Additional scan result of Farbar Recovery Scan Tool (x86) Version:11-05-2014 01 Ran by biuro3 at 2014-05-13 17:49:46 Running from C:\Users\biuro3\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== 2007 Microsoft Office system (HKLM\...\PROHYBRIDR) (Version: 12.0.6612.1000 - Microsoft Corporation) 32 Bit HP CIO Components Installer (Version: 8.1.4 - Hewlett-Packard) Hidden 7-Zip 9.20 (HKLM\...\7-Zip) (Version: - ) Adobe Flash Player 13 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 13.0.0.206 - Adobe Systems Incorporated) Adobe Flash Player 13 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 13.0.0.206 - Adobe Systems Incorporated) Adobe Reader X (10.1.9) - Polish (HKLM\...\{AC76BA86-7AD7-1045-7B44-AA1000000001}) (Version: 10.1.9 - Adobe Systems Incorporated) Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0415-0000-0000000FF1CE}_PROHYBRIDR_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0415-0000-0000000FF1CE}_PROHYBRIDR_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0415-0000-0000000FF1CE}_PROHYBRIDR_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version: - Microsoft) Ashampoo Burning Studio 2013 v.11.0.6 (HKLM\...\{91B33C97-0FBA-74AE-E802-D782F5C8AA89}_is1) (Version: 11.0.6 - Ashampoo GmbH & Co. KG) Ashampoo Burning Studio 2014 v.12.0.5 (HKLM\...\{91B33C97-280F-B76D-E27B-E712D7041B76}_is1) (Version: 12.0.5 - Ashampoo GmbH & Co. KG) avast! Free Antivirus (HKLM\...\avast) (Version: 9.0.2018 - Avast Software) CCleaner (HKLM\...\CCleaner) (Version: 4.02 - Piriform) CDex - Open Source Digital Audio CD Extractor (HKLM\...\CDex) (Version: 1.70.4.2009 - Georgy Berdyshev) ChomikBox (HKLM\...\{26050F54-3928-4D9C-849A-C48A9E831E6F}) (Version: 2.0.5.0 - Chomikuj.pl) Cobian Backup 10 (HKLM\...\CobBackup10) (Version: - ) CustomerResearchQFolder (Version: 1.00.0000 - Hewlett-Packard) Hidden DeviceDiscovery (Version: 90.0.146.000 - Hewlett-Packard) Hidden DeviceManagementQFolder (Version: 1.00.0000 - Hewlett-Packard) Hidden Dropbox (HKCU\...\Dropbox) (Version: 2.6.24 - Dropbox, Inc.) Foxit Reader (HKLM\...\Foxit Reader_is1) (Version: 6.0.2.413 - Foxit Corporation) GestHotel 5.2 (HKLM\...\{BD305E2B-47EB-4D8A-9B90-1F536D1C3154}) (Version: 5.2.40 - Your Company Name) GIMP 2.8.6 (HKLM\...\GIMP-2_is1) (Version: 2.8.6 - The GIMP Team) Google Chrome (HKLM\...\Google Chrome) (Version: 32.0.1700.102 - Google Inc.) Google Update Helper (Version: 1.3.22.3 - Google Inc.) Hidden GS-Supporter 1.80 (HKLM\...\{5F189DF5-2D05-472B-9091-84D9848AE48B}{fe885e3d}) (Version: - Verified Publisher) <==== ATTENTION HP Customer Participation Program 9.0 (HKLM\...\HPExtendedCapabilities) (Version: 9.0 - HP) HP LaserJet M1522 MFP Series 4.2 (HKLM\...\{C8A37F1F-E13B-48ae-93F8-4669264969F9}) (Version: 4.2 - HP) HP LaserJet Professional M1530 MFP Series (HKLM\...\{74280B5D-A0AF-46c5-9C85-D9EA078262F1}) (Version: - Hewlett-Packard) HP LJ M1530 MFP Series HP Scan (HKLM\...\{C05002F1-06F8-4A15-B6F8-E4DC655C28AA}) (Version: 1.0.302.0 - Hewlett-Packard Co.) HP Update (HKLM\...\{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}) (Version: 5.002.006.003 - Hewlett-Packard) HPLaserJetHelp_LearnCenter (HKLM\...\{B2AA0F22-E167-4C4A-BAE2-E0025028E61B}) (Version: 1.02.0000 - Hewlett-Packard) HPLJUT (Version: 1.00.0012 - HP) Hidden hppFaxDrvM1522 (Version: 003.100.00001 - Hewlett-Packard) Hidden hppFaxDrvM1530 (Version: 003.000.00001 - Hewlett-Packard) Hidden hppFaxUtility (Version: 000.105.00107 - Hewlett-Packard) Hidden hppFaxUtilityM1530 (Version: 000.002.00001 - Hewlett-Packard) Hidden hppFonts (Version: 001.001.00056 - Hewlett-Packard) Hidden hppLaserJetService (Version: 002.015.00599 - Hewlett-Packard) Hidden hppLJM1522 (Version: 002.101.00002 - Hewlett-Packard) Hidden hppM1530LaserJetService (Version: 001.008.00477 - Hewlett-Packard) Hidden hppManualsM1522 (Version: 002.103.00002 - Hewlett-Packard) Hidden hppScanTo (Version: 002.102.00003 - Hewlett-Packard) Hidden hppSendFaxM1522 (Version: 003.000.00001 - Hewlett-Packard) Hidden hppSendFaxM1530 (Version: 003.000.00001 - Hewlett-Packard) Hidden hppTLBXFXM1522 (Version: 001.005.00009 - Hewlett-Packard) Hidden hppTLBXFXM1530 (Version: 001.012.00948 - Hewlett-Packard) Hidden hppusgM1522 (Version: 000.000.00004 - Hewlett-Packard) Hidden HPSSupply (HKLM\...\{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}) (Version: 2.2.0.0000 - Hewlett Packard Development Company L.P.) hpzTLBXFX (Version: 006.015.01163 - Hewlett-Packard) Hidden I.R.I.S. OCR (HKLM\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP) IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.36 - Irfan Skiljan) Java 7 Update 45 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.450 - Oracle) Magical Jelly Bean KeyFinder (HKLM\...\KeyFinder_is1) (Version: 2.0.10.9 - Magical Jelly Bean) Malwarebytes Anti-Malware wersja 1.75.0.1300 (HKLM\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation) MarketResearch (Version: 90.0.146.000 - Hewlett-Packard) Hidden Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (PLK) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden Microsoft Office Access MUI (Polish) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Enterprise 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (Polish) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Groove MUI (Polish) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (Polish) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (Polish) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (Polish) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (Polish) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Hybrid 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Polish) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (Polish) 2007 (Version: 12.0.4518.1020 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (Version: - Microsoft) Hidden Microsoft Office Publisher MUI (Polish) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (Polish) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (Polish) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs (HKLM\...\{90120000-00B2-0409-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Mozilla Firefox 29.0.1 (x86 pl) (HKLM\...\Mozilla Firefox 29.0.1 (x86 pl)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 24.5.0 - Mozilla) Mozilla Thunderbird 24.5.0 (x86 pl) (HKLM\...\Mozilla Thunderbird 24.5.0 (x86 pl)) (Version: 24.5.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) ODIR (HKLM\...\ODIR_is1) (Version: - Vaita) OpenOffice.org 3.4.1 (HKLM\...\{9E3E3D64-5A2A-4CEF-A500-EB71188DBA90}) (Version: 3.41.9593 - Apache Software Foundation) Product_Min_QFolder (Version: 1.00.0000 - Hewlett-Packard) Hidden Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6069 - Realtek Semiconductor Corp.) SDK Version 9.24 (HKLM\...\SDK Version 9.24) (Version: - ) SetIP (HKLM\...\{1DD46A1B-06E7-4147-9E5B-0EACB056BD65}) (Version: 1.00.000 - Xerox) Skanowanie sieciowe (HKLM\...\{9C5725B7-2219-410C-A364-90767F71F00C}) (Version: - ) SnadBoy's Revelation v2 (HKLM\...\SnadBoy's Revelation v2) (Version: 2.0.1.100 - SnadBoy Software) Spelling Dictionaries Support For Adobe Reader 9 (HKLM\...\{AC76BA86-7AD7-5464-3428-900000000004}) (Version: 9.0.0 - Adobe Systems Incorporated) SystemDiagnostics (HKLM\...\{EF59DB7F-7426-426E-B862-7031F83ED304}) (Version: 2.04.0006 - Fujitsu Technology Solutions) TightVNC (HKLM\...\{D903B276-81AE-4AED-AEF9-45DACFBF16CE}) (Version: 2.7.10.0 - GlavSoft LLC.) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6FAA03BD-2B51-4029-9AD9-64A3B8E3C84C}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6FAA03BD-2B51-4029-9AD9-64A3B8E3C84C}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM\...\{90120000-001A-0415-0000-0000000FF1CE}_PROHYBRIDR_{840D15BD-72E8-4710-ABDD-8E883B88BD5D}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{53DEC068-4690-4F6B-9946-7D21EF02236B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{53DEC068-4690-4F6B-9946-7D21EF02236B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2878297) 32-Bit Edition (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{9B1DEEA3-B4ED-49F0-9EF7-4A820EEEA7F1}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2878297) 32-Bit Edition (HKLM\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{9B1DEEA3-B4ED-49F0-9EF7-4A820EEEA7F1}) (Version: - Microsoft) WebReg (Version: 90.0.146.000 - Hewlett-Packard) Hidden WinaXe (HKLM\...\{48746779-3E47-4CBF-900F-F4CF5E609E7F}) (Version: 7.6 - LabF.com) Xerox Phaser 3300MFP (HKLM\...\Xerox Phaser 3300MFP) (Version: - ) ==================== Restore Points ========================= 08-04-2014 06:35:30 Windows Update 08-04-2014 22:50:21 avast! antivirus system restore point 09-04-2014 04:03:51 Windows Update 14-04-2014 07:59:41 Installed TightVNC 15-04-2014 16:52:32 Windows Update 18-04-2014 21:47:27 Windows Update 22-04-2014 22:59:03 Windows Update 29-04-2014 21:27:23 Windows Update 30-04-2014 01:00:13 Windows Update 03-05-2014 01:00:22 Windows Update 06-05-2014 16:04:05 Windows Update 07-05-2014 14:40:49 SnadBoy's Revelation v2 Installation 08-05-2014 21:13:30 avast! antivirus system restore point 09-05-2014 21:29:11 Windows Update 13-05-2014 07:15:15 Windows Update ==================== Hosts content: ========================== 2010-10-26 16:58 - 2009-06-10 23:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {01F83FDF-7BD3-48F1-9CDC-83355D51695E} - System32\Tasks\{BCA0191C-0EA8-433A-8C89-E8EC7587D18B} => C:\Users\Public\Program Files\LabF.com\WinaXe\xstartup.exe [2008-06-26] () Task: {3257F8E9-3439-47A1-949E-59D82FF6C3BA} - System32\Tasks\HPLJCustParticipation => C:\Program Files\HP\HPLJUT\HPLJUTSCH.exe [2010-09-22] (Hewlett Packard) Task: {36FD8DA6-140C-46E5-82A4-0363F68F3EA3} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv => C:\Windows\TEMP\{2BF7B26D-26E9-4F1A-9B50-3AC2925FDE72}.exe Task: {6003149D-578C-437E-B4FC-C88CE544DA04} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv => C:\Windows\TEMP\{5A68BDB3-3B7C-456B-A8EF-5230525DD098}.exe Task: {6C41B388-41BE-4C77-A3D9-8D91A21859C9} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {7A5B228A-DA8D-4A37-A11B-FF3AC3444608} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-09-17] (Google Inc.) Task: {98D5C45F-7AA2-4D21-8F43-5936D8A053BA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-09-17] (Google Inc.) Task: {B2A82435-FF82-4D16-B334-1E4E507903B4} - System32\Tasks\avast! Emergency Update => C:\Program Files\Alwil Software\Avast5\AvastEmUpdate.exe [2014-05-08] (AVAST Software) Task: {E1E76357-CEDA-4272-8068-CEDBF4ECB997} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-04-29] (Adobe Systems Incorporated) Task: {F855359F-0D31-4514-9F96-FEEFD878A6DF} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-05-24] (Piriform Ltd) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job => C:\Windows\TEMP\{5A68BDB3-3B7C-456B-A8EF-5230525DD098}.exe Task: C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job => C:\Windows\TEMP\{2BF7B26D-26E9-4F1A-9B50-3AC2925FDE72}.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-05-08 23:12 - 2014-05-08 23:12 - 02253312 _____ () C:\Program Files\Alwil Software\Avast5\defs\14050801\algo.dll 2014-05-13 14:12 - 2014-05-13 14:12 - 02253312 _____ () C:\Program Files\Alwil Software\Avast5\defs\14051301\algo.dll 2010-10-06 19:16 - 2008-06-05 07:45 - 00026624 _____ () C:\Windows\System32\ssh1ml3.dll 2007-11-12 12:00 - 2007-11-12 12:00 - 00022723 _____ () C:\Windows\System32\sxp2ml3.dll 2010-10-06 19:19 - 2010-02-10 09:29 - 00094208 _____ () C:\Windows\System32\XeroxFaxPort.dll 2014-01-14 18:44 - 2014-01-14 18:44 - 19336120 _____ () C:\Program Files\Alwil Software\Avast5\libcef.dll 2010-10-25 14:36 - 2010-10-25 14:36 - 00119864 _____ () C:\Program Files\HP\ToolboxFX\bin\nativeutils.dll 2010-10-06 12:43 - 2010-10-06 12:43 - 00226872 _____ () C:\Program Files\HP\ToolboxFX\bin\pl\HPAppTools.resources.dll 2010-10-06 12:43 - 2010-10-06 12:43 - 00513592 _____ () C:\Program Files\HP\ToolboxFX\bin\pl\Alerts.resources.dll 2010-10-06 12:43 - 2010-10-06 12:43 - 00284216 _____ () C:\Program Files\HP\ToolboxFX\bin\pl\FrameworkUI.resources.dll 2010-10-06 12:43 - 2010-10-06 12:43 - 04470328 _____ () C:\Program Files\HP\ToolboxFX\bin\pl\HPLaserJet.resources.dll 2014-03-26 19:32 - 2009-04-03 14:28 - 00098304 _____ () C:\Windows\system32\KewlButtonz.ocx 2010-09-21 15:59 - 2008-07-25 15:50 - 01389568 _____ () C:\Users\Public\Program Files\LabF.com\WinaXe\xserver.exe 2010-09-21 15:59 - 2008-06-05 16:19 - 00015360 _____ () C:\Users\Public\Program Files\LabF.com\WinaXe\sen_api.dll 2010-09-21 15:59 - 2008-06-26 19:30 - 00258048 _____ () C:\Users\Public\Program Files\LabF.com\WinaXe\lbxdll.dll 2010-09-21 15:59 - 2010-09-21 15:59 - 00200704 _____ () C:\Users\Public\Program Files\LabF.com\WinaXe\xwpdllid.dll 2010-09-21 15:59 - 2008-06-26 19:30 - 00627712 _____ () C:\Users\Public\Program Files\LabF.com\WinaXe\cfbxxdll.dll 2010-09-21 15:59 - 2008-06-26 19:47 - 00036864 _____ () C:\Users\Public\Program Files\LabF.com\WinaXe\xwpwsock.dll 2014-01-29 03:43 - 2014-01-23 07:56 - 00715544 _____ () C:\Program Files\Google\Chrome\Application\32.0.1700.102\libglesv2.dll 2014-01-29 03:43 - 2014-01-23 07:56 - 00100120 _____ () C:\Program Files\Google\Chrome\Application\32.0.1700.102\libegl.dll 2014-01-29 03:43 - 2014-01-23 07:56 - 04055320 _____ () C:\Program Files\Google\Chrome\Application\32.0.1700.102\pdf.dll 2014-01-29 03:43 - 2014-01-23 07:57 - 00399640 _____ () C:\Program Files\Google\Chrome\Application\32.0.1700.102\ppGoogleNaClPluginChrome.dll 2014-01-29 03:42 - 2014-01-23 07:55 - 01634584 _____ () C:\Program Files\Google\Chrome\Application\32.0.1700.102\ffmpegsumo.dll 2014-02-19 13:55 - 2014-02-19 13:55 - 13632904 _____ () C:\Users\biuro3\AppData\Local\Google\Chrome\User Data\PepperFlash\12.0.0.70\pepflashplayer.dll 2012-03-08 23:24 - 2011-11-11 01:47 - 01718784 _____ () C:\Windows\system32\spool\DRIVERS\W32X86\3\hpmsn118.dll 2013-07-10 18:07 - 2013-07-10 18:07 - 00756888 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL 2009-02-26 14:46 - 2009-02-26 14:46 - 00064344 _____ () C:\Program Files\Microsoft Office\Office12\ADDINS\ColleagueImport.dll 2011-06-22 12:46 - 2011-06-22 12:46 - 00434016 _____ () C:\Program Files\Microsoft Office\Office12\ADDINS\UmOutlookAddin.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData\TEMP:373E1720 ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupfolder: C:^Users^biuro3^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.2.lnk => C:\Windows\pss\OpenOffice.org 3.2.lnk.Startup MSCONFIG\startupfolder: C:^Users^biuro3^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk => C:\Windows\pss\OpenOffice.org 3.4.1.lnk.Startup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" MSCONFIG\startupreg: avast5 => "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui MSCONFIG\startupreg: BrStsWnd => C:\Program Files\Brownie\BrstsWnd.exe Autorun MSCONFIG\startupreg: ELBERT_XRX_S2P => C:\Program Files\Xerox\Xerox Phaser 3300MFP\PSU\Scan2pc.exe MSCONFIG\startupreg: Gadu-Gadu 10 => "C:\Gadu-Gadu 10\gg.exe" MSCONFIG\startupreg: GestHotel_TCPIP => C:\Program Files\Omnitec\GestHotel\GestHotel_TCPIP.exe MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe MSCONFIG\startupreg: HP LaserJet M1522 MFP Series Fax => C:\Program Files\HP\hp LaserJet M1522\hppfaxprintersrv.exe "HP LaserJet M1522 MFP Series Fax" MSCONFIG\startupreg: HPUsageTracking => "C:\Program Files\HP\HP UT\bin\hppusg.exe" "C:\Program Files\HP\HP UT\" MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe MSCONFIG\startupreg: NSCSysTrayUI_XEROX => "C:\Program Files\XEROX\NetworkScan\NSCSysUI_XEROX.exe" /HIDEUI MSCONFIG\startupreg: Optimizer Pro => C:\Program Files\Optimizer Pro\OptProLauncher.exe MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: swg => "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" MSCONFIG\startupreg: ToolBoxFX => "C:\Program Files\HP\ToolBoxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on MSCONFIG\startupreg: Xerox PanelMgr => C:\Windows\Xerox\PanelMgr\SSMMgr.exe /autorun MSCONFIG\startupreg: XeroxEndeavorBackgroundTask => rundll32.exe xrWCbgnd.dll,LaunchBgTask 1 ==================== Faulty Device Manager Devices ============= Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (05/13/2014 05:48:28 PM) (Source: Application Hang) (User: ) (EventID: 1002) Description: Program iexplore.exe w wersji 9.0.8112.16545 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 1460 Godzina rozpoczęcia: 01cf6c568b556f6a Godzina zakończenia: 3383 Ścieżka aplikacji: C:\Program Files\Internet Explorer\iexplore.exe Identyfikator raportu: e5494456-dab5-11e3-ae4b-0019998b69d5 Error: (05/13/2014 00:10:20 PM) (Source: Microsoft-Windows-LoadPerf) (User: ZARZĄDZANIE NT) (EventID: 3011) Description: Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error: (05/13/2014 00:10:20 PM) (Source: Microsoft-Windows-LoadPerf) (User: ZARZĄDZANIE NT) (EventID: 3012) Description: Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error: (05/13/2014 00:10:20 PM) (Source: Microsoft-Windows-LoadPerf) (User: ZARZĄDZANIE NT) (EventID: 3012) Description: Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error: (05/13/2014 01:52:26 AM) (Source: Application Error) (User: ) (EventID: 1000) Description: Nazwa aplikacji powodującej błąd: OUTLOOK.EXE, wersja: 12.0.6691.5000, sygnatura czasowa: 0x52e8c57c Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0020f4ec Identyfikator procesu powodującego błąd: 0xa30 Godzina uruchomienia aplikacji powodującej błąd: 0xOUTLOOK.EXE0 Ścieżka aplikacji powodującej błąd: OUTLOOK.EXE1 Ścieżka modułu powodującego błąd: OUTLOOK.EXE2 Identyfikator raportu: OUTLOOK.EXE3 Error: (05/12/2014 04:38:58 PM) (Source: Application Error) (User: ) (EventID: 1000) Description: Nazwa aplikacji powodującej błąd: EXCEL.EXE, wersja: 12.0.6683.5002, sygnatura czasowa: 0x520bb25f Nazwa modułu powodującego błąd: EXCEL.EXE, wersja: 12.0.6683.5002, sygnatura czasowa: 0x520bb25f Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0003a33b Identyfikator procesu powodującego błąd: 0x24c Godzina uruchomienia aplikacji powodującej błąd: 0xEXCEL.EXE0 Ścieżka aplikacji powodującej błąd: EXCEL.EXE1 Ścieżka modułu powodującego błąd: EXCEL.EXE2 Identyfikator raportu: EXCEL.EXE3 Error: (05/10/2014 00:08:49 AM) (Source: Application Error) (User: ) (EventID: 1000) Description: Nazwa aplikacji powodującej błąd: EXCEL.EXE, wersja: 12.0.6683.5002, sygnatura czasowa: 0x520bb25f Nazwa modułu powodującego błąd: EXCEL.EXE, wersja: 12.0.6683.5002, sygnatura czasowa: 0x520bb25f Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000291fe Identyfikator procesu powodującego błąd: 0xc1c Godzina uruchomienia aplikacji powodującej błąd: 0xEXCEL.EXE0 Ścieżka aplikacji powodującej błąd: EXCEL.EXE1 Ścieżka modułu powodującego błąd: EXCEL.EXE2 Identyfikator raportu: EXCEL.EXE3 Error: (05/10/2014 00:08:34 AM) (Source: Application Error) (User: ) (EventID: 1000) Description: Nazwa aplikacji powodującej błąd: EXCEL.EXE, wersja: 12.0.6683.5002, sygnatura czasowa: 0x520bb25f Nazwa modułu powodującego błąd: EXCEL.EXE, wersja: 12.0.6683.5002, sygnatura czasowa: 0x520bb25f Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0003a33b Identyfikator procesu powodującego błąd: 0xc1c Godzina uruchomienia aplikacji powodującej błąd: 0xEXCEL.EXE0 Ścieżka aplikacji powodującej błąd: EXCEL.EXE1 Ścieżka modułu powodującego błąd: EXCEL.EXE2 Identyfikator raportu: EXCEL.EXE3 Error: (05/09/2014 05:00:21 PM) (Source: VSS) (User: ) (EventID: 8194) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas badania interfejsu IVssWriterCallback. hr = 0x80070005, Odmowa dostępu. . To jest często spowodowane przez niepoprawne ustawienia zabezpieczeń w procesie zapisującym lub żądającym. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {a8389f27-63c5-4559-a118-582dfb0a6a68} Error: (05/09/2014 04:03:26 PM) (Source: Application Error) (User: ) (EventID: 1000) Description: Nazwa aplikacji powodującej błąd: EXCEL.EXE, wersja: 12.0.6683.5002, sygnatura czasowa: 0x520bb25f Nazwa modułu powodującego błąd: EXCEL.EXE, wersja: 12.0.6683.5002, sygnatura czasowa: 0x520bb25f Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0003a33b Identyfikator procesu powodującego błąd: 0xe24 Godzina uruchomienia aplikacji powodującej błąd: 0xEXCEL.EXE0 Ścieżka aplikacji powodującej błąd: EXCEL.EXE1 Ścieżka modułu powodującego błąd: EXCEL.EXE2 Identyfikator raportu: EXCEL.EXE3 System errors: ============= Error: (05/09/2014 09:58:10 AM) (Source: Service Control Manager) (User: ) (EventID: 7031) Description: Usługa Update webget niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (05/09/2014 09:58:02 AM) (Source: Service Control Manager) (User: ) (EventID: 7031) Description: Usługa Util webget niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (05/09/2014 00:21:55 AM) (Source: Service Control Manager) (User: ) (EventID: 7000) Description: Nie można uruchomić usługi CLCV0 z powodu następującego błędu: %%193 Error: (05/09/2014 00:21:53 AM) (Source: Service Control Manager) (User: ) (EventID: 7000) Description: Nie można uruchomić usługi Computer Backup (MyPC Backup) z powodu następującego błędu: %%1053 Error: (05/09/2014 00:21:53 AM) (Source: Service Control Manager) (User: ) (EventID: 7009) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Computer Backup (MyPC Backup). Error: (05/08/2014 02:31:31 AM) (Source: Service Control Manager) (User: ) (EventID: 7000) Description: Nie można uruchomić usługi CLCV0 z powodu następującego błędu: %%193 Error: (05/06/2014 00:17:32 AM) (Source: Service Control Manager) (User: ) (EventID: 7000) Description: Nie można uruchomić usługi CLCV0 z powodu następującego błędu: %%193 Error: (04/29/2014 03:44:58 PM) (Source: Service Control Manager) (User: ) (EventID: 7000) Description: Nie można uruchomić usługi CLCV0 z powodu następującego błędu: %%193 Error: (04/24/2014 02:16:11 AM) (Source: Service Control Manager) (User: ) (EventID: 7000) Description: Nie można uruchomić usługi CLCV0 z powodu następującego błędu: %%193 Error: (04/22/2014 08:07:28 AM) (Source: Service Control Manager) (User: ) (EventID: 7000) Description: Nie można uruchomić usługi CLCV0 z powodu następującego błędu: %%193 Microsoft Office Sessions: ========================= Error: (05/12/2014 04:38:56 PM) (Source: Microsoft Office 12 Sessions) (User: ) (EventID: 7001) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 232198 seconds with 20520 seconds of active time. This session ended with a crash. Error: (05/10/2014 00:08:48 AM) (Source: Microsoft Office 12 Sessions) (User: ) (EventID: 7001) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 18493 seconds with 2400 seconds of active time. This session ended with a crash. Error: (05/09/2014 04:03:25 PM) (Source: Microsoft Office 12 Sessions) (User: ) (EventID: 7001) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 49517 seconds with 960 seconds of active time. This session ended with a crash. Error: (05/05/2014 11:24:34 PM) (Source: Microsoft Office 12 Sessions) (User: ) (EventID: 7001) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 143638 seconds with 11520 seconds of active time. This session ended with a crash. Error: (04/30/2014 00:12:59 AM) (Source: Microsoft Office 12 Sessions) (User: ) (EventID: 7001) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 29862 seconds with 3300 seconds of active time. This session ended with a crash. Error: (04/29/2014 03:22:15 PM) (Source: Microsoft Office 12 Sessions) (User: ) (EventID: 7001) Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6691.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 75387 seconds with 10500 seconds of active time. This session ended with a crash. Error: (04/27/2014 03:43:10 AM) (Source: Microsoft Office 12 Sessions) (User: ) (EventID: 7001) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 65978 seconds with 4200 seconds of active time. This session ended with a crash. Error: (04/24/2014 11:41:24 PM) (Source: Microsoft Office 12 Sessions) (User: ) (EventID: 7001) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 24224 seconds with 2400 seconds of active time. This session ended with a crash. Error: (04/21/2014 06:54:49 AM) (Source: Microsoft Office 12 Sessions) (User: ) (EventID: 7001) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 105 seconds with 60 seconds of active time. This session ended with a crash. Error: (04/21/2014 06:52:00 AM) (Source: Microsoft Office 12 Sessions) (User: ) (EventID: 7001) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6683.5002, Microsoft Office Version: 12.0.6612.1000. This session lasted 79906 seconds with 2940 seconds of active time. This session ended with a crash. ==================== Memory info =========================== Percentage of memory in use: 56% Total physical RAM: 1919.61 MB Available physical RAM: 827.89 MB Total Pagefile: 4565.88 MB Available Pagefile: 2642.11 MB Total Virtual: 2047.88 MB Available Virtual: 1900.23 MB ==================== Drives ================================ Drive c: (System) (Fixed) (Total:294 GB) (Free:136.72 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (Dysk) (Fixed) (Total:169.75 GB) (Free:137.44 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: D22F9EB7) Partition 1: (Active) - (Size=2 GB) - (Type=27) Partition 2: (Not Active) - (Size=294 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=170 GB) - (Type=07 NTFS) ==================== End Of Log ============================