Additional scan result of Farbar Recovery Scan Tool (x64) Version:20-07-2015 Ran by Marcin at 2015-07-21 10:10:54 Running from C:\Users\Marcin\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-532919332-968226284-4016100017-500 - Administrator - Disabled) Gość (S-1-5-21-532919332-968226284-4016100017-501 - Limited - Disabled) Marcin (S-1-5-21-532919332-968226284-4016100017-1001 - Administrator - Enabled) => C:\Users\Marcin ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKLM-x32\...\uTorrent) (Version: 2.2.1 - ) 7-Zip 15.04 alpha x64 (HKLM\...\7-Zip) (Version: - ) 7-Zip 9.38 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0938-000001000000}) (Version: 9.38.00.0 - Igor Pavlov) Adobe Photoshop CS2 (HKLM-x32\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0415-1E257A25E34D}) (Version: 9.0 - Nazwa firmy.) AGEIA PhysX v7.11.13 (HKLM-x32\...\{95FC26FB-19FD-4A96-BBB1-B1062E8648F5}) (Version: 7.11.13 - AGEIA Technologies, Inc.) Airline Tycoon (HKLM-x32\...\Airline Tycoon) (Version: - ) Airplane Mode Hid Installer (HKLM-x32\...\InstallShield_{5E5B067F-52A4-447E-A3F1-D6DD10565E73}) (Version: 2.0.0.6 - ) Airplane Mode Hid Installer (x32 Version: 2.0.0.6 - ) Hidden Aktualizacje NVIDIA 2.5.11.45 (Version: 2.5.11.45 - NVIDIA Corporation) Hidden Asterix and Obelix XXL2 (HKLM-x32\...\InstallShield_{A5630FAF-8EFC-42E9-868E-EB6B23F8EB64}) (Version: 1.00.0000 - Etranges Libellues) Asterix and Obelix XXL2 (x32 Version: 1.00.0000 - Etranges Libellues) Hidden Audacity 2.1.0 (HKLM-x32\...\Audacity_is1) (Version: 2.1.0 - Audacity Team) Ballance (HKLM-x32\...\{42E0783D-3BA4-454B-B58A-BF26E49EB7DE}) (Version: - ) Beach Volleyball (HKLM-x32\...\{2225F5C5-E738-4132-B8AB-428046BE7534}) (Version: - ) BlindWrite 7 (HKLM-x32\...\{C0775A40-9CBC-430A-B055-6367E3DFEB13}_is1) (Version: 7.0.0.0 - VSO Software) BlindWrite suite (HKLM-x32\...\BlindWrite Suite_is1) (Version: 4.5.7 - VSO Software) Borderlands (HKLM-x32\...\Steam App 8980) (Version: - Gearbox Software) CDCheck (HKLM-x32\...\CDCheck) (Version: - ) CDisplayEx 1.10.29 (HKLM\...\CDisplayEx_is1) (Version: - Progdigy Software S.A.R.L.) CloneCD (HKLM-x32\...\CloneCD) (Version: - SlySoft) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) Doom 3 BFG Edition (HKLM-x32\...\Doom 3 BFG Edition_is1) (Version: - ) DRIV3R (HKLM-x32\...\{01DBF423-E27B-45DA-B7F3-F9D4DB39B1C9}) (Version: 1.00.000 - ) Dropbox (HKU\S-1-5-21-532919332-968226284-4016100017-1001\...\Dropbox) (Version: 3.6.8 - Dropbox, Inc.) Duke Nukem 3D: Megaton Edition (HKLM-x32\...\Steam App 225140) (Version: - 3D Realms) DVD Decrypter (Remove Only) (HKLM-x32\...\DVD Decrypter) (Version: - ) EditPlus 3 (HKLM-x32\...\EditPlus 3) (Version: - ES-Computing) ETDWare PS/2-X64 11.10.16.3_WHQL (HKLM\...\Elantech) (Version: 11.10.16.3 - ELAN Microelectronic Corp.) Exact Audio Copy 1.0beta6 (HKLM-x32\...\Exact Audio Copy) (Version: 1.0beta6 - Andre Wiethoff) FAKEFACTORY Cinematic Mod 2013 (HKLM-x32\...\FAKEFACTORY CM2013beta 1) (Version: beta 1 - FAKEFACTORY) Fallout 3 (HKLM-x32\...\{974C4B12-4D02-4879-85E0-61C95CC63E9E}) (Version: 1.7.0.3 - Bethesda Softworks) FEZ (HKLM-x32\...\Steam App 224760) (Version: - Polytron Corporation) FFmpeg (Windows) for Audacity wersja 2.2.2 (HKLM-x32\...\{9C7E31E3-017F-434C-AC40-24431A354A1E}_is1) (Version: 2.2.2 - ) FlashFXP 5 (HKLM-x32\...\FlashFXP 5) (Version: 5.1.0.3836 - OpenSight Software LLC) Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) From Dusk Till Dawn (HKLM-x32\...\From Dusk Till Dawn) (Version: - ) GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.134 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden Grand Theft Auto V (HKLM-x32\...\R3JhbmRUaGVmdEF1dG9W_is1) (Version: 1 - ) Half-Life 2 (HKLM-x32\...\Steam App 220) (Version: - Valve) Half-Life 2: Episode One (HKLM-x32\...\Steam App 380) (Version: - Valve) Half-Life 2: Episode Two (HKLM-x32\...\Steam App 420) (Version: - Valve) HD Tune Pro 5.50 (HKLM-x32\...\HD Tune Pro_is1) (Version: - EFD Software) Hotkey 8.0153 (HKLM-x32\...\InstallShield_{164714B6-46BC-4649-9A30-A6ED32F03B5A}) (Version: 8.0153 - NoteBook) Hotkey 8.0153 (x32 Version: 8.0153 - NoteBook) Hidden Hotline Miami 2 - Wrong Number (HKLM-x32\...\1424773427_is1) (Version: 2.0.0.1 - GOG.com) iNFekt NFO Viewer (HKLM\...\{B1AC8E6A-6C47-4B6D-A853-B4BF5C83421C}_is1) (Version: 0.9.5 - syndicode) I-Ninja (TM) (HKLM-x32\...\{66587A67-F5B8-4014-AD0F-4CEAE8374A5D}) (Version: 1.00.000 - ) Insyde Airplane Mode HID Mini-Driver (HKLM\...\AirplaneModeHid) (Version: 1.3.0.0 - Insyde Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4156 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 17.0.1423.2) (HKLM\...\{302600C1-6BDF-4FD1-1405-148929CC1385}) (Version: 17.0.1405.0464 - Intel Corporation) Intel(R) Wireless Bluetooth(R) Audio (HKLM-x32\...\{22240AF8-0C73-4634-AA1C-BB41AF362FB7}) (Version: 17.0.1408.04 - Intel Corporation) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan) IsoBuster 3.6 (HKLM-x32\...\IsoBuster_is1) (Version: 3.6 - Smart Projects) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) LAV Filters 0.64 (HKLM-x32\...\lavfilters_is1) (Version: 0.64 - Hendrik Leppkes) MailShare (HKLM\...\{5846E720-C188-478F-B501-45EA1ACC44D1}_is1) (Version: 2.1.5 - MailShare.pl) Marble Blast Gold (HKLM-x32\...\Marble Blast Gold) (Version: - ) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Mobile Partner (HKLM-x32\...\Mobile Partner) (Version: 16.001.06.01.503 - Huawei Technologies Co.,Ltd) MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com) Mp3tag v2.69 (HKLM-x32\...\Mp3tag) (Version: v2.69 - Florian Heidenreich) MPC-HC 1.7.8 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.8 - MPC-HC Team) MPC-HC 1.7.8.162 (0c83d4e) Nightly (HKLM-x32\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.7.8.162 - MPC-HC Team) Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Noise Reduction Plug-In 2.0 (HKLM-x32\...\{847C6940-D852-11E2-81D2-F04DA23A5C58}) (Version: 2.0.596 - Sony) NVIDIA GeForce Experience 2.5.11.45 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.11.45 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik graficzny 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.30 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Oprogramowanie Intel® PROSet/Wireless (HKLM-x32\...\{85b9d34f-7397-4e39-8600-07942ef6ca04}) (Version: 17.0.5 - Intel Corporation) Opti Drive Control 1.70 (HKLM-x32\...\{80157B54-DB3E-4EE9-8AD8-63A905765FF4}_is1) (Version: - Erik Deppe) Oracle VM VirtualBox 4.3.26 (HKLM\...\{5771F59A-BFC9-4FAF-A883-7642EF4BA3C3}) (Version: 4.3.26 - Oracle Corporation) Pakiet sterowników systemu Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass (08/28/2014 11.0.0000.00000) (HKLM\...\092555911492C6959D2596D612F52DCA71881CA2) (Version: 08/28/2014 11.0.0000.00000 - Google, Inc.) Panel sterowania NVIDIA 353.30 (Version: 353.30 - NVIDIA Corporation) Hidden Platform (x32 Version: 1.42 - VIA Technologies, Inc.) Hidden Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.27040 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.20.815.2013 - Realtek) Rock Scrobbler wersja 0.14 (HKLM-x32\...\{B58F468D-5033-480F-8210-2ECD28998338}_is1) (Version: 0.14 - Toastware) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games) Sacred 2 (HKLM-x32\...\{1023383E-D9F6-478C-A965-23A4657B3C9A}) (Version: 2.0.2.0 - Deep Silver) Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft) Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden ShareX 10.0.0 (HKLM\...\82E6AC09-0FEF-4390-AD9F-0DD3F5561EFC_is1) (Version: 10.0.0 - ShareX Developers) SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.11.45 - NVIDIA Corporation) Hidden Shovel Knight (HKLM-x32\...\Shovel Knight_is1) (Version: - ) Skype™ 7.6 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.6.105 - Skype Technologies S.A.) Sound Forge Pro 11.0 (HKLM-x32\...\{A376BDE2-EE3D-11E2-AA13-F04DA23A5C58}) (Version: 11.0.234 - Sony) Source SDK (HKLM-x32\...\Steam App 211) (Version: - Valve) Source SDK Base 2007 (HKLM-x32\...\Steam App 218) (Version: - Valve) Spolszczenie do Life is Strange (HKLM-x32\...\Spolszczenie do Life is Strange) (Version: 1.0 - GrajPoPolsku) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Subtitle Edit 3.4.6 (HKLM-x32\...\SubtitleEdit_is1) (Version: 3.4.6.544 - Nikse) Super Meat Boy (HKLM-x32\...\Steam App 40800) (Version: - Team Meat) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) The Punisher (HKLM-x32\...\{329BF75E-4876-4687-9CAD-5AE7DE56EA22}) (Version: 1.0 - THQ) The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.7.0 - GOG.com) Tony Hawk's Pro Skater 3® (HKLM-x32\...\Tony Hawk's Pro Skater 3®) (Version: 1.0 - Activision Publishing, Inc.) Tony Hawk's Underground 2 (HKLM-x32\...\InstallShield_{EF1394D4-9FB6-4F1F-9A09-20FF3033AE14}) (Version: 1.00.0000 - Activision) Tony Hawk's Underground 2 (x32 Version: 1.00.0000 - Activision) Hidden TrackMania 2 (HKLM-x32\...\TrackMania 2_is1) (Version: RePack - Ultra) Update for Skype for Business 2015 (KB2889853) 64-Bit Edition (HKLM\...\{90150000-012B-0415-1000-0000000FF1CE}_Office15.PROPLUS_{CF394926-359E-48E1-AA25-E56B32FCB335}) (Version: - Microsoft) Update for Skype for Business 2015 (KB3054946) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2}) (Version: - Microsoft) Update for Skype for Business 2015 (KB3054946) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2}) (Version: - Microsoft) Update for Skype for Business 2015 (KB3054946) 64-Bit Edition (HKLM\...\{90150000-012B-0415-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2}) (Version: - Microsoft) VIA Platforma Menedżera urządzeń (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.42 - VIA Technologies, Inc.) WiMP (HKLM-x32\...\{C673D69A-13B6-4240-881A-74698E97AD64}) (Version: 3.2.7 - Aspiro Music AS) WinCDEmu (HKLM-x32\...\WinCDEmu) (Version: 4.0 - Sysprogs) WizMouse v1.7.0.3 (HKLM-x32\...\WizMouse_is1) (Version: - Antibody Software) WWE 2K15 (HKLM-x32\...\V1dFMksxNQ==_is1) (Version: 1 - ) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-532919332-968226284-4016100017-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Marcin\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-532919332-968226284-4016100017-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-532919332-968226284-4016100017-1001_Classes\CLSID\{B3F5EDE0-4267-49eb-A775-799895476453}\InprocServer32 -> C:\Program Files\iNFekt\infekt-nfo-shell.dll (syndicode) CustomCLSID: HKU\S-1-5-21-532919332-968226284-4016100017-1001_Classes\CLSID\{B8D080EE-9541-460f-A1AE-7C43CDA96C0F}\InprocServer32 -> C:\Program Files\iNFekt\infekt-nfo-shell.dll (syndicode) CustomCLSID: HKU\S-1-5-21-532919332-968226284-4016100017-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Marcin\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-532919332-968226284-4016100017-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcin\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-532919332-968226284-4016100017-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcin\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-532919332-968226284-4016100017-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcin\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-532919332-968226284-4016100017-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcin\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-532919332-968226284-4016100017-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcin\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-532919332-968226284-4016100017-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcin\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-532919332-968226284-4016100017-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcin\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-532919332-968226284-4016100017-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcin\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) ==================== Restore Points ========================= 15-07-2015 19:37:47 Installed Tony Hawk's Underground 2 19-07-2015 19:26:24 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2015-06-20 23:10 - 00000950 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 mp02.maniaplanet.com 127.0.0.1 mp01.maniaplanet.com 127.0.0.1 mp03.maniaplanet.com 127.0.0.1 game.maniaplanet.com ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {06F0EAB7-A554-4C52-BDE4-AFD5E7578EFB} - System32\Tasks\Microsoft Office 15 Sync Maintenance for MARCIN-XNOTE-Marcin Marcin-Xnote => D:\Programy\Microsoft Office\Office15\MsoSync.exe [2015-04-14] (Microsoft Corporation) Task: {1B645D9A-8CC7-45E5-958E-812639CF914A} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-532919332-968226284-4016100017-1001Core => C:\Users\Marcin\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17] (Dropbox, Inc.) Task: {284F2A28-8B0F-40AF-9ABE-D142DA611B33} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-07-03] (Microsoft Corporation) Task: {3CA378E8-E6FA-4B9A-B12E-D6F2C185DC80} - System32\Tasks\{9C439DE3-4031-42AD-8BD9-ED5EFA98C3D8} => pcalua.exe -a E:\setup.exe -d E:\ Task: {42F6B112-3851-4F62-8671-2F33014FC5AD} - System32\Tasks\{684A648F-E3FE-443D-9767-3A2C21706DA0} => pcalua.exe -a D:\Gryr\Thps3\THPS3Setup.exe -d D:\Gryr\Thps3 Task: {4576296D-01B8-4A7A-A995-5E9225754481} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation) Task: {8744CDFD-1D52-4B51-BF22-50ADB71B8E26} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-04] (Google Inc.) Task: {AFAC43E0-F74B-414F-BF4B-FDE9500D6A1A} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2015-06-20] () Task: {AFE56A13-44A8-441A-9EE1-1BAFE5000A72} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-532919332-968226284-4016100017-1001UA => C:\Users\Marcin\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17] (Dropbox, Inc.) Task: {B4A8E348-24D7-4771-9E7F-801D862975CF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe Task: {D58D7131-EA92-4E85-879C-02DC34269CD7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe Task: {EFFF3CE6-B797-46B3-B5EC-65E5C0F9D268} - System32\Tasks\WizMouse => C:\Program Files (x86)\WizMouse\WizMouseLaunch.exe [2013-09-22] () Task: {FCC40A55-E588-48D2-905A-EB7A3640F55B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-04] (Google Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-532919332-968226284-4016100017-1001Core.job => C:\Users\Marcin\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-532919332-968226284-4016100017-1001UA.job => C:\Users\Marcin\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2015-04-04 10:15 - 2015-06-17 08:48 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-12-26 17:24 - 2013-12-26 17:24 - 00046080 _____ () C:\Program Files (x86)\Hotkey\PowerBiosServer.exe 2015-03-31 19:02 - 2015-03-31 19:02 - 00392592 _____ () C:\Windows\system32\igfxTray.exe 2015-04-04 10:43 - 2015-04-04 10:43 - 00078456 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll 2015-04-04 10:43 - 2015-04-04 10:43 - 00386168 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll 2014-01-10 16:21 - 2014-01-10 16:21 - 04902912 _____ () C:\Program Files (x86)\Hotkey\Hotkey.exe 2015-04-04 13:28 - 2013-09-22 10:27 - 00119000 _____ () C:\Program Files (x86)\WizMouse\wizmouse.exe 2015-04-04 10:15 - 2015-07-14 21:06 - 00708240 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\gamecaster64.dll 2015-04-04 10:15 - 2015-07-14 21:06 - 00854160 _____ () C:\Program Files\NVIDIA Corporation\ShadowPlay\twitchsdk64.dll 2015-07-14 18:02 - 2015-07-13 23:33 - 01670472 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.134\libglesv2.dll 2015-07-14 18:02 - 2015-07-13 23:33 - 00093000 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.134\libegl.dll 2015-05-14 14:18 - 2015-04-16 19:40 - 00776192 _____ () D:\Programy\Steam\SDL2.dll 2015-05-14 14:18 - 2015-04-23 04:16 - 04962816 _____ () D:\Programy\Steam\v8.dll 2015-06-06 09:30 - 2015-06-04 20:56 - 02407104 _____ () D:\Programy\Steam\video.dll 2015-05-14 14:18 - 2015-04-23 04:16 - 01556992 _____ () D:\Programy\Steam\icui18n.dll 2015-05-14 14:18 - 2015-04-23 04:16 - 01187840 _____ () D:\Programy\Steam\icuuc.dll 2015-04-05 20:09 - 2014-12-01 23:31 - 02396672 _____ () D:\Programy\Steam\libavcodec-56.dll 2015-04-05 20:09 - 2014-12-01 23:31 - 00479744 _____ () D:\Programy\Steam\libavformat-56.dll 2015-04-05 20:09 - 2014-12-01 23:31 - 00332800 _____ () D:\Programy\Steam\libavresample-2.dll 2015-04-05 20:09 - 2014-12-01 23:31 - 00442880 _____ () D:\Programy\Steam\libavutil-54.dll 2015-04-05 20:09 - 2014-12-01 23:31 - 00485888 _____ () D:\Programy\Steam\libswscale-3.dll 2015-06-06 09:30 - 2015-06-04 20:56 - 00703168 _____ () D:\Programy\Steam\bin\chromehtml.DLL 2015-07-21 09:46 - 2015-07-21 09:46 - 00043008 _____ () c:\users\marcin\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpraja27.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00750080 _____ () C:\Users\Marcin\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00047616 _____ () C:\Users\Marcin\AppData\Roaming\Dropbox\bin\libEGL.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00865280 _____ () C:\Users\Marcin\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00200704 _____ () C:\Users\Marcin\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00010240 _____ () C:\Users\Marcin\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00726016 _____ () C:\Users\Marcin\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00010240 _____ () C:\Users\Marcin\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll 2015-04-04 10:09 - 2013-12-09 16:27 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-05-14 14:18 - 2015-05-11 21:01 - 36302728 _____ () D:\Programy\Steam\bin\libcef.dll 2015-05-19 16:01 - 2015-05-19 16:02 - 00566272 _____ () C:\Program Files (x86)\GalaxyClient\PocoUtil.dll 2015-05-19 16:01 - 2015-05-19 16:02 - 01202176 _____ () C:\Program Files (x86)\GalaxyClient\PocoNet.dll 2015-05-19 16:01 - 2015-05-19 16:02 - 02577408 _____ () C:\Program Files (x86)\GalaxyClient\PocoData.dll 2015-05-19 16:01 - 2015-05-19 16:02 - 00477184 _____ () C:\Program Files (x86)\GalaxyClient\PocoDataSQLite.dll 2015-05-19 16:01 - 2015-05-19 16:02 - 00515584 _____ () C:\Program Files (x86)\GalaxyClient\PocoXML.dll 2015-05-19 16:01 - 2015-05-19 16:02 - 00340480 _____ () C:\Program Files (x86)\GalaxyClient\PocoZip.dll 2015-05-19 16:01 - 2015-05-19 16:02 - 01784320 _____ () C:\Program Files (x86)\GalaxyClient\PocoFoundation.dll 2015-05-19 16:01 - 2015-05-19 16:02 - 00332288 _____ () C:\Program Files (x86)\GalaxyClient\PocoNetSSL.dll 2015-05-19 16:01 - 2015-05-19 16:02 - 00415744 _____ () C:\Program Files (x86)\GalaxyClient\PocoJSON.dll 2015-05-19 16:01 - 2015-04-09 15:52 - 41299456 _____ () C:\Program Files (x86)\GalaxyClient\libcef.dll 2015-05-19 16:01 - 2015-05-19 16:02 - 00649728 _____ () C:\Program Files (x86)\GalaxyClient\sqlite.dll 2015-05-19 16:01 - 2015-04-09 15:52 - 00139776 _____ () C:\Program Files (x86)\GalaxyClient\expat.dll 2015-05-19 16:01 - 2015-04-09 15:52 - 00412672 _____ () C:\Program Files (x86)\GalaxyClient\pcre.dll 2015-05-19 16:01 - 2015-04-09 15:52 - 00094208 _____ () C:\Program Files (x86)\GalaxyClient\zlib.dll 2015-05-19 16:01 - 2015-05-19 16:02 - 00172032 _____ () C:\Program Files (x86)\GalaxyClient\PocoCrypto.dll 2015-05-19 16:01 - 2015-04-09 15:52 - 00107520 _____ () C:\Program Files (x86)\GalaxyClient\ZLIB1.dll 2015-05-19 16:01 - 2015-04-09 15:52 - 00888832 _____ () C:\Program Files (x86)\GalaxyClient\ffmpegsumo.dll 2015-04-04 10:25 - 2015-07-14 21:06 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Windows:DF3AE0207D108B14 AlternateDataStreams: C:\Windows\system32\curl.exe:com.dropbox.attributes AlternateDataStreams: C:\Windows\system32\flac.exe:com.dropbox.attributes AlternateDataStreams: C:\Windows\system32\Imaadp32.acm:com.dropbox.attributes AlternateDataStreams: C:\Windows\system32\metaflac.exe:com.dropbox.attributes AlternateDataStreams: C:\Windows\SysWOW64\Imaadp32.acm:com.dropbox.attributes AlternateDataStreams: C:\Users\Marcin\SkyDrive:ms-properties ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-532919332-968226284-4016100017-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 8.8.8.8 - 208.67.220.220 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run32: => "CloneCDTray" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [{CD3F2D9B-9F10-4952-A90B-9486713C4091}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{CA1BA223-0B05-4DAB-BECF-6242A7A710A9}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{DCC7C238-7870-466F-A214-0F3928F57630}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{984156A6-8B9A-44A3-AFE0-82D360167796}] => (Allow) C:\Users\Marcin\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{CCBA2514-1601-4B47-8559-34C1344E4F0B}] => (Allow) C:\Users\Marcin\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [TCP Query User{F081DAF4-4172-4778-9F99-DF4D35BD35AC}D:\programy\mpdn\mediaplayerdotnet.exe] => (Allow) D:\programy\mpdn\mediaplayerdotnet.exe FirewallRules: [UDP Query User{E2A91FDD-1C76-42C1-BAE2-DEF2BBFDE641}D:\programy\mpdn\mediaplayerdotnet.exe] => (Allow) D:\programy\mpdn\mediaplayerdotnet.exe FirewallRules: [TCP Query User{20EF054E-0C97-497A-BB06-24F907DE2277}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{E00147EC-51EF-4084-8417-C81750B4A218}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{1E59D7A3-7DE5-4439-9863-9D75749FACEF}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{1BE7C6C2-2610-4367-BAAE-3FA934B95C44}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{F4107336-ADDF-4742-8F01-7887B91ECF5E}] => (Allow) D:\Programy\Steam\Steam.exe FirewallRules: [{F4DCDE7B-4B0F-43C6-9EC9-D043B93FEB59}] => (Allow) D:\Programy\Steam\Steam.exe FirewallRules: [{10E56166-9F66-435D-8550-43EF1B370D39}] => (Allow) D:\Programy\Steam\bin\steamwebhelper.exe FirewallRules: [{4F011B2E-5CA9-4939-AFE9-66C70EFAF245}] => (Allow) D:\Programy\Steam\bin\steamwebhelper.exe FirewallRules: [{9B16FEBF-3A97-4B5A-B693-DF5C1C4477CC}] => (Allow) D:\Programy\Steam\steamapps\common\Super Meat Boy\SuperMeatBoy.exe FirewallRules: [{F346C0BF-A406-4E62-BC84-D7A4260999E7}] => (Allow) D:\Programy\Steam\steamapps\common\Super Meat Boy\SuperMeatBoy.exe FirewallRules: [{A1B42C75-5330-4A43-BFBC-A8C85ED65153}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe FirewallRules: [{836922BF-91A7-425B-9310-33300202BA3F}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{185D823E-0E53-40AD-8E88-222D2AF34BA1}C:\users\marcin\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\marcin\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{1190860C-6845-40CB-B5CE-345D440266E8}C:\users\marcin\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\marcin\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{8E1AA0B4-BC06-4DA9-8ED8-DF71A3383365}] => (Allow) D:\Programy\Steam\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{C462437E-5657-405F-9A4D-5B938943577C}] => (Allow) D:\Programy\Steam\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{E93456A5-2453-4A0E-9569-F0421978AAED}] => (Allow) D:\Programy\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{CCD8E759-FE0C-44A7-909D-230E4B2EAE01}] => (Allow) D:\Programy\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{61C1A9BF-199F-4631-ACB6-D2B00CD69F7E}] => (Allow) D:\Programy\Microsoft Office\Office15\lync.exe FirewallRules: [{F26E61BF-AE69-49C7-AA31-E8AED1700D9B}] => (Allow) D:\Programy\Microsoft Office\Office15\lync.exe FirewallRules: [{01D7E72A-F33D-463F-AED0-5F4A757C51A4}] => (Allow) D:\Programy\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{8DE93855-5134-4375-A279-B3037EEA05E6}] => (Allow) D:\Programy\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{B2754606-2E9E-4A46-B6B2-8F0400A506E6}] => (Allow) D:\Programy\Microsoft Office\Office15\outlook.exe FirewallRules: [{CB38A957-74F1-4F61-A1B7-D77780D92A7B}] => (Allow) D:\Programy\Steam\steamapps\common\Half-Life 2\hl2.exe FirewallRules: [{5A1AC804-8553-496D-ADB7-92F2F91CB332}] => (Allow) D:\Programy\Steam\steamapps\common\Half-Life 2\hl2.exe FirewallRules: [{31A66FFA-D522-4774-8A6B-8CABBC07EE38}] => (Allow) D:\Programy\Steam\steamapps\common\SourceSDK\bin\SDKLauncher.exe FirewallRules: [{19C9E721-1817-4ABE-87D3-9EFC708B7D0F}] => (Allow) D:\Programy\Steam\steamapps\common\SourceSDK\bin\SDKLauncher.exe FirewallRules: [{C24A2A59-8814-4F5C-803F-AEF8ECE5EFF0}] => (Allow) D:\Programy\Steam\steamapps\common\Source SDK Base 2007\hl2.exe FirewallRules: [{178BD3B8-DA25-489E-BA3E-0CADC842C995}] => (Allow) D:\Programy\Steam\steamapps\common\Source SDK Base 2007\hl2.exe FirewallRules: [{5D4F30C3-FDD3-40ED-9167-F27F851C22C9}] => (Allow) D:\Programy\Steam\steamapps\common\Borderlands\Binaries\Borderlands.exe FirewallRules: [{314D0687-874D-41CA-852C-EF3ABBCED8CD}] => (Allow) D:\Programy\Steam\steamapps\common\Borderlands\Binaries\Borderlands.exe FirewallRules: [TCP Query User{FA5A65FC-9B54-4D7A-AF67-75ACC9F6C82C}C:\users\marcin\desktop\packet tracer 5.2\bin\packettracer5.exe] => (Allow) C:\users\marcin\desktop\packet tracer 5.2\bin\packettracer5.exe FirewallRules: [UDP Query User{9A0FC439-5C9D-42D2-9BB1-77C3CC1C9E84}C:\users\marcin\desktop\packet tracer 5.2\bin\packettracer5.exe] => (Allow) C:\users\marcin\desktop\packet tracer 5.2\bin\packettracer5.exe FirewallRules: [TCP Query User{E0442B48-4066-4460-B891-A23E916324CA}D:\gry\grand theft auto v\gta5.exe] => (Block) D:\gry\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{9F1F266A-9840-4F73-B4A8-51D0BB91C388}D:\gry\grand theft auto v\gta5.exe] => (Block) D:\gry\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{B7B34541-09CE-4841-8396-D896C2E01433}D:\gry\grand theft auto v\gta5.exe] => (Block) D:\gry\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{ED438D6C-6E18-4D1B-8DE9-5789CD5506C3}D:\gry\grand theft auto v\gta5.exe] => (Block) D:\gry\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{FA1B3B49-939F-4814-BB8E-CE0E2657BB36}D:\gry\grand theft auto v 2\gta5.exe] => (Block) D:\gry\grand theft auto v 2\gta5.exe FirewallRules: [UDP Query User{9739931A-29B3-46DF-9751-6FB9194445C3}D:\gry\grand theft auto v 2\gta5.exe] => (Block) D:\gry\grand theft auto v 2\gta5.exe FirewallRules: [{F087AF39-802F-4940-9F1A-249EDDA02A2F}] => (Allow) D:\Programy\Steam\steamapps\common\FEZ\FEZ.exe FirewallRules: [{E6790A22-8BC5-4A23-8650-578165741323}] => (Allow) D:\Programy\Steam\steamapps\common\FEZ\FEZ.exe FirewallRules: [{91C55A18-32E2-4216-9B2E-508C6C630ACF}] => (Allow) D:\Programy\Steam\steamapps\common\FEZ\FEZ_LaunchOptions.exe FirewallRules: [{A9D95672-287B-4A31-BF17-171881665D74}] => (Allow) D:\Programy\Steam\steamapps\common\FEZ\FEZ_LaunchOptions.exe FirewallRules: [{3239EC90-31FB-4F2D-99F3-DBCC7513D2F5}] => (Allow) D:\Programy\Microsoft Office\Office15\lync.exe FirewallRules: [{2B3F00D0-035D-46A4-A694-A5CB602F2974}] => (Allow) D:\Programy\Microsoft Office\Office15\lync.exe FirewallRules: [{D0BF5F76-FD34-4911-8CD4-339CAFBDFE3A}] => (Allow) D:\Programy\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{86F142DD-B129-4E03-B9B9-824CAAF42AE8}] => (Allow) D:\Programy\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{0A20BA0E-C349-4599-B8E8-63F857D8DE1D}] => (Allow) D:\Programy\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe FirewallRules: [{C3079722-83CB-4977-8278-8713110C8DE5}] => (Allow) D:\Programy\Steam\steamapps\common\Duke Nukem 3D\bin\duke3d.exe FirewallRules: [{61329EFA-C995-4495-9394-F34EC3DB03DD}] => (Allow) D:\Programy\Steam\steamapps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe FirewallRules: [{877A60D0-B626-4748-A3A9-85531D3157BA}] => (Allow) D:\Programy\Steam\steamapps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe FirewallRules: [{560FCF8F-902C-4BEC-A393-C3ACD3C13EA7}] => (Allow) D:\Programy\Steam\steamapps\common\Duke Nukem 3D\bin\build.exe FirewallRules: [{85306ECB-1AEA-4913-93F0-974CFD4E7EAF}] => (Allow) D:\Programy\Steam\steamapps\common\Duke Nukem 3D\bin\build.exe FirewallRules: [TCP Query User{1B5BC725-0C32-49C9-A7E0-04DAA2E158C8}C:\program files (x86)\flashfxp 5\flashfxp.exe] => (Block) C:\program files (x86)\flashfxp 5\flashfxp.exe FirewallRules: [UDP Query User{C9095E24-F76D-4D56-86A9-9020A950CA29}C:\program files (x86)\flashfxp 5\flashfxp.exe] => (Block) C:\program files (x86)\flashfxp 5\flashfxp.exe FirewallRules: [TCP Query User{F9F6F8D3-67D6-4EBF-B5B0-8DDF6EB0E764}C:\users\marcin\desktop\tmp\rtmp\rtmpsuck.exe] => (Block) C:\users\marcin\desktop\tmp\rtmp\rtmpsuck.exe FirewallRules: [UDP Query User{C0DF1894-2694-4D08-B245-95678D20CD30}C:\users\marcin\desktop\tmp\rtmp\rtmpsuck.exe] => (Block) C:\users\marcin\desktop\tmp\rtmp\rtmpsuck.exe FirewallRules: [TCP Query User{E5CC0AED-5DDC-48EE-9D45-B0DD3BA51993}D:\gry\trackmania 2\maniaplanet.exe] => (Block) D:\gry\trackmania 2\maniaplanet.exe FirewallRules: [UDP Query User{F6AA9B13-C853-4E4F-8DB6-2D8EC9D1CC1D}D:\gry\trackmania 2\maniaplanet.exe] => (Block) D:\gry\trackmania 2\maniaplanet.exe FirewallRules: [{F9304DCE-89D3-408E-9C19-647DFBF3938C}] => (Allow) D:\Gry\Sacred 2\system\s2gs.exe FirewallRules: [{90423B7D-4DF9-4786-8C34-DBEDB53A6143}] => (Allow) D:\Gry\Sacred 2\system\s2gs.exe FirewallRules: [{89330D2B-ABB5-44FF-B2B9-CA16C75F446A}] => (Allow) D:\Gry\Sacred 2\system\sacred2.exe FirewallRules: [{2509216A-F92E-43C8-A8A6-A724539A8924}] => (Allow) D:\Gry\Sacred 2\system\sacred2.exe FirewallRules: [TCP Query User{46FB470F-77D9-47ED-9251-5933B27C5186}C:\users\marcin\desktop\is\d\halite.exe] => (Block) C:\users\marcin\desktop\is\d\halite.exe FirewallRules: [UDP Query User{CDD4E021-9A89-4A08-AF16-CDCFE6ACC3D0}C:\users\marcin\desktop\is\d\halite.exe] => (Block) C:\users\marcin\desktop\is\d\halite.exe FirewallRules: [TCP Query User{4A243CE9-2177-4A97-9041-67EEEE243F5C}D:\gry\doom 3 bfg edition\rbdoom3bfg.exe] => (Block) D:\gry\doom 3 bfg edition\rbdoom3bfg.exe FirewallRules: [UDP Query User{FE4EDE6A-A650-4C58-813B-F6092A0130F6}D:\gry\doom 3 bfg edition\rbdoom3bfg.exe] => (Block) D:\gry\doom 3 bfg edition\rbdoom3bfg.exe FirewallRules: [TCP Query User{65CB75BD-A16C-410A-9281-C80391EC46AF}D:\gry\doom 3 bfg edition\doom3bfg.exe] => (Block) D:\gry\doom 3 bfg edition\doom3bfg.exe FirewallRules: [UDP Query User{C22B63CA-38E0-4E36-9C5E-0DC96920818F}D:\gry\doom 3 bfg edition\doom3bfg.exe] => (Block) D:\gry\doom 3 bfg edition\doom3bfg.exe FirewallRules: [{F70F0A78-1159-4AF6-B125-816E915ABB44}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{5FEC265F-E555-46BF-9B65-B582A438C8CE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{5A081EE2-E1DC-41F3-A02D-CC4934EC35E7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{8E7D7AC2-D350-4E25-8FDB-02F6F2284ED7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{18211F28-A740-4796-B0A0-6340C72C338C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{66459D36-F5DD-4242-84FB-D8563603DD89}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (07/19/2015 07:26:44 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddLegacyDriverFiles: Unable to back up image of binary Protokół LLDP (Link-Layer Discovery Protocol) firmy Microsoft. System Error: Odmowa dostępu. . Error: (07/19/2015 06:38:25 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: GFExperience.exe, wersja: 2.4.5.57, sygnatura czasowa: 0x558a9031 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.3.9600.17415, sygnatura czasowa: 0x54504ade Kod wyjątku: 0xe0434352 Przesunięcie błędu: 0x00014598 Identyfikator procesu powodującego błąd: 0x1bac Godzina uruchomienia aplikacji powodującej błąd: 0xGFExperience.exe0 Ścieżka aplikacji powodującej błąd: GFExperience.exe1 Ścieżka modułu powodującego błąd: GFExperience.exe2 Identyfikator raportu: GFExperience.exe3 Pełna nazwa pakietu powodującego błąd: GFExperience.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: GFExperience.exe5 Error: (07/19/2015 06:38:22 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Aplikacja: GFExperience.exe Wersja architektury: v4.0.30319 Opis: proces został przerwany z powodu nieobsłużonego wyjątku. Informacje o wyjątku: System.Reflection.TargetInvocationException Stos: w System.RuntimeMethodHandle.InvokeMethod(System.Object, System.Object[], System.Signature, Boolean) w System.Reflection.RuntimeMethodInfo.UnsafeInvokeInternal(System.Object, System.Object[], System.Object[]) w System.Reflection.RuntimeMethodInfo.Invoke(System.Object, System.Reflection.BindingFlags, System.Reflection.Binder, System.Object[], System.Globalization.CultureInfo) w GalaSoft.MvvmLight.Helpers.WeakAction`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]].Execute(System.__Canon) w GalaSoft.MvvmLight.Helpers.WeakAction`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]].ExecuteWithObject(System.Object) w GalaSoft.MvvmLight.Messaging.Messenger.SendToList[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.__Canon, System.Collections.Generic.IEnumerable`1, System.Type, System.Object) w GalaSoft.MvvmLight.Messaging.Messenger.SendToTargetOrType[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.__Canon, System.Type, System.Object) w GalaSoft.MvvmLight.Messaging.Messenger.Send[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.__Canon) w GFEClientCore.EasyAPI.Updatus.DaemonNotifier.ScanCompleted() w GFEClientCore.EasyAPI.Updatus.DaemonNotifier.DaemonCallbackFunction(GFEClientCore.EasyAPI.GFE.DaemonStatus) Error: (07/17/2015 12:17:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: THUG2.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x41477593 Nazwa modułu powodującego błąd: THUG2.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x41477593 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00063854 Identyfikator procesu powodującego błąd: 0x1ba8 Godzina uruchomienia aplikacji powodującej błąd: 0xTHUG2.exe0 Ścieżka aplikacji powodującej błąd: THUG2.exe1 Ścieżka modułu powodującego błąd: THUG2.exe2 Identyfikator raportu: THUG2.exe3 Pełna nazwa pakietu powodującego błąd: THUG2.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: THUG2.exe5 Error: (07/17/2015 10:43:29 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: ZeroConfigService.exe, wersja: 17.0.5.0, sygnatura czasowa: 0x5387ee07 Nazwa modułu powodującego błąd: MurocApi.dll, wersja: 17.0.5.0, sygnatura czasowa: 0x5387ed02 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000000000002bd48 Identyfikator procesu powodującego błąd: 0x9ec Godzina uruchomienia aplikacji powodującej błąd: 0xZeroConfigService.exe0 Ścieżka aplikacji powodującej błąd: ZeroConfigService.exe1 Ścieżka modułu powodującego błąd: ZeroConfigService.exe2 Identyfikator raportu: ZeroConfigService.exe3 Pełna nazwa pakietu powodującego błąd: ZeroConfigService.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: ZeroConfigService.exe5 Error: (07/17/2015 10:21:01 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: vncviewerr.exe, wersja: 1.0.8.2, sygnatura czasowa: 0x4b1c3c7e Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.3.9600.17736, sygnatura czasowa: 0x550f4336 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000035c14 Identyfikator procesu powodującego błąd: 0x1f58 Godzina uruchomienia aplikacji powodującej błąd: 0xvncviewerr.exe0 Ścieżka aplikacji powodującej błąd: vncviewerr.exe1 Ścieżka modułu powodującego błąd: vncviewerr.exe2 Identyfikator raportu: vncviewerr.exe3 Pełna nazwa pakietu powodującego błąd: vncviewerr.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: vncviewerr.exe5 Error: (07/16/2015 07:14:54 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program MediaPlayerDotNet.exe w wersji 2.34.0.3150 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 1698 Godzina rozpoczęcia: 01d0bfea9efba77c Godzina zakończenia: 4294967295 Ścieżka aplikacji: D:\Programy\MPDN\MediaPlayerDotNet.exe Identyfikator raportu: 2875d280-2bde-11e5-8283-f81654dac6bc Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (07/15/2015 07:37:53 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddLegacyDriverFiles: Unable to back up image of binary Protokół LLDP (Link-Layer Discovery Protocol) firmy Microsoft. System Error: Odmowa dostępu. . Error: (07/14/2015 10:02:57 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: Skate3.exe, wersja: 0.1.0.1, sygnatura czasowa: 0x3cacf31a Nazwa modułu powodującego błąd: Skate3.exe, wersja: 0.1.0.1, sygnatura czasowa: 0x3cacf31a Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000c8223 Identyfikator procesu powodującego błąd: 0x12fc Godzina uruchomienia aplikacji powodującej błąd: 0xSkate3.exe0 Ścieżka aplikacji powodującej błąd: Skate3.exe1 Ścieżka modułu powodującego błąd: Skate3.exe2 Identyfikator raportu: Skate3.exe3 Pełna nazwa pakietu powodującego błąd: Skate3.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: Skate3.exe5 Error: (07/14/2015 09:54:06 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: thps3setup.exe, wersja: 1.0.0.1, sygnatura czasowa: 0x3cacbdf9 Nazwa modułu powodującego błąd: TonyHawksProSkater3_widescreen_fix.asi, wersja: 0.0.0.0, sygnatura czasowa: 0x53db9504 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00001b84 Identyfikator procesu powodującego błąd: 0xd5c Godzina uruchomienia aplikacji powodującej błąd: 0xthps3setup.exe0 Ścieżka aplikacji powodującej błąd: thps3setup.exe1 Ścieżka modułu powodującego błąd: thps3setup.exe2 Identyfikator raportu: thps3setup.exe3 Pełna nazwa pakietu powodującego błąd: thps3setup.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: thps3setup.exe5 System errors: ============= Error: (07/21/2015 09:44:23 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\DRIVERS\PcAtip.sys Error: (07/21/2015 09:44:22 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\DRIVERS\PcAtip.sys Error: (07/21/2015 09:44:18 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\drivers\prodrv06.sys Error: (07/20/2015 09:12:32 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\DRIVERS\PcAtip.sys Error: (07/20/2015 09:12:04 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\DRIVERS\PcAtip.sys Error: (07/20/2015 10:31:51 AM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: ZARZĄDZANIE NT) Description: 0x8000002a30\??\C:\Users\Marcin\ntuser.dat Error: (07/20/2015 10:30:29 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\DRIVERS\PcAtip.sys Error: (07/20/2015 10:30:28 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\DRIVERS\PcAtip.sys Error: (07/20/2015 10:30:23 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\drivers\prodrv06.sys Error: (07/19/2015 07:44:46 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\DRIVERS\PcAtip.sys Microsoft Office: ========================= Error: (07/19/2015 07:26:44 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary Protokół LLDP (Link-Layer Discovery Protocol) firmy Microsoft. System Error: Odmowa dostępu. Error: (07/19/2015 06:38:25 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: GFExperience.exe2.4.5.57558a9031KERNELBASE.dll6.3.9600.1741554504adee0434352000145981bac01d0c24108f2c7a9C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\GFExperience.exeC:\Windows\SYSTEM32\KERNELBASE.dll93119d24-2e34-11e5-8286-f81654dac6bc Error: (07/19/2015 06:38:22 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Aplikacja: GFExperience.exe Wersja architektury: v4.0.30319 Opis: proces został przerwany z powodu nieobsłużonego wyjątku. Informacje o wyjątku: System.Reflection.TargetInvocationException Stos: w System.RuntimeMethodHandle.InvokeMethod(System.Object, System.Object[], System.Signature, Boolean) w System.Reflection.RuntimeMethodInfo.UnsafeInvokeInternal(System.Object, System.Object[], System.Object[]) w System.Reflection.RuntimeMethodInfo.Invoke(System.Object, System.Reflection.BindingFlags, System.Reflection.Binder, System.Object[], System.Globalization.CultureInfo) w GalaSoft.MvvmLight.Helpers.WeakAction`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]].Execute(System.__Canon) w GalaSoft.MvvmLight.Helpers.WeakAction`1[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]].ExecuteWithObject(System.Object) w GalaSoft.MvvmLight.Messaging.Messenger.SendToList[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.__Canon, System.Collections.Generic.IEnumerable`1, System.Type, System.Object) w GalaSoft.MvvmLight.Messaging.Messenger.SendToTargetOrType[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.__Canon, System.Type, System.Object) w GalaSoft.MvvmLight.Messaging.Messenger.Send[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.__Canon) w GFEClientCore.EasyAPI.Updatus.DaemonNotifier.ScanCompleted() w GFEClientCore.EasyAPI.Updatus.DaemonNotifier.DaemonCallbackFunction(GFEClientCore.EasyAPI.GFE.DaemonStatus) Error: (07/17/2015 12:17:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: THUG2.exe0.0.0.041477593THUG2.exe0.0.0.041477593c0000005000638541ba801d0c07869fb25f9D:\Gry\Tony Hawk's Underground 2\Game\THUG2.exeD:\Gry\Tony Hawk's Underground 2\Game\THUG2.exe04f0eaa4-2c6d-11e5-8285-f81654dac6bc Error: (07/17/2015 10:43:29 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: ZeroConfigService.exe17.0.5.05387ee07MurocApi.dll17.0.5.05387ed02c0000005000000000002bd489ec01d0c06c8419ba48C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exeC:\Program Files\Intel\WiFi\bin\MurocApi.dlle58d04a9-2c5f-11e5-8285-f81654dac6bc Error: (07/17/2015 10:21:01 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: vncviewerr.exe1.0.8.24b1c3c7entdll.dll6.3.9600.17736550f4336c00000050000000000035c141f5801d0c0697cbfa419C:\Program Files (x86)\vncviewerr.exeC:\Windows\SYSTEM32\ntdll.dllc1bbe373-2c5c-11e5-8284-f81654dac6bc Error: (07/16/2015 07:14:54 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: MediaPlayerDotNet.exe2.34.0.3150169801d0bfea9efba77c4294967295D:\Programy\MPDN\MediaPlayerDotNet.exe2875d280-2bde-11e5-8283-f81654dac6bc Error: (07/15/2015 07:37:53 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary Protokół LLDP (Link-Layer Discovery Protocol) firmy Microsoft. System Error: Odmowa dostępu. Error: (07/14/2015 10:02:57 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Skate3.exe0.1.0.13cacf31aSkate3.exe0.1.0.13cacf31ac0000005000c822312fc01d0be6ed925cac9D:\Gryr\Thps3\Skate3.exeD:\Gryr\Thps3\Skate3.exe51c05516-2a63-11e5-8282-f81654dac6bc Error: (07/14/2015 09:54:06 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: thps3setup.exe1.0.0.13cacbdf9TonyHawksProSkater3_widescreen_fix.asi0.0.0.053db9504c000000500001b84d5c01d0be6ed78340d1D:\Gryr\Thps3\thps3setup.exeD:\Gryr\Thps3\TonyHawksProSkater3_widescreen_fix.asi15369414-2a62-11e5-8282-f81654dac6bc CodeIntegrity Errors: =================================== Date: 2015-07-20 14:45:39.369 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-20 14:45:39.110 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-17 23:38:38.441 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-17 23:38:38.241 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-17 12:44:50.250 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-17 12:44:50.070 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-16 13:50:20.065 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-16 13:50:19.847 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-11 11:04:57.168 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-07-11 11:04:57.004 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-4710MQ CPU @ 2.50GHz Percentage of memory in use: 53% Total physical RAM: 8076.13 MB Available physical RAM: 3717.7 MB Total Virtual: 9356.13 MB Available Virtual: 3990.3 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:79.48 GB) (Free:5.16 GB) NTFS Drive d: () (Fixed) (Total:588.64 GB) (Free:14.73 GB) NTFS Drive g: () (Fixed) (Total:30 GB) (Free:14.46 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 698.6 GB) (Disk ID: B80BC94F) Partition: GPT Partition Type. ==================== End of log ============================