Additional scan result of Farbar Recovery Scan Tool (x64) Version:30-07-2015 Ran by Roland (2015-08-01 05:11:20) Running from G:\PROGRAMY Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-815740013-245853561-3982639562-500 - Administrator - Disabled) Gość (S-1-5-21-815740013-245853561-3982639562-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-815740013-245853561-3982639562-1002 - Limited - Enabled) Roland (S-1-5-21-815740013-245853561-3982639562-1000 - Administrator - Enabled) => C:\Users\Roland ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: ZoneAlarm Antivirus (Enabled - Up to date) {23B6D20A-C2DE-B3F5-C67D-07ECD854E6A9} AS: ZoneAlarm Anti-Spyware (Enabled - Up to date) {98D733EE-E4E4-BC7B-FCCD-3C9EA3D3AC14} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: ZoneAlarm Firewall (Enabled) {1B8D532F-88B1-B2AD-ED22-AED92687A1D2} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 4game (HKLM-x32\...\4game) (Version: 3.5.5.152 - Innova Systems) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.1.102.64 - Adobe Systems Incorporated) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated) Adobe Reader XI (11.0.12) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) Alternative Look for Triss (HKLM-x32\...\Alternative Look for Triss_is1) (Version: 1.0.0.0 - GOG.com) Alternative Look for Yennefer (HKLM-x32\...\Alternative Look for Yennefer_is1) (Version: 1.0.0.0 - GOG.com) AMD Catalyst Install Manager (HKLM\...\{14D58A97-B60E-A858-34D8-95469C02F7EC}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Ballad Heroes - Neutral Gwent Card Set (HKLM-x32\...\Ballad Heroes - Neutral Gwent Card Set_is1) (Version: 1.0.0.0 - GOG.com) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Beard and Hairstyle Set (HKLM-x32\...\Beard and Hairstyle Set_is1) (Version: 1.0.0.0 - GOG.com) C# to C++ /CX Converter (HKLM-x32\...\{440BCA8B-D950-4686-8B3A-740F3EDAD7DC}) (Version: 0.0.0.4 - Mr O. Duzhar) CCleaner (HKLM\...\CCleaner) (Version: 5.08 - Piriform) Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version: - Cheat Engine) CodeBlocks (HKU\S-1-5-21-815740013-245853561-3982639562-1000\...\CodeBlocks) (Version: 13.12 - The Code::Blocks Team) CPUID CPU-Z 1.72.1 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) Curse Client (HKU\S-1-5-21-815740013-245853561-3982639562-1000\...\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse) DH Driver Cleaner Professional Edition (HKLM-x32\...\Driver Cleaner Pro) (Version: Version 1.5 - Ruud Ketelaars) Diagram Designer (HKLM-x32\...\{BE725DFC-550D-4C4B-BA2D-B1AE3CC0E33F}) (Version: 1.27.3 - MeeSoft) Elite Crossbow Set (HKLM-x32\...\Elite Crossbow Set_is1) (Version: 1.0.0.0 - GOG.com) Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.96 - Etron Technology) Etron USB3.0 Host Controller (x32 Version: 0.96 - Etron Technology) Hidden Explorer Suite III (HKLM\...\Explorer Suite_is1) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.125 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden Informacje o systemie Creative (HKLM-x32\...\SysInfo) (Version: 1.10 - Creative Technology Limited) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.3.1427 - Intel Corporation) Intel(R) Smart Connect Technology 2.0 x64 (HKLM\...\{12ABC13D-6540-483D-92B9-30CE1667B002}) (Version: 2.0.1083.0 - Intel) Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan) Java 8 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418051F0}) (Version: 8.0.510 - Oracle Corporation) LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) LG PC Suite (HKLM-x32\...\LG PC Suite) (Version: 5.3.20.20141013 - LG Electronics) LG United Mobile Drivers (HKLM-x32\...\{15A5D29A-F209-49FD-BA47-5E4C882FF496}) (Version: 3.12.1.0 - LG Electronics) Lineage® II: Freya (High Five) (HKLM-x32\...\{21040472-F8DF-48A9-A093-2986C1495670}) (Version: 198 - NCsoft) LineageII EU (HKLM-x32\...\4game_lineage2eu) (Version: - Innova Systems) Macro Recorder Lite 4.71.0 (HKLM-x32\...\{22C234D4-58DF-455D-B2C0-B1DE03602EAC}_is1) (Version: 4.71.0 - Jitbit Software) Malwarebytes Anti-Malware wersja 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Mozilla Thunderbird 31.7.0 (x86 pl) (HKLM-x32\...\Mozilla Thunderbird 31.7.0 (x86 pl)) (Version: 31.7.0 - Mozilla) MPC-HC 1.7.8 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.8 - MPC-HC Team) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) New Quest - Contract - Skellige's Most Wanted (HKLM-x32\...\New Quest - Contract: Skellige's Most Wanted_is1) (Version: 1.0.0.0 - GOG.com) New Quest - Contract Missing Miners (HKLM-x32\...\New Quest - Contract Missing Miners_is1) (Version: 1.0.0.0 - GOG.com) New Quest - Fool's Gold (HKLM-x32\...\New Quest - Fool's Gold_is1) (Version: 1.0.0.0 - GOG.com) New Quest - Scavenger Hunt - Wolf School Gear (HKLM-x32\...\New Quest - Scavenger Hunt: Wolf School Gear_is1) (Version: 1.0.0.0 - GOG.com) New Quest - Where the Cat and Wolf Play... (HKLM-x32\...\New Quest - Where the Cat and Wolf Play..._is1) (Version: 1.0.0.0 - GOG.com) Nilfgaardian Armor Set (HKLM-x32\...\Nilfgaardian Armor Set_is1) (Version: 1.0.0.0 - GOG.com) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) OpenSSL 1.0.1j (64-bit) (HKLM\...\OpenSSL (64-bit)_is1) (Version: - OpenSSL Win64 Installer Team) Opera Next 12.50 internal build 1583 (HKLM\...\Opera 12.50.1583) (Version: 12.50.1583 - Opera Software ASA) Origin (HKLM-x32\...\Origin) (Version: 9.5.2.2829 - Electronic Arts, Inc.) Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.23.623.2010 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6167 - Realtek Semiconductor Corp.) RivaTuner Statistics Server 6.2.0 (HKLM-x32\...\RTSS) (Version: 6.2.0 - Unwinder) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games) Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.5.1 - Samsung Electronics) Samsung SSD 840 EVO Performance Restoration (HKLM-x32\...\{B4B18E77-4C37-46F2-BC38-9451E65C9AEC}_is1) (Version: 1.0 - Samsung Electronics) Skellige Armor Set (HKLM-x32\...\Skellige Armor Set_is1) (Version: 1.0.0.0 - GOG.com) Sound Blaster Tactic(3D) Sigma (HKLM-x32\...\{93CFCA51-4484-4211-89EB-39ED3CBDBEB1}) (Version: 1.0 - Creative Technology Limited) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKU\S-1-5-21-815740013-245853561-3982639562-1000\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Temerian Armor Set (HKLM-x32\...\Temerian Armor Set_is1) (Version: 1.0.0.0 - GOG.com) The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.0.0 - GOG.com) The Witcher 3: Wild Hunt - New Finisher Animations (HKLM-x32\...\New Finisher Animations_is1) (Version: 1.0.0.0 - GOG.com) Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH) TP-LINK TL-WN721N_TL-WN722N Driver (HKLM-x32\...\{86A7EED0-02D0-4D91-8183-8D2F23F5E6AE}) (Version: 1.3.1 - TP-LINK) Tyrian 2000 (HKLM-x32\...\1207658901_is1) (Version: 2.1.0.13 - GOG.com) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) ZoneAlarm Antivirus (x32 Version: 13.3.209.000 - Check Point Software Technologies Ltd.) Hidden ZoneAlarm Firewall (x32 Version: 13.3.209.000 - Check Point Software Technologies Ltd.) Hidden ZoneAlarm Free Antivirus + Firewall (HKLM-x32\...\ZoneAlarm Free Antivirus + Firewall) (Version: 13.3.209.000 - Check Point) ZoneAlarm Security (x32 Version: 13.3.209.000 - Check Point Software Technologies Ltd.) Hidden ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-815740013-245853561-3982639562-1000_Classes\CLSID\{0c204bad-27b4-4156-bc76-a8c1b974a4f7}\InprocServer32 -> C:\Windows\system32\dfshim.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-815740013-245853561-3982639562-1000_Classes\CLSID\{8d4de7a1-a14b-4be8-ac33-fd2e1d728e42}\InprocServer32 -> C:\Windows\system32\dfshim.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-815740013-245853561-3982639562-1000_Classes\CLSID\{9350b707-94b5-4c05-a3b3-6e62d8c434cf}\InprocServer32 -> C:\Windows\system32\dfshim.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-815740013-245853561-3982639562-1000_Classes\CLSID\{cb813e81-bcdf-4f3b-bf9e-ee5a6104f9d7}\InprocServer32 -> C:\Windows\system32\dfshim.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-815740013-245853561-3982639562-1000_Classes\CLSID\{ec2af7d7-5dc9-4536-9a58-918cd1008d44}\InprocServer32 -> C:\Windows\system32\dfshim.dll (Microsoft Corporation) ==================== Restore Points ========================= ATTENTION: System Restore is disabled ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2015-07-27 01:09 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {014A7256-EDCF-4AFC-88D4-262A4285AA37} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\hkl.exe [2015-07-17] (Piriform Ltd) Task: {0F9EB1C1-4E89-4AF4-B4CB-44B2EDC57CB7} - System32\Tasks\{92F0B52F-1E2C-4B33-BBFE-DF77978FDBB9} => pcalua.exe -a "C:\GRY\Diablo II\Save\do d2\Hero_Editor_V104\setup.exe" -d "C:\GRY\Diablo II\Save\do d2\Hero_Editor_V104" Task: {2CE53D92-7E87-437F-BADE-C3D83D88A041} - System32\Tasks\Adobe online update program => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {501C2229-1704-44F6-8976-47B2547A0FAB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {5B00A9F9-1F46-4AAB-883C-F5D5E23495A1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-28] (Google Inc.) Task: {61FCAD1D-2749-489A-A6DA-5233557D6F53} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-06-08] (Oracle Corporation) Task: {95C4D5B1-5B09-4D28-A4C5-A4B1DCA3455E} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [2014-09-28] (Samsung Electronics.) Task: {E4F2FD2B-979C-40BA-95E1-386643BD7671} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-28] (Google Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2010-01-30 03:40 - 2010-01-30 03:40 - 04254560 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2012-02-09 17:26 - 2012-02-09 17:26 - 00133632 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe 2012-02-09 17:26 - 2012-02-09 17:26 - 00048128 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll 2012-02-09 17:26 - 2012-02-09 17:26 - 00036864 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTNetDetect.dll 2015-07-29 15:59 - 2015-07-25 17:31 - 01763144 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.125\libglesv2.dll 2015-07-29 15:59 - 2015-07-25 17:31 - 00093000 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.125\libegl.dll 2010-01-30 03:40 - 2010-01-30 03:40 - 04254560 _____ () C:\Program Files\Common Files\Microsoft Shared\office14\Cultures\office.odf 2015-07-29 15:59 - 2015-07-25 17:31 - 28541768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.125\PepperFlash\pepflashplayer.dll 2015-02-18 17:35 - 2015-02-18 17:35 - 00249344 _____ () C:\Program Files (x86)\4game\3.5.5.152\PocoUtil.dll 2015-02-18 17:37 - 2015-02-18 17:37 - 00724480 _____ () C:\Program Files (x86)\4game\3.5.5.152\PocoNet.dll 2015-02-18 17:34 - 2015-02-18 17:34 - 00391168 _____ () C:\Program Files (x86)\4game\3.5.5.152\PocoXML.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-815740013-245853561-3982639562-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Roland\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is disabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{642C1A98-9D14-44DA-A14D-B8B78CD6A6DC}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{9EFB01CD-B539-4BF2-8B4D-B2CCC1BD0612}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{38442A9B-BC57-434F-BEE6-85AA4BF6A6DC}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{2B54D8D7-68A8-4BF2-9ADB-B63B3C4DA81F}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe FirewallRules: [{C10B78EF-CEE9-456A-91CB-BC7E9D293E71}] => (Allow) G:\Steam\bin\steamwebhelper.exe FirewallRules: [{2C3FEF0A-58A8-4E05-8109-992955548A3C}] => (Allow) G:\Steam\bin\steamwebhelper.exe FirewallRules: [{1F606854-C7C6-4171-8F6D-07219EF1D7D6}] => (Allow) C:\Program Files\Opera Next x64\pluginwrapper\opera_plugin_wrapper.exe FirewallRules: [{56BE01AE-6837-4B20-8245-A4DEE649A10F}] => (Allow) C:\Program Files\Opera Next x64\pluginwrapper\opera_plugin_wrapper.exe FirewallRules: [{159700C9-AEFC-42DA-AAA4-5F6A7D844718}] => (Allow) C:\Program Files\Opera Next x64\pluginwrapper\opera_plugin_wrapper_32.exe FirewallRules: [{AA68C18D-6514-4048-9813-10AF954DFC54}] => (Allow) C:\Program Files\Opera Next x64\pluginwrapper\opera_plugin_wrapper_32.exe FirewallRules: [{7393D5EB-154E-4B8C-985E-4592DC7D6915}] => (Allow) C:\Program Files\Opera Next x64\opera.exe FirewallRules: [{A26B1345-EFDE-4940-ADA9-F3E67E1631B6}] => (Allow) C:\Program Files\Opera Next x64\opera.exe FirewallRules: [{5FB8D13B-2AD9-4324-BCB2-ECCCC79ED5C9}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{72BD17B4-B2BC-4AFC-A4D3-517215DCEA4D}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{98AA5284-85C1-48C8-85F3-816597AEFABF}] => (Allow) G:\Steam\Steam.exe FirewallRules: [{1EBC5E32-BCE8-487C-A3C0-4C4EDB6AD907}] => (Allow) G:\Steam\Steam.exe FirewallRules: [{9FA285AA-1604-45D6-B918-D44957F52FF2}] => (Allow) C:\Users\Roland\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{0EFCAA2F-C49F-4737-B185-5D486D7BE264}] => (Allow) C:\Users\Roland\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{9E4C0829-B038-4E12-8062-1D62BD44717D}] => (Allow) LPort=2799 FirewallRules: [{ED961119-14AD-4833-89D5-8DD514E3CEC1}] => (Allow) LPort=2799 FirewallRules: [{4922FE09-1C30-4EE0-B887-4D4D1C9FFF13}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/01/2015 04:57:07 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: jhnmqgsg.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Nazwa modułu powodującego błąd: jhnmqgsg.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000011aa Identyfikator procesu powodującego błąd: 0x85c Godzina uruchomienia aplikacji powodującej błąd: 0xjhnmqgsg.exe0 Ścieżka aplikacji powodującej błąd: jhnmqgsg.exe1 Ścieżka modułu powodującego błąd: jhnmqgsg.exe2 Identyfikator raportu: jhnmqgsg.exe3 Error: (08/01/2015 04:56:06 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: uln73xoy.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Nazwa modułu powodującego błąd: uln73xoy.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000011aa Identyfikator procesu powodującego błąd: 0x220 Godzina uruchomienia aplikacji powodującej błąd: 0xuln73xoy.exe0 Ścieżka aplikacji powodującej błąd: uln73xoy.exe1 Ścieżka modułu powodującego błąd: uln73xoy.exe2 Identyfikator raportu: uln73xoy.exe3 Error: (08/01/2015 04:55:53 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: uln73xoy.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Nazwa modułu powodującego błąd: uln73xoy.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000011aa Identyfikator procesu powodującego błąd: 0x13a0 Godzina uruchomienia aplikacji powodującej błąd: 0xuln73xoy.exe0 Ścieżka aplikacji powodującej błąd: uln73xoy.exe1 Ścieżka modułu powodującego błąd: uln73xoy.exe2 Identyfikator raportu: uln73xoy.exe3 Error: (08/01/2015 04:54:51 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/01/2015 04:54:41 AM) (Source: ISCT Agent) (EventID: 1003) (User: ) Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2 Error: (08/01/2015 04:52:55 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/01/2015 04:52:47 AM) (Source: ISCT Agent) (EventID: 1003) (User: ) Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2 Error: (08/01/2015 04:47:42 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: uln73xoy.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Nazwa modułu powodującego błąd: uln73xoy.exe, wersja: 2.1.19357.0, sygnatura czasowa: 0x52e7ea83 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000011aa Identyfikator procesu powodującego błąd: 0xe30 Godzina uruchomienia aplikacji powodującej błąd: 0xuln73xoy.exe0 Ścieżka aplikacji powodującej błąd: uln73xoy.exe1 Ścieżka modułu powodującego błąd: uln73xoy.exe2 Identyfikator raportu: uln73xoy.exe3 Error: (08/01/2015 04:10:35 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/01/2015 04:10:26 AM) (Source: ISCT Agent) (EventID: 1003) (User: ) Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2 System errors: ============= Error: (08/01/2015 04:54:42 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: ulkfbuht yddg Error: (08/01/2015 04:52:48 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: ulkfbuht yddg Error: (08/01/2015 04:10:27 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: ulkfbuht yddg Microsoft Office: ========================= Error: (08/01/2015 04:57:07 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: jhnmqgsg.exe2.1.19357.052e7ea83jhnmqgsg.exe2.1.19357.052e7ea83c0000005000011aa85c01d0cc05bf70c7c8G:\PROGRAMY\jhnmqgsg.exeG:\PROGRAMY\jhnmqgsg.exefe57884c-37f8-11e5-ae33-bc5ff4591473 Error: (08/01/2015 04:56:06 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: uln73xoy.exe2.1.19357.052e7ea83uln73xoy.exe2.1.19357.052e7ea83c0000005000011aa22001d0cc059b20af3bG:\PROGRAMY\uln73xoy.exeG:\PROGRAMY\uln73xoy.exed9f9277e-37f8-11e5-ae33-bc5ff4591473 Error: (08/01/2015 04:55:53 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: uln73xoy.exe2.1.19357.052e7ea83uln73xoy.exe2.1.19357.052e7ea83c0000005000011aa13a001d0cc0592c5d361G:\PROGRAMY\uln73xoy.exeG:\PROGRAMY\uln73xoy.exed212ef11-37f8-11e5-ae33-bc5ff4591473 Error: (08/01/2015 04:54:51 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/01/2015 04:54:41 AM) (Source: ISCT Agent) (EventID: 1003) (User: ) Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2 Error: (08/01/2015 04:52:55 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/01/2015 04:52:47 AM) (Source: ISCT Agent) (EventID: 1003) (User: ) Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2 Error: (08/01/2015 04:47:42 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: uln73xoy.exe2.1.19357.052e7ea83uln73xoy.exe2.1.19357.052e7ea83c0000005000011aae3001d0cc04669633b7G:\PROGRAMY\uln73xoy.exeG:\PROGRAMY\uln73xoy.exeade25352-37f7-11e5-9ac9-bc5ff4591473 Error: (08/01/2015 04:10:35 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/01/2015 04:10:26 AM) (Source: ISCT Agent) (EventID: 1003) (User: ) Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz Percentage of memory in use: 28% Total physical RAM: 8155.76 MB Available physical RAM: 5813.75 MB Total Virtual: 20385.95 MB Available Virtual: 17947.45 MB ==================== Drives ================================ Drive c: (System i Gry - SSD) (Fixed) (Total:232.79 GB) (Free:67.25 GB) NTFS Drive g: (Mój Dysk) (Fixed) (Total:880.63 GB) (Free:156.4 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: FA331BDD) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: CD1A7CA5) Partition 1: (Not Active) - (Size=880.6 GB) - (Type=07 NTFS) ==================== End of log ============================