REKLAMA

Addition.txt

Co te logi mówią o stanie komputera?

Witam, mam prośbę o sprawdzenie logów.


Pobierz plik - link do postu

Additional scan result of Farbar Recovery Scan Tool (x64) Version:13-06-2015
Ran by Artur at 2018-04-03 15:59:48
Running from C:\Users\Artur\Desktop\FRST
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-487557836-2725623366-3033248412-500 - Administrator - Disabled)
Artur (S-1-5-21-487557836-2725623366-3033248412-1001 - Administrator - Enabled) = & gt; C:\Users\Artur
Gość (S-1-5-21-487557836-2725623366-3033248412-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-487557836-2725623366-3033248412-1008 - Limited - Enabled)
Konto domyślne (S-1-5-21-487557836-2725623366-3033248412-503 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-487557836-2725623366-3033248412-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: IObit Malware Fighter (Disabled - Up to date) {2C1A27ED-EADF-56B0-8FBA-D38AFF9152A2}
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with " hidden " flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-487557836-2725623366-3033248412-1001\...\uTorrent) (Version: 3.4.8.42576 - BitTorrent Inc.)
64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden
Adelantado Trilogy Book Two wersja 1.1 (HKLM-x32\...\{CCCE2EAD-8EB0-4889-8385-C6FA8C55F949}_is1) (Version: 1.1 - )
Adobe Flash Player 29 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 29.0.0.113 - Adobe Systems Incorporated)
Adobe Shockwave Player (HKLM-x32\...\Adobe Shockwave Player) (Version: 10.2.0.22 - Adobe Systems, Inc.)
Age of Empires: Definitive Edition [FULL REMOVAL] (HKU\S-1-5-21-487557836-2725623366-3033248412-1001\...\{1F36588A-148D-4BED-AD83-12C63E1F780E}_is1) (Version: 1.3.5101.2 - Microsoft Studios)
Age of Mythology: Extended Edition Tale of the Dragon (HKLM\...\YWdlb2ZteXRob2xvZ3lleHRlbmRlZGVkaXRpb24_is1) (Version: 1 - )
AIO_CDB_ProductContext (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden
AIO_CDB_Software (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden
AIO_Scan (x32 Version: 130.0.421.000 - Hewlett-Packard) Hidden
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 18.3.4 - Advanced Micro Devices, Inc.)
Ancient Quest Of Saqqarah (HKLM-x32\...\Ancient Quest Of Saqqarah) (Version: - Alawar Entertainment Inc.)
Ashampoo WinOptimizer 2017 (HKLM-x32\...\{4209F371-6CE9-533C-2CDC-94E053273B35}_is1) (Version: 14.00.04 - Ashampoo GmbH & Co. KG)
ASRock App Charger v1.0.5 (HKLM\...\ASRock App Charger_is1) (Version: - ASRock Inc.)
Assassin's Creed Origins (HKLM-x32\...\{DAC281DD-7006-49D4-905B-E8BDA474A230}_is1) (Version: - Ubisoft)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.6.2 - EA Digital Illusions CE AB)
BufferChm (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
BurnAware Free 8.7 (HKLM-x32\...\BurnAware Free_is1) (Version: - Burnaware)
Catalyst Control Center Next Localization BR (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Copy (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
CPUID CPU-Z 1.82.1 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.82.1 - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.7.0.0336 - Disc Soft Ltd)
Destinations (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
DocProc (x32 Version: 140.0.185.000 - Hewlett-Packard) Hidden
EVEREST Ultimate Edition v5.01 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 5.01 - Lavalys, Inc.)
F300 (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden
F300_Help (x32 Version: 82.0.242.000 - Hewlett-Packard) Hidden
F300Trb (x32 Version: 82.0.242.000 - Hewlett-Packard) Hidden
Far Cry (Patch 1.4) (x32 Version: 1.00.0000 - Ubisoft) Hidden
Fax (x32 Version: 140.0.307.000 - Hewlett-Packard) Hidden
FIFA18 version 1.0 (HKLM\...\FIFA18_is1) (Version: 1.0 - STEAMPUNKS)
GPBaseService2 (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photosmart Officejet and Deskjet All-In-One Driver Software (HKLM\...\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden
HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
IObit Malware Fighter 5 (HKLM-x32\...\IObit Malware Fighter_is1) (Version: 5.6 - IObit)
Jak zbudowano Wielki Mur Chiński. Edycja Kolekcjonerska (HKLM-x32\...\Jak zbudowano Wielki Mur Chiński. Edycja Kolekcjonerska) (Version: 1.0.0.0 - Alawar Entertainment Inc.)
Java 8 Update 121 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180121F0}) (Version: 8.0.1210.13 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
LinuxLive USB Creator (HKLM-x32\...\LinuxLive USB Creator) (Version: 2.9 - Thibaut Lauziere)
Luxor HD (HKLM-x32\...\Luxor HD1.0) (Version: 1.0 - FishBone Games)
Mad Max (HKLM-x32\...\Mad Max_is1) (Version: - )
MarketResearch (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden
Microsoft Games for Windows - LIVE (HKLM-x32\...\{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}) (Version: 3.1.186.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}) (Version: 3.1.99.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-487557836-2725623366-3033248412-1001\...\OneDriveSetup.exe) (Version: 18.044.0301.0006 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{01db25f3-1b76-4d97-88c8-1c90634d88fb}) (Version: 11.0.60610.1 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 59.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 59.0.2 (x86 en-US)) (Version: 59.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 59.0.2.6656 - Mozilla)
MSXML4 Parser (HKLM-x32\...\{01501EBA-EC35-4F9F-8889-3BE346E5DA13}) (Version: 1.0.0 - Microsoft Game Studios)
Narzędzia Sierra (HKLM-x32\...\Narzędzia Sierra) (Version: - )
Narzędzia sprawdzające pakietu Microsoft Office 2016 — polski (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Network64 (Version: 140.0.306.000 - Hewlett-Packard) Hidden
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.3 - NVIDIA Corporation)
NVIDIA ForceWare Network Access Manager (HKLM-x32\...\InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}) (Version: - )
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Opera 12.18 (HKLM\...\Opera 12.18.1873) (Version: 12.18.1873 - Opera Software ASA)
PDF-XChange Viewer (HKLM\...\{9ED333F8-3E6C-4A38-BAFA-728454121CDA}) (Version: 2.5.322.4 - Tracker Software Products (Canada) Ltd.)
Platform (x32 Version: 1.36 - VIA Technologies, Inc.) Hidden
Pocket Tanks Deluxe version 1.6 (HKLM-x32\...\{392A7927-CD80-4C42-9368-EC69313F1CB1}_is1) (Version: 1.6 - BlitWise Productions LLC)
Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation)
Return to Castle Wolfenstein (HKLM-x32\...\Return to Castle Wolfenstein) (Version: 1.0 - Activision, Inc.)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games)
Scan (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
SolutionCenter (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden
Status (x32 Version: 140.0.342.000 - Hewlett-Packard) Hidden
System Requirements Lab (HKLM-x32\...\{8DCAB1D8-F20C-4733-9B5F-646DDFEB59C9}) (Version: 6.1.1.0 - Husdawg, LLC)
Toolbox (x32 Version: 140.0.596.000 - Hewlett-Packard) Hidden
TrayApp (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
Update for Skype for Business 2016 (KB4011725) 64-Bit Edition (HKLM\...\{90160000-0011-0000-1000-0000000FF1CE}_Office16.PROPLUS_{E4EFE857-B051-4AB1-80A7-A0279FB2B33C}) (Version: - Microsoft)
Update for Skype for Business 2016 (KB4011725) 64-Bit Edition (HKLM\...\{90160000-00C1-0000-1000-0000000FF1CE}_Office16.PROPLUS_{E4EFE857-B051-4AB1-80A7-A0279FB2B33C}) (Version: - Microsoft)
Update for Skype for Business 2016 (KB4011725) 64-Bit Edition (HKLM\...\{90160000-012B-0415-1000-0000000FF1CE}_Office16.PROPLUS_{E4EFE857-B051-4AB1-80A7-A0279FB2B33C}) (Version: - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{AC0D130B-8809-4125-811F-667893B90644}) (Version: 2.11.0.0 - Microsoft Corporation)
Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
VIA Platforma Menedżera urządzeń (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.36 - VIA Technologies, Inc.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.37.0 (HKLM\...\VulkanRT1.0.37.0-2) (Version: 1.0.37.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.37.0 (Version: 1.0.37.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1-6) (Version: 1.0.39.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.39.1 (Version: 1.0.39.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.51.0 (HKLM\...\VulkanRT1.0.51.0) (Version: 1.0.51.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.54.0 (HKLM\...\VulkanRT1.0.54.0-2) (Version: 1.0.54.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.54.0 (Version: 1.0.54.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.61.0 (Version: 1.0.61.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.0 (Version: 1.0.65.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.1.70.0 (Version: 1.1.70.0 - LunarG, Inc.) Hidden
WebReg (x32 Version: 140.0.297.017 - Hewlett-Packard) Hidden
Windows 8 Codec Pack 2.0.5 (HKLM-x32\...\Windows 8 - Codec Pack) (Version: 2.0.5 - Windows 8 Codec Pack)
WinRAR 5.40 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 - & gt; C:\Windows\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\localserver32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\localserver32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InprocServer32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\amd64\FileCoAuthLib64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{9AA2F32D-362A-42D9-9328-24A483E2CCC3}\InprocServer32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\localserver32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-487557836-2725623366-3033248412-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 - & gt; C:\Users\Artur\AppData\Local\Microsoft\OneDrive\18.044.0301.0006\amd64\FileSyncShell64.dll (Microsoft Corporation)

==================== Restore Points =========================

23-03-2018 10:30:45 Zaplanowany punkt kontrolny
01-04-2018 15:33:56 Zaplanowany punkt kontrolny

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {01A3526A-06BA-49D9-B86A-7A6F0CE845D0} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent No Task File & lt; ==== ATTENTION
Task: {0319D346-9E60-4CE2-B937-EF6C981CC0F1} - System32\Tasks\Microsoft\Windows\PushToInstall\Registration = & gt; Sc.exe start pushtoinstall registration
Task: {034E82DB-4888-403B-9FC2-56B92B5547A9} - System32\Tasks\Microsoft\Windows\Management\Provisioning\Cellular = & gt; C:\Windows\system32\ProvTool.exe [2018-01-01] (Microsoft Corporation)
Task: {050CEDD3-9FA4-4FD4-9E7D-0C1BD2A2327C} - System32\Tasks\Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask
Task: {0621FDBB-ADD5-44B7-A2AB-8288118B6295} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient = & gt; C:\Windows\system32\dmclient.exe [2017-09-29] (Microsoft Corporation)
Task: {0675C9A2-60BB-4755-B92A-863AC4F9DE6C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan = & gt; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MpCmdRun.exe [2018-03-01] (Microsoft Corporation)
Task: {08ECD6F8-3E70-482C-9F54-C96A9C1A773F} - System32\Tasks\Microsoft\Windows\Management\Provisioning\Logon = & gt; C:\Windows\system32\ProvTool.exe [2018-01-01] (Microsoft Corporation)
Task: {0B0769E9-1E00-4421-A10B-980BA1360A23} - System32\Tasks\Microsoft\Windows\BitLocker\BitLocker MDM policy Refresh
Task: {0F807A51-1ECC-4778-B874-7A001F54BA47} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\HandleCommand
Task: {137F14EF-DA37-4291-86C0-1A2714D9B9BF} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd No Task File & lt; ==== ATTENTION
Task: {138F294D-01D9-4DC1-BF21-0097FC3A6319} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d No Task File & lt; ==== ATTENTION
Task: {161DE366-C934-42E7-970E-263EC2B6132A} - System32\Tasks\Microsoft\Windows\ErrorDetails\EnableErrorDetailsUpdate
Task: {17A68EC1-555F-454C-9497-A48240207E9F} - System32\Tasks\Microsoft\Windows\Workplace Join\Recovery-Check = & gt; C:\Windows\System32\dsregcmd.exe [2017-09-29] (Microsoft Corporation)
Task: {1AC6AC41-1738-4927-B753-9C8950F7EAC8} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask
Task: {1D5966A9-BEE7-41B1-ABDB-36B4D0CAE7EE} - System32\Tasks\Microsoft\Windows\rempl\shell-usoscan = & gt; C:\Program Files\rempl\remsh.exe [2018-01-19] (Microsoft Corporation)
Task: {1D7738E9-8D02-4748-A21A-07CCD7EBDD05} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-487557836-2725623366-3033248412-1001
Task: {202A836D-5817-437B-9450-87A4FC0360E7} - System32\Tasks\Microsoft\Windows\Subscription\LicenseAcquisition = & gt; C:\Windows\system32\ClipRenew.exe [2017-09-30] (Microsoft Corporation)
Task: {22CE4332-A8D7-4E5F-A8B1-CDF64CD796D8} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceSettingChange
Task: {24770907-A90D-47D7-8BDF-D23789C52D24} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d No Task File & lt; ==== ATTENTION
Task: {263C8BAD-19AB-4A14-A6BB-FDEABB150F21} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-487557836-2725623366-3033248412-1001 = & gt; %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Task: {27063F07-F01A-4F6E-8A90-DF0D9F497D77} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange
Task: {2C807F3D-B764-4990-BE1A-C2466CA7CF8E} - System32\Tasks\Microsoft\Windows\Clip\License Validation = & gt; C:\Windows\system32\ClipUp.exe [2017-09-29] (Microsoft Corporation)
Task: {32274688-6925-4C3C-AC5D-E7F3278E9F9E} - System32\Tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask = & gt; C:\Windows\system32\speech_onecore\common\SpeechModelDownload.exe [2017-09-29] (Microsoft Corporation)
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join = & gt; C:\Windows\System32\AutoWorkplace.exe
Task: {36713542-0103-4035-B316-A447E72506AC} - System32\Tasks\Microsoft\Windows\PushToInstall\LoginCheck = & gt; Sc.exe start pushtoinstall login
Task: {36EECAE1-3E34-4A61-8394-42D7F23F0455} - System32\Tasks\Microsoft\Windows\WwanSvc\NotificationTask = & gt; C:\Windows\System32\WiFiTask.exe [2018-01-01] (Microsoft Corporation)
Task: {37292EA8-F458-47ED-A55C-5A3A1CCF5FD5} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sih = & gt; C:\Windows\System32\sihclient.exe [2018-01-28] (Microsoft Corporation)
Task: {37449A31-039E-4B1D-8F13-E8C24D7833D4} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sihboot = & gt; C:\Windows\System32\sihclient.exe [2018-01-28] (Microsoft Corporation)
Task: {37E715E6-383C-4ADF-813E-10FF9F50D9F7} - System32\Tasks\Microsoft\Windows\Chkdsk\SyspartRepair = & gt; C:\Windows\system32\bcdboot.exe [2017-09-29] (Microsoft Corporation)
Task: {3891CB81-CF07-4ECD-A7CE-59544F84AF7D} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask
Task: {3970D39A-3B29-4C0D-A952-3118619053E0} - System32\Tasks\Microsoft\Windows\ErrorDetails\ErrorDetailsUpdate
Task: {3F0FAE6A-A09F-4E12-99AC-72CEA5BB1F1C} - System32\Tasks\StartCN = & gt; C:\Program Files\AMD\CNext\CNext\cncmd.exe [2018-03-22] (Advanced Micro Devices, Inc.)
Task: {3F158BC9-EE7C-4AE1-BE1A-0C64AE3CDEF7} - System32\Tasks\Java Platform SE Auto Updater = & gt; C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-12-12] (Oracle Corporation)
Task: {3FE5B597-B007-4A37-ADCC-60D2354E1EB7} - System32\Tasks\StartDVR = & gt; C:\Program Files\AMD\CNext\CNext\dvrcmd.exe [2018-03-22] (Advanced Micro Devices, Inc.)
Task: {4028F806-9647-43EC-87FA-8B810DFD9141} - System32\Tasks\Microsoft\Windows\DiskFootprint\StorageSense
Task: {4091B856-FC77-4265-9DBC-3270506A0702} - System32\Tasks\Microsoft\Windows\WaaSMedic\PerformRemediation = & gt; C:\Windows\System32\WaaSMedic.exe [2017-09-29] (Microsoft Corporation)
Task: {4517DBBD-42D9-439E-B523-2294724133D2} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr
Task: {45ECE2EF-93C9-4DF6-BBCA-9A7BCFC9E7B1} - \Microsoft\Windows\UNP\RunCampaignManager No Task File & lt; ==== ATTENTION
Task: {48E14466-6590-4C6D-81C8-9852118DF3FE} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 = & gt; C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation)
Task: {4A52E557-CBD2-4032-A8DF-42811A3A773D} - System32\Tasks\Microsoft\Windows\USB\Usb-Notifications
Task: {4D181337-49C3-469F-82F1-846458EDA33F} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d No Task File & lt; ==== ATTENTION
Task: {4FC5FA4E-102D-41FF-AD93-38654F2D12F2} - System32\Tasks\microsoft\windows\applicationdata\appuriverifierinstall = & gt; C:\Windows\system32\AppHostRegistrationVerifier.exe [2017-09-29] (Microsoft Corporation)
Task: {51B7FB15-4DCB-400E-9A98-10E802F21FB3} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceScreenOnOff
Task: {5267392F-5BB8-45A6-AD93-10211E2F8850} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceManagerTask = & gt; C:\Windows\system32\spaceman.exe [2017-09-29] (Microsoft Corporation)
Task: {57D751CC-9704-4363-9E86-899B8ED44872} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B No Task File & lt; ==== ATTENTION
Task: {5A201377-91EE-4904-B2C6-9F7D7456A03F} - System32\Tasks\Microsoft\Windows\Device Information\Device = & gt; C:\Windows\system32\devicecensus.exe [2018-03-01] (Microsoft Corporation)
Task: {5AF4CBB7-EC8B-43EF-803F-32805BDBAA75} - System32\Tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition = & gt; C:\Windows\system32\ClipRenew.exe [2017-09-30] (Microsoft Corporation)
Task: {5FC968A6-562D-41CE-8060-52ADE2F2C9C3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification = & gt; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MpCmdRun.exe [2018-03-01] (Microsoft Corporation)
Task: {61BAF05A-8050-481F-9368-9B62A53BC9C5} - System32\Tasks\microsoft\windows\applicationdata\appuriverifierdaily = & gt; C:\Windows\system32\AppHostRegistrationVerifier.exe [2017-09-29] (Microsoft Corporation)
Task: {650751B8-0586-401C-95FF-65523D62D989} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan = & gt; C:\Windows\system32\usoclient.exe [2018-03-01] (Microsoft Corporation)
Task: {67889EEC-D7B4-43D3-B82C-D0DBA3522591} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask = & gt; C:\Windows\System32\WiFiTask.exe [2018-01-01] (Microsoft Corporation)
Task: {6831246E-D3E2-469C-9079-23FA53AC7712} - System32\Tasks\Microsoft\Windows\Printing\EduPrintProv = & gt; C:\Windows\system32\eduprintprov.exe [2017-09-29] (Microsoft Corporation)
Task: {69CC423E-80C3-44D5-B233-3EDDD4EAA9C3} - System32\Tasks\Adobe Flash Player Updater = & gt; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-03-13] (Adobe Systems Incorporated)
Task: {6BFBB0C6-AE3D-4C08-AC5A-F136E630662A} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d No Task File & lt; ==== ATTENTION
Task: {6C347398-3BF5-4CFF-A5E4-2151CC42B359} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask
Task: {6CEA5C58-ED7A-41C8-83B1-C37BA1C7AD1A} - \{DCA50165-7815-4D3B-A874-568B87010672} No Task File & lt; ==== ATTENTION
Task: {6E5F8BCA-89EE-4A07-81A9-4BC979E04A40} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged
Task: {724A82BA-0CD9-4932-A8F8-AE155346DC7A} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join = & gt; C:\Windows\System32\dsregcmd.exe [2017-09-29] (Microsoft Corporation)
Task: {72823FDD-BD1E-49B3-B82A-E44C027AE934} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession
Task: {798E0AF4-3ED7-4D41-B06F-5261474509DE} - System32\Tasks\Microsoft\Windows\License Manager\TempSignedLicenseExchange
Task: {7AD9BF1D-D98F-4E2E-89FB-2BD827AD780B} - System32\Tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon = & gt; C:\Windows\System32\XblGameSaveTask.exe [2017-09-29] (Microsoft Corporation)
Task: {7CDE1463-2B7A-400F-A4A1-6D20A8673C3E} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat = & gt; C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2015-07-31] (Microsoft Corporation)
Task: {82F4D23B-6094-4A71-881F-1E15A6319E3E} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterUserDevice
Task: {894117EC-C076-4FBB-9BC8-9AE136A5ACF1} - \Microsoft\Windows\Setup\gwx\launchtrayprocess No Task File & lt; ==== ATTENTION
Task: {8C5D0486-F6FB-491D-BDE8-EA17DFD04457} - System32\Tasks\Microsoft\Windows\ExploitGuard\ExploitGuard MDM policy Refresh
Task: {8DC4F6F2-5AC8-41B5-8461-383B58804B47} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask = & gt; C:\Windows\system32\MDMAgent.exe [2017-09-29] (Microsoft Corporation)
Task: {931BE2FA-8F50-4C1A-BFD8-150C55D25502} - System32\Tasks\Microsoft\Windows\EDP\EDP App Launch Task
Task: {9A149913-6192-4221-841A-2D904528AAC3} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\IntegrityCheck
Task: {9C7D670F-D8AA-4310-B11E-79D3738AB035} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics = & gt; C:\Windows\system32\disksnapshot.exe [2017-09-29] (Microsoft Corporation)
Task: {9ED8C498-9E81-4AC2-9F51-B44D794073FB} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent No Task File & lt; ==== ATTENTION
Task: {9EDF61A5-AC02-4911-A5F2-857CF14AFFAD} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask
Task: {A108828C-AC12-4613-8D0C-9DF73E983E77} - System32\Tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization
Task: {A1B6291B-D2BC-41DA-936E-EB1C3721D6E3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance = & gt; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MpCmdRun.exe [2018-03-01] (Microsoft Corporation)
Task: {A364E297-00AD-490D-900E-22AC34598C71} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install = & gt; C:\Windows\system32\usoclient.exe [2018-03-01] (Microsoft Corporation)
Task: {A5C1489F-D79F-43B2-B433-EAAFE0E7ADA5} - System32\Tasks\Microsoft\Windows\EDP\EDP Inaccessible Credentials Task
Task: {A7C57A41-D764-4AAB-BBDE-BB8DAA2BE5DD} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr = & gt; C:\Windows\System32\UNP\UpdateNotificationMgr.exe [2017-09-29] (Microsoft Corporation)
Task: {A8E38795-E6D5-44C1-83B8-D3D0811ACE2E} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup = & gt; C:\Windows\system32\dstokenclean.exe [2017-09-29] (Microsoft Corporation)
Task: {AB90E5E3-399D-47FF-B197-A0A789D8C521} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceAccountChange
Task: {ABAAFA95-4331-4259-B7CF-AD53C5E8B786} - System32\Tasks\Microsoft\Windows\EDP\StorageCardEncryption Task
Task: {ABC2A8CE-766D-49C9-9126-FDEA4B45FB34} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Automatic App Update
Task: {AE29E8A6-9708-4CB5-8282-D7F7291DCC34} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog = & gt; C:\Windows\System32\WindowsActionDialog.exe [2017-09-29] (Microsoft Corporation)
Task: {B1436698-3E94-4C97-B762-021EDE46B739} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB = & gt; C:\WINDOWS\system32\MRT.exe [2018-03-14] (Microsoft Corporation)
Task: {B2B85895-09A2-4BC3-BBF9-9B74780BFE62} - System32\Tasks\Microsoft\Windows\SharedPC\Account Cleanup = & gt; Rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance
Task: {B320E058-C6FA-413F-876B-0C9B4428AE66} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic6
Task: {B38EADAA-FBBE-4A90-BAE4-3F6BCC5C5BC7} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser = & gt; C:\Windows\system32\compattelrunner.exe [2018-03-01] (Microsoft Corporation)
Task: {B8E402CD-8605-4099-9433-D707AD73840B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig No Task File & lt; ==== ATTENTION
Task: {BC40FCF6-98AA-466D-98D4-D4D532C3007D} - System32\Tasks\Microsoft\Windows\NlaSvc\WiFiTask = & gt; C:\Windows\System32\WiFiTask.exe [2018-01-01] (Microsoft Corporation)
Task: {C066FBAB-FD4C-4DDF-B52E-0F5D2BF3079D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display = & gt; C:\Windows\system32\MusNotification.exe [2018-03-01] (Microsoft Corporation)
Task: {C2F24C66-88D2-491B-98D0-99C67D56BB36} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 = & gt; C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation)
Task: {C447E5A0-2FBF-4E6F-9EA2-5BE459E6971E} - System32\Tasks\Adobe Flash Player NPAPI Notifier = & gt; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_29_0_0_113_Plugin.exe [2018-03-13] (Adobe Systems Incorporated)
Task: {C6B2579B-4962-4D12-883D-BBD420573A6C} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic1
Task: {CC012300-06C1-4CFD-AC88-5BDAB7548D99} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync
Task: {D0218C70-9C99-4043-BF17-667E1AE5C42E} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot = & gt; C:\Windows\system32\MusNotification.exe [2018-03-01] (Microsoft Corporation)
Task: {D0A89826-6023-4661-975D-0CE62FBF194D} - System32\Tasks\Microsoft\Windows\Location\Notifications = & gt; C:\Windows\System32\LocationNotificationWindows.exe [2017-09-29] (Microsoft Corporation)
Task: {D19A2726-897E-4F7D-9CE4-0773B449CE9E} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceConnectedToNetwork
Task: {D79F475D-4638-44CE-AE6A-F20F107C41CE} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange
Task: {DE51FC11-6C38-440A-A9D2-2A0602690914} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater = & gt; C:\Windows\system32\compattelrunner.exe [2018-03-01] (Microsoft Corporation)
Task: {E05D70C4-EDE9-4C3E-9251-ED49B6916872} - \Artur No Task File & lt; ==== ATTENTION
Task: {E0D45B22-1A56-43FE-854C-DAFD1DDA1D61} - System32\Tasks\Microsoft\Windows\DUSM\dusmtask = & gt; C:\Windows\System32\dusmtask.exe [2017-09-29] (Microsoft Corporation)
Task: {E52928DD-BCA2-4E32-9B84-FFA7606694BE} - System32\Tasks\Microsoft\XblGameSave\XblGameSaveTask = & gt; C:\Windows\System32\XblGameSaveTask.exe [2017-09-29] (Microsoft Corporation)
Task: {EBC98788-6390-4C89-8DA8-94D6DBAF2038} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic24
Task: {ED9AAA83-81EB-49A5-858B-6CD08686994B} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d No Task File & lt; ==== ATTENTION
Task: {EF54804E-C223-4211-94FA-93F425575B5B} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefreshTask
Task: {EFC1298E-E083-4116-982F-6E29309536D1} - System32\Tasks\Microsoft\Windows\EDP\EDP Auth Task
Task: {F07217FD-A936-48B0-951B-876F836F05E2} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask
Task: {F1D63C54-FA88-48CF-B9EB-583FC03CFB8E} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation
Task: {F1F4754B-8B00-4FE8-BCBC-17F40A741306} - \WPD\SqmUpload_S-1-5-21-487557836-2725623366-3033248412-1001 No Task File & lt; ==== ATTENTION
Task: {F22BF580-E642-48B8-8CA2-89DC4270A17C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup = & gt; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18022-0\MpCmdRun.exe [2018-03-01] (Microsoft Corporation)
Task: {F4D8C2F5-8D0F-46C5-B6A9-F766A9E4B26E} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation
Task: {F6027CB3-9A58-415A-80F2-B1404204D4F5} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload = & gt; C:\Windows\system32\dmclient.exe [2017-09-29] (Microsoft Corporation)
Task: {F762479F-5A5A-4A57-99A4-19D5F576F34C} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand
Task: {F8F8902D-2BE6-4F12-8A9A-00FA221A3146} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\CryptoPolicyTask
Task: {F9CE0C33-7E61-4DF2-BC66-B1BF04B51995} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager
Task: C:\WINDOWS\Tasks\WebReg HP Deskjet F300 series.job = & gt; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqwrg.exe

==================== Loaded Modules (Whitelisted) ==============

2017-09-29 15:41 - 2017-09-29 15:41 - 00184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2013-04-24 13:37 - 2013-04-24 13:37 - 00211968 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll
2012-03-05 17:03 - 2012-03-05 17:03 - 00677376 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll
2012-02-16 15:53 - 2012-02-16 15:53 - 03642880 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll
2009-04-19 09:34 - 2009-04-19 09:34 - 00207904 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
2009-04-19 09:34 - 2009-04-19 09:34 - 00070176 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nv_common.dll
2009-04-19 09:34 - 2009-04-19 09:34 - 00578080 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\SpecialCase.dll
2009-04-19 09:34 - 2009-04-19 09:34 - 00625184 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
2018-03-14 13:25 - 2018-02-22 02:26 - 11044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2018-03-14 13:25 - 2018-02-22 02:21 - 01804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2018-03-27 07:40 - 2018-03-27 07:40 - 00086528 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2018-03-27 07:40 - 2018-03-27 07:40 - 00195072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2018-03-27 07:40 - 2018-03-27 07:40 - 22050304 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2018-03-27 07:40 - 2018-03-27 07:40 - 02584576 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\skypert.dll
2018-03-27 07:40 - 2018-03-27 07:40 - 00657408 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1811.248.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll
2018-02-15 07:28 - 2018-02-15 07:28 - 04407808 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DiscSoft.NET.Common\fdd511341f5305be5742051c1f6ff480\DiscSoft.NET.Common.ni.dll
2017-12-15 21:17 - 2017-12-15 21:17 - 00015360 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.DLL
2017-12-15 21:17 - 2017-12-15 21:17 - 02519040 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2018-04-01 15:24 - 2016-12-12 16:52 - 00442144 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madExcept_.bpl
2018-04-01 15:24 - 2016-12-12 16:52 - 00210720 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madBasic_.bpl
2018-04-01 15:24 - 2016-12-12 16:52 - 00059680 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madDisAsm_.bpl

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Program Files\AMD:Win32App_1
AlternateDataStreams: C:\Program Files\ATI Technologies:Win32App_1
AlternateDataStreams: C:\Program Files\Microsoft Office:Win32App_1
AlternateDataStreams: C:\Program Files\Microsoft Silverlight:Win32App_1
AlternateDataStreams: C:\Program Files\Opera x64:Win32App_1
AlternateDataStreams: C:\Program Files\rempl:Win32App_1
AlternateDataStreams: C:\Program Files\Tracker Software:Win32App_1
AlternateDataStreams: C:\Program Files\UNP:Win32App_1
AlternateDataStreams: C:\Program Files\WinRAR:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Adelantado Trilogy Book Two:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\ATI Technologies:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Battlelog Web Plugins:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\BurnAware Free:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\HP:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\LinuxLive USB Creator:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Microsoft Silverlight:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Mozilla Firefox:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Pocket Tanks Deluxe:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\SystemRequirementsLab:Win32App_1
AlternateDataStreams: C:\Program Files\Common Files\DESIGNER:Win32App_1
AlternateDataStreams: C:\ProgramData\HP:Win32App_1
AlternateDataStreams: C:\ProgramData\HP Product Assistant:Win32App_1
AlternateDataStreams: C:\ProgramData\TEMP:7A632F57
AlternateDataStreams: C:\Users\Artur\OneDrive:ms-properties
AlternateDataStreams: C:\Users\Artur\SkyDrive:ms-properties
AlternateDataStreams: C:\Users\Artur\AppData\Local\JDownloader v2.0:Win32App_1

==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The " AlternateShell " will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys = & gt; " " = " Driver "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys = & gt; " " = " Driver "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys = & gt; " " = " Driver "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys = & gt; " " = " Driver "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys = & gt; " " = " Driver "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52} = & gt; " " = " Firmware "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys = & gt; " " = " Driver "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetSetupSvc = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SerCx2.sys = & gt; " " = " Driver "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SpbCx.sys = & gt; " " = " Driver "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TileDataModelSvc = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\uefi.sys = & gt; " " = " Driver "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52} = & gt; " " = " Firmware "

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-487557836-2725623366-3033248412-1001\Control Panel\Desktop\\Wallpaper - & gt; C:\Users\Artur\AppData\Roaming\Mozilla\Firefox\Tapeta pulpitu.bmp
DNS Servers: 31.11.202.254 - 37.8.214.2

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run32: = & gt; " Adobe ARM "
HKLM\...\StartupApproved\Run32: = & gt; " DivXMediaServer "
HKLM\...\StartupApproved\Run32: = & gt; " DivXUpdate "
HKLM\...\StartupApproved\Run32: = & gt; " AMD AVT "
HKLM\...\StartupApproved\Run32: = & gt; " SunJavaUpdateSched "
HKU\S-1-5-21-487557836-2725623366-3033248412-1001\...\StartupApproved\Run: = & gt; " ALLUpdate "

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] = & gt; (Allow) LPort=139
FirewallRules: [WirelessDisplay-Infra-In-TCP] = & gt; (Allow) %systemroot%\system32\CastSrv.exe
FirewallRules: [SPPSVC-In-TCP] = & gt; (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] = & gt; (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [{1568BDEA-F61D-4378-ACAA-F10DA5CF2A29}] = & gt; (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
FirewallRules: [UDP Query User{A18816FC-803D-4B83-97F9-C0ECB9526E3C}C:\program files (x86)\mozilla firefox\plugin-container.exe] = & gt; (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe
FirewallRules: [TCP Query User{40839159-B44D-4D65-BEE8-0529A157010E}C:\program files (x86)\mozilla firefox\plugin-container.exe] = & gt; (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe
FirewallRules: [{B1411634-4379-4F2C-997F-BA645C12184A}] = & gt; (Allow) C:\Program Files\Opera x64\opera.exe
FirewallRules: [{C2B74CD9-B2C0-465B-80EC-6BD5A8A64C03}] = & gt; (Allow) C:\Program Files\Opera x64\opera.exe
FirewallRules: [{3F2D1FD3-D879-43EE-BA61-4DDAE5A568CC}] = & gt; (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper_32.exe
FirewallRules: [{1B1BB883-3B83-4FC7-9FD4-AD2842853241}] = & gt; (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper_32.exe
FirewallRules: [{7F0CD61D-C88A-45D5-83B7-8AD6969783D4}] = & gt; (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper.exe
FirewallRules: [{06C0A3AB-FEA7-458D-AE9E-E3D66B54224E}] = & gt; (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper.exe
FirewallRules: [{7F1749E0-DBB5-470F-9477-BDB8D6573E38}] = & gt; (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{5F2ECFDF-FAF0-4F12-9FD6-37D36ECD3EB8}] = & gt; (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
FirewallRules: [{4E585E77-050E-4DA7-8E6D-EE719418A0FF}] = & gt; (Allow) LPort=1688
FirewallRules: [UDP Query User{D5B434B8-50A7-4287-AA18-CD6562B115C5}C:\program files (x86)\mozilla firefox\firefox.exe] = & gt; (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [TCP Query User{0F11E4D6-B3F7-46AA-A781-CBD519ABF6A6}C:\program files (x86)\mozilla firefox\firefox.exe] = & gt; (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [{7273D761-0856-4C4A-AE1C-DE8502CB59D2}] = & gt; (Allow) C:\Users\Artur\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{42D113FA-ADB3-446F-93B9-4A46E9EF0E36}] = & gt; (Allow) C:\Users\Artur\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{8C269361-4237-4D35-8F53-86C77CCEEAD4}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{D6405368-41DC-4ABE-9EE1-16073F31CFDF}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{C9E1FE5C-A79C-4F45-905A-53F6C9AEB501}] = & gt; (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe
FirewallRules: [{01DA015F-0913-4C62-9454-F97768CA8512}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe
FirewallRules: [{A02C6D97-6C17-45B4-A3A5-555A4DB3B549}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe
FirewallRules: [{381F6F2D-A25C-4B04-B957-3D0FE59B3C1D}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
FirewallRules: [{DAAB8157-2BB1-4380-BAF5-029F5DEB8EEA}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe
FirewallRules: [{911CA818-63B3-4848-B2D9-4720C375B1D3}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe
FirewallRules: [{58C7E0BB-0E4F-457F-8585-CDCB754F291B}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe
FirewallRules: [{A4D1AFC8-0C6C-4438-84F2-1F674AF8B75F}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{80CC840B-18DB-470A-850F-E7913F731383}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe
FirewallRules: [{20CB6E94-4F31-4E18-AD17-671968B32866}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe
FirewallRules: [{71964AF4-8137-4761-8476-D50AF9FD197B}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe
FirewallRules: [{760EBF22-3E6A-4431-B99A-7DC966E0D43A}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{FB1B6B64-BB2C-420B-BE48-C9D3095171FD}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe
FirewallRules: [{23E9D585-9414-40D3-8A54-86D7D624EA90}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{09C95DDB-8E26-43E2-86D2-E1069362DC22}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe
FirewallRules: [{CAE852DF-152E-469B-AAE7-1B07A3DF7F02}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe
FirewallRules: [{A1CF61AC-F466-44D8-8B3D-031550ACE081}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe
FirewallRules: [{0E0A9B0D-57E9-494E-9C66-79721BCFA0D5}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
FirewallRules: [{09FA9C3E-2CB1-4757-83D2-A0B7DBE826F6}] = & gt; (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
FirewallRules: [{7897E60D-AA45-44E9-AE4E-6D135B421AE1}] = & gt; (Allow) C:\Program Files\Opera x64\opera.exe
FirewallRules: [{2DBA2DDC-82A0-4EEE-BFEB-A4B75AABCB40}] = & gt; (Allow) C:\Program Files\Opera x64\opera.exe
FirewallRules: [{F0268968-548C-475C-A06F-8EC52A0AAC2D}] = & gt; (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper_32.exe
FirewallRules: [{DE18E0B1-A818-4B31-AF4A-8BC536693DA7}] = & gt; (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper_32.exe
FirewallRules: [{B2A6BC62-768B-4AD0-95DA-959323E2B73D}] = & gt; (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper.exe
FirewallRules: [{3E4CBA6C-ADD5-4E7A-AEEA-3F44FEB79723}] = & gt; (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper.exe
FirewallRules: [{D5BA7C72-48E9-4243-9FF3-F8B82A74D084}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{F9EDA397-127A-4F4E-8224-5ACFBBD15135}] = & gt; (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{FD289B6C-425E-48FF-941E-DE56DE04665D}C:\games\fifa18\fifa18.exe] = & gt; (Block) C:\games\fifa18\fifa18.exe
FirewallRules: [UDP Query User{63686C84-99D2-48E6-8BAB-2842DE27A287}C:\games\fifa18\fifa18.exe] = & gt; (Block) C:\games\fifa18\fifa18.exe
FirewallRules: [{779E02AF-4B57-41AA-A1FE-97B80348E5BA}] = & gt; (Allow) C:\Program Files (x86)\IObit\IObit Malware Fighter\Surfing Protection\FFNativeMessage.exe
FirewallRules: [{3A2D6488-D180-4753-AA42-5A9927B507B5}] = & gt; (Allow) C:\Program Files (x86)\IObit\IObit Malware Fighter\Surfing Protection\FFNativeMessage.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (04/03/2018 06:25:47 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418154

Error: (04/02/2018 03:23:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: backgroundTaskHost.exe, wersja: 10.0.16299.15, sygnatura czasowa: 0x290d9f78
Nazwa modułu powodującego błąd: twinapi.appcore.dll, wersja: 10.0.16299.19, sygnatura czasowa: 0x63553d36
Kod wyjątku: 0xc000027b
Przesunięcie błędu: 0x0000000000094ef5
Identyfikator procesu powodującego błąd: 0x28f4
Godzina uruchomienia aplikacji powodującej błąd: 0xbackgroundTaskHost.exe0
Ścieżka aplikacji powodującej błąd: backgroundTaskHost.exe1
Ścieżka modułu powodującego błąd: backgroundTaskHost.exe2
Identyfikator raportu: backgroundTaskHost.exe3
Pełna nazwa pakietu powodującego błąd: backgroundTaskHost.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: backgroundTaskHost.exe5

Error: (04/02/2018 03:23:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: backgroundTaskHost.exe, wersja: 10.0.16299.15, sygnatura czasowa: 0x290d9f78
Nazwa modułu powodującego błąd: twinapi.appcore.dll, wersja: 10.0.16299.19, sygnatura czasowa: 0x63553d36
Kod wyjątku: 0xc000027b
Przesunięcie błędu: 0x0000000000094ef5
Identyfikator procesu powodującego błąd: 0x2d4c
Godzina uruchomienia aplikacji powodującej błąd: 0xbackgroundTaskHost.exe0
Ścieżka aplikacji powodującej błąd: backgroundTaskHost.exe1
Ścieżka modułu powodującego błąd: backgroundTaskHost.exe2
Identyfikator raportu: backgroundTaskHost.exe3
Pełna nazwa pakietu powodującego błąd: backgroundTaskHost.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: backgroundTaskHost.exe5

Error: (04/02/2018 07:16:55 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418154

Error: (04/02/2018 07:13:49 AM) (Source: ATIeRecord) (EventID: 16396) (User: )
Description: ATI EEU PnP start/stop failed

Error: (04/01/2018 07:23:19 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (04/01/2018 03:21:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: Fuel.Service.exe, wersja: 1.0.0.0, sygnatura czasowa: 0x51780a35
Nazwa modułu powodującego błąd: Device.dll, wersja: 4.1.0.0, sygnatura czasowa: 0x4f55e10b
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x00000000000033c1
Identyfikator procesu powodującego błąd: 0xd0c
Godzina uruchomienia aplikacji powodującej błąd: 0xFuel.Service.exe0
Ścieżka aplikacji powodującej błąd: Fuel.Service.exe1
Ścieżka modułu powodującego błąd: Fuel.Service.exe2
Identyfikator raportu: Fuel.Service.exe3
Pełna nazwa pakietu powodującego błąd: Fuel.Service.exe4
Identyfikator aplikacji względem pakietu powodującego błąd: Fuel.Service.exe5

Error: (04/01/2018 06:36:31 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418154

Error: (03/31/2018 06:33:56 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (03/31/2018 07:05:48 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418154


System errors:
=============
Error: (04/03/2018 03:51:59 PM) (Source: DCOM) (EventID: 10010) (User: ZARZĄDZANIE NT)
Description: {E60687F7-01A1-40AA-86AC-DB1CBF673334}

Error: (04/03/2018 03:50:09 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT)
Description: właściwe dla aplikacjiLokalnyAktywacja{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}ZARZĄDZANIE NTUSŁUGA LOKALNAS-1-5-19LocalHost (użycie LRPC)NiedostępnyNiedostępny

Error: (04/03/2018 03:50:09 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT)
Description: właściwe dla aplikacjiLokalnyAktywacja{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}ZARZĄDZANIE NTUSŁUGA LOKALNAS-1-5-19LocalHost (użycie LRPC)NiedostępnyNiedostępny

Error: (04/03/2018 03:50:09 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT)
Description: właściwe dla aplikacjiLokalnyAktywacja{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}ZARZĄDZANIE NTUSŁUGA LOKALNAS-1-5-19LocalHost (użycie LRPC)NiedostępnyNiedostępny

Error: (04/03/2018 03:50:09 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT)
Description: właściwe dla aplikacjiLokalnyAktywacja{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}ZARZĄDZANIE NTUSŁUGA LOKALNAS-1-5-19LocalHost (użycie LRPC)NiedostępnyNiedostępny

Error: (04/03/2018 03:49:57 PM) (Source: Microsoft-Windows-WHEA-Logger) (EventID: 18) (User: ZARZĄDZANIE NT)
Description: Wystąpił krytyczny błąd sprzętowy.

Zgłoszone przez składnik: rdzeń procesora
Źródło błędu: 3
Typ błędu: 10
Identyfikator kontrolera APIC procesora: 1

Widok szczegółów tego wpisu zawiera dodatkowe informacje.

Error: (04/03/2018 03:49:57 PM) (Source: Microsoft-Windows-WHEA-Logger) (EventID: 20) (User: ZARZĄDZANIE NT)
Description: Wystąpił krytyczny błąd sprzętowy.

Składnik: mostek północny firmy AMD
Źródło błędu: 3
Typ błędu: 11
Identyfikator kontrolera APIC procesora: 0

Widok szczegółów tego wpisu zawiera dodatkowe informacje.

Error: (04/03/2018 03:49:49 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT)
Description: Wystąpił błąd podczas próby odczytu lokalnego pliku hosts.

Error: (04/03/2018 03:49:49 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT)
Description: Wystąpił błąd podczas próby odczytu lokalnego pliku hosts.

Error: (04/03/2018 03:49:49 PM) (Source: BugCheck) (EventID: 1001) (User: )
Description: 0x00000124 (0x0000000000000000, 0xffffd2851e1a28f8, 0x0000000000000000, 0x0000000000000000)C:\WINDOWS\Minidump\040318-34531-01.dmp6e091d04-ce40-4e25-91c0-775b58b9cd30


Microsoft Office:
=========================
Error: (04/03/2018 06:25:47 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418154

Error: (04/02/2018 03:23:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: backgroundTaskHost.exe10.0.16299.15290d9f78twinapi.appcore.dll10.0.16299.1963553d36c000027b0000000000094ef528f401d3ca85d0da5b35C:\WINDOWS\system32\backgroundTaskHost.exeC:\Windows\System32\twinapi.appcore.dlled70b815-2487-43b2-a2ab-484e990625463A7FE7D6.InteriaFakty_1.1.0.0_neutral__4tqe0jqg2j764App

Error: (04/02/2018 03:23:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: backgroundTaskHost.exe10.0.16299.15290d9f78twinapi.appcore.dll10.0.16299.1963553d36c000027b0000000000094ef52d4c01d3ca85d0e0f7ebC:\WINDOWS\system32\backgroundTaskHost.exeC:\Windows\System32\twinapi.appcore.dll9359724a-86da-4ea0-8e43-21b7676a737b07BA55C4.RMF24_1.7.0.0_neutral__8fxctsctdr2haApp

Error: (04/02/2018 07:16:55 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418154

Error: (04/02/2018 07:13:49 AM) (Source: ATIeRecord) (EventID: 16396) (User: )
Description:

Error: (04/01/2018 07:23:19 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (04/01/2018 03:21:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Fuel.Service.exe1.0.0.051780a35Device.dll4.1.0.04f55e10bc000000500000000000033c1d0c01d3c9b357384b74C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exeC:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll51a8fc2a-49a5-463d-8046-52a2109c6377

Error: (04/01/2018 06:36:31 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418154

Error: (03/31/2018 06:33:56 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (03/31/2018 07:05:48 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418154


CodeIntegrity Errors:
===================================
Date: 2018-03-28 12:09:28.458
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-03-28 12:09:27.661
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-03-28 12:09:24.554
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-03-28 12:09:24.335
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-03-28 11:16:49.797
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-03-28 11:16:49.040
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-03-28 11:16:39.797
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-03-28 11:16:39.588
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-03-28 11:16:36.156
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-03-28 11:16:35.942
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.


==================== Memory info ===========================

Processor: AMD FX(tm)-4300 Quad-Core Processor
Percentage of memory in use: 31%
Total physical RAM: 8175.24 MB
Available physical RAM: 5581.98 MB
Total Pagefile: 10159.24 MB
Available Pagefile: 6722.05 MB
Total Virtual: 131072 MB
Available Virtual: 131071.76 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:232.44 GB) (Free:26.17 GB) NTFS == & gt; [Drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:232.88 GB) (Free:107.23 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 2BD2C32A)
Partition 1: (Active) - (Size=232.4 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=449 MB) - (Type=27)
Partition 3: (Not Active) - (Size=232.9 GB) - (Type=OF Extended)

==================== End of log ============================