Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20.06.2018 Ran by Anna (20-06-2018 18:58:42) Running from C:\Users\Anna\Downloads Windows 10 Pro Version 1803 17134.112 (X64) (2018-05-15 18:02:31) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-368267494-1115037355-518875747-500 - Administrator - Disabled) Anna (S-1-5-21-368267494-1115037355-518875747-1000 - Administrator - Enabled) => C:\Users\Anna DefaultAccount (S-1-5-21-368267494-1115037355-518875747-503 - Limited - Disabled) Guest (S-1-5-21-368267494-1115037355-518875747-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-368267494-1115037355-518875747-1003 - Limited - Enabled) WDAGUtilityAccount (S-1-5-21-368267494-1115037355-518875747-504 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-368267494-1115037355-518875747-1000\...\uTorrent) (Version: 3.5.3.44396 - BitTorrent Inc.) 7+ Taskbar Tweaker v5.5 (HKU\S-1-5-21-368267494-1115037355-518875747-1000\...\7 Taskbar Tweaker) (Version: 5.5 - RaMMicHaeL) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 18.011.20040 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 30.0.0.107 - Adobe Systems Incorporated) Adobe Flash Player 30 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 30.0.0.113 - Adobe Systems Incorporated) AIMP (HKLM-x32\...\AIMP) (Version: v4.51.2077, 08.05.2018 - AIMP DevTeam) Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version: - Microsoft) Amazon Kindle (HKU\S-1-5-21-368267494-1115037355-518875747-1000\...\Amazon Kindle) (Version: 1.21.0.48017 - Amazon) Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 375.70 - NVIDIA Corporation) Hidden ANT Drivers Installer x64 (HKLM\...\{20AB389B-8602-403C-B19B-F0A1D6C510A5}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden Apple Application Support (32-bit) (HKLM-x32\...\{C56BA005-F02C-461B-ACA5-A0CE3E32578F}) (Version: 6.5 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{C8087B7C-8496-45BE-92FB-91D31EB73969}) (Version: 6.5 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{64695C4A-C68F-46B5-A734-50EBF124A68E}) (Version: 11.3.3.4 - Apple Inc.) Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.) Assassin's Creed Revelations (HKLM-x32\...\Uplay Install 40) (Version: - Ubisoft) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 18.5.2342 - AVAST Software) Backup and Sync from Google (HKLM\...\{AEFBDB5B-899F-4AE6-B789-BA56A652A476}) (Version: 3.42.9858.3671 - Google, Inc.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) ChomikBox (HKLM-x32\...\{45B8131C-E239-4BE0-A92B-0E7FE1BBF83E}) (Version: 2.0.8.2 - Chomikuj.pl) Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden Dodatek Zapisywanie jako PDF lub XPS firmy Microsoft dla programów pakietu Microsoft Office 2007 (HKLM-x32\...\{90120000-00B2-0415-0000-0000000FF1CE}) (Version: 12.0.4518.1020 - Microsoft Corporation) Dropbox (HKU\S-1-5-21-368267494-1115037355-518875747-1000\...\Dropbox) (Version: 51.4.66 - Dropbox, Inc.) Eco Driver Pack (HKLM-x32\...\Samsung Eco Driver Pack) (Version: 2.01.10.00 (2015-05-28) - Samsung Electronics Co., Ltd.) e-Deklaracje Desktop (HKLM-x32\...\{74B27DF2-A14C-A0E1-B8CD-160CF618F059}) (Version: 10.0.3 - Ministerstwo Finansow) Hidden e-Deklaracje Desktop (HKLM-x32\...\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1) (Version: 10.0.3 - Ministerstwo Finansow) Elevated Installer (HKLM-x32\...\{6E257EB0-5EFF-416D-82D4-592924566BB4}) (Version: 6.5.1.0 - Garmin Ltd or its subsidiaries) Hidden e-pity 9.2.12 za rok 2017 (HKLM-x32\...\{80D8170E-5590-218-B9ED-E24E4C99A11D}_is1) (Version: 9.2.12 - e-file sp. z o.o. sp.k.) Fitbit Connect (HKLM-x32\...\{9EC69368-C1C7-48BA-AD93-01EFC142DDF9}) (Version: 2.0.0.6630 - Fitbit Inc.) FlashBack Express 5 (HKLM-x32\...\FlashBack Express 5) (Version: 5.30.0.4329 - Blueberry Software (UK) Ltd.) Free FLAC to MP3 Converter 1.4 (HKLM-x32\...\{A54C01BD-1277-4722-B42B-EC9800A90B1E}_is1) (Version: 1.4 - PolySoft Solutions) Galeria fotografii (HKLM-x32\...\{77655DF6-A143-4A25-A5F8-127C8CE63EDA}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Garmin Express (HKLM-x32\...\{3e534d41-dcc4-4f51-9858-70dd42beb3d5}) (Version: 6.5.1.0 - Garmin Ltd or its subsidiaries) Garmin Express (HKLM-x32\...\{E1C18A5C-63D7-4DC5-977F-5B4BAB4169D9}) (Version: 6.5.1.0 - Garmin Ltd or its subsidiaries) Hidden Git version 1.9.5-preview20150319 (HKLM-x32\...\Git_is1) (Version: 1.9.5-preview20150319 - The Git Development Community) GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 67.0.3396.87 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden Grim Fandango Remastered (HKLM-x32\...\1207667183_is1) (Version: 1.4.0 - GOG.com) HiSuite (HKLM-x32\...\Hi Suite) (Version: 1.0 - Huawei Technologies Co.,Ltd) Huawei E5573 (HKLM-x32\...\Huawei E5573) (Version: 22.001.26.01.1202 - Huawei Technologies Co.,Ltd) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.13.1402 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4835 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 3.0.1337.1) (HKLM\...\{302600C1-6BDF-4FD1-1307-148929CC1385}) (Version: 3.1.1307.0366 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.2.1000 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation) Intel® PROSet/Wireless Software (HKLM-x32\...\{03929cf1-3ae4-4765-b8b3-32b8e2e26a8d}) (Version: 19.60.0 - Intel Corporation) iTunes (HKLM\...\{BE065D5C-5EB5-4F39-A112-32897C297935}) (Version: 12.7.5.9 - Apple Inc.) Java 8 Update 171 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180171F0}) (Version: 8.0.1710.11 - Oracle Corporation) Kajko i Kokosz CD (HKLM-x32\...\Kajko i Kokosz CD) (Version: - ) Light Image Resizer 4.6.9.0 (HKLM-x32\...\{EBE030DD-D404-4D92-85E9-8C3624820808}_is1) (Version: 4.6.9.0 - ObviousIdea) Malwarebytes (wersja 3.5.1.2522) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.5.1.2522 - Malwarebytes) ManyCam 4.1.2 (HKLM-x32\...\ManyCam) (Version: 4.1.2 - Visicom Media Inc.) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23918 (HKLM-x32\...\{2e085fd2-a3e4-4b39-8e10-6b8d35f55244}) (Version: 14.0.23918.0 - Microsoft Corporation) Movie Maker (HKLM-x32\...\{38F03569-A636-4CF3-BDDE-032C8C251304}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{DAE8CC57-EBF5-4D46-8572-9A0C769D6F16}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 60.0.2 (x64 en-US) (HKLM\...\Mozilla Firefox 60.0.2 (x64 en-US)) (Version: 60.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 59.0.2.6656 - Mozilla) MyFreeCodec (HKU\S-1-5-21-368267494-1115037355-518875747-1000\...\MyFreeCodec) (Version: - ) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Node.js (HKLM\...\{4219DF19-09C9-47A4-88C0-49778E491E54}) (Version: 8.9.4 - Node.js Foundation) NVIDIA GeForce Experience 2.11.4.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.1 - NVIDIA Corporation) NVIDIA PhysX System Software 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: 10.5.21.179 - Electronic Arts, Inc.) PHotkey (HKLM-x32\...\{E50C224A-BBF2-428D-9DCF-DBF9DF85C40E}) (Version: 1.00.0094 - Pegatron Corporation) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.) Podstawowe programy Windows Live (HKLM-x32\...\{8FFD72FC-4FFA-472D-9F76-AEC85F602F9D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) PuTTY release 0.70 (64-bit) (HKLM\...\{45B3032F-22CC-40CD-9E97-4DA7095FA5A2}) (Version: 0.70.0.0 - Simon Tatham) Python 2.7.13 (HKLM-x32\...\{4A656C6C-D24A-473F-9747-3A8D00907A03}) (Version: 2.7.13150 - Python Software Foundation) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.72.410.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7640 - Realtek Semiconductor Corp.) Realtek USB Card Reader (HKLM-x32\...\{1E496A68-4943-424E-829D-5C3C85B7B8F2}) (Version: 6.2.9200.30150 - Realtek Semiconductor Corp.) RelevantKnowledge (HKLM-x32\...\{d08d9f98-1c78-4704-87e6-368b0023d831}) (Version: 1.3.337.412 - TMRG, Inc.) <==== ATTENTION Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Version: 2.0.0.78 - Samsung Electronics Co., Ltd.) Samsung Printer Center (HKLM-x32\...\Samsung Printer Center) (Version: 1.0.0.12 - Samsung Electronics Co., Ltd.) Samsung Printer Diagnostics (HKLM-x32\...\Samsung Printer Diagnostics) (Version: 1.0.4.7 - Samsung Electronics Co., Ltd.) Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.26 - Samsung Electronics Co., Ltd.) Hidden SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 2.11.4.1 - NVIDIA Corporation) Hidden Skype™ 7.30 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.30.105 - Skype Technologies S.A.) Slack (HKU\S-1-5-21-368267494-1115037355-518875747-1000\...\slack) (Version: 3.0.4 - Slack Technologies) Spotify (HKU\S-1-5-21-368267494-1115037355-518875747-1000\...\Spotify) (Version: 1.0.69.336.g7edcc575 - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Stylish Driver Pack (HKLM-x32\...\Samsung Stylish UI Pack) (Version: 1.01.74.00 (2015-02-09) - Samsung Electronics Co., Ltd.) Sublime Text Build 3126 (HKLM\...\Sublime Text 3_is1) (Version: - Sublime HQ Pty Ltd) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.9.20 - Synaptics Incorporated) System Requirements Lab CYRI (HKLM-x32\...\{906B34E5-573C-445A-A5D3-40B6BF0A2EC4}) (Version: 6.0.21.0 - Husdawg, LLC) System Requirements Lab Detection (HKLM-x32\...\{127AB9AB-7628-4EC5-A052-98CB3ACD8728}) (Version: 6.1.5.0 - Husdawg, LLC) The Witcher 3 - Wild Hunt - Game of the Year Edition (HKLM-x32\...\1495134320_is1) (Version: 1.30.0.0 - GOG.com) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) Uninstall Samsung Printer Software (HKLM-x32\...\TotalUninstaller) (Version: 4.0.0.12 - Samsung Electronics CO., LTD.) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 25.0 - Ubisoft) View User's Guide (HKLM-x32\...\View User Guide) (Version: 4.0.0.6 - ) VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.3 - VideoLAN) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) WBFS Manager 3.0 (HKLM-x32\...\WBFS Manager 3.0) (Version: 3.0 - AlexDP) WebM Project Directshow Filters (HKU\S-1-5-21-368267494-1115037355-518875747-1000\...\webmdshow) (Version: 1.0.4.1 - WebM Project) WinDirStat 1.1.2 (HKU\S-1-5-21-368267494-1115037355-518875747-1000\...\WinDirStat) (Version: - ) Windows 7 Games for Windows 8 and 10 (HKLM-x32\...\MicrosoftGamesForWin8) (Version: 1.1.0.10 - ) Windows Driver Package - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.) Windows Driver Package - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software) WinRAR 5.50 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) Wtyczka e-Deklaracje (HKLM-x32\...\{81BF6353-3C5B-4E6E-A566-7E162A00BF72}_is1) (Version: 4.1.0 - Ministerstwo Finansów) XAMPP (HKLM-x32\...\xampp) (Version: 7.1.11-0 - Bitnami) XSplit Gamecaster (HKLM-x32\...\{78319FA3-94BA-4490-A67B-8682B16AB9B0}) (Version: 3.3.1802.1511 - SplitmediaLabs) Youtube Downloader HD v. 2.9.9.30 (HKLM-x32\...\Youtube Downloader HD_is1) (Version: - YoutubeDownloaderHD.com) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) HKU\S-1-5-21-368267494-1115037355-518875747-1000\...\ChromeHTML: -> <==== ATTENTION CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Anna\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Anna\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Anna\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Anna\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{ca586c80-7c84-4b88-8537-726724df6929}\InprocServer32 -> C:\Program Files (x86)\Git\git-cheetah\git_shell_ext64.dll () CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-368267494-1115037355-518875747-1000_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2018-05-30] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2018-05-30] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2018-05-30] (Google) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-06-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-06-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-06-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-06-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-06-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-06-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-06-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-06-04] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-20] (AVAST Software) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-20] (AVAST Software) ContextMenuHandlers1: [BB FlashBack 2] -> {A8065B9E-193F-4797-B62D-8F6321E7FCCB} => -> No File ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2018-05-30] (Google) ContextMenuHandlers1: [QuickShare] -> {A8065B9E-193F-4797-B62D-8F6321E7FCCB} => -> No File ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-09-13] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-09-13] (Alexander Roshal) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-20] (AVAST Software) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-09] (Malwarebytes) ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2018-05-30] (Google) ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> No File ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-10-20] (Intel Corporation) ContextMenuHandlers5: [igfxOSP] -> {FA507C3F-30C6-4DCA-9EE5-2656072EEC14} => C:\WINDOWS\system32\igfxOSP.dll [2017-10-20] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-05-01] (NVIDIA Corporation) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-20] (AVAST Software) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-09] (Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-09-13] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-09-13] (Alexander Roshal) ContextMenuHandlers1_S-1-5-21-368267494-1115037355-518875747-1000: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-06-04] (Dropbox, Inc.) ContextMenuHandlers1_S-1-5-21-368267494-1115037355-518875747-1000: [Git-Cheetah] -> {ca586c80-7c84-4b88-8537-726724df6929} => C:\Program Files (x86)\Git\git-cheetah\git_shell_ext64.dll [2015-03-19] () ContextMenuHandlers2_S-1-5-21-368267494-1115037355-518875747-1000: [Git-Cheetah] -> {ca586c80-7c84-4b88-8537-726724df6929} => C:\Program Files (x86)\Git\git-cheetah\git_shell_ext64.dll [2015-03-19] () ContextMenuHandlers4_S-1-5-21-368267494-1115037355-518875747-1000: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-06-04] (Dropbox, Inc.) ContextMenuHandlers4_S-1-5-21-368267494-1115037355-518875747-1000: [Git-Cheetah] -> {ca586c80-7c84-4b88-8537-726724df6929} => C:\Program Files (x86)\Git\git-cheetah\git_shell_ext64.dll [2015-03-19] () ContextMenuHandlers5_S-1-5-21-368267494-1115037355-518875747-1000: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Anna\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-06-04] (Dropbox, Inc.) ContextMenuHandlers5_S-1-5-21-368267494-1115037355-518875747-1000: [Git-Cheetah] -> {ca586c80-7c84-4b88-8537-726724df6929} => C:\Program Files (x86)\Git\git-cheetah\git_shell_ext64.dll [2015-03-19] () ContextMenuHandlers6_S-1-5-21-368267494-1115037355-518875747-1000: [Git-Cheetah] -> {ca586c80-7c84-4b88-8537-726724df6929} => C:\Program Files (x86)\Git\git-cheetah\git_shell_ext64.dll [2015-03-19] () ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {086BBA99-4516-4212-B8DA-95FC8D6ADB25} - System32\Tasks\e-pity2017_styczen => C:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe [2018-02-28] (e-file sp. z o.o. sp. k.) Task: {0F128A8A-9B7D-4D66-8371-FA6A62809C2A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION Task: {0FC70A10-1C84-4E41-90A0-F4A1CEDF5766} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION Task: {1449937B-C400-4A10-B8A1-771F66F2456E} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {14F760F3-D9EE-4CFA-BD6D-F4B40CF6C4D7} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_113_Plugin.exe [2018-06-07] (Adobe Systems Incorporated) Task: {15781CC3-6382-4386-B3F9-321F64AB77B4} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {1B62FB10-BEE1-4E53-BEB8-2AE4C50C99A4} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION Task: {1E598A7B-44FC-4BDC-9F00-C020F41695D9} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {23BED308-DCEF-4A55-989A-F5E352E5D2B8} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION Task: {26FB0EF6-9559-419A-98C4-7B6F9CD0DFC2} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {2DF32B7F-38EA-4A10-AF68-5603B66F6CB7} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-368267494-1115037355-518875747-1000UA1d23751dcddcc09 => C:\Users\Anna\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-05] (Dropbox, Inc.) Task: {39683F7F-CB82-45C5-945B-0E4A3DFEB099} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION Task: {48B2F36B-7B35-4B28-868F-76884FD261CC} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-09-14] (Synaptics Incorporated) Task: {4B8AA5E4-EE68-415D-B4AF-E98956088B0F} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {4D984793-6AAF-45A5-941D-9AD3774EBC38} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {51988075-D9E0-4D0D-BE29-2AEC2D7A9958} - System32\Tasks\Product Updater => C:\Program Files (x86)\All Free FLAC to MP3 Converter\FFProductUpdater.exe Task: {611C3B72-7C3E-4697-891A-E63626CCF451} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2018-01-08] (Apple Inc.) Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-12] () Task: {6840BFD9-ADB4-4484-9402-FFE789FAEBE7} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {6873823B-18A8-4595-8C7F-885A14EC54A2} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {6940D70A-5053-4A64-B741-AC1C3293DCF8} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-06-20] (AVAST Software) Task: {6D84B901-FFBC-4581-A439-95F21BC6FB36} - System32\Tasks\EPM Preload => C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2DotNetHandler.exe [2015-04-24] () Task: {6E16C6F1-1373-4022-938F-E56A3C45EA2A} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {7041C030-4039-45B7-8920-FCFC7540C857} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {74D37C96-94E1-4128-B90C-1FC40671B809} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.) Task: {7C107A58-041C-4997-B931-F1EC8125964A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-06-07] (Adobe Systems Incorporated) Task: {804D330D-C740-488F-9FF8-702481355412} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION Task: {83E9089B-5F6C-47B6-997D-808A29A1D6DC} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {83FE4793-2B5C-47A9-B43A-FE603469E5F2} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated) Task: {928C7CF8-2C64-4318-9E22-D42143C9FF90} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {A0222D4A-3C69-4009-BBAC-42085282A76F} - System32\Tasks\LaunchPreSignup => C:\Program Files (x86)\OLBPre\OLBPre.exe <==== ATTENTION Task: {A0B3D23F-A2AF-4903-AA62-7B8F329133E5} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {A8351DB3-3868-4AAC-9B34-29C26E665F7E} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION Task: {ACEA180D-2B85-46E7-974B-48F969F4D2BF} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION Task: {AEC5571B-7778-4876-9078-E5B2F8373759} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION Task: {B683D3DC-4085-4235-9D86-BB2C616B6B45} - System32\Tasks\e-pity2017_kwiecien => C:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe [2018-02-28] (e-file sp. z o.o. sp. k.) Task: {BCA382FB-1D8F-4DA4-945D-2377F7F3A055} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION Task: {C5A02D68-3C45-4045-85D0-99EC4659798D} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-368267494-1115037355-518875747-1000Core1d23751dcd796b8 => C:\Users\Anna\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-05] (Dropbox, Inc.) Task: {C7ED601E-8EF3-493C-8EBC-92F0C6AAF268} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {C94B63DE-D576-4842-9055-FDE4016D65C8} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {CC18539B-67BC-42C8-9751-19B477368060} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {CF0F1E44-316E-4022-AB9A-ADB778CB370C} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION Task: {D4256822-E77A-4E41-B109-9E2BF39758C9} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2018-06-20] (AVAST Software) Task: {D96C6A3D-DBC5-4E3D-8A56-116E1DF73F89} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [2018-06-06] () Task: {DB1B367E-E602-4424-BDB1-648DF0A986C0} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {DE9DA26B-5C89-4BF1-A588-1C5ED832C545} - \Microsoft\Windows\Setup\gwx\rundetector -> No File <==== ATTENTION Task: {E0F74C3E-888E-4EE0-8546-A395013887CD} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {E34A03B6-5D79-4DA1-9DDA-ADD059BD4608} - \Microsoft\Windows\Setup\GWXTriggers\Time-Weekend -> No File <==== ATTENTION Task: {E600B50F-AD8B-4221-944B-FB6E8C1E0251} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {E6745C10-C937-4A0F-B343-01FD2FBC9F51} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION Task: {ECF34FBE-6D99-421E-ABAD-C8BDBFFA5E4D} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION Task: {EE8EE456-1B88-43D9-9FA8-E0CC28878C59} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {EF203969-5C7B-49B3-B245-23E3AC70AA8E} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {F21E6CF4-E170-4D0B-9C7A-370273F9C341} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {F65C3950-A863-4DEC-95F6-240C7A27A61C} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION Task: {F850A18C-5B75-44FC-B831-DD9A31AC28F8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.) Task: {F9B7F1AB-36B6-4354-BEF2-667FC2C9BF74} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => C:\Program Files\Microsoft Security Client\MpCmdRun.exe (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-368267494-1115037355-518875747-1000Core1d23751dcd796b8.job => C:\Users\Anna\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-368267494-1115037355-518875747-1000UA1d23751dcddcc09.job => C:\Users\Anna\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ShortcutWithArgument: C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Program uruchamiający aplikacje Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --show-app-list ShortcutWithArgument: C:\Users\Anna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\Program uruchamiający aplikacje Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --show-app-list ShortcutWithArgument: C:\Users\Anna\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Program uruchamiający aplikacje Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --show-app-list ==================== Loaded Modules (Whitelisted) ============== 2014-12-09 23:34 - 2013-12-03 00:21 - 000136192 _____ () C:\Program Files (x86)\PHotkey\PGFNEXSrv.exe 2015-10-16 20:11 - 2015-01-29 13:02 - 000022528 _____ () C:\WINDOWS\System32\us005lm.dll 2017-11-30 19:54 - 2017-11-30 19:54 - 000088888 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2018-05-15 18:58 - 2018-05-15 18:58 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2016-06-18 21:20 - 2014-11-20 10:48 - 000242264 _____ () C:\ProgramData\MobileBrServ\mbbservice.exe 2016-06-11 17:46 - 2016-02-16 11:04 - 000192304 _____ () C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe 2016-05-26 11:47 - 2016-04-01 18:38 - 000498488 _____ () C:\Windows\SysWOW64\spdsvc.exe 2015-12-27 20:36 - 2016-11-20 18:05 - 000189248 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.exe 2015-10-16 20:11 - 2015-10-16 20:11 - 000143664 _____ () C:\Windows\SysWOW64\SecUPDUtilSvc.exe 2018-06-20 17:40 - 2018-04-25 13:16 - 002297040 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2018-06-20 17:40 - 2018-05-30 09:22 - 002493648 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2015-12-27 20:35 - 2016-11-20 18:05 - 000075136 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2014-12-09 23:34 - 2013-10-14 20:11 - 002215424 _____ () C:\Program Files (x86)\PHotkey\PHotkey.exe 2018-04-12 01:34 - 2018-04-12 01:34 - 000491744 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2018-04-12 01:34 - 2018-04-12 01:34 - 000472064 _____ () C:\Windows\ShellExperiences\TileControl.dll 2018-04-12 01:34 - 2018-04-12 01:34 - 002759168 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll 2014-12-09 23:34 - 2010-12-17 15:04 - 000449032 _____ () C:\Program Files (x86)\PHotkey\ATouch64.exe 2014-12-09 23:34 - 2012-10-23 19:07 - 003471872 _____ () C:\Program Files (x86)\PHotkey\POSD.exe 2014-12-09 23:34 - 2013-10-14 18:09 - 008856576 _____ () C:\Program Files (x86)\PHotkey\GPMTray.exe 2018-06-13 18:59 - 2018-06-08 10:56 - 002185216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2018-04-16 20:02 - 2018-04-16 20:02 - 001922232 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.9328.1700.0_x64__8wekyb3d8bbwe\Microsoft.Applications.Telemetry.Windows.dll 2018-05-26 09:43 - 2018-05-26 09:44 - 027118080 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18041.14611.0_x64__8wekyb3d8bbwe\Video.UI.exe 2018-05-23 20:16 - 2018-05-23 20:16 - 000306176 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18041.14611.0_x64__8wekyb3d8bbwe\SharedUI.dll 2018-05-23 20:16 - 2018-05-23 20:16 - 006748672 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18041.14611.0_x64__8wekyb3d8bbwe\EntCommon.dll 2017-09-26 21:19 - 2017-09-26 21:19 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18041.14611.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2018-05-23 20:16 - 2018-05-23 20:16 - 009358848 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18041.14611.0_x64__8wekyb3d8bbwe\EntPlat.dll 2018-05-22 22:09 - 2018-05-22 22:09 - 000088888 _____ () C:\Program Files\iTunes\zlib1.dll 2018-05-22 22:08 - 2018-05-22 22:08 - 001356088 _____ () C:\Program Files\iTunes\libxml2.dll 2018-05-30 11:03 - 2018-05-30 11:03 - 046281248 _____ () C:\Program Files\Google\Drive\googledrivesync.exe 2018-06-20 17:43 - 2018-06-20 17:43 - 000113152 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\_ctypes.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000080896 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\bz2.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 001585152 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\_hashlib.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000128512 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\win32api.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000137728 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\pywintypes27.dll 2018-06-20 17:43 - 2018-06-20 17:43 - 000548864 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\pythoncom27.dll 2018-06-20 17:43 - 2018-06-20 17:43 - 000689664 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\unicodedata.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000438784 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\win32com.shell.shell.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 001489408 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\wx._core_.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 001007104 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\wx._gdi_.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 001039872 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\wx._windows_.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 001325056 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\wx._controls_.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000916992 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\wx._misc_.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 001084416 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\pysqlite2._sqlite.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000149504 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\win32file.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000136192 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\win32security.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000007680 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\hashobjs_ext.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000020992 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\thumbnails_ext.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000118784 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\usb_ext.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000047616 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\_socket.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 002224640 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\_ssl.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000014848 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\common.time34.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000023040 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\win32event.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000034304 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\windows.conditional.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000020480 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\windows.winwrap.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000110080 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\windows.volumes.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000223232 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\win32gui.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000173568 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\_elementtree.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000169472 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\pyexpat.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000048128 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\win32inet.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000103424 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\wx._html2.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000046080 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\_psutil_windows.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000633272 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\windows._cacheinvalidation.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000011776 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\win32crypt.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000301568 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\PIL._imaging.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000032256 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\_multiprocessing.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 005458944 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\cello.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000026112 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\_yappi.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000044032 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\win32process.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000027648 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\win32pipe.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000010752 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\select.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000029696 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\win32pdh.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000038400 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\windows.connectivity.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000073216 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\windows.device_monitor.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000020480 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\win32profile.pyd 2018-06-20 17:43 - 2018-06-20 17:43 - 000026624 _____ () C:\Users\Anna\AppData\Local\Temp\_MEI128722\win32ts.pyd 2018-06-13 15:34 - 2018-06-12 07:36 - 004608856 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.87\libglesv2.dll 2018-06-13 15:34 - 2018-06-12 07:36 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.87\libegl.dll 2015-10-16 20:12 - 2015-06-11 13:32 - 003055616 _____ () C:\WINDOWS\system32\DlgSearchEngine.dll 2014-12-09 23:34 - 2009-12-18 16:36 - 000973432 _____ () C:\Program Files (x86)\PHotkey\acAuth.dll 2014-12-09 23:34 - 2013-09-18 00:23 - 000108032 _____ () C:\Program Files (x86)\PHotkey\PGFNEX.dll 2015-11-13 15:13 - 2016-06-15 03:14 - 000020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2018-06-20 17:03 - 2018-06-20 17:03 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2018-06-20 17:01 - 2018-06-20 17:01 - 000483544 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll 2018-06-20 17:01 - 2018-06-20 17:01 - 000282840 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2018-06-07 19:50 - 2018-06-04 12:18 - 001107272 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\dropbox_watchdog.dll 2018-06-07 19:50 - 2018-06-04 12:18 - 002079048 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\dropbox_crashpad.dll 2018-06-07 19:50 - 2018-06-04 12:21 - 000106816 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\_ctypes.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000025408 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\select.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000020808 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000042312 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000700736 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\unicodedata.pyd 2018-06-07 19:50 - 2018-06-04 12:19 - 000021856 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000137032 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd 2018-06-07 19:50 - 2018-06-04 12:19 - 001845600 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd 2018-06-07 19:50 - 2018-06-04 12:19 - 000022880 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000123200 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\pywintypes27.dll 2018-06-07 19:50 - 2018-06-04 12:20 - 000112448 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32api.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000022872 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winffi.crt.compiled._winffi_crt.pyd 2018-06-07 19:50 - 2018-06-04 12:19 - 000063312 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000031040 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32event.pyd 2018-06-07 19:50 - 2018-06-04 12:19 - 000077120 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\fastpath.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000399168 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\pythoncom27.dll 2018-06-07 19:50 - 2018-06-04 12:21 - 000049984 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32process.pyd 2018-06-07 19:50 - 2018-06-04 12:19 - 000027456 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\mmapfile.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000131392 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32file.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000120648 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32security.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000392520 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000028000 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winffi.kernel32.compiled._winffi_kernel32.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000030536 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32clipboard.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000182080 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32gui.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000036672 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32pipe.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000032576 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32job.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000055104 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32service.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000064320 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32evtlog.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000023376 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winshell.compiled._winshell.pyd 2018-06-07 19:50 - 2018-06-04 12:19 - 000021840 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd 2018-06-07 19:50 - 2018-06-04 12:19 - 000022864 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\crashpad.compiled._Crashpad.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000066400 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winenumhandles.compiled._WinEnumHandles.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000025440 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd 2018-06-07 19:50 - 2018-06-04 12:19 - 000152384 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\pyexpat.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 003863880 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000091448 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\sip.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 001798464 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 001959232 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000035136 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32ts.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000155472 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineWidgets.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000521544 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000051024 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineCore.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000043336 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\PyQt5.QtWebChannel.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000131400 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000219984 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000204104 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000067392 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32print.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000054616 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winrpcserver.compiled._RPCServer.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000030528 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\win32profile.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000022880 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winffi.user32.compiled._winffi_user32.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000022368 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winffi.iphlpapi.compiled._winffi_iphlpapi.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000021856 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winffi.winerror.compiled._winffi_winerror.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000022368 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winffi.wininet.compiled._winffi_wininet.pyd 2018-06-07 19:50 - 2018-06-04 12:19 - 000027496 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000355648 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winxpgui.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000101704 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\PyQt5.QtWinExtras.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000023904 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd 2018-06-07 19:50 - 2018-06-04 12:19 - 000025432 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd 2018-06-07 19:50 - 2018-06-04 12:18 - 000036312 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\librsync.dll 2018-06-07 19:50 - 2018-06-04 12:19 - 000032608 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\enterprise_data.compiled._enterprise_data.pyd 2018-06-07 19:50 - 2018-06-04 12:18 - 000293392 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\EnterpriseDataAdapter.dll 2018-06-07 19:50 - 2018-06-04 12:21 - 000021856 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winffi.advapi32.compiled._winffi_advapi32.pyd 2018-06-07 19:50 - 2018-06-04 12:19 - 000181064 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL 2018-06-07 19:50 - 2018-06-04 12:21 - 000030544 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\wind3d11.compiled._wind3d11.pyd 2018-06-07 19:50 - 2018-06-04 12:19 - 000024384 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\libEGL.DLL 2018-06-07 19:50 - 2018-06-04 12:19 - 001638208 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2018-06-07 19:50 - 2018-06-04 12:21 - 000087904 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\windisplaytoast.compiled._DisplayToast.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000026464 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winffi.winhttp.compiled._winffi_winhttp.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000546632 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd 2018-06-07 19:50 - 2018-06-04 12:20 - 000359744 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd 2018-06-07 19:50 - 2018-06-04 12:21 - 000022880 _____ () C:\Users\Anna\AppData\Roaming\Dropbox\bin\winffi.shcore.compiled._winffi_shcore.pyd 2014-12-11 17:40 - 2014-12-11 17:40 - 040622592 ____R () C:\Program Files (x86)\Fitbit Connect\libcef.dll 2014-12-09 23:16 - 2013-07-17 01:39 - 001199576 ____R () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Anna\Downloads\38_1340651394.gif:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\Anna\Documents\zakupy.xlsx:com.dropbox.attributes [168] ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-368267494-1115037355-518875747-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Anna\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{F05BF0F8-2DD6-4160-A21F-024EA798504B}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.cam.exe FirewallRules: [{59EB6C41-5CC1-462D-A4BE-E10B6718CB0B}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.cam.exe FirewallRules: [{4D4188FE-A8F1-4876-8F5A-DA82A459EA50}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.Gamecaster.exe FirewallRules: [{9D65A938-8501-45DD-902F-83BA15D9D9D5}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.Gamecaster.exe FirewallRules: [{22AEBB05-9AE2-4596-8672-BC60D644A810}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe FirewallRules: [{D26BB3FE-45D2-4D95-8819-65666FBD06AD}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe FirewallRules: [{5E4DDCA7-653A-4D18-9820-F0DE788CDBC9}] => (Allow) D:\Steam\steamapps\common\Tomb Raider Underworld Demo\tru.exe FirewallRules: [{D090EF69-E6E6-4049-8CE9-20367BF9598E}] => (Allow) D:\Steam\steamapps\common\Tomb Raider Underworld Demo\tru.exe FirewallRules: [{5E2EE572-F471-4380-B1FB-D5324DE5B3F8}] => (Allow) D:\Steam\steamapps\common\Tomb Raider Anniversary Demo\tra.exe FirewallRules: [{7D92F88E-9B51-480F-8EFD-12B49D047B71}] => (Allow) D:\Steam\steamapps\common\Tomb Raider Anniversary Demo\tra.exe FirewallRules: [{C6174804-BAEC-43EB-876C-29C2117F6F70}] => (Allow) D:\Steam\steamapps\common\Tomb Raider Legend Demo\trl.exe FirewallRules: [{85979116-80F9-449B-836A-F36686E5D0F7}] => (Allow) D:\Steam\steamapps\common\Tomb Raider Legend Demo\trl.exe FirewallRules: [UDP Query User{09FB057E-A271-4A5A-86D4-E4D1CB2AB5C7}C:\users\anna\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\anna\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{CC1A2DAB-FAE9-47EB-8ACF-B66761BE1FB8}C:\users\anna\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\anna\appdata\roaming\spotify\spotify.exe FirewallRules: [{A12498DA-16AF-4050-BAC2-A8B188AA244D}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe FirewallRules: [{97151AFE-1261-4A4E-9639-501604576537}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{0A8803DA-769F-4009-90AD-2767B1C58FC7}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{B16F5D4C-D38F-4EA2-B7EF-E9C0C6AAA89D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{68765BBB-E8BD-4B39-8C1C-7FC6B9BDC8B9}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{CC75C845-7E95-4CA1-901D-F44763065156}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{40FBB7B9-5D1A-4FA9-90CB-B28C616203FB}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{443F8FE2-B304-4083-8C72-FB7FC934955B}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{BAB60EB9-5AE6-405C-BAA7-58EB4C02D789}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{0E56633D-B39C-4118-BB93-7D9510D63952}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{3859A916-5655-463A-98AA-9BA5FB8735EF}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{35BEF2FA-F899-4333-A908-4690132AF293}] => (Allow) D:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Revelations\ACRMP.exe FirewallRules: [{ACCF8714-FF9B-4D16-9D9F-11FE482C4AF3}] => (Allow) D:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Revelations\ACRMP.exe FirewallRules: [{81DC4263-47E3-4747-A650-979892C83A39}] => (Allow) D:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Revelations\ACRPR.exe FirewallRules: [{D762893C-1428-4EC0-A542-8C0C4011D92E}] => (Allow) D:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Revelations\ACRPR.exe FirewallRules: [{D8C22C74-DA37-431B-9655-912936F93255}] => (Allow) D:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Revelations\ACRSP.exe FirewallRules: [{3DBC6A58-ACD2-45CC-96C3-BC0DED31DA5A}] => (Allow) D:\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Revelations\ACRSP.exe FirewallRules: [{C770BBC5-4F02-4AEA-91D4-06F9118374D4}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRMP.exe FirewallRules: [{E170EEE9-2C71-48BA-B261-20D889FBFD09}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Revelations\ACRMP.exe FirewallRules: [{D2D46841-E2FC-430B-8032-7E2056FBD7C7}] => (Allow) C:\Program Files (x86)\CDP Games\The Witcher 2 Enhanced Edition\bin\witcher2.exe FirewallRules: [{E6D57FF0-BA15-4548-BF7B-BDD6FA7F64CE}] => (Allow) C:\Program Files (x86)\CDP Games\The Witcher 2 Enhanced Edition\Launcher.exe FirewallRules: [{35C87B80-2E7B-4B43-A3C7-322CB447ABB4}] => (Allow) C:\Program Files (x86)\Nero\Nero TuneItUp\TuneItUp.exe FirewallRules: [{36C69241-2FF5-4928-A75E-A1E7A2D05EDB}] => (Allow) C:\Program Files (x86)\Nero\Nero TuneItUp\TuneItUp.exe FirewallRules: [{10E51AAE-A5ED-437C-A0BD-B8B47191DFFD}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{51165D59-3B36-48E9-A2C6-E730BB5D9218}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{88D689D3-B672-4B04-8E27-B51BFC737AC3}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{6CEA0031-75C1-4F31-8542-AB376F6726C3}] => (Allow) D:\Steam\Steam.exe FirewallRules: [UDP Query User{7F0096AD-8FD1-45F2-A6FD-4FBC6DC4134C}C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe FirewallRules: [TCP Query User{22AC800B-C25E-426A-9C9B-C3A6FF39C912}C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe FirewallRules: [{68FABE30-6BC1-4E71-B28B-0B97A220643D}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{89CAD3D5-EFA4-45FD-995F-14A8D4FE81A3}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{362232B6-0C23-455A-A782-F6514182D37F}] => (Allow) C:\Users\Anna\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{86DC0BBA-895E-40F6-A14E-9D948C8C1035}] => (Allow) C:\Users\Anna\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{E9E0E38E-4CF1-448E-9BC6-FF5FE6108318}] => (Allow) C:\Users\Anna\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{33954903-EEA1-4B6D-85D6-7A278CB6B5FA}] => (Allow) C:\Users\Anna\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{6E0741FD-22F4-439D-B01F-0B57F614D150}] => (Allow) C:\Users\Anna\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{5EFC917A-0F3C-43AE-AB03-AEED731FFD5C}] => (Allow) C:\Users\Anna\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{3DB87F41-C0F4-4D2E-BAB6-3C682CEE506E}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\UPlayBrowser.exe FirewallRules: [{28EEF82A-423E-45BC-AEF9-681081D37454}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\UPlayBrowser.exe FirewallRules: [{88738D47-31AC-4680-9EAA-004E1E8243FF}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\AssassinsCreedBrotherhood.exe FirewallRules: [{72E2F85B-AE28-4396-AAF1-F78E00980E99}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\AssassinsCreedBrotherhood.exe FirewallRules: [{6047B3F9-9A59-4B4E-9A52-65FF5A339424}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\ACBMP.exe FirewallRules: [{69A3C59E-F996-468C-85C1-72AA7DC14500}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\ACBMP.exe FirewallRules: [{17E49F96-9435-4EDD-8E0C-0E849F186A23}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe FirewallRules: [{48F1957D-4BBD-4D87-BB83-E3813D4D2B01}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed Brotherhood\ACBSP.exe FirewallRules: [{79D4BCC1-D351-4230-827E-657FE8407648}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{BE0B2473-67F3-44F6-940E-4B2B03737E13}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{045188A1-CFFF-4EA4-9EF2-E0E7D6E0392D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{59F90A10-B637-4434-90E6-8FBED17B7D9A}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{388DFA8B-2778-41A6-A1B1-337F3E371205}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{D189EDD3-62A6-4ABA-8505-F10E7259F874}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [UDP Query User{83991BE6-C150-48BB-91BD-E4CAAE99AAA7}C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe] => (Block) C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe FirewallRules: [TCP Query User{78FCAA73-3A6B-49A6-B5E9-FAA29B6D9565}C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe] => (Block) C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe FirewallRules: [{C7326A96-E084-475D-BE60-A6FAFFEFFA1F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{FE4F2506-8E88-4314-B9C2-D1466140384D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{BA981E79-66BA-40E3-8511-7D22C86931BD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{A6DF49D4-6BDA-4529-9C2F-532A8A1BE8E4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{3716F745-309A-4866-AB82-7AD44CF673D6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{67C20DD9-9FBE-46AB-8D4F-778750BDFB9D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{C315422C-0CDC-4DBC-9A55-DA6DCD5931F0}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{67F750C8-3E98-4C2A-A906-38A9EF5D6417}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe FirewallRules: [{C8FE7C00-783B-44A0-8582-089AA23A66AC}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe FirewallRules: [{F334BC82-76AE-41DD-BB02-69002837783C}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe FirewallRules: [{9557AC66-5E17-4E15-A803-8709E6FCE98A}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe FirewallRules: [{C3C70CE3-B8EF-43AB-9798-C01D2EEC3F25}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2Migrator.exe FirewallRules: [{22168A2A-1BCF-4B3F-909F-E455DFE170C4}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2AlertList.exe FirewallRules: [{09039B98-75E7-4A87-B1D0-BFBA63741AAB}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe FirewallRules: [{56ABF4D0-9102-4CAA-9AE1-5A528598E954}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EasyPrinterManagerV2.exe FirewallRules: [{55D1AE05-4B14-4955-AC7C-A590BC767360}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Center\SamsungPrinterCenter.exe FirewallRules: [UDP Query User{1F0D42E5-B4B1-437D-BE09-C347FC2AAF8E}C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe FirewallRules: [TCP Query User{4C12FA9E-12DB-4122-B6DB-A065E48AFF51}C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe FirewallRules: [{DD18781D-9EB2-4EC8-9A86-8CCC48204C52}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.exe FirewallRules: [{F1161E49-7D42-4534-BE42-9736BFC2027E}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.exe FirewallRules: [{666910A4-3055-45F4-B9DE-C4F5AEC308E8}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\WinWrapIDE.exe FirewallRules: [{828E4F90-4D53-4754-AA50-456258229F12}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.com FirewallRules: [{76CEA524-D96F-4140-B26D-3BC18B6F0DCD}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\WinWrapIDE.exe FirewallRules: [{6551607B-22EA-459D-9840-369130D53C6D}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.com FirewallRules: [UDP Query User{4449D4C4-BF1E-4498-ADA1-607940728DED}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe FirewallRules: [TCP Query User{2276BC66-E4DD-4DD8-A39F-6E8001E5BBE4}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe FirewallRules: [{FCC0A7A9-E13E-4AB6-87E5-0779D24A6D8F}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed II\UPlayBrowser.exe FirewallRules: [{2DD8F5C2-6D37-43C7-AACD-BF54F89B83DC}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed II\UPlayBrowser.exe FirewallRules: [{0D3E4E27-94B3-492F-95B3-A57E542F0BB8}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe FirewallRules: [{D59E9BC8-5361-44E4-A091-0185A7543A28}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe FirewallRules: [{9E6E9D02-923D-4E3E-B110-D5338BDAD320}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe FirewallRules: [{B3FDF20F-23C0-41E3-A219-DCADEA7C5ECF}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe FirewallRules: [{2751A63A-EFE0-4A68-B761-5192143F2726}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{4A183685-A9AC-41AC-A06E-D16A5CC9AFED}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [UDP Query User{3B9B6106-9EE6-49DB-9973-CB93FE9D0082}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe FirewallRules: [TCP Query User{E76B407C-A6F6-42DA-89B6-BA126B1CF983}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe FirewallRules: [UDP Query User{E941A846-143D-48CF-803F-01B319420E5B}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe FirewallRules: [TCP Query User{00D93A5B-5153-47A0-B98E-F4BCCD74A63F}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe FirewallRules: [UDP Query User{390C97B5-3B12-4824-8D91-250293C42E99}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe FirewallRules: [TCP Query User{482AB514-8A88-44B1-8FFF-DCE87D21AC19}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe FirewallRules: [UDP Query User{C2D86148-2218-439A-A2DC-C94F0EF380ED}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe FirewallRules: [TCP Query User{E11DEFB7-AB22-40E8-9423-33025BDE3C33}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe FirewallRules: [UDP Query User{DE935FC4-DD90-44AE-9040-2E2721969F97}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe FirewallRules: [TCP Query User{427875EC-D167-4331-9954-AFBA69B1A558}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe FirewallRules: [UDP Query User{83380E62-17BC-4617-89F2-404CF244A0D1}C:\webserv\mysql\bin\webserv(mysqld).exe] => (Allow) C:\webserv\mysql\bin\webserv(mysqld).exe FirewallRules: [TCP Query User{2CCD3F58-11FF-4702-AB39-7CAB71463BB5}C:\webserv\mysql\bin\webserv(mysqld).exe] => (Allow) C:\webserv\mysql\bin\webserv(mysqld).exe FirewallRules: [UDP Query User{21BD52DB-C89C-4B5A-8F64-08FBECC76442}C:\webserv\apache2\bin\webserv(apache).exe] => (Allow) C:\webserv\apache2\bin\webserv(apache).exe FirewallRules: [TCP Query User{CDCE6EBA-0AF4-4E59-8531-D18B4120CAAF}C:\webserv\apache2\bin\webserv(apache).exe] => (Allow) C:\webserv\apache2\bin\webserv(apache).exe FirewallRules: [{93BF563B-FADF-4531-8276-5082747C6459}] => (Allow) LPort=1900 FirewallRules: [{9A11ED7A-00BF-444E-92D4-FFB3BD5FA34B}] => (Allow) LPort=2869 FirewallRules: [{8B724C04-56C4-4FDF-A8D6-17068B44C0BA}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [UDP Query User{AE74EB2F-577F-4E52-8FCC-A09C9714511C}C:\program files (x86)\spssinc\statistics17\statistics.exe] => (Allow) C:\program files (x86)\spssinc\statistics17\statistics.exe FirewallRules: [TCP Query User{C03A689B-DCE2-4791-BA95-ADA4C543774C}C:\program files (x86)\spssinc\statistics17\statistics.exe] => (Allow) C:\program files (x86)\spssinc\statistics17\statistics.exe FirewallRules: [{0831895D-8294-4BF8-8E35-3938D55CC5F7}] => (Allow) C:\Program Files (x86)\SPSSInc\Statistics17\statistics.exe FirewallRules: [{F0750F2F-20D4-412D-B809-3B9DEDD37C4D}] => (Allow) C:\Program Files (x86)\SPSSInc\Statistics17\statistics.exe FirewallRules: [{37FCADE5-6DDE-4528-8900-08C330BC858A}] => (Allow) C:\Program Files (x86)\SPSSInc\Statistics17\SPSSWinWrapIDE.exe FirewallRules: [{52ED6CD7-5AFE-4290-8F46-77264D3175DC}] => (Allow) C:\Program Files (x86)\SPSSInc\Statistics17\SPSSWinWrapIDE.exe FirewallRules: [{B523724A-BA87-4990-A75C-E56FC54B4D03}] => (Allow) C:\Program Files (x86)\SPSSInc\Statistics17\statistics.com FirewallRules: [{021EDA22-B13F-42A6-A28C-825D47FC4C42}] => (Allow) C:\Program Files (x86)\SPSSInc\Statistics17\statistics.com FirewallRules: [{5A49CE92-FEC6-4222-8684-D7350A15DED0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{6AEB00E0-F668-49C7-A448-EDC00BD233B0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{CF0C10C8-E710-4D87-824C-E68194A985AB}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{D36DE063-6874-480E-A941-92B8BA66A184}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{9709A06C-DAA6-4BBA-B0D0-8CF04901F671}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{5415D5EF-3E22-4479-80B0-D6B8BBA698C3}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{F4E19CD2-414D-4356-9F91-B628529BFBCE}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{A9C17A99-9310-477A-B3EC-FAB47F010CD8}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{EEC7917B-774E-41CB-B7F1-43C7D8857544}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{64A4DF32-16B3-4610-A7A2-9F2680FC067D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{11BA1F18-4ECF-4105-9110-AAB9DB956F34}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [UDP Query User{1ABD7073-0C33-47A3-85B0-228FCE1F1CB3}C:\users\anna\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\anna\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [TCP Query User{1A17673E-41D0-4B66-B353-B871EA629D21}C:\users\anna\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\anna\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{64393B8A-56B3-4451-866F-D99CF9BE74EA}] => (Allow) C:\Users\Anna\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{F10617E5-6BAC-411E-97A7-10F44D1385BB}] => (Allow) C:\Users\Anna\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{106A6F63-FD2B-41C8-AC03-82E7D6107F2A}] => (Allow) C:\Program Files (x86)\CDP Games\The Witcher 2 Enhanced Edition\bin\witcher2.exe FirewallRules: [{F9249BB1-0266-4313-A9F1-E8E373C8C39B}] => (Allow) C:\Program Files (x86)\CDP Games\The Witcher 2 Enhanced Edition\Launcher.exe FirewallRules: [{1DD2D170-D7D2-4225-AC19-15B9A281A4B8}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{68CBB18D-5252-48CE-B52B-77B327E19FE4}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{76015EB1-2979-48DF-A934-2A80C41A8634}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{7DC36025-3F3B-4E7B-A203-5EE10882B8E1}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{D6A74FDC-609B-4994-A4D0-58C3D08C6A53}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{42BA6D64-BB05-407B-8C8E-64E8198153B7}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{D48E6397-5877-407F-9181-A9EC65A75729}] => (Allow) C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe FirewallRules: [{1B7D4E43-23C9-4398-987B-CEEF1BC7362C}] => (Allow) C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe FirewallRules: [{25BB95C4-0917-46EA-A117-0DCB29DEE35F}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe FirewallRules: [{80CA0F0E-E5D1-427D-B117-CEB227C8E328}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe FirewallRules: [{7D4F01EE-AF23-448F-A3D9-1D0F7EF5B15A}] => (Allow) C:\Program Files\iTunes\iTunes.exe ==================== Restore Points ========================= ATTENTION: System Restore is disabled ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/20/2018 05:45:05 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: chrome.exe, version: 67.0.3396.87, time stamp: 0x5b1f54ed Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x00007ffa8fff045f Faulting process id: 0x2f80 Faulting application start time: 0x01d408ada6939fca Faulting application path: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Faulting module path: unknown Report Id: 1cb4337c-5647-43e2-ae42-082e87639d66 Faulting package full name: Faulting package-relative application ID: Error: (06/20/2018 05:43:30 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: Windows cannot load the extensible counter DLL rdyboost. The first four bytes (DWORD) of the Data section contains the Windows error code. Error: (06/20/2018 05:43:29 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: The Open Procedure for service "BITS" in DLL "C:\Windows\System32\bitsperf.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code. Error: (06/20/2018 05:42:11 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: ZeroConfigService.exe, version: 19.60.0.0, time stamp: 0x58d16fa6 Faulting module name: ZeroConfigService.exe, version: 19.60.0.0, time stamp: 0x58d16fa6 Exception code: 0xc0000409 Fault offset: 0x000000000022af80 Faulting process id: 0x13f8 Faulting application start time: 0x01d4043478727c98 Faulting application path: C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe Faulting module path: C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe Report Id: 46c3aec7-7d3d-4b89-81b1-f65aca37f8af Faulting package full name: Faulting package-relative application ID: Error: (06/20/2018 05:41:38 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: WerFault.exe, version: 10.0.17134.48, time stamp: 0xf282e12a Faulting module name: ntdll.dll, version: 10.0.17134.112, time stamp: 0x6529f37c Exception code: 0xc0000409 Fault offset: 0x000000000008a90f Faulting process id: 0x4270 Faulting application start time: 0x01d408ad2ae9d7e2 Faulting application path: C:\WINDOWS\system32\WerFault.exe Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll Report Id: 54f11160-9809-4f18-a5cd-6f054b12f2db Faulting package full name: Faulting package-relative application ID: Error: (06/20/2018 05:41:35 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: msiexec.exe, version: 5.0.17134.1, time stamp: 0x2383e1bf Faulting module name: ntdll.dll, version: 10.0.17134.112, time stamp: 0x6529f37c Exception code: 0xc0000409 Fault offset: 0x000000000008a90f Faulting process id: 0x47b8 Faulting application start time: 0x01d408ad29e8b42c Faulting application path: C:\WINDOWS\system32\msiexec.exe Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll Report Id: e073bf49-87b0-414b-a198-caa39e70f651 Faulting package full name: Faulting package-relative application ID: Error: (06/19/2018 08:05:26 PM) (Source: MsiInstaller) (EventID: 11730) (User: conjure-one) Description: Product: e-Deklaracje Desktop -- Error 1730. You must be an Administrator to remove this application. To remove this application, you can log on as an Administrator, or contact your technical support group for assistance. Error: (06/17/2018 02:58:19 PM) (Source: Windows Backup) (EventID: 4104) (User: ) Description: The backup was not successful. The error is: The backup storage location is invalid. You cannot use a volume that is included in the backup as a storage location. (0x80780040). System errors: ============= Error: (06/20/2018 05:45:06 PM) (Source: DCOM) (EventID: 10016) (User: conjure-one) Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} and APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} to the user conjure-one\Anna SID (S-1-5-21-368267494-1115037355-518875747-1000) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool. Error: (06/20/2018 05:42:49 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} and APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool. Error: (06/20/2018 05:42:49 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} and APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool. Error: (06/20/2018 05:42:41 PM) (Source: TPM) (EventID: 15) (User: NT AUTHORITY) Description: The device driver for the Trusted Platform Module (TPM) encountered a non-recoverable error in the TPM hardware, which prevents TPM services (such as data encryption) from being used. For further help, please contact the computer manufacturer. Error: (06/20/2018 05:42:41 PM) (Source: TPM) (EventID: 15) (User: NT AUTHORITY) Description: The device driver for the Trusted Platform Module (TPM) encountered a non-recoverable error in the TPM hardware, which prevents TPM services (such as data encryption) from being used. For further help, please contact the computer manufacturer. Error: (06/20/2018 05:42:40 PM) (Source: TPM) (EventID: 15) (User: NT AUTHORITY) Description: The device driver for the Trusted Platform Module (TPM) encountered a non-recoverable error in the TPM hardware, which prevents TPM services (such as data encryption) from being used. For further help, please contact the computer manufacturer. Error: (06/20/2018 05:42:39 PM) (Source: TPM) (EventID: 15) (User: NT AUTHORITY) Description: The device driver for the Trusted Platform Module (TPM) encountered a non-recoverable error in the TPM hardware, which prevents TPM services (such as data encryption) from being used. For further help, please contact the computer manufacturer. Error: (06/20/2018 05:42:39 PM) (Source: TPM) (EventID: 15) (User: NT AUTHORITY) Description: The device driver for the Trusted Platform Module (TPM) encountered a non-recoverable error in the TPM hardware, which prevents TPM services (such as data encryption) from being used. For further help, please contact the computer manufacturer. Windows Defender: =================================== Date: 2018-06-15 01:07:06.561 Description: Windows Defender Antivirus scan has been stopped before completion. Scan ID: {0EC4D62F-70F7-4D6F-B41C-460BBA80BFB6} Scan Type: Antimalware Scan Parameters: Quick Scan Date: 2018-06-13 19:37:08.988 Description: Windows Defender Antivirus scan has been stopped before completion. Scan ID: {702FCC0B-2215-4AC3-A1C8-2E7FFB965E78} Scan Type: Antimalware Scan Parameters: Quick Scan Date: 2018-06-13 16:18:18.138 Description: Windows Defender Antivirus scan has been stopped before completion. Scan ID: {1F764F24-D956-441B-A55D-B01BA79F34C3} Scan Type: Antimalware Scan Parameters: Quick Scan Date: 2018-06-05 15:21:26.000 Description: Windows Defender Antivirus scan has been stopped before completion. Scan ID: {5F5370E3-BA5F-4C37-8F5D-EFFD5C3B4A9B} Scan Type: Antimalware Scan Parameters: Quick Scan Date: 2018-06-04 20:57:43.784 Description: Windows Defender Antivirus scan has been stopped before completion. Scan ID: {5D11265C-C768-419C-8E73-EC2C80F2475B} Scan Type: Antimalware Scan Parameters: Quick Scan CodeIntegrity: =================================== Date: 2018-06-20 17:41:57.918 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MbamPt.exe that did not meet the Microsoft signing level requirements. Date: 2018-06-20 17:41:57.903 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MbamPt.exe that did not meet the Microsoft signing level requirements. Date: 2018-06-20 17:41:57.881 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MbamPt.exe that did not meet the Microsoft signing level requirements. Date: 2018-06-20 17:41:55.915 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MbamPt.exe that did not meet the Microsoft signing level requirements. Date: 2018-06-20 17:41:55.870 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MbamPt.exe that did not meet the Microsoft signing level requirements. Date: 2018-06-20 17:41:55.866 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MbamPt.exe that did not meet the Microsoft signing level requirements. Date: 2018-06-20 17:41:55.863 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MbamPt.exe that did not meet the Microsoft signing level requirements. Date: 2018-06-20 17:41:55.859 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\MbamPt.exe that did not meet the Microsoft signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-4712MQ CPU @ 2.30GHz Percentage of memory in use: 50% Total physical RAM: 8100.71 MB Available physical RAM: 3986.22 MB Total Virtual: 16292.71 MB Available Virtual: 11679.38 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:128 GB) (Free:34.03 GB) NTFS Drive d: (Data) (Fixed) (Total:348.03 GB) (Free:43.14 GB) NTFS \\?\Volume{ceae0044-7fdc-11e4-8dfd-806e6f6e6963}\ (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS \\?\Volume{d4695096-0000-0000-0000-400620000000}\ () (Fixed) (Total:0.81 GB) (Free:0.32 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 476.9 GB) (Disk ID: D4695096) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=128 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=828 MB) - (Type=27) Partition 4: (Not Active) - (Size=348 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================