Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27.01.2018 Ran by Gejming (01-02-2018 04:22:07) Running from D:\ Windows 10 Pro N Version 1709 16299.192 (X64) (2018-01-30 11:00:43) Boot Mode: Safe Mode (with Networking) ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1369216745-1429293917-3832287407-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1369216745-1429293917-3832287407-503 - Limited - Disabled) Gejming (S-1-5-21-1369216745-1429293917-3832287407-1001 - Administrator - Enabled) => C:\Users\Gejming Guest (S-1-5-21-1369216745-1429293917-3832287407-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-1369216745-1429293917-3832287407-504 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-1369216745-1429293917-3832287407-1001\...\uTorrent) (Version: 3.5.1.44332 - BitTorrent Inc.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield™ 1 (HKLM-x32\...\{335B50BC-6130-4BAF-9A6A-F1561270587B}) (Version: 1.0.52.60404 - Electronic Arts) DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 390.77 - NVIDIA Corporation) Hidden FIFA 17 (HKLM-x32\...\{8C0DD062-B659-409C-9AB7-8EBD1D64D2EB}) (Version: 1.0.48.30259 - Electronic Arts) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) HitmanPro.Alert 3 (HKLM\...\HitmanPro.Alert) (Version: 3.7.3.729 - SurfRight B.V.) Intel(R) Chipset Device Software (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden K-Lite Codec Pack 13.7.5 Basic (HKLM-x32\...\KLiteCodecPack_is1) (Version: 13.7.5 - KLCP) Malwarebytes (wersja 3.3.1.2183) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation) Mozilla Firefox 58.0.1 (x64 pl) (HKLM\...\Mozilla Firefox 58.0.1 (x64 pl)) (Version: 58.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 58.0.1 - Mozilla) NVIDIA Graphics Driver 390.77 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 390.77 - NVIDIA Corporation) NVIDIA PhysX System Software 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: 10.5.10.24870 - Electronic Arts, Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.2.703.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7647 - Realtek Semiconductor Corp.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) SteelSeries Engine 3.11.11 (HKLM\...\SteelSeries Engine 3) (Version: 3.11.11 - SteelSeries ApS) TeamSpeak 3 Client (HKU\S-1-5-21-1369216745-1429293917-3832287407-1001\...\TeamSpeak 3 Client) (Version: 3.1.8 - TeamSpeak Systems GmbH) Tom Clancy's Rainbow Six Siege (HKLM-x32\...\Uplay Install 635) (Version: - Ubisoft Montreal) Uplay (HKLM-x32\...\Uplay) (Version: 47.0 - Ubisoft) Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0) (Version: 1.0.65.0 - LunarG, Inc.) Hidden WinRAR 5.50 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) Zemana AntiMalware (HKLM-x32\...\{8F0CD7D1-42F3-4195-95CD-833578D45057}_is1) (Version: 2.74.0.150 - Zemana Ltd.) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1369216745-1429293917-3832287407-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Gejming\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64\FileSyncShell64.dll => No File CustomCLSID: HKU\S-1-5-21-1369216745-1429293917-3832287407-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Gejming\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64\FileSyncShell64.dll => No File CustomCLSID: HKU\S-1-5-21-1369216745-1429293917-3832287407-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Gejming\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64\FileSyncShell64.dll => No File ContextMenuHandlers1: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => d:\Program Files (x86)\Zemana AntiMalware\ZAMShellExt64.dll [2018-01-31] () ContextMenuHandlers1: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18011-0\ShellExt.dll [2017-09-29] (Microsoft Corporation) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-09-13] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-09-13] (Alexander Roshal) ContextMenuHandlers2: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18011-0\ShellExt.dll [2017-09-29] (Microsoft Corporation) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers4: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18011-0\ShellExt.dll [2017-09-29] (Microsoft Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2018-01-23] (NVIDIA Corporation) ContextMenuHandlers6: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => d:\Program Files (x86)\Zemana AntiMalware\ZAMShellExt64.dll [2018-01-31] () ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-09-13] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-09-13] (Alexander Roshal) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0C1AF1E8-0243-45DD-A956-CD5B12DCF2C5} - System32\Tasks\S-1-5-21-1369216745-1429293917-3832287407-1001\DataSenseLiveTileTask => C:\Windows\System32\DataUsageLiveTileTask.exe [2017-09-29] (Microsoft Corporation) Task: {130B9B34-5644-4372-AC52-B3B70728B0D7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18011-0\MpCmdRun.exe [2018-01-31] (Microsoft Corporation) Task: {342BAF31-76B2-4530-80D7-15CFBE08DB94} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-01-24] (NVIDIA Corporation) Task: {59A3C82A-4500-4D6A-9BB6-A907B2057962} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18011-0\MpCmdRun.exe [2018-01-31] (Microsoft Corporation) Task: {7937EFEF-021E-473A-A627-0A1412F37ECE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18011-0\MpCmdRun.exe [2018-01-31] (Microsoft Corporation) Task: {926DA0C2-EA4B-46E0-9D08-CE3E171FBDBD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18011-0\MpCmdRun.exe [2018-01-31] (Microsoft Corporation) Task: {BA4F8D64-C8A1-4585-8E10-30FF8A1CC27C} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-01-24] (NVIDIA Corporation) Task: {D3E38CAC-2C0D-401F-A15F-EFAB806E7A33} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-01-24] (NVIDIA Corporation) Task: {F36BB70D-FC3D-4158-884A-4EB18D64ACB6} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-01-24] (NVIDIA Corporation) Task: {F4FEC166-0186-409B-8B3A-82E66FE61FB7} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-01-24] (NVIDIA Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2017-09-29 14:40 - 2017-09-29 14:40 - 000184432 _____ () C:\Windows\SYSTEM32\inputhost.dll 2018-01-31 06:09 - 2017-11-29 09:11 - 002301384 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2018-01-31 07:47 - 2017-11-26 13:23 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2018-01-31 07:46 - 2017-11-26 13:01 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll ==================== Alternate Data Streams (Whitelisted) ========= ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMSwissArmy => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMSwissArmy => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2017-09-29 14:45 - 2017-09-29 14:43 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1369216745-1429293917-3832287407-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg DNS Servers: 37.8.214.2 - 31.11.202.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Block) ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{2D31DA1A-67CC-4BC4-ACEC-3D9F0FED76D4}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{EA9CE62C-21A3-4419-B50D-08570B39B14B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{1DF68353-DE5D-433E-8A47-DD5698E1B40D}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{898F1044-CC5E-4D03-91C1-D8CBBE1F437E}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{27707CA6-F8E1-4890-B6D6-BF11C2DEC5CA}] => (Allow) D:\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe FirewallRules: [{ED331B21-2211-434F-82A9-C092AF4C4EB3}] => (Allow) D:\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe FirewallRules: [{C041A884-9F36-4F1D-A4E0-476E1DD07F96}] => (Allow) D:\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe FirewallRules: [{E65A7B99-5DE3-44B2-85D3-EE8A2E86FB18}] => (Allow) D:\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe FirewallRules: [{32E845BE-807D-407A-9ADA-6BFA44D469B3}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{E3807212-9F7D-4FB9-A277-6EE021010F27}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [TCP Query User{37C9E93B-C702-4B1A-B9C3-0857F6BFE1C6}D:\games\hearthstone\hearthstone.exe] => (Block) D:\games\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{90D24877-962A-44A9-935D-A9FCD080EA7C}D:\games\hearthstone\hearthstone.exe] => (Block) D:\games\hearthstone\hearthstone.exe FirewallRules: [{7065077C-F42F-4DBE-9C20-FCE71B0CEE0C}] => (Allow) C:\Users\Gejming\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{F47FC640-5697-4ABC-9B71-8B887B2A8F61}] => (Allow) C:\Users\Gejming\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{80391AA3-65B5-41B7-9209-9EE35AA7DFB4}] => (Allow) D:\games\FIFA 17\FIFASetup\fifaconfig.exe FirewallRules: [{DCB4FDCC-9277-417D-AC39-A665B8603911}] => (Allow) D:\games\FIFA 17\FIFASetup\fifaconfig.exe FirewallRules: [TCP Query User{FBFB8D4E-A6CF-4C3B-80D9-DD1D6D485B6A}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{E04FB5E7-9C71-4110-A171-990BFFC87776}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe FirewallRules: [{10F73793-90F4-4DCC-BAC3-9AD0FF6080CC}] => (Allow) D:\games\Battlefield 1\bf1Trial.exe FirewallRules: [{6477871A-CC3F-4946-8C1C-AE94E5BD2AFE}] => (Allow) D:\games\Battlefield 1\bf1Trial.exe FirewallRules: [{C03E444D-EBB0-466D-A0DB-4CBE0930B219}] => (Allow) D:\games\Battlefield 1\bf1.exe FirewallRules: [{E2927521-59D8-494A-813C-231853170454}] => (Allow) D:\games\Battlefield 1\bf1.exe FirewallRules: [{5CC7D6A8-B24B-4D0F-9CFE-BA445AB268AE}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{46B67A4B-EF44-4AF9-B131-F253970DEF5B}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{3865BFEB-3A13-4546-9AE1-BDB13A3A5DCA}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{2E433F0F-D315-49AD-BCF7-BA83C6D07A7D}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe ==================== Restore Points ========================= 30-01-2018 14:00:12 Installed DirectX ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/01/2018 02:47:17 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: fifaconfig.exe, version: 1.0.0.0, time stamp: 0x57a3c17e Faulting module name: KERNELBASE.dll, version: 10.0.16299.15, time stamp: 0x4736733c Exception code: 0xe0434352 Fault offset: 0x0000000000013fb8 Faulting process id: 0x758 Faulting application start time: 0x01d39afe8dab657b Faulting application path: D:\games\FIFA 17\FIFASetup\fifaconfig.exe Faulting module path: C:\Windows\System32\KERNELBASE.dll Report Id: fbd8dc9b-2b55-4d15-8f67-908d257b130e Faulting package full name: Faulting package-relative application ID: Error: (02/01/2018 02:47:08 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: fifaconfig.exe, version: 1.0.0.0, time stamp: 0x57a3c17e Faulting module name: KERNELBASE.dll, version: 10.0.16299.15, time stamp: 0x4736733c Exception code: 0xe0434352 Fault offset: 0x0000000000013fb8 Faulting process id: 0x758 Faulting application start time: 0x01d39afe8dab657b Faulting application path: D:\games\FIFA 17\FIFASetup\fifaconfig.exe Faulting module path: C:\Windows\System32\KERNELBASE.dll Report Id: 2eb10b06-e696-4128-bed2-7d3cc5dc7a19 Faulting package full name: Faulting package-relative application ID: Error: (02/01/2018 02:47:05 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Aplikacja: fifaconfig.exe Wersja architektury: v4.0.30319 Opis: proces został przerwany z powodu nieobsłużonego wyjątku. Informacje o wyjątku: System.UnauthorizedAccessException w System.IO.__Error.WinIOError(Int32, System.String) w System.IO.FileStream.WriteCore(Byte[], Int32, Int32) w System.IO.FileStream.FlushInternalBuffer() w System.IO.FileStream.Flush(Boolean) w System.IO.StreamWriter.Flush(Boolean, Boolean) w System.IO.StreamWriter.Dispose(Boolean) w System.IO.TextWriter.Dispose() w System.IO.File.InternalWriteAllLines(System.IO.TextWriter, System.Collections.Generic.IEnumerable`1) w fifasetup_csharp.Settings.SaveIniFile(System.String) w fifasetup_csharp.StartingForm.comboBox1_SelectedIndexChanged(System.Object, System.EventArgs) w System.EventHandler.Invoke(System.Object, System.EventArgs) w System.Windows.Forms.ComboBox.OnSelectedIndexChanged(System.EventArgs) w System.Windows.Forms.ComboBox.set_SelectedIndex(Int32) w System.Windows.Forms.ComboBox.set_SelectedItem(System.Object) w fifasetup_csharp.StartingForm.InitLanguageSelector() w fifasetup_csharp.StartingForm..ctor() w fifasetup_csharp.Program.Main(System.String[]) Error: (01/31/2018 10:16:02 PM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to add firewall exception for D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Error: (01/31/2018 10:16:02 PM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to add firewall exception for D:\Program Files (x86)\Steam\steam.exe Error: (01/31/2018 09:39:16 PM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to add firewall exception for D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Error: (01/31/2018 09:39:16 PM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to add firewall exception for D:\Program Files (x86)\Steam\steam.exe Error: (01/31/2018 09:35:47 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: svchost.exe_RasMan, version: 10.0.16299.15, time stamp: 0x9c786b9a Faulting module name: ntdll.dll, version: 10.0.16299.192, time stamp: 0x6dead514 Exception code: 0xc0000005 Fault offset: 0x000000000004be6b Faulting process id: 0x174c Faulting application start time: 0x01d39ad3117fc3c1 Faulting application path: c:\windows\system32\svchost.exe Faulting module path: C:\Windows\SYSTEM32\ntdll.dll Report Id: cb96536b-a79b-4d3d-9c20-16250004bfa7 Faulting package full name: Faulting package-relative application ID: Error: (01/31/2018 09:35:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: svchost.exe_RasMan, version: 10.0.16299.15, time stamp: 0x9c786b9a Faulting module name: ntdll.dll, version: 10.0.16299.192, time stamp: 0x6dead514 Exception code: 0xc0000005 Fault offset: 0x000000000004be6b Faulting process id: 0x1768 Faulting application start time: 0x01d39ad30f93fe67 Faulting application path: c:\windows\system32\svchost.exe Faulting module path: C:\Windows\SYSTEM32\ntdll.dll Report Id: d88fd52e-1e07-497a-a752-ce849c578704 Faulting package full name: Faulting package-relative application ID: Error: (01/31/2018 09:35:37 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: svchost.exe_RasMan, version: 10.0.16299.15, time stamp: 0x9c786b9a Faulting module name: ntdll.dll, version: 10.0.16299.192, time stamp: 0x6dead514 Exception code: 0xc0000005 Fault offset: 0x000000000004be6b Faulting process id: 0xb64 Faulting application start time: 0x01d39ad252e79753 Faulting application path: c:\windows\system32\svchost.exe Faulting module path: C:\Windows\SYSTEM32\ntdll.dll Report Id: f0b60711-bbae-41f4-a204-b48568f0672c Faulting package full name: Faulting package-relative application ID: System errors: ============= Error: (02/01/2018 04:22:16 AM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: DCOM got error "1084" attempting to start the service EventSystem with arguments "Unavailable" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF} Error: (02/01/2018 04:22:14 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-50QDB8D) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (02/01/2018 04:22:09 AM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY) Description: DCOM got error "1084" attempting to start the service dps with arguments "Unavailable" in order to run the server: {DDCFD26B-FEED-44CD-B71D-79487D2E5E5A} Error: (02/01/2018 04:22:08 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-50QDB8D) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (02/01/2018 04:21:54 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-50QDB8D) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (02/01/2018 04:21:48 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-50QDB8D) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (02/01/2018 04:21:35 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-50QDB8D) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (02/01/2018 04:20:56 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-50QDB8D) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (02/01/2018 04:20:49 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-50QDB8D) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (02/01/2018 04:20:42 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-50QDB8D) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-7400 CPU @ 3.00GHz Percentage of memory in use: 26% Total physical RAM: 8147.4 MB Available physical RAM: 5985.26 MB Total Virtual: 14147.4 MB Available Virtual: 12064.64 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:116.65 GB) (Free:85.04 GB) NTFS ==>[system with boot components (obtained from drive)] Drive d: () (Fixed) (Total:814.33 GB) (Free:640.54 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 2AE61174) Partition 1: (Active) - (Size=116.6 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=814.3 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================