REKLAMA

Addition.txt

Analiza logów FRST - nagłe uruchamianie programów i zmiana strony startowej

Witam. Proszę o sprawdzenie logów i ewentualne następne kroki. Sam nawet nie wiem, co dokładnie się stało, poza tym, że sporo programów, nagle chciało się uruchomić, plus oczywista zmiana strony startowej w przeglądarce. Zrobiony: skan MBAM, skan AdwCleaner. Nie wiem dlaczego ale gdy wybieram forum przy tworzeniu tematu, to nie ma tam nigdzie działu "Pogotowie Antywirusowe".


Pobierz plik - link do postu

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-10-2016
Ran by Młody (18-10-2016 18:54:40)
Running from S:\FRST
Windows 7 Ultimate Service Pack 1 (X64) (2014-08-07 02:15:23)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1288074817-643702963-434598722-500 - Administrator - Disabled)
ASPNET (S-1-5-21-1288074817-643702963-434598722-1002 - Limited - Enabled)
Guest (S-1-5-21-1288074817-643702963-434598722-501 - Limited - Disabled)
Młody (S-1-5-21-1288074817-643702963-434598722-1000 - Administrator - Enabled) = & gt; C:\Users\Młody

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with " Hidden " flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acrobat.com (HKLM-x32\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1.377 - Adobe Systems Incorporated)
Acrobat.com (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.0.4990 - Adobe Systems Inc.)
Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated)
Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.185 - Adobe Systems Incorporated)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.12 - Michael Tippach)
Assassin's Creed (HKLM-x32\...\{8CFA9151-6404-409A-AF22-4632D04582FD}) (Version: 1.02 - Ubisoft)
Assassin's Creed Brotherhood (HKLM-x32\...\{BE4BA698-8533-4F77-9559-C7F3F78C0B05}) (Version: 1.03 - Ubisoft)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts)
BitTorrent (HKU\S-1-5-21-1288074817-643702963-434598722-1000\...\BitTorrent) (Version: 7.9.7.42331 - BitTorrent Inc.)
Catalyst Control Center Next Localization BR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.17 - Piriform)
CPUID CPU-Z 1.74 (HKLM\...\CPUID CPU-Z_is1) (Version: - )
CPUID HWMonitor 1.28 (HKLM\...\CPUID HWMonitor_is1) (Version: - )
CrystalDiskInfo 6.2.1 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.2.1 - Crystal Dew World)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.2.0.0115 - Disc Soft Ltd)
DARK SOULS - Prepare To Die Edition (HKLM-x32\...\DARK SOULS - Prepare To Die Edition_is1) (Version: - )
Diablo II (HKLM-x32\...\Diablo II) (Version: - )
Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.96 - Etron Technology)
Etron USB3.0 Host Controller (x32 Version: 0.96 - Etron Technology) Hidden
f.lux (HKU\S-1-5-21-1288074817-643702963-434598722-1000\...\Flux) (Version: - )
F1 2011 (x32 Version: 1.0.0002.129 - Codemasters) Hidden
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 8.0.2.805 - Foxit Software Inc.)
Free YouTube Download (HKLM-x32\...\Free YouTube Download_is1) (Version: 4.1.16.525 - Digital Wave Ltd)
Futuremark SystemInfo (HKLM-x32\...\{032DC00A-51D1-4D28-BFB7-1D0E85291E11}) (Version: 4.25.366 - Futuremark)
GameRanger (HKU\S-1-5-21-1288074817-643702963-434598722-1000\...\GameRanger) (Version: - GameRanger Technologies)
GameSpy Comrade (HKLM-x32\...\{5F4C776F-8CBD-4C4F-892F-B568ABDD70C8}) (Version: 1.5.0.156 - GameSpy)
GIMP 2.8.18 (HKLM\...\GIMP-2_is1) (Version: 2.8.18 - The GIMP Team)
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com)
Gothic (HKLM-x32\...\{BBF10B37-4ED3-11D5-A818-00500435FC18}) (Version: - )
Gothic (HKLM-x32\...\Gothic_is1) (Version: - GOG.com)
Gothic 2 Gold (HKLM-x32\...\Gothic 2 Gold_is1) (Version: - GOG.com)
Guitar Pro 6 (HKLM-x32\...\{14A487F2-1259-4E6C-AE3C-3C888DDBCB60}_is1) (Version: - Arobas Music)
Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)
Heroes of Might and Magic III - Złota Edycja (HKLM-x32\...\{2F95D723-72D2-425C-A238-367FF157B6EE}) (Version: 1.00 - Ubisoft)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.25.1036 - Intel Corporation)
Intel(R) Smart Connect Technology 2.0 x64 (HKLM\...\{12ABC13D-6540-483D-92B9-30CE1667B002}) (Version: 2.0.1083.0 - Intel)
Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation)
LG United Mobile Drivers (HKLM-x32\...\{55031CEF-CE75-4A5C-8DEA-60577820529B}) (Version: 3.10.1.0 - LG Electronics)
Malwarebytes Anti-Malware wersja 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Mass Effect 2 (HKLM-x32\...\{D85A387E-6EC0-40E5-9D89-A148B3E93968}_is1) (Version: - )
Mass Effect 3.Deluxe Edition.v 1.5.5427.124 + 14 DLC (HKLM-x32\...\Mass Effect 3.Deluxe Edition.v 1.5.5427.124 + 14 DLC_is1) (Version: Mass Effect 3.Deluxe Edition.v 1.5.5427.124 + 14 DLC - Repack by Fenixx (09.03.2013))
Medal of Honor: Pacific Assault™ (HKLM-x32\...\{56CFA833-F44F-4199-8C58-7F8B38F2BC7B}) (Version: 1.2.1.280 - Electronic Arts)
Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110415-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23918 (HKLM-x32\...\{dab68466-3a7d-41a8-a5cf-415e3ff8ef71}) (Version: 14.0.23918.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Mozilla Firefox 49.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 49.0.1 (x86 pl)) (Version: 49.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla)
MSI Afterburner 4.1.1 (HKLM-x32\...\Afterburner) (Version: 4.1.1 - MSI Co., LTD)
NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - )
Need for Speed Underground 2 (HKLM-x32\...\{909F8EBC-EC7F-48FF-0085-475D818F0F31}) (Version: - )
NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenVPN 2.3.10-I602 (HKLM\...\OpenVPN) (Version: 2.3.10-I602 - )
Origin (HKLM-x32\...\Origin) (Version: 10.1.1.35466 - Electronic Arts, Inc.)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.98.211.0 - Overwolf Ltd.)
Pakiet zgodności dla systemu Office 2007 (HKLM-x32\...\{90120000-0020-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Paladins (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF402}) (Version: 0.34.1311.2 - Hi-Rez Studios)
Papers, Please (HKLM-x32\...\GOGPACKPAPERSPLEASE_is1) (Version: 2.4.0.10 - GOG.com)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
QUAKE (HKLM-x32\...\QUAKE) (Version: - )
Raptr (HKLM-x32\...\Raptr) (Version: 5.2.6-r115593-release - Raptr, Inc)
Rapture3D 2.4.9 Game (HKLM-x32\...\{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1) (Version: - Blue Ripple Sound)
Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.23.623.2010 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6167 - Realtek Semiconductor Corp.)
RivaTuner Statistics Server 6.3.0 (HKLM-x32\...\RTSS) (Version: 6.3.0 - Unwinder)
ROCCAT Lua Mouse Driver (HKLM-x32\...\InstallShield_{0F5183CD-4A86-43A4-8CAA-1045871F54DE}) (Version: 1.14 - ROCCAT)
ROCCAT Lua Mouse Driver (x32 Version: 1.14 - ROCCAT) Hidden
Skype™ 7.27 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.27.101 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-1288074817-643702963-434598722-1000\...\Spotify) (Version: 1.0.34.146.g28f9eda2 - Spotify AB)
STAR WARS® - Knights of the Old Republic™ (HKLM-x32\...\1207666283_is1) (Version: 2.0.0.3 - GOG.com)
TAP-Windows 9.21.1 (HKLM\...\TAP-Windows) (Version: 9.21.1 - )
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.17 - TeamSpeak Systems GmbH)
The Crew (Worldwide) (HKLM-x32\...\Uplay Install 413) (Version: - Ubisoft)
The Stanley Parable (HKLM-x32\...\The Stanley Parable_R.G. Mechanics_is1) (Version: - R.G. Mechanics, markfiter)
The Ultimate DOOM (HKLM-x32\...\1435827232_is1) (Version: 2.0.0.3 - GOG.com)
The Witcher 2 - Assassins of Kings Enhanced Edition (HKLM-x32\...\1207658930_is1) (Version: 3.5.0.26 - GOG.com)
The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.22.0.0 - GOG.com)
The Witcher 3: Wild Hunt - Free DLC program (16 DLC) (HKLM-x32\...\Free DLC program (16 DLC)_is1) (Version: 1.22.0.0 - GOG.com)
The Witcher 3: Wild Hunt - Krew i Wino (HKLM-x32\...\Blood and Wine_is1) (Version: 1.22.0.0 - GOG.com)
The Witcher 3: Wild Hunt - Serca z kamienia (HKLM-x32\...\Hearts of Stone_is1) (Version: 1.22.0.0 - GOG.com)
Twierdza Krzyżowiec Extreme (HKLM-x32\...\{2CA0BED6-1CBA-4BDD-8608-BC9D639EA0F3}) (Version: 1.20.0000 - Firefly Studios)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
Uplay (HKLM-x32\...\Uplay) (Version: 22.2 - Ubisoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Vulkan Run Time Libraries 1.0.17.0 (HKLM\...\VulkanRT1.0.17.0) (Version: 1.0.17.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1) (Version: 1.0.3.1 - LunarG, Inc.)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc)
Winamp 5.666 PL (HKLM-x32\...\Winamp PL) (Version: 5.666 - Paweł Porwisz)
WinDirStat 1.1.2 (HKU\S-1-5-21-1288074817-643702963-434598722-1000\...\WinDirStat) (Version: - )
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
WinRAR 5.21 (32-bitowy) (HKLM-x32\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {2CA33BF0-4EE3-42BA-8987-89F8CF5CDF85} - System32\Tasks\{008713FB-DF99-4F86-9C62-75EF3134D35A} = & gt; pcalua.exe -a " C:\Program Files (x86)\Common Files\CanTech\uninstall.exe " -c shuz -f " C:\Program Files (x86)\Common Files\CanTech\uninstall.dat " -a uninstallme 1E2AB5EE-7A3E-4545-8601-909631229C02 DeviceId=a5b3a645-73ea-359c-85ef-3be9a1ad5cb6 BarcodeId=51198003 ChannelId=3 DistributerName=APSFWakeNet
Task: {525A09BA-0B6C-4C43-8C2F-A5E075EC95E8} - System32\Tasks\AMD ThankingURL = & gt; S:\AMD\CIM\Bin64\Setup.exe [2016-09-16] (Advanced Micro Devices, Inc.)
Task: {7A8C90F8-A896-4E59-BFE2-D78D1F6868D1} - System32\Tasks\CCleanerSkipUAC = & gt; S:\Program Files (x86)\CCleaner\CCleaner.exe [2016-04-15] (Piriform Ltd)
Task: {96370986-E370-45C5-884C-4BD4FEBD21B2} - System32\Tasks\Overwolf Updater Task = & gt; S:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2016-09-27] (Overwolf LTD)
Task: {DC53099F-0905-4155-909C-C0D83FC58311} - System32\Tasks\AMD Updater = & gt; S:\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-09-16] (Advanced Micro Devices, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2012-02-10 01:26 - 2012-02-10 01:26 - 00133632 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
2012-02-10 01:26 - 2012-02-10 01:26 - 00048128 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll
2012-02-10 01:26 - 2012-02-10 01:26 - 00036864 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\ISCTNetDetect.dll
2014-08-31 13:41 - 2016-06-13 19:25 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2016-05-29 21:10 - 2016-05-25 11:44 - 00110952 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll
2016-05-29 21:10 - 2016-05-25 11:44 - 00104296 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll
2016-05-29 21:10 - 2016-05-25 11:44 - 00020328 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll
2016-05-29 21:10 - 2016-05-25 11:44 - 00044392 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The " AlternateShell " will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1288074817-643702963-434598722-1000\Control Panel\Desktop\\Wallpaper - & gt; C:\Users\Młody\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.100.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System = & gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

MSCONFIG\startupreg: Adobe ARM = & gt; " C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe "
MSCONFIG\startupreg: Adobe Reader Speed Launcher = & gt; " C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe "
MSCONFIG\startupreg: DAEMON Tools Lite Automount = & gt; " S:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe " -autorun
MSCONFIG\startupreg: Launch LCore = & gt; C:\Program Files\Logitech Gaming Software\LCore.exe /minimized
MSCONFIG\startupreg: NvBackend = & gt; " C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe "
MSCONFIG\startupreg: PlaysTV = & gt; " C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe " --startup
MSCONFIG\startupreg: Raptr = & gt; C:\PROGRA~2\RAPTRI~1\Raptr\raptrstub.exe --startup
MSCONFIG\startupreg: Skype = & gt; " S:\Program Files (x86)\Skype\Phone\Skype.exe " /minimized /regrun
MSCONFIG\startupreg: Spotify Web Helper = & gt; " C:\Users\Młody\AppData\Roaming\Spotify\SpotifyWebHelper.exe "
MSCONFIG\startupreg: Steam = & gt; " S:\Steam\steam.exe " -silent
MSCONFIG\startupreg: SunJavaUpdateSched = & gt; " C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe "

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{122D720C-AC23-4505-9DF5-A0AC2CF5A8F2}S:\program files (x86)\hearthstone\hearthstone.exe] = & gt; (Allow) S:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{09183E5D-974A-4CC2-AD51-F41F70C845A2}S:\program files (x86)\hearthstone\hearthstone.exe] = & gt; (Allow) S:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [TCP Query User{387F6A55-B8E4-4DBA-9FC6-1ED906218186}S:\program files (x86)\winamp\winamp.exe] = & gt; (Allow) S:\program files (x86)\winamp\winamp.exe
FirewallRules: [UDP Query User{6100F713-9520-483C-B3D9-219725234DA7}S:\program files (x86)\winamp\winamp.exe] = & gt; (Allow) S:\program files (x86)\winamp\winamp.exe
FirewallRules: [TCP Query User{F7244747-DB8C-4722-A266-100644F9AB43}C:\users\młody\appdata\roaming\bittorrent\bittorrent.exe] = & gt; (Allow) C:\users\młody\appdata\roaming\bittorrent\bittorrent.exe
FirewallRules: [UDP Query User{CC3BE9E2-E464-41A4-8FAB-5AA2466A2FF6}C:\users\młody\appdata\roaming\bittorrent\bittorrent.exe] = & gt; (Allow) C:\users\młody\appdata\roaming\bittorrent\bittorrent.exe
FirewallRules: [TCP Query User{3E6F7924-A175-4650-B690-6B4746AA8780}C:\users\młody\appdata\roaming\spotify\spotify.exe] = & gt; (Allow) C:\users\młody\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{66C6D5B8-72EA-4171-8D85-5FC04B3830D9}C:\users\młody\appdata\roaming\spotify\spotify.exe] = & gt; (Allow) C:\users\młody\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{F20F3C93-43E5-4C18-AC44-BB298FF46212}S:\program files (x86)\origin games\battlefield 3\bf3.exe] = & gt; (Allow) S:\program files (x86)\origin games\battlefield 3\bf3.exe
FirewallRules: [UDP Query User{6021857B-F08C-41B4-9DAD-A9BB3FA140F2}S:\program files (x86)\origin games\battlefield 3\bf3.exe] = & gt; (Allow) S:\program files (x86)\origin games\battlefield 3\bf3.exe
FirewallRules: [{7A980AE5-2B35-4C08-8CA8-762649E7EED4}] = & gt; (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{482B7BFF-71C2-4896-ACED-0E08BACF074E}] = & gt; (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{75E0CBE9-E3B9-400B-8E8F-1E834F8DFE38}] = & gt; (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{D98457DC-BE7C-43E0-A3AE-8EC1B485DA67}] = & gt; (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{A4FB6E6B-B4AD-49F9-AC28-F0B697592F68}] = & gt; (Allow) S:\Steam\Steam.exe
FirewallRules: [{AAB81BB8-4D55-4DEA-A866-94E8AC7F6414}] = & gt; (Allow) S:\Steam\Steam.exe
FirewallRules: [{AE3F3247-0FC0-445D-B380-34C36F59948E}] = & gt; (Allow) S:\Steam\bin\steamwebhelper.exe
FirewallRules: [{7F70E3D9-0702-472C-A2EF-8B9D52C8D434}] = & gt; (Allow) S:\Steam\bin\steamwebhelper.exe
FirewallRules: [{3AD1A51C-332A-44D1-BEA2-BC1F404FC33A}] = & gt; (Allow) S:\Ubisoft\The Crew (Worldwide)\TheCrew.exe
FirewallRules: [{F7FE11BB-8E02-452E-AA0C-56BFA6EB5268}] = & gt; (Allow) S:\Ubisoft\The Crew (Worldwide)\TheCrew.exe
FirewallRules: [TCP Query User{FBFB6186-2911-4D40-B4D5-127542AE67BA}S:\program files (x86)\skype\phone\skype.exe] = & gt; (Allow) S:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{8776C649-46EF-479B-8891-7557831863C5}S:\program files (x86)\skype\phone\skype.exe] = & gt; (Allow) S:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{6818565D-AF1A-485A-A1A8-39E9018D039E}] = & gt; (Allow) S:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{F2B3FDBE-CACA-477D-BDD0-A8D6FDE7EC72}S:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win32\paladins.exe] = & gt; (Allow) S:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win32\paladins.exe
FirewallRules: [UDP Query User{2C85A655-F437-4768-A12F-EE25069253B0}S:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win32\paladins.exe] = & gt; (Allow) S:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win32\paladins.exe

==================== Restore Points =========================


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/18/2016 06:51:27 PM) (Source: ISCT Agent) (EventID: 1003) (User: )
Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2

Error: (10/18/2016 05:20:20 PM) (Source: ISCT Agent) (EventID: 1003) (User: )
Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2

Error: (10/18/2016 05:04:31 PM) (Source: ISCT Agent) (EventID: 1003) (User: )
Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2

Error: (10/18/2016 05:02:03 PM) (Source: ISCT Agent) (EventID: 1003) (User: )
Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2

Error: (10/18/2016 04:59:24 PM) (Source: MsiInstaller) (EventID: 10005) (User: NT AUTHORITY)
Description: Product: Traffic Exchange -- Error 4106. An error was encountered while creating a scheduled task: 'Traffic Exchange.job'. Error description: The task XML contains a value which is incorrectly formatted or out of range.

Error: (10/18/2016 04:59:14 PM) (Source: MsiInstaller) (EventID: 10005) (User: NT AUTHORITY)
Description: Product: Online.io Application -- Error 4106. An error was encountered while creating a scheduled task: 'Online Application.job'. Error description: The task XML contains a value which is incorrectly formatted or out of range.

Error: (10/18/2016 04:58:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 49.0.1.6109, sygnatura czasowa: 0x57e44563
Nazwa modułu powodującego błąd: mozglue.dll, wersja: 49.0.1.6109, sygnatura czasowa: 0x57e43eea
Kod wyjątku: 0x80000003
Przesunięcie błędu: 0x0000e846
Identyfikator procesu powodującego błąd: 0x94
Godzina uruchomienia aplikacji powodującej błąd: 0x01d22936862a28b3
Ścieżka aplikacji powodującej błąd: S:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
Ścieżka modułu powodującego błąd: S:\Program Files (x86)\Mozilla Firefox\mozglue.dll
Identyfikator raportu: 57f6a98e-9543-11e6-9620-bc5ff478198e

Error: (10/18/2016 01:53:42 PM) (Source: ISCT Agent) (EventID: 1003) (User: )
Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2

Error: (10/17/2016 06:23:26 PM) (Source: ISCT Agent) (EventID: 1003) (User: )
Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2

Error: (10/17/2016 04:50:46 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program gimp-2.8.exe w wersji 2.8.18.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji.

Identyfikator procesu: 13f0

Godzina rozpoczęcia: 01d22884bba27554

Godzina zakończenia: 2

Ścieżka aplikacji: S:\Program Files (x86)\GIMP 2\bin\gimp-2.8.exe

Identyfikator raportu: 148c8cc4-9479-11e6-9b6d-bc5ff478198e


System errors:
=============
Error: (10/18/2016 06:51:59 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Origin Web Helper Service z powodu następującego błędu:
Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie.

Error: (10/18/2016 06:51:59 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Origin Web Helper Service.

Error: (10/18/2016 06:50:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi UPnP Device Host z powodu następującego błędu:
Usługa nie została uruchomiona z powodu nieudanego logowania.

Error: (10/18/2016 06:50:43 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Usługa upnphost nie może zalogować się jako NT AUTHORITY\LocalService za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu:
Menedżer kont zabezpieczeń (SAM) lub lokalny serwer urzędu zabezpieczeń (LSA) był w niewłaściwym stanie do wykonania operacji zabezpieczania.


Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC).

Error: (10/18/2016 06:50:43 PM) (Source: DCOM) (EventID: 10005) (User: )
Description: Model DCOM odebrał błąd 1069 podczas próby uruchomienia usługi upnphost z argumentami w celu uruchomienia serwera:
{204810B9-73B2-11D4-BF42-00B0D0118B56}

Error: (10/18/2016 05:20:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Origin Web Helper Service z powodu następującego błędu:
Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie.

Error: (10/18/2016 05:20:50 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Origin Web Helper Service.

Error: (10/18/2016 05:05:01 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Origin Web Helper Service z powodu następującego błędu:
Usługa nie odpowiada na sygnał uruchomienia lub sygnał sterujący w oczekiwanym czasie.

Error: (10/18/2016 05:05:01 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Origin Web Helper Service.

Error: (10/18/2016 05:03:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Windows Live ID Sign-in Assistant z powodu następującego błędu:
Potok został zakończony.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i5-3330 CPU @ 3.00GHz
Percentage of memory in use: 19%
Total physical RAM: 8155.76 MB
Available physical RAM: 6595.56 MB
Total Virtual: 16309.7 MB
Available Virtual: 14611.58 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:48.73 GB) (Free:2.76 GB) NTFS
Drive s: (Dupa) (Fixed) (Total:416.93 GB) (Free:23.41 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: BE63BE63)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=48.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=416.9 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================