 12:05 - 2016-01-19 04:02 - 00020328 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll 2015-08-21 12:05 - 2016-01-19 04:02 - 00044392 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll 2016-09-16 14:37 - 2016-09-16 14:37 - 00137608 _____ () C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe 2016-11-01 14:26 - 2016-10-27 02:38 - 00385536 _____ () c:\program files\winarcher\archer.dll 2016-11-01 14:26 - 2016-11-01 03:32 - 00219648 _____ () c:\programdata\winsapsvc\winsap.dll 2016-11-01 14:27 - 2016-10-31 17:07 - 00430592 _____ () C:\Program Files\InterHop\InterHop.exe 2016-09-26 08:00 - 2016-09-28 09:08 - 00057856 _____ () C:\ProgramData\NetworkPacketManitor\Nettrans.exe 2016-11-01 23:21 - 2016-11-01 23:21 - 00312320 _____ () C:\Program Files\ktip\ktip.exe 2016-11-01 23:36 - 2016-10-31 11:08 - 03786752 _____ () C:\ProgramData\Logic Handler\set.exe 2016-11-02 00:22 - 2016-11-02 00:22 - 00647680 _____ () C:\Program Files\03000200-1477419828-0500-0006-000700080009\knsA1DE.tmp 2016-11-02 01:30 - 2016-11-02 01:30 - 00676352 _____ () C:\Program Files\03000200-1478039395-0500-0006-000700080009\knsEC19.tmp 2016-07-16 09:25 - 2016-07-16 09:25 - 00190976 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-09-30 17:40 - 2016-09-15 18:32 - 02048496 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-11-03 15:10 - 2016-11-03 14:35 - 00400896 _____ () C:\ProgramData\awna\awna.exe 2016-09-30 17:40 - 2016-09-15 18:32 - 02048496 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-08-11 14:45 - 2016-08-11 14:45 - 00258560 _____ () C:\Users\dkgod\AppData\Roaming\Hemkajdoa\Sejheb.dll 2016-09-30 17:40 - 2016-09-15 18:32 - 02048496 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2014-05-01 15:15 - 2016-07-21 09:02 - 00564224 _____ () C:\Users\dkgod\AppData\Local\MEGAsync\ShellExtX32.dll 2016-08-11 14:44 - 2016-08-11 14:44 - 00112128 _____ () C:\Users\dkgod\AppData\Roaming\Hemkajdoa\Sejheb.exe 2016-07-16 09:25 - 2016-07-16 09:25 - 00108032 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2016-09-29 12:45 - 2016-09-29 12:45 - 00321536 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2016-10-29 06:53 - 2016-10-15 04:39 - 06726656 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-10-29 06:53 - 2016-10-15 04:35 - 01149440 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-09-29 12:45 - 2016-09-29 12:45 - 00526848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2016-10-29 06:53 - 2016-10-15 04:35 - 01724928 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-10-29 06:53 - 2016-10-15 04:37 - 03158528 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-06-25 16:02 - 2015-06-25 16:02 - 00012288 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2015-06-25 16:03 - 2015-06-25 16:03 - 00690176 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-06-25 16:02 - 2015-06-25 16:02 - 00012288 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2015-06-25 16:03 - 2015-06-25 16:03 - 00057856 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2015-06-25 15:47 - 2015-06-25 15:47 - 00010240 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll 2015-06-25 15:46 - 2015-06-25 15:46 - 01601536 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2016-11-01 14:49 - 2016-11-01 17:31 - 00213065 _____ () C:\Program Files\wanttoxiamen\uc.exe 2016-09-29 16:13 - 2016-09-29 16:13 - 01383616 _____ () C:\Users\dkgod\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\ClientTelemetry.dll 2016-09-29 16:13 - 2016-09-29 16:13 - 00118976 _____ () C:\Users\dkgod\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileSyncViews.dll 2015-12-18 01:27 - 2016-10-20 11:34 - 00332288 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\acestreamengine.Core.pyd 2011-06-12 14:09 - 2011-06-12 14:09 - 00038400 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\_socket.pyd 2011-06-12 14:09 - 2011-06-12 14:09 - 00720896 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\_ssl.pyd 2011-06-12 14:06 - 2011-06-12 14:06 - 00287232 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\_hashlib.pyd 2015-04-16 13:27 - 2015-04-16 13:27 - 00018944 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\acestreamengine.pycompat.pyd 2012-02-07 17:37 - 2012-02-07 17:37 - 00167424 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\win32gui.pyd 2012-02-07 17:35 - 2012-02-07 17:35 - 00110080 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\pywintypes27.dll 2012-02-07 17:36 - 2012-02-07 17:36 - 00035840 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\win32process.pyd 2014-01-23 12:37 - 2014-01-23 12:37 - 00036352 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\_psutil_mswindows.pyd 2012-02-07 17:37 - 2012-02-07 17:37 - 00098816 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\win32api.pyd 2012-02-07 17:38 - 2012-02-07 17:38 - 00358912 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\pythoncom27.dll 2012-02-07 17:36 - 2012-02-07 17:36 - 00111616 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\win32file.pyd 2012-02-07 17:36 - 2012-02-07 17:36 - 00024064 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\win32pdh.pyd 2015-04-16 13:27 - 2015-04-16 13:27 - 02386432 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\acestreamengine.pywebrtc.pyd 2015-12-18 01:24 - 2016-10-20 11:34 - 03054080 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\acestreamengine.live.pyd 2013-12-21 14:20 - 2013-12-21 14:20 - 00053248 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\_blist.pyd 2011-06-12 14:06 - 2011-06-12 14:06 - 00106496 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\_ctypes.pyd 2013-12-21 14:20 - 2013-12-21 14:20 - 00040448 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\bitarray._bitarray.pyd 2011-06-12 14:06 - 2011-06-12 14:06 - 00011776 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\select.pyd 2015-12-17 22:19 - 2016-05-19 00:37 - 00242792 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\acestreamengine.pysegmenter.pyd 2015-04-16 13:29 - 2015-04-16 13:29 - 00112142 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\libgcc_s_dw2-1.dll 2011-01-18 22:56 - 2011-01-18 22:56 - 00334336 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\M2Crypto.__m2crypto.pyd 2011-06-12 14:06 - 2011-06-12 14:06 - 00152576 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\pyexpat.pyd 2011-02-13 16:02 - 2011-02-13 16:02 - 00031232 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\Crypto.Cipher.AES.pyd 2015-12-18 01:46 - 2016-10-20 11:34 - 05037568 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\acestreamengine.CoreApp.pyd 2011-06-12 14:06 - 2011-06-12 14:06 - 00057344 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\_sqlite3.pyd 2011-06-12 14:06 - 2011-06-12 14:06 - 00635392 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\sqlite3.dll 2016-05-20 01:45 - 2016-05-19 00:37 - 00014848 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\netifaces.pyd 2010-10-10 23:23 - 2010-10-10 23:23 - 00723968 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\apsw.pyd 2013-01-29 17:20 - 2013-01-29 17:20 - 00082944 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\cpyamf.util.pyd 2011-07-15 20:37 - 2011-07-15 20:37 - 00981504 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\wx._core_.pyd 2011-07-15 20:38 - 2011-07-15 20:38 - 00746496 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\wx._gdi_.pyd 2011-07-15 20:38 - 2011-07-15 20:38 - 00670720 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\wx._windows_.pyd 2011-07-15 20:38 - 2011-07-15 20:38 - 00966144 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\wx._controls_.pyd 2011-07-15 20:38 - 2011-07-15 20:38 - 00674816 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\wx._misc_.pyd 2011-06-12 14:06 - 2011-06-12 14:06 - 00688128 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\unicodedata.pyd 2015-04-16 13:29 - 2015-04-16 13:29 - 00061952 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\miniupnpc.pyd 2013-01-29 17:20 - 2013-01-29 17:20 - 00066048 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\cpyamf.amf0.pyd 2016-10-02 07:24 - 2016-10-20 11:34 - 00281600 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\acestreamengine.jsplayer.pyd 2016-10-02 07:24 - 2016-10-01 19:50 - 00350720 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\acestreamengine.pyvlc.pyd 2015-08-06 13:30 - 2015-08-06 13:30 - 00164216 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\player\libtsplayer.dll 2015-08-06 13:30 - 2015-08-06 13:30 - 01968504 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\player\libtsplayercore.dll 2016-10-02 07:24 - 2016-10-11 16:32 - 00262760 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\engine\lib\acestreamengine.pysegmenter2.pyd 2016-09-30 19:59 - 2016-10-30 08:12 - 51889264 _____ () C:\Users\dkgod\AppData\Roaming\Spotify\libcef.dll 2016-10-30 08:12 - 2016-10-30 08:12 - 00100464 _____ () C:\Users\dkgod\AppData\Roaming\Spotify\SpotifyWinRT.dll 2016-09-30 19:59 - 2016-10-30 08:12 - 01803888 _____ () C:\Users\dkgod\AppData\Roaming\Spotify\libglesv2.dll 2016-09-30 19:59 - 2016-10-30 08:12 - 00086128 _____ () C:\Users\dkgod\AppData\Roaming\Spotify\libegl.dll 2016-11-01 23:07 - 2016-11-01 23:07 - 00062168 _____ () C:\Program Files\CCleaner\branding.dll 2016-11-01 23:28 - 2016-11-01 23:28 - 00369664 ____N () C:\Users\dkgod\AppData\Local\Temp\3SR49Q0ABC.exe 2016-11-01 23:40 - 2016-11-01 23:40 - 00369664 _____ () C:\Program Files\7I42TMEFWD\7I42TMEFW.exe 2016-11-02 00:40 - 2016-11-02 00:40 - 00369664 _____ () C:\Program Files\OE22JC6BVC\OE22JC6BV.exe 2016-11-02 00:43 - 2016-11-02 00:43 - 00369664 ____N () C:\Users\dkgod\AppData\Local\Temp\QFFHUXVXD\QFFHUXVXD.exe 2016-11-02 01:38 - 2016-11-02 01:38 - 00369664 ____N () C:\Users\dkgod\AppData\Local\Temp\4FSB8NT65\4FSB8NT65.exe 2016-11-02 22:32 - 2016-11-02 22:32 - 00369664 _____ () C:\Users\dkgod\AppData\Local\Temp\CNTJM3GM5\CNTJM3GM5.exe 2016-11-02 22:33 - 2016-11-02 22:33 - 00369664 _____ () C:\Users\dkgod\AppData\Local\Temp\91LLK0S72\91LLK0S72.exe 2015-11-10 07:54 - 2015-11-10 07:54 - 00027000 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\ace_update.exe 2011-06-12 14:09 - 2011-06-12 14:09 - 00038400 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\_socket.pyd 2011-06-12 14:09 - 2011-06-12 14:09 - 00720896 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\_ssl.pyd 2011-07-15 20:37 - 2011-07-15 20:37 - 00981504 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\wx._core_.pyd 2011-07-15 20:38 - 2011-07-15 20:38 - 00746496 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\wx._gdi_.pyd 2011-07-15 20:38 - 2011-07-15 20:38 - 00670720 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\wx._windows_.pyd 2011-07-15 20:38 - 2011-07-15 20:38 - 00966144 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\wx._controls_.pyd 2011-07-15 20:38 - 2011-07-15 20:38 - 00674816 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\wx._misc_.pyd 2011-06-12 14:06 - 2011-06-12 14:06 - 00287232 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\_hashlib.pyd 2011-01-18 22:56 - 2011-01-18 22:56 - 00334336 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\M2Crypto.__m2crypto.pyd 2011-06-12 14:06 - 2011-06-12 14:06 - 00011776 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\select.pyd 2011-06-12 14:06 - 2011-06-12 14:06 - 00152576 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\pyexpat.pyd 2012-02-07 17:37 - 2012-02-07 17:37 - 00098816 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\win32api.pyd 2012-02-07 17:35 - 2012-02-07 17:35 - 00110080 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\pywintypes27.dll 2012-02-07 17:38 - 2012-02-07 17:38 - 00358912 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\pythoncom27.dll 2012-02-07 17:36 - 2012-02-07 17:36 - 00111616 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\win32file.pyd 2012-02-07 17:36 - 2012-02-07 17:36 - 00024064 _____ () C:\Users\dkgod\AppData\Roaming\ACEStream\updater\lib\win32pdh.pyd 2016-11-03 16:14 - 2016-11-03 16:14 - 00369664 _____ () C:\Program Files\21DQ8I80YT\21DQ8I80Y.exe 2016-11-03 16:15 - 2016-11-03 16:15 - 00707072 _____ () C:\Users\dkgod\AppData\Local\Temp\is-L9DGU.tmp\IYLBPQGYM.tmp 2016-11-03 16:15 - 2008-10-15 15:44 - 00205312 _____ () C:\Users\dkgod\AppData\Local\Temp\is-OV3HT.tmp\itdownload.dll 2016-11-03 16:18 - 2016-11-03 16:18 - 00369664 _____ () C:\Users\dkgod\AppData\Local\Temp\H93DJ8PP4\H93DJ8PP4.exe 2016-08-11 14:44 - 2016-08-11 14:44 - 00170496 _____ () C:\Users\dkgod\AppData\Roaming\Hemkajdoa\Hemkajdoa.exe 2016-11-03 15:10 - 2016-11-03 15:10 - 00248320 _____ () C:\ProgramData\awna\TransDinair.dll 2016-11-03 15:11 - 2016-10-31 06:29 - 01819240 _____ () C:\Program Files\Google\Chrome\Application\54.0.2840.87\libglesv2.dll 2016-11-03 15:11 - 2016-10-31 06:29 - 00093288 _____ () C:\Program Files\Google\Chrome\Application\54.0.2840.87\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2015-07-10 09:28 - 2016-11-02 22:29 - 00001841 ____A C:\WINDOWS\system32\Drivers\etc\hosts 107.178.255.88 www.google-analytics.com 107.178.255.88 www.statcounter.com 107.178.255.88 statcounter.com 107.178.255.88 ssl.google-analytics.com 107.178.255.88 partner.googleadservices.com 107.178.255.88 google-analytics.com 107.178.248.130 static.doubleclick.net 107.178.247.130 connect.facebook.net 107.178.255.88 www.google-analytics.com 107.178.255.88 www.statcounter.com 107.178.255.88 statcounter.com 107.178.255.88 ssl.google-analytics.com 107.178.255.88 partner.googleadservices.com 107.178.255.88 google-analytics.com 107.178.248.130 static.doubleclick.net 107.178.247.130 connect.facebook.net127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com 127.0.0.1 union.baidu2019.com 0.0.0.1 mssplus.mcafee.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2147580673-1131091785-3466399999-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\dkgod\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 208.67.222.222 - 208.67.220.220 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [UDP Query User{8EB3D5BC-407B-474F-8BDF-2B83BE62B612}C:\program files\allplayer remote\allplayerremotecontrol.exe] => (Allow) C:\program files\allplayer remote\allplayerremotecontrol.exe FirewallRules: [TCP Query User{A0423100-D1FD-4585-97FA-7F6D100BC718}C:\program files\allplayer remote\allplayerremotecontrol.exe] => (Allow) C:\program files\allplayer remote\allplayerremotecontrol.exe FirewallRules: [{38D07C25-7F28-47A3-95CC-B82572AACB16}] => (Allow) C:\Program Files\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{1EAED5D3-1BB0-457B-B488-71D44D348845}] => (Allow) C:\Program Files\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{8924F09B-CEF1-4253-9040-DA2D9E0EC0BF}] => (Allow) C:\Users\dkgod\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{E5E09191-E4B8-49FA-BCCE-8D35CB9DADE9}] => (Allow) C:\Users\dkgod\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{9DAC58FE-87BA-4BB9-8D84-8275E46E8FCD}] => (Allow) C:\Users\dkgod\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{FCEA3B4E-80BD-4452-8AB8-78ABA8B1C40B}] => (Allow) C:\Users\dkgod\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{D263E3BA-9663-447A-8C30-348B44CC139A}] => (Allow) C:\Users\dkgod\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{41D5068D-BFFA-4B0A-B3E8-655B5035683C}] => (Allow) C:\Users\dkgod\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [UDP Query User{8BAA2552-6C11-4CD5-AB44-8EF2DCE0D06F}C:\users\dkgod\appdata\roaming\acestream\engine\ace_engine.exe] => (Allow) C:\users\dkgod\appdata\roaming\acestream\engine\ace_engine.exe FirewallRules: [TCP Query User{7B598E40-D407-4238-B0E9-A1BC235DE08A}C:\users\dkgod\appdata\roaming\acestream\engine\ace_engine.exe] => (Allow) C:\users\dkgod\appdata\roaming\acestream\engine\ace_engine.exe FirewallRules: [UDP Query User{C41AE77A-F258-44F4-B2B1-3068EF45B911}C:\users\dkgod\appdata\roaming\acestream\engine\ace_engine.exe] => (Allow) C:\users\dkgod\appdata\roaming\acestream\engine\ace_engine.exe FirewallRules: [TCP Query User{9E3A2127-5075-428B-8D4C-5DBD2B0956B9}C:\users\dkgod\appdata\roaming\acestream\engine\ace_engine.exe] => (Allow) C:\users\dkgod\appdata\roaming\acestream\engine\ace_engine.exe FirewallRules: [{01A36604-124F-4807-95EE-B0ED9B2A42E8}] => (Allow) E:\Program Files\Steam\steamapps\common\Call of Duty World at War\CoDWaWmp.exe FirewallRules: [{1A08B1C5-BA67-47ED-8509-F4E574BF0C24}] => (Allow) E:\Program Files\Steam\steamapps\common\Call of Duty World at War\CoDWaWmp.exe FirewallRules: [{4FCCFEA0-0CBC-48C2-BE50-03B4B591B4E4}] => (Allow) E:\Program Files\Steam\steamapps\common\Call of Duty World at War\CoDWaW.exe FirewallRules: [{E8803066-27EC-4457-8D43-5E64CB1425C5}] => (Allow) E:\Program Files\Steam\steamapps\common\Call of Duty World at War\CoDWaW.exe FirewallRules: [UDP Query User{EA8415D6-4690-4AF7-ABF6-62474CDD14BC}E:\hearthstone\hearthstone.exe] => (Allow) E:\hearthstone\hearthstone.exe FirewallRules: [TCP Query User{BEDE87B2-2555-4840-92B6-169BEFF4528F}E:\hearthstone\hearthstone.exe] => (Allow) E:\hearthstone\hearthstone.exe FirewallRules: [{11C1D7EF-C08A-445F-9366-56A91EA857B8}] => (Allow) E:\Program Files\Steam\Steam.exe FirewallRules: [{855E5450-4B7A-44E6-B2B3-FBDEC12A7E0A}] => (Allow) E:\Program Files\Steam\Steam.exe FirewallRules: [{A8A3A182-5513-45D1-A785-57B41A561E87}] => (Allow) E:\Program Files\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{8B1E160B-7FC5-49C1-8A94-5F48D74C506B}] => (Allow) E:\Program Files\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{6F6BE2A4-F437-4029-9014-F3F0F72BCE71}] => (Allow) C:\Program Files\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{02F54B19-6133-47A4-8ABF-BA44D19454CC}] => (Allow) C:\Program Files\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [TCP Query User{ACDBA557-39E8-462A-BAAC-7B6880DDBCF5}C:\users\dkgod\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\dkgod\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{323377CA-7FE9-4811-AEB5-C2EAE9160AAC}C:\users\dkgod\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\dkgod\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{5046A8A9-43F8-4A7A-968C-A45F2830F83B}C:\program files\allplayer remote\allplayerremotecontrol.exe] => (Allow) C:\program files\allplayer remote\allplayerremotecontrol.exe FirewallRules: [UDP Query User{343B2E54-2C4D-4AA4-8C59-39E4A724BED4}C:\program files\allplayer remote\allplayerremotecontrol.exe] => (Allow) C:\program files\allplayer remote\allplayerremotecontrol.exe FirewallRules: [{BBB358A3-D7B8-4682-BB6D-733867132D22}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Restore Points ========================= ATTENTION: System Restore is disabled ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (11/03/2016 04:30:27 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-V1AL9M5) Description: Aktywacja aplikacji Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App nie powiodła się. Błąd: -2144927149. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (11/03/2016 04:30:27 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-V1AL9M5) Description: Aktywacja aplikacji Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App nie powiodła się. Błąd: -2144927149. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (11/03/2016 04:30:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-V1AL9M5) Description: Aktywacja aplikacji Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App nie powiodła się. Błąd: -2144927149. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (11/03/2016 04:25:01 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-V1AL9M5) Description: Aktywacja aplikacji Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App nie powiodła się. Błąd: -2144927149. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (11/03/2016 04:22:27 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-V1AL9M5) Description: Aktywacja aplikacji Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App nie powiodła się. Błąd: -2144927149. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (11/03/2016 04:22:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-V1AL9M5) Description: Aktywacja aplikacji Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App nie powiodła się. Błąd: -2144927149. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (11/03/2016 04:19:02 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-V1AL9M5) Description: Aktywacja aplikacji Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App nie powiodła się. Błąd: -2144927149. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (11/03/2016 04:18:27 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-V1AL9M5) Description: Aktywacja aplikacji Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App nie powiodła się. Błąd: -2144927149. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (11/03/2016 04:18:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-V1AL9M5) Description: Aktywacja aplikacji Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App nie powiodła się. Błąd: -2144927149. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (11/03/2016 04:18:22 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-V1AL9M5) Description: Aktywacja aplikacji Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App nie powiodła się. Błąd: -2144927149. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. System errors: ============= Error: (11/03/2016 04:24:59 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Viokdojvaf niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 600 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service. Error: (11/03/2016 04:18:19 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Viokdojvaf niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 600 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service. Error: (11/03/2016 04:12:50 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: Zgodnie z ustawieniami uprawnienia application-specific nie jest udzielane uprawnienie Local Activation do aplikacji serwera COM z identyfikatorem klasy CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} i identyfikatorem aplikacji APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} użytkownikowi NT AUTHORITY\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (Using LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Unavailable (Unavailable). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (11/02/2016 10:25:49 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: Zgodnie z ustawieniami uprawnienia application-specific nie jest udzielane uprawnienie Local Activation do aplikacji serwera COM z identyfikatorem klasy CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} i identyfikatorem aplikacji APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} użytkownikowi NT AUTHORITY\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (Using LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Unavailable (Unavailable). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (11/01/2016 11:39:20 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Viokdojvaf niespodziewanie zakończyła pracę. Wystąpiło to razy: 4. W przeciągu 600 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service. Error: (11/01/2016 11:28:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa DifkuCiabf niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 400 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service. Error: (11/01/2016 11:28:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Aiduwb Updater niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 400 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service. Error: (11/01/2016 11:28:15 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa 05B93BAB-FAE5-44A8-9846-753385F00C07 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 400 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service. Error: (11/01/2016 11:05:31 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Viokdojvaf niespodziewanie zakończyła pracę. Wystąpiło to razy: 3. W przeciągu 600 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service. Error: (11/01/2016 11:04:28 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Viokdojvaf niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 600 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service. CodeIntegrity: =================================== Date: 2016-10-19 21:53:47.515 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Raptr Inc\Raptr\ltc_help32-116716.dll that did not meet the Store signing level requirements. Date: 2016-10-19 21:53:14.951 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Raptr Inc\Raptr\ltc_help32-116716.dll that did not meet the Store signing level requirements. Date: 2016-10-19 21:53:14.512 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Raptr Inc\Raptr\ltc_help32-116716.dll that did not meet the Store signing level requirements. ==================== Memory info =========================== Processor: AMD Phenom(tm) II X4 840 Processor Percentage of memory in use: 67% Total physical RAM: 3058.57 MB Available physical RAM: 989.77 MB Total Virtual: 5362.57 MB Available Virtual: 1935.08 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:55.9 GB) (Free:16.27 GB) NTFS Drive e: () (Fixed) (Total:931.17 GB) (Free:516.47 GB) NTFS Drive g: (System Reserved) (Fixed) (Total:0.34 GB) (Free:0.31 GB) NTFS ==>[system with boot components (obtained from drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: BCF3BCF3) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931.2 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 55.9 GB) (Disk ID: 1A536DAF) Partition 1: (Not Active) - (Size=55.9 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================