Skocz do zawartości
  • 👋 Witaj na MPCForum!

    Przeglądasz forum jako gość, co oznacza, że wiele świetnych funkcji jest jeszcze przed Tobą! 😎

    • Pełny dostęp do działów i ukrytych treści
    • Możliwość pisania i odpowiadania w tematach
    • System prywatnych wiadomości
    • Zbieranie reputacji i rozwijanie swojego profilu
    • Członkostwo w jednej z największych społeczności graczy

    👉 Dołączenie zajmie Ci mniej niż minutę – a zyskasz znacznie więcej!

    Zarejestruj się teraz
  • 0

Muli Komputer, doradźcie


PLRafcik

Pytanie

Opublikowano

Siemka!


Mam problem a mianowicie od pewnego czasu muli mi komputer. Stosowałem wiele porad np. wyłączyć autostart(zbędne programy), defragmentować dysk, oczyszczać dysk różnymi programami i skanowanie antywirusem i programami anty szpiegującymi, ale nie ma znacznej poprawy. Komputer najczęściej muli gdy jest włączona np jakaś gra i chcę sobie coś na przeglądarce sprawdzić(no wot). 2 razy zdarzyło mi się że wywaliło mi kompa, bo był jakiś problem z dyskiem, po przepięciu wtyczek wróciło wszystko do normy, właśnie podejrzewam o to dysk, że system tak muli. Słyszałem także że to może być wina zasilacza, gdyż nie wyrabia. Macie jakieś pomysły?


Oto mój PC:


CPU: Intel i5 3350P 3,2GHz


GPU: Sapphire HD 7790 1gb 128 bit


Zasilacz: Corsair 450W


Ram: 4gb corsair


HDD: 500gb SATA III(nie wiem jaka jest prędkość przesyłu danych, ale w teście wypada najsłabiej z wszystkich podzespołów)


"My World is in your Head..."

 

Pierwszy Polski blog o grze Vampyr:
http://www.czasnawampyr.pl/category/news/

 

 

8 odpowiedzi na to pytanie

Rekomendowane odpowiedzi

Opublikowano

Logi czyste, kilka wpisów do usunięcia.

 

Otwórz notatnik i wklej do niego

 

 

 
 Task: {1014AB55-5882-4BA8-9ACC-F3F486E25C2B} - \61751c0f-7a12-4483-845a-4b41e89d5251-1 No Task File <==== ATTENTION
  Task: {17836FBD-9E45-44C3-9959-6BDA74B0B88A} - \61751c0f-7a12-4483-845a-4b41e89d5251-3 No Task File <==== ATTENTION
   Task: {22A24CAB-209D-479C-85E8-F624EF7D420E} - \61751c0f-7a12-4483-845a-4b41e89d5251-11 No Task File <==== ATTENTION
   
Task: {3C7FAA11-9272-40E9-9C96-5AA74FB15B62} - \61751c0f-7a12-4483-845a-4b41e89d5251-5 No Task File <==== ATTENTION
Task: {446618CC-2964-4487-8303-16B60DD56887} - \61751c0f-7a12-4483-845a-4b41e89d5251-6 No Task File <==== ATTENTION
Task: {545919BC-ACCD-424C-97BD-689F2CE91F88} - \61751c0f-7a12-4483-845a-4b41e89d5251-7 No Task File <==== ATTENTION
Task: {710BEF25-6687-417D-93B6-C149106AD75B} - \944feefa-d33a-40b7-8bcb-44de08bf820e No Task File <==== ATTENTION
 Task: {8F4628E0-0675-456F-B30B-AA253BB30553} - \06eb7935-076c-4d08-8a7e-5a56d45c815e No Task File <==== ATTENTION
 Task: {F8503129-29BB-4819-9C1E-4E39F31C2E95} - \61751c0f-7a12-4483-845a-4b41e89d5251-4 No Task File <==== ATTENTION
Task: {FE83C2C3-DA8F-4F80-B5F8-82801248BD55} - \61751c0f-7a12-4483-845a-4b41e89d5251-2 No Task File <==== ATTENTION

 

zapisz pod nazwą fixlist.txt, umieść obok FRST i kliknij FIX, pobierz narzędzie DelFix z tego tematu Poradnik dot. logów.użyj go i tyle. Wyczyść jeszcze dokładnie wnętrze komputera i to by było na tyle.

Opublikowano

Co teraz mam zrobić?

"My World is in your Head..."

 

Pierwszy Polski blog o grze Vampyr:
http://www.czasnawampyr.pl/category/news/

 

 

Opublikowano

# DelFix v10.8 - Logfile created 29/09/2014 at 21:37:23
# Updated 29/07/2014 by Xplode
# Username : Rupar - RUPAR-KOMPUTER
# Operating System : Windows 7 Ultimate Service Pack 1 (64 bits)

~ Removing disinfection tools ...

Deleted : C:\Qoobox
Deleted : C:\FRST
Deleted : C:\Users\Rupar\Downloads\Fixlog.txt
Deleted : C:\Users\Rupar\Downloads\FRST.txt
Deleted : C:\Users\Rupar\Downloads\FRST64.exe
Deleted : C:\Windows\grep.exe
Deleted : C:\Windows\PEV.exe
Deleted : C:\Windows\NIRCMD.exe
Deleted : C:\Windows\MBR.exe
Deleted : C:\Windows\SED.exe
Deleted : C:\Windows\SWREG.exe
Deleted : C:\Windows\SWSC.exe
Deleted : C:\Windows\SWXCACLS.exe
Deleted : C:\Windows\Zip.exe
Deleted : HKLM\SOFTWARE\Swearware

########## - EOF - ##########

 

Jutro przeczyszczę komputer, ale ogólnie różnica przed i po jest zauważalna, dzięki ;)

Rozwiązano.

"My World is in your Head..."

 

Pierwszy Polski blog o grze Vampyr:
http://www.czasnawampyr.pl/category/news/

 

 

Opublikowano

Zrobione:

 

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-09-2014
Ran by Rupar at 2014-09-27 15:01:15
Running from C:\Users\Rupar\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: AVG AntiVirus Free Edition 2014 (Enabled - Out of date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG AntiVirus Free Edition 2014 (Enabled - Out of date) {B5F5C120-2089-702E-0001-553BB0D5A664}
FW: AVG Internet Security 2014 (Disabled) {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

"FIFA 14" (HKLM-x32\...\{6049054B-DB11-48E1-A583-9A565D5C8856}_is1) (Version: 1.3.0.0 - )
@http://www.microsoft...=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.only-sear...129300&tsp=5337
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga...Y8VXXXXZ3TBWY8V
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga...q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga...Y8VXXXXZ3TBWY8V
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga...Y8VXXXXZ3TBWY8V
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga...q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga...q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga...Y8VXXXXZ3TBWY8V
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga...Y8VXXXXZ3TBWY8V
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga...q={searchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe http://isearch.omiga...Y8VXXXXZ3TBWY8V
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga...q={searchTerms}
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga...q={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga...q={searchTerms}
SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga...q={searchTerms}
SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = http://mysearch.avg.com/search?cid={83861428-5630-448E-AA85-EE4C67D27AB3}&mid=9ce0991b069247d389d64597c6950feb-11b434d2b4349a252b9c85062a2ac7ba7a0b7cba〈=pl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2014-04-18 21:02:26&v=18.1.6.542&pid=safeguard&sg=&sap=dsp&q={searchTerms}
FF DefaultSearchEngine: omiga-plus
FF SelectedSearchEngine: omiga-plus
FF Homepage: hxxp://www.only-search.com/?babsrc=HP_ss&mntrId=1EA594DE8071E618&affID=129300&tsp=5337
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
2014-09-26 21:24 - 2014-09-26 21:24 - 00747456 _____ ( ) C:\Users\Rupar\Downloads\Paint.NET(12332)-dp (1).exe
2014-09-18 21:02 - 2014-09-26 17:03 - 00006856 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-4
2014-09-18 21:02 - 2014-09-26 17:03 - 00005828 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-1
2014-09-18 21:02 - 2014-09-26 17:03 - 00005488 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5
2014-09-18 21:02 - 2014-09-26 17:03 - 00005152 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-2
2014-09-18 21:02 - 2014-09-26 17:03 - 00004524 _____ () C:\Windows\System32\Tasks\944feefa-d33a-40b7-8bcb-44de08bf820e
2014-09-18 21:02 - 2014-09-26 17:03 - 00003814 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-4.job
2014-09-18 21:02 - 2014-09-26 17:03 - 00002786 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-1.job
2014-09-18 21:02 - 2014-09-26 17:03 - 00002446 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5_user.job
2014-09-18 21:02 - 2014-09-26 17:03 - 00002446 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5.job
2014-09-18 21:02 - 2014-09-26 17:03 - 00002110 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-2.job
2014-09-18 21:02 - 2014-09-26 17:03 - 00001482 _____ () C:\Windows\Tasks\944feefa-d33a-40b7-8bcb-44de08bf820e.job
2014-09-18 21:01 - 2014-09-26 17:03 - 00006512 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-7
2014-09-18 21:01 - 2014-09-26 17:03 - 00006510 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-6
2014-09-18 21:01 - 2014-09-26 17:03 - 00003698 _____ () C:\Windows\System32\Tasks\06eb7935-076c-4d08-8a7e-5a56d45c815e
2014-09-18 21:01 - 2014-09-26 17:03 - 00003470 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-7.job
2014-09-18 21:01 - 2014-09-26 17:03 - 00003470 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-6.job
2014-09-18 21:01 - 2014-09-26 17:03 - 00000648 _____ () C:\Windows\Tasks\06eb7935-076c-4d08-8a7e-5a56d45c815e.job
2014-09-18 21:01 - 2014-09-23 16:14 - 00004496 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-11.job
2014-09-18 21:01 - 2014-09-23 16:14 - 00003814 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-3.job
2014-09-18 21:01 - 2014-09-22 20:17 - 00007538 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-11
2014-09-18 21:01 - 2014-09-22 20:17 - 00006856 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-3
Task: {405EFED8-EF96-4778-9D1B-BDC26E119358} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-09-18] (globalUpdate) <==== ATTENTION
Task: {D02FE3FF-5EF9-43BE-A3B9-AFB4B1A36D78} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-09-18] (globalUpdate) <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\NSUROF.job => C:\Users\Rupar\AppData\Roaming\NSUROF.exe
Task: C:\Windows\Tasks\RI.job => C:\Users\Rupar\AppData\Roaming\RI.exe
Task: C:\Windows\Tasks\SELU.job => C:\Users\Rupar\AppData\Roaming\SELU.exe
Task: C:\Windows\Tasks\VIQHFUCG.job => C:\Users\Rupar\AppData\Roaming\VIQHFUCG.exe
Hosts:
EmptyTemp:

*****************

Processes closed successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully.
HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully.
"HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key not found.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}" => Key deleted successfully.
"HKCR\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}" => Key not found.
Firefox DefaultSearchEngine deleted successfully.
Firefox SelectedSearchEngine deleted successfully.
Firefox homepage deleted successfully.
ew_hwusbdev => Service deleted successfully.
ew_usbenumfilter => Service deleted successfully.
huawei_cdcacm => Service deleted successfully.
huawei_enumerator => Service deleted successfully.
huawei_ext_ctrl => Service deleted successfully.
huawei_wwanecm => Service deleted successfully.
VGPU => Service deleted successfully.
C:\Users\Rupar\Downloads\Paint.NET(12332)-dp (1).exe => Moved successfully.
C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-4 => Moved successfully.
C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-1 => Moved successfully.
C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5 => Moved successfully.
C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-2 => Moved successfully.
C:\Windows\System32\Tasks\944feefa-d33a-40b7-8bcb-44de08bf820e => Moved successfully.
C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-4.job => Moved successfully.
C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-1.job => Moved successfully.
C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5_user.job => Moved successfully.
C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5.job => Moved successfully.
C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-2.job => Moved successfully.
C:\Windows\Tasks\944feefa-d33a-40b7-8bcb-44de08bf820e.job => Moved successfully.
C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-7 => Moved successfully.
C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-6 => Moved successfully.
C:\Windows\System32\Tasks\06eb7935-076c-4d08-8a7e-5a56d45c815e => Moved successfully.
C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-7.job => Moved successfully.
C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-6.job => Moved successfully.
C:\Windows\Tasks\06eb7935-076c-4d08-8a7e-5a56d45c815e.job => Moved successfully.
C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-11.job => Moved successfully.
C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-3.job => Moved successfully.
C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-11 => Moved successfully.
C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-3 => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{405EFED8-EF96-4778-9D1B-BDC26E119358}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{405EFED8-EF96-4778-9D1B-BDC26E119358}" => Key deleted successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D02FE3FF-5EF9-43BE-A3B9-AFB4B1A36D78}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D02FE3FF-5EF9-43BE-A3B9-AFB4B1A36D78}" => Key deleted successfully.
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA" => Key deleted successfully.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\NSUROF.job => Moved successfully.
C:\Windows\Tasks\RI.job => Moved successfully.
C:\Windows\Tasks\SELU.job => Moved successfully.
C:\Windows\Tasks\VIQHFUCG.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 641.7 MB temporary data.


The system needed a reboot.

==== End of Fixlog ====

 

"My World is in your Head..."

 

Pierwszy Polski blog o grze Vampyr:
http://www.czasnawampyr.pl/category/news/

 

 

Opublikowano

@1361622928-U485574.pngref

 

Może ktoś sprawdzić te logi? Dzięki z góry

"My World is in your Head..."

 

Pierwszy Polski blog o grze Vampyr:
http://www.czasnawampyr.pl/category/news/

 

 

Opublikowano

Strasznie duży bałagan w systemie. Był używany SpyBot który dodał ponad 1000 wpisów do pliku hosts.

 

Wykonuj punkt po punkcie.

 

1. Odinstaluj AVG SafeGuard toolbar, Spybot - Search & Destroy.

 

2. Pobierz http://speedy.sh/dSdYw/fixlist.txt umieść ten plik w C:\Users\Rupar\Downloads, otwórz FRST i kliknij FIX

 

3. Dostarcz fixlog (utworzy on się w C:\Users\Rupar\Downloads) oraz nowe logi FRST (odznacz opcje shortcut a opcję addition zaznacz)

Opublikowano

Logi:

 

Users shortcut scan result (x64) Version: 26-09-2014
Ran by Rupar at 2014-09-26 21:30:22
Running from C:\Users\Rupar\Downloads
Boot Mode: Normal
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)



Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Centrum obsługi HP.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe (Hewlett-Packard Company)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk -> E:\Programy\Glary Utilities 5\Integrator.exe (Glarysoft Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk -> C:\Program Files\paint.net\PaintDotNet.exe (dotPDN LLC)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks\Aktualizacje.lnk -> E:\Gry\Games\readme.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks\Deinstalacja programu World of Tanks.lnk -> E:\Gry\Games\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks\Encyklopedia.lnk -> E:\Gry\Games\wiki.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks\Instrukcja.lnk -> E:\Gry\Games\game_manual.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks\Strona oficjalna.lnk -> E:\Gry\Games\website.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks\World of Tanks.lnk -> E:\Gry\Games\WoTLauncher.exe (Wargaming.net)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint\Microsoft SharePoint Workspace 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\grvicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Access 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\accicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Excel 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\xlicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft InfoPath Filler 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\inficon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft OneNote 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\joticon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Outlook 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\outicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft PowerPoint 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\pptico.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Publisher 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\pubs.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft SharePoint Workspace 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\grvicons.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Word 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\wordicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Narzędzia pakietu Microsoft Office 2010\Centrum Microsoft Office 2010 Upload Center.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\msouc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Narzędzia pakietu Microsoft Office 2010\Certyfikat cyfrowy dla projektów VBA.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\misc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Narzędzia pakietu Microsoft Office 2010\Microsoft Clip Organizer.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\cagicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Narzędzia pakietu Microsoft Office 2010\Microsoft Office Picture Manager.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\oisicon.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Narzędzia pakietu Microsoft Office 2010\Preferencje językowe pakietu Microsoft Office 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\misc.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk -> C:\Program Files (x86)\Java\jre7\bin\javacpl.exe (Oracle Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5\Glary Utilities 5.lnk -> E:\Programy\Glary Utilities 5\Integrator.exe (Glarysoft Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5\Uninstall.lnk -> E:\Programy\Glary Utilities 5\uninst.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5\Website.lnk -> E:\Programy\Glary Utilities 5\Glary Utilities 5.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo\CrystalDiskInfo.lnk -> C:\Program Files (x86)\CrystalDiskInfo\DiskInfo.exe (Crystal Dew World)
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{8E42496E-7B22-4540-A734-9DCC289D34F6}\PlayTasks\2\Uninstall.lnk -> D:\Games\FIFA 14\Uninstall\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{8E42496E-7B22-4540-A734-9DCC289D34F6}\PlayTasks\1\Check for updates.lnk -> D:\Games\FIFA 14\GameUpdater.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\GameExplorer\{8E42496E-7B22-4540-A734-9DCC289D34F6}\PlayTasks\0\FIFA 14.lnk -> D:\Games\FIFA 14\Game\fifasetup\fifaconfig.exe (Electronic Arts Canada)
Shortcut: C:\ProgramData\Microsoft\Internet Explorer\Quick Launch\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.)
Shortcut: C:\ProgramData\Microsoft\Internet Explorer\Quick Launch\System Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe (Safer-Networking Ltd.)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Public\Desktop\Glary Utilities 5.lnk -> E:\Programy\Glary Utilities 5\Integrator.exe (Glarysoft Ltd)
Shortcut: C:\Users\Public\Desktop\paint.net.lnk -> C:\Program Files\paint.net\PaintDotNet.exe (dotPDN LLC)
Shortcut: C:\Users\Public\Desktop\World of Tanks.lnk -> E:\Gry\Games\WoTLauncher.exe (Wargaming.net)
Shortcut: C:\Users\Rupar\Links\Desktop.lnk -> C:\Users\Rupar\Desktop ()
Shortcut: C:\Users\Rupar\Links\Downloads.lnk -> C:\Users\Rupar\Downloads ()
Shortcut: C:\Users\Rupar\Links\OneDrive.lnk -> C:\Users\Rupar\OneDrive ()
Shortcut: C:\Users\Rupar\Desktop\CrystalDiskInfo.lnk -> C:\Program Files (x86)\CrystalDiskInfo\DiskInfo.exe (Crystal Dew World)
Shortcut: C:\Users\Rupar\Desktop\Programy\Adobe Reader XI.lnk -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe (Adobe Systems Incorporated)
Shortcut: C:\Users\Rupar\Desktop\Programy\AVG 2014.lnk -> C:\Program Files (x86)\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.)
Shortcut: C:\Users\Rupar\Desktop\Programy\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (No File)
Shortcut: C:\Users\Rupar\Desktop\Programy\DAEMON Tools Lite.lnk -> E:\Programy\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
Shortcut: C:\Users\Rupar\Desktop\Programy\ET6.lnk -> C:\Program Files (x86)\GIGABYTE\ET6\ET6SC.exe ()
Shortcut: C:\Users\Rupar\Desktop\Programy\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\Rupar\Desktop\Programy\HP Photosmart Essential 3.5.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpse.exe (Hewlett-Packard Development Co. L.P.)
Shortcut: C:\Users\Rupar\Desktop\Programy\Odkurzacz.lnk -> E:\Programy\Odkurzacz\odkurzacz.exe (FranmoSoftware)
Shortcut: C:\Users\Rupar\Desktop\Programy\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.)
Shortcut: C:\Users\Rupar\Desktop\Programy\Steam.lnk -> C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
Shortcut: C:\Users\Rupar\Desktop\Programy\µTorrent.lnk -> C:\Users\Rupar\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
Shortcut: C:\Users\Rupar\Desktop\Gry\FIFA 14.lnk -> D:\Games\FIFA 14\Game\fifasetup\fifaconfig.exe (Electronic Arts Canada)
Shortcut: C:\Users\Rupar\Desktop\Gry\Neverwinter.lnk -> E:\Gry\Cryptic Studios\Neverwinter.exe ()
Shortcut: C:\Users\Rupar\Desktop\Gry\Steam.lnk -> E:\Programy\Steam\Steam.exe (Valve Corporation)
Shortcut: C:\Users\Rupar\Desktop\Gry\World of Tanks.lnk -> E:\Gry\Games\WoTLauncher.exe (Wargaming.net)
Shortcut: C:\Users\Rupar\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -> C:\Users\Rupar\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
Shortcut: C:\Users\Rupar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam\Steam.lnk -> E:\Programy\Steam\Steam.exe (Valve Corporation)
Shortcut: C:\Users\Rupar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Portable Programs\More Portable Programs.lnk -> C:\2-click run\More Portable Programs.url ()
Shortcut: C:\Users\Rupar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1-click run\Euro Truck Simulator 2 v1.12.1 (15 DLC)\Euro Truck Simulator 2.lnk -> E:\Gry\ETS2\bin\win_x86\eurotrucks2.exe (SCS Software)
Shortcut: C:\Users\Rupar\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Glary Utilities 5.lnk -> E:\Programy\Glary Utilities 5\Integrator.exe (Glarysoft Ltd)
Shortcut: C:\Users\Rupar\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner.exe (No File)
Shortcut: C:\Users\Rupar\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\FIFA 14.lnk -> D:\Games\FIFA 14\Game\fifa14-SKIDROWGAMES.NET.exe (Electronic Arts)
Shortcut: C:\Users\Rupar\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Steam Client Bootstrapper (buildbot_winslave04_steam_steam_rel_client_win32@winslave04).lnk -> E:\Programy\Steam\Steam.exe (Valve Corporation)
Shortcut: C:\Users\Rupar\AppData\Local\Microsoft\Windows\GameExplorer\{B3EE70BE-9844-42BE-9E7E-EBACE7151FCF}\PlayTasks\0\Zagraj.lnk -> C:\Program Files (x86)\Microsoft Games\Age of Empires III Trial\age3.exe (No File)


ShortcutWithArgument: C:\ProgramData\DSearchLink\Search.lnk -> C:\ProgramData\DSearchLink\DSearchLink.exe () -> -url hxxp://www.only-search.com/?babsrc=TS_ss&mntrId=1EA594DE8071E618&affID=129300&tsp=5337 -wbr 4


ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk -> C:\Windows\System32\wuapp.exe (Microsoft Corporation) -> startmenu
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam\Steam.lnk -> C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation) -> -tcp
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft InfoPath Designer 2010.lnk -> C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\inficon.exe () -> /design
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk -> C:\Program Files (x86)\Java\jre7\bin\javacpl.exe (Oracle Corporation) -> -tab about
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk -> C:\Program Files (x86)\Java\jre7\bin\javacpl.exe (Oracle Corporation) -> -tab update
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Rupar\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Rupar\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\5d696d521de238c3\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default


InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks\Instrukcja do gry World of Tanks.url -> hxxp://worldoftanks.eu/content/guide/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks\Strona WWW programu World of Tanks.url -> hxxp://www.worldoftanks.eu
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam\Steam Support Center.url -> hxxp://support.steampowered.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bandicam\Home page.url -> hxxp://www.bandicam.com/
InternetURL: C:\Users\Rupar\Favorites\Windows Live\Galeria gadżetów Windows Live.url -> hxxp://go.microsoft.com/fwlink/?LinkID=70742
InternetURL: C:\Users\Rupar\Favorites\Windows Live\Poczta usługi Windows Live.url -> hxxp://go.microsoft.com/fwlink/?LinkId=72681
InternetURL: C:\Users\Rupar\Favorites\Windows Live\Programy usługi Windows Live.url -> hxxp://go.microsoft.com/fwlink/?LinkId=72700
InternetURL: C:\Users\Rupar\Favorites\Windows Live\Windows Live Spaces.url -> hxxp://go.microsoft.com/fwlink/?LinkId=72682
InternetURL: C:\Users\Rupar\Favorites\MSN — witryny sieci Web\MSN Gospodarka.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68923
InternetURL: C:\Users\Rupar\Favorites\MSN — witryny sieci Web\MSN Rozrywka.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68924
InternetURL: C:\Users\Rupar\Favorites\MSN — witryny sieci Web\MSN Sport.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68921
InternetURL: C:\Users\Rupar\Favorites\MSN — witryny sieci Web\MSN Technologie.url -> hxxp://go.microsoft.com/fwlink/?LinkId=55143
InternetURL: C:\Users\Rupar\Favorites\MSN — witryny sieci Web\MSN Wideo.url -> hxxp://go.microsoft.com/fwlink/?LinkId=68922
InternetURL: C:\Users\Rupar\Favorites\MSN — witryny sieci Web\Portal MSN.url -> hxxp://go.microsoft.com/fwlink/?LinkId=54729
InternetURL: C:\Users\Rupar\Favorites\Microsoft — witryny sieci Web\Centrum bezpieczeństwa Microsoft.url -> hxxp://go.microsoft.com/fwlink/?LinkID=72887
InternetURL: C:\Users\Rupar\Favorites\Microsoft — witryny sieci Web\Dodatki programu Internet Explorer.url -> hxxp://go.microsoft.com/fwlink/?LinkId=50893
InternetURL: C:\Users\Rupar\Favorites\Microsoft — witryny sieci Web\Microsoft Office Online.url -> hxxp://go.microsoft.com/fwlink/?LinkId=72885
InternetURL: C:\Users\Rupar\Favorites\Microsoft — witryny sieci Web\Microsoft Store.url -> hxxp://go.microsoft.com/fwlink/?linkid=140813
InternetURL: C:\Users\Rupar\Favorites\Microsoft — witryny sieci Web\Microsoft Technet.url -> hxxp://go.microsoft.com/fwlink/?LinkId=72886
InternetURL: C:\Users\Rupar\Favorites\Microsoft — witryny sieci Web\Microsoft w Polsce.url -> hxxp://go.microsoft.com/fwlink/?LinkId=72520
InternetURL: C:\Users\Rupar\Favorites\Microsoft — witryny sieci Web\Oryginalne oprogramowanie firmy Microsoft.url -> hxxp://go.microsoft.com/fwlink/?LinkId=72900
InternetURL: C:\Users\Rupar\Favorites\Microsoft — witryny sieci Web\Strona główna programu Internet Explorer.url -> hxxp://go.microsoft.com/fwlink/?LinkId=72186
InternetURL: C:\Users\Rupar\Favorites\Microsoft — witryny sieci Web\Strona główna systemu Windows.url -> hxxp://go.microsoft.com/fwlink/?LinkId=72629
InternetURL: C:\Users\Rupar\Favorites\Microsoft — witryny sieci Web\Technologia RSS.url -> hxxp://go.microsoft.com/fwlink/?LinkId=72889
InternetURL: C:\Users\Rupar\Favorites\Microsoft — witryny sieci Web\W domu.url -> hxxp://go.microsoft.com/fwlink/?LinkId=72406
InternetURL: C:\Users\Rupar\Favorites\Microsoft — witryny sieci Web\W pracy.url -> hxxp://go.microsoft.com/fwlink/?LinkId=72407
InternetURL: C:\Users\Rupar\Favorites\Links for Polska\Bezpieczeństwo w trybie online.url -> hxxp://go.microsoft.com/fwlink/?LinkId=142211
InternetURL: C:\Users\Rupar\Favorites\Links for Polska\Bezpieczny Internet.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129626
InternetURL: C:\Users\Rupar\Favorites\Links for Polska\Kultura.pl.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129625
InternetURL: C:\Users\Rupar\Favorites\Links for Polska\Pogodynka.pl — oficjalny serwis pogodowy IMGW.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129624
InternetURL: C:\Users\Rupar\Favorites\Links for Polska\Polska.pl.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129622
InternetURL: C:\Users\Rupar\Favorites\Links\Galeria obiektów Web Slice.url -> hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\Rupar\Favorites\Links\Sugerowane witryny.url -> https://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\Rupar\Desktop\Dota 2.url -> steam://rungameid/570
InternetURL: C:\Users\Rupar\Desktop\Rafał\DVD-oryginalny dysk\Edgecam\custom_files\Cam\tstore\holdergraphics\MST_Slimline_Holder\MST Corporation Slimline shrink fit tool holders collet chuck die mold aerospace highspeed cuttin.url -> hxxp://www.mst-corp.co.jp/english_top.html
InternetURL: C:\Users\Rupar\Desktop\Pliki\NortonIdentifySafe.url -> hxxp://liveupdate.symantecliveupdate.com/upgrade/identitysafe/NortonIdentitySafe-v1-LB.exe
InternetURL: C:\Users\Rupar\Desktop\Gry\Dota 2.url -> steam://rungameid/570
InternetURL: C:\Users\Rupar\Desktop\Gry\Heroes & Generals.url -> steam://rungameid/227940
InternetURL: C:\Users\Rupar\Desktop\Gry\theHunter.url -> steam://rungameid/253710
InternetURL: C:\Users\Rupar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam\Dota 2.url -> steam://rungameid/570

==================== End of log =============================

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-09-2014
Ran by Rupar at 2014-09-26 21:29:31
Running from C:\Users\Rupar\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: AVG AntiVirus Free Edition 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Disabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: AVG AntiVirus Free Edition 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}
FW: AVG Internet Security 2014 (Disabled) {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

"FIFA 14" (HKLM-x32\...\{6049054B-DB11-48E1-A583-9A565D5C8856}_is1) (Version: 1.3.0.0 - )
@Bios (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.28 - GIGABYTE)
µTorrent (HKCU\...\uTorrent) (Version: 3.4.2.34024 - BitTorrent Inc.)
64 Bit HP CIO Components Installer (Version: 6.2.1 - Hewlett-Packard) Hidden
Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.08) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated)
AMD Accelerated Video Transcoding (Version: 12.10.100.30215 - Advanced Micro Devices, Inc.) Hidden
AMD APP SDK Runtime (Version: 10.0.1124.2 - Advanced Micro Devices Inc.) Hidden
AMD Catalyst Install Manager (HKLM\...\{D4DEB532-1003-D978-B678-D08A430CE548}) (Version: 8.0.911.0 - Advanced Micro Devices, Inc.)
AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden
Archiwizator WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - )
AutoGreen B12.0206.1 (HKLM-x32\...\InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345}) (Version: 1.00.0000 - GIGABYTE)
AutoGreen B12.0206.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden
AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4765 - AVG Technologies)
AVG 2014 (Version: 14.0.3681 - AVG Technologies) Hidden
AVG 2014 (Version: 14.0.4025 - AVG Technologies) Hidden
AVG 2014 (Version: 14.0.4259 - AVG Technologies) Hidden
AVG 2014 (Version: 14.0.4765 - AVG Technologies) Hidden
AVG SafeGuard toolbar (HKLM-x32\...\AVG SafeGuard toolbar) (Version: 18.1.9.786 - AVG Technologies)
Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version: - Bandisoft.com)
Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts)
BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center (x32 Version: 2013.0215.1631.29608 - Nazwa firmy) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2013.0215.1631.29608 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2013.0215.1631.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2013.0215.1630.29608 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2013.0215.1631.29608 - Advanced Micro Devices, Inc.) Hidden
CrystalDiskInfo 6.2.1 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.2.1 - Crystal Dew World)
D2300 (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden
D2300_Help (x32 Version: 82.0.233.000 - Hewlett-Packard) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0337 - Disc Soft Ltd)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{5C78021E-3C8E-4EDF-97EA-E9B8D808FD6D}) (Version: - Microsoft)
DeviceDiscovery (x32 Version: 130.0.465.000 - Hewlett-Packard) Hidden
Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve)
Easy Tune 6 B12.1121.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE)
Easy Tune 6 B12.1121.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden
eRclient 2.0.10.210 (HKCU\...\{5CBD4386-2DE5-43A2-AED7-E690BF9B0F04}_is1) (Version: 2.0.10.210 - eRmail Company, s. r. o.)
Euro Truck Simulator 2 v1.12.1 (15 DLC) (HKLM-x32\...\Euro Truck Simulator 2 v1.12.1 (15 DLC)1.12.1) (Version: 1.12.1 - Friends in War)
ffdshow x64 v1.3.4532 [2014-07-17] (HKLM\...\ffdshow64_is1) (Version: 1.3.4532.0 - )
FIFA 14 (HKLM-x32\...\{AA7A2800-1E75-4240-855B-03AFF8E5171E}) (Version: 1.0.0.4 - Electronic Arts)
Galeria fotografii (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Glary Utilities 5.8 (HKLM-x32\...\Glary Utilities 5) (Version: 5.8.0.15 - Glarysoft Ltd)
Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP)
HP Deskjet & Photosmart Printer Driver Software 13.0 Rel. A (HKLM\...\{4B97502B-795A-4E12-9A93-E824772156A7}) (Version: 13.0 - HP)
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP)
HP Smart Web Printing 4.51 (HKLM\...\HP Smart Web Printing) (Version: 4.51 - HP)
HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP)
HP Update (HKLM-x32\...\{7059BDA7-E1DB-442C-B7A1-6144596720A4}) (Version: 4.000.011.006 - Hewlett-Packard)
HPPhotoGadget (x32 Version: 130.0.282.000 - Hewlett-Packard) Hidden
HPPhotoSmartDiscLabelContent1 (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden
HPPhotosmartEssential (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden
HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation)
Intel® USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.5.235 - Intel Corporation)
Intel® Trusted Connect Service Client (Version: 1.24.738.1 - Intel Corporation) Hidden
Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version: - Intel Corporation)
InterVideo DeviceService (HKLM-x32\...\{521AAD14-5030-44BB-8B0E-5CE65FCE57E0}) (Version: 1.0.0 - InterVideo)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java Auto Updater (x32 Version: 2.1.67.1 - Oracle, Inc.) Hidden
MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
Microsoft .NET Framework 4 Client Profile PLK Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended PLK Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office Access MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0409-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0415-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Outlook MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Polish) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit (HKLM-x32\...\{95140000-007D-0409-0000-0000000FF1CE}) (Version: 14.0.5120.5000 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{3bcf8c72-b231-4d28-9f39-3405c22d8b5a}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 30.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 pl)) (Version: 30.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT Redists (Version: 1.0 - Sony Creative Software Inc.) Hidden
MSVCRT Redists (x32 Version: 1.0 - Sony Creative Software Inc.) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
Neverwinter (HKLM-x32\...\Neverwinter) (Version: - Cryptic Studios)
Odkurzacz (HKLM-x32\...\Odkurzacz 13.5_is1) (Version: 13.5.0.1911 - FranmoSoftware - Maciej Opaliński)
ON_OFF Charge B12.1025.1 (HKLM-x32\...\{3DECD372-76A1-4483-BF10-B547790A3261}) (Version: 1.00.0001 - GIGABYTE)
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - )
Origin (HKLM-x32\...\Origin) (Version: 9.3.10.4710 - Electronic Arts, Inc.)
paint.net (HKLM\...\{F509C1F4-0029-49F9-B145-A4C4E8DF481A}) (Version: 4.0.3 - dotPDN LLC)
Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.)
Photo Gallery (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Podstawowe programy Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek)
Realtek HDMI Audio Driver for ATI (HKLM-x32\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.6519 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.)
SF_CDA_ProductContext (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden
SF_CDA_Software (x32 Version: 130.0.396.000 - Hewlett-Packard) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 13.0 - HP)
SmartWebPrinting (x32 Version: 130.0.457.000 - Hewlett-Packard) Hidden
SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
Status (x32 Version: 130.0.469.000 - Hewlett-Packard) Hidden
Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation)
System Requirements Lab CYRI (HKLM-x32\...\{705216C1-BA52-4B16-AFE4-4143B340D62D}) (Version: 6.0.12.6 - Husdawg, LLC)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH)
Testy Bplus 5.1.3.65 (HKLM-x32\...\{81999787-A518-4218-86D5-C5D25E6808F5}_is1) (Version: 5.1.3.65 - Grupa IMAGE sp. z o.O.)
Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden
TotalPlus01-3.1V18.09 (HKLM-x32\...\TotalPlus01-3.1V18.09) (Version: 1.35.9.16 - HDPlus-01TotalV18.09)
TrayApp (x32 Version: 130.0.422.000 - Hewlett-Packard) Hidden
Unity Web Player (HKCU\...\UnityWebPlayer) (Version: 4.5.2f1 - Unity Technologies ApS)
UnloadSupport (x32 Version: 11.0.0 - Hewlett-Packard) Hidden
Update for Microsoft Office 2010 (KB2553065) (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{A8686D24-1E89-43A1-973E-05A258D2B3F8}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{C8694FF0-8203-483B-A07A-2BC40433167D}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition (HKLM-x32\...\{90140000-006E-0415-0000-0000000FF1CE}_Office14.PROPLUS_{BCD25FB9-BDA6-4CE4-AC04-764F25FC6160}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.PROPLUS_{007CC0F3-15DE-426D-95B5-B019FCEF58CE}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0415-0000-0000000FF1CE}_Office14.PROPLUS_{5BE77AA9-4062-45E8-96F1-EA6EC16C1EE4}) (Version: - Microsoft)
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{BA610006-2C39-4419-9834-CF61AB24810A}) (Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{BEBC2484-290C-46AD-9834-6DAD1FA80273}) (Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{BEBC2484-290C-46AD-9834-6DAD1FA80273}) (Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition (HKLM-x32\...\{90140000-00A1-0415-0000-0000000FF1CE}_Office14.PROPLUS_{69EC596B-A479-4326-B17C-D8D13A60B9F1}) (Version: - Microsoft)
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{BC6DFBFD-16DD-47E1-A7EF-2C062930FA4F}) (Version: - Microsoft)
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0415-0000-0000000FF1CE}_Office14.PROPLUS_{C59B36DD-4C69-4124-8C46-F2B6F07688AA}) (Version: - Microsoft)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows Live Communications Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Media Encoder 9 Series (HKLM-x32\...\Windows Media Encoder 9) (Version: - )
Windows Media Encoder 9 Series (x32 Version: 9.00.2980 - Microsoft Corporation) Hidden
Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation)
World of Tanks (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version: - Wargaming.net)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points =========================


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2014-08-25 15:30 - 00449936 ____R C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 10sek.com
127.0.0.1 www.10sek.com
127.0.0.1 www.1-2005-search.com
127.0.0.1 1-2005-search.com
127.0.0.1 123fporn.info
127.0.0.1 www.123fporn.info
127.0.0.1 123haustiereundmehr.com
127.0.0.1 www.123haustiereundmehr.com

There are 1000 more lines.


==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {00B8EBAA-2E20-4570-A675-669598C25814} - System32\Tasks\DriverEasy Scheduled Scan => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe
Task: {1014AB55-5882-4BA8-9ACC-F3F486E25C2B} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-1 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\TotalPlus01-3.1V18.09-codedownloader.exe
Task: {17836FBD-9E45-44C3-9959-6BDA74B0B88A} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-3 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-3.exe
Task: {18EB1887-A584-4487-976E-D521E64427D6} - System32\Tasks\NSUROF => C:\Users\Rupar\AppData\Roaming\NSUROF.exe
Task: {22A24CAB-209D-479C-85E8-F624EF7D420E} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-11 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-11.exe
Task: {2527A3C8-D57C-4E79-9692-AAD49C409362} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-26] (Adobe Systems Incorporated)
Task: {26F591E9-A9D6-45B2-82B0-192F05D5752D} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {2EE97D10-D427-4D66-A0DE-A43A5272EE99} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: {3C7FAA11-9272-40E9-9C96-5AA74FB15B62} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-5.exe
Task: {405EFED8-EF96-4778-9D1B-BDC26E119358} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-09-18] (globalUpdate) <==== ATTENTION
Task: {446618CC-2964-4487-8303-16B60DD56887} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-6 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-6.exe
Task: {50C48C86-72B8-44AD-AEE2-3F9558E9E39C} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
Task: {545919BC-ACCD-424C-97BD-689F2CE91F88} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-7 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-7.exe
Task: {65E04D3F-BE06-4B40-A7CD-51097485B047} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe
Task: {710BEF25-6687-417D-93B6-C149106AD75B} - System32\Tasks\944feefa-d33a-40b7-8bcb-44de08bf820e => C:\Program Files (x86)\TotalPlus01-3.1V18.09\944feefa-d33a-40b7-8bcb-44de08bf820e.exe
Task: {72177041-86B2-4832-9F5D-E2075C39C3B2} - System32\Tasks\SELU => C:\Users\Rupar\AppData\Roaming\SELU.exe
Task: {86D9FD62-4FDA-43F0-92B5-67152966A3D6} - System32\Tasks\RI => C:\Users\Rupar\AppData\Roaming\RI.exe
Task: {8F4628E0-0675-456F-B30B-AA253BB30553} - System32\Tasks\06eb7935-076c-4d08-8a7e-5a56d45c815e => C:\Program Files (x86)\TotalPlus01-3.1V18.09\06eb7935-076c-4d08-8a7e-5a56d45c815e.exe [2014-09-18] ()
Task: {9C77152E-E3E3-4EFD-A9D3-7A6C997D2DC4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-07-29] (Google Inc.)
Task: {A0713EB3-BECB-48C5-AC93-FB406D47DFAC} - System32\Tasks\GU5SkipUAC => E:\Programy\Glary Utilities 5\Integrator.exe [2014-09-15] (Glarysoft Ltd)
Task: {BECD9988-C14A-4D55-B6EA-849109D78673} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5_user => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-5.exe
Task: {BFC7140E-BDB3-4776-85E5-2813DA839A40} - System32\Tasks\VIQHFUCG => C:\Users\Rupar\AppData\Roaming\VIQHFUCG.exe
Task: {D02FE3FF-5EF9-43BE-A3B9-AFB4B1A36D78} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-09-18] (globalUpdate) <==== ATTENTION
Task: {D9878604-EADF-4E66-BE01-C7F4F4E540C6} - System32\Tasks\{C8673ACA-D640-4E94-BD13-58D59115FE9B} => D:\Games\FIFA14! Nie bądz pirat kup oryginał! ;p\Game\fifa14-www.skidrowcrack.com.exe
Task: {E73DA3C6-A9C8-4ACC-A3BB-A2090C7368FE} - System32\Tasks\Odkurzacz => E:\Programy\Odkurzacz\odkurzacz.exe [2014-09-11] (FranmoSoftware)
Task: {F4959D52-0344-48D0-B95C-07FDABE1EF1A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-07-29] (Google Inc.)
Task: {F81C6065-F932-4C5A-AA5D-534B1B190E80} - System32\Tasks\GlaryInitialize 5 => E:\Programy\Glary Utilities 5\Initialize.exe [2014-09-15] (Glarysoft Ltd)
Task: {F8503129-29BB-4819-9C1E-4E39F31C2E95} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-4 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-4.exe
Task: {FE83C2C3-DA8F-4F80-B5F8-82801248BD55} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-2 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-2.exe
Task: C:\Windows\Tasks\06eb7935-076c-4d08-8a7e-5a56d45c815e.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\06eb7935-076c-4d08-8a7e-5a56d45c815e.exe
Task: C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-1.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\TotalPlus01-3.1V18.09-codedownloader.exe
Task: C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-11.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-11.exe
Task: C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-2.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-2.exe
Task: C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-3.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-3.exe
Task: C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-4.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-4.exe
Task: C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-5.exe
Task: C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5_user.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-5.exe
Task: C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-6.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-6.exe
Task: C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-7.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-7.exe
Task: C:\Windows\Tasks\944feefa-d33a-40b7-8bcb-44de08bf820e.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\944feefa-d33a-40b7-8bcb-44de08bf820e.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\DriverEasy Scheduled Scan.job => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe
Task: C:\Windows\Tasks\GlaryInitialize 5.job => E:\Programy\Glary Utilities 5\Initialize.exe
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\NSUROF.job => C:\Users\Rupar\AppData\Roaming\NSUROF.exe
Task: C:\Windows\Tasks\RI.job => C:\Users\Rupar\AppData\Roaming\RI.exe
Task: C:\Windows\Tasks\SELU.job => C:\Users\Rupar\AppData\Roaming\SELU.exe
Task: C:\Windows\Tasks\VIQHFUCG.job => C:\Users\Rupar\AppData\Roaming\VIQHFUCG.exe

==================== Loaded Modules (whitelisted) =============

2010-01-30 03:40 - 2010-01-30 03:40 - 04254560 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2014-06-08 12:48 - 2007-09-02 13:58 - 00495616 _____ () D:\Programy\RocketDock\RocketDock.exe
2014-05-30 18:39 - 2014-06-29 19:03 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2014-04-18 21:01 - 2014-08-11 17:01 - 02640408 _____ () C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
2014-09-26 21:25 - 2014-07-22 15:15 - 06299376 _____ () C:\Users\Rupar\AppData\Local\Temp\Rar$EX00.378\paint.net.4.0.3.install.exe
2014-09-26 21:27 - 2014-09-26 21:27 - 03188224 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_64\PaintDotNetc8826574#\55983aaa87efc1b75f5abf4cdbfa1a38\PaintDotNet.SystemLayer.Native.x64.ni.dll
2014-06-08 12:48 - 2007-09-02 13:57 - 00069632 _____ () D:\Programy\RocketDock\RocketDock.dll
2010-01-30 03:41 - 2010-01-30 03:41 - 04254560 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2014-08-16 14:34 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2014-08-16 14:34 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2014-04-18 21:01 - 2014-04-18 21:01 - 01603608 _____ () C:\Program Files (x86)\AVG SafeGuard toolbar\TBAPI.dll
2014-08-11 17:02 - 2014-08-11 17:01 - 00519704 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.9\log4cplusU.dll
2014-08-16 14:34 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2013-07-29 11:50 - 2012-07-18 11:55 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\ACE.dll
2014-09-15 09:45 - 2014-09-15 09:45 - 00080160 _____ () E:\Programy\Glary Utilities 5\zlib1.dll
2014-08-15 13:19 - 2014-08-07 05:20 - 00718152 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.143\libglesv2.dll
2014-08-15 13:19 - 2014-08-07 05:20 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.143\libegl.dll
2014-08-15 13:19 - 2014-08-07 05:20 - 08537928 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.143\pdf.dll
2014-08-15 13:19 - 2014-08-07 05:20 - 00353096 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.143\ppGoogleNaClPluginChrome.dll
2014-08-15 13:19 - 2014-08-07 05:20 - 01732936 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.143\ffmpegsumo.dll
2014-08-15 13:19 - 2014-08-07 05:20 - 14669128 _____ () C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.143\PepperFlash\pepflashplayer.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:05EE1EEF

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: AdobeARMservice => 3
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: Freemake Improver => 3
MSCONFIG\Services: globalUpdate => 3
MSCONFIG\Services: globalUpdatem => 3
MSCONFIG\Services: gupdate => 3
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: PLAY ONLINE. RunOuc => 2
MSCONFIG\Services: RzOvlMon => 2
MSCONFIG\Services: SDScannerService => 2
MSCONFIG\Services: SDUpdateService => 2
MSCONFIG\Services: Sony PC Companion => 3
MSCONFIG\Services: Steam Client Service => 3
MSCONFIG\Services: vToolbarUpdater18.0.5 => 2
MSCONFIG\Services: vToolbarUpdater18.1.9 => 2
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\Rupar\AppData\Local\Akamai\netsession_win.exe"
MSCONFIG\startupreg: BCSSync => "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
MSCONFIG\startupreg: Browser Extensions => "C:\Users\Rupar\AppData\Roaming\Browser Extensions\CouponsHelper.exe"
MSCONFIG\startupreg: Bugsplat => C:\Users\Rupar\AppData\Roaming\A576E0\A576E0.exe
MSCONFIG\startupreg: DAEMON Tools Lite => "E:\Programy\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: hpqSRMon => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe
MSCONFIG\startupreg: lollipop_09061725 => "c:\users\rupar\appdata\local\lollipop\lollipop_09061725.exe" lollipop_09061725
MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

========================= Accounts: ==========================

Administrator (S-1-5-21-4085988556-3215208331-244158764-500 - Disabled - Status: Degraded)
Gość (S-1-5-21-4085988556-3215208331-244158764-501 - Disabled - Status: Degraded)
HomeGroupUser$ (S-1-5-21-4085988556-3215208331-244158764-1002 - Enabled - Status: OK)
Rupar (S-1-5-21-4085988556-3215208331-244158764-1000 - Enabled - Status: OK) => C:\Users\Rupar

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (09/26/2014 03:48:56 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/25/2014 04:14:40 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/24/2014 03:39:59 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/23/2014 04:14:48 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/22/2014 07:22:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/22/2014 03:44:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/21/2014 07:49:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: eurotrucks2.exe, wersja: 1.12.0.0, sygnatura czasowa: 0x53eb6a10
Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x001af89c
Identyfikator procesu powodującego błąd: 0x1594
Godzina uruchomienia aplikacji powodującej błąd: 0xeurotrucks2.exe0
Ścieżka aplikacji powodującej błąd: eurotrucks2.exe1
Ścieżka modułu powodującego błąd: eurotrucks2.exe2
Identyfikator raportu: eurotrucks2.exe3

Error: (09/21/2014 06:53:31 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/21/2014 00:41:44 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/20/2014 07:21:48 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


System errors:
=============
Error: (09/26/2014 09:26:58 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika.

Error: (09/26/2014 04:08:42 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Wywołanie ScRegSetValueExW dla Start nie powiodło się i wystąpił następujący błąd:
%%5.

Error: (09/22/2014 08:06:58 PM) (Source: Disk) (EventID: 11) (User: )
Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1.

Error: (09/20/2014 01:52:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Steam Client Service z powodu następującego błędu:
%%1053

Error: (09/20/2014 01:52:00 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Steam Client Service.

Error: (09/20/2014 01:25:59 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Poprzednie zamknięcie systemu przy 13:24:39 na ‎2014-‎09-‎20 było nieoczekiwane.

Error: (09/11/2014 03:56:04 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika.

Error: (09/09/2014 08:41:58 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Usługa AVGIDSAgent nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem.

Error: (09/02/2014 06:09:12 PM) (Source: Ntfs) (EventID: 55) (User: )
Description: Struktura systemu plików na dysku jest uszkodzona i nie nadaje się do użytku.
Uruchom narzędzie chkdsk na woluminie C:.

Error: (09/02/2014 06:10:00 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Poprzednie zamknięcie systemu przy 20:39:18 na ‎2014-‎09-‎01 było nieoczekiwane.


Microsoft Office Sessions:
=========================
Error: (09/26/2014 03:48:56 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/25/2014 04:14:40 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/24/2014 03:39:59 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/23/2014 04:14:48 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/22/2014 07:22:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/22/2014 03:44:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/21/2014 07:49:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: eurotrucks2.exe1.12.0.053eb6a10unknown0.0.0.000000000c0000005001af89c159401cfd5c3decdf394E:\Gry\ETS2\bin\win_x86\eurotrucks2.exeunknowna07ebd18-41b7-11e4-bcdb-94de8071e618

Error: (09/21/2014 06:53:31 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/21/2014 00:41:44 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/20/2014 07:21:48 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


CodeIntegrity Errors:
===================================
Date: 2013-10-08 18:48:17.959
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-10-08 18:48:17.959
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info ===========================

Processor: Intel® Core i5-3350P CPU @ 3.10GHz
Percentage of memory in use: 57%
Total physical RAM: 3562.12 MB
Available physical RAM: 1531.07 MB
Total Pagefile: 19248.43 MB
Available Pagefile: 16476.78 MB
Total Virtual: 8192 MB
Available Virtual: 8191.8 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:48.73 GB) (Free:13.13 GB) NTFS
Drive d: () (Fixed) (Total:244.14 GB) (Free:192.9 GB) NTFS
Drive e: () (Fixed) (Total:172.79 GB) (Free:90.35 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 1BDC80D2)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=48.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=244.1 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=172.8 GB) - (Type=07 NTFS)

==================== End Of Log ============================

 

 

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-09-2014
Ran by Rupar (administrator) on RUPAR-KOMPUTER on 26-09-2014 21:28:10
Running from C:\Users\Rupar\Downloads
Loaded Profile: Rupar (Available profiles: Rupar)
Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: Polski (Polska)
Internet Explorer Version 8
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(eRmail Company, s. r. o.) C:\Users\Rupar\AppData\Roaming\eRclient\eRclient.exe
() D:\Programy\RocketDock\RocketDock.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
(InterVideo Inc.) C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe
() C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(Glarysoft Ltd) E:\Programy\Glary Utilities 5\Integrator.exe
(Glarysoft Ltd) E:\Programy\Glary Utilities 5\MemfilesService.exe
(Glarysoft Ltd) E:\Programy\Glary Utilities 5\x64\Win64ShellLink.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
(Glarysoft Ltd) E:\Programy\Glary Utilities 5\memdefrag.exe
(Glarysoft Ltd) E:\Programy\Glary Utilities 5\regdefrag.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcfgex.exe
(Crystal Dew World) C:\Program Files (x86)\CrystalDiskInfo\DiskInfo.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Users\Rupar\AppData\Local\Temp\Rar$EX00.378\paint.net.4.0.3.install.exe
() C:\Users\Rupar\AppData\Local\Temp\PdnSetup\SetupShim.exe
(dotPDN LLC) C:\Users\Rupar\AppData\Local\Temp\PdnSetup\SetupFrontEnd.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM-x32\...\Run: [uSB3MON] => C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648 2012-05-20] (Intel Corporation)
HKLM-x32\...\Run: [iMSS] => C:\Program Files (x86)\Intel\Intel® Management Engine Components\IMSS\PIconStartup.exe [133440 2012-07-19] (Intel Corporation)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5188112 2014-08-25] (AVG Technologies CZ, s.r.o.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKLM\...\Policies\Explorer: [NoInternetOpenWith] 1
HKU\S-1-5-21-4085988556-3215208331-244158764-1000\...\Run: [RocketDock] => D:\Programy\RocketDock\RocketDock.exe [495616 2007-09-02] ()
HKU\S-1-5-21-4085988556-3215208331-244158764-1000\...\Run: [GUDelayStartup] => E:\Programy\Glary Utilities 5\StartupManager.exe [37152 2014-09-15] (Glarysoft Ltd)
BootExecute: autocheck autochk *

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.only-search.com/?babsrc=HP_ss&mntrId=1EA594DE8071E618&affID=129300&tsp=5337
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hp&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type=ds&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hp&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type=ds&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V&q={searchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe http://isearch.omiga-plus.com/?type=sc&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V&q={searchTerms}
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V&q={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V&q={searchTerms}
SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V&q={searchTerms}
SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = http://mysearch.avg.com/search?cid={83861428-5630-448E-AA85-EE4C67D27AB3}&mid=9ce0991b069247d389d64597c6950feb-11b434d2b4349a252b9c85062a2ac7ba7a0b7cba〈=pl&ds=AVG&coid=avgtbavg&cmpid=&pr=fr&d=2014-04-18 21:02:26&v=18.1.6.542&pid=safeguard&sg=&sap=dsp&q={searchTerms}
BHO: TotalPlus01-3.1V18.09 -> {11111111-1111-1111-1111-110611321185} -> C:\Program Files (x86)\TotalPlus01-3.1V18.09\TotalPlus01-3.1V18.09-bho64.dll (HDPlus-01TotalV18.09)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: TotalPlus01-3.1V18.09 -> {11111111-1111-1111-1111-110611321185} -> C:\Program Files (x86)\TotalPlus01-3.1V18.09\TotalPlus01-3.1V18.09-bho.dll (HDPlus-01TotalV18.09)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Pomocnik logowania za pomocą konta Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: AVG SafeGuard toolbar -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.9.786\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM-x32 - AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.9.786\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search)
Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.9\ViProtocol.dll (AVG Secure Search)
Winsock: Catalog5 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Winsock: Catalog5-x64 01 %SystemRoot%\System32\mswsock.dll [326144] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 8.8.4.4 8.8.8.8

FireFox:
========
FF ProfilePath: C:\Users\Rupar\AppData\Roaming\Mozilla\Firefox\Profiles\mc6r4le4.default
FF NewTab: chrome://quick_start/content/index.html
FF DefaultSearchEngine: omiga-plus
FF SelectedSearchEngine: omiga-plus
FF Homepage: hxxp://www.only-search.com/?babsrc=HP_ss&mntrId=1EA594DE8071E618&affID=129300&tsp=5337
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @esn/npbattlelog,version=2.5.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.0\npbattlelogx64.dll (EA Digital Illusions CE AB)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.9\\npsitesafety.dll No File
FF Plugin-x32: @esn/npbattlelog,version=2.5.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.0\npbattlelog.dll (EA Digital Illusions CE AB)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Rupar\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\omiga-plus.xml
FF Extension: TotalPlus01-3.1V18.09 - C:\Users\Rupar\AppData\Roaming\Mozilla\Firefox\Profiles\mc6r4le4.default\Extensions\[email protected] [2014-09-18]
FF Extension: Fast Start - C:\Users\Rupar\AppData\Roaming\Mozilla\Firefox\Profiles\mc6r4le4.default\Extensions\[email protected] [2014-08-14]
FF Extension: ca526f8b9e0a4756907719d6f3e64ea8 - C:\Users\Rupar\AppData\Roaming\Mozilla\Firefox\Profiles\mc6r4le4.default\Extensions\{ca526f8b-9e0a-4756-9077-19d6f3e64ea8} [2014-08-11]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013-08-12]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Users\Rupar\AppData\Roaming\Mozilla\Firefox\Profiles\mc6r4le4.default\extensions\[email protected]
FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF HKCU\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: No Name - C:\Users\Rupar\AppData\Roaming\Mozilla\Firefox\Profiles\mc6r4le4.default\extensions\[email protected] [Not Found]
FF Extension: No Name - C:\Users\Rupar\AppData\Roaming\Mozilla\Firefox\Profiles\mc6r4le4.default\extensions\[email protected] [Not Found]
FF StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://isearch.omiga-plus.com/?type=sc&ts=1405705462&from=ild&uid=ST500DM002-1BD142_Z3TBWY8VXXXXZ3TBWY8V

Chrome:
=======
CHR Profile: C:\Users\Rupar\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Wallet) - C:\Users\Rupar\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-28]
CHR HKLM-x32\...\Chrome\Extension: [pelmeidfhdlhlbjimpabfcbnnojbboma] - C:\Users\Rupar\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv3.crx [2014-07-18]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] ()
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3242000 2014-08-25] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [289328 2014-08-25] (AVG Technologies CZ, s.r.o.)
R2 Capture Device Service; C:\Program Files (x86)\Common Files\InterVideo\DeviceService\DevSvc.exe [198168 2007-03-06] (InterVideo Inc.)
S4 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-09-18] (globalUpdate) [File not signed]
S4 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-09-18] (globalUpdate) [File not signed]
R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [File not signed]
S3 ICCS; C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe [160256 2011-08-30] (Intel Corporation) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [166720 2012-07-05] (Intel Corporation)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2008-12-03] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2008-12-03] (Hewlett-Packard) [File not signed]
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2014-06-29] ()
S4 RemoteAccess; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S4 RemoteAccess; C:\Windows\SysWOW64\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S4 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
S4 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
S4 vToolbarUpdater18.1.9; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.9\ToolbarUpdater.exe [1820184 2014-08-11] (AVG Secure Search)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [38424 2010-10-18] (Google Inc)
R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [22680 2012-10-25] ()
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [152344 2014-06-30] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [244504 2014-07-21] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [190744 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [235800 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [328984 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123672 2014-08-06] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [269080 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50976 2014-08-11] (AVG Technologies)
S3 DFX11_1; C:\Windows\System32\drivers\dfx11_1x64.sys [28008 2012-12-13] (Windows ® Win 7 DDK provider)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-09-04] (Disc Soft Ltd)
S1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [20672 2014-09-26] (Glarysoft Ltd)
S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2014-01-05] ()
S3 VBAudioVACMME; C:\Windows\System32\DRIVERS\vbaudio_cable64_win7.sys [41192 2013-07-11] (Windows ® Win 7 DDK provider)
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-26 21:28 - 2014-09-26 21:29 - 00022845 _____ () C:\Users\Rupar\Downloads\FRST.txt
2014-09-26 21:27 - 2014-09-26 21:27 - 00001186 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk
2014-09-26 21:27 - 2014-09-26 21:27 - 00001174 _____ () C:\Users\Public\Desktop\paint.net.lnk
2014-09-26 21:27 - 2014-09-26 21:27 - 00000000 ____D () C:\Program Files\paint.net
2014-09-26 21:26 - 2014-09-26 21:28 - 00000000 ____D () C:\Users\Rupar\AppData\Local\paint.net
2014-09-26 21:25 - 2014-09-26 21:25 - 06272852 _____ () C:\Users\Rupar\Downloads\paint.net.4.0.3.install.zip
2014-09-26 21:24 - 2014-09-26 21:28 - 00000000 ____D () C:\FRST
2014-09-26 21:24 - 2014-09-26 21:24 - 00747456 _____ ( ) C:\Users\Rupar\Downloads\Paint.NET(12332)-dp (1).exe
2014-09-26 21:20 - 2014-09-26 21:20 - 02108928 _____ (Farbar) C:\Users\Rupar\Downloads\FRST64.exe
2014-09-26 21:20 - 2014-09-26 21:20 - 00001146 _____ () C:\Users\Rupar\Desktop\CrystalDiskInfo.lnk
2014-09-26 21:20 - 2014-09-26 21:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2014-09-26 21:20 - 2014-09-26 21:20 - 00000000 ____D () C:\Program Files (x86)\CrystalDiskInfo
2014-09-26 21:19 - 2014-09-26 21:20 - 02996728 _____ (Crystal Dew World ) C:\Users\Rupar\Downloads\CrystalDiskInfo6_2_1-en.exe
2014-09-26 17:15 - 2014-09-26 17:15 - 00000300 _____ () C:\Windows\setupact.log
2014-09-26 17:15 - 2014-09-26 17:15 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_ICCWDT_01009.Wdf
2014-09-26 17:15 - 2014-09-26 17:15 - 00000000 ____D () C:\Intel
2014-09-26 17:15 - 2014-09-26 17:15 - 00000000 _____ () C:\Windows\setuperr.log
2014-09-26 17:15 - 2012-05-17 03:57 - 00026136 _____ (Intel Corporation) C:\Windows\system32\Drivers\ICCWDT.sys
2014-09-26 17:11 - 2014-09-26 17:11 - 00001076 _____ () C:\Windows\WindowsUpdate.log
2014-09-26 17:09 - 2014-09-26 17:09 - 00003812 _____ () C:\Windows\System32\Tasks\DriverEasy Scheduled Scan
2014-09-26 17:09 - 2014-09-26 17:09 - 00000406 _____ () C:\Windows\Tasks\DriverEasy Scheduled Scan.job
2014-09-26 17:09 - 2014-09-26 17:09 - 00000000 ____D () C:\Users\Rupar\AppData\Roaming\Easeware
2014-09-26 17:09 - 2014-09-26 17:09 - 00000000 ____D () C:\ProgramData\GlarySoft
2014-09-26 17:08 - 2014-09-26 17:08 - 03074008 _____ (Easeware ) C:\Users\Rupar\Downloads\DriverEasy_Setup.exe
2014-09-26 17:06 - 2014-09-26 17:06 - 17903792 _____ (Adobe Systems Incorporated) C:\Users\Rupar\Downloads\Adobe_Flash_Player_(Non_IE)_v15.0.0.152.exe
2014-09-26 17:06 - 2014-09-26 17:06 - 01080480 _____ (Unity Technologies ApS) C:\Users\Rupar\Downloads\Unity_Web_Player_v4.5.2.0.exe
2014-09-26 17:01 - 2014-09-26 17:01 - 00002962 _____ () C:\Windows\System32\Tasks\GU5SkipUAC
2014-09-26 17:01 - 2014-09-26 17:01 - 00000708 _____ () C:\Users\Public\Desktop\Glary Utilities 5.lnk
2014-09-26 17:01 - 2014-09-26 17:01 - 00000708 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk
2014-09-26 17:01 - 2014-09-26 17:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5
2014-09-26 17:00 - 2014-09-26 17:00 - 00020672 _____ (Glarysoft Ltd) C:\Windows\system32\Drivers\GUBootStartup.sys
2014-09-26 17:00 - 2014-09-26 17:00 - 00002618 _____ () C:\Windows\System32\Tasks\GlaryInitialize 5
2014-09-26 17:00 - 2014-09-26 17:00 - 00000310 _____ () C:\Windows\Tasks\GlaryInitialize 5.job
2014-09-26 17:00 - 2014-09-26 17:00 - 00000000 ____D () C:\Users\Rupar\AppData\Roaming\GlarySoft
2014-09-26 17:00 - 2014-09-26 17:00 - 00000000 ____D () C:\Users\Rupar\AppData\Roaming\DiskDefrag
2014-09-26 16:59 - 2014-09-26 16:59 - 14425856 _____ () C:\Users\Rupar\Downloads\Glary Utilities 5.8.0.15 [1].exe
2014-09-25 18:40 - 2014-09-25 18:40 - 00000616 _____ () C:\Users\Public\Desktop\World of Tanks.lnk
2014-09-25 18:39 - 2014-09-25 18:40 - 05965584 _____ (Wargaming.net ) C:\Users\Rupar\Downloads\WoT_internet_install_eu.exe
2014-09-23 17:51 - 2014-09-23 17:51 - 00000000 ____D () C:\Users\Rupar\AppData\Local\Adobe
2014-09-21 19:45 - 2014-09-25 16:48 - 00000000 ____D () C:\Users\Rupar\Documents\Euro Truck Simulator 2
2014-09-21 19:45 - 2014-09-21 19:45 - 00000000 ____D () C:\Users\Rupar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1-click run
2014-09-21 19:42 - 2014-09-21 19:42 - 00000000 ____D () C:\2-click run
2014-09-20 20:08 - 2014-09-20 20:08 - 00000208 _____ () C:\Users\Rupar\Downloads\RootkitRemover_20140920_200853.log
2014-09-20 13:53 - 2014-09-20 13:53 - 00000000 ____D () C:\ProgramData\SystemRequirementsLab
2014-09-20 13:53 - 2014-09-20 13:53 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab
2014-09-18 21:02 - 2014-09-26 21:02 - 00001330 _____ () C:\Windows\Tasks\RI.job
2014-09-18 21:02 - 2014-09-26 17:03 - 00006856 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-4
2014-09-18 21:02 - 2014-09-26 17:03 - 00005828 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-1
2014-09-18 21:02 - 2014-09-26 17:03 - 00005488 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5
2014-09-18 21:02 - 2014-09-26 17:03 - 00005152 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-2
2014-09-18 21:02 - 2014-09-26 17:03 - 00004524 _____ () C:\Windows\System32\Tasks\944feefa-d33a-40b7-8bcb-44de08bf820e
2014-09-18 21:02 - 2014-09-26 17:03 - 00003814 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-4.job
2014-09-18 21:02 - 2014-09-26 17:03 - 00002786 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-1.job
2014-09-18 21:02 - 2014-09-26 17:03 - 00002446 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5_user.job
2014-09-18 21:02 - 2014-09-26 17:03 - 00002446 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5.job
2014-09-18 21:02 - 2014-09-26 17:03 - 00002110 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-2.job
2014-09-18 21:02 - 2014-09-26 17:03 - 00001482 _____ () C:\Windows\Tasks\944feefa-d33a-40b7-8bcb-44de08bf820e.job
2014-09-18 21:02 - 2014-09-18 21:02 - 00004368 _____ () C:\Windows\System32\Tasks\RI
2014-09-18 21:01 - 2014-09-26 21:01 - 00001686 _____ () C:\Windows\Tasks\VIQHFUCG.job
2014-09-18 21:01 - 2014-09-26 17:03 - 00006512 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-7
2014-09-18 21:01 - 2014-09-26 17:03 - 00006510 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-6
2014-09-18 21:01 - 2014-09-26 17:03 - 00003698 _____ () C:\Windows\System32\Tasks\06eb7935-076c-4d08-8a7e-5a56d45c815e
2014-09-18 21:01 - 2014-09-26 17:03 - 00003470 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-7.job
2014-09-18 21:01 - 2014-09-26 17:03 - 00003470 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-6.job
2014-09-18 21:01 - 2014-09-26 17:03 - 00000648 _____ () C:\Windows\Tasks\06eb7935-076c-4d08-8a7e-5a56d45c815e.job
2014-09-18 21:01 - 2014-09-26 16:50 - 00000000 ____D () C:\Program Files (x86)\TotalPlus01-3.1V18.09
2014-09-18 21:01 - 2014-09-23 16:14 - 00004496 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-11.job
2014-09-18 21:01 - 2014-09-23 16:14 - 00003814 _____ () C:\Windows\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-3.job
2014-09-18 21:01 - 2014-09-22 20:17 - 00007538 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-11
2014-09-18 21:01 - 2014-09-22 20:17 - 00006856 _____ () C:\Windows\System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-3
2014-09-18 21:01 - 2014-09-18 21:01 - 00004724 _____ () C:\Windows\System32\Tasks\VIQHFUCG
2014-09-18 20:59 - 2014-09-26 17:12 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-09-18 20:59 - 2014-09-18 20:59 - 00000000 ____D () C:\Users\Rupar\AppData\Roaming\Opera Software
2014-09-18 20:59 - 2014-09-18 20:59 - 00000000 ____D () C:\Users\Rupar\AppData\Local\Opera Software
2014-09-18 20:57 - 2014-09-26 20:57 - 00001334 _____ () C:\Windows\Tasks\SELU.job
2014-09-18 20:57 - 2014-09-18 20:57 - 00004372 _____ () C:\Windows\System32\Tasks\SELU
2014-09-18 20:56 - 2014-09-23 16:14 - 00001338 _____ () C:\Windows\Tasks\NSUROF.job
2014-09-18 20:56 - 2014-09-22 20:17 - 00004388 _____ () C:\Windows\System32\Tasks\NSUROF
2014-09-18 20:56 - 2014-09-20 12:56 - 00000000 ____D () C:\Program Files (x86)\TheHDvid-Codec V10
2014-09-08 20:13 - 2014-09-11 16:01 - 00000000 ____D () C:\Program Files (x86)\usr
2014-09-01 10:48 - 2014-09-01 10:48 - 00000219 _____ () C:\Users\Rupar\Desktop\Dota 2.url
2014-09-01 10:18 - 2014-09-01 10:18 - 00002086 _____ () C:\Users\Rupar\AppData\Roaming\SELU
2014-09-01 10:18 - 2014-09-01 10:18 - 00002086 _____ () C:\Users\Rupar\AppData\Roaming\RI
2014-09-01 10:18 - 2014-09-01 10:18 - 00001248 _____ () C:\Users\Rupar\AppData\Roaming\VIQHFUCG
2014-09-01 10:18 - 2014-09-01 10:18 - 00001248 _____ () C:\Users\Rupar\AppData\Roaming\NSUROF
2014-08-31 14:37 - 2014-08-31 14:37 - 00006704 ____N () C:\bootsqm.dat
2014-08-27 18:51 - 2014-08-27 18:51 - 00000000 __RHD () C:\Users\Rupar\AppData\Roaming\SecuROM

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-26 17:15 - 2013-07-29 11:50 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-09-26 17:12 - 2013-07-29 12:02 - 00000000 ___RD () C:\Users\Rupar\Desktop\Programy
2014-09-26 17:08 - 2013-10-07 20:26 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-26 17:08 - 2013-10-07 20:26 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-26 17:08 - 2013-10-07 20:26 - 00003870 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-26 17:08 - 2013-10-07 20:26 - 00000930 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-09-26 17:02 - 2014-08-16 14:45 - 00003354 _____ () C:\Windows\System32\Tasks\Odkurzacz
2014-09-26 16:54 - 2014-07-29 14:52 - 00000000 ____D () C:\Users\Rupar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-09-26 16:49 - 2014-08-22 11:13 - 00000000 ____D () C:\ProgramData\Freemake
2014-09-26 16:48 - 2014-08-22 11:13 - 00000000 ____D () C:\Program Files (x86)\Freemake
2014-09-26 15:56 - 2009-07-14 06:45 - 00041216 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-26 15:56 - 2009-07-14 06:45 - 00041216 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-26 15:48 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-25 18:40 - 2014-06-06 21:49 - 00000000 ___HD () C:\Windows\msdownld.tmp
2014-09-25 18:40 - 2013-07-29 15:29 - 00000000 ____D () C:\Windows\SysWOW64\directx
2014-09-25 18:40 - 2013-07-29 15:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks
2014-09-25 18:39 - 2013-08-21 15:08 - 00000000 ____D () C:\Users\Rupar\AppData\Roaming\uTorrent
2014-09-22 20:40 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-09-22 20:16 - 2013-07-30 15:21 - 00000000 ___RD () C:\Users\Rupar\Desktop\Gry
2014-09-22 20:14 - 2014-08-22 16:03 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-09-22 20:14 - 2013-08-01 09:11 - 00000000 ____D () C:\Users\Rupar\AppData\Local\CrashDumps
2014-09-22 20:09 - 2010-11-21 14:53 - 00740422 _____ () C:\Windows\system32\perfh015.dat
2014-09-22 20:09 - 2010-11-21 14:53 - 00155996 _____ () C:\Windows\system32\perfc015.dat
2014-09-22 20:09 - 2009-07-14 07:13 - 01670154 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-22 17:25 - 2013-12-17 17:35 - 00000000 ____D () C:\Users\Rupar\Documents\FIFA 14
2014-09-20 22:51 - 2013-10-07 19:25 - 00000000 ____D () C:\ProgramData\Origin
2014-09-20 20:11 - 2013-07-29 11:27 - 00000000 ____D () C:\Users\Rupar\AppData\Local\VirtualStore
2014-09-20 13:30 - 2013-11-26 17:29 - 00000000 ____D () C:\ProgramData\MFAData
2014-09-20 12:20 - 2014-08-11 12:47 - 00000992 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2014-09-20 12:20 - 2014-08-11 12:47 - 00000988 _____ () C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2014-09-18 21:01 - 2014-08-11 12:47 - 00003992 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA
2014-09-18 21:01 - 2014-08-11 12:47 - 00003738 _____ () C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore
2014-09-17 16:53 - 2009-07-14 07:08 - 00032608 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-09-11 16:44 - 2014-06-09 18:37 - 00000000 ____D () C:\Users\Rupar\AppData\Roaming\PhotoScape
2014-09-11 16:01 - 2013-09-24 19:34 - 00000000 ____D () C:\Users\Rupar\Desktop\Rafał
2014-09-11 15:58 - 2014-03-24 15:32 - 00000320 _____ () C:\Windows\SysWOW64\usergui.cfg
2014-09-11 15:58 - 2013-11-26 17:32 - 00001036 _____ () C:\Windows\SysWOW64\userawacs.cfg
2014-09-10 20:22 - 2014-08-05 20:20 - 00000000 ____D () C:\Users\Rupar\AppData\Local\Windows Live
2014-09-07 21:34 - 2013-07-29 11:39 - 00065536 _____ () C:\Windows\system32\spu_storage.bin
2014-09-01 14:46 - 2013-07-29 11:50 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-09-01 10:26 - 2014-05-30 18:55 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins
2014-08-31 18:43 - 2014-05-30 18:55 - 00297088 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr
2014-08-31 18:43 - 2014-05-30 18:39 - 00297088 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2014-08-31 18:41 - 2014-05-30 18:39 - 00280904 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0
2014-08-31 18:38 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-07-30 14:14

==================== End Of Log ============================

 

 

CClear, Odkurzacz, Glary Untitles, AVG, i jeszcze było Analisator Regist(nie pamiętam dokładnie)

post-222166-0-72607300-1411760089_thumb.png

"My World is in your Head..."

 

Pierwszy Polski blog o grze Vampyr:
http://www.czasnawampyr.pl/category/news/

 

 

Zarchiwizowany

Ten temat przebywa obecnie w archiwum. Dodawanie nowych odpowiedzi zostało zablokowane.

×
×
  • Dodaj nową pozycję...