Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-04-2015 01 Ran by Sebastian at 2015-05-01 10:41:23 Running from C:\Users\Sebastian\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-637789347-3411735977-3138111424-500 - Administrator - Disabled) Gość (S-1-5-21-637789347-3411735977-3138111424-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-637789347-3411735977-3138111424-1003 - Limited - Enabled) Sebastian (S-1-5-21-637789347-3411735977-3138111424-1000 - Administrator - Enabled) => C:\Users\Sebastian UpdatusUser (S-1-5-21-637789347-3411735977-3138111424-1001 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: McAfee — ochrona antywirusowa i przed oprogramowaniem szpiegującym (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: McAfee — ochrona antywirusowa i przed oprogramowaniem szpiegującym (Enabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB} FW: McAfee Firewall (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Acrobat X Pro - Eastern European (Group 1) (HKLM-x32\...\{AC76BA86-1029-4770-7760-000000000005}) (Version: 10.1.13 - Adobe Systems) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.178 - Adobe Systems Incorporated) Adobe Creative Suite 6 Design Standard (HKLM-x32\...\{0327A4BF-62BF-48BB-8928-B971B749E9E1}) (Version: 6 - Adobe Systems Incorporated) Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.169 - Adobe Systems Incorporated) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Reader 9.5.5 - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-A95000000001}) (Version: 9.5.5 - Adobe Systems Incorporated) Adobe® Content Viewer (HKLM-x32\...\com.adobe.dmp.contentviewer) (Version: 3.4.3 - Adobe Systems, Incorporated) Advanced Audio FX Engine (HKLM-x32\...\Advanced Audio FX Engine) (Version: 1.12.05 - Creative Technology Ltd) Akamai NetSession Interface (HKU\S-1-5-21-637789347-3411735977-3138111424-1000\...\Akamai) (Version: - Akamai Technologies, Inc) Aktualizacje NVIDIA 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation) ALL YouTube Downloader (HKLM-x32\...\ALL YouTube Downloader_is1) (Version: 2.0 - ALLPlayer Ltd.) ALLMediaServer (HKLM-x32\...\{FE77909E-B782-4554-A92A-4D887CEF0ACC}_is1) (Version: 0.92 - ALLCinema, Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Ask Toolbar (HKLM-x32\...\{86D4B82A-ABED-442A-BE86-96357B70F4FE}) (Version: 1.15.14.0 - Ask.com) <==== ATTENTION Ask Toolbar Updater (HKU\S-1-5-21-637789347-3411735977-3138111424-1000\...\{79A765E1-C399-405B-85AF-466F52E918B0}) (Version: 1.2.3.29495 - Ask.com) <==== ATTENTION Chrome Remote Desktop Host (HKLM-x32\...\{A1A724F3-F1A6-479C-AE98-208946717E2B}) (Version: 42.0.2311.39 - Google Inc.) Content Manager (HKLM-x32\...\Content Manager) (Version: 3.18.4.498536 - NNG Llc.) Corel Graphics - Windows Shell Extension (HKLM\...\_{2CDF0D0A-C58C-4136-9978-F029B2723B0D}) (Version: 16.4.0.1280 - Corel Corporation) Corel Graphics - Windows Shell Extension (Version: 16.4.1280 - Corel Corporation) Hidden Corel Graphics - Windows Shell Extension 32 Bit (Version: 16.4.1280 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Capture (x64) (Version: 16.6 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Common (x64) (Version: 16.7 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Connect (x64) (Version: 16.6 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Content (HKLM-x32\...\_{C221B72F-C0AC-4DD7-B27E-701B1E9DE23A}) (Version: 16.0 - Corel Corporation) CorelDRAW Graphics Suite X6 - Content (x32 Version: 16.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Custom Data (x64) (Version: 16.6 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - CZ (x64) (Version: 16.6 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Draw (x64) (Version: 16.7 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - EN (x64) (Version: 16.6 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Filters (x64) (Version: 16.7 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - FontNav (x64) (Version: 16.2 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - IPM (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - IPM (Version: 16.7 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - IPM Content (x32 Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - PHOTO-PAINT (x64) (Version: 16.7 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Photozoom Plugin (x64) (Version: 16.6 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - PL (x64) (Version: 16.6 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Redist (x64) (Version: 16.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Setup Files (x64) (Version: 16.7 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - SU (x64) (Version: 16.6 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - SV (x64) (Version: 16.6 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - VBA (x64) (Version: 16.6 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - VideoBrowser (x64) (Version: 16.6 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - VSTA (x64) (Version: 16.6 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Writing Tools (x64) (Version: 16.7 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 (64-Bit) (HKLM\...\_{BDBFAC49-8877-472F-876B-75ADB7DBC955}) (Version: 16.4.1.1281 - Corel Corporation) CorelDRAW Graphics Suite X6 (x64) (Version: 16.7 - Corel Corporation) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0333 - Disc Soft Ltd) Dell Data Vault (Version: 4.2.2.0 - Dell Inc.) Hidden Dell Driver Download Manager (HKU\S-1-5-21-637789347-3411735977-3138111424-1000\...\bd4d3a0508d364f5) (Version: 3.0.0.0 - Dell Inc) Dell SupportAssist (HKLM\...\PC-Doctor for Windows) (Version: 1.0.6584.81 - Dell) Dell SupportAssistAgent (HKLM-x32\...\{287348C8-8B47-4C36-AF28-441A3B7D8722}) (Version: 1.0.3.60494 - Dell) Dell Webcam Central (HKLM-x32\...\Dell Webcam Central) (Version: 2.00.35 - Creative Technology Ltd) DirectX 9 Runtime (x32 Version: 1.00.0000 - Sonic Solutions) Hidden DloadX v1.12.002 (HKLM-x32\...\DloadX_is1) (Version: - Satel sp. z o.o.) DWG TrueView 2013 (HKLM\...\DWG TrueView 2013) (Version: 19.0.55.0 - Autodesk) DWG TrueView 2013 (Version: 19.0.55.0 - Autodesk) Hidden EFI Flexera License Manager (remove only) (HKLM-x32\...\EFILM) (Version: 11.11.1.3 - EFI) Fiery User Software-5.6.0.20 (HKLM-x32\...\{731B8125-5C8F-4422-BC5F-07A8CEE9538E}) (Version: 5.6.0.20 - Electronics For Imaging) FileZilla Client 3.5.3 (HKLM-x32\...\FileZilla Client) (Version: 3.5.3 - FileZilla Project) Google Chrome (HKU\S-1-5-21-637789347-3411735977-3138111424-1000\...\Google Chrome) (Version: 42.0.2311.135 - Google Inc.) Google Drive (HKLM-x32\...\{6C36881B-0E51-4231-9D02-BF2149664D34}) (Version: 1.20.8672.3137 - Google, Inc.) Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden Google+ Auto Backup (HKLM-x32\...\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}) (Version: 1.0.21.81 - Google) Hard Disk Sentinel PRO (HKLM-x32\...\Hard Disk Sentinel_is1) (Version: - HDS) imagePROGRAF Status Monitor (HKLM-x32\...\{66392B7C-C522-450D-97B7-B3E41E170C3B}) (Version: 25.10 - Canon) InstallUsbDrivers 1.0 (HKLM-x32\...\InstallUsbDrivers_is1) (Version: - Summa) Intel PROSet Wireless (x32 Version: - ) Hidden Intel(R) C++ Redistributables for Windows* on Intel(R) 64 (HKLM-x32\...\{D2437C5C-2D8C-40D2-8059-689AD7239FA3}) (Version: 11.1.048 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2455 - Intel Corporation) Intel(R) Turbo Boost Technology Monitor 2.0 (HKLM\...\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.1.23.0 - Intel) iPF765 Media Configuration Tool (HKLM-x32\...\{CBAD9C9C-3FBE-4DAA-A959-0C10840645C9}) (Version: 3.80.00 - Canon) Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation) K-Lite Codec Pack 10.2.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.2.0 - ) KONICA MINOLTA bizhub PRO 1200/1051 PS(Plug) (HKLM-x32\...\KONICA MINOLTA bizhub PRO 1200/1051 PS(Plug)) (Version: 2.0 - ) KONICA MINOLTA bizhub1200/1051 (HKLM\...\KONICA MINOLTA bizhub1200/1051 Installer) (Version: - KONICA MINOLTA) License Activation (remove only) (HKLM-x32\...\OFASQ) (Version: 1.2.0.9 - EFI) Licensing Service (03000201) (x32 Version: 03.00.02.15 - Protexis Inc.) Hidden LiveUpdate 3.2 (Symantec Corporation) (HKLM-x32\...\LiveUpdate) (Version: 3.2.0.68 - Symantec Corporation) McAfee Internet Security (HKLM-x32\...\MSC) (Version: 13.6.1529 - McAfee, Inc.) McAfee Online Backup (Version: 1.16.4.0 - McAfee, Inc.) Hidden McAfee Online Backup (x32 Version: - McAfee, Inc.) Hidden McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.274 - McAfee, Inc.) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office 2010 dla Użytkowników Domowych i Małych Firm (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Visio Viewer 2007 (HKLM-x32\...\{95120000-0052-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 (HKLM-x32\...\Microsoft SQL Server 2005) (Version: - Microsoft Corporation) Microsoft SQL Server 2005 Backward compatibility (HKLM\...\{8909B8A7-CEAB-4772-BF29-1892C4E6603B}) (Version: 8.05.2309 - Microsoft Corporation) Microsoft SQL Server Native Client (HKLM\...\{9ACF3FDB-C8E6-444C-8C64-13A221F7BFFD}) (Version: 9.00.5000.00 - Microsoft Corporation) Microsoft SQL Server Setup Support Files (English) (HKLM-x32\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.5000.00 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{B636C9B9-A3F2-4DCE-ADCC-72E095018385}) (Version: 9.00.5000.00 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM-x32\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation) mikroSubiekt dla Windows (HKLM-x32\...\{B040A57A-530F-4EDB-8E65-DEE7FA562698}) (Version: 3.01 - InsERT) Mozilla Firefox 31.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 pl)) (Version: 31.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NapiProjekt 2.0.0 (build 2151) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Naviextras Toolbox Prerequesities (HKLM-x32\...\{537575D6-3B96-474C-BD8F-DFF667363DBD}) (Version: 1.0.0 - NNG Llc.) Norton Ghost (HKLM-x32\...\{B0255743-165B-4BD5-8DA8-37DFB9930015}) (Version: 15.0.1.36526 - Symantec Corporation) NVIDIA Sterownik 3D Vision 306.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 306.97 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.2.24.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.2.24.0 - NVIDIA Corporation) NVIDIA Sterownik graficzny 306.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 306.97 - NVIDIA Corporation) Obsługa programów Apple (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Oce WPD (HKLM-x32\...\{3597d6bd-0e73-11d5-ab8a-00d0b7a62d54}) (Version: 1.22 - Oce) Oprogramowanie Intel(R) PROSet/Wireless WiFi (HKLM\...\{D61E4101-9E15-4D0E-ABD1-1ABD36B43330}) (Version: 14.03.0000 - Intel Corporation) Panel sterowania NVIDIA 306.97 (Version: 306.97 - NVIDIA Corporation) Hidden PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden PhotoShowExpress (x32 Version: 2.0.063 - ##COMPANY_NAME##) Hidden Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.) PLAY ONLINE (HKLM-x32\...\PLAY ONLINE) (Version: 11.302.09.00.264 - Huawei Technologies Co.,Ltd) Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.0.22 - Dell Inc.) QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) RBVirtualFolder64Inst (Version: 1.00.0000 - Roxio, Inc.) Hidden Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.34.1130.2010 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6449 - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.1.27.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.1.27.0 - Renesas Electronics Corporation) Hidden Roxio Creator Starter (HKLM-x32\...\{6F0BBEFE-BE1C-419B-BA1F-D36C9E7915BC}) (Version: 12.1.77.0 - Roxio) Roxio File Backup (Version: 1.3.2 - Roxio) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) SketchUp 2014 (HKLM-x32\...\{F246092E-FA0B-47C8-9D3E-CF8C210293C8}) (Version: 14.1.1282 - Trimble Navigation Limited) SketchUp 2015 (HKLM\...\{90A6F70E-96AD-4054-AB8F-42BCFA75F8EC}) (Version: 15.0.9350 - Trimble Navigation Limited) SketchUp 8 (HKLM-x32\...\{8EB62C87-AAA6-4850-A5BC-64155884B973}) (Version: 3.0.16846 - Trimble Navigation Limited) Sonic CinePlayer Decoder Pack (x32 Version: 4.3.0 - Sonic Solutions) Hidden Spotify (HKU\S-1-5-21-637789347-3411735977-3138111424-1000\...\Spotify) (Version: 1.0.4.90.g0b6df40b - Spotify AB) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) Summa Cutter Control 4.17.0.0 (HKLM-x32\...\Summa Cutter Control_is1) (Version: - ) Summa Cutter Tools 1.22.0.0 (HKLM-x32\...\Summa Cutter Tools_is1) (Version: - Summa) Summa WinPlot 10.0.10 (HKLM-x32\...\Summa - WinPlot_is1) (Version: 10.0.10.0 - Summa bvba) Web Components (HKLM-x32\...\{03B13AF8-9625-478A-AF0E-205337B9415A}_is1) (Version: - ) Windows Driver Package - Summa (SUMMACUTamd) USB (11/11/2008 6.3.6000.3) (HKLM\...\9E1DF764E18FED60C42D40530C837502265D8D7F) (Version: 11/11/2008 6.3.6000.3 - Summa) Windows Driver Package - Summa (SUMMACUTamd) USB (12/12/2012 6.4.6000.4) (HKLM\...\4A4EDF21C698BE90DD492AE3C95F9342F6208B1F) (Version: 12/12/2012 6.4.6000.4 - Summa) Windows Driver Package - Summa (SUMMADC3amd) USB (01/01/2008 6.2.6000.0) (HKLM\...\8C311725BA3A0EDA9F0D21CFB91577342C9A126B) (Version: 01/01/2008 6.2.6000.0 - Summa) Windows Driver Package - Summa (SUMMADC3amd) USB (12/12/2012 6.4.6000.0) (HKLM\...\63E777885E5B941B5A0C2DDF9085E35EA579B1FA) (Version: 12/12/2012 6.4.6000.0 - Summa) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-637789347-3411735977-3138111424-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Sebastian\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-637789347-3411735977-3138111424-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Sebastian\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-637789347-3411735977-3138111424-1000_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2013\en-US\dwgviewrficn.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-637789347-3411735977-3138111424-1000_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\DWG TrueView 2013\dwgviewr.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-637789347-3411735977-3138111424-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Sebastian\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-637789347-3411735977-3138111424-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Sebastian\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-637789347-3411735977-3138111424-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Sebastian\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-637789347-3411735977-3138111424-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Sebastian\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-637789347-3411735977-3138111424-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Sebastian\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File ==================== Restore Points ========================= ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {023FDAD4-8DA7-4D62-930D-C00435EA2057} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-16] (Adobe Systems Incorporated) Task: {0BC26A7F-1EED-4218-B128-FAE629723E57} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-09-27] (Google Inc.) Task: {14030A16-3F32-4A6E-90A6-EB36431D7661} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-637789347-3411735977-3138111424-1000UA1cf4c4c7d8ba5d8 => C:\Users\Sebastian\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-03] (Google Inc.) Task: {2213D06E-621D-413E-99E3-0199442379D8} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.) Task: {231F498D-5626-4409-8766-E9542715D495} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssist.exe [2015-04-10] (Dell Inc.) Task: {451CDA6D-E0E5-43B2-BC91-0CFF6F43A5F6} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {491D196C-23BA-474C-9E72-3EA87BA00B08} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.) Task: {4E984F27-0181-4101-8115-2F1600E2C039} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation) Task: {5F86D8A2-037D-4E8D-91BF-1BD153C4DB27} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation) Task: {66DB9B33-3A97-4217-83DD-6199314BA1A2} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-25] (Microsoft Corporation) Task: {7F5A3541-B82A-4D34-998C-BFE3C2A77392} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {91C88BD0-000A-4045-B8D3-2236F5CE504B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-09-27] (Google Inc.) Task: {98405200-70AF-4D8A-B05C-6B5B764A6CE3} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation) Task: {997094FD-BDDB-456B-AC15-1CD7E2B7B3A0} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.) Task: {9A68C9BC-A00A-483F-B054-FAA200F33215} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files (x86)\Ask.com\UpdateTask.exe <==== ATTENTION Task: {A2694167-D734-4830-966A-11D11312E7F4} - System32\Tasks\{24F0B5C9-A184-4C0D-B18F-AAAA0E1EE96B} => pcalua.exe -a C:\Users\Sebastian\Downloads\USB3_Renesas_W7_A03_Setup-61X2W_ZPE.exe -d C:\Users\Sebastian\Downloads Task: {B54AF252-F870-43CE-A472-07115061736F} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\Dell\SupportAssist\uaclauncher.exe [2015-03-20] (PC-Doctor, Inc.) Task: {B9A2CDB3-EA73-4B06-BB13-FD0FE8E6CA15} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe Task: {BB514A8D-2B7F-4B4D-B0C5-E2555D2BDAA6} - System32\Tasks\Fiery Software Manager => C:\Program Files (x86)\Fiery\Fiery Software Manager\Fiery Software Manager.exe [2014-11-19] () Task: {CC95F532-AB46-4917-ACF7-CC71778498B2} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\Dell\SupportAssist\sessionchecker.exe [2015-03-20] (PC-Doctor, Inc.) Task: {D6176EAA-D8F1-4F0F-A7AA-95D3997DD213} - System32\Tasks\LINQ_wxWidgets => C:\ProgramData\efiLINQ\efiLINQ.exe [2014-09-03] (Electronics For Imaging, Inc.) Task: {EA80480C-B84A-4754-9B77-9D1FA270A099} - System32\Tasks\AdobeAAMUpdater-1.0-DELL-Sebastian => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-09-20] (Adobe Systems Incorporated) Task: {F99E7085-7C81-4BEE-802E-A8588D4830C2} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-637789347-3411735977-3138111424-1000Core => C:\Users\Sebastian\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-03] (Google Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-637789347-3411735977-3138111424-1000Core.job => C:\Users\Sebastian\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-637789347-3411735977-3138111424-1000UA1cf4c4c7d8ba5d8.job => C:\Users\Sebastian\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== 2011-11-01 12:58 - 2011-11-01 12:58 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll 2012-05-03 22:35 - 2012-10-02 21:51 - 00086888 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-08-06 16:19 - 2012-12-17 13:23 - 00014848 _____ () C:\Windows\System32\KOBZLJ_L.dll 2013-02-15 12:20 - 2012-01-25 00:02 - 00080560 _____ () C:\Windows\system32\PuzzlePort64.dll 2012-03-05 16:49 - 2012-03-05 16:49 - 00015360 _____ () C:\Windows\System32\KOI1200_mfp.dll 2013-04-05 13:23 - 1998-11-21 23:09 - 00008464 _____ () C:\Program Files (x86)\Mutoh\RJ900\Program\srvany.exe 2013-04-05 13:23 - 2006-06-19 16:01 - 00053248 _____ () C:\Program Files (x86)\Mutoh\RJ900\Program\MGLSpool.exe 2013-11-29 13:49 - 2014-11-21 09:17 - 02417856 _____ () C:\Program Files (x86)\EFI\OFASQ\ofaApp.exe 2010-01-02 16:42 - 2010-01-02 16:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2014-11-21 09:15 - 2014-09-25 01:33 - 01021952 _____ () C:\Program Files (x86)\Fiery\Applications3\HotFolder\HF3MenuExt64.dll 2011-11-01 12:58 - 2011-11-01 12:58 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\LIBEAY32.dll 2012-05-03 22:33 - 2011-07-19 14:04 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2010-11-17 10:35 - 2010-11-17 10:35 - 00514544 _____ () C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe 2014-11-21 09:15 - 2014-09-11 21:53 - 00057344 _____ () C:\Program Files (x86)\Fiery\Applications3\FieryRemoteScanApp\FRSSysTrayIcon.exe 2014-11-21 09:14 - 2009-02-17 12:19 - 00194048 _____ () C:\Program Files (x86)\Fiery\Applications3\Command WorkStation 5\FDC\curllib.dll 2014-11-21 09:14 - 2003-10-24 01:27 - 00110592 _____ () C:\Program Files (x86)\Fiery\Applications3\Command WorkStation 5\FDC\OpenLDAP.dll 2014-11-21 09:15 - 2014-09-11 21:53 - 00192512 _____ () C:\Program Files (x86)\Fiery\Applications3\Common Files\EFI\FolderMapping.dll 2013-11-29 13:49 - 2014-11-21 09:17 - 00663552 _____ () C:\Program Files (x86)\EFI\OFASQ\LIBEXPAT.dll 2015-01-07 12:37 - 2014-05-13 13:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2015-01-07 12:37 - 2014-05-13 13:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2015-01-07 12:37 - 2014-05-13 13:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2015-01-07 12:37 - 2012-08-23 11:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2015-01-07 12:37 - 2012-04-03 18:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2012-01-08 15:41 - 2012-01-08 15:41 - 00093696 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll 2010-11-24 22:44 - 2010-11-24 22:44 - 00375280 _____ () c:\program files (x86)\common files\roxio shared\dllshared\SQLite352.dll 2015-05-01 10:19 - 2015-05-01 10:19 - 00098816 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\win32api.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00110080 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\pywintypes27.dll 2015-05-01 10:19 - 2015-05-01 10:19 - 00364544 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\pythoncom27.dll 2015-05-01 10:19 - 2015-05-01 10:19 - 00045568 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\_socket.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 01161216 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\_ssl.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00320512 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\win32com.shell.shell.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00713216 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\_hashlib.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 01175040 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\wx._core_.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00805888 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\wx._gdi_.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00811008 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\wx._windows_.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 01062400 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\wx._controls_.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00735232 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\wx._misc_.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00682496 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\pysqlite2._sqlite.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00128512 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\_elementtree.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00127488 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\pyexpat.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00087552 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\_ctypes.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00119808 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\win32file.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00108544 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\win32security.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00007168 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\hashobjs_ext.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00167936 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\win32gui.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00018432 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\win32event.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00038912 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\win32inet.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00011264 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\win32crypt.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00070656 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\wx._html2.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00027136 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\_multiprocessing.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00020480 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\_yappi.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00035840 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\win32process.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00686080 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\unicodedata.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00122368 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\wx._wizard.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00024064 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\win32pipe.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00010240 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\select.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00025600 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\win32pdh.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00525640 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\windows._lib_cacheinvalidation.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00017408 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\win32profile.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00022528 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\win32ts.pyd 2015-05-01 10:19 - 2015-05-01 10:19 - 00078336 _____ () C:\Users\Sebastian\AppData\Local\Temp\_MEI65762\wx._animate.pyd 2014-12-03 20:07 - 2014-12-03 20:07 - 00019968 _____ () C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Locale\pl_PL\acrotray.pol 2015-04-29 19:44 - 2015-04-28 04:07 - 01252680 _____ () C:\Users\Sebastian\AppData\Local\Google\Chrome\Application\42.0.2311.135\libglesv2.dll 2015-04-29 19:44 - 2015-04-28 04:07 - 00080712 _____ () C:\Users\Sebastian\AppData\Local\Google\Chrome\Application\42.0.2311.135\libegl.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`26hfm ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, the associated entry will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-637789347-3411735977-3138111424-1000\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.1.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (whitelisted) =============== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) FirewallRules: [{62E213B7-84BD-429A-9DAB-2D75B1E9A4E9}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{357A4848-547A-4553-BDD9-044C493CB4EB}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{E842C4CF-61DE-4F6D-8FE8-0484DFD9B41F}] => (Allow) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe FirewallRules: [{A4D779C0-DD97-4B8A-B7B3-7BE902D3FCBD}] => (Allow) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe FirewallRules: [{3FC9AF5B-1140-4E9A-9189-25315D61C122}] => (Allow) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe FirewallRules: [{E39ADAE8-1146-4026-AD1B-21E6E76776E5}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{29AF8EF6-299F-46C5-B4E4-F9DBB051165A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{79713FF0-0DD0-45A6-95BE-31765A59D415}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.EXE FirewallRules: [{D81D2C75-DC44-4BD8-A353-B32E2A65CE62}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.EXE FirewallRules: [{9406ECC5-3C7C-4A24-BC5E-9119F78FBBAB}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office14\outlook.exe FirewallRules: [TCP Query User{E74F0D29-7390-4F17-94EE-1BEF93322F30}C:\users\sebastian\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\sebastian\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{36F073F0-9924-44F7-9DED-484862BCB06B}C:\users\sebastian\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\sebastian\appdata\local\akamai\netsession_win.exe FirewallRules: [{4A39FAA6-8D6A-4C98-8218-04856DE5466A}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{9C651539-1F80-4DD0-A899-460274A2B77F}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{058AA9D8-E2F3-44A5-A348-61BFBBEA9614}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [TCP Query User{7425D439-2EBA-45C2-9F8E-0F8528A2E50E}C:\users\sebastian\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\sebastian\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{0640901E-0477-4562-A7EE-DBBAD91F26C1}C:\users\sebastian\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\sebastian\appdata\local\akamai\netsession_win.exe FirewallRules: [{380CBDBF-1868-40FC-B766-8E4EDDB4DA44}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{12A4D97F-34D3-4D5B-A389-AB2C06209914}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{A124E5DF-E91F-44F9-AB94-1A21FE1C2675}] => (Allow) C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwism.exe FirewallRules: [{70F56253-5658-42D1-AC95-54493C450C7F}] => (Allow) C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwism.exe FirewallRules: [{261C2DCE-1EE8-4BE8-AE8B-1D0EA5971A15}] => (Allow) C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwida.exe FirewallRules: [{26369066-5AC0-492A-9840-EE80875E675B}] => (Allow) C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwida.exe FirewallRules: [{354217AC-B699-43A3-B150-8F391D5E7AE2}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{01450F76-2566-4268-884E-AE12258048B1}] => (Allow) C:\Windows\system32\hasplms.exe FirewallRules: [{CFFBD813-14BA-4912-A27F-089D813FA481}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\42.0.2311.39\remoting_host.exe FirewallRules: [{C509E5FE-112A-4B26-827B-2DC031BA94EC}] => (Allow) C:\Users\Sebastian\AppData\Local\Temp\RarSFX10\FSM\Fiery Software Manager.exe StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (05/01/2015 10:13:06 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/30/2015 09:07:42 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/30/2015 09:00:28 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/29/2015 06:33:15 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/29/2015 11:29:24 AM) (Source: System Restore) (EventID: 8211) (User: ) Description: Nie można utworzyć zaplanowanego punktu przywracania. Informacje dodatkowe: (0x8004231f). Error: (04/29/2015 11:29:24 AM) (Source: System Restore) (EventID: 8193) (User: ) Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation; Opis = Zaplanowany punkt kontrolny; Błąd = 0x8004231f). Error: (04/29/2015 08:47:48 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/29/2015 08:09:00 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/26/2015 09:56:17 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program Winplot.exe w wersji 10.0.6.200 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 13c4 Godzina rozpoczęcia: 01d080596926fad0 Godzina zakończenia: 0 Ścieżka aplikacji: F:\MASZYNY\SUMMA2014\SummaWinplot\Winplot.exe Identyfikator raportu: 4a22ed3e-ec4e-11e4-b9e5-848f69c27f27 Error: (04/25/2015 09:04:52 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (05/01/2015 10:15:16 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi NVIDIA Update Service Daemon z powodu następującego błędu: %%1069 Error: (05/01/2015 10:15:16 AM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Usługa nvUpdatusService nie może zalogować się jako .\UpdatusUser za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%1330 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error: (05/01/2015 10:15:16 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi 1% z powodu następującego błędu: %%2 Error: (04/30/2015 11:07:49 AM) (Source: volsnap) (EventID: 36) (User: ) Description: Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error: (04/30/2015 09:09:47 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi NVIDIA Update Service Daemon z powodu następującego błędu: %%1069 Error: (04/30/2015 09:09:47 AM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Usługa nvUpdatusService nie może zalogować się jako .\UpdatusUser za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%1330 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error: (04/30/2015 09:09:47 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi 1% z powodu następującego błędu: %%2 Error: (04/30/2015 09:02:38 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi NVIDIA Update Service Daemon z powodu następującego błędu: %%1069 Error: (04/30/2015 09:02:38 AM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Usługa nvUpdatusService nie może zalogować się jako .\UpdatusUser za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%1330 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error: (04/30/2015 09:02:38 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi 1% z powodu następującego błędu: %%2 Microsoft Office Sessions: ========================= Error: (05/01/2015 10:13:06 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/30/2015 09:07:42 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/30/2015 09:00:28 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/29/2015 06:33:15 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/29/2015 11:29:24 AM) (Source: System Restore) (EventID: 8211) (User: ) Description: 0x8004231f Error: (04/29/2015 11:29:24 AM) (Source: System Restore) (EventID: 8193) (User: ) Description: C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreationZaplanowany punkt kontrolny0x8004231f Error: (04/29/2015 08:47:48 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/29/2015 08:09:00 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/26/2015 09:56:17 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Winplot.exe10.0.6.20013c401d080596926fad00F:\MASZYNY\SUMMA2014\SummaWinplot\Winplot.exe4a22ed3e-ec4e-11e4-b9e5-848f69c27f27 Error: (04/25/2015 09:04:52 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-2670QM CPU @ 2.20GHz Percentage of memory in use: 49% Total physical RAM: 6038.17 MB Available physical RAM: 3026.22 MB Total Pagefile: 12074.53 MB Available Pagefile: 8628.01 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:59.53 GB) (Free:0.32 GB) NTFS Drive e: (RECOVERY) (Fixed) (Total:19.53 GB) (Free:4.57 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive f: (MAGAZYN) (Fixed) (Total:679 GB) (Free:317.21 GB) NTFS Drive g: (KM_C500_Manual) (CDROM) (Total:0.13 GB) (Free:0 GB) CDFS Drive h: (My Passport) (Fixed) (Total:931.48 GB) (Free:0.66 GB) NTFS Drive i: (B L U E) (Removable) (Total:0.47 GB) (Free:0.45 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 59.6 GB) (Disk ID: A68D61B1) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=59.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or Vista) (Size: 698.6 GB) (Disk ID: 07F2837E) Partition 1: (Not Active) - (Size=102 MB) - (Type=DE) Partition 2: (Active) - (Size=19.5 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=679 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: 5BA022BD) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 3 (Size: 480.4 MB) (Disk ID: 91F72D24) Partition 1: (Active) - (Size=480 MB) - (Type=0B) ==================== End Of Log ============================