Additional scan result of Farbar Recovery Scan Tool (x64) Version:30-07-2015 Ran by Grzegorz (2015-07-31 11:42:34) Running from C:\Users\Grzegorz\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1558215053-3341806664-3877457628-500 - Administrator - Disabled) ASPNET (S-1-5-21-1558215053-3341806664-3877457628-1004 - Limited - Enabled) Gość (S-1-5-21-1558215053-3341806664-3877457628-501 - Limited - Disabled) Grzegorz (S-1-5-21-1558215053-3341806664-3877457628-1000 - Administrator - Enabled) => C:\Users\Grzegorz HomeGroupUser$ (S-1-5-21-1558215053-3341806664-3877457628-1002 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: F-Secure Client Security 9.00 (Enabled - Up to date) {15414183-282E-D62C-CA37-EF24860A2F17} AS: F-Secure Client Security 9.00 (Enabled - Up to date) {AE20A067-0E14-D9A2-F087-D456FD8D65AA} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: F-Secure Client Security 9.00 (Enabled) {2D7AC0A6-6241-D774-E168-461178D9686C} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-1558215053-3341806664-3877457628-1000\...\uTorrent) (Version: 3.4.2.35141 - BitTorrent Inc.) 5-Mode Oscar Editor (HKLM-x32\...\OscarX7Mouse5Mode) (Version: 13.02.0001 - A4Tech) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Activision(R) (x32 Version: 1.00.0000 - Activision) Hidden Adobe Download Manager (HKLM-x32\...\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}) (Version: 1.6.2.97 - NOS Microsystems Ltd.) Adobe Flash Player 11 ActiveX 64-bit (HKLM\...\Adobe Flash Player ActiveX) (Version: 11.1.102.55 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin 64-bit (HKLM\...\Adobe Flash Player Plugin) (Version: 11.1.102.55 - Adobe Systems Incorporated) Adobe Reader XI (11.0.12) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) Adobe Shockwave Player (HKLM-x32\...\Adobe Shockwave Player) (Version: 10.3.0.24 - Adobe Systems, Inc.) Aktualizacje NVIDIA 2.5.11.45 (Version: 2.5.11.45 - NVIDIA Corporation) Hidden ANT Drivers 0.1.2.0 (HKLM-x32\...\ANT Drivers_is1) (Version: 0.1.2.1 - ANT Drivers) ASMAX Wireless USB 715N (HKLM-x32\...\{7A2A107B-9695-423F-9462-8F17C178BD35}) (Version: 1.0 - ASMAX ) ASUS nVidia Driver (x32 Version: 6.00.0000 - Nazwa firmy) Hidden ASUS Utilities (x32 Version: 1.00.0000 - Nazwa firmy) Hidden Axel Wielka Ucieczka 1.0 (HKLM-x32\...\{C99B8741-1A30-48B4-B99F-2079E7A2F96E}_is1) (Version: - IQ Publishing) Brother MFL-Pro Suite DCP-J315W (HKLM-x32\...\{FB83EAC4-E3F6-4666-B45B-44522F2344B6}) (Version: 1.0.3.0 - Brother Industries, Ltd.) BurnAware Professional 3.1 (HKLM-x32\...\BurnAware Professional Retail Dimitry_is1) (Version: - ) BurnInTest v7.0 Pro (HKLM-x32\...\BurnInTest_is1) (Version: 7.0 - Passmark Software) Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.6 - Licomp EMPiK Multimedia) Call of Duty(R) 4 - Modern Warfare(TM) (x32 Version: 1.00.0000 - Licomp EMPiK Multimedia) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: 1.6 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden Call of Duty: Modern Warfare 2 - Multiplayer (HKLM-x32\...\Steam App 10190) (Version: - Infinity Ward) Call of Duty: Modern Warfare 2 (HKLM-x32\...\Steam App 10180) (Version: - Infinity Ward) CCleaner (HKLM\...\CCleaner) (Version: 3.05 - Piriform) Cloudmark DesktopOne (HKLM\...\{BB6F44C1-9D2E-4714-BA2E-664787C2E858}) (Version: 1.1.50.0 - Cloudmark) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.40.2.0131 - DT Soft Ltd) Disney Zaplątani (HKLM-x32\...\{AEAEA61F-ECE0-4528-AD7A-8A916F5F576E}) (Version: 1.00.0000 - Disney Interactive Studios) DLL Suite 2013 (HKLM-x32\...\{885843E7-6CAC-4791-B7BF-1CD516017954}_is1) (Version: - ) Dokan Library 0.6.0 (HKLM-x32\...\DokanLibrary) (Version: - ) Emergency Download Driver (HKLM-x32\...\{05DBF996-83D0-4C40-8D3A-A6850800BC88}) (Version: 1.1.7.1439 - Nokia) e-pity 2012 wersja 4.0 (HKLM-x32\...\{089EC62B-72C9-490C-94BD-BA6B833A0EB2}}_is1) (Version: 4.0 - e-file sp. z o.o.) e-pity 6.2 za rok 2014 (HKLM-x32\...\{80D8170E-5590-218-B9ED-E24E4C99A18C}_is1) (Version: - e-file sp. z o.o.) Flash Update Installer (x32 Version: 5.0.7 - Microsoft) Hidden foobar2000 v1.1.7 (HKLM-x32\...\foobar2000) (Version: 1.1.7 - Peter Pawlowski) F-Secure Client Security — DeepGuard (HKLM-x32\...\F-Secure HIPS) (Version: - ) F-Secure Client Security - Ochrona przed wirusami i szpiegami (HKLM-x32\...\F-Secure Anti-Virus) (Version: - ) F-Secure Client Security - Ochrona przeglądania (HKLM-x32\...\F-Secure ExploitShield) (Version: - ) F-Secure Client Security - Osłona internetowa (HKLM-x32\...\F-Secure Internet Shield) (Version: - ) F-Secure Client Security - Skanowanie poczty e-mail (HKLM-x32\...\F-Secure E-mail Scanning) (Version: - ) F-Secure Client Security — Skanowanie ruchu w sieci Web (HKLM-x32\...\F-Secure Protocol Scanner) (Version: - ) F-Secure Client Security (HKLM-x32\...\{28DD9649-5FA3-41B7-8795-3069AFCC657E}) (Version: 9.00 - F-Secure Corporation) Fuse Installer (x32 Version: 5.0.7 - Nokia) Hidden Galeria fotografii (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Gameforge Live 2.0.6 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.6 - Gameforge) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.125 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden Gotham City Impostors: Free To Play (HKLM-x32\...\Steam App 206210) (Version: - Monolith Productions, Inc.) Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation) Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) JavaFX 2.1.1 (HKLM-x32\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation) Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden K-Lite Mega Codec Pack 10.9.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.9.0 - ) LinX (HKLM-x32\...\LinX) (Version: 0.6.4.0 - Dua|ist) Lumia Software Recovery Tool 5.0.7 (HKLM-x32\...\{2ec04fd8-3cde-4e6d-ae52-f6c3c1cda8d8}) (Version: 5.0.7 - Microsoft) Lumia Software Recovery Tool 5.0.7 (x32 Version: 5.0.7 - Microsoft) Hidden Lumia UEFI Blue Driver (HKLM-x32\...\{D6EEB835-5BBF-4F6B-8382-1681148D7771}) (Version: 1.1.8.1448 - Nokia) Madagaskar (HKLM-x32\...\InstallShield_{0FB261F3-6F16-43FD-A404-F377C169B937}) (Version: 1.00.0000 - Activision) Madagaskar (TM) (x32 Version: 1.00.0000 - Activision) Hidden Madagaskar 2(TM) (HKLM-x32\...\InstallShield_{F8C02517-4AC3-4026-8292-ACF23E98A7D7}) (Version: 1.00.0000 - Activision) Malwarebytes Anti-Malware wersja 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft) Microsoft .NET Framework 4.5.1 RC (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50861 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Camera Codec Pack (HKLM\...\{4BEC08B4-7569-45CB-B028-056BFBBBF513}) (Version: 16.4.1970.0624 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1558215053-3341806664-3877457628-1000\...\OneDriveSetup.exe) (Version: 17.3.1171.0714 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Windows Media Video 9 VCM (HKLM-x32\...\WMV9_VCM) (Version: - ) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft) MotoHelper MergeModules (x32 Version: 1.0.0 - Motorola) Hidden MotoHelper MergeModules (x32 Version: 1.2.0 - Motorola) Hidden Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) NapiProjekt 1.0.6.9 (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Nokia Connectivity Cable Driver (HKLM-x32\...\{D4BF151C-70A8-4CE2-906F-4173A575BAD9}) (Version: 7.1.182.0 - Nokia) Nokia Suite (HKLM-x32\...\Nokia Suite) (Version: 3.8.54.0 - Nokia) Nokia Suite (x32 Version: 3.8.54.0 - Nokia) Hidden NVIDIA GeForce Experience 2.5.11.45 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.11.45 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 341.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 341.74 - NVIDIA Corporation) NVIDIA Sterownik graficzny 341.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.74 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation) ONconnect (HKLM-x32\...\ONconnect_is1) (Version: v3.79b - Geonaute) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenOffice 4.1.1 (HKLM-x32\...\{B5373BA3-BAD7-4EAC-A9D2-B66B41B82C57}) (Version: 4.11.9775 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 8.5.0.4550 - Electronic Arts, Inc.) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.87.58.0 - Overwolf Ltd.) Pakiet sterowników systemu Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass (01/27/2014 9.0.0000.00000) (HKLM\...\9CA77E2A8332A0824C54DA611BBE4CA24AB1F750) (Version: 01/27/2014 9.0.0000.00000 - Google, Inc.) Pakiet sterowników systemu Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia) Panel sterowania NVIDIA 341.74 (Version: 341.74 - NVIDIA Corporation) Hidden PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia) PC Remote (HKLM-x32\...\{A9364C10-E23A-4598-8B56-790461B983C0}) (Version: 3.48 - PC Remote) PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) Poczta usługi Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Podstawowe programy Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Polski pakiet językowy dla programu Microsoft .NET Framework 4.5 PLK (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50709 - Microsoft Corporation) Product API Installer (x32 Version: 5.0.7 - Microsoft) Hidden PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.992 - Even Balance, Inc.) Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.11.1127.2009 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6316 - Realtek Semiconductor Corp.) Revo Uninstaller Pro 2.5.0 (HKLM\...\Revo Uninstaller Pro Retail zoo_is1) (Version: 2.5.0 - ) Revo Uninstaller Pro 2.5.9 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 2.5.9 - VS Revo Group, Ltd.) SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.11.45 - NVIDIA Corporation) Hidden SHREK FOREVER(TM) (x32 Version: 1.0 - Activision) Hidden Shrek Forever(TM) Gra (HKLM-x32\...\InstallShield_{1419B671-B248-48A6-87F2-D7B786CFB5F2}) (Version: 1.0 - Activision) Silicon Laboratories USBXpress Device (Driver Removal) (HKLM-x32\...\SIUSBXP&10C4&EA61) (Version: - Silicon Laboratories) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation) Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.) Spotify (HKU\S-1-5-21-1558215053-3341806664-3877457628-1000\...\Spotify) (Version: 0.9.15.27.g87efe634 - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.27614 - TeamViewer) This War of Mine (HKLM-x32\...\{5FD7B6B3-08C7-4FEE-9C37-A2134C699885}}_is1) (Version: 1 - 11 bit studios) Unity Web Player (HKU\S-1-5-21-1558215053-3341806664-3877457628-1000\...\UnityWebPlayer) (Version: 4.6.1f1 - Unity Technologies ApS) Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft) USB Serial Port Driver (HKLM-x32\...\{3D924542-36BE-49DE-8805-8887C0C8A912}) (Version: 1.1.6.1439 - Nokia) Warface Launcher (Beta) (HKLM-x32\...\{28D1723C-31C4-4A83-9799-DFFB3739026D}) (Version: 1.0.0 - Crytek GmbH) Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation) Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) WinRAR 4.00 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH) WinUsb CoInstallers (HKLM-x32\...\{B7D4B08A-9D89-4369-B51C-92CF8C03D2F8}) (Version: 1.1.8.1406 - Nokia) WinUSB Compatible ID Drivers (HKLM-x32\...\{316ED84C-ACDA-4F1F-8E64-52B7AFF8677D}) (Version: 1.1.9.1439 - Nokia) WinUSB Drivers ext (HKLM-x32\...\{238EAE31-4E9E-43CF-B244-C4879279E6AF}) (Version: 1.1.12.1439 - Nokia) Wise Disk Cleaner 8.42 (HKLM-x32\...\Wise Disk Cleaner_is1) (Version: 8.42 - WiseCleaner.com, Inc.) Wise Registry Cleaner 8.31 (HKLM-x32\...\Wise Registry Cleaner_is1) (Version: 8.31 - WiseCleaner.com, Inc.) World of Tanks (HKU\S-1-5-21-1558215053-3341806664-3877457628-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net) WPS Installation Program (HKLM-x32\...\{05DC65EA-6511-4626-A910-35CB047F8213}) (Version: 7.0 - Wireless) Xilisoft DPG Converter 6 (HKLM-x32\...\Xilisoft DPG Converter 6) (Version: 6.5.2.0127 - Xilisoft) XnView 1.99 (HKLM-x32\...\XnView_is1) (Version: 1.99 - Gougelet Pierre-e) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1558215053-3341806664-3877457628-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Grzegorz\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1558215053-3341806664-3877457628-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Grzegorz\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1558215053-3341806664-3877457628-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Grzegorz\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1558215053-3341806664-3877457628-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Grzegorz\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1558215053-3341806664-3877457628-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Grzegorz\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\FileSyncApi64.dll (Microsoft Corporation) ==================== Restore Points ========================= 31-07-2015 00:18:40 Revo Uninstaller Pro's restore point - Google Chrome 31-07-2015 00:52:19 F-Secure Client Security 9.00 build 851 Installation 31-07-2015 00:54:16 Advanced System~Protector ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2015-07-30 21:28 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {02B8E3BF-1889-48CD-969A-9EAD46C3D8B9} - System32\Tasks\Game_Booster_AutoUpdate => D:\Gry\Game Booster 3\AutoUpdate.exe Task: {0A522712-C9B2-46E6-9E51-696674B267BD} - System32\Tasks\{C71D86E1-F58B-4BBA-B309-AA16D99DED89} => pcalua.exe -a "D:\BitComet\HRT 2011 Skin Car 24.exe" -d D:\BitComet Task: {0DDE8262-6F5A-474F-B9D4-B83A0CB13B53} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {10633959-F59A-4346-B901-FB29269B2392} - System32\Tasks\{10160003-7770-46CB-802E-9AC0CFAAA991} => pcalua.exe -a "D:\BitComet\American Sniper 2014\Lite x264 Codec Pack.exe" -d "D:\BitComet\American Sniper 2014" Task: {13B39A70-A396-4E26-84CF-EF4A79739DD5} - System32\Tasks\Badosoft\Connectivity Fixer => C:\Program Files (x86)\Badosoft\Connectivity Fixer\Connectivity Fixer.exe Task: {193992A9-C023-474D-A9E5-7A355639FD5A} - System32\Tasks\{C7EA45BE-AE6C-433B-AD66-65A1F31539C4} => pcalua.exe -a C:\Users\Grzegorz\Desktop\spolszczenie_ts3.exe -d C:\Users\Grzegorz\Desktop Task: {1DE8B579-2F6B-4556-8D39-1A02A1D69AA9} - System32\Tasks\{1A8611EE-35C7-46C9-9C4D-D27124413051} => pcalua.exe -a G:\Redist\vcredist_x86.exe -d G:\Redist Task: {236DE855-A17D-4E9A-917B-501D708526BB} - System32\Tasks\{CFFB52B0-23F8-430C-9C0F-30F10B010742} => pcalua.exe -a C:\Users\Grzegorz\Downloads\vcredist_x64.exe -d C:\Users\Grzegorz\Downloads Task: {285C0D42-134A-4E06-968F-D8DEAEEA9080} - System32\Tasks\{3B927E24-905C-4DE0-B8C3-A83BAD982C42} => Chrome.exe Task: {2E87EDBB-CC2E-4EDA-83F6-95C4EE968B12} - System32\Tasks\{F03AC8B2-112C-4305-83F4-BA0337F56ACD} => pcalua.exe -a J:\setup.exe -d J:\ -c -a Task: {3032C4C1-1C33-4D16-9B60-06AC13456DA2} - System32\Tasks\{36C7C952-F95D-4E65-8A8F-72432CB0F938} => C:\Program Files (x86)\Electronic Arts\EADM\EADMUI.exe Task: {303843F0-9768-4A9F-AE95-AC43FAE4242C} - System32\Tasks\{E0FCB176-DC04-4786-B0D7-B6492A222876} => C:\Program Files (x86)\Electronic Arts\EADM\EADMUI.exe Task: {31E233F9-2C51-4C44-953F-153225AE371C} - \Microsoft\Windows\Maintenance\SMupdate2 No Task File <==== ATTENTION Task: {3238896F-EAB2-4036-B7D1-B070671CF397} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-31] (Google Inc.) Task: {3927018D-80EB-4FAB-820D-BF2F678CDA81} - System32\Tasks\{0BFC6B64-39D6-4A65-9679-B4BC53AE0E96} => pcalua.exe -a E:\install\data\Disk1\setup.exe -d E:\install\data\Disk1 Task: {39A5D48B-52B9-494D-9660-ED0C14AE9FF6} - System32\Tasks\{5B23C174-809A-4ACA-9BFC-9D8084182C07} => pcalua.exe -a C:\Users\Grzegorz\Desktop\NetTrafficMeter.exe -d C:\Users\Grzegorz\Desktop Task: {425E9958-1AAF-4747-82B3-44FFB1576996} - System32\Tasks\{E7F4E13F-1E9A-403D-820A-1648D922B998} => pcalua.exe -a "E:\Video DS\Do zainstalowania na PC\3.Batch DPG\BatchDPG_v1.0.exe" -d "E:\Video DS\Do zainstalowania na PC\3.Batch DPG" Task: {447ED3C9-AB2E-44B2-801F-1EC8C5CF2A2F} - System32\Tasks\{E3914E94-F2EC-42F3-87EE-FE48B5AEA6F4} => pcalua.exe -a "C:\Program Files (x86)\Xilisoft\DPG Converter 6\Uninstall.exe" Task: {45AEC723-394F-49A5-8895-B19121733178} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-31] (Google Inc.) Task: {4D86D6A5-15F7-4B2F-B353-7EFEE3710E8B} - System32\Tasks\{F4470730-AD63-46C0-B93F-577A66E871E6} => D:\BitComet\American Sniper 2014\Lite x264 Codec Pack.exe Task: {54147B45-CDD5-4397-BF59-7AFC355D9CE3} - System32\Tasks\{7F2A0EA1-F83B-4573-B308-97AA41F094D5} => pcalua.exe -a E:\facefilter\InstFFS.exe -d E:\facefilter Task: {554B7509-445C-4A9C-B7BD-8F02F894B590} - System32\Tasks\{FE060168-894A-4FE1-B414-143E33F011DC} => pcalua.exe -a C:\Users\Grzegorz\Desktop\JULKA\kopciuszek\Uninstall.exe -d C:\Users\Grzegorz\Desktop\JULKA\kopciuszek Task: {57B3E17D-FE15-40FD-9142-8C8ACCA55862} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1558215053-3341806664-3877457628-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe Task: {5AB2D069-DD9F-45C5-93DF-F4C72EF26D2C} - System32\Tasks\{AFCF9EA6-A186-4531-885E-8A79042FCD60} => C:\Program Files (x86)\Electronic Arts\EADM\EADMUI.exe Task: {60E519E7-05F9-43C5-B794-6F6396D3F276} - System32\Tasks\{41E39550-B701-476D-BF9F-E7D12632C100} => pcalua.exe -a E:\bsandwb\BSandWBdownloader.exe -d E:\bsandwb Task: {67779483-4EC9-4D35-A3D6-DB258F118AFD} - System32\Tasks\{B8FA8176-5116-4D74-B25F-DF83947E2FA9} => pcalua.exe -a F:\kr_v114w.EXE -d F:\ Task: {6930D285-DD3E-4624-B5E7-960F346453CE} - System32\Tasks\{0E7B29CE-4AD3-41DC-9460-73DFD63366F9} => pcalua.exe -a "D:\BitComet\BatchDPG 1.54\WinRAR 3.7 Full Corporate Edition\Setup.exe" -d "D:\BitComet\BatchDPG 1.54\WinRAR 3.7 Full Corporate Edition" Task: {6B306DAB-59FF-49AA-A3F9-6E9F22236000} - System32\Tasks\e-pity2015_kwiecien => C:\Program Files (x86)\e-file\e-pity2014\Assets\signxml.exe [2015-02-19] (e-file sp. z o.o.) Task: {880442CB-E4E7-4C61-82BF-777E0238A813} - System32\Tasks\{A7B8374F-80B7-463E-A37B-95310811BA2E} => pcalua.exe -a C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe -c /M{D1E30DE3-25B6-4E9C-940E-3FCA48ECB96B} /l1033 Task: {8B03E888-3532-4FD9-B9EF-523A10F50C37} - System32\Tasks\e-pity2012_kwiecien => C:\Program Files (x86)\e-file\e-pity2012\signxml.exe [2013-03-10] (e-file sp. z o.o.) Task: {8C6F627E-022B-4844-91E6-A17CE9084A6A} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe Task: {8FCDD174-EB3A-4FF7-BF6D-E073A5709D02} - System32\Tasks\{2ABE2A2A-F69A-429C-9846-CA93F45186B5} => C:\Program Files (x86)\Electronic Arts\EADM\EADMUI.exe Task: {90E32F3F-7116-43DF-BEA2-40596A2DBF2E} - \Microsoft\Windows\Multimedia\SMupdate3 No Task File <==== ATTENTION Task: {9206A37D-030A-421F-B7B0-3B865799D558} - System32\Tasks\{15C782D5-3381-4E7E-9394-6E60E7A9A434} => C:\Program Files (x86)\DLLSuite\2014\DLLSuite.exe [2014-01-22] () Task: {93DD45AC-D608-4C7D-AFE6-0D20AFDA1561} - System32\Tasks\{7A1A4887-8F78-4089-AC63-AD956983D9BE} => pcalua.exe -a C:\Users\Grzegorz\Desktop\flash_player.exe -d C:\Users\Grzegorz\Desktop Task: {99FFFB6F-FC17-4237-9009-613D0D6549A9} - System32\Tasks\e-pity2012_styczen => C:\Program Files (x86)\e-file\e-pity2012\signxml.exe [2013-03-10] (e-file sp. z o.o.) Task: {9D10F675-5265-402B-8E88-319FEE0B4DC6} - \SPBIW_UpdateTask_Time_35303236303932322d575b323478415a45375a456c No Task File <==== ATTENTION Task: {A205B25B-38CC-4E06-B2AD-DC0925C879A5} - System32\Tasks\{EEDE4790-C627-48C8-B3C1-0758C1255F9C} => pcalua.exe -a C:\Users\Grzegorz\Downloads\vcredist_x86.exe -d C:\Users\Grzegorz\Downloads Task: {A8AA248C-E2D0-460B-84B4-073BCF291DE4} - System32\Tasks\{4B22B703-CE0A-45EB-8E4F-2A3E26E621E1} => C:\Program Files (x86)\Electronic Arts\EADM\EADMUI.exe Task: {B1FBCD0B-4087-4CD4-B4A4-8278D07053D7} - System32\Tasks\e-pity2015_styczen => C:\Program Files (x86)\e-file\e-pity2014\Assets\signxml.exe [2015-02-19] (e-file sp. z o.o.) Task: {BAF52AA8-4FFB-4A4D-87E6-C1BC025ACB79} - System32\Tasks\{2BFCFD1A-2840-4D78-AF3A-F7D655F6E9B0} => C:\Program Files (x86)\Electronic Arts\EADM\EADMUI.exe Task: {C78E3DA1-44E7-4815-B54C-4C32E34807AB} - System32\Tasks\{CF37825E-1ABA-4B07-8F1D-D1E594E577B2} => C:\Program Files (x86)\Electronic Arts\EADM\EADMUI.exe Task: {CDFA4548-B7AD-4391-856B-C42F3017FC06} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1558215053-3341806664-3877457628-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe Task: {D142B5AE-2442-40CD-A538-FDF34C063319} - System32\Tasks\{37A4239E-82E8-4550-B773-139FF6C1814A} => pcalua.exe -a "E:\ASMAX USB 715N\WPS.exe" -d "E:\ASMAX USB 715N" Task: {D623139C-6950-43F1-945C-B8A49603A5CA} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2015-07-19] (Overwolf LTD) Task: {D62E1978-5AAE-4781-BAA1-4DD8677D7CD8} - System32\Tasks\{09E20135-F530-47D7-AD43-06C391BC1C77} => pcalua.exe -a G:\SETUP.EXE -d G:\ Task: {DCE5DC80-3F1F-4A05-838A-56F2F1DE53A7} - System32\Tasks\{F28487AA-8762-4717-81AF-8DB3203F3769} => pcalua.exe -a "D:\BitComet\Saison 2011 Upgrade.exe" -d D:\BitComet Task: {F452C53B-4AB4-41F5-9EC7-6F33F4C6ADE1} - System32\Tasks\{1433B9C9-292D-44B8-88F6-41CA283B014D} => pcalua.exe -a G:\SETUP.EXE -d G:\ Task: {FC71D7B8-97FA-4945-B0BD-5EEADD27448B} - System32\Tasks\{3A396245-AE8E-4D82-9343-EF6B79826B88} => pcalua.exe -a D:\Gry\steam\steam.exe -c steam://uninstall/38830 Task: {FEF63FCC-1F7F-4DE2-A2FD-9D824D59C425} - System32\Tasks\{C1924C54-5D70-4D54-B2C1-9C3D6E34A7AA} => pcalua.exe -a E:\Audio\MSHDQFE\ASetup.exe -d E:\Audio\MSHDQFE (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2011-12-04 02:05 - 2015-06-29 22:42 - 00116552 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-03-02 11:46 - 2015-03-02 11:46 - 00094832 _____ () C:\Program Files (x86)\Common Files\Microsoft\Care Suite\ADUService\ADUService.exe 2011-01-10 14:49 - 2011-01-10 14:49 - 00014848 _____ () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe 2011-01-14 09:06 - 2015-02-20 11:40 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-08-17 17:52 - 2013-02-01 14:58 - 03571712 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\OscarEditor.exe 2013-02-09 14:58 - 2005-04-22 06:36 - 00143360 ____R () C:\Windows\system32\BrSNMP64.dll 2015-02-11 11:57 - 2009-11-26 11:36 - 00088688 _____ () C:\Program Files (x86)\F-Secure\Common\OnDemandInstallWatcher.dll 2015-02-11 11:57 - 2009-11-26 11:34 - 00215664 _____ () c:\program files (x86)\f-secure\daas2\daas2.dll 2015-02-11 12:02 - 2015-02-11 12:02 - 00030888 _____ () C:\Program Files (x86)\F-Secure\Anti-Virus\minifilter\hashlib_x86.dll 2015-02-11 11:57 - 2015-02-11 12:01 - 00949288 _____ () C:\Program Files (x86)\F-Secure\Anti-Virus\fm4av.dll 2015-02-11 11:57 - 2009-11-26 11:35 - 00036864 _____ () C:\Program Files (x86)\F-Secure\Anti-Virus\FSAVHRES.eng 2015-05-05 14:40 - 2015-07-14 21:06 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2014-08-17 17:52 - 2010-12-02 17:56 - 00815104 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\OSD_Text\OSD_Text.dll 2014-08-17 17:52 - 2011-01-09 20:45 - 00088064 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\DLL\DLL_MouseDeviceManager.dll 2014-08-17 17:52 - 2011-04-06 16:06 - 00067072 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\DLL\DLL_PenSuit.dll 2014-08-17 17:52 - 2012-06-14 15:59 - 02414080 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\ScreenCapture\ScreenCapture.dll 2014-08-17 17:52 - 2011-03-21 19:33 - 00999424 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\TrayIconWebAdvertisement\TrayIconWebAdvertisement.dll 2014-08-17 17:52 - 2011-05-20 16:52 - 00901632 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\ProfileHint\ProfileHint.dll 2014-08-17 17:52 - 2010-12-03 14:43 - 00943104 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\KeySettingRemind\KeySettingRemind.dll 2014-08-17 17:52 - 2010-09-20 14:18 - 00085504 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\DLL\DLL_ZoomControl.dll 2014-08-17 17:52 - 2010-09-20 14:18 - 00054272 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\DLL\DLL_ScrollbarControl.dll 2014-08-17 17:52 - 2011-04-12 15:14 - 00063488 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\DLL\DLL_AnalyzeGesturesInRight.dll 2014-08-17 17:52 - 2010-11-01 20:16 - 00062976 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\DLL\DLL_AnalyzeGesturesInOne.dll 2014-08-17 17:52 - 2012-04-27 11:40 - 00118272 _____ () C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\DLL\DLL_Wheel4D.dll 2015-02-11 11:57 - 2009-11-26 11:35 - 00440944 _____ () C:\Program Files (x86)\F-Secure\FSGUI\about.dll 2015-02-11 11:57 - 2009-11-26 11:35 - 00088688 _____ () C:\Program Files (x86)\F-Secure\FSGUI\aboutres.dll 2015-02-11 11:57 - 2009-11-26 11:35 - 00086016 _____ () C:\Program Files (x86)\F-Secure\FSGUI\strres.eng 2015-02-11 11:57 - 2009-11-26 11:35 - 00551536 _____ () C:\Program Files (x86)\F-Secure\FSGUI\gres.dll 2015-02-11 11:57 - 2009-11-26 11:35 - 00045056 _____ () C:\Program Files (x86)\F-Secure\FSGUI\fsavures.eng 2015-02-11 11:57 - 2009-11-26 11:35 - 00143360 _____ () C:\Program Files (x86)\F-Secure\FSGUI\flyerres.eng 2014-10-31 13:43 - 2009-02-27 17:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:CB0AACC9 AlternateDataStreams: C:\ProgramData\TEMP:D1B5B4F1 ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\.DEFAULT\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\.DEFAULT\...\freerealms.com -> freerealms.com IE trusted site: HKU\.DEFAULT\...\soe.com -> soe.com IE trusted site: HKU\.DEFAULT\...\sony.com -> sony.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1558215053-3341806664-3877457628-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Grzegorz\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is disabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: ArgenteRC => "C:\Program Files (x86)\Argente - Registry Cleaner\ArgenteRC.exe" /AutoClean MSCONFIG\startupreg: BrStsMon00 => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN MSCONFIG\startupreg: ControlCenter3 => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe /autorun MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: NokiaSuite.exe => C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe -tray MSCONFIG\startupreg: ONconnectService => C:\Program Files (x86)\ONconnect\resources\service\win\ONconnect_service.exe MSCONFIG\startupreg: OODefragTray => C:\Program Files\OO Software\Defrag\oodtray.exe ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{CAD12FF6-F763-4C8C-A8D3-9BDA3BEE7D90}] => (Allow) LPort=26675 FirewallRules: [{EEC96408-FCE8-400B-A3A3-AC8283E9D935}] => (Allow) D:\Gry\COD-4\iw3mp.exe FirewallRules: [{A7502AA8-0A8E-4066-BBD7-72DCC42713F1}] => (Allow) D:\Gry\COD-4\iw3mp.exe FirewallRules: [{44C032FF-0FC3-43D7-A8B0-40A053150CB5}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{7D352645-A8E8-45DC-AC01-D6BF4EA16A1D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{817AD965-871A-468C-90C7-89A9AE7B3B5E}] => (Allow) C:\Windows\SysWOW64\msiexec.exe FirewallRules: [{9DCCD0C3-D3E8-4FC5-83D5-CDDE97A789D2}] => (Allow) C:\Windows\SysWOW64\msiexec.exe FirewallRules: [{2EA122BD-A8A6-4A20-8E95-A3E9509F0031}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{D2E1CCD5-0DD0-4F1B-A6AC-20625B03AF62}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{55FF9BB5-DC99-4352-BBAD-F035350226CF}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{19E52F14-E2EC-485C-A180-9970E8C1E37E}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{80018912-BB63-443E-ADF0-478676C45AA0}] => (Allow) LPort=54925 FirewallRules: [{0C9EA420-00EA-49C8-B58C-BFC39CBEEBE9}] => (Allow) D:\Gry\Shrek forever\ShrekForeverAfter.exe FirewallRules: [{28A2D5FF-2F80-4C53-8132-691A6174968B}] => (Allow) D:\Gry\Shrek forever\ShrekForeverAfter.exe FirewallRules: [{E62FC74C-095C-4D15-A3CE-321D575BF3D8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{112A4B5D-4E58-4EC2-ABFE-692473BD9061}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{E54BC97D-DF1D-4778-B5A4-A880C0B00CD4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{FE203492-2751-4B6E-9397-156D85694EF2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{18FB378F-2747-41D3-ACAF-47C9C9ED11D4}] => (Allow) LPort=80 FirewallRules: [{DA5ABE11-62F5-4899-A64E-E1083988DF1E}] => (Allow) LPort=443 FirewallRules: [{4BBD83E1-5A39-46F5-8DCE-65693387D4D1}] => (Allow) LPort=20010 FirewallRules: [{9983D459-D4F2-4806-B78A-08B67CEDB36E}] => (Allow) LPort=3478 FirewallRules: [{232228AB-AF69-4E6D-8A36-5443D6A4A4DF}] => (Allow) LPort=7850 FirewallRules: [{906EB102-1B41-4AFC-9054-2208E29C1568}] => (Allow) LPort=27022 FirewallRules: [{CF3E0DBE-297D-4A4D-9DA4-7C8EDA8F90D2}] => (Allow) LPort=6881 FirewallRules: [{158C58B1-C70E-4B46-A3E9-B25DE9D34FEC}] => (Allow) LPort=33333 FirewallRules: [{638C3892-770B-45C3-A683-22C3FD057321}] => (Allow) LPort=20443 FirewallRules: [{81D2A5DE-D9A2-4C46-8045-A11D1D6DB7F9}] => (Allow) LPort=8090 FirewallRules: [{EE615F21-F2F9-42E6-A979-7CB06AC63122}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{819412F0-66A0-4CB6-97BF-940079A69E35}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{FEAA197A-F03E-49B8-8E57-64811D1FE9D5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{05475E36-84C5-4A38-A870-9672E384B3FE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{06063C4E-7417-4C5B-BB68-29305A7EEC14}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{236A1CDF-ECE0-435E-AF6A-6FC808DC9543}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{0D47491E-DB5D-4193-A6F2-0A3022121488}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{0D8F37C1-E7FD-4734-9F55-EDFF6D29CE09}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe FirewallRules: [{283F4B8B-A6A8-4171-B81F-D097B07C7534}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe FirewallRules: [{8AED8A5B-63C9-4146-AA8A-4EA9D53FCE87}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe FirewallRules: [{B8F2DC8E-EA8A-4D48-ADCB-7FA32A29F0F5}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe FirewallRules: [{BBA0D586-603C-48EA-8949-19CB19107477}] => (Allow) C:\Users\Grzegorz\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{BF3F5977-7A81-4A41-B36E-CF49AAA52715}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{61522382-C969-4338-A31A-9B0531219F3C}] => (Allow) LPort=2869 FirewallRules: [{22A32FC5-EC3A-46EE-A1D0-7BE63A7AF1E4}] => (Allow) LPort=1900 FirewallRules: [{1642C3CA-8F9E-4CC2-9394-6B2A978C8AA1}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{B1840A49-E00A-4D77-9F64-9C7A7E71C388}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{4CA7D243-4341-485A-A4D7-D610CE25CD8E}] => (Allow) D:\Gry\SteamLibrary\SteamApps\common\Gotham City Impostors F2P\Impostors.exe FirewallRules: [{C2A5CDB3-7BE9-4FF7-A397-6ABAB95A92E9}] => (Allow) D:\Gry\SteamLibrary\SteamApps\common\Gotham City Impostors F2P\Impostors.exe FirewallRules: [{57556C55-C5A7-46BC-9432-82FE719858D8}] => (Allow) D:\Gry\SteamLibrary\SteamApps\common\Gotham City Impostors F2P\Engine.exe FirewallRules: [{F54ED251-DF8D-4A6F-95BB-D2227F9FFF26}] => (Allow) D:\Gry\SteamLibrary\SteamApps\common\Gotham City Impostors F2P\Engine.exe FirewallRules: [{B492E9FC-9519-4602-A835-9F78F9644C6E}] => (Allow) LPort=54925 FirewallRules: [{A0E723DA-F6C4-4B1C-9720-634DFBCD8090}] => (Allow) C:\Users\Grzegorz\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{61B085FB-D12E-42E6-9F5D-3339D84A092A}] => (Allow) C:\Users\Grzegorz\AppData\Roaming\Spotify\spotify.exe FirewallRules: [{9BC48442-BD68-4B51-874D-CA9E6B454370}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{2450E57C-BC98-4642-A69F-B56473EEC10C}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{E481C533-202E-4881-9DEA-730799290A00}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{FB1B5143-CBE0-41D5-A08F-E30D767EFB9C}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{C5061124-0056-4AF8-9276-9CD7DB849490}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe FirewallRules: [{FD781929-F54F-415F-8E6D-F5AE9DE3A734}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe FirewallRules: [{FFC0921A-22BF-42A8-8723-1ACFD6A434A7}] => (Allow) D:\Gry\GameforgeLive\gfl_client.exe FirewallRules: [{B58C10C3-AC09-4E5B-8B76-8050E6755B34}] => (Allow) LPort=49174 FirewallRules: [{1D7CBB33-5D61-4F60-9AFD-CA23EC91DE05}] => (Allow) LPort=5000 FirewallRules: [{215DBC88-A423-44D6-8C88-BB5CB21CE7B7}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{675F0575-416B-474E-B7A4-AF8B66299F27}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{192606DF-5E32-43E4-B0D6-0C84C0E3E485}] => (Allow) D:\Gry\SteamLibrary\SteamApps\common\Call of Duty Modern Warfare 2\iw4sp.exe FirewallRules: [{4DF8E90C-F7FD-4F16-9392-96F41E6F62F5}] => (Allow) D:\Gry\SteamLibrary\SteamApps\common\Call of Duty Modern Warfare 2\iw4sp.exe FirewallRules: [{67D93D3F-EC1F-4BA0-B3BA-3F4FDBD5B695}] => (Allow) D:\Gry\SteamLibrary\SteamApps\common\Call of Duty Modern Warfare 2\iw4mp.exe FirewallRules: [{5ABC1EAD-3722-4B3C-BD4B-DB9C26845B2A}] => (Allow) D:\Gry\SteamLibrary\SteamApps\common\Call of Duty Modern Warfare 2\iw4mp.exe FirewallRules: [{85CC19BC-B278-47A3-A6D9-26A71E50A014}] => (Allow) C:\Program Files (x86)\nokia\nokia suite\nokiasuite.exe FirewallRules: [{CE67ACA9-3D93-4C73-A3E7-96F7B4ADCCED}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{024E4720-DECF-41E4-B169-738C25D3D7CB}] => (Allow) C:\Users\Grzegorz\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{7D9986D6-C326-466D-9BDA-7FA7A673F095}] => (Allow) C:\Users\Grzegorz\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{DD573559-3649-4B3A-8392-5BB01A41E39B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{C79FF0B1-0470-4CF3-9F59-4E4D410D2C27}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{A5BFB4E8-3DC9-40F3-A53F-CA9DA3E13CC7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{D73BA8C5-4DD0-4699-8DA0-15CB3082E256}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{2F0DAD6C-9599-496A-8172-C2FDB01214F5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{06A20346-69D0-4061-B1FD-1B6484D4DE16}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/31/2015 10:53:49 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program chrome.exe w wersji 44.0.2403.125 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: d90 Godzina rozpoczęcia: 01d0cb6b4fe84141 Godzina zakończenia: 392 Ścieżka aplikacji: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Identyfikator raportu: 9116a7bf-3761-11e5-8244-6cf049e8832c Error: (07/31/2015 10:49:47 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program FRST64.exe w wersji 30.7.2015.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: ff0 Godzina rozpoczęcia: 01d0cb6da765cfa5 Godzina zakończenia: 0 Ścieżka aplikacji: C:\Users\Grzegorz\Downloads\FRST64.exe Identyfikator raportu: f399dbab-3760-11e5-8244-6cf049e8832c Error: (07/31/2015 08:57:56 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: ) Description: 1 2015-07-31 08:57:55+02:00 grzegorz-prv Grzegorz-prv\Grzegorz F-Secure Anti-Virus Spyware detected: Type: riskware Family: Name: Application.Generic.1438324 Object: C:\Users\Grzegorz\AppData\Local\Temp\E592A50D-87A9-437F-9F9B-31AA642D3A9Bmp\UninstallManager.exe Error: (07/31/2015 02:11:42 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: ) Description: 13 2015-07-31 02:11:42+02:00 grzegorz-prv Grzegorz-prv\Grzegorz F-Secure Anti-Virus Crash detected. Error: (07/31/2015 12:47:54 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: ) Description: 4 2015-07-31 00:47:54+02:00 grzegorz-prv Grzegorz-prv\Grzegorz F-Secure Anti-Virus Malicious code found in file C:\Users\Grzegorz\AppData\Local\Temp\sptemp\mapisend.exe_635739004732391758. Infection: Gen:Variant.Kazy.140098 Action: The file was quarantined. Error: (07/31/2015 12:47:31 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: ) Description: 3 2015-07-31 00:47:29+02:00 grzegorz-prv Grzegorz-prv\Grzegorz F-Secure Anti-Virus Malicious code found in file C:\Users\Grzegorz\AppData\Local\Temp\sptemp\mapisend.exe_635739003704552969. Infection: Gen:Variant.Kazy.140098 Action: The file was quarantined. Error: (07/31/2015 12:09:22 AM) (Source: VSS) (EventID: 8194) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas badania interfejsu IVssWriterCallback. hr = 0x80070005, Odmowa dostępu. . To jest często spowodowane przez niepoprawne ustawienia zabezpieczeń w procesie zapisującym lub żądającym. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {82379afe-607c-4eb7-8e91-eaa52e31af2d} Error: (07/30/2015 11:48:39 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\wbem\wmiprvse.exe; Opis = ComboFix created restore point; Błąd = 0x8007043c). Error: (07/30/2015 11:48:39 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance. hr = 0x8007043c, Tej usługi nie można uruchomić w trybie awaryjnym . Operacja: Tworzenie wystąpienia serwera VSS Error: (07/30/2015 11:48:39 PM) (Source: VSS) (EventID: 18) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: W trybie awaryjnym nie można uruchomić serwera usługi COM z identyfikatorem CLSID {e579ab5f-1cc4-44b4-bed9-de0991ff0623} i nazwą IVssCoordinatorEx2. W trybie awaryjnym nie można uruchomić Usługi kopiowania woluminów w tle. [0x8007043c, Tej usługi nie można uruchomić w trybie awaryjnym ] Operacja: Tworzenie wystąpienia serwera VSS System errors: ============= Error: (07/31/2015 11:39:28 AM) (Source: WMPNetworkSvc) (EventID: 14324) (User: ) Description: WMPNetworkSvc0x80004002 Error: (07/31/2015 11:10:41 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: EIO_XP Error: (07/31/2015 09:47:42 AM) (Source: F-Secure Gatekeeper) (EventID: 1) (User: ) Description: \Device\HarddiskVolume1\Windows\System32\lsass.exe Error: (07/31/2015 09:47:41 AM) (Source: F-Secure Gatekeeper) (EventID: 1) (User: ) Description: \Device\HarddiskVolume1\Users\Grzegorz\AppData\Local\Microsoft\Windows ...dbstore.ini Error: (07/31/2015 09:47:39 AM) (Source: F-Secure Gatekeeper) (EventID: 1) (User: ) Description: \Device\HarddiskVolume1\Windows\System32\csrss.exe Error: (07/31/2015 09:24:21 AM) (Source: WMPNetworkSvc) (EventID: 14324) (User: ) Description: WMPNetworkSvc0x80004002 Error: (07/31/2015 08:38:44 AM) (Source: WMPNetworkSvc) (EventID: 14324) (User: ) Description: WMPNetworkSvc0x80004002 Error: (07/31/2015 08:38:40 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {995C996E-D918-4A8C-A302-45719A6F4EA7} Error: (07/31/2015 08:38:02 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: EIO_XP Error: (07/31/2015 06:21:36 AM) (Source: WMPNetworkSvc) (EventID: 14324) (User: ) Description: WMPNetworkSvc0x80004002 Microsoft Office: ========================= Error: (07/31/2015 10:53:49 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: chrome.exe44.0.2403.125d9001d0cb6b4fe84141392C:\Program Files (x86)\Google\Chrome\Application\chrome.exe9116a7bf-3761-11e5-8244-6cf049e8832c Error: (07/31/2015 10:49:47 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: FRST64.exe30.7.2015.0ff001d0cb6da765cfa50C:\Users\Grzegorz\Downloads\FRST64.exef399dbab-3760-11e5-8244-6cf049e8832c Error: (07/31/2015 08:57:56 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: ) Description: 1 2015-07-31 08:57:55+02:00 grzegorz-prv Grzegorz-prv\Grzegorz F-Secure Anti-Virus Spyware detected: Type: riskware Family: Name: Application.Generic.1438324 Object: C:\Users\Grzegorz\AppData\Local\Temp\E592A50D-87A9-437F-9F9B-31AA642D3A9Bmp\UninstallManager.exe Error: (07/31/2015 02:11:42 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: ) Description: 13 2015-07-31 02:11:42+02:00 grzegorz-prv Grzegorz-prv\Grzegorz F-Secure Anti-Virus Crash detected. Error: (07/31/2015 12:47:54 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: ) Description: 4 2015-07-31 00:47:54+02:00 grzegorz-prv Grzegorz-prv\Grzegorz F-Secure Anti-Virus Malicious code found in file C:\Users\Grzegorz\AppData\Local\Temp\sptemp\mapisend.exe_635739004732391758. Infection: Gen:Variant.Kazy.140098 Action: The file was quarantined. Error: (07/31/2015 12:47:31 AM) (Source: FSecure-FSecure-F-Secure Anti-Virus) (EventID: 103) (User: ) Description: 3 2015-07-31 00:47:29+02:00 grzegorz-prv Grzegorz-prv\Grzegorz F-Secure Anti-Virus Malicious code found in file C:\Users\Grzegorz\AppData\Local\Temp\sptemp\mapisend.exe_635739003704552969. Infection: Gen:Variant.Kazy.140098 Action: The file was quarantined. Error: (07/31/2015 12:09:22 AM) (Source: VSS) (EventID: 8194) (User: ) Description: 0x80070005, Odmowa dostępu. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {82379afe-607c-4eb7-8e91-eaa52e31af2d} Error: (07/30/2015 11:48:39 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: C:\Windows\system32\wbem\wmiprvse.exeComboFix created restore point0x8007043c Error: (07/30/2015 11:48:39 PM) (Source: VSS) (EventID: 8193) (User: ) Description: CoCreateInstance0x8007043c, Tej usługi nie można uruchomić w trybie awaryjnym Operacja: Tworzenie wystąpienia serwera VSS Error: (07/30/2015 11:48:39 PM) (Source: VSS) (EventID: 18) (User: ) Description: {e579ab5f-1cc4-44b4-bed9-de0991ff0623}IVssCoordinatorEx20x8007043c, Tej usługi nie można uruchomić w trybie awaryjnym Operacja: Tworzenie wystąpienia serwera VSS CodeIntegrity: =================================== Date: 2015-07-31 11:10:17.288 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\EIO64_XP.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-31 11:10:17.226 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\EIO64_XP.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-31 08:37:26.867 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\EIO64_XP.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-31 08:37:26.805 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\EIO64_XP.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-31 00:58:00.976 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\EIO64_XP.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-31 00:58:00.914 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\EIO64_XP.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-31 00:05:28.710 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\EIO64_XP.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-31 00:05:28.647 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\EIO64_XP.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-30 23:09:23.774 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\EIO64_XP.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-30 23:09:23.711 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\EIO64_XP.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Processor: Intel(R) Core(TM)2 Duo CPU E8400 @ 3.00GHz Percentage of memory in use: 39% Total physical RAM: 4092.49 MB Available physical RAM: 2466.45 MB Total Virtual: 8183.18 MB Available Virtual: 6086.59 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:99.36 GB) (Free:20.44 GB) NTFS ==>[drive with boot components (obtained from BCD)] Drive d: (D) (Fixed) (Total:198.72 GB) (Free:93.26 GB) NTFS Drive e: (DIR-615) (CDROM) (Total:0.06 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 60D04788) Partition 1: (Active) - (Size=99.4 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=198.7 GB) - (Type=OF Extended) ==================== End of log ============================