ADVERTISEMENT

Addition.txt

Zawieszenie i zniknięcie Avast na laptopie z Win8.1 - analiza logów FRST

To plugin od programu do tworzenia muzyki,


Download file - link to post

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02.08.2018
Ran by Karool (12-08-2018 21:11:33)
Running from C:\Users\Karool\Downloads
Windows 8.1 (Update) (X64) (2016-12-19 11:20:19)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-756321152-1871159502-821472197-500 - Administrator - Disabled)
Guest (S-1-5-21-756321152-1871159502-821472197-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-756321152-1871159502-821472197-1003 - Limited - Enabled)
Karool (S-1-5-21-756321152-1871159502-821472197-1001 - Administrator - Enabled) = & gt; C:\Users\Karool

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with " Hidden " flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\uTorrent) (Version: 3.5.3.44396 - BitTorrent Inc.)
Ableton Live 9 Lite (HKLM\...\{E608300C-9B32-4A29-90DE-DF989EDAB0F9}) (Version: 9.0.0.0 - Ableton)
Ableton Live 9 Suite (HKLM\...\{7597F2DC-003A-476E-9281-774AB112B7BE}) (Version: 9.0.0.0 - Ableton)
Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 17.012.20098 - Adobe Systems Incorporated)
Adobe Acrobat X Pro - English, Français, Deutsch (HKLM-x32\...\{AC76BA86-1033-F400-7760-000000000005}) (Version: 10.1.1 - Adobe Systems)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Creative Suite 6 Master Collection (HKLM-x32\...\{E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0}) (Version: 6 - Adobe Systems Incorporated)
Adobe Flash Player 10 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 10.1.102.64 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.)
Aktualizacje NVIDIA 31.0.1.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 31.0.1.0 - NVIDIA Corporation) Hidden
ALLPlayer V7.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLPlayer Group, Ltd.)
Archiwizator WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - )
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.13 - Michael Tippach)
Asus FaceID (HKLM-x32\...\{C4071085-DDF0-403F-90F9-27582FC22C9B}) (Version: 7.7.6.1 - ASUS)
ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.4.3 - ASUS)
ASUS Screen Saver (HKLM-x32\...\{0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}) (Version: 2.0.8 - ASUS)
ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 3.0.11 - ASUS)
ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 3.03.0006 - ASUS)
ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 4.0.2 - ASUS)
ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.29 - ASUS)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0037 - ASUS)
AudioWizard (HKLM-x32\...\{57E770A2-2BAF-4CAA-BAA3-BD896E2254D3}) (Version: 1.0.0.42 - ICEpower a/s)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 18.5.2342 - AVAST Software)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 67.1.664.100 - AVAST Software)
Avast Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.4.136.333 - AVAST Software) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bitsonic Free Pack (HKLM-x32\...\{84770ED7-BAF6-4E12-B1D5-EZ15645389C8}_is1) (Version: 1 - Bitsonic LP)
bl (HKLM-x32\...\{2A075BB4-E976-4278-BF3F-E5C6945D84C0}) (Version: 1.0.0 - Your Company Name) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CA-2A Leveling Amplifier (x64) Trial (HKLM-x32\...\CA-2A Leveling Amplifier_x64 Trial_is1) (Version: 1.0 - Cakewalk Music Software)
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (HKLM-x32\...\InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}) (Version: - ) Hidden
Classic Shell (HKLM\...\{383BB30A-B4A7-4666-9A83-22CFA8640097}) (Version: 4.3.0 - IvoSoft)
CPUID HWMonitor 1.30 (HKLM\...\CPUID HWMonitor_is1) (Version: - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.5.0.0222 - Disc Soft Ltd)
Device Setup (HKLM-x32\...\{1F07F2C7-596F-4F34-B805-2C61A3E50E5A}) (Version: 1.0.18 - ASUSTek Computer Inc.)
EarMaster School 5 (HKLM-x32\...\EarMaster School 5_is1) (Version: 5.0 - EarMaster ApS)
eLicenser Control (HKLM-x32\...\eLicenser Control) (Version: - Steinberg Media Technologies GmbH)
FL Studio 11 (HKLM-x32\...\FL Studio 11) (Version: - Image-Line)
FL Studio 9 (HKLM-x32\...\FL Studio 9) (Version: - Image-Line)
FlowStone FL 3.0 (HKLM-x32\...\FlowStone) (Version: - )
Flux:: Stereo Tool (HKLM-x32\...\{E05C17CC-71AB-49EE-8E3F-60AD24DCFDC7}) (Version: 1.4.0.0 - Flux:: sound and picture development)
Focusrite USB 4.36.5.0 (HKLM\...\Focusrite USB_is1) (Version: 4.36.5.0 - Focusrite Audio Engineering Ltd.)
GIMP 2.8.18 (HKLM\...\GIMP-2_is1) (Version: 2.8.18 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 68.0.3440.106 - Google Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{18455581-E099-4BA8-BC6B-F34B2F06600C}) (Version: 1.0.0 - Google Inc.) Hidden
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.8231.2252 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
Hardcore (HKLM-x32\...\Hardcore) (Version: - Image-Line)
Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)
Heroes of Might and Magic III (HKLM-x32\...\{8B743AA0-53B2-11D2-808A-00600895FB43}) (Version: 1.0 - )
Heroes of Might and Magic® III: Horn of the Abyss (HKLM-x32\...\HotA_is1) (Version: 1.5.1 - HotA Crew)
Huawei E3372 (HKLM-x32\...\Huawei E3372) (Version: 22.001.26.00.1202 - Huawei Technologies Co.,Ltd)
IL Download Manager (HKLM-x32\...\IL Download Manager) (Version: - Image-Line)
IL Shared Libraries (HKLM-x32\...\IL Shared Libraries) (Version: - Image-Line)
IL Slicex (HKLM-x32\...\IL Slicex) (Version: - Image-Line bvba)
Intel Collaborative Processor Performance Control (HKLM-x32\...\0E7DAF70-FB54-4B91-B192-7E771C25AEEB) (Version: 1.0.0.1013 - Intel Corporation)
Intel(R) Chipset Device Software (HKLM-x32\...\{f5d71765-7cd1-4e68-998f-5b379e725da3}) (Version: 10.0.22 - Intel(R) Corporation) Hidden
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4062 - Intel Corporation)
Intel(R) Wireless Bluetooth(R)(patch version 17.1.1431.1) (HKLM\...\{302600C1-6BDF-4FD1-1407-148929CC1385}) (Version: 17.1.1407.0480 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{9bffdf20-c3a3-4e93-9cbf-61712c6a38be}) (Version: 17.13.2 - Intel Corporation)
Internet Manager (HKLM-x32\...\Internet Manager) (Version: 22.001.18.17.49 - Huawei Technologies Co.,Ltd)
ISO Opener (HKLM-x32\...\{CE235F00-F8CD-41AF-83D5-236D90E33BFB}_is1) (Version: - www.isoopener.com)
Java 8 Update 111 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180111F0}) (Version: 8.0.1110.14 - Oracle Corporation)
JBridge (HKLM-x32\...\JBridge) (Version: - JBridge)
Lightworks (HKLM-x32\...\{E94DD4E4-7746-472c-AA7B-1242FED0CFC8}) (Version: 14.0.0.0 - EditShare)
MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited)
Microsoft Office 365 - pl-pl (HKLM\...\O365HomePremRetail - pl-pl) (Version: 16.0.10325.20082 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\OneDriveSetup.exe) (Version: 17.3.6998.0830 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
MIDIHub (HKLM-x32\...\MIDIHub) (Version: 0.87 - humatic)
minimoog V2 2.0 (HKLM-x32\...\minimoog V2_is1) (Version: - Arturia)
Napisy24 (HKLM-x32\...\{D1985DBC-F09E-4317-91B8-932AD0FD4A27}_is1) (Version: 1.9 - Napisy24.pl)
Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version: - Native Instruments)
Native Instruments Guitar Rig 5 (HKLM-x32\...\Native Instruments Guitar Rig 5) (Version: - Native Instruments)
Native Instruments Kontakt 5 (HKLM-x32\...\Native Instruments Kontakt 5) (Version: - Native Instruments)
Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: - Native Instruments)
Need For Speed Most Wanted Black Edition version 1.3.0.0 (HKLM-x32\...\Need For Speed Most Wanted Black Edition_is1) (Version: 1.3.0.0 - Mr DJ)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.2.2 - Notepad++ Team)
NVIDIA GeForce Experience 3.11.0.73 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.11.0.73 - NVIDIA Corporation)
NVIDIA Sterownik graficzny 388.43 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 388.43 - NVIDIA Corporation)
Obsługa programów Apple (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
OCCT 4.4.2 (HKLM-x32\...\OCCT) (Version: 4.4.2 - Ocbase.com)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.10325.20082 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.10325.20082 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.10325.20082 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0415-0000-0000000FF1CE}) (Version: 16.0.10325.20082 - Microsoft Corporation) Hidden
PACE License Support Win64 (HKLM\...\{83E92696-D92D-4c7e-B094-0BE853B191FE}) (Version: 2.5.2.1034 - PACE Anti-Piracy, Inc.) Hidden
PACE License Support Win64 (HKLM-x32\...\InstallShield_{83E92696-D92D-4c7e-B094-0BE853B191FE}) (Version: 2.5.2.1034 - PACE Anti-Piracy, Inc.)
Panel sterowania NVIDIA 388.43 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 388.43 - NVIDIA Corporation) Hidden
PCM Native Reverb Bundle (HKLM-x32\...\{294B9A61-B4D6-4EDB-91BF-354619C43FE2}) (Version: 1.1.3 - Lexicon) Hidden
PCM Native Reverb Bundle (HKLM-x32\...\PCM Native Reverb Bundle) (Version: - Lexicon)
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
ph (HKLM-x32\...\{185F9795-9663-4F13-9EF9-307A282ADB5A}) (Version: 1.0.0 - Your Company Name) Hidden
PixelMaster Video HDR (HKLM\...\{65302154-AAF6-4020-A070-76CAA9CEC8D3}) (Version: 1.1.23 - ASUS)
PoiZone (HKLM-x32\...\PoiZone) (Version: - Image-Line)
Python 3.1.2 (64-bit) (HKLM\...\{d40af016-506c-43fb-a738-bd54fa8c1e86}) (Version: 3.1.2150 - Python Software Foundation)
QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.21255 - Realtek Semiconductor Corp.)
REAPER (HKLM-x32\...\REAPER) (Version: - )
Rob Papen Predator V1.5.8 64 bits single core (HKLM-x32\...\Predator_is1) (Version: - RPCX)
Sawer (HKLM-x32\...\Sawer) (Version: - Image-Line)
SGA1566MkII 64-bit (HKLM-x32\...\{96C8BA4D-B78F-4307-A271-5E1DBEF9E334}_is1) (Version: 1.0.3 - Shattered Glass Audio)
Sigmund 1.1.2 (64bit) (HKLM\...\{F130BECD-2276-4465-8ACD-7C8D32FE830D}) (Version: 1.1.2.0 - D16 Group Audio Software)
SONiVOX Twist 2 (HKLM-x32\...\SONiVOX Twist 2_is1) (Version: - )
Spotify (HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\Spotify) (Version: 1.0.86.337.ga8d5cef9 - Spotify AB)
TAL-BassLine-101 (32bit) (HKLM-x32\...\{C8721FFF-17FD-4D7B-A4A8-4273699D90C5}) (Version: 1.3.6 - TAL - Togu Audio Line)
Terramining Launcher 9.2 (HKLM-x32\...\Terramining Launcher 9.2) (Version: 9.2 - TerraminingMC)
Thunderbolt(TM) Software (HKLM\...\{BED2816F-D47A-41DA-AFCF-44E1B257C368}) (Version: 2.0.4.250 - Intel(R) Corporation)
Toxic Biohazard (HKLM-x32\...\Toxic Biohazard) (Version: - Image-Line)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
Waves Vocal Bundle v1.1 (HKLM-x32\...\Waves Vocal Bundle v1.1) (Version: - )
WebStorage (HKLM-x32\...\WebStorage) (Version: 2.1.11.399 - ASUS Cloud Corporation)
Windows Driver Package - ASUS (ATP) Mouse (10/30/2014 1.0.0.230) (HKLM\...\52EDDD14D2DC9D32A2EA2720C02CBB9E354F8DE2) (Version: 10/30/2014 1.0.0.230 - ASUS)
WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 3.0.1 - ASUS)
WinRAR 5.50 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)
Xpand!2 (HKLM-x32\...\{dadbcc76-2a7e-4f53-a77a-3868c51bdd80}) (Version: 2.2.7.19000 - AIR Music Tech GmbH)
Xpand!2 Content (HKLM-x32\...\{AEB475C2-FC86-4082-87D7-352DFB075B2C}) (Version: 2.2.7.19000 - AIR Music Tech GmbH) Hidden
Xpand!2 Factory Content (HKLM-x32\...\{C1149DC5-F5B9-455E-B6B3-B81D9B5C80A0}) (Version: 2.2.7.19000 - AIR Music Tech GmbH) Hidden
Xpand!2 VST64 (HKLM\...\{B9802F00-659C-4C21-9BA5-0958BAC6EFEF}) (Version: 2.2.7.19000 - AIR Music Tech GmbH) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] - & gt; {6D4133E5-0742-4ADC-8A8C-9303440F7191} = & gt; C:\Program Files (x86)\Common Files\AWS\2.1.11.399\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] - & gt; {64174815-8D98-4CE6-8646-4C039977D809} = & gt; C:\Program Files (x86)\Common Files\AWS\2.1.11.399\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] - & gt; {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} = & gt; C:\Program Files (x86)\Common Files\AWS\2.1.11.399\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [00asw] - & gt; {472083B0-C522-11CF-8763-00608CC02F24} = & gt; C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-07-21] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] - & gt; {472083B0-C522-11CF-8763-00608CC02F24} = & gt; C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-07-21] (AVAST Software)
ShellIconOverlayIdentifiers: [ShareOverlay] - & gt; {594D4122-1F87-41E2-96C7-825FB4796516} = & gt; C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30] (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] - & gt; {594D4122-1F87-41E2-96C7-825FB4796516} = & gt; C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30] (IvoSoft)
ContextMenuHandlers1: [###MegaContextMenuExt] - & gt; {0229E5E7-09E9-45CF-9228-0228EC7D5F17} = & gt; C:\Users\Karool\AppData\Local\MEGAsync\ShellExtX64.dll [2017-12-12] ()
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] - & gt; {D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} = & gt; C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\..\Acrobat Elements\ContextMenu64.dll [2011-09-05] (Adobe Systems Inc.)
ContextMenuHandlers1: [ANotepad++64] - & gt; {B298D29A-A6ED-11DE-BA8C-A68E55D89593} = & gt; C:\Program Files\Notepad++\NppShell_06.dll [2016-11-27] ()
ContextMenuHandlers1: [avast] - & gt; {472083B0-C522-11CF-8763-00608CC02F24} = & gt; C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-07-21] (AVAST Software)
ContextMenuHandlers1: [MagicISO] - & gt; {DB85C504-C730-49DD-BEC1-7B39C6103B7A} = & gt; C:\Program Files (x86)\MagicISO\misosh64.dll - & gt; No File
ContextMenuHandlers1: [WinRAR] - & gt; {B41DB860-64E4-11D2-9906-E49FADC173CA} = & gt; C:\Program Files\WinRAR\rarext.dll [2017-09-13] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] - & gt; {B41DB860-8EE4-11D2-9906-E49FADC173CA} = & gt; C:\Program Files\WinRAR\rarext32.dll [2017-09-13] (Alexander Roshal)
ContextMenuHandlers3: [00asw] - & gt; {472083B0-C522-11CF-8763-00608CC02F24} = & gt; C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-07-21] (AVAST Software)
ContextMenuHandlers3: [BackupContextMenuExtension] - & gt; {b1b96b20-da1d-4a3c-92c1-7229b32f2326} = & gt; C:\Windows\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
ContextMenuHandlers4: [###MegaContextMenuExt] - & gt; {0229E5E7-09E9-45CF-9228-0228EC7D5F17} = & gt; C:\Users\Karool\AppData\Local\MEGAsync\ShellExtX64.dll [2017-12-12] ()
ContextMenuHandlers4: [MagicISO] - & gt; {DB85C504-C730-49DD-BEC1-7B39C6103B7A} = & gt; C:\Program Files (x86)\MagicISO\misosh64.dll - & gt; No File
ContextMenuHandlers4-x32: [WinRAR] - & gt; {B41DB860-8EE4-11D2-9906-E49FADC173CA} = & gt; C:\Program Files\WinRAR\rarext32.dll [2017-09-13] (Alexander Roshal)
ContextMenuHandlers5: [igfxcui] - & gt; {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} = & gt; - & gt; No File
ContextMenuHandlers5: [igfxDTCM] - & gt; {9B5F5829-A529-4B12-814A-E81BCB8D93FC} = & gt; C:\Windows\system32\igfxDTCM.dll [2014-12-15] (Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] - & gt; {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} = & gt; C:\Windows\system32\nvshext.dll [2017-11-28] (NVIDIA Corporation)
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] - & gt; {D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} = & gt; C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\..\Acrobat Elements\ContextMenu64.dll [2011-09-05] (Adobe Systems Inc.)
ContextMenuHandlers6: [avast] - & gt; {472083B0-C522-11CF-8763-00608CC02F24} = & gt; C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-07-21] (AVAST Software)
ContextMenuHandlers6: [MagicISO] - & gt; {DB85C504-C730-49DD-BEC1-7B39C6103B7A} = & gt; C:\Program Files (x86)\MagicISO\misosh64.dll - & gt; No File
ContextMenuHandlers6: [StartMenuExt] - & gt; {E595F05F-903F-4318-8B0A-7F633B520D2B} = & gt; C:\Windows\system32\StartMenuHelper64.dll [2016-07-30] (IvoSoft)
ContextMenuHandlers6: [WinRAR] - & gt; {B41DB860-64E4-11D2-9906-E49FADC173CA} = & gt; C:\Program Files\WinRAR\rarext.dll [2017-09-13] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] - & gt; {B41DB860-8EE4-11D2-9906-E49FADC173CA} = & gt; C:\Program Files\WinRAR\rarext32.dll [2017-09-13] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {10979AC9-E867-4A98-91C7-9C18C6DC6512} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-11-16] (NVIDIA Corporation)
Task: {117F586A-4B6E-49C5-9E15-33FF0DBD083E} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-11-16] (NVIDIA Corporation)
Task: {11F79634-4A46-4F14-9CFF-88F65A2893B9} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-756321152-1871159502-821472197-1001 = & gt; C:\Users\Karool\AppData\Local\MEGAsync\MEGAupdater.exe [2018-01-22] (Mega Limited)
Task: {1461304E-6AA8-4C65-8A91-1714E93A1C91} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up = & gt; tbtsvc.exe
Task: {172D4A15-22CE-4773-9465-D65B532E3DB6} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon = & gt; C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-07-29] (Microsoft Corporation)
Task: {19DB1F9B-C772-45D3-B37E-560710033F32} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-miernikkarol96@gmail.com = & gt; C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04] (Adobe Systems Incorporated)
Task: {1B54E40D-9CC1-4339-9721-B94018DD7784} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected = & gt; sc start ThunderboltService
Task: {2F525555-8002-4588-96EF-12D9A3CCB001} - System32\Tasks\Avast Software\Overseer = & gt; C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-06-14] (AVAST Software)
Task: {36E27157-D0DB-4D2D-A708-3BCE4417161E} - System32\Tasks\ASUS\ASUS Product Register Service = & gt; C:\Program Files (x86)\ASUS\APRP\aprp.exe [2014-09-02] (ASUSTek Computer Inc.)
Task: {3768A66D-DD51-435C-AF34-619DC640F7E9} - System32\Tasks\Avast Emergency Update = & gt; C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-07-21] (AVAST Software)
Task: {381FC84B-78D0-4F27-967C-2BA8AAE8BCE0} - System32\Tasks\GoogleUpdateTaskMachineUA = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-20] (Google Inc.)
Task: {3E5C63EB-392F-4526-AFCD-E86EC41BA31C} - System32\Tasks\AvastUpdateTaskMachineUA = & gt; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2018-03-26] (AVAST Software)
Task: {452B67B8-CA29-4954-97B3-1E0B634DE051} - System32\Tasks\ASUS Live Update2 = & gt; C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2016-08-01] ()
Task: {47362332-028D-4F37-8969-07783D570D00} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance = & gt; C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2018-07-29] (Microsoft Corporation)
Task: {4D803E8E-ED2F-417E-9829-5CA8FECF474E} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration = & gt; C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-07-29] (Microsoft Corporation)
Task: {4EFE1730-0DA4-4D96-B1B7-802789A57EA2} - System32\Tasks\Update Checker = & gt; C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2016-08-01] ()
Task: {57E6514F-5D96-422A-83A3-61F3E11A2D17} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor = & gt; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-07-22] (Microsoft Corporation)
Task: {5803B893-00DB-4ED0-886D-66265896AE58} - System32\Tasks\GoogleUpdateTaskMachineUA1d25ac9f98fa25e = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-20] (Google Inc.)
Task: {5937A418-4759-477D-A5F9-BBC762B6EA33} - System32\Tasks\ASUS Patch for Touch Panel = & gt; C:\ProgramData\AsTouchPanel\AsPatchTouchPanel64.exe [2013-01-09] (ASUSTek Computer INC.)
Task: {6B3B6D77-C483-47CD-A28C-09447E5E566C} - System32\Tasks\GoogleUpdateTaskMachineCore = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-20] (Google Inc.)
Task: {7986850E-CE51-46F9-BE2B-E00C8D89B69A} - System32\Tasks\ATK Package 36D18D69AFC3 = & gt; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [2014-06-11] (ASUSTek Computer Inc.)
Task: {80397729-C2FB-428D-9900-2D25B779C639} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-11-16] (NVIDIA Corporation)
Task: {8B8AAD4E-BDE2-447E-986A-79FB54966191} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-11-16] (NVIDIA Corporation)
Task: {8BC308E4-5B03-400E-8822-EEAA0D9A34AD} - System32\Tasks\Microsoft\Office\OfficeOsfInstaller = & gt; C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\osfinstaller.exe [2018-07-29] (Microsoft Corporation)
Task: {8FE0D71F-55FC-4993-820E-334EBA5122AD} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected = & gt; Thunderbolt.exe
Task: {9BA92654-3C15-4995-B79B-A04954E88950} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up = & gt; Thunderbolt.exe
Task: {9E688A40-22B3-417F-AECD-D56B5E871AB5} - System32\Tasks\Adobe Acrobat Update Task = & gt; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-07-19] (Adobe Systems Incorporated)
Task: {A2602964-C04F-4CFB-BACC-3C2D121A37EE} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-11-16] (NVIDIA Corporation)
Task: {AD4490AF-0BAE-4AC2-B320-A82B6D388222} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-11-16] (NVIDIA Corporation)
Task: {AE602ED0-AEC7-4025-A39D-D310E8270330} - System32\Tasks\AVAST Software\Avast settings backup = & gt; C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {C290E744-374A-4C6A-B895-8C078DD625D3} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-11-16] (NVIDIA Corporation)
Task: {C7911812-4F32-4CEC-9359-59D8336FC53E} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 = & gt; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-07-22] (Microsoft Corporation)
Task: {E350E076-6F2D-4C45-9E6B-9D438FE87B33} - System32\Tasks\Games\UpdateCheck_S-1-5-21-756321152-1871159502-821472197-1001
Task: {E8307401-251F-43FD-808C-6B97E6C9EFFC} - System32\Tasks\ASUS Smart Gesture Launcher = & gt; C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [2014-12-16] (AsusTek)
Task: {EAF4F874-1462-4F85-95ED-13F20A7A173B} - System32\Tasks\ASUS Splendid ACMON = & gt; C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2014-09-11] (ASUS)
Task: {F4DF854A-95BA-42F4-BD5A-EAC2CC217FA1} - System32\Tasks\AvastUpdateTaskMachineCore = & gt; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2018-03-26] (AVAST Software)
Task: {F57F3FFD-1CCE-43F7-A319-12F122B4DE16} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-11-16] (NVIDIA Corporation)
Task: {F709ECA8-BDFD-4B9A-99DC-F984DC360C8F} - System32\Tasks\ASUS Live Update1 = & gt; C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [2016-08-01] ()
Task: {FC1FC6D5-950E-4EF1-90C3-EFA690B28C88} - System32\Tasks\ASUS USB Charger Plus = & gt; C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2014-09-11] (ASUSTek Computer Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


Shortcut: C:\Users\Karool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line\FL Studio 9\Additional\SynthMaker website.lnk - & gt; hxxp://www.synthmaker.co.uk

==================== Loaded Modules (Whitelisted) ==============

2016-09-15 07:19 - 2016-09-15 07:19 - 000031256 _____ () C:\Windows\System32\us005lm.dll
2015-04-27 12:05 - 2013-08-26 17:29 - 000755728 _____ () C:\Windows\SYSTEM32\sqlite3.dll
2017-09-04 12:14 - 2014-11-19 05:38 - 000243800 _____ () C:\ProgramData\MobileBrServ\mbbservice.exe
2014-01-15 05:42 - 2014-01-15 05:42 - 000351824 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe
2016-12-19 19:35 - 2014-04-26 08:15 - 000682064 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe
2016-12-27 22:52 - 2017-11-16 03:41 - 001267136 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-01-29 19:55 - 2017-01-29 20:10 - 000066872 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2018-08-11 14:50 - 2018-08-08 02:41 - 004855640 _____ () C:\Program Files (x86)\Google\Chrome\Application\68.0.3440.106\libglesv2.dll
2018-08-11 14:50 - 2018-08-08 02:41 - 000115544 _____ () C:\Program Files (x86)\Google\Chrome\Application\68.0.3440.106\libegl.dll
2015-01-21 10:38 - 2014-12-15 07:24 - 017752056 _____ () C:\Windows\SYSTEM32\igd11dxva64.dll
2016-12-19 19:35 - 2013-08-16 08:53 - 000011362 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\mingwm10.dll
2016-12-19 19:35 - 2013-08-16 08:53 - 000043008 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\libgcc_s_dw2-1.dll
2016-12-19 19:35 - 2014-02-15 09:31 - 002416640 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtCore4.dll
2016-12-19 19:35 - 2014-02-15 09:33 - 001148416 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtNetwork4.dll
2016-12-27 22:52 - 2017-11-16 03:41 - 001040320 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2018-03-25 13:43 - 2018-03-25 13:43 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-07-21 19:03 - 2018-07-21 19:03 - 000483544 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2018-07-21 19:02 - 2018-07-21 19:02 - 000282840 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2016-12-27 22:52 - 2017-11-16 03:40 - 066906560 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2015-04-27 11:51 - 2013-12-09 16:26 - 001242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData:482EE99B1E21CE8C [217]
AlternateDataStreams: C:\Users\All Users:482EE99B1E21CE8C [217]
AlternateDataStreams: C:\ProgramData\Application Data:482EE99B1E21CE8C [217]
AlternateDataStreams: C:\ProgramData\PACE:99BFF1275D0780FE [217]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The " AlternateShell " will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc = & gt; " " = " Service "

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2018-07-31 01:14 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-756321152-1871159502-821472197-1001\Control Panel\Desktop\\Wallpaper - & gt; C:\Users\Karool\Desktop\800px-El_Greco_-_A_Boy_Blowing_on_an_Ember_to_Light_a_Candle_(Soplón)_-_WGA10422.jpg
DNS Servers: 192.168.43.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System = & gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer = & gt; (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\Run: = & gt; " BTMTrayAgent "
HKLM\...\StartupApproved\Run: = & gt; " Classic Start Menu "
HKLM\...\StartupApproved\Run: = & gt; " AdobeAAMUpdater-1.0 "
HKLM\...\StartupApproved\Run32: = & gt; " WebStorage "
HKLM\...\StartupApproved\Run32: = & gt; " Acrobat Assistant 8.0 "
HKLM\...\StartupApproved\Run32: = & gt; " Adobe Acrobat Speed Launcher "
HKLM\...\StartupApproved\Run32: = & gt; " AdobeCS6ServiceManager "
HKLM\...\StartupApproved\Run32: = & gt; " SwitchBoard "
HKLM\...\StartupApproved\Run32: = & gt; " APSDaemon "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\StartupApproved\StartupFolder: = & gt; " Wysyłanie do programu OneNote.lnk "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\StartupApproved\StartupFolder: = & gt; " MEGAsync.lnk "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\StartupApproved\Run: = & gt; " DAEMON Tools Lite Automount "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\StartupApproved\Run: = & gt; " ALLUpdate "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\StartupApproved\Run: = & gt; " ALLPlayer WiFi Remote "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\StartupApproved\Run: = & gt; " Napisy24Update "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\StartupApproved\Run: = & gt; " Steam "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\StartupApproved\Run: = & gt; " uTorrent "

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{D48F6F7F-BD46-41F0-BD6B-37F58504FF32}] = & gt; (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{A443FB98-6F92-4E35-87BE-F7955574931C}] = & gt; (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{CC1EFFE5-8F38-47AC-8669-7BEC06F3D101}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{530ECE7E-1362-429C-BF54-41228584B576}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{B6779193-3ACD-46D9-BE88-C5DA2BB8AE8F}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{1DABDFCB-22DF-4B7D-B114-32B4519D21E8}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{ADBFCBD0-06E6-478D-A92D-477457C57808}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{3BD9D6B1-7547-4C70-89D1-83F18871979D}] = & gt; (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{EAC3BAF5-9D1C-43B1-9749-0C92674A8DEA}] = & gt; (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{F84DAF36-CBB7-450B-9EF6-7B8ABC75ACB5}] = & gt; (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{9DB25297-FADE-4EE4-93F1-80219E87E484}] = & gt; (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{AB86944B-41E4-4BC8-8C05-1C4D847646AC}] = & gt; (Allow) C:\Users\Karool\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B7C217DD-305A-4450-89ED-964A4EB88818}] = & gt; (Allow) C:\Users\Karool\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{392117A7-9019-4BD4-BE49-DF0BE4BA63D2}C:\users\karool\appdata\roaming\spotify\spotify.exe] = & gt; (Allow) C:\users\karool\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{63C20B15-C240-47F2-AC16-FDCA57D686E0}C:\users\karool\appdata\roaming\spotify\spotify.exe] = & gt; (Allow) C:\users\karool\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{C5E1BDEB-3FED-43BF-97E0-4A7B34F2A29F}D:\games\new folder\new folder\hearthstone\hearthstone.exe] = & gt; (Allow) D:\games\new folder\new folder\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{6016B272-3352-4083-A74D-A2E5C62F64AB}D:\games\new folder\new folder\hearthstone\hearthstone.exe] = & gt; (Allow) D:\games\new folder\new folder\hearthstone\hearthstone.exe
FirewallRules: [TCP Query User{37C98D20-9DFE-4D91-A84B-595D22A01DE7}C:\program files (x86)\knight\total war attila age of charlemagne\attila.exe] = & gt; (Allow) C:\program files (x86)\knight\total war attila age of charlemagne\attila.exe
FirewallRules: [UDP Query User{74E8A594-FFAD-4D27-AF2C-F5629330A80C}C:\program files (x86)\knight\total war attila age of charlemagne\attila.exe] = & gt; (Allow) C:\program files (x86)\knight\total war attila age of charlemagne\attila.exe
FirewallRules: [TCP Query User{E7F2B71F-C230-4F69-85F9-935B51275A45}C:\users\karool\appdata\roaming\spotify\spotify.exe] = & gt; (Allow) C:\users\karool\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{1C6C9424-C297-43EF-B40E-A2CF8BDB98B0}C:\users\karool\appdata\roaming\spotify\spotify.exe] = & gt; (Allow) C:\users\karool\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{D17D7FA5-3300-4E78-B78A-6A3354E921D5}D:\games\new folder\new folder\hearthstone\hearthstone.exe] = & gt; (Allow) D:\games\new folder\new folder\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{171FA5EF-8C1C-4222-948C-8E857D65DB2C}D:\games\new folder\new folder\hearthstone\hearthstone.exe] = & gt; (Allow) D:\games\new folder\new folder\hearthstone\hearthstone.exe
FirewallRules: [TCP Query User{B6E12446-9904-4D7F-92EE-7F7E99236C0D}C:\program files (x86)\knight\total war attila age of charlemagne\attila.exe] = & gt; (Block) C:\program files (x86)\knight\total war attila age of charlemagne\attila.exe
FirewallRules: [UDP Query User{1542BAB9-F7ED-4FC5-998D-9C4D2E6DD2E6}C:\program files (x86)\knight\total war attila age of charlemagne\attila.exe] = & gt; (Block) C:\program files (x86)\knight\total war attila age of charlemagne\attila.exe
FirewallRules: [{80FC396E-9CBD-457F-B3F3-10FFDE88F869}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{3ABC8AAE-9014-4AA6-924B-C18C3594B2A6}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{0FF98AA0-1F78-4AD1-848B-4492CA551BFF}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{A87F0DE7-91CA-4609-B805-FB561222BD3F}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{AB3C6438-A2D0-40F0-8831-2DFC70B8EE78}] = & gt; (Allow) D:\COD 4\iw3mp.exe
FirewallRules: [{B2171601-1C21-410C-9FE7-DE578CD2D68A}] = & gt; (Allow) D:\COD 4\iw3mp.exe
FirewallRules: [TCP Query User{8F37B09B-AC2D-45C5-B354-3E70FF64E7B7}C:\users\karool\desktop\moh allied assault\mohaa.exe] = & gt; (Allow) C:\users\karool\desktop\moh allied assault\mohaa.exe
FirewallRules: [UDP Query User{8E9C7234-7F52-4801-BCC2-7C0D00FA993F}C:\users\karool\desktop\moh allied assault\mohaa.exe] = & gt; (Allow) C:\users\karool\desktop\moh allied assault\mohaa.exe
FirewallRules: [TCP Query User{A807DE98-C848-44B1-B162-E9767B9E9DC8}C:\users\karool\desktop\moh allied assault\mohaa.exe] = & gt; (Allow) C:\users\karool\desktop\moh allied assault\mohaa.exe
FirewallRules: [UDP Query User{91244695-7C91-4FDB-BE9D-D3448E2850F9}C:\users\karool\desktop\moh allied assault\mohaa.exe] = & gt; (Allow) C:\users\karool\desktop\moh allied assault\mohaa.exe
FirewallRules: [{9C5AC3EF-03ED-4E8F-A8E7-88A2458982D0}] = & gt; (Allow) D:\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe
FirewallRules: [{FF499BA7-A6EA-4EA2-B7F6-5D2F3DF22703}] = & gt; (Allow) D:\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe
FirewallRules: [{260E2D84-2005-44F7-B58C-C862EE37A77C}] = & gt; (Allow) D:\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe
FirewallRules: [{30631829-8BC7-4101-8D72-F38DB9F749E0}] = & gt; (Allow) D:\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe
FirewallRules: [{40C3E4FE-CCC7-49E2-B23E-BEDD5AA89B4C}] = & gt; (Allow) C:\Program Files (x86)\Adobe\Adobe Flash Builder 4.6\FlashBuilder.exe
FirewallRules: [{E250C886-4DAB-4948-873A-61C883573FBD}] = & gt; (Allow) C:\Program Files (x86)\Adobe\Adobe Flash Builder 4.6\FlashBuilder.exe
FirewallRules: [{060F3746-007D-4AA6-9B7F-E9EDE04A8AFF}] = & gt; (Allow) LPort=7935
FirewallRules: [TCP Query User{165FFDBE-8E79-4D19-B804-6AE734B7B2D3}C:\program files\java\jre1.8.0_111\bin\javaw.exe] = & gt; (Allow) C:\program files\java\jre1.8.0_111\bin\javaw.exe
FirewallRules: [UDP Query User{D5432885-D4BD-44CC-AA2E-0C6EA4F8B1B0}C:\program files\java\jre1.8.0_111\bin\javaw.exe] = & gt; (Allow) C:\program files\java\jre1.8.0_111\bin\javaw.exe
FirewallRules: [TCP Query User{00FA70F6-D87C-4B48-8E44-49D1FCE5F53D}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] = & gt; (Block) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe
FirewallRules: [UDP Query User{0EB14B49-E5A0-4D9B-9632-4417D3AEF0A1}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] = & gt; (Block) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe
FirewallRules: [TCP Query User{F66AD2CA-C355-446F-B34E-DD6E8329E4F2}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] = & gt; (Block) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe
FirewallRules: [UDP Query User{7ABEDB1F-F9EE-4636-8F24-79E5345D2866}C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe] = & gt; (Block) C:\program files (x86)\allplayer remote\allplayerremotecontrol.exe
FirewallRules: [{B188BB26-1252-431E-97CC-60DBC5EFB8EA}] = & gt; (Allow) D:\Games\steam\Steam.exe
FirewallRules: [{BB29968D-3BC9-40CA-96D1-5AE0BF655FF2}] = & gt; (Allow) D:\Games\steam\Steam.exe
FirewallRules: [{B0DB6BDB-F706-41D5-B17F-8A42825FBC21}] = & gt; (Allow) D:\Games\steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{31E9E4FB-163A-4E53-8F65-23E963FC193A}] = & gt; (Allow) D:\Games\steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{31BBCE2C-5486-4357-8712-02274FBFBF6A}] = & gt; (Allow) D:\videomaker\Lightworks\lightworks.exe
FirewallRules: [{D2E5BC31-DBDE-4434-A66A-9ED4C3178A42}] = & gt; (Allow) D:\videomaker\Lightworks\lightworks.exe
FirewallRules: [{3D6E0548-0531-42C6-9D45-E2EFADBD3143}] = & gt; (Allow) D:\videomaker\Lightworks\ntcardvt.exe
FirewallRules: [{AFAC0606-BB0B-447E-B2FB-41421524081E}] = & gt; (Allow) D:\videomaker\Lightworks\ntcardvt.exe
FirewallRules: [{FB669137-2996-4E59-9707-80B5908A17B1}] = & gt; (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [{CBEE3B27-8EE0-4AFA-83FD-C6363B106EE1}] = & gt; (Allow) C:\Users\Karool\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{2FF842A3-B77F-4C02-BC83-6C1D769FE7F3}] = & gt; (Allow) C:\Users\Karool\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{F2E75510-1495-4233-B6BE-AEB53873D9FA}] = & gt; (Allow) D:\Mr DJ\Need For Speed Most Wanted Black Edition\speed.exe
FirewallRules: [{777A9D5E-62E4-4327-A855-8C4AAF889CC9}] = & gt; (Allow) D:\Mr DJ\Need For Speed Most Wanted Black Edition\speed.exe
FirewallRules: [{03177DB7-C6EE-4ABB-AFC7-8110C5D4202B}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{5AD1FE67-86F0-4856-83C1-4DB25AA74B0F}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{4C429531-3211-4689-A9EE-C1A6D810E3B2}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{18B21CEC-EEC0-47C1-90BD-673B99179BE3}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{ED583876-40E4-40AA-A46F-C602FB7ADDC5}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [TCP Query User{C2E97D5A-C115-4DC5-BF24-ED549DCD5B4A}D:\ablet\program\ableton live 9 lite.exe] = & gt; (Block) D:\ablet\program\ableton live 9 lite.exe
FirewallRules: [UDP Query User{80FF4BB6-0280-41AB-9E56-6933B44BBC4B}D:\ablet\program\ableton live 9 lite.exe] = & gt; (Block) D:\ablet\program\ableton live 9 lite.exe
FirewallRules: [{2F642508-F7A4-4C60-8D03-3E2979F9779C}] = & gt; (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{54F3D93C-7E9B-4E56-8AEC-2074FD1B8DA9}] = & gt; (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{0338E543-1669-43CC-B6C6-5CA58DB3A50F}] = & gt; (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{DE653639-38C2-4195-90C9-8884B4F00F39}] = & gt; (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{FEF9A965-4A3F-42EA-8393-C48B8D5404B7}] = & gt; (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [TCP Query User{007B26E3-802D-4DCE-A354-512770AB0AE6}D:\gry\hearthstone\hearthstone.exe] = & gt; (Allow) D:\gry\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{299EAE9B-2E1F-4B9C-B07E-B397CC919C81}D:\gry\hearthstone\hearthstone.exe] = & gt; (Allow) D:\gry\hearthstone\hearthstone.exe
FirewallRules: [{3D06C71A-D262-44E6-B0EC-A0E027A1C8BF}] = & gt; (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{6316DFE4-5748-4A64-B26D-7684DFA07EE1}] = & gt; (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{0BB525AB-7F47-4575-A5AC-118B1129742C}] = & gt; (Allow) C:\Program Files (x86)\humatic\MIDIHub\MIDIHub.exe
FirewallRules: [{374744F3-A379-46D3-9400-F2AA45443631}] = & gt; (Allow) C:\Program Files (x86)\humatic\MIDIHub\MIDIHub.exe
FirewallRules: [TCP Query User{1C3CFC39-520C-4315-BF99-3D4ECF429FBE}C:\programdata\ableton\live 9 suite1\program\ableton live 9 suite.exe] = & gt; (Block) C:\programdata\ableton\live 9 suite1\program\ableton live 9 suite.exe
FirewallRules: [UDP Query User{6A01D413-6CAC-4874-9D0E-C40B7450E6AE}C:\programdata\ableton\live 9 suite1\program\ableton live 9 suite.exe] = & gt; (Block) C:\programdata\ableton\live 9 suite1\program\ableton live 9 suite.exe
FirewallRules: [TCP Query User{A8DFFFB6-5B3D-409F-8C28-4E8DAB39038A}D:\ablet\program\ableton live 9 lite.exe] = & gt; (Block) D:\ablet\program\ableton live 9 lite.exe
FirewallRules: [UDP Query User{63512447-F246-41C0-A2A6-983B75D6CF12}D:\ablet\program\ableton live 9 lite.exe] = & gt; (Block) D:\ablet\program\ableton live 9 lite.exe
FirewallRules: [TCP Query User{63262C02-BA0D-4309-A418-98B7AB4FB9AB}D:\ableton live suite v9.5 win x86 x64-d33p57a7u5\ableton live suite v9.5 win x86 x64-d33p57a7u5\patch io\ableton livepatch [io].exe] = & gt; (Block) D:\ableton live suite v9.5 win x86 x64-d33p57a7u5\ableton live suite v9.5 win x86 x64-d33p57a7u5\patch io\ableton livepatch [io].exe
FirewallRules: [UDP Query User{29BEDB23-34EB-4FB7-8B05-14D315C8DCBE}D:\ableton live suite v9.5 win x86 x64-d33p57a7u5\ableton live suite v9.5 win x86 x64-d33p57a7u5\patch io\ableton livepatch [io].exe] = & gt; (Block) D:\ableton live suite v9.5 win x86 x64-d33p57a7u5\ableton live suite v9.5 win x86 x64-d33p57a7u5\patch io\ableton livepatch [io].exe
FirewallRules: [{3D3F94DF-AECA-4C51-93AA-6537B2D46D51}] = & gt; (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
FirewallRules: [TCP Query User{1682EE61-37DD-4378-80D8-248B9055E880}D:\studijo\rp\reaper.exe] = & gt; (Block) D:\studijo\rp\reaper.exe
FirewallRules: [UDP Query User{4AE62373-5A8C-45C2-AB54-88F4B90ECDBC}D:\studijo\rp\reaper.exe] = & gt; (Block) D:\studijo\rp\reaper.exe
FirewallRules: [TCP Query User{BDAEC3F7-0EB9-4D7A-BBF7-35C8ACAB0D2E}C:\programdata\ableton\live 9 suite1\program\ableton live 9 suite.exe] = & gt; (Block) C:\programdata\ableton\live 9 suite1\program\ableton live 9 suite.exe
FirewallRules: [UDP Query User{5224F0F3-863B-479C-87DE-4B0FB66F68FD}C:\programdata\ableton\live 9 suite1\program\ableton live 9 suite.exe] = & gt; (Block) C:\programdata\ableton\live 9 suite1\program\ableton live 9 suite.exe
FirewallRules: [{D4354DFA-1487-4197-94B3-CAED1DD4B9CF}] = & gt; (Block) %ALLUSERSPROFILE%\Ableton\Live 9 Suite1\Program\Ableton Live 9 Suite.exe
FirewallRules: [TCP Query User{6A7CEA44-1A7F-498C-AF1B-598EFBD112C8}D:\studijo\rp\reaper.exe] = & gt; (Block) D:\studijo\rp\reaper.exe
FirewallRules: [UDP Query User{DD297C45-FEA7-4DC3-A918-CB56CB0C10EA}D:\studijo\rp\reaper.exe] = & gt; (Block) D:\studijo\rp\reaper.exe
FirewallRules: [TCP Query User{9BCF5B5B-0AF9-4871-991C-FC611BB087FF}D:\studijo\fl studio 11\fl.exe] = & gt; (Block) D:\studijo\fl studio 11\fl.exe
FirewallRules: [UDP Query User{46DBDA57-C80E-47B2-9A21-342530C450C8}D:\studijo\fl studio 11\fl.exe] = & gt; (Block) D:\studijo\fl studio 11\fl.exe
FirewallRules: [TCP Query User{5DBF1FA7-E023-414F-967A-5956C72B3704}C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe] = & gt; (Block) C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe
FirewallRules: [UDP Query User{10679D45-7E92-477B-9D61-3D5131D2E293}C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe] = & gt; (Block) C:\program files\adobe\adobe premiere pro cs6\adobe premiere pro.exe
FirewallRules: [TCP Query User{40AC7294-E38A-4D6F-B74A-DA814D12A3E7}C:\program files\adobe\adobe premiere pro cs6\32\adobe qt32 server.exe] = & gt; (Block) C:\program files\adobe\adobe premiere pro cs6\32\adobe qt32 server.exe
FirewallRules: [UDP Query User{785C214A-582E-424E-B6B7-A67921A0E00B}C:\program files\adobe\adobe premiere pro cs6\32\adobe qt32 server.exe] = & gt; (Block) C:\program files\adobe\adobe premiere pro cs6\32\adobe qt32 server.exe
FirewallRules: [TCP Query User{71098152-8C0D-4762-B23A-2D63611E783F}D:\ableton live suite v9.5 win x86 x64-d33p57a7u5\ableton live suite v9.5 win x86 x64-d33p57a7u5\patch io\ableton livepatch [io].exe] = & gt; (Block) D:\ableton live suite v9.5 win x86 x64-d33p57a7u5\ableton live suite v9.5 win x86 x64-d33p57a7u5\patch io\ableton livepatch [io].exe
FirewallRules: [UDP Query User{530FA5EC-B4A5-4303-BD1C-47D084F636C3}D:\ableton live suite v9.5 win x86 x64-d33p57a7u5\ableton live suite v9.5 win x86 x64-d33p57a7u5\patch io\ableton livepatch [io].exe] = & gt; (Block) D:\ableton live suite v9.5 win x86 x64-d33p57a7u5\ableton live suite v9.5 win x86 x64-d33p57a7u5\patch io\ableton livepatch [io].exe
FirewallRules: [TCP Query User{B6C651F8-65B8-488E-B224-7E6002C592A0}C:\users\karool\desktop\patch io\ableton livepatch [io].exe] = & gt; (Allow) C:\users\karool\desktop\patch io\ableton livepatch [io].exe
FirewallRules: [UDP Query User{91D73C17-A0F3-44FB-BF3F-C42186775771}C:\users\karool\desktop\patch io\ableton livepatch [io].exe] = & gt; (Allow) C:\users\karool\desktop\patch io\ableton livepatch [io].exe
FirewallRules: [TCP Query User{1BA1FD48-69D7-4B1F-9CB4-BE520A6CFFB8}C:\programdata\ableton\live 9 suite1\program\ableton livepatch [io].exe] = & gt; (Block) C:\programdata\ableton\live 9 suite1\program\ableton livepatch [io].exe
FirewallRules: [UDP Query User{0BBB5C64-0237-4873-AC43-D960612860D9}C:\programdata\ableton\live 9 suite1\program\ableton livepatch [io].exe] = & gt; (Block) C:\programdata\ableton\live 9 suite1\program\ableton livepatch [io].exe
FirewallRules: [TCP Query User{63141F05-0628-4F58-9418-39EE74348017}C:\programdata\ableton\live 9 suite\program\ableton livepatch [io].exe] = & gt; (Block) C:\programdata\ableton\live 9 suite\program\ableton livepatch [io].exe
FirewallRules: [UDP Query User{439533CB-629F-40A1-953F-15371B4C1219}C:\programdata\ableton\live 9 suite\program\ableton livepatch [io].exe] = & gt; (Block) C:\programdata\ableton\live 9 suite\program\ableton livepatch [io].exe
FirewallRules: [TCP Query User{5FA9DBC2-5FE5-4D71-B26A-254B572A118C}C:\programdata\ableton\live 9 suite\program\ableton live 9 suite.exe] = & gt; (Block) C:\programdata\ableton\live 9 suite\program\ableton live 9 suite.exe
FirewallRules: [UDP Query User{E4E9E8E8-A553-4A35-B6EA-1366297CE2B0}C:\programdata\ableton\live 9 suite\program\ableton live 9 suite.exe] = & gt; (Block) C:\programdata\ableton\live 9 suite\program\ableton live 9 suite.exe
FirewallRules: [TCP Query User{B8C452E1-8F56-4A7A-B6C0-E8CD00E283C0}D:\studijo\new folder\program\ableton livepatch [io].exe] = & gt; (Allow) D:\studijo\new folder\program\ableton livepatch [io].exe
FirewallRules: [UDP Query User{E735B46E-FC74-4CE6-9F47-81DB69C42B30}D:\studijo\new folder\program\ableton livepatch [io].exe] = & gt; (Allow) D:\studijo\new folder\program\ableton livepatch [io].exe
FirewallRules: [TCP Query User{D29F822C-D892-4AAF-A276-DC5CD44EB87B}D:\studijo\new folder\program\ableton live 9 suite.exe] = & gt; (Block) D:\studijo\new folder\program\ableton live 9 suite.exe
FirewallRules: [UDP Query User{49F52F56-F1E7-4391-BB65-DFF70F37E4D0}D:\studijo\new folder\program\ableton live 9 suite.exe] = & gt; (Block) D:\studijo\new folder\program\ableton live 9 suite.exe
FirewallRules: [{2028DED7-DC6C-43A8-AF31-3E6F83263033}] = & gt; (Block) D:\studijo\New Folder\Program\Ableton Live 9 Suite.exe
FirewallRules: [{DE56A929-34C5-4CA5-BFCC-EB28B27C6993}] = & gt; (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{A1B431D5-77D8-44BC-BC02-0FCB66317E03}D:\studijo\fl studio 11\fl.exe] = & gt; (Block) D:\studijo\fl studio 11\fl.exe
FirewallRules: [UDP Query User{B472F34F-E48E-4568-BD21-546E7021BA52}D:\studijo\fl studio 11\fl.exe] = & gt; (Block) D:\studijo\fl studio 11\fl.exe
FirewallRules: [TCP Query User{43A4BBAF-E03E-423B-83C4-695ACB1ED546}C:\program files\xln audio\addictive keys\addictive keys.exe] = & gt; (Block) C:\program files\xln audio\addictive keys\addictive keys.exe
FirewallRules: [UDP Query User{EDF3E371-6001-4B93-AA42-5BC6B99FAC5C}C:\program files\xln audio\addictive keys\addictive keys.exe] = & gt; (Block) C:\program files\xln audio\addictive keys\addictive keys.exe
FirewallRules: [TCP Query User{A59CCF80-65D5-4A78-BB1E-AC84BDC1F26A}C:\program files\xln audio\xln online installer\xln online installer.exe] = & gt; (Block) C:\program files\xln audio\xln online installer\xln online installer.exe
FirewallRules: [UDP Query User{C7A14763-134B-47A4-ADE4-AAB1D689F5F5}C:\program files\xln audio\xln online installer\xln online installer.exe] = & gt; (Block) C:\program files\xln audio\xln online installer\xln online installer.exe

==================== Restore Points =========================


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (08/12/2018 06:04:25 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (08/12/2018 06:00:27 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: Z powodu wystąpienia problemu dane Programu poprawy jakości obsługi klienta nie zostały wysłane do firmy Microsoft. (Błąd 80070005).

Error: (08/12/2018 12:07:10 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: Z powodu wystąpienia problemu dane Programu poprawy jakości obsługi klienta nie zostały wysłane do firmy Microsoft. (Błąd 80070005).

Error: (08/11/2018 08:58:56 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m- & gt; NextScheduledSPRetry 14156203

Error: (08/11/2018 08:58:56 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m- & gt; NextScheduledEvent 14156203

Error: (08/11/2018 08:58:56 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (08/11/2018 08:03:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m- & gt; NextScheduledSPRetry 10802516

Error: (08/11/2018 08:03:02 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m- & gt; NextScheduledEvent 10802516


System errors:
=============
Error: (08/12/2018 08:23:01 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi eapihdrv z powodu następującego błędu:
Nastąpiło zablokowanie ładowania sterownika

Error: (08/12/2018 08:23:01 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Karool\AppData\Local\Temp\ehdrv.sys

Error: (08/12/2018 08:23:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi eapihdrv z powodu następującego błędu:
Nastąpiło zablokowanie ładowania sterownika

Error: (08/12/2018 08:23:00 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Karool\AppData\Local\Temp\ehdrv.sys

Error: (08/12/2018 08:23:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi eapihdrv z powodu następującego błędu:
Nastąpiło zablokowanie ładowania sterownika

Error: (08/12/2018 08:23:00 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Karool\AppData\Local\Temp\ehdrv.sys

Error: (08/12/2018 08:07:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Internet Manager. OUC z powodu następującego błędu:
Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie.

Error: (08/12/2018 08:07:49 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Internet Manager. OUC.


Windows Defender:
===================================
Date: 2017-01-09 18:24:50.760
Description:
Skanowanie produktu Windows Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {5BE9C51B-8618-4D87-B387-49FF3C1F6C00}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: NT AUTHORITY\SYSTEM

Date: 2017-01-09 15:57:35.033
Description:
Skanowanie produktu Windows Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {7256B5D9-2316-4B7B-A943-391C50824B5B}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: NT AUTHORITY\SYSTEM

Date: 2017-01-06 22:24:26.487
Description:
Skanowanie produktu Windows Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {8B6ED49F-6426-4742-9981-CA958EF4C452}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: NT AUTHORITY\SYSTEM

Date: 2017-01-05 16:44:09.904
Description:
Skanowanie produktu Windows Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {F79E8CDC-3729-45B7-8EE1-1C2F4D28D560}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: NT AUTHORITY\SYSTEM

Date: 2017-01-05 14:55:49.353
Description:
Skanowanie produktu Windows Defender zostało zatrzymane przed ukończeniem.
Identyfikator skanowania: {D371FD57-A686-43D4-9309-000A1BD24D37}
Typ skanowania: Narzędzia chroniące przed złośliwym oprogramowaniem
Parametry skanowania: Szybkie skanowanie
Użytkownik: NT AUTHORITY\SYSTEM

Date: 2017-01-09 00:15:36.672
Description:
Produkt Windows Defender napotkał błąd podczas próby aktualizacji podpisów.
Nowa wersja podpisu:
Poprzednia wersja podpisu: 1.233.4114.0
Źródło aktualizacji: Serwer usługi Microsoft Update
Typ podpisu: Oprogramowanie antywirusowe
Typ aktualizacji: Pełne
Użytkownik: NT AUTHORITY\SYSTEM
Bieżąca wersja aparatu:
Poprzednia wersja aparatu: 1.1.13303.0
Kod błędu: 0x8024402c
Opis błędu: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.

Date: 2017-01-08 00:40:41.751
Description:
Produkt Windows Defender napotkał błąd podczas próby aktualizacji podpisów.
Nowa wersja podpisu:
Poprzednia wersja podpisu: 1.233.4114.0
Źródło aktualizacji: Serwer usługi Microsoft Update
Typ podpisu: Oprogramowanie antywirusowe
Typ aktualizacji: Pełne
Użytkownik: NT AUTHORITY\SYSTEM
Bieżąca wersja aparatu:
Poprzednia wersja aparatu: 1.1.13303.0
Kod błędu: 0x8024402c
Opis błędu: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.

Date: 2017-01-06 20:52:29.058
Description:
Produkt Windows Defender napotkał błąd podczas próby aktualizacji podpisów.
Nowa wersja podpisu:
Poprzednia wersja podpisu: 1.233.3952.0
Źródło aktualizacji: Serwer usługi Microsoft Update
Typ podpisu: Oprogramowanie antywirusowe
Typ aktualizacji: Pełne
Użytkownik: NT AUTHORITY\SYSTEM
Bieżąca wersja aparatu:
Poprzednia wersja aparatu: 1.1.13303.0
Kod błędu: 0x80240016
Opis błędu: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.

Date: 2017-01-06 20:52:29.058
Description:
Produkt Windows Defender napotkał błąd podczas próby aktualizacji podpisów.
Nowa wersja podpisu:
Poprzednia wersja podpisu: 1.233.3952.0
Źródło aktualizacji: Serwer usługi Microsoft Update
Typ podpisu: Oprogramowanie antywirusowe
Typ aktualizacji: Pełne
Użytkownik: NT AUTHORITY\SYSTEM
Bieżąca wersja aparatu:
Poprzednia wersja aparatu: 1.1.13303.0
Kod błędu: 0x80240016
Opis błędu: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.

Date: 2017-01-06 20:52:29.058
Description:
Produkt Windows Defender napotkał błąd podczas próby aktualizacji podpisów.
Nowa wersja podpisu:
Poprzednia wersja podpisu: 1.233.3952.0
Źródło aktualizacji: Serwer usługi Microsoft Update
Typ podpisu: Oprogramowanie antywirusowe
Typ aktualizacji: Pełne
Użytkownik: NT AUTHORITY\SYSTEM
Bieżąca wersja aparatu:
Poprzednia wersja aparatu: 1.1.13303.0
Kod błędu: 0x80240016
Opis błędu: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.

CodeIntegrity:
===================================

Date: 2018-05-31 17:24:42.879
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-05-31 17:24:42.201
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-05-31 17:24:41.516
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-05-31 17:24:40.839
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-05-31 17:24:40.155
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-05-31 17:24:39.480
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-05-31 17:24:38.797
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

Date: 2018-05-31 17:24:38.118
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

Processor: Intel(R) Core(TM) i7-4720HQ CPU @ 2.60GHz
Percentage of memory in use: 23%
Total physical RAM: 16273.06 MB
Available physical RAM: 12473.84 MB
Total Virtual: 18705.06 MB
Available Virtual: 14978.73 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:95.39 GB) (Free:12.59 GB) NTFS == & gt; [system with boot components (obtained from drive)]
Drive d: (Data) (Fixed) (Total:127.85 GB) (Free:46.53 GB) NTFS

\\?\Volume{f738057f-2374-4cb3-899e-57f8e4711dfb}\ (Recovery) (Fixed) (Total:15.01 GB) (Free:2.87 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 0D1432FA)

Partition: GPT.

==================== End of Addition.txt ============================