Additional scan result of Farbar Recovery Scan Tool (x64) Version:12-07-2015 Ran by Piotr at 2015-07-12 23:58:39 Running from G:\Pobrane\Bezpieczeństwo Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-665930927-4129261431-4220860388-500 - Administrator - Disabled) Guest (S-1-5-21-665930927-4129261431-4220860388-501 - Limited - Disabled) Piotr (S-1-5-21-665930927-4129261431-4220860388-1000 - Administrator - Enabled) => C:\Users\Piotr ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Ad Muncher v4.94.34121 (Free) (HKLM-x32\...\Ad Muncher) (Version: - ) Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.0.42.34 - Adobe Systems Incorporated) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.203 - Adobe Systems Incorporated) AI Suite II (HKLM-x32\...\{34D3688E-A737-44C5-9E2A-FF73618728E1}) (Version: 2.02.00 - ASUSTeK Computer Inc.) AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.60.1495, 03.06.2015 - AIMP DevTeam) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.10.0 - Asmedia Technology) ASUS Xonar DG Audio Driver (HKLM\...\C-Media Oxygen HD Audio Driver) (Version: - ) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.4.2.30944 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.7.1 - EA Digital Illusions CE AB) Filter Results (HKLM-x32\...\Filter Results) (Version: 2.0.5671.6955 - Filter Results) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.132 - Google Inc.) Google Update Helper (x32 Version: 1.3.21.169 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden HP Deskjet 2510 series — podstawowe oprogramowanie urządzenia (HKLM\...\{F0DD70C6-B53F-42B5-8A67-62863E6E5EEF}) (Version: 28.0.1313.0 - Hewlett-Packard Co.) HP Deskjet 2510 series Setup Guide (HKLM-x32\...\{216C7F38-4BBC-4E9A-8392-C9FA21B54386}) (Version: 27.0.0 - Hewlett Packard) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.0.1310 - Intel Corporation) Intel(R) Network Connections 18.1.59.0 (HKLM\...\PROSetDX) (Version: 18.1.59.0 - Intel) Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version: - Intel Corporation) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan) KeePass Password Safe 2.29 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.29 - Dominik Reichl) K-Lite Mega Codec Pack 11.2.7 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 11.2.7 - ) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110415-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) NVIDIA GeForce Experience 2.4.5.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.5.57 - NVIDIA Corporation) NVIDIA Graphics Driver 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.30 - NVIDIA Corporation) NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Opera 12.17 (HKLM\...\Opera 12.17.1863) (Version: 12.17.1863 - Opera Software ASA) Origin (HKLM-x32\...\Origin) (Version: 9.5.12.2862 - Electronic Arts, Inc.) Perixx Gaming mouse version 1.0.6 (HKLM-x32\...\{2F606408-495F-4772-A3A7-BE0A31C4B261}_is1) (Version: 1.0.6 - ) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) Rainlendar2 (remove only) (HKLM-x32\...\Rainlendar2) (Version: - ) SHIELD Streaming (Version: 4.1.2000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.4.5.57 - NVIDIA Corporation) Hidden TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH) TS Notifier (HKLM-x32\...\{1A15C8C3-DDCA-47BF-9078-799D356462ED}) (Version: 1.5.5003 - Andreas Gebert) VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= 10-07-2015 00:17:52 Windows Update 10-07-2015 00:24:18 Installed Asmedia ASM104x USB 3.0 Host Controller Driver. 10-07-2015 00:33:25 Installed AI Suite II 10-07-2015 00:33:34 Installed EPU 10-07-2015 00:33:40 Installed FAN Xpert 10-07-2015 00:33:44 Installed Probe II 10-07-2015 00:33:48 Installed System Information 10-07-2015 00:33:55 Installed TurboV EVO 10-07-2015 00:34:01 Installed USB 3.0 Boost 10-07-2015 00:39:41 Installed Intel(R) Network Connections. 10-07-2015 00:41:20 Windows Update 10-07-2015 00:41:55 Device Driver Package Install: ASUSTeK Sound, video and game controllers 10-07-2015 00:49:31 Windows Update 10-07-2015 00:58:34 Windows Update 10-07-2015 01:00:10 Installed DirectX 10-07-2015 01:07:53 Device Driver Package Install: ASUSTeK Sound, video and game controllers 10-07-2015 01:23:36 Windows Modules Installer 10-07-2015 01:30:59 Windows Update 10-07-2015 08:34:07 avast! antivirus system restore point 10-07-2015 11:42:18 Zainstalowano: Microsoft Office Professional Edition 2003 10-07-2015 13:25:50 Zainstalowany program DirectX 10-07-2015 13:37:12 Zainstalowany program DirectX 10-07-2015 13:37:55 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 10-07-2015 13:38:02 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 10-07-2015 14:03:54 Windows Update 11-07-2015 00:04:37 Kopia zapasowa systemu Windows 11-07-2015 03:00:11 Windows Update 11-07-2015 11:14:38 Zainstalowano: TS Notifier 12-07-2015 03:26:20 Windows Update 12-07-2015 15:27:32 Removed Vegas Pro 13.0 (64-bit) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {12190775-F808-4BCF-97E4-80FD0CCB6142} - System32\Tasks\{82755EDF-06E7-4E0B-BA3A-3C4747A74AB1} => pcalua.exe -a "D:\Program Files (x86)\Origin Games\Battlefield 4\pbsetup\pbsetup.exe" -d "d:\Program Files (x86)\Origin Games\Battlefield 4\pbsetup\" Task: {46E92FCE-3AD4-489E-AC9B-910EE04246AF} - System32\Tasks\{137ED739-9843-4330-91EB-E967832C2F5C} => pcalua.exe -a "D:\Program Files (x86)\Origin Games\Battlefield 3\pbsetup\pbsetup.exe" -d "d:\Program Files (x86)\Origin Games\Battlefield 3\pbsetup\" Task: {4AA62AE9-D7BE-4A09-ADA0-FF68E82B64C2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-10] (Google Inc.) Task: {52AC6DD4-4BB8-47FF-9BFA-D2DBA00E34F6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-10] (Google Inc.) Task: {696A5BD8-981C-430C-AE54-0EE8099A00A3} - System32\Tasks\{DF5ADF64-D091-465B-AA36-D7B72AC621F8} => pcalua.exe -a "G:\Pobrane Opera\pbsetup\pbsetup\pbsetup.exe" -d "g:\Pobrane Opera\pbsetup\pbsetup\" Task: {9D515E27-3683-4633-BF14-FA8C465B8E41} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr.exe [2013-07-25] () Task: {DED4F0D6-D2F0-473E-B180-3CF904893276} - System32\Tasks\klcp_update => F:\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2015-05-31] () Task: {E4858E89-C28E-4CE4-8443-12C91D5D9CFF} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2012-03-13] (ASUSTeK Computer Inc.) Task: {EDACFC69-FA4C-4176-9246-F41F53324920} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-07-10] (Avast Software s.r.o.) Task: {FF46E0E4-261E-4DA3-89C9-8088E48BA099} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-11] (Adobe Systems Incorporated) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2015-07-10 01:04 - 2015-06-17 07:48 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-07-10 00:26 - 2015-07-10 00:26 - 00920736 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe 2015-07-11 01:01 - 2015-07-11 01:00 - 00076152 _____ () C:\Windows\system32\PnkBstrA.exe 2015-07-10 00:42 - 2008-07-11 16:04 - 00200704 ____N () C:\Windows\SysWOW64\HsMgr.exe 2015-07-10 00:42 - 2008-07-11 16:03 - 00282112 ____N () C:\Windows\system\HsMgr64.exe 2014-03-16 18:42 - 2014-03-16 18:42 - 04411488 _____ () F:\Rainlendar2\Rainlendar2.exe 2012-05-16 20:12 - 2012-05-16 20:12 - 00179200 _____ () F:\Rainlendar2\lua52.dll 2014-03-14 11:24 - 2014-03-14 11:24 - 00324608 _____ () F:\Rainlendar2\libical.dll 2014-03-16 18:42 - 2014-03-16 18:42 - 00082528 _____ () F:\Rainlendar2\plugins\iCalendarPlugin.dll 2014-03-14 11:24 - 2014-03-14 11:24 - 00080384 _____ () F:\Rainlendar2\libicalss.dll 2012-06-17 14:21 - 2012-06-17 14:21 - 00015360 _____ () F:\Rainlendar2\lfs.dll 2015-07-10 01:00 - 2015-06-24 12:37 - 00721552 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\gamecaster64.dll 2015-07-10 01:00 - 2015-06-24 12:37 - 00854160 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\twitchsdk64.dll 2015-06-08 19:00 - 2015-06-08 19:00 - 00890824 ____N () C:\Users\Piotr\AppData\Local\Temp\is1094620407\06909EB0_stp\Install_uk.exe 2015-07-12 13:53 - 2015-07-12 19:15 - 00569576 _____ () C:\Program Files (x86)\Common Files\f08cac26-e74f-49b4-9ff1-f081aa55e1b3\updater.exe 2015-07-12 13:53 - 2015-07-12 19:20 - 00653032 _____ () C:\ProgramData\f08cac26-e74f-49b4-9ff1-f081aa55e1b3\plugincontainer.exe 2015-07-12 18:20 - 2015-07-12 18:20 - 01168104 _____ () C:\ProgramData\f08cac26-e74f-49b4-9ff1-f081aa55e1b3\plugins\2\plugin.exe 2015-07-12 18:20 - 2015-07-12 18:20 - 00615656 _____ () C:\ProgramData\f08cac26-e74f-49b4-9ff1-f081aa55e1b3\plugins\3\plugin.exe 2015-07-12 18:20 - 2015-07-12 18:20 - 00786664 _____ () C:\ProgramData\f08cac26-e74f-49b4-9ff1-f081aa55e1b3\plugins\5\plugin.exe 2015-07-12 08:55 - 2015-07-12 08:55 - 00459496 _____ () C:\ProgramData\f08cac26-e74f-49b4-9ff1-f081aa55e1b3\plugins\7\plugin.exe 2015-07-12 20:21 - 2015-07-12 20:21 - 00649448 _____ () C:\ProgramData\f08cac26-e74f-49b4-9ff1-f081aa55e1b3\plugins\8\plugin.exe 2015-07-12 22:26 - 2015-07-12 22:26 - 00512232 _____ () C:\ProgramData\f08cac26-e74f-49b4-9ff1-f081aa55e1b3\plugins\10\plugin.exe 2015-07-10 08:34 - 2015-07-10 08:34 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-07-10 08:34 - 2015-07-10 08:34 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-07-11 19:26 - 2015-07-11 19:26 - 02956288 _____ () C:\Program Files\AVAST Software\Avast\defs\15071101\algo.dll 2015-07-12 19:49 - 2015-07-12 19:49 - 02956288 _____ () C:\Program Files\AVAST Software\Avast\defs\15071201\algo.dll 2015-07-10 00:26 - 2015-07-12 11:48 - 00032256 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll 2015-07-10 00:26 - 2010-06-29 11:58 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll 2015-07-10 01:02 - 2015-06-24 12:37 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-07-10 01:07 - 2012-06-06 10:56 - 00143360 ____N () C:\Program Files\ASUS Xonar DGX Audio\Customapp\VmixP8.dll 2015-07-10 08:34 - 2015-07-10 08:34 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-07-10 10:16 - 2013-09-13 19:50 - 00042496 _____ () C:\Program Files (x86)\Perixx Gaming mouse\KBGetKey.dll 2015-07-10 00:34 - 2013-08-09 16:13 - 00043520 ____N () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\HookKey32.dll 2015-07-10 00:33 - 2013-08-09 15:13 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\pngio.dll 2015-07-10 00:33 - 2011-07-12 19:14 - 00147456 _____ () C:\Program Files (x86)\ASUS\AI Suite II\AssistFunc.dll 2015-07-10 00:33 - 2010-10-05 08:22 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\pngio.dll 2015-07-10 00:33 - 2012-10-08 17:07 - 00972288 _____ () C:\Program Files (x86)\ASUS\AI Suite II\BarGadget\BarGadget.dll 2015-07-10 00:33 - 2012-07-20 09:39 - 01047040 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Probe_II\ProbeII.dll 2015-07-10 00:33 - 2013-04-15 14:19 - 00883712 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\Sensor.dll 2015-07-10 00:33 - 2012-05-28 21:27 - 01622528 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor Graph\SensorGraph.dll 2015-07-10 00:33 - 2011-09-19 20:18 - 01243136 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Settings\Settings.dll 2015-07-10 00:33 - 2011-07-21 09:06 - 00846848 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Splitter\Splitter.dll 2015-07-10 00:33 - 2012-08-29 18:09 - 00875520 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TabGadget\TabGadget.dll 2015-07-10 00:26 - 2010-08-23 11:17 - 00662016 _____ () C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMLib.dll 2015-07-10 00:33 - 2010-10-05 08:22 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\ImageHelper.dll 2015-07-10 00:33 - 2009-08-12 20:15 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\pngio.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-665930927-4129261431-4220860388-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Piotr\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 194.168.4.100 - 194.168.8.100 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{FF600800-EC81-41F1-9256-D2082D465A2B}] => (Allow) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe FirewallRules: [{3754F075-7443-4D70-B26C-8C3348CA7152}] => (Allow) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe FirewallRules: [{ED508A8C-C0A1-4A35-835C-199523368381}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{999AA9AF-3960-4C68-A76F-BA3B4CA9B990}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{B1FC67C1-82C6-4999-9756-AED4B66AFD16}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{8C473C01-080B-4AE1-953D-7B49BBDCD4A9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{CFB30901-E351-4033-A6FD-5EFD4845627C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{0FBFB2AB-1BCA-451A-953A-09BB3A9185E3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{A8AA5955-8324-4DAA-87D2-62B7DED930E6}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{CE8DB2B0-AF87-4E86-B73E-ACC3797DFA54}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{31B5F8FC-AA7D-4097-9B3E-062C020EC1AE}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{D2CD0517-436B-43BA-A2C8-4B4FED626990}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper.exe FirewallRules: [{347DCFD3-09D5-4A9D-8410-14C408B0107A}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper.exe FirewallRules: [{93E9DC45-FBEB-4F5B-B542-E841CB3B0492}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper_32.exe FirewallRules: [{6F2B36AC-3170-4A19-A71F-0CF044A7A8B1}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper_32.exe FirewallRules: [{E3DFA3E4-30BA-49F2-A5C8-8B06B79C4F69}] => (Allow) C:\Program Files\Opera x64\opera.exe FirewallRules: [{1228DE68-D9B3-459D-89A3-70924CF8546A}] => (Allow) C:\Program Files\Opera x64\opera.exe FirewallRules: [{94273D3E-94E0-46B9-98C3-4AD1352B3125}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{11729D6A-484F-4E47-BFC3-9C4654F4D9EE}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{A7B7B0ED-F689-472D-B765-329B57597F71}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{71C64559-7273-4CFF-B337-85EBE1706768}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{D0919031-9866-4C7E-A10D-4C42E228A040}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{B2CC938B-4F65-4D53-AC98-895497148142}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{8DECB79A-F8C0-4900-B2C2-6233F9A5B01B}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exe FirewallRules: [{0E1A5111-45DC-49AA-B6DE-98A93E791F07}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\bf4_x86.exe FirewallRules: [{9888131A-F791-4ED7-95E6-1A30CF1B10D0}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exe FirewallRules: [{CC315385-472B-492F-9022-D44850CF72B0}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exe FirewallRules: [TCP Query User{71F99728-A731-4B7E-B230-B167338289C5}F:\aimp3\aimp3.exe] => (Block) F:\aimp3\aimp3.exe FirewallRules: [UDP Query User{447CC975-A911-4FDB-A954-C4735E49F6A1}F:\aimp3\aimp3.exe] => (Block) F:\aimp3\aimp3.exe FirewallRules: [{A73365FC-E56D-4A47-BAE1-5438569DF70E}] => (Allow) C:\Program Files\HP\HP Deskjet 2510 series\Bin\USBSetup.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/12/2015 02:23:38 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program ResHacker.exe w wersji 3.6.0.92 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 1714 Godzina rozpoczęcia: 01d0bca5de5b1c23 Godzina zakończenia: 4 Ścieżka aplikacji: G:\Pobrane\Edycja EXE\Nowy folder\Resource Hacker\ResHacker.exe Identyfikator raportu: 3203697a-2899-11e5-a1bf-ac220b4da539 Error: (07/12/2015 02:19:23 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program ResHacker.exe w wersji 3.4.0.79 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 3d4 Godzina rozpoczęcia: 01d0bca524481fd0 Godzina zakończenia: 3 Ścieżka aplikacji: G:\Pobrane\Edycja EXE\ResHacker.exe Identyfikator raportu: 9a3bd8a5-2898-11e5-a1bf-ac220b4da539 Error: (07/12/2015 02:17:43 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program ResHacker.exe w wersji 3.4.0.79 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: b9c Godzina rozpoczęcia: 01d0bca4eff2a7e2 Godzina zakończenia: 5 Ścieżka aplikacji: G:\Pobrane\Edycja EXE\ResHacker.exe Identyfikator raportu: 5e2bd316-2898-11e5-a1bf-ac220b4da539 Error: (07/12/2015 11:48:43 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/11/2015 05:50:05 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program TOTALCMD64.EXE w wersji 8.0.1.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 135c Godzina rozpoczęcia: 01d0bbf96bbb4233 Godzina zakończenia: 25862 Ścieżka aplikacji: F:\totalcmd\TOTALCMD64.EXE Identyfikator raportu: cec0b535-27ec-11e5-8e6a-ac220b4da539 Error: (07/11/2015 11:26:02 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/11/2015 11:04:44 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/11/2015 04:13:04 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/11/2015 12:00:11 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/10/2015 08:13:21 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (07/11/2015 03:27:09 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Wstępne ładowanie do pamięci zakończyła działanie; wystąpił następujący błąd: %%1062 Error: (07/11/2015 02:14:23 PM) (Source: volsnap) (EventID: 16) (User: ) Description: Kopie w tle woluminu E: zostały przerwane, ponieważ wolumin E:, zawierający magazyn kopii w tle dla tej kopii w tle, został przymusowo odinstalowany. Error: (07/11/2015 12:09:02 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80070643: Definition Update for Windows Defender - KB915597 (Definition 1.201.1399.0). Error: (07/10/2015 02:07:38 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80070103: nVidia - Graphics Adapter WDDM1.1, Graphics Adapter WDDM1.2, Graphics Adapter WDDM1.3, Other hardware - NVIDIA GeForce GTX 980. Error: (07/10/2015 02:05:26 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x8024200d: Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 SP1 for x64-based Systems (KB2973112). Error: (07/10/2015 02:05:12 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x8024200d: Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 SP1 for x64-based Systems (KB2978120). Error: (07/10/2015 02:04:39 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x8024200d: Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 SP1 for x64-based Systems (KB2836943). Error: (07/10/2015 03:29:32 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80242016: Update for Internet Explorer 8 Compatibility View List for Windows 7 for x64-based Systems (KB2598845). Error: (07/10/2015 03:26:58 AM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1001) (User: ZARZĄDZANIE NT) Description: Nie można uruchomić kreatora instalacji pakietu językowego. Uruchom ponownie system i spróbuj uruchomić ponownie kreatora. Error: (07/10/2015 03:26:58 AM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1000) (User: ZARZĄDZANIE NT) Description: Inicjacja klienta CBS nie powiodła się. Ostatni błąd: 0x80080005 Microsoft Office: ========================= Error: (07/12/2015 02:23:38 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: ResHacker.exe3.6.0.92171401d0bca5de5b1c234G:\Pobrane\Edycja EXE\Nowy folder\Resource Hacker\ResHacker.exe3203697a-2899-11e5-a1bf-ac220b4da539 Error: (07/12/2015 02:19:23 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: ResHacker.exe3.4.0.793d401d0bca524481fd03G:\Pobrane\Edycja EXE\ResHacker.exe9a3bd8a5-2898-11e5-a1bf-ac220b4da539 Error: (07/12/2015 02:17:43 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: ResHacker.exe3.4.0.79b9c01d0bca4eff2a7e25G:\Pobrane\Edycja EXE\ResHacker.exe5e2bd316-2898-11e5-a1bf-ac220b4da539 Error: (07/12/2015 11:48:43 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/11/2015 05:50:05 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: TOTALCMD64.EXE8.0.1.0135c01d0bbf96bbb423325862F:\totalcmd\TOTALCMD64.EXEcec0b535-27ec-11e5-8e6a-ac220b4da539 Error: (07/11/2015 11:26:02 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/11/2015 11:04:44 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/11/2015 04:13:04 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/11/2015 12:00:11 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/10/2015 08:13:21 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-4820K CPU @ 3.70GHz Percentage of memory in use: 15% Total physical RAM: 16326 MB Available physical RAM: 13823.54 MB Total Virtual: 32650.21 MB Available Virtual: 30310.06 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:200 GB) (Free:114.7 GB) NTFS ==>[drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:265.76 GB) (Free:172.42 GB) NTFS Drive e: () (Fixed) (Total:244.04 GB) (Free:243.64 GB) NTFS Drive f: () (Fixed) (Total:292.97 GB) (Free:291.97 GB) NTFS Drive g: () (Fixed) (Total:394.4 GB) (Free:231.24 GB) NTFS Drive h: () (Fixed) (Total:232.88 GB) (Free:226.37 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 1640E5F3) Partition 1: (Active) - (Size=200 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=265.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 9DAA9819) Partition 1: (Not Active) - (Size=244 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=293 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=394.4 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 232.9 GB) (Disk ID: 206D206D) Partition 1: (Not Active) - (Size=232.9 GB) - (Type=07 NTFS) ==================== End of log ============================