Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-06-2017
- Ran by aczyr (03-06-2017 21:06:31)
- Running from C:\Users\aczyr\Downloads
- Windows 10 Home Version 1703 (X64) (2017-05-03 16:32:07)
- Boot Mode: Normal
- ==========================================================
- ==================== Accounts: =============================
- aczyr (S-1-5-21-813033584-1070609415-2101242023-1001 - Administrator - Enabled) => C:\Users\aczyr
- Administrator (S-1-5-21-813033584-1070609415-2101242023-500 - Administrator - Disabled)
- DefaultAccount (S-1-5-21-813033584-1070609415-2101242023-503 - Limited - Disabled)
- Guest (S-1-5-21-813033584-1070609415-2101242023-501 - Limited - Disabled)
- ==================== Security Center ========================
- (If an entry is included in the fixlist, it will be removed.)
- AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- ==================== Installed Programs ======================
- (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
- 7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)
- Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.0.1.188 - Adobe Systems Incorporated)
- Adobe Illustrator CC 2017 (HKLM-x32\...\ILST_21_1_0) (Version: 21.1.0 - Adobe Systems Incorporated)
- Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.0 - Adobe Systems Incorporated)
- Adobe Media Encoder CC 2017 (HKLM-x32\...\AME_11_1_0) (Version: 11.1.0 - Adobe Systems Incorporated)
- Adobe Photoshop (Version: 1.0.0000 - Adobe Systems Incorporated) Hidden
- Adobe Photoshop CC 2017 (HKLM-x32\...\PHSP_18_1_1) (Version: 18.1.1 - Adobe Systems Incorporated)
- Adobe Premiere Pro CC 2017 (HKLM-x32\...\PPRO_11_1_0) (Version: 11.1.0 - Adobe Systems Incorporated)
- Aktualizacje NVIDIA 24.0.0.0 (Version: 24.0.0.0 - NVIDIA Corporation) Hidden
- Alien Skin Exposure X2 Bundle (HKLM\...\Alien Skin Exposure X2 Bundle) (Version: - Alien Skin)
- Ansel (Version: 382.05 - NVIDIA Corporation) Hidden
- Borderlands 2 (HKLM\...\Steam App 49520) (Version: - Gearbox Software)
- CCleaner (HKLM\...\CCleaner) (Version: 5.30 - Piriform)
- DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.5.1.0232 - Disc Soft Ltd)
- f.lux (HKU\S-1-5-21-813033584-1070609415-2101242023-1001\...\Flux) (Version: - )
- foobar2000 v1.3.15 (HKLM-x32\...\foobar2000) (Version: 1.3.15 - Peter Pawlowski)
- GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com)
- Google Chrome (HKLM-x32\...\Google Chrome) (Version: 58.0.3029.110 - Google Inc.)
- Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden
- Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1036 - Intel Corporation)
- Intel(R) Online Connect Software Asset Manager (x32 Version: 3.4.2072 - Intel Corporation) Hidden
- IrfanView 4.44 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.44 - Irfan Skiljan)
- Java 8 Update 131 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180131F0}) (Version: 8.0.1310.11 - Oracle Corporation)
- K-Lite Codec Pack 13.1.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 13.1.0 - KLCP)
- Launchy 2.5 (HKLM-x32\...\Launchy_21344213_is1) (Version: - Code Jelly)
- Logitech Options (HKLM\...\LogiOptions) (Version: - Logitech)
- Malwarebytes (wersja 3.1.2.1733) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.1.2.1733 - Malwarebytes)
- Metro Last Light Redux v.1.0.0.7.u1 (HKLM-x32\...\Metro Last Light Redux_is1) (Version: - )
- Microsoft Office Professional Plus 2016 - en-us (HKLM\...\ProPlusRetail - en-us) (Version: 16.0.8067.2115 - Microsoft Corporation)
- Microsoft Office Professional Plus 2016 - pl-pl (HKLM\...\ProPlusRetail - pl-pl) (Version: 16.0.8067.2115 - Microsoft Corporation)
- Microsoft OneDrive (HKU\S-1-5-21-813033584-1070609415-2101242023-1001\...\OneDriveSetup.exe) (Version: 17.3.6816.0313 - Microsoft Corporation)
- Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
- Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
- Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
- Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
- Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
- Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
- Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
- Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
- Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
- Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation)
- Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23918 (HKLM-x32\...\{2e085fd2-a3e4-4b39-8e10-6b8d35f55244}) (Version: 14.0.23918.0 - Microsoft Corporation)
- NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - )
- Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google)
- Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.3.3 - Notepad++ Team)
- NVIDIA 3D Vision Driver 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 382.05 - NVIDIA Corporation)
- NVIDIA GeForce Experience 3.5.0.76 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.5.0.76 - NVIDIA Corporation)
- NVIDIA Graphics Driver 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.05 - NVIDIA Corporation)
- NVIDIA HD Audio Driver 1.3.34.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.26 - NVIDIA Corporation)
- NVIDIA Oprogramowanie systemu PhysX 9.17.0329 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0329 - NVIDIA Corporation)
- NVIDIA Sterownik kontrolera 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
- NvNodejs (Version: 3.5.0.76 - NVIDIA Corporation) Hidden
- NvTelemetry (Version: 2.4.5.0 - NVIDIA Corporation) Hidden
- NvvHci (Version: 2.02.0.5 - NVIDIA Corporation) Hidden
- Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.8067.2115 - Microsoft Corporation) Hidden
- Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.8067.2115 - Microsoft Corporation) Hidden
- Office 16 Click-to-Run Licensing Component (Version: 16.0.8067.2115 - Microsoft Corporation) Hidden
- Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7967.2073 - Microsoft Corporation) Hidden
- Oprogramowanie Logitech Unifying 2.50 (HKLM\...\Logitech Unifying) (Version: 2.50.25 - Logitech)
- Outlast (HKLM-x32\...\Outlast_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91)
- PhotoOfTheDay (HKU\S-1-5-21-813033584-1070609415-2101242023-1001\...\62402b9151f3eae2) (Version: 1.0.0.1 - PhotoOfTheDay)
- qBittorrent 3.3.12 (HKLM-x32\...\qBittorrent) (Version: 3.3.12 - The qBittorrent project)
- Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.10.714.2016 - Realtek)
- Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8105 - Realtek Semiconductor Corp.)
- Registrar Registry Manager 8.03 (HKLM\...\RegistrarHome_is1) (Version: - Resplendence Software Projects Sp.)
- Sherlock Holmes - The Devil's Daughter (HKLM-x32\...\{958958D4-484A-4C90-9AB4-88977BE9EBED}_is1) (Version: - Frogwares)
- SHIELD Streaming (Version: 7.1.0360 - NVIDIA Corporation) Hidden
- SHIELD Wireless Controller Driver (Version: 3.5.0.76 - NVIDIA Corporation) Hidden
- Splashify 1.3.1 (only current user) (HKU\S-1-5-21-813033584-1070609415-2101242023-1001\...\31d974a6-5482-57eb-967d-b262954c432c) (Version: 1.3.1 - Dev7studios)
- Spotify (HKU\S-1-5-21-813033584-1070609415-2101242023-1001\...\Spotify) (Version: 1.0.55.487.g256699aa - Spotify AB)
- Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
- SumatraPDF (HKLM\...\SumatraPDF) (Version: 3.1.2 - Krzysztof Kowalczyk)
- TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.4 - TeamSpeak Systems GmbH)
- The Crew (Worldwide) (HKLM-x32\...\Uplay Install 413) (Version: - Ubisoft)
- Uplay (HKLM-x32\...\Uplay) (Version: 31.1 - Ubisoft)
- VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN)
- Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.)
- ==================== Custom CLSID (Whitelisted): ==========================
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- CustomCLSID: HKU\S-1-5-21-813033584-1070609415-2101242023-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-1009BCAA6E91}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => No File
- CustomCLSID: HKU\S-1-5-21-813033584-1070609415-2101242023-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
- ==================== Scheduled Tasks (Whitelisted) =============
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- Task: {0216ADDA-FE61-49BF-A15C-80AC2A6BB0DD} - System32\Tasks\IntelIOC-Upgrade-f1c8187b-2653-47cd-a9be-b554b98f68a7-Logon => C:\Program Files (x86)\Intel\Intel(R) Online Connect Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2016-09-29] (Intel Corporation)
- Task: {2FBE4BB1-595E-4C21-B158-73CEDA9B2F53} - \Wehesaterferck -> No File <==== ATTENTION
- Task: {4DC621E8-7DC3-4142-88CC-2E9AA3EC45E6} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-05-14] (Microsoft Corporation)
- Task: {52FBB294-4EDF-4242-8147-8A2322B62877} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-05-05] (Piriform Ltd)
- Task: {58F8F664-0AE1-475F-BC42-907B21FF4B97} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-aczyrnia@gmail.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01] (Adobe Systems Incorporated)
- Task: {5B820A3D-6DE4-499A-8D7D-931BAAD9E4FE} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-04-26] (NVIDIA Corporation)
- Task: {617CAA86-0B49-4B9F-AE4A-F2A7C950ACA7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-05-25] (Microsoft Corporation)
- Task: {66543906-B179-41C3-AE53-3F55290A7F60} - System32\Tasks\IntelIOC-Upgrade-f1c8187b-2653-47cd-a9be-b554b98f68a7 => C:\Program Files (x86)\Intel\Intel(R) Online Connect Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2016-09-29] (Intel Corporation)
- Task: {6E0B6A0D-D414-47FF-A549-0446F5E1FCEC} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-04-26] (NVIDIA Corporation)
- Task: {6E97065F-2021-4793-ADEF-E94DC42403C8} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-05-25] ()
- Task: {722A25A1-262B-4544-AE7A-EF5CBF0C42D1} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-04-26] (NVIDIA Corporation)
- Task: {739AFECB-44C8-49D0-AEA1-93BFE859409E} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-04-26] (NVIDIA Corporation)
- Task: {7D94F1CF-F527-48A6-AAE9-814FF43D0845} - System32\Tasks\Ghasotunet Schedule => C:\Program Files (x86)\Anerfery\ruhty.exe [2017-05-04] (Google Inc.)
- Task: {8209B9E2-3866-4071-BDC9-AB9235C4E590} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2017-04-14] ()
- Task: {99038A49-9F24-4570-9015-C10764A6558C} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-05-25] ()
- Task: {AD58A4EF-A527-41C4-A57B-4BA68840A98D} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-07-26] (Intel(R) Corporation)
- Task: {BC27C81A-416A-473F-AD33-72ADD6A7839B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-05-28] (Google Inc.)
- Task: {BF3E02E4-BF4E-4511-A243-8C895CBC79D6} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
- Task: {C2701FDA-56BF-4204-BF0F-E41ADFBC34D4} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-04-26] (NVIDIA Corporation)
- Task: {C8934726-AC39-4456-87C4-44C63B6A9641} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\Explorer.exe /NOUACCHECK
- Task: {CF3E71E7-131A-4532-9D78-1995A49900F8} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-05-25] (Microsoft Corporation)
- Task: {D87EDE86-7A14-47BD-AFAE-25B5B7B43098} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-05-28] (Google Inc.)
- Task: {F45FA083-33DA-453E-8F86-1B9FB256CB74} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-04-26] (NVIDIA Corporation)
- Task: {F5E0CE2A-1791-421F-993F-A9762A732485} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-05-14] (Microsoft Corporation)
- Task: {FF33D319-7EF6-4F00-90CA-B3FF08A6B984} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-04-26] (NVIDIA Corporation)
- (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
- ==================== Shortcuts =============================
- (The entries could be listed to be restored or removed.)
- Shortcut: C:\Users\aczyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Pulpit zdalny Chrome.lnk -> C:\Users\aczyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome ()
- ShortcutWithArgument: C:\Users\aczyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Pulpit zdalny Chrome (1).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp
- ShortcutWithArgument: C:\Users\aczyr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Simple EPUB Reader.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=ojhbgcchcbdjdenibfmjofobklkkhofc
- ==================== Loaded Modules (Whitelisted) ==============
- 2016-10-05 12:15 - 2016-10-05 12:15 - 00107752 _____ () C:\Program Files\Intel\Intel(R) Online Connect Access\libglog.dll
- 2016-10-05 12:15 - 2016-10-05 12:15 - 00412904 _____ () C:\Program Files\Intel\Intel(R) Online Connect Access\JsonCpp.dll
- 2017-05-03 16:15 - 2017-04-26 07:37 - 01147512 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
- 2017-03-18 22:58 - 2017-03-18 22:58 - 00138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
- 2016-10-25 09:57 - 2016-10-25 09:57 - 00491184 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
- 2017-03-08 04:42 - 2017-03-08 04:42 - 00230064 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
- 2017-03-18 22:59 - 2017-03-19 04:31 - 01731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
- 2017-05-26 16:29 - 2017-05-26 16:30 - 00074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\SkypeHost.exe
- 2017-05-26 16:29 - 2017-05-26 16:30 - 00201728 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
- 2017-05-26 16:29 - 2017-05-26 16:30 - 43202048 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\SkyWrap.dll
- 2017-05-26 16:29 - 2017-05-26 16:30 - 02442752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\skypert.dll
- 2017-05-03 15:39 - 2010-04-03 14:05 - 00380928 _____ () C:\Program Files (x86)\Launchy\Launchy.exe
- 2016-10-25 09:57 - 2016-10-25 09:57 - 31723696 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
- 2016-10-04 17:09 - 2016-10-04 17:09 - 00253664 _____ () C:\Program Files\Intel\Intel(R) Online Connect\CSLibWrapper.dll
- 2017-05-28 14:54 - 2017-05-09 11:13 - 03767640 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\libglesv2.dll
- 2017-05-28 14:54 - 2017-05-09 11:13 - 00100696 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\libegl.dll
- 2017-04-07 00:54 - 2017-04-07 00:54 - 16162304 _____ () C:\Program Files (x86)\qBittorrent\qbittorrent.exe
- 2017-05-25 10:18 - 2017-05-25 10:18 - 01726976 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8218.40507.0_x64__8wekyb3d8bbwe\HxMail.exe
- 2017-05-25 10:18 - 2017-05-25 10:18 - 13096136 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8218.40507.0_x64__8wekyb3d8bbwe\Office.UI.Xaml.Core.dll
- 2017-05-25 10:18 - 2017-05-25 10:18 - 01199304 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8218.40507.0_x64__8wekyb3d8bbwe\Office.UI.Xaml.Word.dll
- 2017-05-03 16:15 - 2017-04-26 07:37 - 00900216 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
- 2017-05-03 15:39 - 2009-12-16 23:13 - 08314880 _____ () C:\Program Files (x86)\Launchy\QtGui4.dll
- 2017-05-03 15:39 - 2009-12-16 22:56 - 00712704 _____ () C:\Program Files (x86)\Launchy\QtNetwork4.dll
- 2017-05-03 15:39 - 2009-12-16 22:54 - 02236416 _____ () C:\Program Files (x86)\Launchy\QtCore4.dll
- 2017-05-03 15:39 - 2009-12-17 01:18 - 00233472 _____ () C:\Program Files (x86)\Launchy\imageformats\qmng4.dll
- 2017-05-03 15:39 - 2010-04-03 14:06 - 00081920 _____ () C:\Program Files (x86)\Launchy\plugins\calcy.dll
- 2017-05-03 15:39 - 2010-04-03 14:05 - 00090112 _____ () C:\Program Files (x86)\Launchy\plugins\controly.dll
- 2017-05-03 15:39 - 2010-04-03 14:06 - 00024064 _____ () C:\Program Files (x86)\Launchy\plugins\gcalc.dll
- 2017-05-03 15:39 - 2010-04-03 14:06 - 00094208 _____ () C:\Program Files (x86)\Launchy\plugins\runner.dll
- 2017-05-03 15:39 - 2010-04-03 14:05 - 00057344 _____ () C:\Program Files (x86)\Launchy\plugins\verby.dll
- 2017-05-03 15:39 - 2010-04-03 14:05 - 00122880 _____ () C:\Program Files (x86)\Launchy\plugins\weby.dll
- 2017-05-03 17:47 - 2017-05-25 10:22 - 00507968 _____ () C:\Program Files (x86)\GOG Galaxy\PocoUtil.dll
- 2017-05-03 17:47 - 2017-04-25 13:14 - 53018112 _____ () C:\Program Files (x86)\GOG Galaxy\libcef.dll
- 2017-05-03 17:47 - 2017-05-25 10:22 - 01076800 _____ () C:\Program Files (x86)\GOG Galaxy\PocoNet.dll
- 2017-05-03 17:47 - 2017-05-25 10:21 - 01854528 _____ () C:\Program Files (x86)\GOG Galaxy\PocoData.dll
- 2017-05-03 17:47 - 2017-05-25 10:22 - 00393280 _____ () C:\Program Files (x86)\GOG Galaxy\PocoDataSQLite.dll
- 2017-05-03 17:47 - 2017-05-25 10:22 - 01589312 _____ () C:\Program Files (x86)\GOG Galaxy\PocoFoundation.dll
- 2017-05-03 17:47 - 2017-05-25 10:22 - 00330816 _____ () C:\Program Files (x86)\GOG Galaxy\PocoJSON.dll
- 2017-05-03 17:47 - 2017-05-25 10:22 - 00307776 _____ () C:\Program Files (x86)\GOG Galaxy\PocoNetSSL.dll
- 2017-05-03 17:47 - 2017-05-25 10:22 - 00104000 _____ () C:\Program Files (x86)\GOG Galaxy\zlib.dll
- 2017-05-03 17:47 - 2017-05-25 10:22 - 00520768 _____ () C:\Program Files (x86)\GOG Galaxy\PocoXML.dll
- 2017-05-03 17:47 - 2017-05-25 10:22 - 00272448 _____ () C:\Program Files (x86)\GOG Galaxy\PocoZip.dll
- 2017-05-03 17:47 - 2017-05-25 10:22 - 00680000 _____ () C:\Program Files (x86)\GOG Galaxy\sqlite.dll
- 2017-05-03 17:47 - 2017-05-25 10:21 - 00425536 _____ () C:\Program Files (x86)\GOG Galaxy\pcre.dll
- 2017-05-03 17:47 - 2017-05-25 10:21 - 00157760 _____ () C:\Program Files (x86)\GOG Galaxy\PocoCrypto.dll
- 2017-05-03 17:47 - 2017-05-25 10:21 - 00152128 _____ () C:\Program Files (x86)\GOG Galaxy\expat.dll
- 2017-05-03 17:47 - 2017-05-25 10:21 - 01589312 _____ () C:\ProgramData\GOG.com\Galaxy\redists\PocoFoundation.dll
- 2017-05-03 17:47 - 2017-05-25 10:21 - 00330816 _____ () C:\ProgramData\GOG.com\Galaxy\redists\PocoJSON.dll
- 2017-05-03 17:47 - 2017-05-25 10:21 - 00507968 _____ () C:\ProgramData\GOG.com\Galaxy\redists\PocoUtil.dll
- 2017-05-03 17:47 - 2017-05-25 10:21 - 00104000 _____ () C:\ProgramData\GOG.com\Galaxy\redists\zlib.dll
- 2017-05-03 17:47 - 2017-05-25 10:21 - 00425536 _____ () C:\ProgramData\GOG.com\Galaxy\redists\pcre.dll
- 2017-05-03 17:47 - 2017-05-25 10:21 - 00520768 _____ () C:\ProgramData\GOG.com\Galaxy\redists\PocoXML.dll
- 2017-05-03 17:47 - 2017-05-25 10:21 - 00152128 _____ () C:\ProgramData\GOG.com\Galaxy\redists\expat.dll
- 2017-05-03 17:47 - 2017-04-25 13:14 - 01738752 _____ () C:\Program Files (x86)\GOG Galaxy\libglesv2.dll
- 2017-05-03 17:47 - 2017-04-25 13:14 - 00078848 _____ () C:\Program Files (x86)\GOG Galaxy\libegl.dll
- 2017-01-25 20:07 - 2017-01-25 20:07 - 00118272 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\fs-ext\build\Release\fs-ext.node
- 2017-01-25 20:07 - 2017-01-25 20:07 - 00214528 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node
- 2017-01-25 20:06 - 2017-01-25 20:06 - 00117248 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ref\build\Release\binding.node
- 2017-01-25 20:07 - 2017-01-25 20:07 - 00125952 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ffi\build\Release\ffi_bindings.node
- 2017-03-14 08:35 - 2017-03-14 08:35 - 00099416 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-ProxyResolver\build\Release\ProxyResolverWin.dll
- 2017-01-25 20:07 - 2017-01-25 20:07 - 00086528 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\idle-gc\build\Release\idle-gc.node
- 2017-02-23 18:13 - 2017-02-23 18:13 - 00118272 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\fs-ext\build\Release\fs-ext.node
- 2017-02-23 18:13 - 2017-02-23 18:13 - 00117760 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\ref\build\Release\binding.node
- 2017-02-23 18:13 - 2017-02-23 18:13 - 00125440 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\ffi\build\Release\ffi_bindings.node
- 2017-02-23 18:13 - 2017-02-23 18:13 - 00214528 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node
- 2017-03-14 08:29 - 2017-03-14 08:29 - 00099416 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-ProxyResolver\build\Release\ProxyResolverWin.dll
- 2017-02-23 18:13 - 2017-02-23 18:13 - 00098816 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\bufferutil\build\Release\bufferutil.node
- 2017-02-23 18:13 - 2017-02-23 18:13 - 00086528 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\idle-gc\build\Release\idle-gc.node
- 2017-05-03 15:57 - 2017-05-17 03:54 - 00678176 _____ () C:\Program Files (x86)\Steam\SDL2.dll
- 2017-05-03 15:57 - 2017-06-01 21:50 - 02485536 _____ () C:\Program Files (x86)\Steam\video.dll
- 2017-05-03 15:57 - 2016-09-01 03:02 - 04969248 _____ () C:\Program Files (x86)\Steam\v8.dll
- 2017-05-03 15:57 - 2016-01-27 09:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
- 2017-05-03 15:57 - 2016-01-27 09:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
- 2017-05-03 15:57 - 2016-01-27 09:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
- 2017-05-03 15:57 - 2016-01-27 09:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
- 2017-05-03 15:57 - 2016-01-27 09:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
- 2017-05-03 15:57 - 2016-09-01 03:02 - 01195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
- 2017-05-03 15:57 - 2016-09-01 03:02 - 01563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
- 2017-05-03 15:57 - 2017-06-01 21:50 - 00877856 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
- 2017-05-03 15:57 - 2016-07-05 00:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
- 2017-05-03 15:58 - 2017-05-08 21:45 - 69516064 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
- 2017-05-03 15:57 - 2017-06-01 21:50 - 00385312 _____ () C:\Program Files (x86)\Steam\steam.dll
- 2016-10-20 01:28 - 2016-10-20 01:28 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
- 2017-05-03 16:15 - 2017-04-26 07:03 - 02442360 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node
- 2017-05-03 16:15 - 2017-04-26 07:03 - 00361920 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node
- 2017-05-03 16:15 - 2017-04-26 07:03 - 00252352 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node
- 2017-05-03 16:15 - 2017-04-26 07:03 - 00384120 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node
- 2017-05-03 16:15 - 2017-04-26 07:03 - 00467392 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node
- 2017-05-03 16:15 - 2017-04-26 07:03 - 00572024 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node
- 2017-05-03 15:57 - 2015-09-25 01:52 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
- 2017-05-25 21:41 - 2017-05-28 14:55 - 67117168 _____ () C:\Users\aczyr\AppData\Roaming\Spotify\libcef.dll
- 2017-05-25 21:41 - 2017-05-28 14:55 - 00116848 _____ () C:\Users\aczyr\AppData\Roaming\Spotify\SpotifyWinRT.dll
- 2017-05-25 21:41 - 2017-05-28 14:55 - 02253424 _____ () C:\Users\aczyr\AppData\Roaming\Spotify\libglesv2.dll
- 2017-05-25 21:41 - 2017-05-28 14:55 - 00086640 _____ () C:\Users\aczyr\AppData\Roaming\Spotify\libegl.dll
- ==================== Alternate Data Streams (Whitelisted) =========
- (If an entry is included in the fixlist, only the ADS will be removed.)
- AlternateDataStreams: C:\WINDOWS\system32\Drivers\arvjzyox.sys:changelist [1114]
- AlternateDataStreams: C:\WINDOWS\system32\Drivers\hcpvzyab.sys:changelist [318]
- AlternateDataStreams: C:\WINDOWS\system32\Drivers\hdvwkbdb.sys:changelist [318]
- AlternateDataStreams: C:\WINDOWS\system32\Drivers\jfldkhut.sys:changelist [318]
- AlternateDataStreams: C:\WINDOWS\system32\Drivers\jjfqkwmn.sys:changelist [318]
- AlternateDataStreams: C:\WINDOWS\system32\Drivers\khnjcpkb.sys:changelist [1386]
- AlternateDataStreams: C:\WINDOWS\system32\Drivers\pjzmykmx.sys:changelist [1118]
- AlternateDataStreams: C:\WINDOWS\system32\Drivers\rbkumxrl.sys:changelist [318]
- AlternateDataStreams: C:\WINDOWS\system32\Drivers\vqvzpobw.sys:changelist [318]
- ==================== Safe Mode (Whitelisted) ===================
- (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
- HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
- HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
- ==================== Association (Whitelisted) ===============
- (If an entry is included in the fixlist, the registry item will be restored to default or removed.)
- ==================== Internet Explorer trusted/restricted ===============
- (If an entry is included in the fixlist, it will be removed from the registry.)
- ==================== Hosts content: ===============================
- (If needed Hosts: directive could be included in the fixlist to reset Hosts.)
- 2015-07-10 13:04 - 2015-07-10 13:02 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts
- ==================== Other Areas ============================
- (Currently there is no automatic fix for this section.)
- HKU\S-1-5-21-813033584-1070609415-2101242023-1001\Control Panel\Desktop\\Wallpaper -> D:\Pictures\Splashify\photo-1443890923422-7819ed4101c0.jpg
- DNS Servers: 37.8.214.2 - 31.11.202.254
- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
- Windows Firewall is enabled.
- ==================== MSCONFIG/TASK MANAGER disabled items ==
- HKU\S-1-5-21-813033584-1070609415-2101242023-1001\...\StartupApproved\Run: => "TIDAL"
- ==================== FirewallRules (Whitelisted) ===============
- (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
- FirewallRules: [{16B3AA43-AE5B-4903-AAB5-0B519385E32F}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe
- FirewallRules: [{B938B726-9CA1-4027-ADA8-0F42E6CBA74B}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe
- FirewallRules: [{925306B9-2C1D-4DF8-B70F-5D9834629E92}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
- FirewallRules: [{67146104-44C1-424B-9968-73D525D97D48}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
- FirewallRules: [{2EA4AEDB-F526-411B-BB12-74697762A253}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
- FirewallRules: [{97B046B7-0D43-46B1-AC3C-669191010BD4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
- FirewallRules: [{821E0EBC-C3B7-4A9E-83C5-F4627D1BB42F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
- FirewallRules: [{05F7FCBB-2AA4-423A-8B46-2455485497E6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- FirewallRules: [{3B4C01B6-C522-4CCE-9112-785B0ECCF2F4}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- FirewallRules: [{5F55393C-7E82-427C-AA78-B69A105AE540}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe
- FirewallRules: [{F642AE25-279A-4EE8-8D8E-0421EF934D58}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe
- FirewallRules: [{A8085991-9F5E-4C24-8601-A7F403F73C74}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
- FirewallRules: [{3B3B1FCF-27F8-4D6A-A1F3-05EC7A1A3709}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
- FirewallRules: [{54F4EBFB-0E09-43E1-8876-FB7824CB6951}] => (Allow) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.EXE
- FirewallRules: [{A78740F8-6C0C-4933-B060-C50D754642AC}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
- FirewallRules: [{BF35502D-EE4E-4FC3-8835-0931E39860C1}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
- FirewallRules: [{3BE94CDF-D603-43A8-BDE3-F952A1992BFF}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
- FirewallRules: [{7EE74550-1D1E-478B-8E42-3AE73012E805}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
- FirewallRules: [TCP Query User{4268AC2C-4896-4304-86ED-4801E6F3808D}D:\games\battlefield 1\bf1.exe] => (Allow) D:\games\battlefield 1\bf1.exe
- FirewallRules: [UDP Query User{C193126E-3FC4-4654-85DA-AA70F217A4B4}D:\games\battlefield 1\bf1.exe] => (Allow) D:\games\battlefield 1\bf1.exe
- FirewallRules: [{570C67CC-E0E7-4705-91F0-B171616EFDC0}] => (Allow) D:\SteamLibrary\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe
- FirewallRules: [{89A82BCD-3BF2-4813-88AB-A6ECE65E6D03}] => (Allow) D:\SteamLibrary\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe
- FirewallRules: [{616498A5-6BE9-44FF-85C0-87AFF542E8C0}] => (Allow) D:\SteamLibrary\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe
- FirewallRules: [{14DCE13D-E16F-40B3-893A-14AA20E59FA3}] => (Allow) D:\SteamLibrary\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe
- FirewallRules: [{270BCDB6-44C9-4794-86CB-7FBD33C46D50}] => (Allow) D:\Gry\The Crew (Worldwide)\TheCrew.exe
- FirewallRules: [{DAF39D7C-A429-42B5-87B8-C41F52B426E7}] => (Allow) D:\Gry\The Crew (Worldwide)\TheCrew.exe
- FirewallRules: [{D7AC480D-1EB5-467D-9302-168F24AC4625}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
- FirewallRules: [{7C38FD3C-B6DC-4C60-B6FC-F483A9081FB2}] => (Allow) C:\Program Files (x86)\Firefox\Firefox.exe
- FirewallRules: [{8FB4F7CF-D245-4478-B68E-00879F966E00}] => (Allow) C:\Program Files (x86)\Hippig\Application\chrome.exe
- FirewallRules: [TCP Query User{D56769F6-F78D-4F51-B8DB-09AD65BEA64B}C:\users\aczyr\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\aczyr\appdata\roaming\spotify\spotify.exe
- FirewallRules: [UDP Query User{E1EFBCBD-0C2A-4A1F-BDE5-91137FD3D9F4}C:\users\aczyr\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\aczyr\appdata\roaming\spotify\spotify.exe
- FirewallRules: [{60F7FFC7-BE6D-4935-BF78-1E894D92EF8E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- ==================== Restore Points =========================
- 15-05-2017 17:56:01 Zainstalowano: Microsoft Visual C++ 2005 Redistributable
- 19-05-2017 17:50:32 Removed Google Chrome
- 20-05-2017 12:17:10 Operacja przywracania
- 23-05-2017 13:17:51 Windows Update
- 28-05-2017 14:46:22 Removed Google Chrome
- 29-05-2017 18:13:48 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
- 29-05-2017 18:13:55 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
- 03-06-2017 13:04:01 Windows Update
- ==================== Faulty Device Manager Devices =============
- Name: Standardowa klawiatura PS/2
- Description: Standardowa klawiatura PS/2
- Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
- Manufacturer: (Klawiatury standardowe)
- Service: i8042prt
- Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
- Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
- Devices stay in this state if they have been prepared for removal.
- After you remove the device, this error disappears.Remove the device, and this error should be resolved.
- Name: Mysz Microsoft PS/2
- Description: Mysz Microsoft PS/2
- Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
- Manufacturer: Microsoft
- Service: i8042prt
- Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
- Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
- Devices stay in this state if they have been prepared for removal.
- After you remove the device, this error disappears.Remove the device, and this error should be resolved.
- ==================== Event log errors: =========================
- Application errors:
- ==================
- Error: (06/03/2017 08:54:51 PM) (Source: SideBySide) (EventID: 35) (User: )
- Description: Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Błąd w pliku manifestu lub w pliku zasad "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" w wierszu 1.
- Tożsamość składnika znaleziona w manifeście nie odpowiada tożsamości składnika żądanego.
- Odwołanie to UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
- Definicja to UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
- Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.
- Error: (06/03/2017 08:41:35 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
- Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu:
- hr=0xC004F074
- Argumenty wiersza polecenia:
- RuleId=dca14e37-0c5c-444f-9b35-1e2f161f5ac3;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=58e97c99-f377-4ef1-81d5-4ad5522b5fd8;NotificationInterval=1440;Trigger=TimerEvent
- Error: (06/03/2017 08:41:20 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
- Description: Aktywacja licencji (slui.exe) nie powiodła się, kod błędu:
- hr=0xC004F074
- Argumenty wiersza polecenia:
- RuleId=dca14e37-0c5c-444f-9b35-1e2f161f5ac3;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=58e97c99-f377-4ef1-81d5-4ad5522b5fd8;NotificationInterval=1440;Trigger=TimerEvent
- Error: (06/03/2017 08:01:49 PM) (Source: Application Error) (EventID: 1000) (User: )
- Description: Nazwa aplikacji powodującej błąd: 4zleqob7.exe, wersja: 2.2.19882.0, sygnatura czasowa: 0x56e2cdca
- Nazwa modułu powodującego błąd: 4zleqob7.exe, wersja: 2.2.19882.0, sygnatura czasowa: 0x56e2cdca
- Kod wyjątku: 0xc0000005
- Przesunięcie błędu: 0x0001d061
- Identyfikator procesu powodującego błąd: 0x2198
- Godzina uruchomienia aplikacji powodującej błąd: 0x01d2dc92ab41f16f
- Ścieżka aplikacji powodującej błąd: C:\Users\aczyr\Downloads\4zleqob7.exe
- Ścieżka modułu powodującego błąd: C:\Users\aczyr\Downloads\4zleqob7.exe
- Identyfikator raportu: 52058058-cf68-482a-a020-85838c77dfb6
- Pełna nazwa pakietu powodującego błąd:
- Identyfikator aplikacji względem pakietu powodującego błąd:
- Error: (06/03/2017 07:41:32 PM) (Source: Application Error) (EventID: 1000) (User: )
- Description: Nazwa aplikacji powodującej błąd: GalaxyClient Helper.exe, wersja: 1.2.9.5, sygnatura czasowa: 0x59230001
- Nazwa modułu powodującego błąd: libcef.dll, wersja: 3.2704.1434.0, sygnatura czasowa: 0x57d833c4
- Kod wyjątku: 0xc0000005
- Przesunięcie błędu: 0x00bfa1cd
- Identyfikator procesu powodującego błąd: 0x2d6c
- Godzina uruchomienia aplikacji powodującej błąd: 0x01d2d9f635d231b3
- Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe
- Ścieżka modułu powodującego błąd: C:\Program Files (x86)\GOG Galaxy\libcef.dll
- Identyfikator raportu: c1d715ec-11f9-4c83-b105-b9b9c6a31c7e
- Pełna nazwa pakietu powodującego błąd:
- Identyfikator aplikacji względem pakietu powodującego błąd:
- Error: (06/03/2017 01:02:38 PM) (Source: SideBySide) (EventID: 35) (User: )
- Description: Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Błąd w pliku manifestu lub w pliku zasad "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" w wierszu 1.
- Tożsamość składnika znaleziona w manifeście nie odpowiada tożsamości składnika żądanego.
- Odwołanie to UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
- Definicja to UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
- Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.
- Error: (06/01/2017 11:21:27 AM) (Source: SideBySide) (EventID: 35) (User: )
- Description: Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Błąd w pliku manifestu lub w pliku zasad "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" w wierszu 1.
- Tożsamość składnika znaleziona w manifeście nie odpowiada tożsamości składnika żądanego.
- Odwołanie to UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
- Definicja to UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
- Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.
- Error: (05/31/2017 02:51:19 PM) (Source: IntelDalJhi) (EventID: 4) (User: )
- Description: Intel(R) Dynamic Application Loader Host Interface Service initialization failure - the spooler applet is invalid.
- Error: (05/31/2017 02:51:19 PM) (Source: IntelDalJhi) (EventID: 4) (User: )
- Description: Intel(R) Dynamic Application Loader Host Interface Service initialization failure - the spooler applet is invalid.
- Error: (05/31/2017 09:26:23 AM) (Source: SideBySide) (EventID: 35) (User: )
- Description: Nie można wygenerować kontekstu aktywacji dla "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Błąd w pliku manifestu lub w pliku zasad "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" w wierszu 1.
- Tożsamość składnika znaleziona w manifeście nie odpowiada tożsamości składnika żądanego.
- Odwołanie to UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
- Definicja to UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
- Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.
- System errors:
- =============
- Error: (06/03/2017 07:44:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
- Description: Nie można uruchomić usługi Usługa Google Update (gupdate) z powodu następującego błędu:
- Nie można odnaleźć określonego pliku.
- Error: (06/03/2017 07:43:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
- Description: Nie można uruchomić usługi Steam Client Service z powodu następującego błędu:
- Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie.
- Error: (06/03/2017 07:43:15 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
- Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Steam Client Service.
- Error: (06/03/2017 07:42:59 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
- Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi Intel(R) Online Connect Helper.
- Error: (06/03/2017 07:42:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
- Description: Nie można uruchomić usługi CldFlt z powodu następującego błędu:
- Żądanie nie jest obsługiwane.
- Error: (06/03/2017 07:42:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
- Description: Nie można uruchomić usługi Windows Search z powodu następującego błędu:
- System nie może odnaleźć określonej ścieżki.
- Error: (06/03/2017 07:41:34 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
- Description: Usługa NVIDIA Display Container LS niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 1000 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service.
- Error: (06/03/2017 07:41:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
- Description: Usługa Intel(R) Online Connect niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service.
- Error: (06/03/2017 07:41:33 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
- Description: Usługa Intel(R) Dynamic Application Loader Host Interface Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.
- Error: (06/03/2017 07:41:32 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
- Description: Usługa Steam Client Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.
- CodeIntegrity:
- ===================================
- Date: 2017-05-31 18:49:37.507
- Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
- Date: 2017-05-29 22:11:56.667
- Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
- Date: 2017-05-28 14:53:54.168
- Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
- Date: 2017-05-28 14:53:53.185
- Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
- Date: 2017-05-28 14:51:55.985
- Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
- Date: 2017-05-28 14:51:53.640
- Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
- Date: 2017-05-25 17:26:45.155
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\WinMetadata\Windows.Graphics.winmd because the set of per-page image hashes could not be found on the system.
- Date: 2017-05-25 17:26:44.773
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\Windows.UI.dll because the set of per-page image hashes could not be found on the system.
- Date: 2017-05-25 17:26:43.934
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll because the set of per-page image hashes could not be found on the system.
- Date: 2017-05-25 17:26:43.858
- Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll because the set of per-page image hashes could not be found on the system.
- ==================== Memory info ===========================
- Processor: Intel(R) Core(TM) i5-6400 CPU @ 2.70GHz
- Percentage of memory in use: 35%
- Total physical RAM: 16330.69 MB
- Available physical RAM: 10570.29 MB
- Total Virtual: 18762.69 MB
- Available Virtual: 12395.99 MB
- ==================== Drives ================================
- Drive c: () (Fixed) (Total:223.02 GB) (Free:121.96 GB) NTFS
- Drive d: (GOODRAM) (Fixed) (Total:465.76 GB) (Free:331.13 GB) NTFS
- ==================== MBR & Partition Table ==================
- ========================================================
- Disk: 0 (MBR Code: Windows 7 or 8) (Size: 223.6 GB) (Disk ID: 00000000)
- Partition: GPT.
- ========================================================
- Disk: 2 (Size: 465.8 GB) (Disk ID: 00030D94)
- Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)
- ==================== End of Addition.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement