Addition.txt

Usunięcie so-v.com - nie mogę usunąć so-v z FF

Cześć! Mam problem z usunięciem so-v. Widzę, że na forum jest sporo osób w tym temacie pomagających, będę wdzięczny za taką pomoc. Problem występuje tylko w FF, z tego co sam zauważyłem. Jako załączniki wrzucam moje logi z FRST.


Pobierz plik - link do postu

Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Ran by Składzik (2016-03-18 00:18:02)
Running from C:\Users\Składzik\Desktop
Windows 10 Pro Version 1511 (X64) (2016-02-26 07:56:55)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-4045492021-307055827-2815901545-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4045492021-307055827-2815901545-503 - Limited - Disabled)
Guest (S-1-5-21-4045492021-307055827-2815901545-501 - Limited - Disabled)
Składzik (S-1-5-21-4045492021-307055827-2815901545-1000 - Administrator - Enabled) = & gt; C:\Users\Składzik

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Smart Security 9.0.318.20 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET Smart Security 9.0.318.20 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
FW: Zapora osobista ESET (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2}

==================== Installed Programs ======================

(Only the adware programs with " Hidden " flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

@BIOS (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.23 - GIGABYTE)
Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated)
Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.182 - Adobe Systems Incorporated)
Age of Empires® III: Complete Collection (HKLM-x32\...\Steam App 105450) (Version: - Ensemble Studios)
Aktualizacje NVIDIA 2.10.2.40 (Version: 2.10.2.40 - NVIDIA Corporation) Hidden
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Assassin's Creed® III (HKLM-x32\...\Steam App 208480) (Version: - Ubisoft Montreal)
AutoGreen B12.0206.1 (HKLM-x32\...\InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345}) (Version: 1.00.0000 - GIGABYTE)
AutoGreen B12.0206.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden
Bastion - spolszczenie 1.02 (HKLM-x32\...\Bastion - spolszczenie 1.02) (Version: 1.02 - polik1 aka batetolast1)
Bastion (HKLM-x32\...\Steam App 107100) (Version: - Supergiant Games)
Batman: Arkham City GOTY (HKLM-x32\...\Steam App 200260) (Version: - Rocksteady Studios)
Burnout Paradise: The Ultimate Box (HKLM-x32\...\Steam App 24740) (Version: - Criterion Games)
CCleaner (HKLM\...\CCleaner) (Version: 5.15 - Piriform)
CWK (Czasowy Wyłącznik Komputera) (HKLM-x32\...\CWK) (Version: 2.52.3.43 - Damian Pasternak)
DivX Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.87 - DivX, LLC)
Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.7000.7 - Dolby Laboratories Inc)
Easy Tune 6 B12.0320.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE)
Easy Tune 6 B12.0320.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden
Edimax Wireless LAN (HKLM-x32\...\{EB7E62BE-B5E7-4D4A-A69C-CE78CCF4B8FF}) (Version: 1.0.0.1 - Edimax)
ESET Smart Security (HKLM\...\{C3A58F37-1DDE-4EC7-910A-A1F734E9967F}) (Version: 9.0.318.20 - ESET, spol. s r.o.)
Etron USB3.0 Host Controller (x32 Version: 0.109 - Etron Technology) Hidden
F1 Race Stars (HKLM-x32\...\Steam App 203680) (Version: - Codemasters Birmingham)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
Injustice: Gods Among Us Ultimate Edition (HKLM-x32\...\Steam App 242700) (Version: - NetherRealm Studios)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.0.1351 - Intel Corporation)
Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2932 - Intel Corporation)
Intel® Trusted Connect Service Client (HKLM\...\{6199B534-A1B6-46ED-873B-97B0ECF8F81E}) (Version: 1.23.216.0 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: - )
Java 8 Update 73 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218073F0}) (Version: 8.0.730.2 - Oracle Corporation)
LEGO Batman: The Videogame (HKLM-x32\...\Steam App 21000) (Version: - Traveller's Tales)
LEGO®Star Wars™ III The Clone Wars™ (HKLM-x32\...\{208432AC-ED50-4FAE-A37F-5AA83ACF3066}) (Version: 1.00.0000 - LucasArts)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE (HKLM-x32\...\{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}) (Version: 3.1.186.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Middle-earth: Shadow of Mordor (HKLM-x32\...\Steam App 241930) (Version: - Monolith Productions, Inc.)
Mozilla Firefox 44.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 44.0.2 (x86 pl)) (Version: 44.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 44.0.2.5884 - Mozilla)
NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - )
Need for Speed™ Most Wanted (HKLM-x32\...\{FB0127F3-985B-44CE-AE29-378CAF60B361}) (Version: 1.5.0.0 - Electronic Arts)
NVIDIA GeForce Experience 2.10.2.40 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.10.2.40 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
NVIDIA Sterownik 3D Vision 361.91 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 361.91 - NVIDIA Corporation)
NVIDIA Sterownik dźwięku HD 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation)
NVIDIA Sterownik graficzny 361.91 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 361.91 - NVIDIA Corporation)
NVIDIA Sterownik kontrolera 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
Obsługa programów Apple (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Opera Stable 36.0.2130.32 (HKLM-x32\...\Opera 36.0.2130.32) (Version: 36.0.2130.32 - Opera Software)
Origin (HKLM-x32\...\Origin) (Version: 9.3.11.2762 - Electronic Arts, Inc.)
Panel sterowania NVIDIA 361.91 (Version: 361.91 - NVIDIA Corporation) Hidden
Plants vs. Zombies™ (HKLM-x32\...\{5E6536C2-E79A-49CF-83EA-817AD81F9FC8}) (Version: 1.2.0.1093 - Electronic Arts, Inc.)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.)
QuickTime 7 (HKLM-x32\...\{627FFC10-CE0A-497F-BA2B-208CAC638010}) (Version: 7.77.80.95 - Apple Inc.)
Rapture3D 2.5.1 Game (HKLM-x32\...\{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1) (Version: - Blue Ripple Sound)
Rayman Legends (HKLM-x32\...\Steam App 242550) (Version: - )
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
RollerCoaster Tycoon 3: Platinum! (HKLM-x32\...\Steam App 2700) (Version: - Frontier)
Ryse: Son of Rome (HKLM-x32\...\Steam App 302510) (Version: - Crytek)
SHIELD Streaming (Version: 5.1.0270 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.10.2.40 - NVIDIA Corporation) Hidden
SimCity 4 Deluxe (HKLM-x32\...\Steam App 24780) (Version: - EA - Maxis)
SpywareBlaster 5.4 (HKLM-x32\...\SpywareBlaster_is1) (Version: 5.4.0 - BrightFort LLC)
Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation)
The Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.69.43.024017 - Electronic Arts Inc.)
The Sims™ 3 Miejskie Życie Akcesoria (HKLM-x32\...\{7B11296A-F894-449C-8DF6-6AAAA7D4D118}) (Version: 9.0.73 - Electronic Arts)
The Sims™ 3 Nowoczesny apartament Akcesoria (HKLM-x32\...\{71828142-5A24-4BD0-97E7-976DA08CE6CF}) (Version: 3.0.38 - Electronic Arts)
The Sims™ 3 Po zmroku (HKLM-x32\...\{45057FCE-5784-48BE-8176-D9D00AF56C3C}) (Version: 6.5.1 - Electronic Arts)
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.15.55.1020 - Electronic Arts Inc.)
The Witcher 2: Assassins of Kings Enhanced Edition (HKLM-x32\...\Steam App 20920) (Version: - CD PROJEKT RED)
Trine (HKLM-x32\...\Steam App 35700) (Version: - Frozenbyte)
Uplay (HKLM-x32\...\Uplay) (Version: 4.0 - Ubisoft)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Winamp (remove only) (HKLM-x32\...\Winamp) (Version: - )
Windows 7 Codec Pack 4.0.8 (HKLM-x32\...\Windows 7 - Codec Pack) (Version: 4.0.8 - Windows 7 Codec Pack)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
WinRAR archiver (HKLM-x32\...\WinRAR archiver) (Version: - )
Worms Revolution (HKLM-x32\...\Steam App 200170) (Version: - Team17 Digital Ltd.)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-4045492021-307055827-2815901545-1000_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 - & gt; C:\Users\Składzik\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-4045492021-307055827-2815901545-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 - & gt; C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {08F647B6-B770-4326-B1C3-551E264F62D7} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B - & gt; No File & lt; ==== ATTENTION
Task: {0D47A45F-4BEF-41A2-A38B-343400E82249} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 = & gt; C:\Windows\ehome\ehPrivJob.exe
Task: {0F141C9B-6BDE-4861-9293-81521C1EFEB5} - System32\Tasks\GoogleUpdateTaskMachineCore1d043b43eb71706 = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {176B48CD-BB42-4347-9B1C-CDD0780736EA} - System32\Tasks\GoogleUpdateTaskMachineCore = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {17A519AF-761B-47AD-BD7B-F8BFC2A31B7E} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart = & gt; C:\Windows\ehome\ehrec.exe
Task: {1C488C9D-0174-44D6-8E7B-296DAC245F57} - System32\Tasks\GoogleUpdateTaskMachineCore1d08fab19c26fc8 = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {1ECF4E36-5939-42AA-8AE1-41E1E5E5E830} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d - & gt; No File & lt; ==== ATTENTION
Task: {211D8CD4-6B63-478F-A7E3-5F3147FBF412} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit = & gt; C:\Windows\ehome\ehPrivJob.exe
Task: {211FFBD0-8336-41A9-9015-F9749EBD967D} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry = & gt; C:\Windows\ehome\MCUpdate.exe
Task: {2517C177-D625-478A-9B83-698F8BACE9DE} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB = & gt; C:\WINDOWS\system32\MRT.exe [2016-02-10] (Microsoft Corporation)
Task: {2773A12D-EA47-4E84-96D7-94BF7292C132} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch = & gt; C:\Windows\ehome\ehPrivJob.exe
Task: {2B17A921-AFA1-485D-8269-2FDBED5735D1} - System32\Tasks\GoogleUpdateTaskMachineUA = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {3BB5B8D2-E9C8-4A52-A30C-B6F5DAD01A61} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady = & gt; C:\Windows\ehome\ehPrivJob.exe
Task: {403E7F94-254B-4E22-B1D4-1798D07D5CBB} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate = & gt; C:\Windows\ehome\ehPrivJob.exe
Task: {42657122-BD30-4895-BC92-8A7F5E5670A7} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig - & gt; No File & lt; ==== ATTENTION
Task: {477B6395-8C60-4B15-B500-FF7C59ECE6E9} - \Microsoft\Windows\Setup\gwx\launchtrayprocess - & gt; No File & lt; ==== ATTENTION
Task: {506FA761-4C4F-42CD-8610-70B518639383} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate = & gt; C:\Windows\ehome\mcupdate.exe
Task: {51073DAC-7898-45EC-812F-349FEEA5246D} - System32\Tasks\GoogleUpdateTaskMachineUA1d08fab1a307574 = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {522BF885-8E8D-47AB-8024-B0B8730247A9} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot = & gt; C:\Windows\ehome\ehPrivJob.exe
Task: {5D733C36-79BF-4369-B47F-9F350023A864} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB = & gt; C:\WINDOWS\system32\MRT.exe [2016-02-10] (Microsoft Corporation)
Task: {6BC084D7-75A8-435D-B675-982E1E2D5AF7} - System32\Tasks\Opera scheduled Autoupdate 1388682714 = & gt; C:\Program Files (x86)\Opera\launcher.exe [2016-03-14] (Opera Software)
Task: {7B10744D-5A1A-45D4-BDCF-9CE272DDB84E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery = & gt; C:\Windows\ehome\ehPrivJob.exe
Task: {7CB0CBFD-8D37-4699-B45C-F49ED6588425} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath = & gt; C:\Windows\ehome\ehPrivJob.exe
Task: {834F754B-BC50-4E3D-AC7F-A89C50DB45B7} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask = & gt; C:\Windows\ehome\mcupdate.exe
Task: {83C58187-AE23-49CC-90DA-52A38EDF0B1C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent - & gt; No File & lt; ==== ATTENTION
Task: {8A6288FA-71E4-446C-91DB-D8A6D8E137B4} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch = & gt; C:\Windows\ehome\ehPrivJob.exe
Task: {8EC11735-44DE-44A4-AA7D-467FDCD81D96} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask = & gt; C:\Windows\ehome\mcupdate.exe
Task: {8EC18DCC-3A48-4799-9B26-04C30024E9C4} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d - & gt; No File & lt; ==== ATTENTION
Task: {915E6DD2-1C64-4E82-8A84-1666DEBE2DFB} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask = & gt; C:\Windows\ehome\mcupdate.exe
Task: {92396B5F-240B-4451-859D-BEBA52CFD867} - System32\Tasks\GoogleUpdateTaskMachineCore1d0bfe5a130932c = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {99BBBE43-04D5-440C-8F37-642E4EEA07D1} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask = & gt; C:\Windows\ehome\mcupdate.exe
Task: {9AC31F2C-EB8B-4D3A-800A-6A455E0C71E0} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd - & gt; No File & lt; ==== ATTENTION
Task: {9D45AAFE-11F9-441A-94AA-998F846B0368} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled = & gt; C:\Windows\ehome\mcupdate.exe
Task: {A673AB55-12BF-4471-A691-9208E675EE89} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d - & gt; No File & lt; ==== ATTENTION
Task: {AD4B6799-9E65-47EF-AC8C-EA23DD3BC5D8} - System32\Tasks\GoogleUpdateTaskMachineUA1d0bfe5a1b0bfb8 = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {B2DBA96A-0573-4142-A94A-FAAAC8117A92} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d - & gt; No File & lt; ==== ATTENTION
Task: {BBBD19E0-2724-40B2-92E8-6410DFF8E5B6} - System32\Tasks\Adobe Acrobat Update Task = & gt; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated)
Task: {CB0F8FC4-603D-44FF-8391-BCE69A01F4CB} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery = & gt; C:\Windows\ehome\ehPrivJob.exe
Task: {D8CAFFF5-AC5B-40BF-A30F-72A694E40F16} - System32\Tasks\Apple\AppleSoftwareUpdate = & gt; C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {DAE7AFA9-2166-46AB-B889-1785FF3882CD} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 = & gt; C:\Windows\ehome\ehPrivJob.exe
Task: {DE7CC7B4-5A96-458F-AB03-6FACBDB0DD0F} - System32\Tasks\GoogleUpdateTaskMachineUA1d043b43f374392 = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {E263B4BB-C014-44DB-BA13-0C5C6D1CDE43} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d - & gt; No File & lt; ==== ATTENTION
Task: {E5E8FBB6-A49E-4B49-A113-F669B2E68F8A} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask = & gt; C:\Windows\ehome\mcupdate.exe
Task: {E6456908-7436-4992-B25A-583094AAE705} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent - & gt; No File & lt; ==== ATTENTION
Task: {EB5AF4FB-C8F8-4F92-A29E-5CF2DA03ED1D} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService = & gt; C:\Windows\ehome\ehPrivJob.exe
Task: {F2851854-F899-4C31-94BF-0C78B4BC06F9} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks = & gt; C:\Windows\ehome\ehPrivJob.exe
Task: {F378B83C-274B-4E06-A783-4B431AC126CC} - System32\Tasks\CCleanerSkipUAC = & gt; C:\Program Files\CCleaner\CCleaner.exe [2016-02-12] (Piriform Ltd)
Task: {F96C6942-ADD5-4524-ABBC-86AE6776ADE9} - System32\Tasks\Adobe Flash Player Updater = & gt; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-10] (Adobe Systems Incorporated)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job = & gt; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d043b43eb71706.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d08fab19c26fc8.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0bfe5a130932c.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d043b43f374392.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d08fab1a307574.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0bfe5a1b0bfb8.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Składzik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk - & gt; C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) - & gt; hxxp://www.so-v.com/?type=ll & uid=0c1cd548-fd27-4453-bbea-361ae4cb058b

==================== Loaded Modules (Whitelisted) ==============

2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-02-26 08:32 - 2016-02-09 06:29 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-02-26 20:41 - 2016-02-17 07:56 - 01416064 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2015-12-27 22:37 - 2016-02-17 07:56 - 00299392 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-02-26 20:41 - 2016-02-17 07:56 - 03613056 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2013-11-27 19:05 - 2012-09-17 10:05 - 00311296 ____N () C:\Program Files (x86)\Edimax\Edimax Wireless LAN\WPSHWPBC.exe
2016-03-02 15:42 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 15:42 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-02-26 17:19 - 2016-02-26 17:19 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-03-02 15:42 - 2016-02-23 09:36 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-02-26 17:19 - 2016-02-26 17:19 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-02-26 17:19 - 2016-02-26 17:19 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-02-26 17:19 - 2016-02-26 17:19 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-02-26 17:19 - 2016-02-26 17:19 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-04-14 19:39 - 2016-02-17 08:02 - 00020352 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2013-11-27 18:49 - 2011-12-16 10:39 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 [134]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The " AlternateShell " will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\hola.org - & gt; hxxp://hola.org
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\008i.com - & gt; 008i.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\008k.com - & gt; 008k.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\00hq.com - & gt; 00hq.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\0190-dialers.com - & gt; 0190-dialers.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\01i.info - & gt; 01i.info
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\02pmnzy5eo29bfk4.com - & gt; 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\0411dd.com - & gt; 0411dd.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\0511zfhl.com - & gt; 0511zfhl.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\05p.com - & gt; 05p.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\0632qyw.com - & gt; 0632qyw.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\07ic5do2myz3vzpk.com - & gt; 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\08nigbmwk43i01y6.com - & gt; 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\093qpeuqpmz6ebfa.com - & gt; 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\0calories.net - & gt; 0calories.net
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\0cj.net - & gt; 0cj.net
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\0scan.com - & gt; 0scan.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\1-britney-spears-nude.com - & gt; 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\1-domains-registrations.com - & gt; 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\1-se.com - & gt; 1-se.com
IE restricted site: HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\1001movie.com - & gt; 1001movie.com

There are 6091 more sites.


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-4045492021-307055827-2815901545-1000\Control Panel\Desktop\\Wallpaper - & gt; C:\Users\Składzik\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 62.179.1.61 - 62.179.1.63
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System = & gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: Adobe ARM = & gt; " C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe "
MSCONFIG\startupreg: CCleaner Monitoring = & gt; " C:\Program Files\CCleaner\CCleaner64.exe " /MONITOR
MSCONFIG\startupreg: QuickTime Task = & gt; " C:\Program Files (x86)\QuickTime\QTTask.exe " -atboottime
MSCONFIG\startupreg: RtHDVBg_Dolby = & gt; C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE4
MSCONFIG\startupreg: RTHDVCPL = & gt; C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
HKLM\...\StartupApproved\Run32: = & gt; " QuickTime Task "
HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\StartupApproved\Run: = & gt; " Uninstall C:\Users\Składzik\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64 "
HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\StartupApproved\Run: = & gt; " Uninstall C:\Users\Składzik\AppData\Local\Microsoft\OneDrive\17.3.5907.0716 "
HKU\S-1-5-21-4045492021-307055827-2815901545-1000\...\StartupApproved\Run: = & gt; " Uninstall C:\Users\Składzik\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64 "

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] = & gt; (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] = & gt; (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] = & gt; (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] = & gt; (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] = & gt; (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] = & gt; (Allow) LPort=808
FirewallRules: [{E944F8CE-DACE-4ABF-9326-F3F912522E2D}] = & gt; (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe
FirewallRules: [{3D92F280-DCEC-4987-8516-0D5DF9F3F8F5}] = & gt; (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe
FirewallRules: [{AA9057CD-7297-4053-BB0A-3F5AA5D6E50E}] = & gt; (Allow) C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\NFS13.exe
FirewallRules: [{86E015A6-A14D-4861-8104-53A56A3F077C}] = & gt; (Allow) C:\Program Files (x86)\Origin Games\Need for Speed(TM) Most Wanted\NFS13.exe
FirewallRules: [{5918C37B-FFAB-49A2-A044-C9D9656142CF}] = & gt; (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe
FirewallRules: [{76B6F9E7-4EF4-4460-8FC0-8A404F66E6FD}] = & gt; (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe
FirewallRules: [{F980A460-C35B-445E-95F0-9C4FAB06E2C8}] = & gt; (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{5083348B-F895-40F1-B949-2F9E49EEA11A}] = & gt; (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{D7926BC3-E36C-4031-9B59-0AB35E931482}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ryse Son of Rome\Bin64\Ryse.exe
FirewallRules: [{481653C6-AC88-40AE-9FCA-FE89BFDDB382}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Ryse Son of Rome\Bin64\Ryse.exe
FirewallRules: [{1F4EB2FE-6D97-42B8-8BA8-2A7C6AA229AE}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ShadowOfMordor\x64\ShadowOfMordor.exe
FirewallRules: [{96B63637-B90F-406A-9C0A-EFDEFD9B7DDD}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ShadowOfMordor\x64\ShadowOfMordor.exe
FirewallRules: [{CD13B385-6483-43DB-AFD3-2E9510C20399}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{7B023CDE-E38C-4DFC-A82F-E3A081DE1C69}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{40FF2B9D-2EBA-48F9-A36D-CE8DA0A4CA1B}] = & gt; (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [{6D398506-B319-4B7D-BB0E-44A03C1F9158}] = & gt; (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{2E055326-4BE9-43AF-9396-D3C698C96DA0}] = & gt; (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{81AEEF90-2BF8-4518-B4C8-5458C08FFA42}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutParadise.exe
FirewallRules: [{DCF59B6E-7070-4D82-BB1C-5F8BDF0A4952}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutParadise.exe
FirewallRules: [{FE2D2ED5-525C-4BBB-9012-4884F0DDD39F}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutConfigTool.exe
FirewallRules: [{4BD4AEB9-E505-4546-8987-FCDDAF7AC618}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\BurnoutConfigTool.exe
FirewallRules: [{06498486-0875-4C5E-AE29-93E0839C23DF}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\Support\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{19DE5CCE-C048-441D-97C1-4D19E6470BB8}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Burnout(TM) Paradise The Ultimate Box\Support\EA Help\Electronic_Arts_Technical_Support.htm
FirewallRules: [{CF2243A1-FEBB-40E1-8E8B-DFA0025C39C0}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Bastion\Bastion.exe
FirewallRules: [{CC3821E2-44A1-4D67-99EC-C691C0358AA7}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Bastion\Bastion.exe
FirewallRules: [{636E3E5E-2477-47B3-8CB2-D7DB5100528A}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Batman Arkham City GOTY\Binaries\Win32\BatmanAC.exe
FirewallRules: [{79E2559C-F0C9-48C6-885D-40BA96A02B6C}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Batman Arkham City GOTY\Binaries\Win32\BatmanAC.exe
FirewallRules: [{EC7321F5-1A0E-4BAD-897F-C58C6907A76F}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Rollercoaster Tycoon 3 Gold\RCT3plus.exe
FirewallRules: [{613514B2-1E12-4CF9-AE2F-AC34E7487106}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Rollercoaster Tycoon 3 Gold\RCT3plus.exe
FirewallRules: [{F6599750-877F-4B43-B8FD-429EAEB92797}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Rayman Legends\Rayman Legends.exe
FirewallRules: [{AC782B40-10FA-478E-9E6F-007A85A5BF6B}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Rayman Legends\Rayman Legends.exe
FirewallRules: [{7F8E04AF-7708-4D91-85EC-0833825FC565}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Trine\trine_launcher.exe
FirewallRules: [{E2A185D6-ED41-4899-84BE-150BF55F2472}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Trine\trine_launcher.exe
FirewallRules: [{528BBC81-B703-495D-9909-51384AE02B5A}] = & gt; (Allow) C:\Program Files (x86)\Origin Games\Plants vs. Zombies\PlantsVsZombies.exe
FirewallRules: [{04FAE7FF-CAAE-4E77-B120-C74D146803E1}] = & gt; (Allow) C:\Program Files (x86)\Origin Games\Plants vs. Zombies\PlantsVsZombies.exe
FirewallRules: [{1EBEAD52-A8DB-4F72-8C61-83243603BE86}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Age Of Empires 3\bin\age3.exe
FirewallRules: [{2BA32C92-C3A4-46CF-9E11-177073863C6F}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Age Of Empires 3\bin\age3.exe
FirewallRules: [{069B1612-E3A3-436B-896C-3BC4530CB840}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Age Of Empires 3\bin\age3x.exe
FirewallRules: [{D886E09A-A8A9-447E-9ABC-6B0421F70DF4}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Age Of Empires 3\bin\age3x.exe
FirewallRules: [{BCF1F435-31DC-4E57-9B29-AF10532C6474}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Age Of Empires 3\bin\age3y.exe
FirewallRules: [{B0D4AA46-90AF-4801-A3B0-19C4A91F449D}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Age Of Empires 3\bin\age3y.exe
FirewallRules: [{97F57BEE-D0AF-4932-9B92-C592D6833478}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Trine\_enchanted_edition_\trine1_launcher.exe
FirewallRules: [{73CB4AF2-2662-4400-82BD-F0E8CE1DE943}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Trine\_enchanted_edition_\trine1_launcher.exe
FirewallRules: [{ADF14588-B15C-4B17-B479-2D6F5A2520B1}] = & gt; (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{69C7D568-7973-4E42-83C3-43AB553B9E27}] = & gt; (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{10574610-C3FD-4FE6-992C-7EB87A3D2DA1}] = & gt; (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{2FB97C33-5DD7-443C-A490-2AB8CE17FCED}] = & gt; (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{1B545D62-7E6C-4BB3-A3AE-43BE68A62085}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Assassin's Creed 3\AC3SP.exe
FirewallRules: [{071B837D-26DD-40C0-B6B9-B58152CF22F5}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Assassin's Creed 3\AC3SP.exe
FirewallRules: [{43C9E686-1887-4099-BECE-A484CDA8F26B}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Assassin's Creed 3\AC3MP.exe
FirewallRules: [{F652884B-EE62-4196-A9E2-AEE082FE16BD}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Assassin's Creed 3\AC3MP.exe
FirewallRules: [{4117E7D5-EC7F-44C4-B39C-ED7DE8FFA16E}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{AC98B96D-17F0-4B72-AADB-C13C8EE7177D}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{7C5C2034-2D6B-43A9-BD7D-0720CD9B37C7}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{6C32B688-6306-4730-A09A-146E64BAACF8}] = & gt; (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{57FB09B8-575A-4536-8A30-D267A7D31696}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{EB0FC602-9A42-4547-B7F7-BA6D36BC0E64}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{B6DA042F-A473-43CA-B505-1EF1AC4FEFCC}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SimCity 4 Deluxe\Apps\SimCity 4.exe
FirewallRules: [{8E41C796-EC0A-4398-824E-E19F37C6E564}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SimCity 4 Deluxe\Apps\SimCity 4.exe
FirewallRules: [{8777C333-DFDE-44D1-80C1-3B9AF8C8AB05}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\InjusticeGodsAmongUs_UltimateEdition\DiscContentPCG\Injustice.exe
FirewallRules: [{AA937E72-2C25-480E-B123-2F237FB30B09}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\InjusticeGodsAmongUs_UltimateEdition\DiscContentPCG\Injustice.exe
FirewallRules: [{E59478FE-C08D-4431-BDEC-98AC6923AF48}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\InjusticeGodsAmongUs_UltimateEdition\DiscContentPCG\InjusticeLauncher.exe
FirewallRules: [{3A3D6609-C41E-45EE-9ECD-61A2446082D9}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\InjusticeGodsAmongUs_UltimateEdition\DiscContentPCG\InjusticeLauncher.exe
FirewallRules: [{BE9E1DEB-1102-4020-AFE8-E1D1978EDDDF}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\WormsRevolution\WormsRevolution.exe
FirewallRules: [{D8EE91F1-4390-40BB-9EFC-229A04E2657D}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\WormsRevolution\WormsRevolution.exe
FirewallRules: [{B9057083-AF90-405B-B18C-939F0E615673}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Lego Batman\LEGOBatman.exe
FirewallRules: [{428C34F4-533E-4B65-90C9-BFAEB8A3A8BC}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Lego Batman\LEGOBatman.exe
FirewallRules: [{0B599B23-D191-4B9A-8779-C538CB88FBB1}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\the witcher 2\Launcher.exe
FirewallRules: [{B510E448-15FD-4815-8046-1E535C632296}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\the witcher 2\Launcher.exe
FirewallRules: [{3DA3F9B8-DF94-42C3-8B37-9DD842D2350C}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{4C7D5574-18A7-4B38-A1CC-86AB6A523CD9}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{C184FBFA-CAEC-491A-AD14-81B39BA0BEE6}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{91D37703-5E7C-46FD-A8CD-452A816A9498}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{8AE691EE-E04E-4D1D-B3C5-DC2F19B3B357}] = & gt; (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{B212EF75-5761-4B6A-BE99-6DE415CEE97E}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\f1 race stars\F1RaceStars.exe
FirewallRules: [{187E0129-476F-4176-A348-8D25468EB3B5}] = & gt; (Allow) C:\Program Files (x86)\Steam\SteamApps\common\f1 race stars\F1RaceStars.exe

==================== Restore Points =========================

04-03-2016 09:24:15 Windows Modules Installer
08-03-2016 19:57:33 Zainstalowany program DirectX
11-03-2016 22:01:04 Windows Update
15-03-2016 20:03:50 Windows Update

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (03/18/2016 12:10:02 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 44.0.2.5884, sygnatura czasowa: 0x56bbf417
Nazwa modułu powodującego błąd: mozglue.dll, wersja: 44.0.2.5884, sygnatura czasowa: 0x56bbe58e
Kod wyjątku: 0x80000003
Przesunięcie błędu: 0x0000ed3b
Identyfikator procesu powodującego błąd: 0xeb8
Godzina uruchomienia aplikacji powodującej błąd: 0xplugin-container.exe0
Ścieżka aplikacji powodującej błąd: plugin-container.exe1
Ścieżka modułu powodującego błąd: plugin-container.exe2
Identyfikator raportu: plugin-container.exe3
Pełna nazwa pakietu powodującego błąd: plugin-container.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: plugin-container.exe5

Error: (03/18/2016 12:01:15 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 44.0.2.5884, sygnatura czasowa: 0x56bbf417
Nazwa modułu powodującego błąd: mozglue.dll, wersja: 44.0.2.5884, sygnatura czasowa: 0x56bbe58e
Kod wyjątku: 0x80000003
Przesunięcie błędu: 0x0000ed3b
Identyfikator procesu powodującego błąd: 0xfd4
Godzina uruchomienia aplikacji powodującej błąd: 0xplugin-container.exe0
Ścieżka aplikacji powodującej błąd: plugin-container.exe1
Ścieżka modułu powodującego błąd: plugin-container.exe2
Identyfikator raportu: plugin-container.exe3
Pełna nazwa pakietu powodującego błąd: plugin-container.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: plugin-container.exe5

Error: (03/17/2016 11:46:33 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 44.0.2.5884, sygnatura czasowa: 0x56bbf417
Nazwa modułu powodującego błąd: mozglue.dll, wersja: 44.0.2.5884, sygnatura czasowa: 0x56bbe58e
Kod wyjątku: 0x80000003
Przesunięcie błędu: 0x0000ed3b
Identyfikator procesu powodującego błąd: 0x33ec
Godzina uruchomienia aplikacji powodującej błąd: 0xplugin-container.exe0
Ścieżka aplikacji powodującej błąd: plugin-container.exe1
Ścieżka modułu powodującego błąd: plugin-container.exe2
Identyfikator raportu: plugin-container.exe3
Pełna nazwa pakietu powodującego błąd: plugin-container.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: plugin-container.exe5

Error: (03/17/2016 11:46:30 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 44.0.2.5884, sygnatura czasowa: 0x56bbf417
Nazwa modułu powodującego błąd: mozglue.dll, wersja: 44.0.2.5884, sygnatura czasowa: 0x56bbe58e
Kod wyjątku: 0x80000003
Przesunięcie błędu: 0x0000ed3b
Identyfikator procesu powodującego błąd: 0x2e8
Godzina uruchomienia aplikacji powodującej błąd: 0xplugin-container.exe0
Ścieżka aplikacji powodującej błąd: plugin-container.exe1
Ścieżka modułu powodującego błąd: plugin-container.exe2
Identyfikator raportu: plugin-container.exe3
Pełna nazwa pakietu powodującego błąd: plugin-container.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: plugin-container.exe5

Error: (03/17/2016 09:31:30 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 44.0.2.5884, sygnatura czasowa: 0x56bbf417
Nazwa modułu powodującego błąd: mozglue.dll, wersja: 44.0.2.5884, sygnatura czasowa: 0x56bbe58e
Kod wyjątku: 0x80000003
Przesunięcie błędu: 0x0000ed3b
Identyfikator procesu powodującego błąd: 0xdbc
Godzina uruchomienia aplikacji powodującej błąd: 0xplugin-container.exe0
Ścieżka aplikacji powodującej błąd: plugin-container.exe1
Ścieżka modułu powodującego błąd: plugin-container.exe2
Identyfikator raportu: plugin-container.exe3
Pełna nazwa pakietu powodującego błąd: plugin-container.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: plugin-container.exe5

Error: (03/17/2016 09:31:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 44.0.2.5884, sygnatura czasowa: 0x56bbf417
Nazwa modułu powodującego błąd: mozglue.dll, wersja: 44.0.2.5884, sygnatura czasowa: 0x56bbe58e
Kod wyjątku: 0x80000003
Przesunięcie błędu: 0x0000ed3b
Identyfikator procesu powodującego błąd: 0x720
Godzina uruchomienia aplikacji powodującej błąd: 0xplugin-container.exe0
Ścieżka aplikacji powodującej błąd: plugin-container.exe1
Ścieżka modułu powodującego błąd: plugin-container.exe2
Identyfikator raportu: plugin-container.exe3
Pełna nazwa pakietu powodującego błąd: plugin-container.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: plugin-container.exe5

Error: (03/16/2016 11:02:29 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: dwm.exe, wersja: 10.0.10586.0, sygnatura czasowa: 0x5632d756
Nazwa modułu powodującego błąd: combase.dll, wersja: 10.0.10586.103, sygnatura czasowa: 0x56a849ab
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x0000000000067e3c
Identyfikator procesu powodującego błąd: 0x1f5c
Godzina uruchomienia aplikacji powodującej błąd: 0xdwm.exe0
Ścieżka aplikacji powodującej błąd: dwm.exe1
Ścieżka modułu powodującego błąd: dwm.exe2
Identyfikator raportu: dwm.exe3
Pełna nazwa pakietu powodującego błąd: dwm.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: dwm.exe5

Error: (03/16/2016 08:37:00 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (03/15/2016 08:10:05 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (03/15/2016 08:04:04 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

System Error:
Access is denied.
.


System errors:
=============
Error: (03/18/2016 12:11:12 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Usługa NetTcpActivator zależy od usługi NetTcpPortSharing, której nie można uruchomić z powodu następującego błędu:
%%1058

Error: (03/18/2016 12:10:09 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Sync Host_45eae niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 10000 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service.

Error: (03/17/2016 11:56:32 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Usługa NetTcpActivator zależy od usługi NetTcpPortSharing, której nie można uruchomić z powodu następującego błędu:
%%1058

Error: (03/17/2016 11:55:31 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Sync Host_4a056 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 10000 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service.

Error: (03/17/2016 11:55:25 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Menedżer sterowania usługami próbował podjąć akcję korekcyjną (Restart the service) po nieoczekiwanym zakończeniu usługi Windows Search, ale ta akcja nie powiodła się przy następującym błędzie:
%%1056.

Error: (03/17/2016 11:54:55 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa Intel(R) Management and Security Application User Notification Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.

Error: (03/17/2016 11:54:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service.

Error: (03/17/2016 11:54:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Windows Presentation Foundation Font Cache 3.0.0.0 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Restart the service.

Error: (03/17/2016 11:54:54 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa NVIDIA Streamer Network Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.

Error: (03/17/2016 11:54:54 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa NVIDIA GeForce Experience Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.


CodeIntegrity:
===================================
Date: 2016-03-12 18:42:17.523
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-03-11 19:45:34.692
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-03-10 19:37:32.863
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-03-04 09:50:24.033
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-03-02 22:35:44.040
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-03-02 16:15:52.536
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-27 20:00:39.017
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-26 08:51:42.176
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-26 08:51:41.452
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-26 08:31:20.272
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i5-3470 CPU @ 3.20GHz
Percentage of memory in use: 20%
Total physical RAM: 8045.11 MB
Available physical RAM: 6398.58 MB
Total Virtual: 16237.11 MB
Available Virtual: 14393.5 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:499.22 GB) (Free:204.92 GB) NTFS == & gt; [drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:431.51 GB) (Free:224.79 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: A7687AA5)
Partition 1: (Active) - (Size=499.2 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=450 MB) - (Type=27)
Partition 3: (Not Active) - (Size=431.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================