Additional scan result of Farbar Recovery Scan Tool (x64) Version:24-06-2015 Ran by Łukasz at 2015-06-27 20:59:56 Running from C:\Users\Łukasz\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2776533818-928959893-443975868-500 - Administrator - Disabled) Gość (S-1-5-21-2776533818-928959893-443975868-501 - Limited - Disabled) Łukasz (S-1-5-21-2776533818-928959893-443975868-1001 - Administrator - Enabled) => C:\Users\Łukasz ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-2776533818-928959893-443975868-1001\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.) Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated) Adobe Acrobat X Pro - English, Français, Deutsch (HKLM-x32\...\{AC76BA86-1033-F400-7760-000000000005}) (Version: 10.1.1 - Adobe Systems) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated) Adobe Creative Suite 6 Master Collection (HKLM-x32\...\{E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0}) (Version: 6 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.) Aktualizacje NVIDIA 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation) Antichamber (HKLM-x32\...\Steam App 219890) (Version: - Alexander Bruce) Axure RP Pro 7.0 (HKLM-x32\...\Axure RP Pro 7.0) (Version: 7.0.0.3155 - Axure Software Solutions, Inc.) Axure RP Pro 7.0 (x32 Version: 7.0.0.3155 - Axure Software Solutions, Inc.) Hidden Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.7.1 - EA Digital Illusions CE AB) bl (x32 Version: 1.0.0 - Your Company Name) Hidden Blockstorm (HKLM-x32\...\Steam App 263060) (Version: - GhostShark) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Budżet Domowy (HKLM-x32\...\Budżet Domowy) (Version: - ) CINEMA 4D 15.037 (HKLM\...\MAXON12664043) (Version: 15.037 - MAXON Computer GmbH) <==== ATTENTION Creative Live! Cam Socialize (VF0640) (1.00.05.00) (HKLM\...\Creative VF0640) (Version: - Creative Technology Ltd.) CyberLink YouCam 6 (HKLM-x32\...\{A9CEDD6E-4792-493e-BB35-D86D2E188A5A}) (Version: 6.0.2326.0 - CyberLink Corp.) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 5.0.1.0407 - Disc Soft Ltd) Dropbox (HKU\S-1-5-21-2776533818-928959893-443975868-1001\...\Dropbox) (Version: 2.4.11 - Dropbox, Inc.) Eraser 6.2.0.2969 (HKLM\...\{66AB13EA-E7D2-4CFC-9B66-8E9EE44C89EE}) (Version: 6.2.2969 - The Eraser Project) Foxit Cloud (HKLM-x32\...\{41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1) (Version: 3.4.96.511 - Foxit Software Inc.) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.1.5.425 - Foxit Software Inc.) GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.130 - Google Inc.) Google Drive (HKLM-x32\...\{CBC9F5FD-5CFA-4A33-81CD-369EAB77E3A6}) (Version: 1.22.9403.0223 - Google, Inc.) Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden HDR Light Studio v4.0 (remove only) (HKLM-x32\...\HDR Light Studio v4.0) (Version: - ) HTC Driver Installer (HKLM-x32\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.2.0.001 - HTC Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation) IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.8 - HTC) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{8ED07EBD-22AD-415A-B71E-C1AD86862C2E}) (Version: 15.0.1.415 - Kaspersky Lab) Kaspersky Internet Security (x32 Version: 15.0.1.415 - Kaspersky Lab) Hidden Logitech SetPoint 6.65 (HKLM\...\sp6) (Version: 6.65.62 - Logitech) Lovely Planet (HKLM-x32\...\Steam App 298600) (Version: - QUICKTEQUILA) Malwarebytes Anti-Malware wersja 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation) Microsoft Money Plus (HKLM-x32\...\Money2008b) (Version: 17 - Microsoft) Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Music Manager (HKU\S-1-5-21-2776533818-928959893-443975868-1001\...\MusicManager) (Version: - Google, Inc.) My Game Long Name (HKLM\...\UDK-e099aa24-b3ad-4c5c-a407-0864df74031d) (Version: - Epic Games, Inc.) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden NVIDIA PhysX (HKLM-x32\...\{8A809006-C25A-4A3A-9DAB-94659BCDB107}) (Version: 9.10.0224 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 347.52 - NVIDIA Corporation) NVIDIA Sterownik graficzny 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.52 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.5.12.2862 - Electronic Arts, Inc.) Panel sterowania NVIDIA 347.52 (Version: 347.52 - NVIDIA Corporation) Hidden PdaNet+ for Android 4.18 (HKLM-x32\...\PdaNet_is1) (Version: - June Fabrics Technology Inc) PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden ph (x32 Version: 1.0.0 - Your Company Name) Hidden Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.) Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) Popcorn Time (HKU\S-1-5-21-2776533818-928959893-443975868-1001\...\Popcorn Time) (Version: - Popcorn Official) Prison Architect (HKLM-x32\...\Steam App 233450) (Version: - Introversion Software) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6738 - Realtek Semiconductor Corp.) Risk of Rain (HKLM-x32\...\Steam App 248820) (Version: - ) Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft) Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 4.0.86.0859 - Electronic Arts) Skype™ 7.5 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.5.102 - Skype Technologies S.A.) SpeedRunners (HKLM-x32\...\Steam App 207140) (Version: - DoubleDutch Games) Spotify (HKU\S-1-5-21-2776533818-928959893-443975868-1001\...\Spotify) (Version: 1.0.7.157.g2a6526f9 - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) The Binding of Isaac (HKLM-x32\...\Steam App 113200) (Version: - Edmund McMillen and Florian Himsl) The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.0.0 - GOG.com) Theme Hospital (HKLM-x32\...\{5118A4C2-C8A4-4CE5-AC37-F3E51C25402F}) (Version: 3.0.0.2 - Electronic Arts) Touchpad Server (HKLM-x32\...\Touchpad Server_is1) (Version: 1.3 - Things & Stuff) Unity Web Player (HKU\S-1-5-21-2776533818-928959893-443975868-1001\...\UnityWebPlayer) (Version: 5.0.1f1 - Unity Technologies ApS) Update for Skype for Business 2015 (KB2889853) 64-Bit Edition (HKLM\...\{90150000-012B-0415-1000-0000000FF1CE}_Office15.PROPLUS_{CF394926-359E-48E1-AA25-E56B32FCB335}) (Version: - Microsoft) Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version: - Microsoft) Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version: - Microsoft) Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-012B-0415-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 5.2 - Ubisoft) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) Wacom (HKLM\...\Pen Tablet Driver) (Version: 5.3.5-3 - Wacom Technology Corp.) Watch_Dogs (HKLM-x32\...\Uplay Install 274) (Version: - Ubisoft) WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.) WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.7 - Wacom Technology Corp.) WinRAR 5.00 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2776533818-928959893-443975868-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Łukasz\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2776533818-928959893-443975868-1001_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Łukasz\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-2776533818-928959893-443975868-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-2776533818-928959893-443975868-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Łukasz\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-2776533818-928959893-443975868-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Łukasz\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2776533818-928959893-443975868-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Łukasz\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2776533818-928959893-443975868-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Łukasz\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2776533818-928959893-443975868-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Łukasz\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) ==================== Restore Points ========================= 01-06-2015 01:31:58 Installed HTC Driver Installer. 09-06-2015 17:14:59 Zaplanowany punkt kontrolny 19-06-2015 13:52:56 Zainstalowany program DirectX 23-06-2015 18:30:36 Zainstalowano: Microsoft Visual C++ 2005 Redistributable 26-06-2015 23:13:53 Removed Bonjour ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {03D2657B-02B6-4354-959B-CB6308A6E27D} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation) Task: {254D1CC6-557B-432D-B352-AD4EDC1A886F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {47B1118D-5EAA-4355-9BB2-A172BC15476B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2776533818-928959893-443975868-1001UA => C:\Users\Łukasz\AppData\Local\Google\Update\GoogleUpdate.exe [2015-05-28] (Google Inc.) Task: {68422061-4FCB-4B1C-960F-7F7E0E243376} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-06-10] (Microsoft Corporation) Task: {705CDD28-3524-4DC0-A013-75AF074E5EA9} - System32\Tasks\{F7859D4B-6943-4BA5-920E-1196C42F3D30} => Chrome.exe http://www.skype.com/go/downloading?source=lightinstaller&ver=6.11.0.102&LastError=404 Task: {945485A8-2374-4817-A87A-1ECB76365F0B} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks Task: {A18472CB-97B0-428F-BBA8-097B1D914739} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-06-12] (Adobe Systems Incorporated) Task: {AD0B1A45-A0D4-4713-A99B-DEAC67472394} - System32\Tasks\Microsoft Office 15 Sync Maintenance for CRN-Łukasz CRN => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2015-04-14] (Microsoft Corporation) Task: {C6ADEE05-712C-415C-B718-D71A060CCA3F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-21] (Google Inc.) Task: {CDBB5878-4AF7-45FD-940C-C65F6E6FBB93} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {DC2AD7F0-73DF-4DCD-8289-E7AE4D35EAAD} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2776533818-928959893-443975868-1001Core => C:\Users\Łukasz\AppData\Local\Google\Update\GoogleUpdate.exe [2015-05-28] (Google Inc.) Task: {F0829B57-D328-4690-B25E-3BF2B2A2E077} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-21] (Google Inc.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2776533818-928959893-443975868-1001Core.job => C:\Users\Aukasz\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2776533818-928959893-443975868-1001UA.job => C:\Users\Aukasz\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2015-04-22 01:38 - 2015-02-05 21:07 - 00117576 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-05-13 19:05 - 2014-08-19 21:12 - 01356568 _____ () C:\Program Files\Tablet\Pen\libxml2.dll 2015-06-27 19:36 - 2015-06-27 19:36 - 00380416 _____ () C:\Users\Łukasz\Downloads\hb66q2y8.exe 2014-08-30 17:12 - 2014-08-30 17:12 - 01269952 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\kpcengine.2.3.dll 2015-06-27 19:54 - 2015-06-27 19:54 - 00098816 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\win32api.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00110080 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\pywintypes27.dll 2015-06-27 19:54 - 2015-06-27 19:54 - 00364544 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\pythoncom27.dll 2015-06-27 19:54 - 2015-06-27 19:54 - 00045568 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\_socket.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 01161216 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\_ssl.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00320512 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\win32com.shell.shell.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00713216 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\_hashlib.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 01175040 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\wx._core_.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00805888 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\wx._gdi_.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00811008 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\wx._windows_.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 01062400 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\wx._controls_.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00735232 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\wx._misc_.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00682496 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\pysqlite2._sqlite.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00087552 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\_ctypes.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00119808 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\win32file.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00108544 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\win32security.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00007168 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\hashobjs_ext.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00026624 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\usb_ext.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00167936 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\win32gui.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00018432 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\win32event.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00128512 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\_elementtree.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00127488 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\pyexpat.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00013824 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\common.time34.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00036864 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\_psutil_windows.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00038912 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\win32inet.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00011264 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\win32crypt.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00070656 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\wx._html2.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00027136 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\_multiprocessing.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00020480 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\_yappi.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00035840 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\win32process.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00686080 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\unicodedata.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00122368 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\wx._wizard.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00024064 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\win32pipe.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00010240 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\select.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00025600 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\win32pdh.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00525640 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\windows._lib_cacheinvalidation.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00017408 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\win32profile.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00022528 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\win32ts.pyd 2015-06-27 19:54 - 2015-06-27 19:54 - 00078336 _____ () C:\Users\UKASZ~1\AppData\Local\Temp\_MEI42402\wx._animate.pyd 2015-06-22 22:41 - 2015-06-20 07:46 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.130\libglesv2.dll 2015-06-22 22:41 - 2015-06-20 07:46 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.130\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Łukasz\OneDrive:ms-properties AlternateDataStreams: C:\Users\Łukasz\AppData\Local\Temp:gNCS92TjphOqKGGNPY ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2776533818-928959893-443975868-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta z Przeglądarki fotografii systemu Windows.jpg DNS Servers: 192.168.0.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0" HKLM\...\StartupApproved\Run32: => "Adobe Acrobat Speed Launcher" HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager" HKLM\...\StartupApproved\Run32: => "YouCam Service6" HKLM\...\StartupApproved\Run32: => "V0640Mon.exe" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "SwitchBoard" HKU\S-1-5-21-2776533818-928959893-443975868-1001\...\StartupApproved\StartupFolder: => "Dropbox.lnk" HKU\S-1-5-21-2776533818-928959893-443975868-1001\...\StartupApproved\StartupFolder: => "PdaNet Desktop.lnk" HKU\S-1-5-21-2776533818-928959893-443975868-1001\...\StartupApproved\Run: => "DAEMON Tools Lite" HKU\S-1-5-21-2776533818-928959893-443975868-1001\...\StartupApproved\Run: => "GalaxyClient" HKU\S-1-5-21-2776533818-928959893-443975868-1001\...\StartupApproved\Run: => "Google Update" HKU\S-1-5-21-2776533818-928959893-443975868-1001\...\StartupApproved\Run: => "MusicManager" HKU\S-1-5-21-2776533818-928959893-443975868-1001\...\StartupApproved\Run: => "Spotify Web Helper" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{85408A59-B7B2-4D61-B962-5C348B7663D0}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{C15ABD2E-EC28-46F4-A0FA-87FB8B450427}] => (Allow) C:\Program Files\KMSnano\data\qemu-system-i386.exe FirewallRules: [{7CFDE762-C663-4709-B41D-AD231837AA87}] => (Allow) C:\Program Files\KMSnano\data\qemu-system-i386.exe FirewallRules: [{A92316CA-EE60-4C9F-8A42-5B032F87D0E7}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{6674B5E6-8237-49CB-B8F4-0F5B8A407266}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{FD900360-EB48-41B0-979C-E67E332CFFEE}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{20BF3757-1127-46BD-AB1D-A88BADB0C4B5}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{34FB3B24-CC9C-4732-9AAD-C2F68539BCD0}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{0BDA7BB7-42BC-4D50-82AC-036B3497FF1D}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{DC4A9A43-3D4A-44A0-8052-A87354B7FD3F}] => (Allow) C:\Users\Łukasz\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{DD7C62E8-FD61-49CF-A09F-CC60A23B5F96}] => (Allow) C:\Users\Łukasz\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{1FE8027E-EF43-4246-AF71-083F0D23CF1A}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{1FA2E5D8-5CF2-4A95-ADB0-E085F9385D9D}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [UDP Query User{6733EB02-74C6-43D0-9109-CC002FD54B15}C:\users\łukasz\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\łukasz\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{AACDE60E-957C-418F-9058-CA62E3E1E167}C:\users\łukasz\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\łukasz\appdata\roaming\spotify\spotify.exe FirewallRules: [{85FC496C-69B9-4898-BEF0-FF26D4B6FB8B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{04082B08-530A-4E5D-B6DC-5FCEF81F818F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{6A5EE96D-A26A-4A36-AA33-A3B4620DAA23}] => (Allow) C:\Users\Łukasz\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{9B12A31D-725D-49B0-8F7F-DE3D387DEC3D}] => (Allow) C:\Users\Łukasz\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{E6B74C66-1DFB-4B0E-9419-ACEA7023683D}] => (Allow) C:\Users\Łukasz\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{774037BF-5580-45DF-8CEC-18B6D9DF42A3}] => (Allow) C:\Users\Łukasz\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [UDP Query User{AA03FCAE-B104-41BB-A7BE-BCD04CB5C4D8}C:\program files (x86)\things & stuff\touchpad server\touchpadserver.exe] => (Allow) C:\program files (x86)\things & stuff\touchpad server\touchpadserver.exe FirewallRules: [TCP Query User{517021F5-3ECE-4759-B11E-B749957BD276}C:\program files (x86)\things & stuff\touchpad server\touchpadserver.exe] => (Allow) C:\program files (x86)\things & stuff\touchpad server\touchpadserver.exe FirewallRules: [{AD2A0D99-ADAC-4F7C-8714-878AE1CA6A87}] => (Allow) C:\Program Files\KMSnano\data\qemu-system-i386.exe FirewallRules: [{34F03146-3361-4E2D-BE7A-F84801391B52}] => (Allow) C:\Program Files\KMSnano\data\qemu-system-i386.exe FirewallRules: [{93960F17-9922-4CCB-983F-A55C90DD7B64}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{E3563DFE-99C6-480D-8476-82251A5D3225}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{47B80BF3-CA68-4C8D-B0F6-5E3D13CE2355}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{FD41FCEB-9FB1-42F5-B2AC-0BA0B82E0E54}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{50ABC2C8-D5A2-4144-9056-43081D393A13}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Watch_Dogs\bin\watch_dogs.exe FirewallRules: [{C4B4BFC2-861B-41DD-B00D-628137B57A69}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Watch_Dogs\bin\watch_dogs.exe FirewallRules: [{214EA648-BD5D-495A-B450-C5456B2C7780}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe FirewallRules: [{85F5CF7D-7A3F-40E4-8151-A31F6E90FBE5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe FirewallRules: [{9DDEE52D-6FCA-4104-A083-DAE5525291AB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe FirewallRules: [{4F6400B1-EB5C-4575-A8EA-A3FAD28A8C41}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe FirewallRules: [{B5EF14BD-49AE-4D50-83DF-752DFD132B96}] => (Allow) C:\Program Files (x86)\Origin Games\SimCity\SimCity\SimCity.exe FirewallRules: [{182A846F-269D-4C13-ACE6-41C5F293C170}] => (Allow) C:\Program Files (x86)\Origin Games\SimCity\SimCity\SimCity.exe FirewallRules: [{81FDDA5A-0AA3-4E03-BBE0-D386611C13F4}] => (Allow) C:\Program Files (x86)\Origin Games\Theme Hospital\data\Game\DOSBox\LAUNCHER.exe FirewallRules: [{B7A5BBF3-BCA4-4C35-AE5E-67398A2A3C80}] => (Allow) C:\Program Files (x86)\Origin Games\Theme Hospital\data\Game\DOSBox\LAUNCHER.exe FirewallRules: [{D6D307C7-5ABF-4653-B905-00C9845D956E}] => (Allow) C:\Program Files (x86)\Adobe\Adobe Flash Builder 4.6\FlashBuilder.exe FirewallRules: [{723DC189-21FF-4A93-9EB6-AEF93FB398EA}] => (Allow) C:\Program Files (x86)\Adobe\Adobe Flash Builder 4.6\FlashBuilder.exe FirewallRules: [{EEF91719-CE26-4F57-AB4A-1000C3E5D221}] => (Allow) LPort=7935 FirewallRules: [{4E5EA3A6-85CD-4991-9195-DFAAC537E4B2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Antichamber\Binaries\Win32\UDK.exe FirewallRules: [{D55F7009-5E99-4438-B730-154287101FA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Antichamber\Binaries\Win32\UDK.exe FirewallRules: [{0DA7A4E2-216F-4E18-B82F-B73D5F0673F0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Prison Architect\Prison Architect.exe FirewallRules: [{775C0AFA-7BC7-4001-8EDC-752A44FCCF29}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Prison Architect\Prison Architect.exe FirewallRules: [{65A41634-5F69-4256-83FE-E5456B027E2A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{74990FE4-98B5-4D26-9D5B-C2E2C716930A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{8ED2F9C2-07F0-4760-A7A3-6B8CD528EEA0}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{654CB675-6280-4BC0-BD73-AD6EF450AA49}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{CCD73EEB-656D-499A-AE09-DA33A7D3F367}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [{635C74ED-8103-4F1C-A3A4-669E6A9E9D4F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpeedRunners\SpeedRunners.exe FirewallRules: [TCP Query User{107F0405-DE2C-41A5-B5C6-26B431A96E8C}C:\users\łukasz\appdata\local\popcorn time\node-webkit\popcorn time.exe] => (Allow) C:\users\łukasz\appdata\local\popcorn time\node-webkit\popcorn time.exe FirewallRules: [UDP Query User{A879501D-AB0C-4D20-B0CC-F0553F23B4EC}C:\users\łukasz\appdata\local\popcorn time\node-webkit\popcorn time.exe] => (Allow) C:\users\łukasz\appdata\local\popcorn time\node-webkit\popcorn time.exe FirewallRules: [{D17858F0-1014-49C8-AFFC-4C007EAB0F51}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Binding Of Isaac\Isaac.exe FirewallRules: [{9896192E-B076-4AC5-B18C-13071894967B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Binding Of Isaac\Isaac.exe FirewallRules: [{253C1DB0-E2DF-4F05-A9AA-C1EE5E9A5AB0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Blockstorm\Blockstorm.exe FirewallRules: [{E4765232-297B-4A07-9D41-C1F706F34A28}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Blockstorm\Blockstorm.exe FirewallRules: [TCP Query User{699492B3-F74B-4EEC-A118-9AC9A48C0DF0}C:\program files (x86)\ubisoft\ubisoft game launcher\games\watch_dogs\bin\watch_dogs.exe] => (Allow) C:\program files (x86)\ubisoft\ubisoft game launcher\games\watch_dogs\bin\watch_dogs.exe FirewallRules: [UDP Query User{A7606371-C242-4B39-9F0C-74F407B0E57B}C:\program files (x86)\ubisoft\ubisoft game launcher\games\watch_dogs\bin\watch_dogs.exe] => (Allow) C:\program files (x86)\ubisoft\ubisoft game launcher\games\watch_dogs\bin\watch_dogs.exe FirewallRules: [{1978A850-99DA-4455-B798-4CACF6BE1DE8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Lovely Planet\LovelyPlanet.exe FirewallRules: [{984C1896-2914-4580-898E-4B7BE22C9EAB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Lovely Planet\LovelyPlanet.exe FirewallRules: [{01468528-47DD-45E8-9481-2BB4AD6C97CB}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{E88F630F-3A05-4AD6-B077-2CFC30EA00BA}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{82E5F5D4-C8F5-4165-8181-CEE86FD4C46D}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{2B069753-825F-474D-8708-8F49814D411D}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{2D2007CE-4446-4D2F-80D8-84F01C49E8D3}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{1E0E1F46-5C8B-4D43-869C-FB3989214458}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{58D79C7B-FCA3-48F4-B569-8B651E64B63F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (06/27/2015 01:11:38 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (06/26/2015 09:27:47 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (06/26/2015 02:51:11 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1125 Error: (06/26/2015 02:51:11 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1125 Error: (06/26/2015 02:51:11 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (06/25/2015 06:46:35 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (06/24/2015 04:01:14 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (06/23/2015 00:52:00 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (06/22/2015 07:22:08 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (06/21/2015 05:34:37 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: Skype.exe, wersja: 7.5.0.102, sygnatura czasowa: 0x556dd64c Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.3.9600.17415, sygnatura czasowa: 0x54504ade Kod wyjątku: 0xe0faf3b2 Przesunięcie błędu: 0x00014598 Identyfikator procesu powodującego błąd: 0x21b8 Godzina uruchomienia aplikacji powodującej błąd: 0xSkype.exe0 Ścieżka aplikacji powodującej błąd: Skype.exe1 Ścieżka modułu powodującego błąd: Skype.exe2 Identyfikator raportu: Skype.exe3 Pełna nazwa pakietu powodującego błąd: Skype.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: Skype.exe5 System errors: ============= Error: (06/27/2015 07:53:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi PnkBstrA z powodu następującego błędu: %%2 Error: (06/27/2015 07:53:35 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Internet Pass-Through Service z powodu następującego błędu: %%2 Error: (06/27/2015 07:53:25 PM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x00000124 (0x0000000000000000, 0xffffe000ce024028, 0x00000000fe200000, 0x0000000000041136)C:\WINDOWS\MEMORY.DMP062715-16890-01 Error: (06/27/2015 07:53:25 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 19:37:53 na ‎2015-‎06-‎27 było nieoczekiwane. Error: (06/27/2015 07:52:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Bufor wydruku niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (06/27/2015 07:51:55 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) HD Graphics Control Panel Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (06/27/2015 07:46:10 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Usługa Bonjour niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (06/27/2015 07:38:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi PnkBstrA z powodu następującego błędu: %%2 Error: (06/27/2015 07:38:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Internet Pass-Through Service z powodu następującego błędu: %%2 Error: (06/27/2015 07:37:54 PM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x00000124 (0x0000000000000000, 0xffffe0018fac2028, 0x00000000be200000, 0x0000000000041136)C:\WINDOWS\MEMORY.DMP062715-17625-01 Microsoft Office: ========================= Error: (06/27/2015 01:11:38 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (06/26/2015 09:27:47 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (06/26/2015 02:51:11 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1125 Error: (06/26/2015 02:51:11 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1125 Error: (06/26/2015 02:51:11 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (06/25/2015 06:46:35 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (06/24/2015 04:01:14 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (06/23/2015 00:52:00 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (06/22/2015 07:22:08 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (06/21/2015 05:34:37 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Skype.exe7.5.0.102556dd64cKERNELBASE.dll6.3.9600.1741554504adee0faf3b20001459821b801d0abb78fad49aeC:\Program Files (x86)\Skype\Phone\Skype.exeC:\WINDOWS\SYSTEM32\KERNELBASE.dll061cd1d6-182b-11e5-be7c-d43d7e2bc877 CodeIntegrity Errors: =================================== Date: 2015-05-07 21:37:54.774 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\CTAFX64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-05 00:53:47.795 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\CTAFX64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-05 00:53:07.232 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\CTAFX64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-05 00:47:18.193 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\CTAFX64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-03 10:34:35.962 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\CTAFX64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-03 10:34:35.919 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\CTAFX64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-03 10:34:30.997 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\CTAFX64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-03 10:34:30.953 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\CTAFX64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-03 10:34:25.534 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\CTAFX64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-03 10:34:25.490 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\CTAFX64.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-3770 CPU @ 3.40GHz Percentage of memory in use: 16% Total physical RAM: 16072.27 MB Available physical RAM: 13463.99 MB Total Pagefile: 32456.27 MB Available Pagefile: 29527.8 MB Total Virtual: 131072 MB Available Virtual: 131071.83 MB ==================== Drives ================================ Drive c: (System) (Fixed) (Total:330.54 GB) (Free:119.5 GB) NTFS Drive d: () (Fixed) (Total:600.01 GB) (Free:95.87 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 45E07B99) Partition: GPT Partition Type. ==================== End of log ============================