Additional scan result of Farbar Recovery Scan Tool (x64) Version:03-06-2015 Ran by Mateusz at 2015-06-10 18:42:55 Running from C:\Users\Mateusz\Downloads\FRST Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2064069574-1004657932-3654585524-500 - Administrator - Disabled) Gość (S-1-5-21-2064069574-1004657932-3654585524-501 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-2064069574-1004657932-3654585524-1003 - Limited - Enabled) Mateusz (S-1-5-21-2064069574-1004657932-3654585524-1000 - Administrator - Enabled) => C:\Users\Mateusz ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-2064069574-1004657932-3654585524-1000\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.) ABBYY FineReader 12 Professional (HKLM-x32\...\{F12000FE-0001-0000-0000-074957833700}) (Version: 12.0.501 - ABBYY Production LLC) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.1.0.5790 - Adobe Systems Inc.) Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.0.45.2 - Adobe Systems Incorporated) Adobe Reader XI (11.0.11) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.7.157 - Adobe Systems, Inc.) AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.60.1483, 27.02.2015 - AIMP DevTeam) Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.16 - Google Inc.) Ashampoo Music Studio 5 v.5.0.7 (HKLM-x32\...\{91B33C97-5BBE-576E-893B-711D4D8298ED}_is1) (Version: 5.0.7 - Ashampoo GmbH & Co. KG) Aslain's WoT Modpack wersja 4.4.3 (HKLM-x32\...\ZRwTINhSZfduKONYrSCTiCiGPggQZdcLRvoAVxyCOXXpkHeC~1DC3968F_is1) (Version: 4.4.3 - Aslain) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software) Battlefield Play4Free (HKLM-x32\...\{87686C21-8A15-4b4d-A3F1-11141D9BE094}) (Version: - EA Digital illusions) BeamNG wersja 0.3.0.3 (HKLM-x32\...\{AAC1CE8B-9696-40C2-994D-D7AD05EABC07}_is1) (Version: 0.3.0.3 - BETA Releases) BeamNG.drive (HKU\S-1-5-21-2064069574-1004657932-3654585524-1000\...\BeamNG.drive) (Version: 0.3.0.3 - beamng.com) Blockstorm (HKLM-x32\...\Steam App 263060) (Version: - GhostShark) BurnAware Premium 7.8 (HKLM-x32\...\BurnAware Premium_is1) (Version: - Burnaware) Camtasia Studio 8 (HKLM-x32\...\{45F34E54-DAD9-405B-A4F6-B12B0A46B984}) (Version: 8.4.1.1745 - TechSmith Corporation) Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version: - Cheat Engine) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 5.0.1.0406 - Disc Soft Ltd) DirectX for Managed Code Update (Summer 2004) (x32 Version: 9.02.2904 - Microsoft) Hidden Doom 3 (HKLM-x32\...\InstallShield_{EEFB15EB-FE8B-47DF-A496-1C4D1420294A}) (Version: 1.1 - Activision) Doom 3 (x32 Version: 1.1 - Activision) Hidden Dzielenie i łączenie plików v1.2.2 (HKLM-x32\...\Dzielenie i łączenie plików_is1) (Version: - Michał Bąbik) Euro Truck Simulator 2 (HKLM-x32\...\Steam App 227300) (Version: - SCS Software) Euro Truck Simulator 2 Multiplayer 0.1.5 Alpha (HKLM-x32\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 0.1.5 Alpha - ETS2MP Team) Farming Simulator 2013 (HKLM-x32\...\FarmingSimulator2013PL_is1) (Version: 1.0 - GIANTS Software) FileZilla Client 3.10.3 (HKLM-x32\...\FileZilla Client) (Version: 3.10.3 - Tim Kosse) Fractured Space (HKLM-x32\...\Steam App 310380) (Version: - Edge Case Games Ltd.) Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden GIMP 2.8.8 (HKLM\...\GIMP-2_is1) (Version: 2.8.8 - The GIMP Team) Glary Utilities 5.21 (HKLM-x32\...\Glary Utilities 5) (Version: 5.21.0.40 - Glarysoft Ltd) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.81 - Google Inc.) Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden GS Auto Clicker (HKLM-x32\...\GS Auto Clicker_is1) (Version: V3.1.3 - goldensoft.org) HAWKEN (HKLM-x32\...\Steam App 271290) (Version: - Reloaded Games) HP Deskjet 1050 J410 series — badanie mające na celu poprawę produktów (HKLM\...\{52A87876-4D1A-4524-9F06-53A490E6E34D}) (Version: 28.0.1313.0 - Hewlett-Packard Co.) HP Deskjet 1050 J410 series — podstawowe oprogramowanie urządzenia (HKLM\...\{B6A3D97D-484B-48B5-85C6-361D9FA25CDF}) (Version: 28.0.1313.0 - Hewlett-Packard Co.) HP Deskjet 1050 J410 series Pomoc (HKLM-x32\...\{5C90D8CF-F12A-41C6-9007-3B651A1F0D78}) (Version: 140.0.66.66 - Hewlett Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) iBomber Defense Pacific (HKLM-x32\...\Steam App 206690) (Version: - Cobra Mobile) Intel(R) Driver Update Utility 2.0 (x32 Version: 2.0.0.29 - Intel) Hidden Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4176 - Intel Corporation) Intel® Driver Update Utility (HKLM-x32\...\{8409c4f7-2340-4933-a304-5d37db4fb48b}) (Version: 2.0.0.29 - Intel) Java 7 Update 79 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417079FF}) (Version: 7.0.790 - Oracle) Java 7 Update 79 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217079FF}) (Version: 7.0.790 - Oracle) Java 8 Update 45 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418045F0}) (Version: 8.0.450 - Oracle Corporation) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) Java SE Development Kit 7 Update 79 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170790}) (Version: 1.7.0.790 - Oracle) Java SE Development Kit 7 Update 79 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0170790}) (Version: 1.7.0.790 - Oracle) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden K-Lite Codec Pack 11.0.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 11.0.5 - ) Light Image Resizer 4.6.9.0 (HKLM-x32\...\{EBE030DD-D404-4D92-85E9-8C3624820808}_is1) (Version: 4.6.9.0 - ObviousIdea) LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.328 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.328 - LogMeIn, Inc.) Hidden Malwarebytes Anti-Malware wersja 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Team Foundation Server 2010 Object Model - ENU (HKLM\...\Microsoft Team Foundation Server 2010 Object Model - ENU) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Runtime - 10.0.30319 (HKLM\...\{94D70749-4281-39AC-AD90-B56A0E0A402E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Runtime - 10.0.30319 (HKLM-x32\...\{6A86554B-8928-30E4-A53C-D7337689134D}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual F# 2.0 Runtime (HKLM-x32\...\{729A3000-BC8A-3B74-BA5D-5068FE12D70C}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio Macro Tools (HKLM-x32\...\Microsoft Visual Studio Macro Tools) (Version: 9.0.30729 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Moborobo 2.1.0.636 (HKLM-x32\...\{02B934E4-C574-4605-842B-01CD16295185}_is1) (Version: 2.1.0.636 - Moborobo Inc.) Monopoly by Parker Brothers (HKLM-x32\...\Monopoly by Parker Brothers) (Version: 1.0.406.0 - GameHouse, Inc.) MouseServer version 1.5.2.0 (HKLM-x32\...\{E13018F5-FFC7-4729-9C1B-1A85807D03E6}_is1) (Version: 1.5.2.0 - Necta Co.) Mozilla Firefox 38.0.5 (x86 pl) (HKLM-x32\...\Mozilla Firefox 38.0.5 (x86 pl)) (Version: 38.0.5 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 36.0.4 - Mozilla) Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Need For Speed™ World (HKLM-x32\...\{3AF1B16A-7DC9-4C80-BAEC-70B088A7C5B8}) (Version: 1.0.0.0 - Electronic Arts) Nosgoth (HKLM-x32\...\Steam App 200110) (Version: 150516.109666 - Square Enix Ltd) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.5 - Notepad++ Team) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) ObjectDock (HKLM-x32\...\ObjectDock) (Version: - ) Oracle VM VirtualBox 4.3.26 (HKLM\...\{5771F59A-BFC9-4FAF-A883-7642EF4BA3C3}) (Version: 4.3.26 - Oracle Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.5.12.2862 - Electronic Arts, Inc.) ORION: Prelude (HKLM-x32\...\Steam App 104900) (Version: - Spiral Game Studios) PAMM (HKLM-x32\...\{D1A5AE66-BD56-495E-A2FD-12732DBFDFAA}) (Version: 1.7.0.0 - The PA Community) Planetary Annihilation (HKLM-x32\...\Steam App 233250) (Version: - Uber Entertainment) Plants vs. Zombies™ (HKLM-x32\...\{5E6536C2-E79A-49CF-83EA-817AD81F9FC8}) (Version: 1.2.0.1093 - Electronic Arts, Inc.) Platform (x32 Version: 1.39 - VIA Technologies, Inc.) Hidden Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.990 - Even Balance, Inc.) Quick Batch File Compiler 3.6.1.0 (HKLM-x32\...\Quick Batch File Compiler_is1) (Version: 3.6.1.0 - AbyssMedia.com) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.52.203.2012 - Realtek) Red Crucible: Firestorm (HKLM-x32\...\Steam App 298240) (Version: - ) Robocraft (HKLM-x32\...\Steam App 301520) (Version: - Freejam) screenSHU - the fastest screen capture ever. (HKLM-x32\...\screenSHU) (Version: - ) Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft) Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 4.0.86.0859 - Electronic Arts) Skype™ 7.4 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.4.102 - Skype Technologies S.A.) SoundWire Server version 2.1 (HKLM-x32\...\{E15658BC-7742-4397-999F-98B1BD11B784}_is1) (Version: 2.1 - GeorgieLabs) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Supernova (HKLM-x32\...\{4EB7D388-3846-4671-B64E-9039718133BC}) (Version: 1.00.0000 - BANDAI NAMCO Entertainment America) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TEdit 3 (HKLM-x32\...\{56642CE5-5D04-4A3D-B774-754499672E39}) (Version: 3.5.14228.27 - BinaryConstruct) TrackMania Nations Forever (HKLM-x32\...\Steam App 11020) (Version: - Nadeo) Ultima 8 (HKLM-x32\...\{428C6B01-D292-46F9-9321-75668ED17DA2}) (Version: 1.0.0.1 - Electronic Arts) Unity (HKLM-x32\...\Unity) (Version: 5.0.2f1 - Unity Technologies ApS) Unity Web Player (HKU\S-1-5-21-2064069574-1004657932-3654585524-1000\...\UnityWebPlayer) (Version: 5.0.2f1 - Unity Technologies ApS) Update for Skype for Business 2015 (KB2889853) 64-Bit Edition (HKLM\...\{90150000-012B-0415-1000-0000000FF1CE}_Office15.PROPLUS_{CF394926-359E-48E1-AA25-E56B32FCB335}) (Version: - Microsoft) USB Steering Wheel (HKLM-x32\...\FT38E1) (Version: - ) VIA Platforma Menedżera urządzeń (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.39 - VIA Technologies, Inc.) Warface (HKLM-x32\...\Steam App 291480) (Version: - Crytek) Windows Phone app for desktop (HKLM-x32\...\{99759E36-8961-43DC-A7E6-4601D6AEF166}) (Version: 1.1.2726.0 - Microsoft Corporation) WinRAR 5.20 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH) World of Tanks (HKU\S-1-5-21-2064069574-1004657932-3654585524-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2064069574-1004657932-3654585524-1000_Classes\CLSID\{2941CD0C-3BC4-565F-2B37-8E90539E5B4D}\InprocServer32 -> C:\Windows\system32\ole32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2064069574-1004657932-3654585524-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) ==================== Restore Points ========================= 04-06-2015 19:31:23 Removed Visual Studio 2010 Prerequisites - English 04-06-2015 19:32:37 Removed Multiplayer Monopoly Online Game 09-06-2015 15:08:22 Windows Update 10-06-2015 16:33:52 Zainstalowano: SkrybotDoMowy 10-06-2015 16:40:17 Usunięto: SkrybotDoMowy 10-06-2015 16:45:16 Usunięto: SkrybotDoMowy ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0151304B-C9B6-4CDF-994B-E85B91303430} - System32\Tasks\GlaryInitialize 5 => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [2015-03-16] (Glarysoft Ltd) Task: {49253E5C-39E7-451C-A55D-7DEC4F5CC20B} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation) Task: {4CEF8188-26C9-4C32-B0EE-890C5FE77C6F} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) Task: {4F59D25B-6984-4FFB-BB0D-A5BA4D4683FF} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-29] (Google Inc.) Task: {6B3A5545-4A57-4DFC-AA14-DAEE21DC0A46} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-04-30] (Avast Software s.r.o.) Task: {78ACB1E2-CBF1-45AA-9CFA-980C36B3AF7F} - System32\Tasks\HPCustParticipation HP Deskjet 1050 J410 series => C:\Program Files\HP\HP Deskjet 1050 J410 series\Bin\HPCustPartic.exe [2012-10-02] (Hewlett-Packard Co.) Task: {988DC72B-3C57-4AEF-A59D-33DF1F2DBA9D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {A019B53E-A188-4950-81BA-7F6C299A3911} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {A1BB4330-C669-44A4-84E5-D5B9DDAA2093} - System32\Tasks\ASUS\i-Setup202721 => C:\Windows\Chipset\AsusSetup.exe [2010-09-08] (ASUSTeK Computer Inc.) Task: {A583F8FE-53EC-4436-B0BF-82A444563D39} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-29] (Google Inc.) Task: {AA6E42F1-ED4C-488D-9E60-33843334F149} - System32\Tasks\GU5SkipUAC => C:\Program Files (x86)\Glary Utilities 5\Integrator.exe [2015-03-16] (Glarysoft Ltd) Task: {AAAF8B2A-1BE2-4648-8360-54995926E059} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) Task: {C417990E-5694-4FAE-B6F8-420898B90259} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-07] (Microsoft Corporation) Task: {CD0CBE66-B707-4F01-A41B-B87F8FC9F1E1} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Logon => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) Task: {D315825A-DEA4-4722-905C-FD0DBBC76657} - System32\Tasks\ASUS\i-Setup202813 => C:\Windows\Chipset\AsusSetup.exe [2010-09-08] (ASUSTeK Computer Inc.) Task: {D6AEF96D-2246-4859-BA38-2897CA71EBF8} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks Task: {F2A032B5-0E34-41E9-97A9-0624517CDD3F} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2015-03-30] (Microsoft Corporation) Task: C:\Windows\Tasks\GlaryInitialize 5.job => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2015-03-29 22:14 - 2007-04-23 16:53 - 00020752 _____ () C:\Program Files (x86)\Stardock\ObjectDock\Dock64.dll 2015-06-05 10:12 - 2015-06-05 14:02 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2015-03-29 20:34 - 2011-12-06 03:58 - 00078448 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll 2015-03-29 20:34 - 2011-12-06 03:58 - 00386160 ____R () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll 2015-04-30 15:52 - 2015-04-30 15:52 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-04-30 15:52 - 2015-04-30 15:52 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-06-10 16:12 - 2015-06-10 16:12 - 02953216 _____ () C:\Program Files\AVAST Software\Avast\defs\15061000\algo.dll 2015-03-29 22:14 - 2007-04-19 14:23 - 00095944 _____ () C:\Program Files (x86)\Stardock\ObjectDock\CrashRpt.dll 2015-03-29 22:14 - 2007-04-21 13:47 - 00059592 _____ () C:\Program Files (x86)\Stardock\ObjectDock\zlib.dll 2015-03-29 22:14 - 2002-11-19 14:11 - 00139264 _____ () C:\Program Files (x86)\Common Files\Stardock\ODImg.dll 2015-03-29 22:14 - 2002-03-13 19:46 - 00118784 _____ () C:\Program Files (x86)\Stardock\ObjectDock\ODImg.dll 2015-03-29 22:14 - 2007-04-30 19:18 - 00112400 _____ () C:\Program Files (x86)\Stardock\ObjectDock\DockShellHook.dll 2015-03-29 22:14 - 2007-04-23 00:19 - 00026392 _____ () C:\Program Files (x86)\Stardock\ObjectDock\Docklets\Calendar\Calendar.dll 2015-04-30 15:52 - 2015-04-30 15:52 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2064069574-1004657932-3654585524-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\Services: ABBYY.Licensing.FineReader.Professional.12.0 => 2 MSCONFIG\startupreg: Bonus.SSR.FR12 => "C:\Program Files (x86)\ABBYY FineReader 12\Bonus.ScreenshotReader.exe" /autorun MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: GUDelayStartup => "C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe" -delayrun MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{4DBBA6AE-671A-4C16-8823-FC10F365F177}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{40BA748F-9B8B-42F8-AE89-0E700CF7373B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{ED5FC65F-7ECA-4BD3-8096-59E6801FB0CB}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{337FE939-D2CE-44C3-ADF3-5BCFC20AC3E9}] => (Allow) LPort=2869 FirewallRules: [{C7002AB2-12AE-4D7A-818B-BC56A68F552F}] => (Allow) LPort=1900 FirewallRules: [{1CC411D5-F0C5-4668-8A7B-04E0A79D33C8}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{00CB5870-84DB-48B0-A6D9-D3B6296DA1B6}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{FB47B1DA-584A-4365-A823-6B1810A64EFD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{A11630B1-3692-4E21-8E14-DD3B4BE17872}] => (Allow) C:\Program Files\HP\HP Deskjet 1050 J410 series\Bin\USBSetup.exe FirewallRules: [{38155165-00C1-4A2A-868F-36E3006B7C00}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{8AEBD3C7-DE6B-4EBC-A624-1EFFD3161EE9}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{399A719E-DA37-419B-95E0-315F2531ED33}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{DC2EA95B-1A53-4836-AFA9-513FC1168B90}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{B8C30140-CF51-44F4-9BE8-4E24226715FE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{1B978995-0028-4501-9FB9-9C4DFD6F36FF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{5B98068B-6D30-43B8-9898-0AC8E7C4317B}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{3431F366-D788-4145-AE0C-4B38B0BAB8E7}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{CB3ECE39-DADD-462B-A345-682BF0ABB724}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{2EF641CB-0666-4CD2-A956-2086E37DA795}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [TCP Query User{C99966C8-ED3A-4861-A466-124DCA56EE66}C:\program files (x86)\mouseserver\mouseserver.exe] => (Allow) C:\program files (x86)\mouseserver\mouseserver.exe FirewallRules: [UDP Query User{F0F9C2A3-A9A6-40AA-AF13-56318DB8F645}C:\program files (x86)\mouseserver\mouseserver.exe] => (Allow) C:\program files (x86)\mouseserver\mouseserver.exe FirewallRules: [{61BD6CDB-30EA-4B60-968C-11E2D4F5D720}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe FirewallRules: [{500CB1E3-73A5-411C-9358-07440646C33F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe FirewallRules: [{8CF39D8D-5D5C-4799-9D61-8C58D52D3823}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Orion Dino Beatdown\Binaries\Win32\DinoHordeGame.exe FirewallRules: [{29231159-2EF6-42B4-AB01-927B7AAF8DC0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Orion Dino Beatdown\Binaries\Win32\DinoHordeGame.exe FirewallRules: [{2294D289-F299-434D-BE6D-8175BAE8A2FD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x64\PA.exe FirewallRules: [{9EC9CD20-9C08-4864-8D16-1005FE4B57A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x64\PA.exe FirewallRules: [{A60A491E-0F50-427D-B810-AB2BBB3D96AE}] => (Allow) C:\Program Files (x86)\Origin Games\Need for Speed World\GameLauncher.exe FirewallRules: [{18D340FA-9938-4317-8D3F-53393BF896C1}] => (Allow) C:\Program Files (x86)\Origin Games\Need for Speed World\GameLauncher.exe FirewallRules: [{A5B7F68D-6850-4B69-9F5E-C80FECD101CD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Robocraft\Robocraft.exe FirewallRules: [{15C58FAB-01BE-4B63-9C73-5BC36388B73F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Robocraft\Robocraft.exe FirewallRules: [{FFE4D74B-3DCA-419A-9146-DCFCD8A52E99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hawken\Binaries\Win32\HawkenGame-Win32-Shipping.exe FirewallRules: [{3B9D7F45-6E1A-40C2-A8AF-C740BE1003E1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hawken\Binaries\Win32\HawkenGame-Win32-Shipping.exe FirewallRules: [{33651796-A38F-4EDC-B0E8-6888ED1E6B92}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Blockstorm\Blockstorm.exe FirewallRules: [{D0B0DD85-DBC8-43FE-A6FB-AF4BC8901A0E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Blockstorm\Blockstorm.exe FirewallRules: [{15A8A6CE-CEB0-457F-B126-61B3B3BB2094}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ibomber defense pacific\iBomberDefensePacific.exe FirewallRules: [{E32847F6-871E-47DB-ACF4-0F8BEC052A9F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ibomber defense pacific\iBomberDefensePacific.exe FirewallRules: [TCP Query User{F443596B-8F41-4F66-B0DE-AF4BA0FD4E74}C:\program files (x86)\soundwire server\soundwireserver.exe] => (Allow) C:\program files (x86)\soundwire server\soundwireserver.exe FirewallRules: [UDP Query User{C80C8F9E-E9D7-4E6F-B858-11BD30E5E847}C:\program files (x86)\soundwire server\soundwireserver.exe] => (Allow) C:\program files (x86)\soundwire server\soundwireserver.exe FirewallRules: [TCP Query User{9890E8B4-83A2-428F-877B-CEA5FD965747}C:\users\mateusz\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\mateusz\appdata\roaming\utorrent\utorrent.exe FirewallRules: [UDP Query User{0E5B433E-4354-4457-8A91-2FC2F571ED34}C:\users\mateusz\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\mateusz\appdata\roaming\utorrent\utorrent.exe FirewallRules: [TCP Query User{AC968080-6F7A-4209-A153-7A0F7C2046C1}C:\users\mateusz\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\mateusz\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{0E0C6DC0-7620-4F89-B44D-F8953DAC6976}C:\users\mateusz\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\mateusz\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{06054DC5-B651-4182-8B51-37196E554CD2}C:\users\mateusz\desktop\utorrent.exe] => (Allow) C:\users\mateusz\desktop\utorrent.exe FirewallRules: [UDP Query User{60910BE3-501A-47E2-82FD-34D14E1CAE64}C:\users\mateusz\desktop\utorrent.exe] => (Allow) C:\users\mateusz\desktop\utorrent.exe FirewallRules: [{E211B863-2806-4564-AD1D-1DB23ACA7AAE}] => (Allow) C:\Program Files (x86)\Origin Games\Plants vs. Zombies\PlantsVsZombies.exe FirewallRules: [{9073AEFB-0742-498C-B8AA-7EFB9172E205}] => (Allow) C:\Program Files (x86)\Origin Games\Plants vs. Zombies\PlantsVsZombies.exe FirewallRules: [{98A7A713-1EE7-44A1-95DC-68AD6F275C25}] => (Allow) C:\Program Files (x86)\Origin Games\SimCity\SimCity\SimCity.exe FirewallRules: [{B58E1F5E-ED7C-4D93-8FD7-BFF8DB33FDD7}] => (Allow) C:\Program Files (x86)\Origin Games\SimCity\SimCity\SimCity.exe FirewallRules: [{252FC35A-31F9-4132-802E-D0806474BE83}] => (Allow) C:\Program Files (x86)\Origin Games\Ultima 8\Game\Game\DOSBox\DOSBox.exe FirewallRules: [{5D948C73-0248-47B2-9A64-E74D072B2A5E}] => (Allow) C:\Program Files (x86)\Origin Games\Ultima 8\Game\Game\DOSBox\DOSBox.exe FirewallRules: [TCP Query User{EF4E9D37-3B1E-48BA-A8D1-080528E0F535}C:\users\mateusz\downloads\terraria 1.2.4.1 fusionz cracked\terraria 1.2.4.1 fusionz cracked\terrariaserver.exe] => (Allow) C:\users\mateusz\downloads\terraria 1.2.4.1 fusionz cracked\terraria 1.2.4.1 fusionz cracked\terrariaserver.exe FirewallRules: [UDP Query User{FF3D9DCF-FB32-4BC5-8535-2F6DB0B80722}C:\users\mateusz\downloads\terraria 1.2.4.1 fusionz cracked\terraria 1.2.4.1 fusionz cracked\terrariaserver.exe] => (Allow) C:\users\mateusz\downloads\terraria 1.2.4.1 fusionz cracked\terraria 1.2.4.1 fusionz cracked\terrariaserver.exe FirewallRules: [{C9B224AB-366E-479C-A84D-674EA0A256DA}] => (Allow) %ProgramFiles% (x86)\Steam\steamapps\common\Warface\Crytek\warface\bin32\Game.exe FirewallRules: [{EB4FFDCF-5E0D-4FEA-9F0A-FBDC15D9187F}] => (Allow) %ProgramFiles% (x86)\Steam\steamapps\common\Warface\live\nw.exe FirewallRules: [{86246B37-AFAD-4BDB-AB4A-350E83981C86}] => (Allow) %ProgramFiles% (x86)\Steam\steamapps\common\Warface\live\nw.exe FirewallRules: [{A5748C5B-4785-48A1-BE81-91C39CC3003F}] => (Allow) %ProgramFiles% (x86)\Steam\steamapps\common\Warface\Crytek\warface\bin32\Game.exe FirewallRules: [TCP Query User{F64AA03A-3E78-478E-9284-BCDE73763AFF}C:\games\world_of_tanks\worldoftanks.exe] => (Allow) C:\games\world_of_tanks\worldoftanks.exe FirewallRules: [UDP Query User{8E7A40E2-CDC8-46BC-B5F3-8896D94EB9F0}C:\games\world_of_tanks\worldoftanks.exe] => (Allow) C:\games\world_of_tanks\worldoftanks.exe FirewallRules: [{074E3F0F-5D1C-4737-A92A-225C6FA0DB7B}] => (Allow) C:\Program Files (x86)\WandouLabs\Wandoujia2.exe FirewallRules: [TCP Query User{C7E2E335-28C3-416E-9178-A23876E26BB1}C:\users\mateusz\appdata\roaming\utorrent\updates\3.4.3_40298.exe] => (Allow) C:\users\mateusz\appdata\roaming\utorrent\updates\3.4.3_40298.exe FirewallRules: [UDP Query User{7A5E5E3E-CFCA-401B-A5AC-7E663BA63B88}C:\users\mateusz\appdata\roaming\utorrent\updates\3.4.3_40298.exe] => (Allow) C:\users\mateusz\appdata\roaming\utorrent\updates\3.4.3_40298.exe FirewallRules: [TCP Query User{3723CD9A-98E0-4B2C-8594-A822A344772B}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe FirewallRules: [UDP Query User{722E018F-E35F-4A64-840C-F06FFADC8070}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe FirewallRules: [{8A879FE2-9ED3-4A2A-8B48-96E47981BF4C}] => (Allow) C:\Users\Mateusz\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{37ECD73D-D3A5-4CD8-B83C-1A0292B5D19F}] => (Allow) C:\Users\Mateusz\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{C88E4CB9-143D-4881-8E84-4C0B960BF94A}] => (Allow) C:\Program Files (x86)\Farming Simulator 2013\FarmingSimulator2013.exe FirewallRules: [{C69F7DB0-6EF1-4364-A2CF-814E562D72F0}] => (Allow) C:\Program Files (x86)\Farming Simulator 2013\FarmingSimulator2013.exe FirewallRules: [{8A4E7289-A7DA-49AB-B152-1CB918B4742F}] => (Allow) C:\Program Files (x86)\Farming Simulator 2013\x64\FarmingSimulator2013Game.exe FirewallRules: [{7F205044-776E-4CD6-AF7A-55B8A233F52C}] => (Allow) C:\Program Files (x86)\Farming Simulator 2013\x64\FarmingSimulator2013Game.exe FirewallRules: [{D001F020-0CD7-4415-B282-52A3FAD3F2CF}] => (Allow) C:\Program Files (x86)\Farming Simulator 2013\x86\FarmingSimulator2013Game.exe FirewallRules: [{0E20ACE5-C7DD-4972-80F4-4579C8663797}] => (Allow) C:\Program Files (x86)\Farming Simulator 2013\x86\FarmingSimulator2013Game.exe FirewallRules: [{042B318A-CAFF-4A42-9FA4-192C861E1E3A}] => (Allow) LPort=8317 FirewallRules: [{E67B1B50-EC43-4FB0-93B2-EAE06915B2FB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\nosgoth\Binaries\Win32\Nosgoth.exe FirewallRules: [{C13368A9-1E25-4215-B428-04570658E265}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\nosgoth\Binaries\Win32\Nosgoth.exe FirewallRules: [{3237148E-DA24-4E5A-B1C6-F40A3819F270}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{DEAF9F45-6F76-40BB-A627-D07F0275B148}C:\program files\unity\editor\unity.exe] => (Allow) C:\program files\unity\editor\unity.exe FirewallRules: [UDP Query User{F9278872-05C1-46C4-9EE0-2C5308417D93}C:\program files\unity\editor\unity.exe] => (Allow) C:\program files\unity\editor\unity.exe FirewallRules: [{98D8801F-174D-421C-8946-9EA34BD1816D}] => (Allow) C:\Users\Mateusz\Downloads\Client19-04\MiniA.exe FirewallRules: [{23047E99-1805-465B-A9A3-FF9344F2235C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TrackMania Nations Forever\TmForever.exe FirewallRules: [{5033493F-186B-47E7-9463-154D1CB16C53}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TrackMania Nations Forever\TmForever.exe FirewallRules: [{40C8AA5A-16FB-44A2-882C-8DE5FCEBB34D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TrackMania Nations Forever\TmForeverLauncher.exe FirewallRules: [{1371DDFC-95DE-4D6E-AB2F-07DE012C5519}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TrackMania Nations Forever\TmForeverLauncher.exe FirewallRules: [{EEC6EB8C-00A3-408F-A70D-41DC5EEBDBEC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{425C04ED-5C77-4EA1-84E1-6EDEEA43CC09}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{6A266BE3-2526-415E-B36B-462EE22E7B8E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{66F283A8-76A0-48FA-8B3A-24FF578FD8D7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [TCP Query User{CC29D622-45F8-457F-8028-3B306CF12C16}C:\users\mateusz\downloads\[www.mpc-g.com]dst138494\[www.mpc-g.com]dst138494\bin\dontstarve_steam.exe] => (Allow) C:\users\mateusz\downloads\[www.mpc-g.com]dst138494\[www.mpc-g.com]dst138494\bin\dontstarve_steam.exe FirewallRules: [UDP Query User{BE6CF11F-D45E-46A5-AA0D-7BC647CF80D5}C:\users\mateusz\downloads\[www.mpc-g.com]dst138494\[www.mpc-g.com]dst138494\bin\dontstarve_steam.exe] => (Allow) C:\users\mateusz\downloads\[www.mpc-g.com]dst138494\[www.mpc-g.com]dst138494\bin\dontstarve_steam.exe FirewallRules: [{274C940A-9956-45BB-90FE-03B78A6829D5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warface\live\nw.exe FirewallRules: [{E9E5CC30-1A0E-4D42-98DF-8022999268DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warface\live\nw.exe FirewallRules: [{0E008316-F2DE-4C68-86AB-601DC81F3427}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Space\spacegame\Binaries\Win64\spacegame-Win64-Shipping.exe FirewallRules: [{410BF0B4-59DE-4089-A61C-F680F58F14FA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Space\spacegame\Binaries\Win64\spacegame-Win64-Shipping.exe FirewallRules: [{776D83AB-EB56-4313-972A-84C00031BE7A}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{2F0ABC3D-E873-4EE6-A275-703792B03B3B}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{ECAE5775-688F-4ADE-8A9C-97DCD5DD6066}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{A47EFF1A-F264-4498-9026-A8261FCDB71E}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{28E8BF70-D8B4-4049-8F41-FC4CB71EF787}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Crucible Firestorm\Red Crucible.exe FirewallRules: [{35EC98C8-A0FF-48CB-8C3B-476CC30E464A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Crucible Firestorm\Red Crucible.exe FirewallRules: [TCP Query User{9F5FE955-FD55-41B2-A785-2143C2A3C108}C:\program files (x86)\ea games\battlefield play4free\bfp4f.exe] => (Allow) C:\program files (x86)\ea games\battlefield play4free\bfp4f.exe FirewallRules: [UDP Query User{2D7B9AB8-08F9-4DD4-BC8F-0BBBDD827258}C:\program files (x86)\ea games\battlefield play4free\bfp4f.exe] => (Allow) C:\program files (x86)\ea games\battlefield play4free\bfp4f.exe FirewallRules: [TCP Query User{509021D2-1676-4270-B500-D2D384F61380}C:\program files (x86)\steam\steamapps\common\planetary annihilation\bin_x64\server.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\planetary annihilation\bin_x64\server.exe FirewallRules: [UDP Query User{0AC271D5-0ECF-4E1A-9D8E-8E1FB9A466CB}C:\program files (x86)\steam\steamapps\common\planetary annihilation\bin_x64\server.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\planetary annihilation\bin_x64\server.exe FirewallRules: [{9D375D90-F682-4F53-BF6E-03E9876754B2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\nosgoth\Binaries\Win32\Nosgoth.exe FirewallRules: [{29B561E6-F442-45DE-A809-7038A48F8D92}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\nosgoth\Binaries\Win32\Nosgoth.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/10/2015 06:40:41 PM) (Source: Windows Search Service) (EventID: 7042) (User: ) Description: Usługa Windows Search jest zatrzymywana, ponieważ wystąpił problem z indeksatorem: The catalog is corrupt. Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error: (06/10/2015 06:40:41 PM) (Source: Windows Search Service) (EventID: 7010) (User: ) Description: Nie można zainicjować indeksu. Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error: (06/10/2015 06:40:41 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: Nie można zainicjować aplikacji. Kontekst: aplikacja Windows Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error: (06/10/2015 06:40:41 PM) (Source: Windows Search Service) (EventID: 3028) (User: ) Description: Nie można zainicjować obiektu programu zbierającego. Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error: (06/10/2015 06:40:41 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: Nie można zainicjować dodatku typu plug-in w . Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Nie można odnaleźć elementu. (HRESULT : 0x80070490) (0x80070490) Error: (06/10/2015 06:40:30 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: Nie można zainicjować dodatku typu plug-in w . Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error: (06/10/2015 06:40:30 PM) (Source: Windows Search Service) (EventID: 9002) (User: ) Description: Usługa Windows Search nie może załadować informacji z magazynu właściwości. Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Serwer indeksu zawartości nie może zaktualizować informacji albo uzyskać do nich dostępu z powodu błędu bazy danych. Zatrzymaj i uruchom ponownie usługę wyszukiwania. Jeżeli problem będzie się powtarzać, zresetuj i ponownie przeszukaj indeks zawartości. W niektórych przypadkach konieczne może być usunięcie i ponowne utworzenie indeksu zawartości. (HRESULT : 0x8004117f) (0x8004117f) Error: (06/10/2015 06:40:30 PM) (Source: Windows Search Service) (EventID: 7040) (User: ) Description: Usługa wyszukiwania wykryła uszkodzone pliki danych w indeksie {id=1100}. Usługa podejmie próbę automatycznego rozwiązania tego problemu przez odbudowanie indeksu. Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error: (06/10/2015 06:40:30 PM) (Source: Windows Search Service) (EventID: 9000) (User: ) Description: Usługa Windows Search nie może otworzyć magazynu właściwości aparatu Jet. Szczegóły: 0x%08x (0x8004117f - Serwer indeksu zawartości nie może zaktualizować informacji albo uzyskać do nich dostępu z powodu błędu bazy danych. Zatrzymaj i uruchom ponownie usługę wyszukiwania. Jeżeli problem będzie się powtarzać, zresetuj i ponownie przeszukaj indeks zawartości. W niektórych przypadkach konieczne może być usunięcie i ponowne utworzenie indeksu zawartości. (HRESULT : 0x8004117f)) Error: (06/10/2015 06:40:28 PM) (Source: ESENT) (EventID: 454) (User: ) Description: Windows (3604) Windows: Odzyskiwanie/przywracanie bazy danych nie powiodło się z powodu nieoczekiwanego błędu: -1032. System errors: ============= Error: (06/10/2015 06:41:53 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa Google Update (gupdate) z powodu następującego błędu: %%1053 Error: (06/10/2015 06:41:53 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Usługa Google Update (gupdate). Error: (06/10/2015 06:41:12 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Menedżer sterowania usługami próbował podjąć akcję korekcyjną (Uruchom usługę ponownie) po nieoczekiwanym zakończeniu usługi Windows Search, ale ta akcja nie powiodła się przy następującym błędzie: %%1056. Error: (06/10/2015 06:40:42 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (06/10/2015 06:40:42 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Usługa Windows Search zakończyła działanie; wystąpił specyficzny dla niej błąd %%-1073473535. Error: (06/10/2015 04:14:45 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa Google Update (gupdate) z powodu następującego błędu: %%1053 Error: (06/10/2015 04:14:45 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Usługa Google Update (gupdate). Error: (06/10/2015 04:13:16 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0 z powodu następującego błędu: %%1053 Error: (06/10/2015 04:13:16 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0. Error: (06/10/2015 04:11:36 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 16:09:37 na ‎2015-‎06-‎10 było nieoczekiwane. Microsoft Office: ========================= Error: (06/10/2015 06:40:41 PM) (Source: Windows Search Service) (EventID: 7042) (User: ) Description: Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) The catalog is corrupt Error: (06/10/2015 06:40:41 PM) (Source: Windows Search Service) (EventID: 7010) (User: ) Description: Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error: (06/10/2015 06:40:41 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: Kontekst: aplikacja Windows Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error: (06/10/2015 06:40:41 PM) (Source: Windows Search Service) (EventID: 3028) (User: ) Description: Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error: (06/10/2015 06:40:41 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Nie można odnaleźć elementu. (HRESULT : 0x80070490) (0x80070490) Search.TripoliIndexer Error: (06/10/2015 06:40:30 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Search.JetPropStore Error: (06/10/2015 06:40:30 PM) (Source: Windows Search Service) (EventID: 9002) (User: ) Description: Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Serwer indeksu zawartości nie może zaktualizować informacji albo uzyskać do nich dostępu z powodu błędu bazy danych. Zatrzymaj i uruchom ponownie usługę wyszukiwania. Jeżeli problem będzie się powtarzać, zresetuj i ponownie przeszukaj indeks zawartości. W niektórych przypadkach konieczne może być usunięcie i ponowne utworzenie indeksu zawartości. (HRESULT : 0x8004117f) (0x8004117f) Error: (06/10/2015 06:40:30 PM) (Source: Windows Search Service) (EventID: 7040) (User: ) Description: Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) 1100 Error: (06/10/2015 06:40:30 PM) (Source: Windows Search Service) (EventID: 9000) (User: ) Description: Szczegóły: 0x%08x (0x8004117f - Serwer indeksu zawartości nie może zaktualizować informacji albo uzyskać do nich dostępu z powodu błędu bazy danych. Zatrzymaj i uruchom ponownie usługę wyszukiwania. Jeżeli problem będzie się powtarzać, zresetuj i ponownie przeszukaj indeks zawartości. W niektórych przypadkach konieczne może być usunięcie i ponowne utworzenie indeksu zawartości. (HRESULT : 0x8004117f)) Error: (06/10/2015 06:40:28 PM) (Source: ESENT) (EventID: 454) (User: ) Description: Windows3604Windows: -1032 CodeIntegrity Errors: =================================== Date: 2015-05-09 11:19:23.845 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Moborobo\MoboroboAssDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-05-09 11:19:23.806 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Moborobo\MoboroboAssDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-05-09 11:18:42.354 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Moborobo\MoboroboAssDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-05-09 11:18:42.310 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Moborobo\MoboroboAssDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-05-09 11:17:58.366 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Moborobo\MoboroboAssDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-05-09 11:17:58.305 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Moborobo\MoboroboAssDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3470 CPU @ 3.20GHz Percentage of memory in use: 20% Total physical RAM: 7886.28 MB Available physical RAM: 6307.94 MB Total Pagefile: 15770.76 MB Available Pagefile: 14147.3 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:931.41 GB) (Free:613.52 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: C1CBC1CB) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS) ==================== End of log ============================