Additional scan result of Farbar Recovery Scan Tool (x64) Version:28-06-2015 01 Ran by Szymon at 2015-07-01 17:13:30 Running from E:\downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3972903673-1391813168-638966357-500 - Administrator - Disabled) Guest (S-1-5-21-3972903673-1391813168-638966357-501 - Limited - Disabled) Szymon (S-1-5-21-3972903673-1391813168-638966357-1000 - Administrator - Enabled) => C:\Users\Szymon ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-3972903673-1391813168-638966357-1000\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.) Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Flash Player 17 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 17.0.0.149 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.3.153 - Adobe Systems, Inc.) Akamai NetSession Interface (HKU\S-1-5-21-3972903673-1391813168-638966357-1000\...\Akamai) (Version: - Akamai Technologies, Inc) Alternative Look for Yennefer (HKLM-x32\...\Alternative Look for Yennefer_is1) (Version: 1.0.0.0 - GOG.com) AMD Catalyst Install Manager (HKLM\...\{F2A7CE36-57BF-5C86-952D-90DBF3746D82}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BattleBlock Theater (HKLM-x32\...\Steam App 238460) (Version: - The Behemoth) Beard and Hairstyle Set (HKLM-x32\...\Beard and Hairstyle Set_is1) (Version: 1.0.0.0 - GOG.com) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) CodeBlocks (HKU\S-1-5-21-3972903673-1391813168-638966357-1000\...\CodeBlocks) (Version: 13.12 - The Code::Blocks Team) Counter-Strike (HKLM-x32\...\Steam App 10) (Version: - Valve) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Elite Crossbow Set (HKLM-x32\...\Elite Crossbow Set_is1) (Version: 1.0.0.0 - GOG.com) GS Auto Clicker (HKLM-x32\...\GS Auto Clicker_is1) (Version: V3.1.3 - goldensoft.org) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.5.235 - Intel Corporation) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) LG United Mobile Drivers (HKLM-x32\...\{F193D8D7-3D5E-4DB5-A74C-F8CD5378EE7B}) (Version: 3.12.3.0 - LG Electronics) Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Word 2010 (HKLM-x32\...\Office14.WORD) (Version: 14.0.4763.1000 - Microsoft Corporation) MPC-HC 1.7.8 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.8 - MPC-HC Team) New Quest - Contract Missing Miners (HKLM-x32\...\New Quest - Contract Missing Miners_is1) (Version: 1.0.0.0 - GOG.com) Nilfgaardian Armor Set (HKLM-x32\...\Nilfgaardian Armor Set_is1) (Version: 1.0.0.0 - GOG.com) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenOffice.org 2.4 (HKLM-x32\...\{E33DB440-A008-4928-8A4E-5FC5ADDED608}) (Version: 2.4.9364 - OpenOffice.org) Opera Stable 30.0.1835.88 (HKLM-x32\...\Opera 30.0.1835.88) (Version: 30.0.1835.88 - Opera Software) Origin (HKLM-x32\...\Origin) (Version: 9.4.22.2815 - Electronic Arts, Inc.) osu! (HKLM-x32\...\{4866e569-5c45-48c6-abf6-4b9680f5efa0}) (Version: latest - ppy Pty Ltd) PAYDAY 2 (HKLM-x32\...\Steam App 218620) (Version: - OVERKILL - a Starbreeze Studio.) Raptr (HKLM-x32\...\Raptr) (Version: - ) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.67.1226.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7324 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver and Utility (HKLM-x32\...\{9C049499-055C-4a0c-A916-1D12314F45EB}) (Version: 1.00.0179 - REALTEK Semiconductor Corp.) screenSHU - the fastest screen capture ever. (HKLM-x32\...\screenSHU) (Version: - ) Skype™ 7.5 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.5.102 - Skype Technologies S.A.) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Temerian Armor Set (HKLM-x32\...\Temerian Armor Set_is1) (Version: 1.0.0.0 - GOG.com) The Witcher 3 Wild Hunt v.1.0.3 (HKLM-x32\...\The Witcher 3 Wild Hunt_is1) (Version: - ) Titanfall™ (HKLM-x32\...\{347EE0C3-0690-48F6-A231-53853C2A80D6}) (Version: 1.0.10.1 - Electronic Arts) Unity Web Player (HKU\S-1-5-21-3972903673-1391813168-638966357-1000\...\UnityWebPlayer) (Version: 5.0.2f1 - Unity Technologies ApS) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) WinRAR 5.11 (32-bitowy) (HKLM-x32\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) X-G510 Gaming Mouse (HKLM-x32\...\{C202E04C-BD05-4F63-A81C-8FFF5E8521DA}}_is1) (Version: - ) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-3972903673-1391813168-638966357-1000_Classes\CLSID\{F6BF8414-962C-40FE-90F1-B80A7E72DB9A}\InprocServer32 -> C:\ProgramData\{9A88E103-A20A-4EA5-8636-C73B709A5BF8}\atl.dll (rtrspocfMoa tonooiiCr) <==== ATTENTION ==================== Restore Points ========================= 20-06-2015 14:55:49 Scheduled Checkpoint 27-06-2015 16:46:07 Scheduled Checkpoint 29-06-2015 20:00:58 UE4 Prerequisites (x64) 29-06-2015 20:05:19 Removed Prototype. 29-06-2015 20:07:21 Removed Oracle VM VirtualBox 4.3.16 30-06-2015 14:42:44 Removed NVIDIA PhysX 30-06-2015 15:00:45 Usunięto: Microsoft Office Word Viewer 2003 01-07-2015 17:07:34 avast! antivirus system restore point ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {531D7B29-2187-4AC4-BA77-41E46AE6A721} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-15] (Adobe Systems Incorporated) Task: {91280A4C-14BC-4344-B7AE-CB29E2C25F8E} - System32\Tasks\{08D34113-C0E2-401E-99D4-0D25657C77E0} => pcalua.exe -a C:\Users\Szymon\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe -c /uninstall Task: {BA6F21B2-ECC5-4D08-8513-D7CEE70BD4E9} - System32\Tasks\Opera scheduled Autoupdate 1410594791 => C:\Program Files (x86)\Opera\launcher.exe [2015-06-19] (Opera Software) Task: {BEE406F3-A0C9-4D27-A89D-CF8AC0E97746} - System32\Tasks\{276A7EF5-DF98-4D0F-BB66-3BC992EF7EAC} => pcalua.exe -a C:\Users\Szymon\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=smt <==== ATTENTION Task: {C7967713-F851-4ED8-9A30-A69CCDE34D52} - System32\Tasks\avast! Emergency Update => e:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-07-01] (Avast Software s.r.o.) Task: {DB8A293B-BA3A-4371-BFF6-1D041123343F} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-21] (Microsoft Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (Whitelisted) ============== 2013-09-04 19:21 - 2013-09-04 19:21 - 02112000 _____ () E:\Program Files (x86)\screenSHU\screenSHU.exe 2015-07-01 17:06 - 2015-07-01 17:06 - 00380416 _____ () E:\downloads\0hwq9lcc.exe 2014-09-13 10:01 - 2014-09-13 10:01 - 00301152 _____ () e:\Program Files\AVAST Software\Avast\aswProperty.dll 2015-07-01 10:31 - 2015-07-01 10:31 - 02952704 _____ () e:\Program Files\AVAST Software\Avast\defs\15070100\algo.dll 2015-01-30 23:49 - 2009-12-09 22:20 - 00126976 _____ () C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\EnumDevLib.dll 2011-06-08 09:32 - 2011-06-08 09:32 - 00011362 _____ () E:\Program Files (x86)\screenSHU\mingwm10.dll 2011-06-08 09:32 - 2011-06-08 09:32 - 00043008 _____ () E:\Program Files (x86)\screenSHU\libgcc_s_dw2-1.dll 2014-09-13 10:01 - 2014-09-13 10:01 - 19329904 _____ () E:\Program Files\AVAST Software\Avast\libcef.dll 2014-09-13 10:01 - 2014-09-13 10:01 - 00301152 _____ () E:\Program Files\AVAST Software\Avast\aswProperty.dll 2014-09-13 10:17 - 2013-01-15 17:06 - 00061952 _____ () C:\Program Files (x86)\Genius\X-G510\HidDevice.dll 2007-12-19 16:04 - 2007-12-19 16:04 - 00828416 _____ () C:\Program Files (x86)\OpenOffice.org 2.4\program\libxml2.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00087040 _____ () C:\Program Files (x86)\Raptr\_ctypes.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00043008 _____ () C:\Program Files (x86)\Raptr\_socket.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00805376 _____ () C:\Program Files (x86)\Raptr\_ssl.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 05812736 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00067584 _____ () C:\Program Files (x86)\Raptr\sip.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 01662464 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00494592 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtNetwork.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00096256 _____ () C:\Program Files (x86)\Raptr\win32api.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00110592 _____ () C:\Program Files (x86)\Raptr\pywintypes26.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00010240 _____ () C:\Program Files (x86)\Raptr\select.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00356864 _____ () C:\Program Files (x86)\Raptr\_hashlib.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00036352 _____ () C:\Program Files (x86)\Raptr\win32process.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00111104 _____ () C:\Program Files (x86)\Raptr\win32file.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00044544 _____ () C:\Program Files (x86)\Raptr\_sqlite3.pyd 2011-02-15 20:17 - 2011-02-15 20:17 - 00417501 _____ () C:\Program Files (x86)\Raptr\sqlite3.dll 2010-11-23 00:57 - 2010-11-23 00:57 - 00167936 _____ () C:\Program Files (x86)\Raptr\win32gui.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00313856 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtWebKit.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00127488 _____ () C:\Program Files (x86)\Raptr\pyexpat.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00009216 _____ () C:\Program Files (x86)\Raptr\winsound.pyd 2014-08-14 02:37 - 2014-08-14 02:37 - 00113171 _____ () C:\Program Files (x86)\Raptr\libvlc.dll 2014-08-14 02:37 - 2014-08-14 02:37 - 02396691 _____ () C:\Program Files (x86)\Raptr\libvlccore.dll 2013-11-21 02:05 - 2013-11-21 02:05 - 00256000 _____ () C:\Program Files (x86)\Raptr\amd_ags.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00583680 _____ () C:\Program Files (x86)\Raptr\unicodedata.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00354304 _____ () C:\Program Files (x86)\Raptr\pythoncom26.dll 2010-11-23 00:57 - 2010-11-23 00:57 - 00263168 _____ () C:\Program Files (x86)\Raptr\win32com.shell.shell.pyd 2015-05-02 02:15 - 2015-05-02 02:15 - 02540288 _____ () C:\Program Files (x86)\Raptr\ltc_host_ex.DLL 2010-11-23 00:57 - 2010-11-23 00:57 - 00141312 _____ () C:\Program Files (x86)\Raptr\gobject._gobject.pyd 2014-06-18 02:56 - 2014-06-18 02:56 - 02717595 _____ () C:\Program Files (x86)\Raptr\heliotrope._purple.pyd 2011-02-15 20:17 - 2011-02-15 20:17 - 01213633 _____ () C:\Program Files (x86)\Raptr\libxml2-2.dll 2010-11-23 01:06 - 2010-11-23 01:06 - 00055808 _____ () C:\Program Files (x86)\Raptr\zlib1.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 00495680 _____ () C:\Program Files (x86)\Raptr\plugins\libaim.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 01183699 _____ () C:\Program Files (x86)\Raptr\liboscar.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 00483306 _____ () C:\Program Files (x86)\Raptr\plugins\libicq.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00655356 _____ () C:\Program Files (x86)\Raptr\plugins\libirc.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 01306387 _____ () C:\Program Files (x86)\Raptr\plugins\libmsn.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 00565461 _____ () C:\Program Files (x86)\Raptr\plugins\libxmpp.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 01640221 _____ () C:\Program Files (x86)\Raptr\libjabber.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 00506276 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoo.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 01053730 _____ () C:\Program Files (x86)\Raptr\libymsg.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00497782 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoojp.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00603326 _____ () C:\Program Files (x86)\Raptr\plugins\ssl-nss.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00474199 _____ () C:\Program Files (x86)\Raptr\plugins\ssl.dll 2015-06-25 12:58 - 2015-06-25 12:58 - 01649272 _____ () C:\Program Files (x86)\Opera\30.0.1835.88\libglesv2.dll 2015-06-25 12:58 - 2015-06-25 12:58 - 00081016 _____ () C:\Program Files (x86)\Opera\30.0.1835.88\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:05EE1EEF ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3972903673-1391813168-638966357-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Szymon\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{21A10A20-7150-4F9F-BE75-5342BBCFC8BC}] => (Allow) E:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{553616F8-267C-4352-BB7D-A06A1694678E}] => (Allow) E:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{F3B76D02-1075-438F-A68A-30CEDA2DADAD}] => (Allow) E:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{CC192A69-AEB5-4706-AA49-CAF9CACBA3C8}] => (Allow) E:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{292E72AD-B745-4A71-A978-6DF4CB067293}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{438BAE02-3A0C-47F2-8170-EFED6326F185}] => (Allow) E:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{109D6769-23D6-4D46-87EF-900E7DA8EB1F}] => (Allow) E:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{4054EFBE-C7AE-4335-9719-A1621B35A549}] => (Allow) C:\Users\Szymon\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{40DE3B48-BE97-442A-95DB-DE7AF399DECB}] => (Allow) C:\Users\Szymon\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{63FC0C01-4F99-464E-A447-AC5216E0E3B1}E:\program files (x86)\metro\metro 2033 redux\metro_benchmark.exe] => (Allow) E:\program files (x86)\metro\metro 2033 redux\metro_benchmark.exe FirewallRules: [UDP Query User{F6F4864E-B502-4956-B069-CB33E6ACAE2C}E:\program files (x86)\metro\metro 2033 redux\metro_benchmark.exe] => (Allow) E:\program files (x86)\metro\metro 2033 redux\metro_benchmark.exe FirewallRules: [TCP Query User{31C2F311-8514-4DD3-B571-48CFB28004B6}E:\program files (x86)\borderlands - the pre-sequel\binaries\win32\borderlandspresequel.exe] => (Allow) E:\program files (x86)\borderlands - the pre-sequel\binaries\win32\borderlandspresequel.exe FirewallRules: [UDP Query User{8633BF36-0A6B-4837-8A5F-4CC7FD26FC3A}E:\program files (x86)\borderlands - the pre-sequel\binaries\win32\borderlandspresequel.exe] => (Allow) E:\program files (x86)\borderlands - the pre-sequel\binaries\win32\borderlandspresequel.exe FirewallRules: [{7B96C6D7-AA18-4B50-B34E-DB7AC72E476C}] => (Allow) LPort=11155 FirewallRules: [{91E6B6F4-6B9A-4AF4-9325-D8D87BDB9B14}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe FirewallRules: [{1D11F817-9A8D-41F6-80B5-8AEA5C001F42}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe FirewallRules: [{A5B20C35-0745-48F2-9220-18DE6915E71D}] => (Allow) E:\Battle.net\Battle.net.exe FirewallRules: [{39C8E770-FE10-4884-A610-CD8CC2B9AFA6}] => (Allow) E:\Battle.net\Battle.net.exe FirewallRules: [{D05C713D-B4C6-436C-AB47-0C0514F2094D}] => (Allow) E:\Hearthstone\Hearthstone.exe FirewallRules: [{4A65CB3A-74D1-4760-B006-0BA46D06D525}] => (Allow) E:\Hearthstone\Hearthstone.exe FirewallRules: [{BB39799B-852C-4BBB-9503-DE241A828532}] => (Allow) LPort=11155 FirewallRules: [{99A353E5-174D-461D-ADB5-B4E35F4EADDC}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe FirewallRules: [{F2BB837D-01EF-47D3-974E-2B09E5950A23}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe FirewallRules: [{88239AA2-D57E-47D2-93F2-BC5D9503DE5D}] => (Allow) E:\lol\lol.launcher.exe FirewallRules: [{AA14EED2-6D15-4551-8971-2BB2E884E263}] => (Allow) E:\lol\lol.launcher.exe FirewallRules: [{33A19850-9A57-47D4-844C-71124270B5A8}] => (Allow) E:\lol\lol.launcher.exe FirewallRules: [{69FA8FCC-4BEF-4D16-BE69-5F56C577D27E}] => (Allow) E:\lol\lol.launcher.exe FirewallRules: [{52DAE454-1407-4D07-A0C4-E1DA4B4300FB}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{AF3A756B-66A6-4B47-B1A1-98E1B158DB02}] => (Allow) C:\Program Files (x86)\Tunngle\Tnglctrl.exe FirewallRules: [{83D719ED-2C23-4460-BDFA-9BFEB19A7205}] => (Allow) C:\Users\Szymon\AppData\Local\Temp\Rar$EXa0.474\Simple Port Forwarding\spf.exe FirewallRules: [{29CBC4C7-0A05-4AFD-85A7-27888DA4B390}] => (Allow) C:\Users\Szymon\AppData\Local\Temp\Rar$EXa0.474\Simple Port Forwarding\spf.exe FirewallRules: [{C95EAAAF-9934-4833-86E9-DFDAE4D307CF}] => (Allow) E:\Diablo III\Diablo III.exe FirewallRules: [{22981019-3F9A-4F48-BBDA-0280D0B56190}] => (Allow) E:\Diablo III\Diablo III.exe FirewallRules: [{7E8AB3FB-A8AC-4581-93A7-D82263B957EB}] => (Allow) E:\StarCraft II\StarCraft II.exe FirewallRules: [{3EF7452F-415E-4FB9-885C-558C846A96A2}] => (Allow) E:\StarCraft II\StarCraft II.exe FirewallRules: [TCP Query User{AD2631BC-91D8-4CE5-BF4E-70F370D97ED8}E:\starcraft ii\versions\base32283\sc2.exe] => (Allow) E:\starcraft ii\versions\base32283\sc2.exe FirewallRules: [UDP Query User{2B674B64-AB29-405A-AF09-CFDBA480E51A}E:\starcraft ii\versions\base32283\sc2.exe] => (Allow) E:\starcraft ii\versions\base32283\sc2.exe FirewallRules: [{200EF306-D3C2-4094-872A-0E24684BC8BD}] => (Allow) E:\Program Files (x86)\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{918807B5-984A-4BE8-A395-35084EF21538}] => (Allow) E:\Program Files (x86)\Steam\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{6774BCD1-2E8F-4949-AEAE-FE683F2D3C63}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [{32936AF9-5CC6-41E2-BB05-C370068FDA6D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [{EABC3B91-53DA-4EA4-8C81-338D56F6BF88}] => (Allow) E:\Program Files (x86)\Steam\SteamApps\common\PAYDAY 2\payday2_win32_release.exe FirewallRules: [{4B9229C4-0E54-4CA6-B089-10F4FDD7ED22}] => (Allow) E:\Program Files (x86)\Steam\SteamApps\common\PAYDAY 2\payday2_win32_release.exe FirewallRules: [TCP Query User{3AEB73F1-E678-4759-B981-9216F153DBCE}E:\program files (x86)\steam\steamapps\common\the war z\infestation.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\the war z\infestation.exe FirewallRules: [UDP Query User{4AD93EC0-9FC2-49F1-982C-4FC54FBE6C06}E:\program files (x86)\steam\steamapps\common\the war z\infestation.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\the war z\infestation.exe FirewallRules: [TCP Query User{7FF8FFDE-AC2A-4169-9CEC-A1FFAB3260F5}E:\lol\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) E:\lol\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe FirewallRules: [UDP Query User{0C6FE402-61BE-4F0B-B9CB-47AD0AFEA04C}E:\lol\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) E:\lol\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe FirewallRules: [TCP Query User{3FD2FCD8-3EFE-4D8D-8E03-6D13F9DEA617}E:\lol\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) E:\lol\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe FirewallRules: [UDP Query User{49A56727-BAC7-4AFE-9F5A-5F620DAD3013}E:\lol\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) E:\lol\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe FirewallRules: [TCP Query User{E18C8C2E-AF09-4EC1-87E6-4DC688DF5DBA}E:\program files (x86)\herousesy\heroes of might and magic iii complete\heroes3.exe] => (Allow) E:\program files (x86)\herousesy\heroes of might and magic iii complete\heroes3.exe FirewallRules: [UDP Query User{AABE4F87-F194-4B64-982A-72E7D1932D98}E:\program files (x86)\herousesy\heroes of might and magic iii complete\heroes3.exe] => (Allow) E:\program files (x86)\herousesy\heroes of might and magic iii complete\heroes3.exe FirewallRules: [TCP Query User{BA5673EB-47DD-4812-82C6-5B6527300B24}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe FirewallRules: [UDP Query User{8457AB85-C737-4C73-BFA1-A912626FDB0C}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe FirewallRules: [{82E8576E-84A4-4738-8491-5AA5D6409A2C}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe FirewallRules: [{3BAA075B-9BCB-4EBF-B0AE-1CB745F61933}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe FirewallRules: [{67DF3938-9C20-4F98-AD48-DA3858B524F1}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe FirewallRules: [{1CC4E662-3CCF-49C9-B600-CCB43EF8FDA9}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe FirewallRules: [TCP Query User{A4E7C143-3B1F-403F-A3AC-5EABE5E799CC}C:\users\szymon\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\szymon\appdata\roaming\gameranger\gameranger\gameranger.exe FirewallRules: [UDP Query User{D550D298-3B35-4F76-AF69-60A83E5F0F0B}C:\users\szymon\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\szymon\appdata\roaming\gameranger\gameranger\gameranger.exe FirewallRules: [{62A381B8-98F9-413E-A462-14611C99270B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe FirewallRules: [{C9EF2CE4-94B5-40D0-B36F-C36FA5F2EE3C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe FirewallRules: [{E8457506-F308-47F6-A2A8-6D588A0A6A59}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [{FD31C135-236C-4009-AA38-633B8ADB148C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [TCP Query User{9540284B-9FD7-465B-8FA3-810CCAE68839}E:\program files (x86)\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe] => (Allow) E:\program files (x86)\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe FirewallRules: [UDP Query User{7631ECC5-C4CC-4C10-B647-264052E6CAC5}E:\program files (x86)\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe] => (Allow) E:\program files (x86)\ubisoft\heroes of might and magic v - dzikie hordy\bin\h5_game.exe FirewallRules: [TCP Query User{9C2B8BB2-B1B6-47F6-8F8E-80E4E993D4CF}C:\users\szymon\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\szymon\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{B6695266-853D-49D3-A849-8527849061F8}C:\users\szymon\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\szymon\appdata\local\akamai\netsession_win.exe FirewallRules: [{5DF16790-5A13-4F23-869A-C6557A5304FA}] => (Allow) E:\Program Files (x86)\NexonEU\LostSagaEU\autoupgrade.exe FirewallRules: [{C4B128F1-B04C-4F2D-A4DA-9CD703BF3CC7}] => (Allow) E:\Program Files (x86)\NexonEU\LostSagaEU\autoupgrade.exe FirewallRules: [{ED150636-7DD5-4453-BD95-E59EF8E2908E}] => (Allow) E:\Program Files (x86)\NexonEU\LostSagaEU\lostsaga.exe FirewallRules: [{3C6A10BF-8862-4494-B0F8-0D3D139999D5}] => (Allow) E:\Program Files (x86)\NexonEU\LostSagaEU\lostsaga.exe FirewallRules: [{0FF14D07-402D-4AFF-8C49-97A6EB2939B2}] => (Allow) E:\Program Files (x86)\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [{C024B224-EB88-49B7-8EDB-362344F90E17}] => (Allow) E:\Program Files (x86)\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [TCP Query User{FA21459C-4FF4-472F-9F8B-12679B5E1E98}C:\program files (x86)\portforward\port forward network utilities\pfportchecker.exe] => (Allow) C:\program files (x86)\portforward\port forward network utilities\pfportchecker.exe FirewallRules: [UDP Query User{CE2A4B11-782E-4197-866A-420E663B37C2}C:\program files (x86)\portforward\port forward network utilities\pfportchecker.exe] => (Allow) C:\program files (x86)\portforward\port forward network utilities\pfportchecker.exe FirewallRules: [TCP Query User{A640EA6F-3CD2-40DF-8BDD-7A772A208EA8}E:\program files (x86)\torchlight 2.v 1.25.5.2 + 1 dlc\torchlight2.exe] => (Allow) E:\program files (x86)\torchlight 2.v 1.25.5.2 + 1 dlc\torchlight2.exe FirewallRules: [UDP Query User{23425626-C244-4E67-87AD-9FD1996F364F}E:\program files (x86)\torchlight 2.v 1.25.5.2 + 1 dlc\torchlight2.exe] => (Allow) E:\program files (x86)\torchlight 2.v 1.25.5.2 + 1 dlc\torchlight2.exe FirewallRules: [{9C280B0F-82F4-4E8D-80D2-43490C13F9A8}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe FirewallRules: [{12C2FAD7-18B5-4664-A821-5B7285928163}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe FirewallRules: [TCP Query User{31484947-DF27-4188-A230-A39086EAAE3C}E:\program files (x86)\saints row gat out of hell\saintsrowgatoutofhell.exe] => (Allow) E:\program files (x86)\saints row gat out of hell\saintsrowgatoutofhell.exe FirewallRules: [UDP Query User{3DC644D4-46BC-4854-894B-00AF7A608089}E:\program files (x86)\saints row gat out of hell\saintsrowgatoutofhell.exe] => (Allow) E:\program files (x86)\saints row gat out of hell\saintsrowgatoutofhell.exe FirewallRules: [{27ADDDBE-D1D8-4337-AABD-CD761D6EC674}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe FirewallRules: [{4B2D4A4E-E2C2-4800-82AE-0E82E4E32673}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe FirewallRules: [{6940115E-0991-4626-9778-D41D23459023}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe FirewallRules: [{2ADEE065-7C71-42FC-BCA8-11D3F966C185}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe FirewallRules: [TCP Query User{B4A31094-7CE5-47C5-8B9B-5F5393EFCD82}E:\program files (x86)\r.g. mechanics\dying light\dyinglightgame.exe] => (Allow) E:\program files (x86)\r.g. mechanics\dying light\dyinglightgame.exe FirewallRules: [UDP Query User{20972E16-D7A9-4901-A341-CF2ED0E93EB0}E:\program files (x86)\r.g. mechanics\dying light\dyinglightgame.exe] => (Allow) E:\program files (x86)\r.g. mechanics\dying light\dyinglightgame.exe FirewallRules: [{B9D684EA-C689-4434-9B02-C2666F29F4F7}] => (Allow) C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{95EC6F47-E2C3-46DB-85B2-A4A729397586}] => (Allow) C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{2EC2B8B3-CC39-471B-8BCE-1951460E2D37}] => (Allow) LPort=1542 FirewallRules: [{5FB6CB7B-2205-4F00-B00B-92509D06B71A}] => (Allow) LPort=1542 FirewallRules: [{671C09FC-CAC2-4308-93EA-28CE3C057881}] => (Allow) LPort=53 FirewallRules: [TCP Query User{7BFC46DE-6288-430C-8BC0-D161856E8ECC}E:\program files (x86)\neocore games\the incredible adventures of van helsing\vanhelsing_x64.exe] => (Allow) E:\program files (x86)\neocore games\the incredible adventures of van helsing\vanhelsing_x64.exe FirewallRules: [UDP Query User{B313377B-69DD-432F-8397-198C00917393}E:\program files (x86)\neocore games\the incredible adventures of van helsing\vanhelsing_x64.exe] => (Allow) E:\program files (x86)\neocore games\the incredible adventures of van helsing\vanhelsing_x64.exe FirewallRules: [TCP Query User{9E0BAAD1-8707-4796-8DD3-AC9E93DCB4D0}E:\program files (x86)\thq\titan quest immortal throne\tqit.exe] => (Allow) E:\program files (x86)\thq\titan quest immortal throne\tqit.exe FirewallRules: [UDP Query User{B32DC92B-EA37-4D9A-930D-3B49C0CF5A00}E:\program files (x86)\thq\titan quest immortal throne\tqit.exe] => (Allow) E:\program files (x86)\thq\titan quest immortal throne\tqit.exe FirewallRules: [{1F0675CA-0733-47B5-AB87-7A98FAF76BB9}] => (Allow) E:\Program Files (x86)\Games\Star Wars-The Old Republic\launcher.exe FirewallRules: [{EC1CFC7F-24A2-4395-946B-8E53361B524A}] => (Allow) E:\Program Files (x86)\Games\Star Wars-The Old Republic\launcher.exe FirewallRules: [{77257825-FD03-4A21-984E-C8442FEE380A}] => (Allow) E:\Program Files (x86)\Games\Star Wars-The Old Republic\launcher.exe FirewallRules: [{8893B851-B99F-42CD-8A38-FA18611D67EE}] => (Allow) E:\Program Files (x86)\Games\Star Wars-The Old Republic\launcher.exe FirewallRules: [{EF527490-5446-4DFE-8E0C-7C4FF1BD745D}] => (Allow) E:\Program Files (x86)\Hearthstone\Hearthstone\Hearthstone.exe FirewallRules: [{7FCCA55D-728C-47DD-805F-3D93A0187A04}] => (Allow) E:\Program Files (x86)\Hearthstone\Hearthstone\Hearthstone.exe FirewallRules: [TCP Query User{EC6B0DD6-8998-4EEC-A0D4-7FA54746E496}E:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) E:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{4A5D5F2F-3254-4670-B36A-8FA55555C93D}E:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) E:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [TCP Query User{06E10E54-E15C-4F54-8CF4-3E3F557BBC06}E:\program files (x86)\hearthstone\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe] => (Allow) E:\program files (x86)\hearthstone\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{DB600821-63F1-4A46-9A6A-5EF287E74175}E:\program files (x86)\hearthstone\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe] => (Allow) E:\program files (x86)\hearthstone\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{F9FB6058-506A-417E-8DCF-397D0BDDA48B}E:\program files (x86)\hearthstone\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe] => (Allow) E:\program files (x86)\hearthstone\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{AEEF58A9-AF0D-463D-A1D9-151AB550DABA}E:\program files (x86)\hearthstone\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe] => (Allow) E:\program files (x86)\hearthstone\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{23594AEC-8B46-4111-9C92-DF2E65FE4C69}E:\program files (x86)\hearthstone\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe] => (Allow) E:\program files (x86)\hearthstone\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{04EFBFF9-88B9-4B59-A8BA-3C97A5D5E69D}E:\program files (x86)\hearthstone\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe] => (Allow) E:\program files (x86)\hearthstone\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{E510FACE-8EAC-465F-9D78-212C8DF59E2C}H:\bin\farcry4.exe] => (Allow) H:\bin\farcry4.exe FirewallRules: [UDP Query User{E06B3604-CFF3-4D90-A77B-4099FAE2A259}H:\bin\farcry4.exe] => (Allow) H:\bin\farcry4.exe FirewallRules: [{8C9606AE-9869-46D3-B1A1-DD7CF3389624}] => (Allow) F:\Titsfall\Titanfall\Titanfall.exe FirewallRules: [{44276C12-D6CC-488A-9B3E-A22D18EAA7E7}] => (Allow) F:\Titsfall\Titanfall\Titanfall.exe FirewallRules: [{26AE95AB-1CC4-4F63-921B-3334D95C9A40}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{FD691EA8-BA6A-4FC1-911A-721035603232}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{694769E4-BCBD-4AB5-A96E-9918902B6CAC}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{D2CE57EE-0780-4A9E-8BD8-946B10EA6C00}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [TCP Query User{32230FFD-17D4-4FA6-9584-7CF9A581885D}C:\users\szymon\appdata\local\temp\rar$exa0.216\windowsnoeditor\engine\binaries\win64\ue4game.exe] => (Allow) C:\users\szymon\appdata\local\temp\rar$exa0.216\windowsnoeditor\engine\binaries\win64\ue4game.exe FirewallRules: [UDP Query User{1A06FB4E-06E4-4707-BB8C-FBCB0DC3684D}C:\users\szymon\appdata\local\temp\rar$exa0.216\windowsnoeditor\engine\binaries\win64\ue4game.exe] => (Allow) C:\users\szymon\appdata\local\temp\rar$exa0.216\windowsnoeditor\engine\binaries\win64\ue4game.exe FirewallRules: [{1C45365D-F8B7-4EF5-8C88-5C1600DB4D28}] => (Allow) E:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{1CB32942-A0E8-4D38-9F06-36AB485ADD4D}] => (Allow) E:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{E7A9DD93-39C1-4DAD-ACB5-41CC94DB9B9E}] => (Allow) E:\Program Files (x86)\Steam\SteamApps\common\BattleBlock Theater\BattleBlockTheater.exe FirewallRules: [{75C45AD1-8624-4E56-BF6A-37DC4D9FA4CF}] => (Allow) E:\Program Files (x86)\Steam\SteamApps\common\BattleBlock Theater\BattleBlockTheater.exe FirewallRules: [TCP Query User{ADCF4898-AA13-42A3-8060-715ACAAECED3}E:\program files (x86)\hearthstone\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe] => (Allow) E:\program files (x86)\hearthstone\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{9BBE0E40-514C-4972-B951-582AB61AFD9A}E:\program files (x86)\hearthstone\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe] => (Allow) E:\program files (x86)\hearthstone\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{03354C62-00AC-405A-A48D-7B73D2668AB5}E:\program files (x86)\hearthstone\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe] => (Allow) E:\program files (x86)\hearthstone\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{30B68ED4-E315-4D16-8402-A61C3053BF59}E:\program files (x86)\hearthstone\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe] => (Allow) E:\program files (x86)\hearthstone\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/01/2015 03:50:31 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: Skype.exe, version: 7.5.0.102, time stamp: 0x556dd64c Faulting module name: Flash32_16_0_0_305.ocx, version: 16.0.0.305, time stamp: 0x54cff11b Exception code: 0xc0000005 Fault offset: 0x001622cb Faulting process id: 0xc18 Faulting application start time: 0xSkype.exe0 Faulting application path: Skype.exe1 Faulting module path: Skype.exe2 Report Id: Skype.exe3 Error: (07/01/2015 03:39:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/01/2015 03:38:56 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Windows license activation failed. Error 0x80070005. Error: (06/30/2015 02:20:14 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/30/2015 02:19:19 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Windows license activation failed. Error 0x80070005. Error: (06/30/2015 02:00:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/30/2015 01:59:51 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Windows license activation failed. Error 0x80070005. Error: (06/29/2015 07:59:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 07:58:44 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Windows license activation failed. Error 0x80070005. Error: (06/29/2015 07:48:58 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (07/01/2015 03:38:57 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY) Description: WLAN Extensibility Module has failed to start. Module Path: C:\Windows\system32\Rtlihvs.dll Error Code: 126 Error: (06/30/2015 02:43:31 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY) Description: WLAN Extensibility Module has failed to start. Module Path: C:\Windows\system32\Rtlihvs.dll Error Code: 126 Error: (06/30/2015 02:27:34 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY) Description: WLAN Extensibility Module has failed to start. Module Path: C:\Windows\system32\Rtlihvs.dll Error Code: 126 Error: (06/30/2015 02:19:15 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 14:16:39 on ‎2015-‎06-‎30 was unexpected. Error: (06/27/2015 03:19:02 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 15:17:18 on ‎2015-‎06-‎27 was unexpected. Error: (06/27/2015 02:36:24 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 14:35:10 on ‎2015-‎06-‎27 was unexpected. Error: (06/23/2015 04:01:33 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 16:00:02 on ‎2015-‎06-‎23 was unexpected. Error: (06/19/2015 03:58:45 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 18:37:27 on ‎2015-‎06-‎18 was unexpected. Error: (06/17/2015 07:31:39 PM) (Source: DCOM) (EventID: 10001) (User: ) Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83} Error: (06/13/2015 10:08:25 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Windows Search service failed to start due to the following error: %%1053 Microsoft Office: ========================= Error: (07/01/2015 03:50:31 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Skype.exe7.5.0.102556dd64cFlash32_16_0_0_305.ocx16.0.0.30554cff11bc0000005001622cbc1801d0b40357ac41a3C:\Program Files (x86)\Skype\Phone\Skype.exeC:\Windows\SysWOW64\Macromed\Flash\Flash32_16_0_0_305.ocx22eed9f5-1ff8-11e5-b3f9-d43d7eb4708a Error: (07/01/2015 03:39:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/01/2015 03:38:56 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 Error: (06/30/2015 02:20:14 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/30/2015 02:19:19 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 Error: (06/30/2015 02:00:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/30/2015 01:59:51 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 Error: (06/29/2015 07:59:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/29/2015 07:58:44 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 Error: (06/29/2015 07:48:58 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 CodeIntegrity Errors: =================================== Date: 2015-04-29 21:33:29.827 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\elanusb.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-04-29 21:33:29.811 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\elanusb.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-04-29 21:31:34.309 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\elanusb.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-04-29 21:31:34.309 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\elanusb.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3470 CPU @ 3.20GHz Percentage of memory in use: 44% Total physical RAM: 8142.93 MB Available physical RAM: 4547.07 MB Total Pagefile: 16284.05 MB Available Pagefile: 12350.62 MB Total Virtual: 8192 MB Available Virtual: 8191.78 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:99.94 GB) (Free:49.78 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (Zastrzeżone przez system) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive e: () (Fixed) (Total:700 GB) (Free:459.88 GB) NTFS Drive f: (New Volume) (Fixed) (Total:131.48 GB) (Free:68.4 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: C0257658) Partition 1: (Not Active) - (Size=101 MB) - (Type=07 NTFS) Partition 2: (Active) - (Size=99.9 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=700 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=131.5 GB) - (Type=07 NTFS) ==================== End of log ============================