Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-03-2014 Ran by Micha at 2014-03-05 19:40:50 Running from C:\Users\Micha\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: ESET Smart Security 6.0 (Enabled - Up to date) {77DEAFED-8149-104B-25A1-21771CA47CD1} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: ESET Smart Security 6.0 (Enabled - Up to date) {CCBF4E09-A773-1FC5-1F11-1A056723366C} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Zapora osobista ESET (Enabled) {4FE52EC8-CB26-1113-0EFE-8842E2773BAA} ==================== Installed Programs ====================== µTorrent (HKLM-x32\...\uTorrent) (Version: 3.1.3 - ) 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden ABBYY FineReader 11 (HKLM-x32\...\{F11000FE-0010-0000-0000-074957833700}) (Version: 11.11.194 - ABBYY Production LLC) Ad Muncher v4.91 Build 32562 (HKLM-x32\...\Ad Muncher) (Version: - ) Ad Muncher v4.93.33707 (HKCU\...\Ad Muncher) (Version: - ) Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.70 - Adobe Systems Incorporated) Aktualizacje NVIDIA 6.4.23 (Version: 6.4.23 - NVIDIA Corporation) Hidden Ashampoo Burning Studio 2013 v.11.0.5 (HKLM-x32\...\Ashampoo Burning Studio 2013_is1) (Version: 11.0.5 - Ashampoo GmbH & Co. KG) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.2 - EA Digital Illusions CE AB) BufferChm (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden CCleaner (HKLM\...\CCleaner) (Version: 4.02 - Piriform) Copy (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden Destinations (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden DJ_AIO_03_F2200_Software_Min (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden DocProc (x32 Version: 140.0.185.000 - Hewlett-Packard) Hidden Driver Genius (HKLM-x32\...\Driver Genius_is1) (Version: 12.0 - Driver-Soft Inc.) ESET Smart Security (HKLM\...\{DDD2D4A5-F79E-4605-8CBD-E9FE9B13903F}) (Version: 6.0.306.7 - ESET, spol s r. o.) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) f.lux (HKCU\...\Flux) (Version: - ) F2200 (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden FastStone Image Viewer 4.8 (HKLM-x32\...\FastStone Image Viewer) (Version: 4.8 - FastStone Soft) FileZilla Client 3.7.3 (HKLM-x32\...\FileZilla Client) (Version: 3.7.3 - Tim Kosse) Google Chrome (HKCU\...\Google Chrome) (Version: 33.0.1750.146 - Google Inc.) Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden GPBaseService2 (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Deskjet F2200 All-In-One Driver Software 14.0 Rel. 6 (HKLM\...\{60D6AAC5-FDC1-49BA-867B-3135F4726156}) (Version: 14.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Update (HKLM-x32\...\{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}) (Version: 5.002.006.003 - Hewlett-Packard) HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.0.1428 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.5.0.1066 - Intel Corporation) Intel(R) Rapid Storage Technology (Version: 12.5.0.1066 - Intel Corporation) Hidden Intel® Trusted Connect Service Client (Version: 1.27.798.1 - Intel Corporation) Hidden Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden K-Lite Codec Pack 9.9.0 (64-bit) (HKLM\...\KLiteCodecPack64_is1) (Version: 9.9.0 - ) Komunikator WTW 0.9.10.3377 (HKLM\...\{1DF5019A-68B5-4ba1-8E59-E185C7B7FF11}) (Version: 0.9.10.3377 - K2T.eu) Livestreamer 1.7.2 (HKLM-x32\...\Livestreamer) (Version: - ) Malwarebytes Anti-Malware wersja 1.75.0.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation) MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Microsoft Office Access MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Groove MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Office 64-bit Components 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (Polish) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (Polish) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Nero 11 InfoTool (HKLM-x32\...\{64BEF779-5053-48AF-A3D8-B70EBC1C70E7}) (Version: 11.0.00500 - Nero AG) Nero Core Components 11 (x32 Version: 11.0.15401.1.15 - Nero AG) Hidden Nero InfoTool 11 (x32 Version: 8.0.10400.1.100 - Nero AG) Hidden Nero InfoTool 11 Help (CHM) (x32 Version: 11.0.10000 - Nero AG) Hidden nero.prerequisites.msi (x32 Version: 11.0.20008 - Nero AG) Hidden NVIDIA GeForce Experience 1.5.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.5.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.125.816 - NVIDIA Corporation) Hidden NVIDIA Oprogramowanie systemu PhysX 9.13.0604 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0604 - NVIDIA Corporation) NVIDIA PhysX (x32 Version: 9.13.0604 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.2049 - NVIDIA Corporation) Hidden NVIDIA Sterownik 3D Vision 320.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 320.49 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.24.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.24.2 - NVIDIA Corporation) NVIDIA Sterownik graficzny 320.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 320.49 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 320.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 320.49 - NVIDIA Corporation) NVIDIA Update Components (Version: 6.4.23 - NVIDIA Corporation) Hidden OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP) Opera 12.16 (HKLM-x32\...\Opera 12.16.1860) (Version: 12.16.1860 - Opera Software ASA) Origin (HKLM-x32\...\Origin) (Version: 9.2.1.4399 - Electronic Arts, Inc.) Panel sterowania NVIDIA 320.49 (Version: 320.49 - NVIDIA Corporation) Hidden PITy 2013/2014 (HKLM-x32\...\PITy 2013/2014_is1) (Version: 2.0 - NEONET CONSULTING S.C.) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.14.327.2013 - Realtek) Scan (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) SolutionCenter (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden Status (x32 Version: 140.0.342.000 - Hewlett-Packard) Hidden Toolbox (x32 Version: 140.0.596.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden VLC media player 2.1.2 (HKLM\...\VLC media player) (Version: 2.1.2 - VideoLAN) VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN) WebReg (x32 Version: 140.0.297.017 - Hewlett-Packard) Hidden Win8 x64Components v1.5.6 (HKLM\...\Win8 x64Components_is1) (Version: 1.5.6 - Shark007) WinRAR 4.20 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) World of Tanks (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version: - Wargaming.net) ==================== Restore Points ========================= 17-02-2014 08:23:16 Windows Update 21-02-2014 07:12:36 Windows Update 28-02-2014 09:31:29 Zaplanowany punkt kontrolny 05-03-2014 18:10:17 SPTD setup V1.86 ==================== Hosts content: ========================== 2012-07-26 06:26 - 2012-07-26 06:26 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {289BCD80-DE4F-4089-8886-A2B9645441E8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-21] (Adobe Systems Incorporated) Task: {44B3F1B8-5943-4072-8D8C-A9484676AC44} - \Microsoft\Windows\Live\Roaming\SynchronizeWithStorage No Task File Task: {769F5C01-FAE5-4B4D-9E62-C3AB5CF67F5D} - System32\Tasks\GoogleUpdateTaskMachineUA1cefcdcafdfc4b8 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-19] (Google Inc.) Task: {7B67D0B4-A8A8-401E-9572-18C35E0E5FA6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-05-24] (Piriform Ltd) Task: {7BBF44B0-354A-4248-BD17-3CA407788DF9} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3405716737-3648264401-3583100290-1001Core1ce789bcbb6f6aa => C:\Users\Micha\AppData\Local\Google\Update\GoogleUpdate.exe [2013-05-26] (Google Inc.) Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {A800277E-E202-4492-AD38-3312641CBC04} - \Microsoft\Windows\Live\Roaming\MaintenanceTask No Task File Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {E6373BC4-3C9A-4092-99C9-B894FCE56F4A} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3405716737-3648264401-3583100290-1001UA1cf29635244cc12 => C:\Users\Micha\AppData\Local\Google\Update\GoogleUpdate.exe [2013-05-26] (Google Inc.) Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {FD6E7941-79F0-4DDD-BBFF-6C19203B27C0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-19] (Google Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cefcdcafdfc4b8.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3405716737-3648264401-3583100290-1001Core1ce789bcbb6f6aa.job => C:\Users\Micha\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3405716737-3648264401-3583100290-1001UA1cf29635244cc12.job => C:\Users\Micha\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2010-01-30 01:40 - 2010-01-30 01:40 - 04254560 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2010-01-02 15:42 - 2010-01-02 15:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2013-08-25 13:39 - 2013-08-25 13:56 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2010-01-30 01:41 - 2010-01-30 01:41 - 04254560 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\office14\Cultures\office.odf 2014-03-04 10:07 - 2014-03-02 03:35 - 00051016 _____ () C:\Users\Micha\AppData\Local\Google\Chrome\Application\33.0.1750.146\chrome_elf.dll 2013-08-07 20:25 - 2013-08-07 20:25 - 00093696 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll 2014-03-04 10:07 - 2014-03-02 03:35 - 00716616 _____ () C:\Users\Micha\AppData\Local\Google\Chrome\Application\33.0.1750.146\libglesv2.dll 2014-03-04 10:07 - 2014-03-02 03:35 - 00100168 _____ () C:\Users\Micha\AppData\Local\Google\Chrome\Application\33.0.1750.146\libegl.dll 2014-03-04 10:07 - 2014-03-02 03:35 - 04061000 _____ () C:\Users\Micha\AppData\Local\Google\Chrome\Application\33.0.1750.146\pdf.dll 2014-03-04 10:07 - 2014-03-02 03:35 - 00394568 _____ () C:\Users\Micha\AppData\Local\Google\Chrome\Application\33.0.1750.146\ppGoogleNaClPluginChrome.dll 2014-03-04 10:07 - 2014-03-02 03:35 - 01647432 _____ () C:\Users\Micha\AppData\Local\Google\Chrome\Application\33.0.1750.146\ffmpegsumo.dll 2014-03-04 10:07 - 2014-03-02 03:35 - 13632840 _____ () C:\Users\Micha\AppData\Local\Google\Chrome\Application\33.0.1750.146\PepperFlash\pepflashplayer.dll 2013-06-01 11:38 - 2013-03-20 14:45 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (03/05/2014 07:37:02 PM) (Source: Microsoft-Windows-LoadPerf) (User: ZARZĄDZANIE NT) Description: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The first DWORD in the Data section contains the error code. Error: (03/05/2014 07:37:02 PM) (Source: Microsoft-Windows-LoadPerf) (User: ZARZĄDZANIE NT) Description: The performance strings in the Performance registry value is corrupted when process Performance extension counter provider. The BaseIndex value from the Performance registry is the first DWORD in the Data section, LastCounter value is the second DWORD in the Data section, and LastHelp value is the third DWORD in the Data section. Error: (03/05/2014 07:37:02 PM) (Source: Microsoft-Windows-LoadPerf) (User: ZARZĄDZANIE NT) Description: The performance strings in the Performance registry value is corrupted when process Performance extension counter provider. The BaseIndex value from the Performance registry is the first DWORD in the Data section, LastCounter value is the second DWORD in the Data section, and LastHelp value is the third DWORD in the Data section. Error: (03/05/2014 07:20:48 PM) (Source: Microsoft-Windows-LoadPerf) (User: ZARZĄDZANIE NT) Description: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The first DWORD in the Data section contains the error code. Error: (03/05/2014 07:20:48 PM) (Source: Microsoft-Windows-LoadPerf) (User: ZARZĄDZANIE NT) Description: The performance strings in the Performance registry value is corrupted when process Performance extension counter provider. The BaseIndex value from the Performance registry is the first DWORD in the Data section, LastCounter value is the second DWORD in the Data section, and LastHelp value is the third DWORD in the Data section. Error: (03/05/2014 07:20:48 PM) (Source: Microsoft-Windows-LoadPerf) (User: ZARZĄDZANIE NT) Description: The performance strings in the Performance registry value is corrupted when process Performance extension counter provider. The BaseIndex value from the Performance registry is the first DWORD in the Data section, LastCounter value is the second DWORD in the Data section, and LastHelp value is the third DWORD in the Data section. Error: (03/05/2014 07:10:16 PM) (Source: VSS) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas badania interfejsu IVssWriterCallback. hr = 0x80070005, Odmowa dostępu. . To jest często spowodowane przez niepoprawne ustawienia zabezpieczeń w procesie zapisującym lub żądającym. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {3a0071b8-b17d-4923-967e-e9cfa18c0984} Error: (03/05/2014 02:57:47 PM) (Source: Microsoft-Windows-LoadPerf) (User: ZARZĄDZANIE NT) Description: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The first DWORD in the Data section contains the error code. Error: (03/05/2014 02:57:47 PM) (Source: Microsoft-Windows-LoadPerf) (User: ZARZĄDZANIE NT) Description: The performance strings in the Performance registry value is corrupted when process Performance extension counter provider. The BaseIndex value from the Performance registry is the first DWORD in the Data section, LastCounter value is the second DWORD in the Data section, and LastHelp value is the third DWORD in the Data section. Error: (03/05/2014 02:57:47 PM) (Source: Microsoft-Windows-LoadPerf) (User: ZARZĄDZANIE NT) Description: The performance strings in the Performance registry value is corrupted when process Performance extension counter provider. The BaseIndex value from the Performance registry is the first DWORD in the Data section, LastCounter value is the second DWORD in the Data section, and LastHelp value is the third DWORD in the Data section. System errors: ============= Error: (03/05/2014 07:14:35 PM) (Source: EventLog) (User: ) Description: Poprzednie zamknięcie systemu przy 19:12:01 na ‎2014-‎03-‎05 było nieoczekiwane. Error: (03/04/2014 09:35:48 PM) (Source: DCOM) (User: ZARZĄDZANIE NT) Description: {A677570A-2BA2-4E9A-B2E2-8A02CD8B4FD3} Error: (03/04/2014 09:35:48 PM) (Source: DCOM) (User: ZARZĄDZANIE NT) Description: {A677570A-2BA2-4E9A-B2E2-8A02CD8B4FD3} Error: (03/04/2014 09:25:07 PM) (Source: DCOM) (User: ZARZĄDZANIE NT) Description: {A677570A-2BA2-4E9A-B2E2-8A02CD8B4FD3} Error: (03/04/2014 09:25:07 PM) (Source: DCOM) (User: ZARZĄDZANIE NT) Description: {A677570A-2BA2-4E9A-B2E2-8A02CD8B4FD3} Error: (03/03/2014 06:57:30 PM) (Source: Service Control Manager) (User: ) Description: Usługa Klient zasad grupy nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem. Error: (03/03/2014 05:57:31 PM) (Source: Service Control Manager) (User: ) Description: Usługa Klient zasad grupy nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem. Error: (03/03/2014 04:28:19 PM) (Source: DCOM) (User: Michal) Description: {EA022610-0748-4C24-B229-6C507EBDFDBB} Error: (03/02/2014 01:47:13 PM) (Source: EventLog) (User: ) Description: Poprzednie zamknięcie systemu przy 13:38:19 na ‎2014-‎03-‎02 było nieoczekiwane. Error: (03/02/2014 09:35:30 AM) (Source: nvlddmkm) (User: ) Description: \Device\Video1!06d7(2648) Microsoft Office Sessions: ========================= Error: (03/05/2014 07:37:02 PM) (Source: Microsoft-Windows-LoadPerf)(User: ZARZĄDZANIE NT) Description: WmiApRplWmiApRpl8F2030000E5050000 Error: (03/05/2014 07:37:02 PM) (Source: Microsoft-Windows-LoadPerf)(User: ZARZĄDZANIE NT) Description: Performance163707000000000000000000008F020000 Error: (03/05/2014 07:37:02 PM) (Source: Microsoft-Windows-LoadPerf)(User: ZARZĄDZANIE NT) Description: Performance163707000000000000000000008F020000 Error: (03/05/2014 07:20:48 PM) (Source: Microsoft-Windows-LoadPerf)(User: ZARZĄDZANIE NT) Description: WmiApRplWmiApRpl8F2030000E5050000 Error: (03/05/2014 07:20:48 PM) (Source: Microsoft-Windows-LoadPerf)(User: ZARZĄDZANIE NT) Description: Performance163707000000000000000000008F020000 Error: (03/05/2014 07:20:48 PM) (Source: Microsoft-Windows-LoadPerf)(User: ZARZĄDZANIE NT) Description: Performance163707000000000000000000008F020000 Error: (03/05/2014 07:10:16 PM) (Source: VSS)(User: ) Description: 0x80070005, Odmowa dostępu. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {3a0071b8-b17d-4923-967e-e9cfa18c0984} Error: (03/05/2014 02:57:47 PM) (Source: Microsoft-Windows-LoadPerf)(User: ZARZĄDZANIE NT) Description: WmiApRplWmiApRpl8F2030000E5050000 Error: (03/05/2014 02:57:47 PM) (Source: Microsoft-Windows-LoadPerf)(User: ZARZĄDZANIE NT) Description: Performance163707000000000000000000008F020000 Error: (03/05/2014 02:57:47 PM) (Source: Microsoft-Windows-LoadPerf)(User: ZARZĄDZANIE NT) Description: Performance163707000000000000000000008F020000 ==================== Memory info =========================== Percentage of memory in use: 28% Total physical RAM: 8143.79 MB Available physical RAM: 5813.1 MB Total Pagefile: 9359.79 MB Available Pagefile: 6358.23 MB Total Virtual: 8192 MB Available Virtual: 8191.76 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:97.56 GB) (Free:24.47 GB) NTFS Drive d: (Nowy) (Fixed) (Total:465.76 GB) (Free:465.6 GB) NTFS Drive e: () (Fixed) (Total:833.85 GB) (Free:111.48 GB) NTFS Drive g: (KINGSTON) (Removable) (Total:29.31 GB) (Free:10.67 GB) NTFS Drive h: (SWEEX MP3) (Removable) (Total:0.46 GB) (Free:0.45 GB) FAT Drive i: () (Removable) (Total:7.53 GB) (Free:5.79 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 3D9373E2) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=98 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=834 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 5559A0D3) Partition 1: (Not Active) - (Size=466 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows XP) (Size: 29 GB) (Disk ID: C3072E18) Partition: GPT Partition Type. Attempted reading MBR returned 0 bytes. Could not read MBR for disk 3. ======================================================== Disk: 4 (MBR Code: Windows XP) (Size: 8 GB) (Disk ID: C3072E18) Partition: GPT Partition Type. ==================== End Of Log ============================