Mea culpa, poprawne logi
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-04-2017
Ran by Rozpierdalacz (19-04-2017 22:27:21)
Running from C:\Users\Rozpierdalacz\Desktop\Nowy folder
Windows 10 Pro Version 1607 (X64) (2017-01-24 15:22:12)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-2095620367-3616407288-1262520271-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2095620367-3616407288-1262520271-503 - Limited - Disabled)
Guest (S-1-5-21-2095620367-3616407288-1262520271-501 - Limited - Disabled)
Rozpierdalacz (S-1-5-21-2095620367-3616407288-1262520271-1001 - Administrator - Enabled) = & gt; C:\Users\Rozpierdalacz
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
==================== Installed Programs ======================
(Only the adware programs with " Hidden " flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-2095620367-3616407288-1262520271-1001\...\uTorrent) (Version: 3.4.9.43388 - BitTorrent Inc.)
Adobe Flash Player 25 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 25.0.0.127 - Adobe Systems Incorporated)
Adobe Flash Player 25 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 25.0.0.148 - Adobe Systems Incorporated)
Aktualizacje NVIDIA 23.23.30.0 (Version: 23.23.30.0 - NVIDIA Corporation) Hidden
Ansel (Version: 381.65 - NVIDIA Corporation) Hidden
Any Video Converter 6.0.6 (HKLM-x32\...\Any Video Converter) (Version: 6.0.6 - Anvsoft)
ASRock App Charger v1.0.6 (HKLM\...\ASRock App Charger_is1) (Version: 1.0.6 - ASRock Inc.)
AutoHotkey 1.1.24.02 (HKLM\...\AutoHotkey) (Version: 1.1.24.02 - Lexikos)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.3.2291 - AVAST Software)
Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts)
Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.7.2.45672 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB)
CCleaner (HKLM\...\CCleaner) (Version: 5.24 - Piriform)
Cheat Engine 6.6 (HKLM-x32\...\Cheat Engine 6.6_is1) (Version: - Cheat Engine)
CPUID CPU-Z 1.78 (HKLM\...\CPUID CPU-Z_is1) (Version: - )
CPUID HWMonitor 1.30 (HKLM\...\CPUID HWMonitor_is1) (Version: - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.5.0.0220 - Disc Soft Ltd)
ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB)
Fraps (HKLM-x32\...\Fraps) (Version: - )
GIMP 2.8.18 (HKLM\...\GIMP-2_is1) (Version: 2.8.18 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 57.0.2987.133 - Google Inc.)
Google Update Helper (x32 Version: 1.3.33.3 - Google Inc.) Hidden
HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 5.1.0.2 - Hi-Rez Studios)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Huawei E3372 (HKLM-x32\...\Huawei E3372) (Version: 22.001.22.03.1202 - Huawei Technologies Co.,Ltd)
Intel(R) Chipset Device Software (x32 Version: 10.1.1.12 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1173 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.6.0.1029 - Intel Corporation)
Java 8 Update 121 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180121F0}) (Version: 8.0.1210.13 - Oracle Corporation)
Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation)
Killer Bandwidth Control Filter Driver (Version: 1.1.56.1651 - Rivet Networks) Hidden
Killer E240x Drivers (Version: 1.1.56.1651 - Rivet Networks) Hidden
Killer Network Manager (Version: 1.1.56.1651 - Rivet Networks) Hidden
Killer Performance Suite (HKLM-x32\...\{DB8A465E-67BE-4450-9C9A-FECEA6222B95}) (Version: 1.1.56.1651 - Rivet Networks)
Malwarebytes (wersja 3.0.6.1469) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes)
Microsoft DirectX SDK (March 2009) (HKLM-x32\...\Microsoft DirectX SDK (March 2009)) (Version: 9.26.1590.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation)
Mozilla Firefox 52.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 52.0 (x86 en-US)) (Version: 52.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 51.0.1.6234 - Mozilla)
Mp3tag v2.81 (HKLM-x32\...\Mp3tag) (Version: 2.81 - Florian Heidenreich)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.63.14 - Black Tree Gaming)
Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.3.3 - Notepad++ Team)
NVIDIA GeForce Experience 3.4.0.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.4.0.70 - NVIDIA Corporation)
NVIDIA Oprogramowanie systemu PhysX 9.17.0329 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0329 - NVIDIA Corporation)
NVIDIA Sterownik 3D Vision 381.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 381.65 - NVIDIA Corporation)
NVIDIA Sterownik dźwięku HD 1.3.34.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.26 - NVIDIA Corporation)
NVIDIA Sterownik graficzny 381.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 381.65 - NVIDIA Corporation)
NVIDIA Sterownik kontrolera 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NvNodejs (Version: 3.4.0.70 - NVIDIA Corporation) Hidden
NvTelemetry (Version: 2.4.5.0 - NVIDIA Corporation) Hidden
NvvHci (Version: 2.02.0.5 - NVIDIA Corporation) Hidden
Old Calculator for Windows 10 (HKLM-x32\...\OldCalcForWin10) (Version: 1.1 - hxxp://winaero.com)
Opera Stable 43.0.2442.1144 (HKLM-x32\...\Opera 43.0.2442.1144) (Version: 43.0.2442.1144 - Opera Software)
Origin (HKLM-x32\...\Origin) (Version: 10.4.3.15631 - Electronic Arts, Inc.)
Paladins (HKLM\...\Steam App 444090) (Version: - Hi-Rez Studios)
Panel sterowania NVIDIA 381.65 (Version: 381.65 - NVIDIA Corporation) Hidden
Photo! Editor 1.1 (HKLM-x32\...\PhotoToolkit_is1) (Version: - )
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8004 - Realtek Semiconductor Corp.)
SHIELD Streaming (Version: 7.1.0351 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 3.4.0.70 - NVIDIA Corporation) Hidden
SHU (HKLM-x32\...\{DF11DD92-DBB8-4F3F-9564-A8BBDBE986F5}_is1) (Version: 1.0 - ScreenShu Software)
TeamSpeak 3 Client (HKU\S-1-5-21-2095620367-3616407288-1262520271-1001\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.72365 - TeamViewer)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)
The Witcher 3 Wild Hunt v.1.0.2 (HKLM-x32\...\The Witcher 3 Wild Hunt_is1) (Version: - )
The Witcher 3: Wild Hunt - Free DLC program (16 DLC) (HKLM-x32\...\Free DLC program (16 DLC)_is1) (Version: 1.22.0.0 - GOG.com)
The Witcher 3: Wild Hunt - Krew i Wino (HKLM-x32\...\Blood and Wine_is1) (Version: 1.21.0.0 - GOG.com)
The Witcher 3: Wild Hunt - Serca z kamienia (HKLM-x32\...\Hearts of Stone_is1) (Version: 1.0.0.0 - GOG.com)
Uplay (HKLM-x32\...\Uplay) (Version: 4.9 - Ubisoft)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.)
War Thunder (HKLM\...\Steam App 236390) (Version: - Gaijin Entertainment)
War Thunder Launcher 1.0.1.762 (HKU\S-1-5-21-2095620367-3616407288-1262520271-1001\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment)
WinRAR 5.40 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {20392F3A-3076-439F-A0BA-54A49D9B10BD} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-02-23] (NVIDIA Corporation)
Task: {233971D5-E470-4912-AD37-42A731CA1C30} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-02-23] (NVIDIA Corporation)
Task: {246D79B6-5582-4D86-9EFF-C61620DEAE67} - System32\Tasks\Avast Emergency Update = & gt; C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-04-04] (AVAST Software)
Task: {2D53E2D0-BE8D-4EB5-B00E-3957B170F812} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-02-23] (NVIDIA Corporation)
Task: {47D57C85-648F-4387-B053-655F77F862ED} - System32\Tasks\CCleanerSkipUAC = & gt; E:\CCleaner\CCleaner.exe [2016-11-15] (Piriform Ltd)
Task: {6AA17AC9-5D46-4C43-B2EE-06C43DAADD02} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-02-23] (NVIDIA Corporation)
Task: {711AD01F-06F0-42E1-8988-9A1339EA0987} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-02-23] (NVIDIA Corporation)
Task: {882DD529-BA83-46B4-B575-FCCFF93DA48F} - System32\Tasks\Adobe Flash Player PPAPI Notifier = & gt; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_25_0_0_148_pepper.exe [2017-04-15] (Adobe Systems Incorporated)
Task: {891BFE3D-8773-40AC-8530-7C4C75C17C9F} - System32\Tasks\OneDrive Standalone Update Task = & gt; C:\Users\Uzytkownik 2\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe
Task: {9D1A9822-C927-4B6C-BDB1-4C2AA3265DAA} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-02-23] (NVIDIA Corporation)
Task: {AEFC4FDC-CD2A-4AC2-90FE-29824FD94E62} - System32\Tasks\GoogleUpdateTaskMachineCore = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-02-22] (Google Inc.)
Task: {D0EF5E42-1A91-4571-997D-53F70B578715} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-02-23] (NVIDIA Corporation)
Task: {D34A4FB0-545F-40FC-9E3F-75759250C114} - System32\Tasks\AVAST Software\Avast settings backup = & gt; C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-04-14] (AVAST Software)
Task: {E5B2AA61-4EB5-4A39-9334-6B3D12F971A3} - System32\Tasks\GoogleUpdateTaskMachineUA = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-02-22] (Google Inc.)
Task: {E88352FB-6A61-4FF6-A31A-BA87C05940E6} - System32\Tasks\Stersshiwaty Manager = & gt; C:\Program Files (x86)\Cefashwposy\danvey.exe
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job = & gt; C:\WINDOWS\explorer.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Rozpierdalacz\Desktop\Pulpit\Google Chrome.lnk - & gt; C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) - & gt; --process-per-site
==================== Loaded Modules (Whitelisted) ==============
2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2017-03-20 14:12 - 2017-03-04 09:19 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2017-01-23 20:38 - 2017-02-23 20:35 - 04489152 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll
2017-01-23 20:38 - 2017-02-23 20:35 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-01-21 17:52 - 2014-03-07 03:41 - 00240720 _____ () C:\ProgramData\MobileBrServ\mbbservice.exe
2017-02-26 21:42 - 2017-02-26 21:42 - 00076152 _____ () C:\WINDOWS\system32\PnkBstrA.exe
2017-04-04 20:11 - 2017-04-04 20:11 - 00522512 _____ () C:\Program Files\AVAST Software\Avast\x64\gaming_spy.dll
2017-03-20 14:12 - 2017-03-04 09:19 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2017-01-24 17:24 - 2017-01-24 17:24 - 00959168 _____ () C:\Users\Rozpierdalacz\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_2\amd64\ClientTelemetry.dll
2016-11-20 20:11 - 2016-11-20 20:11 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-03-20 14:11 - 2017-03-04 08:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2017-04-10 11:28 - 2017-04-10 11:28 - 00077312 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.13.133.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-04-10 11:28 - 2017-04-10 11:28 - 00189952 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.13.133.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-04-10 11:28 - 2017-04-10 11:28 - 42507264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.13.133.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-04-10 11:28 - 2017-04-10 11:28 - 02334184 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.13.133.0_x64__kzf8qxf38zg5c\skypert.dll
2017-01-21 17:52 - 2014-07-04 09:40 - 00182784 _____ () C:\ProgramData\MobileBrServ\tray.exe
2017-03-20 14:12 - 2017-03-04 08:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-03-20 14:12 - 2017-03-04 08:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-03-20 14:12 - 2017-03-04 08:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2017-03-20 14:12 - 2017-03-04 08:05 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2017-03-20 14:12 - 2017-03-04 08:08 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2017-01-11 19:32 - 2017-02-07 19:31 - 02493440 _____ () C:\Program Files (x86)\Origin\libGLESv2.dll
2017-01-23 20:38 - 2017-02-23 20:35 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2017-01-23 20:38 - 2017-02-23 20:35 - 00900032 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-01-23 20:38 - 2017-02-23 20:35 - 03774400 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\Poco.dll
2017-04-04 20:11 - 2017-04-04 20:11 - 00454424 _____ () C:\Program Files\AVAST Software\Avast\gaming_spy.dll
2017-04-04 20:11 - 2017-04-04 20:11 - 00170216 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2017-01-21 18:12 - 2017-01-21 18:12 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2017-04-04 20:11 - 2017-04-04 20:11 - 00176480 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll
2017-04-04 20:11 - 2017-04-04 20:11 - 00293936 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2017-04-04 20:11 - 2017-04-04 20:11 - 00653520 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2017-01-23 20:38 - 2017-02-23 16:30 - 00338488 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node
2017-01-23 20:38 - 2017-02-23 16:30 - 00252352 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node
2017-01-23 20:38 - 2017-02-23 16:30 - 02443320 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node
2017-01-23 20:38 - 2017-02-23 16:30 - 00385592 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node
2017-01-23 20:38 - 2017-02-23 16:30 - 00543288 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node
2017-01-23 20:38 - 2017-02-23 16:30 - 00468536 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node
2016-11-09 19:03 - 2017-03-10 02:13 - 00674592 _____ () F:\Steam\SDL2.dll
2016-11-09 19:03 - 2016-09-01 03:02 - 04969248 _____ () F:\Steam\v8.dll
2016-11-09 19:03 - 2017-03-23 02:52 - 02465056 _____ () F:\Steam\video.dll
2016-11-09 19:03 - 2016-09-01 03:02 - 01563936 _____ () F:\Steam\icui18n.dll
2016-11-09 19:03 - 2016-09-01 03:02 - 01195296 _____ () F:\Steam\icuuc.dll
2016-11-09 19:03 - 2016-01-27 09:49 - 02549760 _____ () F:\Steam\libavcodec-56.dll
2016-11-09 19:03 - 2016-01-27 09:49 - 00491008 _____ () F:\Steam\libavformat-56.dll
2016-11-09 19:03 - 2016-01-27 09:49 - 00332800 _____ () F:\Steam\libavresample-2.dll
2016-11-09 19:03 - 2016-01-27 09:49 - 00442880 _____ () F:\Steam\libavutil-54.dll
2016-11-09 19:03 - 2016-01-27 09:49 - 00485888 _____ () F:\Steam\libswscale-3.dll
2016-11-09 19:03 - 2017-03-31 00:46 - 00848672 _____ () F:\Steam\bin\chromehtml.DLL
2016-11-09 19:03 - 2016-07-05 00:17 - 00266560 _____ () F:\Steam\openvr_api.dll
2016-12-13 02:06 - 2017-01-30 23:41 - 68875552 _____ () F:\Steam\bin\cef\cef.win7\libcef.dll
2016-11-09 19:03 - 2017-03-23 02:52 - 00383776 _____ () F:\Steam\steam.dll
2016-11-09 19:03 - 2015-09-25 01:52 - 00119208 _____ () F:\Steam\winh264.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The " AlternateShell " will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService = & gt; " " = " Service "
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2016-11-19 19:14 - 2017-02-08 19:09 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-2095620367-3616407288-1262520271-1001\Control Panel\Desktop\\Wallpaper - & gt; C:\Users\Rozpierdalacz\Downloads\795984.jpg
DNS Servers: 192.168.8.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System = & gt; (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
MSCONFIG\Services: gupdate = & gt; 2
MSCONFIG\Services: gupdatem = & gt; 3
MSCONFIG\Services: Killer Service V2 = & gt; 2
MSCONFIG\Services: MSI_LiveUpdate_Service = & gt; 2
MSCONFIG\Services: Steam Client Service = & gt; 3
HKLM\...\StartupApproved\StartupFolder: = & gt; " Killer Network Manager.lnk "
HKLM\...\StartupApproved\Run32: = & gt; " Live Update "
HKLM\...\StartupApproved\Run32: = & gt; " SunJavaUpdateSched "
HKU\S-1-5-21-2095620367-3616407288-1262520271-1001\...\StartupApproved\Run: = & gt; " OneDrive "
HKU\S-1-5-21-2095620367-3616407288-1262520271-1001\...\StartupApproved\Run: = & gt; " Steam "
HKU\S-1-5-21-2095620367-3616407288-1262520271-1001\...\StartupApproved\Run: = & gt; " CCleaner Monitoring "
HKU\S-1-5-21-2095620367-3616407288-1262520271-1001\...\StartupApproved\Run: = & gt; " DAEMON Tools Lite Automount "
HKU\S-1-5-21-2095620367-3616407288-1262520271-1001\...\StartupApproved\Run: = & gt; " Gaijin.Net Agent "
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] = & gt; (Allow) LPort=139
FirewallRules: [{D6FFCCAA-C3FD-4C2D-BEBD-62D74DE8F798}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{D9A2A97F-E6C1-42B4-B483-08E35E4FAFE5}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{BAE87BD3-980F-472E-9679-C9B95C39381B}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{6F51771F-EBDD-4329-87FB-E07676FF9CCA}] = & gt; (Allow) %systemroot%\system32\alg.exe
FirewallRules: [{444BBEAB-FF3B-4A8C-9663-F76D9BB381AA}] = & gt; (Allow) E:\Nowy folder\TeamViewer_Service.exe
FirewallRules: [{1C94C05A-D9B4-4419-8C7A-C82075BA9CB7}] = & gt; (Allow) E:\Nowy folder\TeamViewer_Service.exe
FirewallRules: [{D471DC90-262C-4158-A8CB-8922B5CDBEFB}] = & gt; (Allow) E:\Nowy folder\TeamViewer.exe
FirewallRules: [{4CF5AC95-4FEE-4377-B61D-3A92A1D9B964}] = & gt; (Allow) E:\Nowy folder\TeamViewer.exe
FirewallRules: [{EB5A5612-4A2F-474A-BD47-78E787715FD6}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{587363D1-1998-4A69-A9E6-B5E89F73DEA0}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{2326430C-4D78-4820-9FDA-E034D4621311}] = & gt; (Allow) F:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{075FFEE5-E0F1-439C-91D6-FC6CBAF8BA91}] = & gt; (Allow) F:\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [UDP Query User{B1D72FAF-94D2-47F6-BEEA-9FC1F5607341}F:\steam\steamapps\common\rocketleague\binaries\win32\rocketleague.exe] = & gt; (Allow) F:\steam\steamapps\common\rocketleague\binaries\win32\rocketleague.exe
FirewallRules: [TCP Query User{ED3C496C-1F62-4D4A-AF62-5B59B7B9D023}F:\steam\steamapps\common\rocketleague\binaries\win32\rocketleague.exe] = & gt; (Allow) F:\steam\steamapps\common\rocketleague\binaries\win32\rocketleague.exe
FirewallRules: [UDP Query User{6002E095-F991-4F39-8A12-F25A9A546CB1}F:\steam\steamapps\common\half-life\hl.exe] = & gt; (Block) F:\steam\steamapps\common\half-life\hl.exe
FirewallRules: [TCP Query User{B5A2CBBB-F913-4ABC-BFEF-53E30BB89A97}F:\steam\steamapps\common\half-life\hl.exe] = & gt; (Block) F:\steam\steamapps\common\half-life\hl.exe
FirewallRules: [{968AB0C1-498C-4375-952D-704BFA3779E5}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{8D8BAB21-DBD3-4B45-B858-C854D6F74DDB}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{68074CBE-1187-4784-B8EC-CF40D3133154}] = & gt; (Allow) F:\Steam\Steam.exe
FirewallRules: [{AE25817F-1E62-4458-8D26-81ECDDE4DF9E}] = & gt; (Allow) F:\Steam\Steam.exe
FirewallRules: [{0924D917-B11D-4572-AD5B-2E5B83A7F93B}] = & gt; (Allow) F:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{B83AAE87-C884-430F-AC8D-49FB34E40DDC}] = & gt; (Allow) F:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{38149E39-0C9A-4605-A3A3-7A68B68C4FE5}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{EEAB8DF2-28EB-4F3B-B187-7929653D1A39}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{143EA036-A6FC-43E4-8F2A-1422CB4691FB}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{60C79D6C-6C3F-4966-BCE2-34475ABA8057}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{A9EC209C-CFF8-4F13-B46D-AA33E8560D76}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{EB3735DB-7F3A-4B05-B6DF-D698C0659126}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [TCP Query User{7A6D3EC3-2E61-4D4C-9258-30AED32911C2}F:\steam\steamapps\common\half-life\hl.exe] = & gt; (Block) F:\steam\steamapps\common\half-life\hl.exe
FirewallRules: [UDP Query User{77753CFA-2F29-493E-9409-3C657D8F5027}F:\steam\steamapps\common\half-life\hl.exe] = & gt; (Block) F:\steam\steamapps\common\half-life\hl.exe
FirewallRules: [{42D5B3F4-325D-439C-B41D-D669915A52E0}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{606157B4-BE73-430F-9141-A3639BC66FF5}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{DF2797B1-B15D-49F2-AC0F-663AA7B8D040}] = & gt; (Allow) F:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{687F9083-44C4-4BB5-A9AF-E48F256E8E2A}] = & gt; (Allow) F:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{77382FB5-4D36-4CF3-8A2F-0031F20699C5}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{63E878E6-EA46-4BB2-91D4-E619DFA3F98D}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [TCP Query User{743A0CFB-D201-4B60-95CD-D737219428B7}F:\program files (x86)\origin games\battlefield 3\bf3.exe] = & gt; (Allow) F:\program files (x86)\origin games\battlefield 3\bf3.exe
FirewallRules: [UDP Query User{7B694E4C-63FA-4A58-8A99-50A8743FF1EA}F:\program files (x86)\origin games\battlefield 3\bf3.exe] = & gt; (Allow) F:\program files (x86)\origin games\battlefield 3\bf3.exe
FirewallRules: [{85CB85AF-6E83-40D5-98D1-57E051D534AC}] = & gt; (Allow) C:\Users\Rozpierdalacz\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{7EEC1271-5AFE-4981-A6E6-CA393F4D4CD4}] = & gt; (Allow) C:\Users\Rozpierdalacz\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{31E410CE-FCAE-4AC6-AA6A-DFA0AC029615}] = & gt; (Allow) C:\Users\Rozpierdalacz\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6A71AD4C-7A19-4501-8D7B-07ECDAFE6190}] = & gt; (Allow) C:\Users\Rozpierdalacz\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{09D928F1-3A43-4E1F-B33F-035221716DCC}] = & gt; (Allow) C:\Users\Rozpierdalacz\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{53F34387-9A17-4C92-A65B-30CBFEC4E06C}] = & gt; (Allow) C:\Users\Rozpierdalacz\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{E4910528-E76A-490B-BF41-0C4910C0D4D2}] = & gt; (Allow) C:\Program Files (x86)\Opera\43.0.2442.991\opera.exe
FirewallRules: [{BDFA18E7-2987-4AF3-BDAF-6E28D1A2380C}] = & gt; (Allow) F:\Steam\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe
FirewallRules: [{A91E02E1-5F44-447C-B290-92A0F21F3CF2}] = & gt; (Allow) F:\Steam\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe
FirewallRules: [TCP Query User{9B0E6400-D225-4C82-BF25-BEE89D19B29D}F:\steam\steamapps\common\paladins\binaries\win32\paladins.exe] = & gt; (Block) F:\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [UDP Query User{CC9F9933-6DBF-4654-A82A-675ACFC46BBF}F:\steam\steamapps\common\paladins\binaries\win32\paladins.exe] = & gt; (Block) F:\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [{C3886106-E9F2-4BDA-9D6F-455F612B2AD5}] = & gt; (Allow) F:\program files (x86)\origin games\battlefield 3\bf3.exe
FirewallRules: [{8BEA8DEA-DFBD-4DBE-B929-BD9BDEFE1983}] = & gt; (Allow) F:\program files (x86)\origin games\battlefield 3\bf3.exe
FirewallRules: [{93DEA887-9A39-4A7E-9DF8-DF05A48CFB30}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{A0F47AC3-5E69-4283-9B10-1142ECECEC34}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{9F5A151E-3A44-4A6C-A156-B611147CB54C}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{FD2924FD-6E75-45F4-9F99-297ED555AD7D}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{6281156C-9110-4AF9-9902-D14C158F740B}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{6333A88D-34D8-4574-B907-3EBC70EFA409}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{09D03A62-72F2-4750-A12A-1462C8FF50B5}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{3B04D958-53DF-4CFF-8518-B972BDF98DCD}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{6E3363E8-549B-4909-A36B-29FA99A19E0A}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{9E6C3E67-1832-4A18-AB2E-5A5083DD92D6}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{C4FDCC25-A4A4-4927-BDAC-10E3A6874A6D}] = & gt; (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe
FirewallRules: [{E930F450-4196-4406-A784-5AFFE5B4AD6A}] = & gt; (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe
FirewallRules: [{B977AA8C-23ED-49DE-A672-823C424AA351}] = & gt; (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{29B44FCE-C741-45EC-86E2-9390235C116F}] = & gt; (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{4919C03D-B6D0-4F57-BA75-458031657CE7}] = & gt; (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{9B720369-3ADA-4C1C-B8C0-0488C083ECB9}] = & gt; (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [TCP Query User{5797AEFE-F165-4903-B3B5-5EE26700B956}C:\program files (x86)\origin games\battlefield 4\bf4.exe] = & gt; (Block) C:\program files (x86)\origin games\battlefield 4\bf4.exe
FirewallRules: [UDP Query User{C8496EBE-6677-439D-A4CF-8B23325580C0}C:\program files (x86)\origin games\battlefield 4\bf4.exe] = & gt; (Block) C:\program files (x86)\origin games\battlefield 4\bf4.exe
FirewallRules: [{B09BF879-6EC4-43A7-B8F0-A4AADB33380E}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{67EF7836-8D1F-49B1-8214-9D85AD4F0E9C}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{748CD3B7-674B-4805-A634-B757E7BC984D}] = & gt; (Allow) C:\Program Files (x86)\Opera\43.0.2442.1144\opera.exe
FirewallRules: [TCP Query User{7D79D0FF-31C5-4C3C-885F-1E4767E08BCE}E:\cheat engine 6.6\cheatengine-x86_64.exe] = & gt; (Block) E:\cheat engine 6.6\cheatengine-x86_64.exe
FirewallRules: [UDP Query User{8DE82D09-4F54-4C6E-B161-9046A5F38725}E:\cheat engine 6.6\cheatengine-x86_64.exe] = & gt; (Block) E:\cheat engine 6.6\cheatengine-x86_64.exe
FirewallRules: [TCP Query User{FCBEE969-3138-4337-A4C5-0EE6F505A0AE}F:\steam\steamapps\common\paladins\binaries\win32\paladins.exe] = & gt; (Block) F:\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [UDP Query User{8DE9EB98-FE11-4CB9-9D0A-C7FA1D907701}F:\steam\steamapps\common\paladins\binaries\win32\paladins.exe] = & gt; (Block) F:\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [{5A76A649-ABE7-4263-BFF2-F95403AE5E97}] = & gt; (Allow) F:\Steam\steamapps\common\War Thunder\launcher.exe
FirewallRules: [{31D71557-683B-47C3-A204-10A67174DA66}] = & gt; (Allow) F:\Steam\steamapps\common\War Thunder\launcher.exe
FirewallRules: [TCP Query User{88B49772-F5C5-412B-A10E-BA599351781C}F:\steam\steamapps\common\war thunder\win64\aces.exe] = & gt; (Block) F:\steam\steamapps\common\war thunder\win64\aces.exe
FirewallRules: [UDP Query User{112624E4-3743-48B4-B281-2419949ACBDD}F:\steam\steamapps\common\war thunder\win64\aces.exe] = & gt; (Block) F:\steam\steamapps\common\war thunder\win64\aces.exe
FirewallRules: [{D76C9C5D-9AC9-47F5-A2E6-BF749556A4E9}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{75C47C12-37E4-4E8A-8D08-3890AE70DB42}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{20444F20-4ACD-42B3-810B-3BC6FF79D6BC}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{7C478942-840C-4255-A31D-EAE19F51A4CF}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{A9186FAE-1809-4BEB-8FD8-3CF402AB971D}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{940EAED7-4082-4990-8463-46D7FBF3F3BB}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{C248268D-0FCE-4A17-95AA-A291B8CBD825}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{360F1F7D-D024-45DE-85C7-044FD6FB5E63}] = & gt; (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{E24EB565-07C1-48A5-B020-B125CE373018}] = & gt; (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{8A71894F-2C37-49BF-A7DF-B79E2095999B}C:\program files\java\jre1.8.0_121\bin\javaw.exe] = & gt; (Block) C:\program files\java\jre1.8.0_121\bin\javaw.exe
FirewallRules: [UDP Query User{40B3C0CE-DBF5-4E36-8D8A-F4C060D8029B}C:\program files\java\jre1.8.0_121\bin\javaw.exe] = & gt; (Block) C:\program files\java\jre1.8.0_121\bin\javaw.exe
FirewallRules: [{D104EC51-41CC-479D-A388-F1B3C38E0C5C}] = & gt; (Allow) F:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{696200E9-516C-4677-B198-9BAF9E1CBD6B}] = & gt; (Allow) F:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{33CCCB91-7748-4BC8-B665-C9DF5489AB2B}] = & gt; (Allow) C:\Program Files (x86)\Antanna\Application\chrome.exe
FirewallRules: [{3E3AA6B3-D01D-49EC-9D67-64A902108F6E}] = & gt; (Allow) C:\Program Files (x86)\Firefox\Firefox.exe
==================== Restore Points =========================
ATTENTION: System Restore is disabled
==================== Faulty Device Manager Devices =============
Name: Standardowa klawiatura PS/2
Description: Standardowa klawiatura PS/2
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Klawiatury standardowe)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Mysz Microsoft PS/2
Description: Mysz Microsoft PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
==================== Event log errors: =========================
Application errors:
==================
Error: (04/19/2017 05:43:21 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-IFM0RB2)
Description: Aktywacja aplikacji Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.
Error: (04/18/2017 05:10:55 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: LockApp.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x5819bf0d
Nazwa modułu powodującego błąd: LockApp.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x5819bf0d
Kod wyjątku: 0x80000003
Przesunięcie błędu: 0x00000000000fca7b
Identyfikator procesu powodującego błąd: 0xfd4
Godzina uruchomienia aplikacji powodującej błąd: 0x01d2b847abcd8dce
Ścieżka aplikacji powodującej błąd: C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
Ścieżka modułu powodującego błąd: C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
Identyfikator raportu: 0c9e0bde-710f-4ea1-92cc-d6ae570e04c6
Pełna nazwa pakietu powodującego błąd: Microsoft.LockApp_10.0.14393.0_neutral__cw5n1h2txyewy
Identyfikator aplikacji względem pakietu powodującego błąd: WindowsDefaultLockScreen
Error: (04/16/2017 11:47:48 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program explorer.exe w wersji 10.0.14393.953 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w oknie Zabezpieczenia i konserwacja w Panelu sterowania.
Identyfikator procesu: 7c8
Godzina rozpoczęcia: 01d2b68bbdfa5153
Godzina zakończenia: 0
Ścieżka aplikacji: C:\Windows\explorer.exe
Identyfikator raportu: 5402c34c-22ee-11e7-9c5e-0c5b8f279a64
Pełna nazwa pakietu powodującego błąd:
Identyfikator aplikacji względem pakietu powodującego błąd:
Error: (04/15/2017 08:39:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: NVDisplay.Container.exe, wersja: 1.2.0.0, sygnatura czasowa: 0x58df0aaf
Nazwa modułu powodującego błąd: NvXDCore.dll_unloaded, wersja: 8.17.13.8165, sygnatura czasowa: 0x58df0acc
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x00000000000c1951
Identyfikator procesu powodującego błąd: 0x930
Godzina uruchomienia aplikacji powodującej błąd: 0x01d2b550a3327d45
Ścieżka aplikacji powodującej błąd: C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
Ścieżka modułu powodującego błąd: NvXDCore.dll
Identyfikator raportu: 26c1b8c5-c35d-47b5-8ed8-a277ece0b444
Pełna nazwa pakietu powodującego błąd:
Identyfikator aplikacji względem pakietu powodującego błąd:
Error: (04/12/2017 07:18:12 PM) (Source: Winlogon) (EventID: 4005) (User: )
Description: Proces usługi logowania systemu Windows został nieoczekiwanie zakończony.
Error: (04/12/2017 11:49:10 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Microsoft.Photos.exe w wersji 1.0.1703.13001 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w oknie Zabezpieczenia i konserwacja w Panelu sterowania.
Identyfikator procesu: 10f0
Godzina rozpoczęcia: 01d2b35743facdec
Godzina zakończenia: 4294967295
Ścieżka aplikacji: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.313.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
Identyfikator raportu: 4640c3d9-1f65-11e7-9c5b-0c5b8f279a64
Pełna nazwa pakietu powodującego błąd: Microsoft.Windows.Photos_17.313.10010.0_x64__8wekyb3d8bbwe
Identyfikator aplikacji względem pakietu powodującego błąd: App
Error: (04/12/2017 11:49:01 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: DESKTOP-IFM0RB2)
Description: Działanie pakietu Microsoft.Windows.Photos_17.313.10010.0_x64__8wekyb3d8bbwe+App zostało zakończone, ponieważ operacja wstrzymywania pakietu trwała zbyt długo.
Error: (04/11/2017 08:06:59 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: rundll32.exe, wersja: 10.0.14393.0, sygnatura czasowa: 0x5789907f
Nazwa modułu powodującego błąd: gsv9F2.tmp, wersja: 0.0.0.0, sygnatura czasowa: 0x58ec3489
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x0001c85f
Identyfikator procesu powodującego błąd: 0x1028
Godzina uruchomienia aplikacji powodującej błąd: 0x01d2b289d0206888
Ścieżka aplikacji powodującej błąd: C:\Windows\syswow64\rundll32.exe
Ścieżka modułu powodującego błąd: C:\WINDOWS\TEMP\gsv9F2.tmp
Identyfikator raportu: b462cf59-1d53-45ef-9731-c36fb4ff068c
Pełna nazwa pakietu powodującego błąd:
Identyfikator aplikacji względem pakietu powodującego błąd:
Error: (04/10/2017 11:21:27 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: ctfmon.exe, wersja: 10.0.14393.0, sygnatura czasowa: 0x57899148
Nazwa modułu powodującego błąd: InputService.dll, wersja: 10.0.14393.953, sygnatura czasowa: 0x58ba5875
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x00057f66
Identyfikator procesu powodującego błąd: 0xd4
Godzina uruchomienia aplikacji powodującej błąd: 0x01d2b1db472dfa17
Ścieżka aplikacji powodującej błąd: C:\WINDOWS\SysWOW64\ctfmon.exe
Ścieżka modułu powodującego błąd: C:\WINDOWS\system32\InputService.dll
Identyfikator raportu: d969f053-5d2e-488a-8ea5-cc3839313ef7
Pełna nazwa pakietu powodującego błąd:
Identyfikator aplikacji względem pakietu powodującego błąd:
Error: (04/08/2017 05:42:58 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program patch_witcher3_1.10-1.22_2.0.0.45.tmp w wersji 51.1052.0.0 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w oknie Zabezpieczenia i konserwacja w Panelu sterowania.
Identyfikator procesu: 534
Godzina rozpoczęcia: 01d2b07ea18b0e16
Godzina zakończenia: 4294967295
Ścieżka aplikacji: C:\Users\ROZPIE~1\AppData\Local\Temp\is-1LL33.tmp\patch_witcher3_1.10-1.22_2.0.0.45.tmp
Identyfikator raportu: 09bcd390-1c72-11e7-9c56-0c5b8f279a64
Pełna nazwa pakietu powodującego błąd:
Identyfikator aplikacji względem pakietu powodującego błąd:
System errors:
=============
Error: (04/19/2017 08:46:17 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Zgodnie z ustawieniami uprawnienia application-specific nie jest udzielane uprawnienie Local Activation do aplikacji serwera COM z identyfikatorem klasy CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
i identyfikatorem aplikacji APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
użytkownikowi NT AUTHORITY\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (Using LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Unavailable (Unavailable). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
Error: (04/19/2017 08:45:46 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-IFM0RB2)
Description: Serwer {9BA05972-F6A8-11CF-A442-00A0C90A8F39} nie zarejestrował się w modelu DCOM w wymaganym czasie.
Error: (04/19/2017 08:45:45 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Zgodnie z ustawieniami uprawnienia application-specific nie jest udzielane uprawnienie Local Activation do aplikacji serwera COM z identyfikatorem klasy CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
i identyfikatorem aplikacji APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
użytkownikowi NT AUTHORITY\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (Using LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Unavailable (Unavailable). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
Error: (04/19/2017 08:45:40 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Menedżer sterowania usługami próbował podjąć akcję korekcyjną (Restart the service) po nieoczekiwanym zakończeniu usługi Windows Search, ale ta akcja nie powiodła się przy następującym błędzie:
Jedno wystąpienie usługi już działa.
.
Error: (04/19/2017 08:45:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi 3DM z powodu następującego błędu:
System nie może odnaleźć określonej ścieżki.
Error: (04/19/2017 08:45:10 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa Intel(R) Rapid Storage Technology niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.
Error: (04/19/2017 08:45:10 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa Steam Client Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.
Error: (04/19/2017 08:45:10 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service.
Error: (04/19/2017 08:45:10 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa Hi-Rez Studios Authenticate and Update Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.
Error: (04/19/2017 08:45:10 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa TeamViewer 12 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 2000 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service.
CodeIntegrity:
===================================
Date: 2017-04-10 17:25:26.606
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
Date: 2017-04-10 11:29:05.062
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
Date: 2017-04-10 11:22:43.577
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
Date: 2017-02-22 14:35:30.239
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
Date: 2017-02-22 14:35:30.112
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
Date: 2017-02-22 14:31:18.434
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
Date: 2017-02-22 14:21:25.822
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-6600K CPU @ 3.50GHz
Percentage of memory in use: 33%
Total physical RAM: 8136.66 MB
Available physical RAM: 5438.84 MB
Total Virtual: 10696.66 MB
Available Virtual: 7916.52 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:111.3 GB) (Free:30.06 GB) NTFS
Drive e: (Programy) (Fixed) (Total:87.79 GB) (Free:86.38 GB) NTFS
Drive f: (GRY) (Fixed) (Total:400.39 GB) (Free:248.24 GB) NTFS
Drive g: (Multimedia / Instalki) (Fixed) (Total:390.62 GB) (Free:192.48 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 54D18CEF)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=111.3 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 918CAA3D)
Partition 1: (Not Active) - (Size=87.8 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=400.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=390.6 GB) - (Type=07 NTFS)
==================== End of Addition.txt ============================