Additional scan result of Farbar Recovery Scan Tool (x64) Version:13-07-2015 Ran by Kajczos at 2015-07-18 11:24:03 Running from C:\Users\Kajczos\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-4021329644-3063707683-3167850359-500 - Administrator - Disabled) Gość (S-1-5-21-4021329644-3063707683-3167850359-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-4021329644-3063707683-3167850359-1003 - Limited - Enabled) Kajczos (S-1-5-21-4021329644-3063707683-3167850359-1001 - Administrator - Enabled) => C:\Users\Kajczos ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: ESET NOD32 Antivirus 8.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: ESET NOD32 Antivirus 8.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe After Effects CS5.5 (HKLM-x32\...\{E82097B9-A3B8-404A-9A92-AC16A8AC9576}) (Version: 10.5 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.5.1.17730 - Adobe Systems Inc.) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.4.980 - Adobe Systems Incorporated.) Adobe Flash Player 18 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 18.0.0.210 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Adobe Photoshop Lightroom 5.6 64-bit (HKLM\...\{D19E99C2-6D9D-4075-B446-B4387EAF70A5}) (Version: 5.6.0 - Adobe Systems Incorporated) Adobe Story (HKLM-x32\...\com.adobe.AdobeStory.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.0.571 - Adobe Systems Incorporated) AI Suite 3 (HKLM-x32\...\{D46DA5F0-25AD-4B77-98DA-6DD6AF39FBD9}) (Version: 1.00.79 - ASUSTeK Computer Inc.) Aktualizacje NVIDIA 2.4.1.21 (Version: 2.4.1.21 - NVIDIA Corporation) Hidden Apple Application Support (32-bit) (HKLM-x32\...\{7FE25256-B7C1-480D-B736-10A67A833AEA}) (Version: 3.2 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{B255D495-4734-4E9B-B4F5-96702FD4A7B9}) (Version: 3.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{5D61F006-168C-4B8B-B7FD-F113C10AE0E4}) (Version: 8.2.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.15.0 - Asmedia Technology) Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}) (Version: 2.0.8.0001 - Asmedia Technology) ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.025 - ASUSTek Computer Inc.) Autodesk 3ds Max 2015 (HKLM\...\Autodesk 3ds Max 2015) (Version: 17.0.630.0 - Autodesk) Autodesk 3ds Max 2015 (Version: 17.0.630.0 - Autodesk) Hidden Autodesk 3ds Max 2015 Populate Data (HKLM\...\{57E92DED-DC6C-41E5-B9E1-76D83BD2EABE}) (Version: 17.0.0.0 - Autodesk) Autodesk Application Manager (HKLM-x32\...\Autodesk Application Manager) (Version: 4.0.66.0 - Autodesk) Autodesk Material Library 2015 (HKLM-x32\...\{427F733F-4D6C-45BC-9324-EB743104C321}) (Version: 5.2.9.100 - Autodesk) Autodesk Material Library Base Resolution Image Library 2015 (HKLM-x32\...\{ABE2F70B-8D94-44E9-AA04-F0DB35063D62}) (Version: 5.2.9.100 - Autodesk) Autodesk Material Library Medium Resolution Image Library 2015 (HKLM-x32\...\{9F6466D9-6EFC-4A10-B931-C72D1A3F1763}) (Version: 5.2.9.100 - Autodesk) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.4.2.23831 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.6.2 - EA Digital Illusions CE AB) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 6.33.223.1 - Broadcom Corporation) Chrome Remote Desktop Host (HKLM-x32\...\{FD6E648E-1378-467F-AD37-2B98B379B0DD}) (Version: 44.0.2403.25 - Google Inc.) CL-Eye Driver (HKLM-x32\...\CL-Eye Driver) (Version: 5.3.0.0341 - Code Laboratories, Inc.) Corsair Link (HKLM-x32\...\{658EFB3F-8606-4576-8FEC-B0CED48F1E68}) (Version: 2.7.5339 - Corsair) Corsair Link(TM) USB Dongle (Driver Removal) (HKLM-x32\...\SIUSBXP&1B1C&1C00) (Version: - Corsair Memory, Inc.) Dell Display Manager (HKLM-x32\...\{AC50C05D-9D57-40F5-B2EF-AC402F14312B}_is1) (Version: - EnTech Taiwan) Dell UltraSharp Color Calibration Solution 1.0.1 (HKLM-x32\...\Dell UltraSharp Color Calibration Solution_is1) (Version: - X-Rite) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Dropbox (HKU\S-1-5-21-4021329644-3063707683-3167850359-1001\...\Dropbox) (Version: 3.0.3 - Dropbox, Inc.) ESET NOD32 Antivirus (HKLM\...\{4B14EC50-70A2-4973-BE68-50E546653134}) (Version: 8.0.312.4 - ESET, spol s r. o.) FileZilla Client 3.12.0.2 (HKLM-x32\...\FileZilla Client) (Version: 3.12.0.2 - Tim Kosse) foobar2000 v1.3.5 (HKLM-x32\...\foobar2000) (Version: 1.3.5 - Peter Pawlowski) GHOST (HKLM-x32\...\{AC968B0F-024A-4323-BD6B-C2A85D183F34}) (Version: 1.05.0000 - GIGABYTE) GIGABYTE OC_GURU II (x32 Version: 1.74.0000 - GIGABYTE Technology Co.,Ltd.) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.134 - Google Inc.) Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google) Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.6710.2136 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden GoPro Studio 2.5.4 (HKLM-x32\...\GoPro Studio) (Version: 2.5.4 - GoPro, Inc.) Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1204 - Intel Corporation) Intel(R) Network Connections 19.1.51.0 (HKLM\...\PROSetDX) (Version: 19.1.51.0 - Intel) iTunes (HKLM\...\{4046F74A-28F8-48C6-A5D3-2AFC472574C1}) (Version: 12.2.0.145 - Apple Inc.) Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) Malwarebytes Anti-Malware wersja 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office Excel Viewer (HKLM-x32\...\{95120000-003F-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 37.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 pl)) (Version: 37.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 36.0.1 - Mozilla) NVIDIA GeForce Experience 2.4.1.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.1.21 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 347.09 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.33.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.33.0 - NVIDIA Corporation) NVIDIA Sterownik graficzny 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.09 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 347.09 - NVIDIA Corporation) NVIDIA Wirtualny dźwięk Miracast 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 347.09 - NVIDIA Corporation) Oprogramowanie mikroukładu Intel® (x32 Version: 10.0.14 - Intel(R) Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 9.5.1.571 - Electronic Arts, Inc.) Panel sterowania NVIDIA 347.09 (Version: 347.09 - NVIDIA Corporation) Hidden PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) QuickTime 7 (HKLM-x32\...\{627FFC10-CE0A-497F-BA2B-208CAC638010}) (Version: 7.77.80.95 - Apple Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7324 - Realtek Semiconductor Corp.) Realtek USB Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.2.9200.30143 - Realtek Semiconductor Corp.) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games) SHIELD Streaming (Version: 4.1.1000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.4.1.21 - NVIDIA Corporation) Hidden Spintires (HKLM-x32\...\Spintires_is1) (Version: - ) TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.43879 - TeamViewer) The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.0.732.20 - Electronic Arts Inc.) V-Ray for 3dsmax 2015 for x64 (HKLM\...\V-Ray for 3dsmax 2015 for x64) (Version: 3.00.07 - Chaos Software Ltd) WibuKey Setup (WibuKey Remove) (HKLM\...\{00060000-0000-1004-8002-0000C06B5161}) (Version: Version 6.20 of 2013-Dec-18 (Build 1230) (Setup) - WIBU-SYSTEMS AG) WIDCOMM Bluetooth Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.9350 - Broadcom Corporation) Windows Driver Package - GoPro (WinUSB) Universal Serial Bus devices (03/07/2012 ) (HKLM\...\0B624A43DD66DBF5CF3EDFA9741A364E688062A4) (Version: 03/07/2012 - GoPro) WinRAR 5.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) X-Rite Device Services Manager (HKLM-x32\...\{50D28EEF-A439-45AC-BC51-F02ACE6F1F4A}) (Version: 2.2.61 - X-Rite) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-4021329644-3063707683-3167850359-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Kajczos\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4021329644-3063707683-3167850359-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Kajczos\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4021329644-3063707683-3167850359-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Kajczos\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4021329644-3063707683-3167850359-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Kajczos\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4021329644-3063707683-3167850359-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Kajczos\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4021329644-3063707683-3167850359-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Kajczos\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4021329644-3063707683-3167850359-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Kajczos\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4021329644-3063707683-3167850359-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Kajczos\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4021329644-3063707683-3167850359-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Kajczos\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ==================== Restore Points ========================= 14-07-2015 06:16:49 Zaplanowany punkt kontrolny ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {1B405D9D-A2AC-4F0B-A201-6ABE823CD3BF} - System32\Tasks\XRDeviceServicesSoftwareUpdate => C:\Program Files (x86)\X-Rite\Devices\Services\XRD Software Update.exe [2012-08-14] (X-Rite Inc.) Task: {2964D542-9377-40DE-8F48-8E255BBE17BA} - System32\Tasks\ASUS\Ez Update => C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe [2014-03-27] () Task: {31C83AD6-201D-455A-B8D3-EA7E7B036DE5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-15] (Google Inc.) Task: {34E0D4A4-14A2-4CD3-B30A-88346DFB43B9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-15] (Google Inc.) Task: {3C7C5B04-A325-4D54-B3A7-261C0F634BCF} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [2013-08-27] (ASUSTek Computer Inc.) Task: {3EE44A45-9431-4126-80F0-EBE2B45F5D4D} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-07-03] (Microsoft Corporation) Task: {485C1FA1-2775-4513-A591-B7F0C74B294C} - System32\Tasks\GoogleUpdateTaskMachineCore1d041e4352c5d95 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-15] (Google Inc.) Task: {48C81397-76C7-44D6-B57A-47A73877D0B2} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {56FF49E2-778B-4B2F-8035-96CDBC09FD5E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-15] (Adobe Systems Incorporated) Task: {690810F5-6B80-4D15-B401-253C56989AF6} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe Task: {6B627B2D-853F-43CA-8C16-1EE186BEB12E} - System32\Tasks\Start Corsair Link => C:\Program Files (x86)\Corsair\Corsair Link\CorsairLINK.exe [2014-08-14] () Task: {7AFFCF50-B7D6-40FD-9174-A75FEE1F5DC8} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe Task: {7B3CBD9E-BFD5-45FC-BEE1-9C4D2DBCD6DA} - System32\Tasks\AdobeAAMUpdater-1.0-HeroPtyś-Kajczos => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe Task: {90B352AC-892D-404A-8B86-3B1B59C46BE7} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr.exe [2013-07-24] (ASUSTeK Computer Inc.) Task: {9148F6AE-EFBA-4E94-A8FD-DF905BDE66EA} - System32\Tasks\ASUS\Push Notice Server Execute => C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe [2014-01-10] (ASUSTeK Computer Inc.) Task: {97204B24-C153-4329-A3C1-6EB2B6E78E8C} - System32\Tasks\ASUS\ASUS AISuiteIII => C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe [2014-04-09] (ASUSTeK Computer Inc.) Task: {ABF25676-487B-4014-B995-DD3DE882C178} - System32\Tasks\{16E4BC32-FD1A-4940-9C9D-57F9CAEFFE42} => pcalua.exe -a "C:\Program Files (x86)\Picexa\uninstall.exe" Task: {C557B9A1-0248-41B5-B2CD-8D5AF4BCF0BC} - System32\Tasks\ASUS\ASUS DIPAwayMode => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe [2014-04-24] () Task: {CAD04D77-712B-483E-BB5E-E8686EF9BA1F} - System32\Tasks\ASUS\GpuFanHelper => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\GpuFanHelper.exe [2014-04-24] (TODO: ) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d041e4352c5d95.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2014-11-15 02:19 - 2014-12-13 10:03 - 00117576 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-01-20 23:35 - 2015-01-20 23:35 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-05-15 16:26 - 2015-05-15 16:26 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2014-11-15 01:57 - 2014-01-28 05:16 - 00936728 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe 2014-11-24 23:04 - 2014-08-14 15:17 - 03104768 _____ () C:\Program Files (x86)\Corsair\Corsair Link\CorsairLINK.exe 2015-04-04 17:13 - 2014-03-27 19:33 - 01430328 _____ () C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe 2015-04-04 17:13 - 2014-04-24 14:29 - 01270552 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe 2015-04-04 17:13 - 2014-04-24 08:29 - 01360016 ____R () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe 2014-02-18 21:02 - 2014-02-18 21:02 - 00049368 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btwleapi.dll 2015-04-04 17:13 - 2014-04-11 09:53 - 01045304 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe 2015-04-04 17:13 - 2014-04-11 10:53 - 00037176 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe 2014-11-15 12:17 - 2013-02-05 06:26 - 00070144 _____ () C:\Program Files (x86)\Dell Displays\DellTray.exe 2010-02-08 15:48 - 2010-02-08 15:48 - 00192000 _____ () C:\Users\Kajczos\Documents\GIGABYTE\GHOST(8000X)\GHOSTOPEN.exe 2011-04-20 11:24 - 2011-04-20 11:24 - 00729088 _____ () C:\Users\Kajczos\Documents\GIGABYTE\GHOST(8000X)\Tilt.exe 2014-11-15 19:21 - 2014-11-26 11:35 - 00055688 _____ () C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\QtSolutions_Service-head.dll 2014-11-15 19:21 - 2014-11-26 11:35 - 00104328 _____ () C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\qjson0.dll 2014-11-15 01:57 - 2015-07-18 11:23 - 00036352 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll 2014-11-15 01:57 - 2014-01-28 05:16 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\ATKEX.dll 2014-11-24 23:04 - 2014-05-15 14:55 - 00203264 _____ () C:\Program Files (x86)\Corsair\Corsair Link\UsbRobbins.dll 2014-11-24 23:04 - 2014-05-15 14:55 - 00203776 _____ () C:\Program Files (x86)\Corsair\Corsair Link\UsbClink.dll 2015-04-04 17:12 - 2014-01-28 11:16 - 00091648 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Log4cxxWrapper.dll 2015-04-04 17:12 - 2014-01-28 11:16 - 00147456 _____ () C:\Program Files (x86)\ASUS\AI Suite III\AssistFunc.dll 2015-04-04 17:12 - 2013-10-29 11:53 - 00872960 _____ () C:\Program Files (x86)\ASUS\AI Suite III\AI Charger+\AIChargerPlus.dll 2015-04-04 17:13 - 2014-04-28 10:38 - 04056064 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\dip4.dll 2015-04-04 17:13 - 2014-04-24 14:29 - 00091648 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\Log4cxxWrapper.dll 2015-04-04 17:13 - 2014-02-25 16:53 - 01138176 _____ () C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EasyUpdt.dll 2015-04-04 17:12 - 2014-02-14 18:54 - 00827392 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Version\Version.dll 2015-04-04 17:13 - 2014-04-24 08:29 - 00053248 ____R () C:\Program Files (x86)\ASUS\VGA COM\1.00.17\Exeio.dll 2015-04-04 17:13 - 2014-04-24 08:29 - 00278528 ____R () C:\Program Files (x86)\ASUS\VGA COM\1.00.17\Vender.dll 2015-04-04 17:12 - 2014-01-28 05:16 - 00662016 ____R () C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMLib.dll 2015-04-04 17:13 - 2014-04-24 14:29 - 00010240 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\IccHelper.dll 2015-04-04 17:13 - 2014-03-27 19:32 - 05778096 _____ () C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzULIB.dll 2015-04-04 17:13 - 2014-02-24 17:49 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\ImageHelper.dll 2015-04-04 17:13 - 2014-04-24 14:29 - 00685056 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4DIGIPowerControlAction.dll 2015-04-04 17:13 - 2014-04-24 14:29 - 00859136 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4EpuAction.dll 2015-04-04 17:13 - 2014-04-24 14:29 - 00801280 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4FanAction.dll 2015-04-04 17:13 - 2014-04-24 14:29 - 00807936 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4TurboVEVOAction.dll 2015-04-04 17:13 - 2014-04-24 14:29 - 00904704 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\UsbPowerManager.dll 2015-04-04 17:13 - 2014-04-24 14:29 - 00010240 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\IccHelper.dll 2015-04-06 12:45 - 2015-03-28 05:45 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-07-09 19:32 - 2015-07-09 19:32 - 00039384 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll 2015-07-14 22:16 - 2015-07-13 23:55 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.134\libglesv2.dll 2015-07-14 22:16 - 2015-07-13 23:55 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.134\libegl.dll 2012-08-14 09:46 - 2012-08-14 09:46 - 01614712 _____ () C:\Program Files (x86)\X-Rite\Devices\rm200\GoldenEye.dll 2012-08-14 09:47 - 2012-08-14 09:47 - 02639736 _____ () C:\Program Files (x86)\X-Rite\Devices\colormunki\colormunki.dll 2015-04-04 17:13 - 2013-11-20 10:10 - 00662016 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\aaHMLib.dll 2015-04-04 17:13 - 2013-07-02 10:40 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\pngio.dll 2014-11-15 12:17 - 2013-02-05 06:26 - 07982592 _____ () C:\Program Files (x86)\Dell Displays\QtGui4.dll 2014-11-15 12:17 - 2013-02-05 06:26 - 02147328 _____ () C:\Program Files (x86)\Dell Displays\QtCore4.dll 2014-11-15 12:17 - 2013-02-05 06:03 - 00131072 _____ () C:\Program Files (x86)\Dell Displays\imageformats\qjpeg4.dll 2014-11-15 12:17 - 2013-02-05 06:03 - 00278528 _____ () C:\Program Files (x86)\Dell Displays\imageformats\qtiff4.dll 2015-07-18 11:23 - 2014-11-26 11:35 - 00104328 _____ () C:\Users\Kajczos\AppData\Local\Autodesk\.AdskAppManager\R1\qjson0.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:054203E4 ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\65564205.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\65564205.sys => ""="Driver" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-4021329644-3063707683-3167850359-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Kajczos\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: Media is not connected to internet. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\StartupFolder: => "GoPro Importer.lnk" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "QuickTime Task" HKU\S-1-5-21-4021329644-3063707683-3167850359-1001\...\StartupApproved\Run: => "Instashare" HKU\S-1-5-21-4021329644-3063707683-3167850359-1001\...\StartupApproved\Run: => "EADM" HKU\S-1-5-21-4021329644-3063707683-3167850359-1001\...\StartupApproved\Run: => "ALLUpdate" HKU\S-1-5-21-4021329644-3063707683-3167850359-1001\...\StartupApproved\Run: => "Gadwin PrintScreen (64-bit)" HKU\S-1-5-21-4021329644-3063707683-3167850359-1001\...\StartupApproved\Run: => "iCloudServices" HKU\S-1-5-21-4021329644-3063707683-3167850359-1001\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-4021329644-3063707683-3167850359-1001\...\StartupApproved\Run: => "Spotify Web Helper" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [{B3D1BCBC-6420-4B29-BF60-CBB056B727C2}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{6721CB75-9364-499A-8850-24F8A0D8E31E}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{1D167A68-091A-4F95-9E07-CC8DD628AA6E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{22C6B1AD-76FE-47B7-BF31-6A8323DE3A2A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{ED4340B6-C29F-4383-86FD-2CF249B41C6A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{00D8EB21-3A1A-4239-B5DC-1B42345E3374}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{DE0FDC62-CBBE-4D33-B159-785E5603FA37}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [{78ECA1C8-0BDC-41C4-844D-C02153FD2591}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [{0D37BF7D-B7EF-47F7-8DA4-7070CA75B497}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{B99311F5-BC8C-4347-901C-174ED2F7F758}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{139FBEDB-B4BA-40AB-8855-340531506E03}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe FirewallRules: [{AD7FBAB0-0D51-4AD8-AA92-34624040EEED}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe FirewallRules: [{6BB94C7A-8C00-4342-9AB0-3934F72DFE29}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{663EA952-5101-46A9-AD8E-AEE624DBA0EF}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{BF5ECB3F-1EEB-4383-9CE0-D819AC4F1A06}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{791C9641-1166-4FB6-81A6-8A4025248593}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [TCP Query User{27BADDA4-3AF8-4D83-A2D5-AF699A760DF7}C:\users\kajczos\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\kajczos\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{C1B44DB4-D819-4FEF-8CDC-C5B52EF13592}C:\users\kajczos\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\kajczos\appdata\local\akamai\netsession_win.exe FirewallRules: [{0EF26827-B3B0-4539-BB37-DBE798A77779}] => (Allow) C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe FirewallRules: [{A9CCB24D-9E94-41A9-BB78-32C8681805AA}] => (Allow) C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe FirewallRules: [{C6C207CA-FB72-4128-A9B3-E6A1BAF2A2E3}] => (Allow) C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64.exe FirewallRules: [{264DB802-D752-4AC7-8B8E-48DBFEF8671A}] => (Allow) C:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64.exe FirewallRules: [TCP Query User{79CE85E5-8C44-41B6-8870-1CC6AB427869}C:\program files (x86)\instashare\instashare.exe] => (Allow) C:\program files (x86)\instashare\instashare.exe FirewallRules: [UDP Query User{EB8AE83C-C537-4AA2-8844-CB68DC449C6E}C:\program files (x86)\instashare\instashare.exe] => (Allow) C:\program files (x86)\instashare\instashare.exe FirewallRules: [{87CCFADB-9837-4710-9A82-F1F6A935274D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{564FA70B-A066-4585-A29E-658DB77DD535}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{A590D744-97BD-4700-8EF0-E870516DF54F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{2630F4EF-C9A3-44A9-A230-0AC4B216FD14}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [TCP Query User{D554EE2A-98D3-4F6D-879B-495ED9194790}C:\program files\autodesk\3ds max 2015\3dsmax.exe] => (Allow) C:\program files\autodesk\3ds max 2015\3dsmax.exe FirewallRules: [UDP Query User{E5390F8B-0139-4BCE-B40E-23255C4E314C}C:\program files\autodesk\3ds max 2015\3dsmax.exe] => (Allow) C:\program files\autodesk\3ds max 2015\3dsmax.exe FirewallRules: [TCP Query User{0AF8F0A6-8D86-40C4-8B87-FB2775A72EA7}C:\program files\chaos group\v-ray\rt for 3ds max 2015 for x64\bin\vray.exe] => (Allow) C:\program files\chaos group\v-ray\rt for 3ds max 2015 for x64\bin\vray.exe FirewallRules: [UDP Query User{AEF0EF24-84CD-40A6-9836-A1E96537EA9C}C:\program files\chaos group\v-ray\rt for 3ds max 2015 for x64\bin\vray.exe] => (Allow) C:\program files\chaos group\v-ray\rt for 3ds max 2015 for x64\bin\vray.exe FirewallRules: [TCP Query User{C85AF683-3116-4D2D-9E12-25A32B61EB34}C:\program files\autodesk\3ds max 2015\3dsmax.exe] => (Allow) C:\program files\autodesk\3ds max 2015\3dsmax.exe FirewallRules: [UDP Query User{FF12CB63-3B42-449C-9CE5-9DE73986E89A}C:\program files\autodesk\3ds max 2015\3dsmax.exe] => (Allow) C:\program files\autodesk\3ds max 2015\3dsmax.exe FirewallRules: [TCP Query User{F1A8341E-58E2-41E3-B57D-17557D2F9343}C:\program files\chaos group\v-ray\rt for 3ds max 2015 for x64\bin\vray.exe] => (Allow) C:\program files\chaos group\v-ray\rt for 3ds max 2015 for x64\bin\vray.exe FirewallRules: [UDP Query User{5EF405A1-2D4A-4B2C-BA92-9BC31B9C2147}C:\program files\chaos group\v-ray\rt for 3ds max 2015 for x64\bin\vray.exe] => (Allow) C:\program files\chaos group\v-ray\rt for 3ds max 2015 for x64\bin\vray.exe FirewallRules: [{132E3CDF-AFE5-4AA7-AC8C-B46FAB32DE2F}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{3E4C1C57-4B60-41CD-96E1-8C7B7820E8FE}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{FB8577D5-E914-444A-9F27-EDEB9516E7AB}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{DF487071-860B-4A41-9E1F-A76CBF50B3A1}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{3C17834D-30B3-4070-87CB-50B232A306B9}] => (Allow) LPort=11155 FirewallRules: [TCP Query User{543E4731-BAE0-4F14-98A9-53C37F709A3D}C:\users\kajczos\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\kajczos\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{71A2F832-EA76-4DB6-A09B-617B2FAC8AB9}C:\users\kajczos\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\kajczos\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{E8F79054-69B4-44B4-B37D-F44B94C7DF8A}F:\gry\far cry 4\bin\farcry4.exe] => (Block) F:\gry\far cry 4\bin\farcry4.exe FirewallRules: [UDP Query User{6A1DBFB5-E356-47B1-989B-F2A15427AF2E}F:\gry\far cry 4\bin\farcry4.exe] => (Block) F:\gry\far cry 4\bin\farcry4.exe FirewallRules: [{5EC85D60-6DBC-48CA-9FAD-EB2EC09C4E1A}] => (Allow) F:\gry\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{F23B3E9D-D67B-4325-90A0-6E3F6CB123EC}] => (Allow) F:\gry\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{DBE448C1-17F5-4357-9CE5-F9D897E2D0FC}] => (Allow) D:\GRY\Battlefield 4\bf4_x86.exe FirewallRules: [{3FB9FBDE-2181-42D5-A9FA-33DAD0E43352}] => (Allow) D:\GRY\Battlefield 4\bf4_x86.exe FirewallRules: [{0857161C-386F-4880-B6AF-A5B1DF1374BB}] => (Allow) D:\GRY\Battlefield 4\bf4.exe FirewallRules: [{BC12CE15-D6DE-4ACD-8EFC-0304D1022F23}] => (Allow) D:\GRY\Battlefield 4\bf4.exe FirewallRules: [{E5AF6FFE-AE1F-445C-9D69-FD573A1D0E1A}] => (Allow) C:\Users\Kajczos\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{011A02DB-ABC3-4EA5-992E-F939AAA4DEA3}] => (Allow) C:\Users\Kajczos\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [TCP Query User{B7549CBE-C714-46AE-9C72-BEA871C88E7B}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [UDP Query User{A00A2DE5-86D7-42C5-AE66-4461D1D0FC29}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [{3E9B6DA5-6E0E-4AEC-B498-D2F9E911AFCE}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{1DCF9435-FB23-4069-8603-041E9B28D7EB}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{E0D5C3A5-4124-4FDF-834F-3BD9BEA456F2}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe FirewallRules: [{FEFEF7B8-A35D-4B0E-B8B7-D9B8762D8CA5}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe FirewallRules: [{E5941695-D675-4889-9EA3-95A36FE42879}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{76AF015E-5258-4444-8434-DD9C0CBBA5B6}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{A2EA3B32-55EB-4976-BA16-7562171FDBAF}C:\program files (x86)\asus\ai suite iii\aisuite3.exe] => (Allow) C:\program files (x86)\asus\ai suite iii\aisuite3.exe FirewallRules: [UDP Query User{FA30A85B-B963-4BD3-A932-6BE7506EB943}C:\program files (x86)\asus\ai suite iii\aisuite3.exe] => (Allow) C:\program files (x86)\asus\ai suite iii\aisuite3.exe FirewallRules: [{AF98EFBE-0693-4E1D-8AF3-761C2636CF17}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe FirewallRules: [{A1D1BD31-852F-4DD8-9ABF-4E2D3E08AC20}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe FirewallRules: [{F1DD6FC8-58A3-40F5-B583-67BC7BA51548}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe FirewallRules: [{8383FE63-4EA8-4572-B975-207DFD311BEB}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe FirewallRules: [TCP Query User{58E12E12-BCAA-4DC8-A878-0E5FECD76F21}F:\grand theft auto v\gta5.exe] => (Allow) F:\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{0BCB7820-751F-410C-B2F5-A46D5113925E}F:\grand theft auto v\gta5.exe] => (Allow) F:\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{99EB2A94-695A-497C-B4E7-7FE5392A0B29}F:\grand theft auto v\gta5.exe] => (Block) F:\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{57241EEC-34B4-465E-BE9E-FB3CEF174C15}F:\grand theft auto v\gta5.exe] => (Block) F:\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{D3268220-92B2-466B-88E9-F9ACDFD227A2}C:\users\kajczos\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kajczos\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{3E864A01-D323-469C-8F46-437D92A81418}C:\users\kajczos\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\kajczos\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{FFDEBA99-B516-46B2-B50E-7AD5125E89C4}C:\users\kajczos\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\kajczos\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{05D99712-5486-457D-9597-5D100171B0DB}C:\users\kajczos\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\kajczos\appdata\roaming\spotify\spotify.exe FirewallRules: [{73390588-336A-4FCF-AD37-33E6DEBB2B7C}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\44.0.2403.25\remoting_host.exe FirewallRules: [{46F31D7B-A4F6-4112-A5C5-F5283BCBCC90}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{3B105CE9-4344-4896-930E-C9028DE06A97}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{CE427552-BF35-4087-8909-64D161F6CF9B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{A156BC01-7149-4753-AC08-EBC04A55B8A8}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{8B7C2AC7-169A-476E-BD8F-BCB7918B4D6C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{5D8A11A5-D85D-4382-9E13-9798FD2ADD06}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{8CB6C2DB-CA74-4341-938E-047236826CCB}] => (Allow) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe FirewallRules: [{5F9722CD-DC99-45E6-88EC-BF8B2E83B7AE}] => (Allow) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/18/2015 11:23:29 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: DipAwayMode.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.3.9600.17415, sygnatura czasowa: 0x54504ade Kod wyjątku: 0x40010006 Przesunięcie błędu: 0x00014598 Identyfikator procesu powodującego błąd: 0x7bc Godzina uruchomienia aplikacji powodującej błąd: 0xDipAwayMode.exe0 Ścieżka aplikacji powodującej błąd: DipAwayMode.exe1 Ścieżka modułu powodującego błąd: DipAwayMode.exe2 Identyfikator raportu: DipAwayMode.exe3 Pełna nazwa pakietu powodującego błąd: DipAwayMode.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: DipAwayMode.exe5 Error: (07/18/2015 11:19:48 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: CorsairLINK.exe, wersja: 2.7.5339.23925, sygnatura czasowa: 0x53ed276a Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.3.9600.17415, sygnatura czasowa: 0x54504ade Kod wyjątku: 0xe0434352 Przesunięcie błędu: 0x00014598 Identyfikator procesu powodującego błąd: 0x1ce8 Godzina uruchomienia aplikacji powodującej błąd: 0xCorsairLINK.exe0 Ścieżka aplikacji powodującej błąd: CorsairLINK.exe1 Ścieżka modułu powodującego błąd: CorsairLINK.exe2 Identyfikator raportu: CorsairLINK.exe3 Pełna nazwa pakietu powodującego błąd: CorsairLINK.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: CorsairLINK.exe5 Error: (07/18/2015 11:19:48 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Aplikacja: CorsairLINK.exe Wersja architektury: v4.0.30319 Opis: proces został przerwany z powodu nieobsłużonego wyjątku. Informacje o wyjątku: System.Xml.XmlException Stos: w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.DoApplicationModel() w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.Run(System.String[]) w Sierra2.Program.Main(System.String[]) Error: (07/18/2015 11:19:48 AM) (Source: Corsair Link) (EventID: 0) (User: ) Description: System.Xml.XmlException: Nieoczekiwany koniec pliku. w System.Xml.EncodingStreamWrapper.ReadBOMEncoding(Boolean notOutOfBand) w System.Xml.EncodingStreamWrapper..ctor(Stream stream, Encoding encoding) w System.Xml.XmlUTF8TextReader.SetInput(Stream stream, Encoding encoding, XmlDictionaryReaderQuotas quotas, OnXmlDictionaryReaderClose onClose) w System.Runtime.Serialization.XmlObjectSerializer.ReadObject(Stream stream) w Sierra2.Shared.UI.Profiles.DeserializeProfile() w Sierra2.Shared.UI.Profiles.<>c__DisplayClass9.b__7() w Sierra2.Shared.UI.EventAggregator.SuppressEvents(Action action) w Sierra2.Shared.UI.Profiles.Load() w Sierra2.Shared.UI.SharedUIMain.Init() w Sierra2.App.<>c__DisplayClass1.b__0() w Sierra2.Shared.UI.EventAggregator.SuppressEvents(Action action) w Sierra2.App.OnStartup(StartupEventArgs e) w System.Windows.Application.<.ctor>b__1(Object unused) w System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs) w MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler) w System.Windows.Threading.DispatcherOperation.InvokeImpl() w System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(Object state) w System.Threading.ExecutionContext.RunInternal(ExecutionContext executionContext, ContextCallback callback, Object state, Boolean preserveSyncCtx) w System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state, Boolean preserveSyncCtx) w System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state) w System.Windows.Threading.DispatcherOperation.Invoke() w System.Windows.Threading.Dispatcher.ProcessQueue() w System.Windows.Threading.Dispatcher.WndProcHook(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam, Boolean& handled) w MS.Win32.HwndWrapper.WndProc(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam, Boolean& handled) w MS.Win32.HwndSubclass.DispatcherCallbackOperation(Object o) w System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs) w MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler) w System.Windows.Threading.Dispatcher.LegacyInvokeImpl(DispatcherPriority priority, TimeSpan timeout, Delegate method, Object args, Int32 numArgs) w MS.Win32.HwndSubclass.SubclassWndProc(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam) w MS.Win32.UnsafeNativeMethods.DispatchMessage(MSG& msg) w System.Windows.Threading.Dispatcher.PushFrameImpl(DispatcherFrame frame) w System.Windows.Threading.Dispatcher.PushFrame(DispatcherFrame frame) w System.Windows.Threading.Dispatcher.Run() w System.Windows.Application.RunDispatcher(Object ignore) w System.Windows.Application.RunInternal(Window window) w System.Windows.Application.Run(Window window) w Sierra2.WindowsFormsApp.OnStartup(StartupEventArgs e) w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.DoApplicationModel() w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.Run(String[] commandLine) w Sierra2.Program.Main(String[] args) Error: (07/18/2015 11:19:03 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: DipAwayMode.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.3.9600.17415, sygnatura czasowa: 0x54504ade Kod wyjątku: 0x40010006 Przesunięcie błędu: 0x00014598 Identyfikator procesu powodującego błąd: 0x7a4 Godzina uruchomienia aplikacji powodującej błąd: 0xDipAwayMode.exe0 Ścieżka aplikacji powodującej błąd: DipAwayMode.exe1 Ścieżka modułu powodującego błąd: DipAwayMode.exe2 Identyfikator raportu: DipAwayMode.exe3 Pełna nazwa pakietu powodującego błąd: DipAwayMode.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: DipAwayMode.exe5 Error: (07/17/2015 08:51:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: CorsairLINK.exe, wersja: 2.7.5339.23925, sygnatura czasowa: 0x53ed276a Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.3.9600.17415, sygnatura czasowa: 0x54504ade Kod wyjątku: 0xe0434352 Przesunięcie błędu: 0x00014598 Identyfikator procesu powodującego błąd: 0x1250 Godzina uruchomienia aplikacji powodującej błąd: 0xCorsairLINK.exe0 Ścieżka aplikacji powodującej błąd: CorsairLINK.exe1 Ścieżka modułu powodującego błąd: CorsairLINK.exe2 Identyfikator raportu: CorsairLINK.exe3 Pełna nazwa pakietu powodującego błąd: CorsairLINK.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: CorsairLINK.exe5 Error: (07/17/2015 08:51:16 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Aplikacja: CorsairLINK.exe Wersja architektury: v4.0.30319 Opis: proces został przerwany z powodu nieobsłużonego wyjątku. Informacje o wyjątku: System.Xml.XmlException Stos: w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.DoApplicationModel() w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.Run(System.String[]) w Sierra2.Program.Main(System.String[]) Error: (07/17/2015 08:51:16 PM) (Source: Corsair Link) (EventID: 0) (User: ) Description: System.Xml.XmlException: Nieoczekiwany koniec pliku. w System.Xml.EncodingStreamWrapper.ReadBOMEncoding(Boolean notOutOfBand) w System.Xml.EncodingStreamWrapper..ctor(Stream stream, Encoding encoding) w System.Xml.XmlUTF8TextReader.SetInput(Stream stream, Encoding encoding, XmlDictionaryReaderQuotas quotas, OnXmlDictionaryReaderClose onClose) w System.Runtime.Serialization.XmlObjectSerializer.ReadObject(Stream stream) w Sierra2.Shared.UI.Profiles.DeserializeProfile() w Sierra2.Shared.UI.Profiles.<>c__DisplayClass9.b__7() w Sierra2.Shared.UI.EventAggregator.SuppressEvents(Action action) w Sierra2.Shared.UI.Profiles.Load() w Sierra2.Shared.UI.SharedUIMain.Init() w Sierra2.App.<>c__DisplayClass1.b__0() w Sierra2.Shared.UI.EventAggregator.SuppressEvents(Action action) w Sierra2.App.OnStartup(StartupEventArgs e) w System.Windows.Application.<.ctor>b__1(Object unused) w System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs) w MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler) w System.Windows.Threading.DispatcherOperation.InvokeImpl() w System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(Object state) w System.Threading.ExecutionContext.RunInternal(ExecutionContext executionContext, ContextCallback callback, Object state, Boolean preserveSyncCtx) w System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state, Boolean preserveSyncCtx) w System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state) w System.Windows.Threading.DispatcherOperation.Invoke() w System.Windows.Threading.Dispatcher.ProcessQueue() w System.Windows.Threading.Dispatcher.WndProcHook(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam, Boolean& handled) w MS.Win32.HwndWrapper.WndProc(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam, Boolean& handled) w MS.Win32.HwndSubclass.DispatcherCallbackOperation(Object o) w System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs) w MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler) w System.Windows.Threading.Dispatcher.LegacyInvokeImpl(DispatcherPriority priority, TimeSpan timeout, Delegate method, Object args, Int32 numArgs) w MS.Win32.HwndSubclass.SubclassWndProc(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam) w MS.Win32.UnsafeNativeMethods.DispatchMessage(MSG& msg) w System.Windows.Threading.Dispatcher.PushFrameImpl(DispatcherFrame frame) w System.Windows.Threading.Dispatcher.PushFrame(DispatcherFrame frame) w System.Windows.Threading.Dispatcher.Run() w System.Windows.Application.RunDispatcher(Object ignore) w System.Windows.Application.RunInternal(Window window) w System.Windows.Application.Run(Window window) w Sierra2.WindowsFormsApp.OnStartup(StartupEventArgs e) w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.DoApplicationModel() w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.Run(String[] commandLine) w Sierra2.Program.Main(String[] args) Error: (07/17/2015 08:50:42 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: DipAwayMode.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.3.9600.17415, sygnatura czasowa: 0x54504ade Kod wyjątku: 0x40010006 Przesunięcie błędu: 0x00014598 Identyfikator procesu powodującego błąd: 0x7b8 Godzina uruchomienia aplikacji powodującej błąd: 0xDipAwayMode.exe0 Ścieżka aplikacji powodującej błąd: DipAwayMode.exe1 Ścieżka modułu powodującego błąd: DipAwayMode.exe2 Identyfikator raportu: DipAwayMode.exe3 Pełna nazwa pakietu powodującego błąd: DipAwayMode.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: DipAwayMode.exe5 Error: (07/17/2015 08:46:56 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: CorsairLINK.exe, wersja: 2.7.5339.23925, sygnatura czasowa: 0x53ed276a Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.3.9600.17415, sygnatura czasowa: 0x54504ade Kod wyjątku: 0xe0434352 Przesunięcie błędu: 0x00014598 Identyfikator procesu powodującego błąd: 0x9ec Godzina uruchomienia aplikacji powodującej błąd: 0xCorsairLINK.exe0 Ścieżka aplikacji powodującej błąd: CorsairLINK.exe1 Ścieżka modułu powodującego błąd: CorsairLINK.exe2 Identyfikator raportu: CorsairLINK.exe3 Pełna nazwa pakietu powodującego błąd: CorsairLINK.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: CorsairLINK.exe5 System errors: ============= Error: (07/18/2015 11:23:23 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa Windows Defender z powodu następującego błędu: %%577 Error: (07/18/2015 11:23:16 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 11:18:50 na ‎2015-‎07-‎18 było nieoczekiwane. Error: (07/18/2015 11:18:57 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa Windows Defender z powodu następującego błędu: %%577 Error: (07/18/2015 11:18:50 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 20:50:28 na ‎2015-‎07-‎17 było nieoczekiwane. Error: (07/17/2015 08:50:35 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa Windows Defender z powodu następującego błędu: %%577 Error: (07/17/2015 08:50:28 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 20:46:07 na ‎2015-‎07-‎17 było nieoczekiwane. Error: (07/17/2015 08:46:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa Windows Defender z powodu następującego błędu: %%577 Error: (07/17/2015 08:46:07 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 20:41:44 na ‎2015-‎07-‎17 było nieoczekiwane. Error: (07/17/2015 08:41:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa Windows Defender z powodu następującego błędu: %%577 Error: (07/17/2015 08:41:44 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 18:43:53 na ‎2015-‎07-‎17 było nieoczekiwane. Microsoft Office: ========================= Error: (07/18/2015 11:23:29 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: DipAwayMode.exe0.0.0.000000000KERNELBASE.dll6.3.9600.1741554504ade40010006000145987bc01d0c13b615387deC:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exeC:\Windows\SYSTEM32\KERNELBASE.dlla677a563-2d2e-11e5-82f5-10c37b6f0aa4 Error: (07/18/2015 11:19:48 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: CorsairLINK.exe2.7.5339.2392553ed276aKERNELBASE.dll6.3.9600.1741554504adee0434352000145981ce801d0c13addbda6dfC:\Program Files (x86)\Corsair\Corsair Link\Frontend\CorsairLINK.exeC:\Windows\SYSTEM32\KERNELBASE.dll22b666f1-2d2e-11e5-82f4-54271ebde65b Error: (07/18/2015 11:19:48 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Aplikacja: CorsairLINK.exe Wersja architektury: v4.0.30319 Opis: proces został przerwany z powodu nieobsłużonego wyjątku. Informacje o wyjątku: System.Xml.XmlException Stos: w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.DoApplicationModel() w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.Run(System.String[]) w Sierra2.Program.Main(System.String[]) Error: (07/18/2015 11:19:48 AM) (Source: Corsair Link) (EventID: 0) (User: ) Description: System.Xml.XmlException: Nieoczekiwany koniec pliku. w System.Xml.EncodingStreamWrapper.ReadBOMEncoding(Boolean notOutOfBand) w System.Xml.EncodingStreamWrapper..ctor(Stream stream, Encoding encoding) w System.Xml.XmlUTF8TextReader.SetInput(Stream stream, Encoding encoding, XmlDictionaryReaderQuotas quotas, OnXmlDictionaryReaderClose onClose) w System.Runtime.Serialization.XmlObjectSerializer.ReadObject(Stream stream) w Sierra2.Shared.UI.Profiles.DeserializeProfile() w Sierra2.Shared.UI.Profiles.<>c__DisplayClass9.b__7() w Sierra2.Shared.UI.EventAggregator.SuppressEvents(Action action) w Sierra2.Shared.UI.Profiles.Load() w Sierra2.Shared.UI.SharedUIMain.Init() w Sierra2.App.<>c__DisplayClass1.b__0() w Sierra2.Shared.UI.EventAggregator.SuppressEvents(Action action) w Sierra2.App.OnStartup(StartupEventArgs e) w System.Windows.Application.<.ctor>b__1(Object unused) w System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs) w MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler) w System.Windows.Threading.DispatcherOperation.InvokeImpl() w System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(Object state) w System.Threading.ExecutionContext.RunInternal(ExecutionContext executionContext, ContextCallback callback, Object state, Boolean preserveSyncCtx) w System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state, Boolean preserveSyncCtx) w System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state) w System.Windows.Threading.DispatcherOperation.Invoke() w System.Windows.Threading.Dispatcher.ProcessQueue() w System.Windows.Threading.Dispatcher.WndProcHook(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam, Boolean& handled) w MS.Win32.HwndWrapper.WndProc(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam, Boolean& handled) w MS.Win32.HwndSubclass.DispatcherCallbackOperation(Object o) w System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs) w MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler) w System.Windows.Threading.Dispatcher.LegacyInvokeImpl(DispatcherPriority priority, TimeSpan timeout, Delegate method, Object args, Int32 numArgs) w MS.Win32.HwndSubclass.SubclassWndProc(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam) w MS.Win32.UnsafeNativeMethods.DispatchMessage(MSG& msg) w System.Windows.Threading.Dispatcher.PushFrameImpl(DispatcherFrame frame) w System.Windows.Threading.Dispatcher.PushFrame(DispatcherFrame frame) w System.Windows.Threading.Dispatcher.Run() w System.Windows.Application.RunDispatcher(Object ignore) w System.Windows.Application.RunInternal(Window window) w System.Windows.Application.Run(Window window) w Sierra2.WindowsFormsApp.OnStartup(StartupEventArgs e) w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.DoApplicationModel() w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.Run(String[] commandLine) w Sierra2.Program.Main(String[] args) Error: (07/18/2015 11:19:03 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: DipAwayMode.exe0.0.0.000000000KERNELBASE.dll6.3.9600.1741554504ade40010006000145987a401d0c13ac356963bC:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exeC:\Windows\SYSTEM32\KERNELBASE.dll07f2a38b-2d2e-11e5-82f4-54271ebde65b Error: (07/17/2015 08:51:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: CorsairLINK.exe2.7.5339.2392553ed276aKERNELBASE.dll6.3.9600.1741554504adee043435200014598125001d0c0c18b9a93f5C:\Program Files (x86)\Corsair\Corsair Link\Frontend\CorsairLINK.exeC:\Windows\SYSTEM32\KERNELBASE.dllcd5dbb8b-2cb4-11e5-82f3-54271ebde65b Error: (07/17/2015 08:51:16 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Aplikacja: CorsairLINK.exe Wersja architektury: v4.0.30319 Opis: proces został przerwany z powodu nieobsłużonego wyjątku. Informacje o wyjątku: System.Xml.XmlException Stos: w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.DoApplicationModel() w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.Run(System.String[]) w Sierra2.Program.Main(System.String[]) Error: (07/17/2015 08:51:16 PM) (Source: Corsair Link) (EventID: 0) (User: ) Description: System.Xml.XmlException: Nieoczekiwany koniec pliku. w System.Xml.EncodingStreamWrapper.ReadBOMEncoding(Boolean notOutOfBand) w System.Xml.EncodingStreamWrapper..ctor(Stream stream, Encoding encoding) w System.Xml.XmlUTF8TextReader.SetInput(Stream stream, Encoding encoding, XmlDictionaryReaderQuotas quotas, OnXmlDictionaryReaderClose onClose) w System.Runtime.Serialization.XmlObjectSerializer.ReadObject(Stream stream) w Sierra2.Shared.UI.Profiles.DeserializeProfile() w Sierra2.Shared.UI.Profiles.<>c__DisplayClass9.b__7() w Sierra2.Shared.UI.EventAggregator.SuppressEvents(Action action) w Sierra2.Shared.UI.Profiles.Load() w Sierra2.Shared.UI.SharedUIMain.Init() w Sierra2.App.<>c__DisplayClass1.b__0() w Sierra2.Shared.UI.EventAggregator.SuppressEvents(Action action) w Sierra2.App.OnStartup(StartupEventArgs e) w System.Windows.Application.<.ctor>b__1(Object unused) w System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs) w MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler) w System.Windows.Threading.DispatcherOperation.InvokeImpl() w System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(Object state) w System.Threading.ExecutionContext.RunInternal(ExecutionContext executionContext, ContextCallback callback, Object state, Boolean preserveSyncCtx) w System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state, Boolean preserveSyncCtx) w System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state) w System.Windows.Threading.DispatcherOperation.Invoke() w System.Windows.Threading.Dispatcher.ProcessQueue() w System.Windows.Threading.Dispatcher.WndProcHook(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam, Boolean& handled) w MS.Win32.HwndWrapper.WndProc(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam, Boolean& handled) w MS.Win32.HwndSubclass.DispatcherCallbackOperation(Object o) w System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs) w MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler) w System.Windows.Threading.Dispatcher.LegacyInvokeImpl(DispatcherPriority priority, TimeSpan timeout, Delegate method, Object args, Int32 numArgs) w MS.Win32.HwndSubclass.SubclassWndProc(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam) w MS.Win32.UnsafeNativeMethods.DispatchMessage(MSG& msg) w System.Windows.Threading.Dispatcher.PushFrameImpl(DispatcherFrame frame) w System.Windows.Threading.Dispatcher.PushFrame(DispatcherFrame frame) w System.Windows.Threading.Dispatcher.Run() w System.Windows.Application.RunDispatcher(Object ignore) w System.Windows.Application.RunInternal(Window window) w System.Windows.Application.Run(Window window) w Sierra2.WindowsFormsApp.OnStartup(StartupEventArgs e) w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.DoApplicationModel() w Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.Run(String[] commandLine) w Sierra2.Program.Main(String[] args) Error: (07/17/2015 08:50:42 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: DipAwayMode.exe0.0.0.000000000KERNELBASE.dll6.3.9600.1741554504ade40010006000145987b801d0c0c173ddf15cC:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exeC:\Windows\SYSTEM32\KERNELBASE.dllb8ff307a-2cb4-11e5-82f3-54271ebde65b Error: (07/17/2015 08:46:56 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: CorsairLINK.exe2.7.5339.2392553ed276aKERNELBASE.dll6.3.9600.1741554504adee0434352000145989ec01d0c0c0f0270dfdC:\Program Files (x86)\Corsair\Corsair Link\Frontend\CorsairLINK.exeC:\Windows\SYSTEM32\KERNELBASE.dll323519d2-2cb4-11e5-82f2-54271ebde65b CodeIntegrity Errors: =================================== Date: 2015-07-18 11:23:23.436 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-18 11:18:57.984 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-17 20:50:35.573 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-17 20:46:14.092 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-17 20:41:51.761 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-17 18:44:00.435 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-17 08:26:54.233 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-17 08:19:21.370 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-13 21:59:44.748 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-13 21:53:50.374 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-4790K CPU @ 4.00GHz Percentage of memory in use: 11% Total physical RAM: 16325.55 MB Available physical RAM: 14459.98 MB Total Virtual: 32709.55 MB Available Virtual: 30291.94 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:232.54 GB) (Free:50.44 GB) NTFS Drive d: () (Fixed) (Total:200 GB) (Free:63.8 GB) NTFS Drive e: () (Fixed) (Total:200 GB) (Free:76.06 GB) NTFS Drive f: () (Fixed) (Total:531.51 GB) (Free:276.64 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 81F4AFC1) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 81F4AF3F) Partition 1: (Not Active) - (Size=200 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=200 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=531.5 GB) - (Type=07 NTFS) ==================== End of log ============================