Additional scan result of Farbar Recovery Scan Tool (x64) Version:13-08-2015 Ran by Witold (2015-08-14 19:33:43) Running from C:\Users\Witold\Desktop\cleanery\FRST Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-4263293795-372819126-2868305949-500 - Administrator - Disabled) Gość (S-1-5-21-4263293795-372819126-2868305949-501 - Limited - Enabled) IME_ADMIN (S-1-5-21-4263293795-372819126-2868305949-1010 - Limited - Enabled) IME_USER (S-1-5-21-4263293795-372819126-2868305949-1009 - Limited - Enabled) Witold (S-1-5-21-4263293795-372819126-2868305949-1001 - Administrator - Enabled) => C:\Users\Witold ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) «Project CARS 1.0.1.3 (HKLM-x32\...\«Project CARS_is1) (Version: 1.0.1.3 - Slightly Mad Studios Ltd.) «Witcher 3 - Wild Hunt» 1.0.2.0 (HKLM-x32\...\{BF679CAD-FE6D-4CBE-9E99-D7193809207A}_is1) (Version: 1.0.2.0 - CD Project RED) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) ABBYY FineReader 12 Professional (HKLM-x32\...\{F12000FE-0001-0000-0000-074957833700}) (Version: 12.1.531 - ABBYY Production LLC) Adobe Reader XI (11.0.12) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) Age of Wonders III (HKLM-x32\...\QWdlb2ZXb25kZXJzSUlJ_is1) (Version: 1 - ) Aktualizacje NVIDIA 16.13.69 (Version: 16.13.69 - NVIDIA Corporation) Hidden AMD Catalyst Install Manager (HKLM\...\{66AD7978-00EE-AE61-889B-CC68818C0135}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AMD VISION Engine Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) ASUS Xonar DX Audio (HKLM-x32\...\{71B53BA8-4BE3-49AF-BC3E-07F392008788}) (Version: - ASUSTeK Computer Inc.) Auslogics Disk Defrag Touch (HKLM-x32\...\{B259CF8C-5028-4F71-95E0-30E1E4F56606}_is1) (Version: 1.1.0.0 - Auslogics Software Pty Ltd) Batman Arkham Knight (HKLM-x32\...\Batman Arkham Knight_is1) (Version: v1.2 - Warner Bros. Interactive Entertainment) BitComet 1.37 64-bit (HKLM-x32\...\BitComet_x64) (Version: 1.37 - CometNetwork) CCleaner (HKLM\...\CCleaner) (Version: 5.05 - Piriform) ChomikBox (HKLM-x32\...\{C7B52FAF-58D8-438C-B810-F78C3C927504}) (Version: 2.0.8.0 - Chomikuj.pl) Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft) Combined Community Codec Pack 2014-04-20 (HKLM-x32\...\Combined Community Codec Pack_is1) (Version: 2014.04.20.0 - CCCP Project) CrystalDiskInfo 5.6.2 Shizuku Edition (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 5.6.2 - Crystal Dew World) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) Dying Light Ultimate Edition version 1.2.0 (HKLM-x32\...\Dying Light Ultimate Edition_is1) (Version: 1.2.0 - GMT-MAX.ORG) EDU CD. Vademecum języka angielskiego (HKLM-x32\...\EDU CD. Vademecum języka angielskiego_is1) (Version: - EDU CD) Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.96 - Etron Technology) Etron USB3.0 Host Controller (x32 Version: 0.96 - Etron Technology) Hidden Far Cry 4 (HKLM-x32\...\Far Cry 4_is1) (Version: 1.0 - Релиз от R.G. Steamgames) GG (HKU\S-1-5-21-4263293795-372819126-2868305949-1001\...\GG) (Version: 12 - GG Network S.A.) GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) GRID Autosport (HKLM-x32\...\R1JJREF1dG9zcG9ydA==_is1) (Version: 1 - ) HWiNFO64 Version 4.40 (HKLM\...\HWiNFO64_is1) (Version: 4.40 - Martin Malík - REALiX) IVONA 2 (HKLM-x32\...\IVONA 2) (Version: 1.6.63 - IVONA Software Sp. z o.o.) IVONA ControlCenter (HKLM-x32\...\IVONA ControlCenter) (Version: 1.1.10 - IVONA Software Sp. z o.o.) IVONA MiniReader (HKLM-x32\...\IVONA MiniReader) (Version: - IVONA Software Sp. z o.o.) IVONA Reader (HKLM-x32\...\IVONA Reader) (Version: - IVONA Software Sp. z o.o.) Malwarebytes Anti-Malware wersja 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Middle-earth Shadow of Mordor (HKLM-x32\...\Middle-earth Shadow of Mordor_is1) (Version: 1.0 - Релиз от R.G. Steamgames) Mobile Partner (HKLM-x32\...\Mobile Partner) (Version: 23.012.05.00.1185 - Huawei Technologies Co.,Ltd) Mortal Kombat X (HKLM-x32\...\Mortal Kombat X_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91) MSI Afterburner 3.0.1 (HKLM-x32\...\Afterburner) (Version: 3.0.1 - MSI Co., LTD) MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 3.0.0.12 - MSI) Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.69 - ) NVIDIA GeForce Experience 2.1.4.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.4.1 - NVIDIA Corporation) NVIDIA Sterownik graficzny 353.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.06 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenOffice 4.1.1 (HKLM-x32\...\{B5373BA3-BAD7-4EAC-A9D2-B66B41B82C57}) (Version: 4.11.9775 - Apache Software Foundation) Panel sterowania NVIDIA 353.06 (Version: 353.06 - NVIDIA Corporation) Hidden Plustek OpticSlim 2600 (HKLM-x32\...\{C0EEB671-169B-4423-971D-B2D710FE9132}) (Version: 5.1.0 - ) Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.13 - Qualcomm Atheros Communications Inc.) RIDE (HKLM-x32\...\RIDE_R.G. Mechanics_is1) (Version: - R.G. Mechanics, ProZorg_tm) RivaTuner Statistics Server 6.1.2 (HKLM-x32\...\RTSS) (Version: 6.1.2 - Unwinder) Ryse Son of Rome (HKLM-x32\...\Ryse Son of Rome_is1) (Version: - ) Saints Row Gat out of Hell (HKLM-x32\...\U2FpbnRzUm93R2F0b3V0b2ZIZWxs_is1) (Version: 1 - ) SHIELD Streaming (Version: 3.1.2000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 16.13.69 - NVIDIA Corporation) Hidden Sniper Ghost Warrior 2 (HKLM-x32\...\Sniper Ghost Warrior 2_is1) (Version: - ) Sp5 (x32 Version: 5.1.4324.0 - Microsoft) Hidden Sp5Intl (x32 Version: 5.1.4324.0 - Microsoft) Hidden Sp5TTInt (x32 Version: 5.1.4324.0 - Microsoft) Hidden SpCommon (x32 Version: 5.1.4324.0 - Microsoft) Hidden SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spirit of Speed Demo (HKLM-x32\...\Spirit of Speed Demo) (Version: - ) SpPhones (x32 Version: 6.0.3122.0 - Microsoft) Hidden The Incredible Adventures of Van Helsing III, âĺđńč˙ 1.0.0.0 (HKLM-x32\...\The Incredible Adventures of Van Helsing III_is1) (Version: 1.0.0.0 - RePack by SEYTER) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) WinRAR 5.21 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) Wolfenstein The Old Blood (HKLM-x32\...\Wolfenstein The Old Blood_is1) (Version: - ) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-4263293795-372819126-2868305949-1001_Classes\CLSID\{44996865-E670-9DC1-3743-37B4D650EA9E}\InprocServer32 -> C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-4263293795-372819126-2868305949-1001_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Witold\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll (GG Network S.A.) ==================== Restore Points ========================= 28-07-2015 14:56:45 Removed Java 8 Update 51 04-08-2015 18:14:09 Zaplanowany punkt kontrolny 05-08-2015 20:07:51 Removed Java 8 Update 51 07-08-2015 18:15:05 Zainstalowany program DirectX 14-08-2015 18:11:40 Windows Update ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2015-05-25 11:17 - 00000855 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {3A8ADF01-08BD-46E0-ABFE-C9948961EF89} - System32\Tasks\e-pity2015_kwiecien => C:\Program Files (x86)\e-file\e-pity2014\Assets\signxml.exe Task: {43A225AF-321F-449F-B5FC-DDC653C7F9FF} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser Task: {4E08E6F4-AF8C-4AF8-A199-15E6B938F5EE} - System32\Tasks\e-pity2015_styczen => C:\Program Files (x86)\e-file\e-pity2014\Assets\signxml.exe Task: {97F8959B-7E12-4917-86DB-1071CD0DC9F5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {B50033B8-D5BC-4DD9-8876-B0A7F61080F5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-04-23] (Piriform Ltd) Task: {BC4FF641-AA03-41EF-AF36-731A8F6A59E2} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-08-14] (Microsoft Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Loaded Modules (Whitelisted) ============== 2015-06-09 18:28 - 2015-05-28 06:15 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-04-10 07:58 - 2013-04-10 07:58 - 00351824 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2014-07-14 23:00 - 2014-07-14 23:00 - 00200704 ____N () C:\Windows\SysWOW64\HsMgr.exe 2014-07-14 23:00 - 2014-07-14 23:00 - 00282112 ____N () C:\Windows\System\HsMgr64.exe 2014-07-15 14:52 - 2013-03-25 17:06 - 00210944 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\DocuAction.exe 2014-12-28 19:19 - 2012-06-06 10:56 - 00143360 ____N () C:\Program Files\ASUS Xonar DX Audio\Customapp\VmixP8.dll 2014-07-15 14:52 - 2013-03-25 17:05 - 00027136 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\AmCommonLib.dll 2014-07-15 14:52 - 2013-02-06 02:57 - 00098304 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\DocuRes.dll 2014-07-15 14:52 - 2008-06-25 14:03 - 00045056 _____ () C:\Program Files (x86)\Common Files\iMpacct\EdgeFillRsc.dll 2014-07-15 14:52 - 2006-05-15 15:24 - 00122938 _____ () C:\Program Files (x86)\Common Files\iMpacct\CommonFunc.dll 2014-07-15 14:52 - 2013-05-03 17:38 - 00269824 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\Scan.dll 2014-07-15 14:52 - 2013-05-03 16:27 - 00163840 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\ScanRes.dll 2014-07-15 14:52 - 2013-04-25 09:31 - 00151552 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\ScanProcess.dll 2014-07-15 14:52 - 2009-06-25 10:00 - 00897024 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\EncryptPdf.dll 2014-07-15 14:52 - 2013-04-25 09:31 - 00058368 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\PlkMsg.dll 2014-07-15 14:52 - 2013-03-08 21:19 - 00069632 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\PlkMsgRes.dll 2014-07-15 14:52 - 2013-03-25 17:06 - 00038912 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\Copy.DLL 2014-07-15 14:52 - 2010-06-07 15:06 - 00045056 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\CopyRes.dll 2014-07-15 14:52 - 2005-09-21 14:36 - 00061440 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\PrnDriver.dll 2014-07-15 14:52 - 2013-03-25 17:05 - 00075264 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\OCR.DLL 2014-07-15 14:52 - 2012-11-13 05:51 - 00049152 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\OcrRes.dll 2014-07-15 14:52 - 2013-03-25 17:06 - 00060416 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\eMail.DLL 2014-07-15 14:52 - 2013-03-25 17:05 - 00087040 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\FormatManager.dll 2014-07-15 14:52 - 2013-02-06 02:57 - 00061440 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\FormatManagerRes.dll 2014-07-15 14:52 - 2010-06-07 15:06 - 00049152 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\EmailRes.dll 2014-07-15 14:52 - 2013-03-25 17:06 - 00104448 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\Custom.DLL 2014-07-15 14:52 - 2012-11-13 05:51 - 00049152 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\CustomRes.dll 2014-07-15 14:52 - 2013-03-25 17:05 - 00098304 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\PDF.DLL 2014-07-15 14:52 - 2012-11-13 05:51 - 00049152 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\FilingRes.dll 2013-12-13 04:47 - 2013-12-13 04:47 - 00333824 _____ () C:\Program Files (x86)\Winamp\Plugins\freeform\wacs\freetype\freetype.wac ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-4263293795-372819126-2868305949-1001\...\mailgrupowy.pl -> hxxps://mailgrupowy.pl ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-4263293795-372819126-2868305949-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Witold\Pictures\7d70ac39b0dcd690ccef_1920x1080_cropromiar-niestandardowy.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run32: => "Adobe ARM" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [TCP Query User{3F69B97E-F55C-43F9-AA48-0A4E20201840}C:\program files\bitcomet\bitcomet.exe] => (Allow) C:\program files\bitcomet\bitcomet.exe FirewallRules: [UDP Query User{1E131355-C81A-476A-9C45-08DFF7712D4A}C:\program files\bitcomet\bitcomet.exe] => (Allow) C:\program files\bitcomet\bitcomet.exe FirewallRules: [TCP Query User{B4E2BB91-9DDD-488B-A05C-75288AC84B1D}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [UDP Query User{8C76F14C-33B0-4376-836A-D708D0A93BD7}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [TCP Query User{49AF7034-1484-40DF-8AC8-B8017C801835}F:\program files.1\ride\ridex64.exe] => (Block) F:\program files.1\ride\ridex64.exe FirewallRules: [UDP Query User{B5F4BF35-F352-4BE4-B913-48E1C21FAAB9}F:\program files.1\ride\ridex64.exe] => (Block) F:\program files.1\ride\ridex64.exe FirewallRules: [{268DDC40-AB6B-4775-B55F-0416B5E474F4}] => (Block) F:\Program Files.1\RIDE\Ride.exe FirewallRules: [{DEE86E92-DD00-44EB-9980-FAACBE17BC68}] => (Block) F:\Program Files.1\RIDE\RideX64.exe FirewallRules: [{FFAC05F8-E553-4FB4-A087-DE55FFD7A873}] => (Block) D:\Program Games\R.G. Catalyst\Witcher 3 - Wild Hunt\bin\x64\witcher3.exe FirewallRules: [{F63D385A-AB71-4685-982B-DB7ED8C68B1A}] => (Block) D:\Program Games\The Incredible Adventures of Van Helsing III\VanHelsing.exe FirewallRules: [{79751598-6013-47ED-B192-9904794A4354}] => (Block) D:\Program Games\The Incredible Adventures of Van Helsing III\VanHelsing_x64.exe FirewallRules: [{5FBB5E37-6DF3-4BCA-94E7-093475E8251A}] => (Block) D:\Program Games\The Incredible Adventures of Van Helsing III\VanHelsing_x86.exe FirewallRules: [{AE775649-9CD6-4B09-A6F9-4B9AA922F0BA}] => (Block) F:\Program Files.1\Sniper Ghost Warrior 2\Bin32\fxc.exe FirewallRules: [{468A0162-E542-4D60-9901-808EC6CA98F0}] => (Block) F:\Program Files.1\Sniper Ghost Warrior 2\Bin32\SniperGhostWarrior2.exe FirewallRules: [{4EC111E1-840C-4013-B4BB-47D6853D14B7}] => (Block) E:\ProgramGames\Age of Wonders III\AoW3.exe FirewallRules: [{7560AAED-8DE7-44F4-9F6C-26607B25CF3C}] => (Block) E:\ProgramGames\Age of Wonders III\AoW3_Debug.exe FirewallRules: [{92CD3E09-F4D1-4D09-8D9A-19DB5DC649E9}] => (Block) E:\ProgramGames\Age of Wonders III\AoW3_Editor.exe FirewallRules: [{72A4D8EB-DF1A-436A-8E07-AD9EEBB6C9D9}] => (Block) E:\ProgramGames\Age of Wonders III\AoW3Launcher.exe FirewallRules: [{6246C674-54B2-4F47-8E0F-8E3F9923EB5C}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{EF67654F-5A44-4F96-B03C-E501744EAFB2}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{12B93088-3265-441A-AD86-DC9854309D7E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{FAE01C7F-259B-4053-AAD5-79567DD2FAAD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{600D5A0D-7B6C-4BB0-9667-364253C9B132}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{803E2570-5193-41A6-809E-0774E34FBD54}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{589A7ECA-97B1-4086-B783-4C676CA58C76}] => (Block) D:\Program Games\R.G. Catalyst\Witcher 3 - Wild Hunt\bin\x64\witcher3.exe FirewallRules: [{BCF740BA-BF7C-46F2-A97B-A2BCC4CED5DF}] => (Block) F:\Program Files.1\Far Cry 4\bin\FarCry4.exe FirewallRules: [{5A0170F6-0356-453F-A937-23D63DC8578F}] => (Block) F:\Program Files.1\Far Cry 4\bin\IGE_WPF64.exe FirewallRules: [{45CDC6A5-CD95-4797-94D6-786F8FBD1C94}] => (Block) D:\Program Games\R.G. Catalyst\Project CARS\pCARS.exe FirewallRules: [{8C2721A1-4C4D-4D83-A9A9-11B4A097904F}] => (Block) D:\Program Games\R.G. Catalyst\Project CARS\pCARS64.exe FirewallRules: [{74E13DD1-663E-4D62-A4BB-7FA95B0A627D}] => (Block) D:\Program Games\GRID Autosport\GRIDAutosport.exe FirewallRules: [{652F6EF9-C5BD-4AE6-AC3B-DE95C85B97DA}] => (Block) D:\Program Games\GRID Autosport\GRIDAutosport_avx.exe FirewallRules: [{586976D4-37F0-4ED3-89DA-E0D889C25FB9}] => (Block) D:\Program Games\GRID Autosport\unins000.exe FirewallRules: [{D611EBD2-213C-4189-B38D-BA77D6705962}] => (Block) E:\ProgramGames\Dying Light Ultimate Edition\DyingLightGame.exe FirewallRules: [{4C457D84-90B3-463F-9B1A-B4B6555D2A1D}] => (Block) D:\Program Games\Wolfenstein The Old Blood\WolfOldBlood_x64.exe FirewallRules: [{7D184FB3-4222-406F-8F3E-CAFE3D321C36}] => (Block) F:\Program Files.1\Mortal Kombat Complete Edition\MKKE.exe FirewallRules: [{E5C9DB66-2292-4257-AB6C-BD2593BF6EF4}] => (Block) G:\Program Games\Mortal Kombat X\Binaries\Retail\MK10.exe FirewallRules: [{C66DC955-2A46-4653-9772-58E6895FAD4F}] => (Block) G:\Program Games\Mortal Kombat X\Binaries\Retail\MKXBootStrap.exe FirewallRules: [{53E3B99F-2B80-44ED-9891-7BDB0D2C0807}] => (Block) G:\Program Games\Mortal Kombat X\Binaries\Retail\MKXLauncher.exe FirewallRules: [{AD20ABAD-925E-45BE-9468-B4AD87D792A4}] => (Block) G:\Program Games\Batman Arkham Knight\Binaries\Win64\BatmanAK.exe ==================== Faulty Device Manager Devices ============= Name: Standardowa klawiatura PS/2 Description: Standardowa klawiatura PS/2 Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318} Manufacturer: (Klawiatury standardowe) Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Mysz Microsoft PS/2 Description: Mysz Microsoft PS/2 Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (08/14/2015 07:27:37 PM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: ZARZĄDZANIE NT) Description: There was an error with the Windows Location Provider database Error: (08/14/2015 07:20:34 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: SPIRIT OF SPEED.EXE, wersja: 0.0.0.0, sygnatura czasowa: 0x380ca9ae Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x19cb2edd Identyfikator procesu powodującego błąd: 0x4cc Godzina uruchomienia aplikacji powodującej błąd: 0xSPIRIT OF SPEED.EXE0 Ścieżka aplikacji powodującej błąd: SPIRIT OF SPEED.EXE1 Ścieżka modułu powodującego błąd: SPIRIT OF SPEED.EXE2 Identyfikator raportu: SPIRIT OF SPEED.EXE3 Pełna nazwa pakietu powodującego błąd: SPIRIT OF SPEED.EXE4 Identyfikator aplikacji względem pakietu powodującego błąd: SPIRIT OF SPEED.EXE5 Error: (08/14/2015 07:20:07 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: SPIRIT OF SPEED.EXE, wersja: 0.0.0.0, sygnatura czasowa: 0x380ca9ae Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x19cb2edd Identyfikator procesu powodującego błąd: 0xd8c Godzina uruchomienia aplikacji powodującej błąd: 0xSPIRIT OF SPEED.EXE0 Ścieżka aplikacji powodującej błąd: SPIRIT OF SPEED.EXE1 Ścieżka modułu powodującego błąd: SPIRIT OF SPEED.EXE2 Identyfikator raportu: SPIRIT OF SPEED.EXE3 Pełna nazwa pakietu powodującego błąd: SPIRIT OF SPEED.EXE4 Identyfikator aplikacji względem pakietu powodującego błąd: SPIRIT OF SPEED.EXE5 Error: (08/14/2015 07:19:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: SPIRIT OF SPEED.EXE, wersja: 0.0.0.0, sygnatura czasowa: 0x380ca9ae Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x19cb2edd Identyfikator procesu powodującego błąd: 0x1460 Godzina uruchomienia aplikacji powodującej błąd: 0xSPIRIT OF SPEED.EXE0 Ścieżka aplikacji powodującej błąd: SPIRIT OF SPEED.EXE1 Ścieżka modułu powodującego błąd: SPIRIT OF SPEED.EXE2 Identyfikator raportu: SPIRIT OF SPEED.EXE3 Pełna nazwa pakietu powodującego błąd: SPIRIT OF SPEED.EXE4 Identyfikator aplikacji względem pakietu powodującego błąd: SPIRIT OF SPEED.EXE5 Error: (08/14/2015 07:18:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: SPIRIT OF SPEED.EXE, wersja: 0.0.0.0, sygnatura czasowa: 0x380ca9ae Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x19cb2edd Identyfikator procesu powodującego błąd: 0xed0 Godzina uruchomienia aplikacji powodującej błąd: 0xSPIRIT OF SPEED.EXE0 Ścieżka aplikacji powodującej błąd: SPIRIT OF SPEED.EXE1 Ścieżka modułu powodującego błąd: SPIRIT OF SPEED.EXE2 Identyfikator raportu: SPIRIT OF SPEED.EXE3 Pełna nazwa pakietu powodującego błąd: SPIRIT OF SPEED.EXE4 Identyfikator aplikacji względem pakietu powodującego błąd: SPIRIT OF SPEED.EXE5 Error: (08/14/2015 07:17:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: SPIRIT OF SPEED.EXE, wersja: 0.0.0.0, sygnatura czasowa: 0x380ca9ae Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x19cb2edd Identyfikator procesu powodującego błąd: 0x170c Godzina uruchomienia aplikacji powodującej błąd: 0xSPIRIT OF SPEED.EXE0 Ścieżka aplikacji powodującej błąd: SPIRIT OF SPEED.EXE1 Ścieżka modułu powodującego błąd: SPIRIT OF SPEED.EXE2 Identyfikator raportu: SPIRIT OF SPEED.EXE3 Pełna nazwa pakietu powodującego błąd: SPIRIT OF SPEED.EXE4 Identyfikator aplikacji względem pakietu powodującego błąd: SPIRIT OF SPEED.EXE5 Error: (08/14/2015 07:17:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: SPIRIT OF SPEED.EXE, wersja: 0.0.0.0, sygnatura czasowa: 0x380ca9ae Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x19cb2edd Identyfikator procesu powodującego błąd: 0x9f4 Godzina uruchomienia aplikacji powodującej błąd: 0xSPIRIT OF SPEED.EXE0 Ścieżka aplikacji powodującej błąd: SPIRIT OF SPEED.EXE1 Ścieżka modułu powodującego błąd: SPIRIT OF SPEED.EXE2 Identyfikator raportu: SPIRIT OF SPEED.EXE3 Pełna nazwa pakietu powodującego błąd: SPIRIT OF SPEED.EXE4 Identyfikator aplikacji względem pakietu powodującego błąd: SPIRIT OF SPEED.EXE5 Error: (08/14/2015 07:17:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: SPIRIT OF SPEED.EXE, wersja: 0.0.0.0, sygnatura czasowa: 0x380ca9ae Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x19cb2edd Identyfikator procesu powodującego błąd: 0x13dc Godzina uruchomienia aplikacji powodującej błąd: 0xSPIRIT OF SPEED.EXE0 Ścieżka aplikacji powodującej błąd: SPIRIT OF SPEED.EXE1 Ścieżka modułu powodującego błąd: SPIRIT OF SPEED.EXE2 Identyfikator raportu: SPIRIT OF SPEED.EXE3 Pełna nazwa pakietu powodującego błąd: SPIRIT OF SPEED.EXE4 Identyfikator aplikacji względem pakietu powodującego błąd: SPIRIT OF SPEED.EXE5 Error: (08/14/2015 07:17:04 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: SPIRIT OF SPEED.EXE, wersja: 0.0.0.0, sygnatura czasowa: 0x380ca9ae Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x19cb2edd Identyfikator procesu powodującego błąd: 0x1268 Godzina uruchomienia aplikacji powodującej błąd: 0xSPIRIT OF SPEED.EXE0 Ścieżka aplikacji powodującej błąd: SPIRIT OF SPEED.EXE1 Ścieżka modułu powodującego błąd: SPIRIT OF SPEED.EXE2 Identyfikator raportu: SPIRIT OF SPEED.EXE3 Pełna nazwa pakietu powodującego błąd: SPIRIT OF SPEED.EXE4 Identyfikator aplikacji względem pakietu powodującego błąd: SPIRIT OF SPEED.EXE5 Error: (08/14/2015 06:42:06 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: MK.EXE, wersja: 0.0.0.0, sygnatura czasowa: 0x2a425e19 Nazwa modułu powodującego błąd: borlndmm.dll, wersja: 6.3.9600.17936, sygnatura czasowa: 0x55a68dd1 Kod wyjątku: 0xc0000135 Przesunięcie błędu: 0x0009d4f2 Identyfikator procesu powodującego błąd: 0x15a4 Godzina uruchomienia aplikacji powodującej błąd: 0xMK.EXE0 Ścieżka aplikacji powodującej błąd: MK.EXE1 Ścieżka modułu powodującego błąd: MK.EXE2 Identyfikator raportu: MK.EXE3 Pełna nazwa pakietu powodującego błąd: MK.EXE4 Identyfikator aplikacji względem pakietu powodującego błąd: MK.EXE5 System errors: ============= Error: (08/14/2015 06:19:58 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player zakończyła działanie; wystąpił następujący błąd: %%1008 Error: (08/14/2015 06:19:40 PM) (Source: NETLOGON) (EventID: 3095) (User: ) Description: Ten komputer jest skonfigurowany jako członek grupy roboczej, a nie domeny. W tej konfiguracji usługa Netlogon nie musi być uruchamiana. Error: (08/14/2015 06:16:50 PM) (Source: DCOM) (EventID: 10010) (User: Witek) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (08/14/2015 06:16:50 PM) (Source: DCOM) (EventID: 10010) (User: Witek) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (08/14/2015 02:02:21 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 5 Error: (08/13/2015 11:28:35 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 5 Error: (08/13/2015 12:11:59 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 5 Error: (08/12/2015 08:47:49 PM) (Source: DCOM) (EventID: 10010) (User: Witek) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (08/12/2015 08:47:19 PM) (Source: DCOM) (EventID: 10010) (User: Witek) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (08/12/2015 12:18:44 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 5 Microsoft Office: ========================= Error: (08/14/2015 07:27:37 PM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: ZARZĄDZANIE NT) Description: -2147024883 Error: (08/14/2015 07:20:34 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SPIRIT OF SPEED.EXE0.0.0.0380ca9aeunknown0.0.0.000000000c000000519cb2edd4cc01d0d6b5874dc40fC:\Users\Witold\Desktop\SPIRIT OF SPEED.EXEunknownc505a92b-42a8-11e5-bf97-002522ff4c01 Error: (08/14/2015 07:20:07 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SPIRIT OF SPEED.EXE0.0.0.0380ca9aeunknown0.0.0.000000000c000000519cb2eddd8c01d0d6b5772bfa3fC:\Users\Witold\Desktop\SPIRIT OF SPEED.EXEunknownb4e3913a-42a8-11e5-bf97-002522ff4c01 Error: (08/14/2015 07:19:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SPIRIT OF SPEED.EXE0.0.0.0380ca9aeunknown0.0.0.000000000c000000519cb2edd146001d0d6b5691ba768C:\Users\Witold\Desktop\SPIRIT OF SPEED.EXEunknowna6cf470c-42a8-11e5-bf97-002522ff4c01 Error: (08/14/2015 07:18:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SPIRIT OF SPEED.EXE0.0.0.0380ca9aeunknown0.0.0.000000000c000000519cb2edded001d0d6b537d91a5fC:\Users\Witold\Desktop\SPIRIT OF SPEED.EXEunknown758c6d1b-42a8-11e5-bf97-002522ff4c01 Error: (08/14/2015 07:17:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SPIRIT OF SPEED.EXE0.0.0.0380ca9aeunknown0.0.0.000000000c000000519cb2edd170c01d0d6b5286fa888C:\Users\Witold\Desktop\SPIRIT OF SPEED.EXEunknown6628c625-42a8-11e5-bf97-002522ff4c01 Error: (08/14/2015 07:17:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SPIRIT OF SPEED.EXE0.0.0.0380ca9aeunknown0.0.0.000000000c000000519cb2edd9f401d0d6b5199415e3C:\Users\Witold\Desktop\SPIRIT OF SPEED.EXEunknown575d1231-42a8-11e5-bf97-002522ff4c01 Error: (08/14/2015 07:17:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SPIRIT OF SPEED.EXE0.0.0.0380ca9aeunknown0.0.0.000000000c000000519cb2edd13dc01d0d6b510076363C:\Users\Witold\Desktop\SPIRIT OF SPEED.EXEunknown4db8e09e-42a8-11e5-bf97-002522ff4c01 Error: (08/14/2015 07:17:04 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SPIRIT OF SPEED.EXE0.0.0.0380ca9aeunknown0.0.0.000000000c000000519cb2edd126801d0d6b509fa47fcC:\Users\Witold\Desktop\SPIRIT OF SPEED.EXEunknown47bcdb6a-42a8-11e5-bf97-002522ff4c01 Error: (08/14/2015 06:42:06 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: MK.EXE0.0.0.02a425e19borlndmm.dll6.3.9600.1793655a68dd1c00001350009d4f215a401d0d6b02654534aC:\Users\Witold\AppData\Local\Temp\7zODBE2.tmp\MK.EXEborlndmm.dll6546cfdb-42a3-11e5-bf97-002522ff4c01 CodeIntegrity: =================================== Date: 2015-08-14 19:31:26.293 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 19:31:26.133 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 19:31:25.869 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 19:31:25.707 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 19:31:25.417 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 19:31:25.259 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 19:31:24.993 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 19:31:24.833 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 19:31:00.157 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 19:30:59.999 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: AMD FX(tm)-8350 Eight-Core Processor Percentage of memory in use: 9% Total physical RAM: 32747.62 MB Available physical RAM: 29719.99 MB Total Virtual: 37611.62 MB Available Virtual: 34993.08 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:491.33 GB) (Free:405.86 GB) NTFS ==>[drive with boot components (obtained from BCD)] Drive d: (Nowy) (Fixed) (Total:488.28 GB) (Free:226.57 GB) NTFS Drive e: () (Fixed) (Total:111.79 GB) (Free:20.74 GB) NTFS Drive f: (Nowy) (Fixed) (Total:443.23 GB) (Free:168.19 GB) NTFS Drive g: (Nowy) (Fixed) (Total:440.18 GB) (Free:101.76 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 8448BAFA) Partition 1: (Not Active) - (Size=488.3 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=443.2 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 756344DF) Partition 1: (Not Active) - (Size=111.8 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 77AA0808) Partition 1: (Active) - (Size=491.3 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=440.2 GB) - (Type=07 NTFS) ==================== End of log ============================