Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-07-2017 Ran by Gulek (04-08-2017 22:35:40) Running from C:\Users\Gulek\Desktop\Nowy folder Windows 7 Ultimate Service Pack 1 (X64) (2015-05-18 15:42:19) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3358588553-51344018-1733655914-500 - Administrator - Disabled) Guest (S-1-5-21-3358588553-51344018-1733655914-501 - Limited - Enabled) Gulek (S-1-5-21-3358588553-51344018-1733655914-1000 - Administrator - Enabled) => C:\Users\Gulek HomeGroupUser$ (S-1-5-21-3358588553-51344018-1733655914-1002 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-3358588553-51344018-1733655914-1000\...\uTorrent) (Version: 3.5.0.43916 - BitTorrent Inc.) 0 A.D. (HKU\S-1-5-21-3358588553-51344018-1733655914-1000\...\0 A.D.) (Version: r18915P-alpha - Wildfire Games) 64 Bit HP CIO Components Installer (HKLM\...\{BE930E38-7BB3-45B6-85B2-5251F374F844}) (Version: 6.2.2 - Hewlett-Packard) Hidden Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 17.009.20058 - Adobe Systems Incorporated) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 17.009.20058 - Adobe Systems Incorporated) Adobe Flash Player 10 ActiveX (HKLM-x32\...\{B7B3E9B3-FB14-4927-894B-E9124509AF5A}) (Version: 10.0.32.18 - Adobe Systems, Inc.) Aktualizacje NVIDIA 25.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 25.0.0.0 - NVIDIA Corporation) Hidden Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 382.53 - NVIDIA Corporation) Hidden Audacity 2.1.2 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team) Banished - ElAmigos wersja 1.0.6 (HKLM-x32\...\{B617C2A6-7D8D-4334-8480-920590374694}_is1) (Version: 1.0.6 - theprodukkt) Beard and Hairstyle Set (HKLM-x32\...\Beard and Hairstyle Set_is1) (Version: 1.0.0.0 - GOG.com) Bitwa o Śródziemie™ II (HKLM-x32\...\{2A9F95AB-65A3-432c-8631-B8BC5BF7477A}) (Version: - ) BufferChm (HKLM-x32\...\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.26 - Piriform) Cheat Engine 6.6 (HKLM-x32\...\Cheat Engine 6.6_is1) (Version: - Cheat Engine) Chief Architect Premier X8 (64 bit) (HKLM\...\{8E23840D-72BA-4EE0-BD83-F71DB6EE44C6}) (Version: 18.1.0.0 - Chief Architect) Cities: Skylines (HKLM\...\Steam App 255710) (Version: - Colossal Order Ltd.) Copy (HKLM-x32\...\{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve) CPUID CPU-Z 1.79 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.0.0.0054 - Disc Soft Ltd) Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.77.000 - Hewlett-Packard) Hidden DeviceDiscovery (HKLM-x32\...\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden DJ_AIO_06_K209a-z_SW_Min (HKLM-x32\...\{0A50CB27-D2D5-4B7D-A001-30B1782A450B}) (Version: 140.0.690.000 - Hewlett-Packard) Hidden EVE Online (HKU\S-1-5-21-3358588553-51344018-1733655914-1000\...\{0423190a-455c-4dec-b292-c3f5b1c81261}) (Version: 1.0.0 - CCP) Fallout 4 (HKLM\...\Steam App 377160) (Version: - Bethesda Game Studios) Far Cry 4 (HKLM-x32\...\RmFyQ3J5NA==_is1) (Version: 1 - ) Galeria fotografii (HKLM-x32\...\{77655DF6-A143-4A25-A5F8-127C8CE63EDA}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Gameforge Live 2.0.12 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.12 - Gameforge) GIMP 2.8.16 (HKLM\...\GIMP-2_is1) (Version: 2.8.16 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.115 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden GPBaseService2 (HKLM-x32\...\{BB3447F6-9553-4AA9-960E-0DB5310C5779}) (Version: 140.0.211.000 - Hewlett-Packard) Hidden Gyazo 3.3.2 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: - Nota Inc.) Hatred (HKLM-x32\...\SGF0cmVk_is1) (Version: 1 - ) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) HP Deskjet Ink Advant K209a-z All-in-One Driver Software 14.0 Rel. 6 (HKLM\...\{6051912A-F7B8-445C-A99D-81AA4C118836}) (Version: 14.0 - HP) HP Support Solutions Framework (HKLM-x32\...\{B11B6E26-63A4-4BB6-AA39-0AF758B26092}) (Version: 12.7.27.15 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (HKLM-x32\...\{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden HPSSupply (HKLM-x32\...\{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}) (Version: 140.0.211.000 - Hewlett-Packard) Hidden Insurgency (HKLM\...\Steam App 222880) (Version: - New World Interactive) Intel® PROSet/Wireless Software (HKLM-x32\...\{a2a04474-104a-49b3-9bf5-33afee260030}) (Version: 17.14.0 - Intel Corporation) ipla 2.8.7 (HKLM-x32\...\ipla) (Version: 2.8.7 - Cyfrowy Polsat S.A.) Java 8 Update 111 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) K209a-z (HKLM-x32\...\{5A3ECDDA-562C-4281-BFE5-A4C8F32EACA3}) (Version: 140.0.690.000 - Hewlett-Packard) Hidden Kholat (HKLM-x32\...\Kholat_is1) (Version: - ) Król Nazguli™ (HKLM-x32\...\{B931FB80-537A-4600-00AD-AC5DEDB6C25B}) (Version: - ) Malwarebytes (wersja 3.1.2.1733) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.1.2.1733 - Malwarebytes) MarketResearch (HKLM-x32\...\{D360FA88-17C8-4F14-B67F-13AAF9607B12}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3358588553-51344018-1733655914-1000\...\OneDriveSetup.exe) (Version: 17.3.6943.0625 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25017 (HKLM-x32\...\{4f205407-5cad-4410-b658-ceff4b440f0e}) (Version: 14.10.25017.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25017 (HKLM-x32\...\{e03f35e3-deda-418d-a097-a474bcd6942b}) (Version: 14.10.25017.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Minecraft1.7.8 (HKLM-x32\...\Minecraft1.7.8) (Version: - ) Movie Maker (HKLM-x32\...\{DAE8CC57-EBF5-4D46-8572-9A0C769D6F16}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 53.0.3 (x86 pl) (HKLM-x32\...\Mozilla Firefox 53.0.3 (x86 pl)) (Version: 53.0.3 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 53.0.3 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Musicmatch® Jukebox (HKLM-x32\...\{85D3CC30-8859-481A-9654-FD9B74310BEF}) (Version: 10.00.4033 - ) Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski (HKLM\...\{90150000-001F-0415-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Norma Pro (HKLM-x32\...\{6FCEBA1E-B484-4972-883F-E2B99A12758E}) (Version: - ) NVIDIA GeForce Experience 3.6.0.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.6.0.74 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.17.0329 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0329 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 382.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 382.53 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.27 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.27 - NVIDIA Corporation) NVIDIA Sterownik graficzny 382.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.53 - NVIDIA Corporation) NvNodejs (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs) (Version: 3.6.0.74 - NVIDIA Corporation) Hidden NvTelemetry (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry) (Version: 2.4.10.0 - NVIDIA Corporation) Hidden NvvHci (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci) (Version: 2.02.0.5 - NVIDIA Corporation) Hidden Oprogramowanie mikroukładu Intel® (HKLM-x32\...\{e48a2f61-851a-4155-82f9-af1b04db8c3b}) (Version: 10.0.13 - Intel(R) Corporation) Hidden Panel sterowania NVIDIA 382.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 382.53 - NVIDIA Corporation) Hidden Philips Device Manager (HKLM-x32\...\{36A9D3F8-3FCF-4FBA-A8AD-3C1CE56C8AF4}) (Version: 10.4.7.0 - Philips) Philips PSS Device Manager (HKLM-x32\...\{BAE20F4A-96D7-4D96-966F-41D7E87786E0}) (Version: 2.7.0.0 - Philips) Hidden Philips PSS Device Manager (HKLM-x32\...\InstallShield_{BAE20F4A-96D7-4D96-966F-41D7E87786E0}) (Version: 2.7.0.0 - Philips) PLAYERUNKNOWN'S BATTLEGROUNDS (HKLM\...\Steam App 578080) (Version: - Bluehole, Inc.) PLAYERUNKNOWN'S BATTLEGROUNDS (Test Server) (HKLM\...\Steam App 622590) (Version: - ) PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation) Plus500 (HKLM-x32\...\Plus500) (Version: - ) Podstawowe programy Windows Live (HKLM-x32\...\{8FFD72FC-4FFA-472D-9F76-AEC85F602F9D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Pro Cycling Manager - Sezon 2013 wersja 1.0.2.0 (HKLM-x32\...\Pro Cycling Manager 2013_is1) (Version: 1.0.2.0 - Cyanide) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.) Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.17 - Qualcomm Atheros Inc.) RAVCORE DYNAMITE 7.1 GAMING HEADSET (HKLM-x32\...\{71B53BA8-4BE3-49AF-BC3E-07F392006620}) (Version: 1.00.0015 - RAVCORE, Inc.) Risen 3 - Titan Lords (HKLM-x32\...\Risen 3 - Titan Lords_is1) (Version: - Deep Silver) Rome - Total War (HKLM-x32\...\{E01662A1-BF0F-4DA8-A2FC-4E7F685884B8}) (Version: 1.6 - The Creative Assembly) Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.80.000 - Hewlett-Packard) Hidden Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft) SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 7.1.0370 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 3.6.0.74 - NVIDIA Corporation) Hidden Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) SmartWebPrinting (HKLM-x32\...\{8FF6F5CA-4E30-4E3B-B951-204CAAA2716A}) (Version: 140.0.186.000 - Hewlett-Packard) Hidden SolutionCenter (HKLM-x32\...\{5DCF0E4B-F8EA-4229-A0BD-5CA6D4AFB749}) (Version: 140.0.213.000 - Hewlett-Packard) Hidden SPEEDLINK SNAPPY Smart Webcam (HKLM-x32\...\{ED1674F5-5165-49BF-B546-AE5343111540}) (Version: 1.0.3.7 - ETRON) State of Decay Year-One (HKLM-x32\...\State of Decay Year-One_is1) (Version: - ) Status (HKLM-x32\...\{2FB9EA69-51D4-4913-9AD5-762C034DE811}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Team Fortress 2 (HKLM\...\Steam App 440) (Version: - Valve) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Temerian Armor Set (HKLM-x32\...\Temerian Armor Set_is1) (Version: 1.0.0.0 - GOG.com) TERA (HKLM-x32\...\{A2F166A0-F031-4E27-A057-C69733219434}_is1) (Version: - Gameforge4d) The Settlers 7 - Droga do królestwa (HKLM-x32\...\{9C916142-C18C-429D-BFED-40094A7E0BEB}) (Version: 1.02.1221 - Ubisoft) The Sims 4 Update v1.4.83.1010 inc Outdoor Retreat DLC (HKLM-x32\...\VGhlU2ltczQ=_is1) (Version: 1 - ) The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.0.732.20 - Electronic Arts Inc.) The Witcher 3 Wild Hunt (HKLM-x32\...\The Witcher 3 Wild Hunt_is1) (Version: 1.02 - Релиз от R.G. Steamgames) Tom Clancy's Rainbow Six Vegas 2 (HKLM-x32\...\{FD416706-875C-4B0B-A23A-9E740DAE029E}) (Version: 1.00 - Ubisoft) Toolbox (HKLM-x32\...\{292F0F52-B62D-4E71-921B-89A682402201}) (Version: 140.0.428.000 - Hewlett-Packard) Hidden Transport Fever (HKLM-x32\...\1720767912_is1) (Version: 2.0.0.2 - GOG.com) TrayApp (HKLM-x32\...\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}) (Version: 140.0.212.000 - Hewlett-Packard) Hidden Tropico 4 (HKLM\...\Steam App 57690) (Version: - Haemimont Games) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) Ultimate Epic Battle Simulator (HKLM\...\dWx0aW1hdGVlcGljYmF0dGxlc2ltdWxhdG9y_is1) (Version: 1 - ) Update for Skype for Business 2015 (KB3213574) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8C2A4D8F-3020-403E-94D4-E8EC03F9E723}) (Version: - Microsoft) Update for Skype for Business 2015 (KB3213574) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8C2A4D8F-3020-403E-94D4-E8EC03F9E723}) (Version: - Microsoft) Update for Skype for Business 2015 (KB3213574) 64-Bit Edition (HKLM\...\{90150000-012B-0415-1000-0000000FF1CE}_Office15.PROPLUS_{8C2A4D8F-3020-403E-94D4-E8EC03F9E723}) (Version: - Microsoft) Warcraft III (HKLM-x32\...\Warcraft III) (Version: - ) Warcraft III: wszystkie elementy (HKU\S-1-5-21-3358588553-51344018-1733655914-1000\...\Warcraft III) (Version: - ) WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.212.017 - Hewlett-Packard) Hidden WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) World of Warships (HKU\S-1-5-21-3358588553-51344018-1733655914-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C814eu}_is1) (Version: - Wargaming.net) Zombie Defense (HKLM\...\Steam App 533780) (Version: - Home Net Games) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-3358588553-51344018-1733655914-1000_Classes\CLSID\{162C6FB5-44D3-435B-903D-E613FA093FB5}\InprocServer32 -> C:\Users\Gulek\AppData\Local\Microsoft\OneDrive\17.3.6943.0625\amd64\FileCoAuthLib64.dll (Microsoft Corporation) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems Inc.) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-16] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-02-16] (Alexander Roshal) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2017-06-08] (NVIDIA Corporation) ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems Inc.) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-16] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-02-16] (Alexander Roshal) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {03BF6DA1-A3A6-4E86-8C38-9AA13CCFBEE1} - System32\Tasks\Games\UpdateCheck_S-1-5-21-3358588553-51344018-1733655914-1000 Task: {17B1F6C1-8101-41EC-A72B-DDD8DC253172} - System32\Tasks\{4ECA4A72-D6D0-4123-837F-F3A21564487D} => C:\Users\Gulek\Downloads\musicmatch-jukebox_musicmatch_jukebox_10.0.4033_anglais_10317.exe [2016-10-17] () Task: {25EACA64-8B46-4438-8EA4-8CE6372200F4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-18] (Google Inc.) Task: {29A753D5-B959-4948-AD1D-02D7B2C7C310} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2017-06-22] (HP Inc.) Task: {2DEC938A-4D4D-4632-904D-11E636017F80} - System32\Tasks\{3FD696FC-11C0-4635-8CB9-7FA439364A8B} => C:\Program Files (x86)\Musicmatch\Musicmatch Jukebox\mmjb.exe [2006-01-19] (Musicmatch, Inc.) Task: {301746B0-E15F-4BA6-A0E7-F3A94CF00B05} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation) Task: {303B7641-7D68-4FE3-9BFC-D926BDAABF35} - System32\Tasks\{D1C5B9DF-3B5E-44B0-B9BC-C5FC95B5AF19} => C:\Users\Gulek\Downloads\MP10Setup.exe [2016-10-17] (Microsoft Corporation) Task: {33D55213-F958-4D2A-8DB5-4357717CB127} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-05-03] (NVIDIA Corporation) Task: {34A27A51-F9D9-4C55-AFF8-4D3A2552E775} - System32\Tasks\{EF1C176F-00BB-4C8A-AD9C-CB8A0016E07A} => C:\Users\Gulek\Downloads\MP10Setup.exe [2016-10-17] (Microsoft Corporation) Task: {3DF27B9E-E074-4561-AEAD-CAD4536DB39B} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-12-21] (Piriform Ltd) Task: {42580028-0A2F-4AF8-9D84-E67C82374396} - System32\Tasks\{3EB2DD16-1A7B-406E-9439-F5E45EBCBD3B} => D:\Program Files\Stronghold Crusader 2\bin\win32_release\Crusader2.exe [2014-09-23] () Task: {45912EFA-261E-4738-A288-15599DC37443} - System32\Tasks\{095F6FD2-1956-4F0A-8292-56A31A2A5BD0} => C:\Program Files (x86)\Musicmatch\Musicmatch Jukebox\mmjb.exe [2006-01-19] (Musicmatch, Inc.) Task: {45B1D620-1ECD-44C9-B1BD-D567946E679E} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-05-03] (NVIDIA Corporation) Task: {46A7951B-038D-4D21-8CD6-E49C71A69B2A} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-05-03] (NVIDIA Corporation) Task: {4C911AB6-5124-4790-A1E4-87858850E129} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-12-07] (HP Inc.) Task: {512DC0D8-2242-48CF-90BE-B3F3DBC3ECE5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-18] (Google Inc.) Task: {59AB148D-951E-4631-84FC-68708CEFFAF7} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-07-19] (Adobe Systems Incorporated) Task: {60F7D1DB-61D4-477C-93AC-173B389E3273} - System32\Tasks\{C471754C-8DDE-454F-9444-25C4D678758D} => D:\Program Files (x86)\Electronic Arts\Król Nazguli\lotrbfme2ep1.exe [2006-10-26] () Task: {61211D26-6F92-47A6-A702-1FB50A167B8A} - System32\Tasks\SafeZone scheduled Autoupdate 1468416524 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe Task: {644584BB-D0A4-42E4-9B23-BCA6A76D50AB} - System32\Tasks\{E1A7E98C-25A7-4AB3-A29D-6B8A079109B8} => C:\Program Files (x86)\Electronic Arts\Bitwa o Śródziemie II\lotrbfme2.exe Task: {68973E8E-FBB8-470D-9C02-B010884FCC4F} - System32\Tasks\{98194FD4-A78B-47CE-9BD0-ACFB042C1CE3} => C:\Users\Gulek\Desktop\Cheat\srvany.exe [2017-07-29] () Task: {6C0F7EF7-5204-4CD9-B2EC-CE52187E3470} - System32\Tasks\{ECEED4D1-7124-4B4D-ADCD-85B0A2D6615C} => C:\Program Files (x86)\Musicmatch\Musicmatch Jukebox\PxSetup.exe [2006-01-19] (Sonic Solutions) Task: {6E1AB48A-487F-4483-8396-2B4698E548CA} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-05-03] (NVIDIA Corporation) Task: {6E5CE434-0EAE-4DFC-81EE-13D0A8F925A4} - System32\Tasks\{1EF873B1-8661-4712-9BE6-6CA08B5251C4} => C:\Program Files (x86)\Musicmatch\Musicmatch Jukebox\mmjb.exe [2006-01-19] (Musicmatch, Inc.) Task: {7490BFAC-0BED-422C-9AB7-55CAFF4D1757} - System32\Tasks\{655C2A6B-29FD-4E8B-A000-809DA5C4CE89} => C:\Users\Gulek\Downloads\pss231_00_fus_eng.exe [2016-10-17] (Philips ) Task: {7E2ACC38-0679-4493-9DB0-F49377DC5895} - System32\Tasks\{CB63789E-7808-41E2-9F00-1BA9E3B0485A} => C:\Windows\system32\pcalua.exe -a "C:\Users\Gulek\Desktop\The walking dead S05\Age Of Empire-II+ Expansion [Direct Play]\SETUPREG.EXE" -d "C:\Users\Gulek\Desktop\The walking dead S05\Age Of Empire-II+ Expansion [Direct Play]" Task: {7F9F1E9C-05EF-4F29-BC1A-E0D6B3A8CD5F} - System32\Tasks\{A3C7B0FA-D7B1-40C2-9AE8-70A40A292B8F} => C:\Program Files (x86)\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame.exe [2017-08-03] (Bluehole GinnoGames, Inc.) Task: {8BFE17C7-2FE9-4085-8583-4304B5EA7774} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-05-16] () Task: {8D5D0697-EDB3-46D9-BC15-8316781874CC} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-05-03] (NVIDIA Corporation) Task: {97D69C88-F8E1-4E33-9C6A-BA49CE29FF7D} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-05-03] (NVIDIA Corporation) Task: {9B36D8DE-1F78-41D6-A509-B002B8739074} - System32\Tasks\{27F646E0-DE6D-4588-ABE5-38482EF1EB3F} => C:\Users\Gulek\Downloads\musicmatch-jukebox_musicmatch_jukebox_10.0.4033_anglais_10317.exe [2016-10-17] () Task: {9EEFBDAD-8114-4242-9B79-5F8191F55475} - System32\Tasks\{909486D1-31B2-43F7-B09B-5598E76958B9} => D:\Program Files (x86)\Electronic Arts\Bitwa o Śródziemie II\lotrbfme2.exe Task: {AF83B2FB-02F0-463D-817E-F0A594714BBA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {B334F6E5-880B-462B-9E63-DE8DCA1DB509} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-05-03] (NVIDIA Corporation) Task: {B5B72BDF-DD67-4CC1-9D2C-3C6D7158E64A} - System32\Tasks\{BAEA7379-A0AC-4D52-8BBA-F287BAD78260} => C:\Program Files (x86)\Musicmatch\Musicmatch Jukebox\mmjb.exe [2006-01-19] (Musicmatch, Inc.) Task: {CFEF6008-3DE3-49AB-853F-174B88EE9792} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-05-03] (NVIDIA Corporation) Task: {D0820DEF-BFC9-4B6B-91ED-8D26218FAD03} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {D34EAAE9-B9CE-49A7-83ED-61C394918FFD} - System32\Tasks\{DB89156F-AB06-4143-BA32-0626B4B42BCF} => D:\Program Files (x86)\Electronic Arts\Król Nazguli\lotrbfme2ep1.exe [2006-10-26] () Task: {DC321085-A156-4644-88C4-6F4AEE8B70E5} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {ECA4978A-11C0-434E-8232-00CBF7BED6AD} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-05-16] () Task: {FC4E67EC-C5AD-48BE-B3D7-EDED9E3FB1B5} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe Task: {FE7BC502-F432-4736-867A-4E2802A01F72} - System32\Tasks\{297807CF-5759-4F86-AA6C-B1B9D588807E} => C:\Users\Gulek\Downloads\MP10Setup.exe [2016-10-17] (Microsoft Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) Shortcut: C:\Users\Gulek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\0 A.D. alpha\Open logs folder.lnk -> D:\Users\Gulek\AppData\Local\0 A.D. alpha\OpenLogsFolder.bat () ShortcutWithArgument: C:\Users\Gulek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\b8da4a38624bbb1e\Feedback.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=gfdkimpbcpahaombhbimeihdjnejgicl ShortcutWithArgument: C:\Users\Gulek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\360c22b137d62ce9\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=ChromeDefaultData ==================== Loaded Modules (Whitelisted) ============== 2006-12-04 02:26 - 2006-12-04 02:26 - 000022016 _____ () C:\Windows\System32\sugs2l6.dll 2016-12-11 22:43 - 2016-12-11 22:43 - 000066872 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2016-12-11 22:43 - 2016-12-11 22:43 - 000107832 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2017-07-16 19:28 - 2014-01-20 16:29 - 002326528 _____ () C:\Program Files\RAVCORE DYNAMITE 7.1 GAMING HEADSET\CPL\FaceLift_x64.exe 2017-06-27 23:38 - 2017-06-23 05:21 - 003807064 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.115\libglesv2.dll 2017-06-27 23:38 - 2017-06-23 05:21 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.115\libegl.dll 2017-05-23 21:16 - 2017-05-03 22:21 - 001040504 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2016-03-03 22:29 - 2017-05-17 03:54 - 000678176 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2016-03-03 22:29 - 2016-09-01 03:02 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll 2016-03-03 22:29 - 2016-09-01 03:02 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2016-03-03 22:29 - 2016-09-01 03:02 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2016-03-03 22:29 - 2017-07-18 02:33 - 002497824 _____ () C:\Program Files (x86)\Steam\video.dll 2016-03-03 22:29 - 2016-01-27 09:49 - 002549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2016-03-03 22:29 - 2016-01-27 09:49 - 000442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2016-03-03 22:29 - 2016-01-27 09:49 - 000491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2016-03-03 22:29 - 2016-01-27 09:49 - 000332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2016-03-03 22:29 - 2016-01-27 09:49 - 000485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2016-03-03 22:29 - 2017-07-18 02:33 - 000884512 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2016-04-09 19:31 - 2016-07-05 00:17 - 000266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll 2015-03-17 01:34 - 2015-03-17 01:34 - 000010240 _____ () C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\locale\pl_pl\acrotray.pol 2016-09-26 13:55 - 2016-09-26 13:55 - 040523480 _____ () C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\libcef.dll 2016-12-15 17:44 - 2017-07-06 19:58 - 073088800 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll 2017-06-08 20:13 - 2017-05-17 03:54 - 000678176 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll 2016-03-03 22:29 - 2017-07-18 02:33 - 000384288 _____ () C:\Program Files (x86)\Steam\steam.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2016-06-19 10:48 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3358588553-51344018-1733655914-1000\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is disabled. ==================== MSCONFIG/TASK MANAGER disabled items == MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun MSCONFIG\startupreg: MimBoot => C:\PROGRA~2\MUSICM~1\MUSICM~1\mimboot.exe MSCONFIG\startupreg: MMTray => C:\PROGRA~2\MUSICM~1\MUSICM~1\mm_tray.exe MSCONFIG\startupreg: OneDrive => "C:\Users\Gulek\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background MSCONFIG\startupreg: PhilipsDM => "C:\Program Files (x86)\Philips\Philips Device Manager\Bin\DeviceManager.exe" MSCONFIG\startupreg: World of Warships => "D:\Games\World_of_Warships\WargamingGameUpdater.exe" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{E60ADCAB-3371-48E3-B323-2A4A5945BBB8}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{7BA928C0-2388-4E2F-80D9-67137B4A4F55}] => (Allow) C:\Users\Gulek\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{715EC87A-EE7C-4A59-BC86-9B71A31A48C2}] => (Allow) C:\Users\Gulek\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{40720CFF-2639-4418-AAD5-87B6B6553C1C}D:\program files\stronghold crusader 2\bin\win32_release\crusader2.exe] => (Allow) D:\program files\stronghold crusader 2\bin\win32_release\crusader2.exe FirewallRules: [UDP Query User{618F86B3-9E4D-4737-93AA-EF8FB04D182F}D:\program files\stronghold crusader 2\bin\win32_release\crusader2.exe] => (Allow) D:\program files\stronghold crusader 2\bin\win32_release\crusader2.exe FirewallRules: [{B45A3E77-F745-4ED3-8560-B450A7DBF3CF}] => (Allow) D:\Program Files (x86)\Ubisoft\The Settlers 7 - Droga do królestwa\Data\Base\_Dbg\Bin\Release\Settlers7R.exe FirewallRules: [{4867606E-21DC-4735-B14E-CFA7A10D08BF}] => (Allow) D:\Program Files (x86)\Ubisoft\The Settlers 7 - Droga do królestwa\Data\Base\_Dbg\Bin\Release\Settlers7R.exe FirewallRules: [{A8464609-0739-47C7-B0E9-576E7F70D7F1}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{F20F9529-F65B-4534-A05B-74ACB4442079}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{6E737D6F-35A5-48F2-8B28-5A07D05F9A60}] => (Allow) D:\Program Files (x86)\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{2913D810-2577-4642-84D5-5E2E6C5CFC00}] => (Allow) D:\Program Files (x86)\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{FD56D743-AC4C-467D-81AB-E5C0DE70E69D}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{98410168-64D0-4BF6-AB50-BFED81EFC2C9}] => (Allow) LPort=2869 FirewallRules: [{76F67302-EBE0-4796-9387-2027789207B3}] => (Allow) LPort=1900 FirewallRules: [{326C1BDD-8573-40A7-A764-7ED294540A52}] => (Allow) D:\Games\World_of_Warships\WoWSLauncher.exe FirewallRules: [{29B3681F-FC6A-4D0F-8EBC-AEECE5885C61}] => (Allow) D:\Games\World_of_Warships\WoWSLauncher.exe FirewallRules: [{C195EA60-53C8-466A-A4F5-AE5331B52AF9}] => (Allow) D:\Games\World_of_Warships\worldofwarships.exe FirewallRules: [{A3718590-89C4-4543-89FC-69EB31C19B0A}] => (Allow) D:\Games\World_of_Warships\worldofwarships.exe FirewallRules: [{200B779D-2D61-48C8-B5B5-4889A3A84F07}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{78788743-3F1C-4780-BB4D-BB8DE2DBBDAB}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{6489EC6C-FB55-4105-8D25-12E784F75837}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{9980FA9D-CC85-4E09-8269-7F6E4C9E7597}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{5A6B4C4E-328C-4B32-ABE3-F9B6FF524A34}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{A12A8740-1062-41BE-AE62-67931C1AE9F1}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{C2733CBB-164F-4CD0-855A-6A195070FC4B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{81F01D74-3AA0-40DD-8C7F-8014BD41D572}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{0D167249-6B13-4A0A-8BD6-50DAE9DBD7C9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{EF96EC89-B8BF-468D-B119-C13B749EBE82}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{FD6A666C-A363-45AE-B7DC-FDA2BED6D795}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{DAEEC8EC-9A83-4E5D-B962-FE6EF605D7AB}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{3490A43B-195D-4528-ABA9-48270003CD35}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{55C74DD5-FBB2-4EC6-99F2-3019C786055E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{332EA613-0155-4524-B918-69A4EB182ACB}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{4C72A143-D8AB-43DA-ACA5-035C262753DC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{0E278741-D32E-4002-9B91-BBDEA18E93FA}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{C0C35C4A-F59E-4ED0-A368-296A19607B08}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{1901A0DE-2FA6-42B3-AC59-F88C71DBFFF1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe FirewallRules: [{D56E79BD-B4D0-4EAE-96A1-5A7AAEDD49A3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe FirewallRules: [{CF6F074B-1335-4991-9FC5-8F3E3D68358A}] => (Allow) D:\Program Files (x86)\Electronic Arts\Król Nazguli\game.dat FirewallRules: [{71C16012-ED9D-4331-BC6E-0DEC01136AF4}] => (Allow) D:\Program Files (x86)\Electronic Arts\Król Nazguli\game.dat FirewallRules: [{2DEB1BF1-EED2-47B7-BF96-3CF42F3B052B}] => (Allow) C:\Program Files (x86)\Electronic Arts\Bitwa o Śródziemie II\game.dat FirewallRules: [{917E0518-1E4B-4596-AB0E-7E17DF38B91B}] => (Allow) C:\Program Files (x86)\Electronic Arts\Bitwa o Śródziemie II\game.dat FirewallRules: [{48739F39-4474-4DCF-951A-2D45A6E71EE2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tropico 4\Tropico4.exe FirewallRules: [{25E87114-8D58-4E47-A350-E5983CD0AB65}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tropico 4\Tropico4.exe FirewallRules: [{BE83DE62-361C-41DD-AF5D-96C40082CD21}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Zombie Defense\ZombieDefense.exe FirewallRules: [{73C4D1B1-848C-4269-BC92-C7BD69BA80A3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Zombie Defense\ZombieDefense.exe FirewallRules: [{60DDCACE-59AA-40FB-B47E-07A45EC4D9D1}] => (Allow) C:\Program Files (x86)\GameforgeLive\gfl_client.exe FirewallRules: [{103A8D80-0041-4F4D-AC67-2FE39CC33204}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{A7157F09-0B9E-48B3-9CFF-542BA84D636E}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{73F83DAF-FFC5-4E96-9134-A8EA205CEBE1}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{7FF7D110-66AC-41B9-8AC7-CB7617C72DD8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{B39952A7-275C-46AC-82B2-11B0CEDD3721}] => (Allow) D:\Program Files (x86)\Ubisoft\Tom Clancy's Rainbow Six Vegas 2\Binaries\R6Vegas2_Game.exe FirewallRules: [{969995C5-88B8-44E3-95A4-A3C0786AA972}] => (Allow) D:\Program Files (x86)\Ubisoft\Tom Clancy's Rainbow Six Vegas 2\Binaries\R6Vegas2_Game.exe FirewallRules: [{F82E9404-0476-4FDF-BAF8-93155CB1D932}] => (Allow) D:\Program Files (x86)\Ubisoft\Tom Clancy's Rainbow Six Vegas 2\Binaries\R6Vegas2_Launcher.exe FirewallRules: [{44523F32-62A3-4873-BA2C-DDD74808DBB6}] => (Allow) D:\Program Files (x86)\Ubisoft\Tom Clancy's Rainbow Six Vegas 2\Binaries\R6Vegas2_Launcher.exe FirewallRules: [{51A97A20-A5DD-460D-9114-7A27A34E7139}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{53A7414C-0E8C-4E7D-9195-72C87D808BF0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{F1FBF72E-059E-49FA-B363-FAE2E6606DB8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{1091B3A6-92C7-4818-860D-38995E728962}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{D66AD2F5-02F9-4F27-A1B5-1E7AFB5ACBEC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{AD113CE9-B8F0-4D26-8B95-52CFD2B10C57}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{7F6533FD-BC74-43CA-97C7-0CBB8353F193}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{1062848C-E90A-47A8-9B78-60162C539C9F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{40743DF6-CFF6-4D23-8D87-66EAA27D6C62}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{CE8AE4F4-8EEB-4D72-A558-100266C1EEAF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{611DCD98-91D0-4401-8B5C-86ECA2A43D7D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{350DACC5-AC1B-42FB-951C-B46FAAC8FAC0}] => (Allow) D:\Program Files\SteamApps\common\Fallout 4\Fallout4Launcher.exe FirewallRules: [{6BB04251-8ADF-46AD-A322-19EC5A0ED325}] => (Allow) D:\Program Files\SteamApps\common\Fallout 4\Fallout4Launcher.exe FirewallRules: [{3E21324E-414D-4EB7-A996-EFED5CFC0117}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{EB163136-C0A3-44E4-BA1F-6C146A6D8A79}] => (Allow) D:\Program Files\SteamApps\common\insurgency2\insurgency_BE.exe FirewallRules: [{5A34537B-65FA-4FA2-92A3-47E51285BA6A}] => (Allow) D:\Program Files\SteamApps\common\insurgency2\insurgency_BE.exe FirewallRules: [{23B14A2E-3D46-4F46-939F-DDD167E758A5}] => (Allow) D:\Program Files\SteamApps\common\Prison Architect\Prison Architect.exe FirewallRules: [{07E4BD27-96AE-4BEF-9BDE-6DAB68A22EC8}] => (Allow) D:\Program Files\SteamApps\common\Prison Architect\Prison Architect.exe FirewallRules: [{EDE9FE8B-10DD-4C8C-8CCF-3DE83665D3CC}] => (Allow) D:\Program Files\SteamApps\common\Cities_Skylines\Cities.exe FirewallRules: [{2D666556-6B2B-4644-8D9D-9CDBCBDBB994}] => (Allow) D:\Program Files\SteamApps\common\Cities_Skylines\Cities.exe ==================== Restore Points ========================= 04-08-2017 00:48:30 Windows Update ==================== Faulty Device Manager Devices ============= Name: Zewnętrzne urządzenie Bluetooth Description: Zewnętrzne urządzenie Bluetooth Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Zewnętrzne urządzenie Bluetooth Description: Zewnętrzne urządzenie Bluetooth Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Zewnętrzne urządzenie Bluetooth Description: Zewnętrzne urządzenie Bluetooth Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Sentinel64 Description: Sentinel64 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: Sentinel64 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Zewnętrzne urządzenie Bluetooth Description: Zewnętrzne urządzenie Bluetooth Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Zewnętrzne urządzenie Bluetooth Description: Zewnętrzne urządzenie Bluetooth Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Zewnętrzne urządzenie Bluetooth Description: Zewnętrzne urządzenie Bluetooth Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Zewnętrzne urządzenie Bluetooth Description: Zewnętrzne urządzenie Bluetooth Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Zewnętrzne urządzenie Bluetooth Description: Zewnętrzne urządzenie Bluetooth Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (08/04/2017 08:08:57 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (08/03/2017 06:20:41 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (08/02/2017 06:20:02 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (08/01/2017 06:40:13 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (07/31/2017 10:48:39 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program cms2018.exe w wersji 5.6.2.10718 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 146c Godzina rozpoczęcia: 01d30a3e51d7493d Godzina zakończenia: 637 Ścieżka aplikacji: D:\Program Files\steamapps\common\Car Mechanic Simulator 2018\cms2018.exe Identyfikator raportu: 9db7cf34-7631-11e7-b9a7-00c2c60ec8cd Error: (07/31/2017 06:12:53 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (07/29/2017 12:53:49 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (07/28/2017 05:32:53 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (07/27/2017 12:02:38 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (07/25/2017 05:01:42 PM) (Source: ESENT) (EventID: 489) (User: ) Description: CCleaner64 (4428) Próba otwarcia pliku "C:\Users\Gulek\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" w trybie tylko do odczytu zakończyła się niepomyślnie z błędem systemowym 32 (0x00000020): "Proces nie może uzyskać dostępu do pliku, ponieważ jest on używany przez inny proces. ". Operacja otwierania pliku zostanie zakończona z błędem -1032 (0xfffffbf8). System errors: ============= Error: (08/04/2017 10:32:41 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Peer Name Resolution Protocol zakończyła działanie; wystąpił następujący błąd: %%-2140993535 Error: (08/04/2017 10:32:41 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Peer Networking Grouping zależy od usługi Peer Name Resolution Protocol, której nie można uruchomić z powodu następującego błędu: %%-2140993535 Error: (08/04/2017 10:32:41 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Peer Name Resolution Protocol zakończyła działanie; wystąpił następujący błąd: %%-2140993535 Error: (08/04/2017 10:32:41 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Peer Networking Grouping zależy od usługi Peer Name Resolution Protocol, której nie można uruchomić z powodu następującego błędu: %%-2140993535 Error: (08/04/2017 10:32:41 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: Chmura protokołu rozpoznawania nazw równorzędnych nie została uruchomiona, ponieważ tworzenie tożsamości domyślnej nie powiodło się; kod błędu: 0x80630801. Error: (08/04/2017 10:32:41 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: Chmura protokołu rozpoznawania nazw równorzędnych nie została uruchomiona, ponieważ tworzenie tożsamości domyślnej nie powiodło się; kod błędu: 0x80630801. Error: (08/04/2017 10:32:29 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Peer Name Resolution Protocol zakończyła działanie; wystąpił następujący błąd: %%-2140993535 Error: (08/04/2017 10:32:29 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Peer Networking Grouping zależy od usługi Peer Name Resolution Protocol, której nie można uruchomić z powodu następującego błędu: %%-2140993535 Error: (08/04/2017 10:32:29 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: Chmura protokołu rozpoznawania nazw równorzędnych nie została uruchomiona, ponieważ tworzenie tożsamości domyślnej nie powiodło się; kod błędu: 0x80630801. Error: (08/04/2017 10:31:32 PM) (Source: Microsoft-Windows-WHEA-Logger) (EventID: 18) (User: NT AUTHORITY) Description: Wystąpił krytyczny błąd sprzętowy. Zgłoszone przez składnik: rdzeń procesora Źródło błędu: 3 Typ błędu: 9 Identyfikator procesora: 0 Widok szczegółów tego wpisu zawiera dodatkowe informacje. CodeIntegrity: =================================== Date: 2016-09-09 16:25:08.532 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-09 16:25:07.658 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-08 16:08:14.254 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-08 16:08:13.771 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-07 16:22:13.282 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-07 16:22:12.518 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-06 16:55:31.578 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-06 16:55:30.518 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-05 16:42:24.754 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-05 16:42:24.582 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-4700MQ CPU @ 2.40GHz Percentage of memory in use: 28% Total physical RAM: 8142.36 MB Available physical RAM: 5815.7 MB Total Virtual: 16282.9 MB Available Virtual: 13787.95 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:489.16 GB) (Free:22.58 GB) NTFS Drive d: () (Fixed) (Total:442.25 GB) (Free:48.16 GB) NTFS Drive l: (Ultimate Epic Battle Simulator) (CDROM) (Total:2.67 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: D9FA2484) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=489.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=442.3 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================