Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-09-2014 Ran by Tomas at 2014-09-20 10:27:29 Running from C:\Users\Tomas\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Kaspersky Internet Security (Disabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Kaspersky Internet Security (Disabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Disabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3A3EE589-1463-4572-AC1F-04FE7BA73D95} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-08-29] (Microsoft Corporation) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6AB6733E-1081-4AF7-8E0C-D207B0738FFB} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {8D38A59E-AE30-4B47-AE6A-C2030B2FFF91} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation Task: {98A9BF72-D5BA-4A86-9D61-947EBE2925AC} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {B543F639-DE11-4E12-85D0-AC8F43A64E35} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation) Task: {B969F6CC-C8FC-4544-9C06-A37486EAE19D} - \AutoKMS No Task File <==== ATTENTION Task: {C71A8AAF-2B80-43DD-9DFE-BD1C92DB3E18} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation) Task: {CBD176AB-6193-49B8-9645-91A07F284AC7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {DCCF7A0C-3189-4F48-95DE-EE9AE7DD95DF} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE ==================== Loaded Modules (whitelisted) ============= ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/20/2014 10:29:36 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2014-10-15T13:17:36Z. Kod błędu: 0x80071A91. Error: (09/20/2014 10:29:06 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2014-10-15T13:17:06Z. Kod błędu: 0x80071A91. Error: (09/20/2014 10:28:36 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2014-10-15T13:17:35Z. Kod błędu: 0x80071A91. Error: (09/20/2014 10:28:05 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2014-10-15T13:17:05Z. Kod błędu: 0x80071A91. Error: (09/20/2014 10:27:35 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2014-10-15T13:17:35Z. Kod błędu: 0x80071A91. Error: (09/20/2014 10:27:05 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2014-10-15T13:17:05Z. Kod błędu: 0x80071A91. Error: (09/20/2014 10:26:35 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2014-10-15T13:17:35Z. Kod błędu: 0x80071A91. Error: (09/20/2014 10:26:05 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2014-10-15T13:17:05Z. Kod błędu: 0x80071A91. Error: (09/20/2014 10:25:35 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2014-10-15T13:17:35Z. Kod błędu: 0x80071A91. Error: (09/20/2014 10:25:05 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2014-10-15T13:17:05Z. Kod błędu: 0x80071A91. System errors: ============= Error: (09/19/2014 10:49:36 PM) (Source: volsnap) (EventID: 14) (User: ) Description: Kopie w tle woluminu C: zostały przerwane z powodu usterki We/Wy w woluminie C:. Error: (09/19/2014 09:06:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Windows Search z powodu następującego błędu: %%1053 Error: (09/19/2014 09:06:25 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Windows Search. Error: (09/19/2014 09:05:53 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Centrum zabezpieczeń zawiesiła się podczas uruchamiania. Error: (09/19/2014 09:01:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa inteligentnego transferu w tle z powodu następującego błędu: %%1053 Error: (09/19/2014 09:01:38 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi BITS. Error: (09/19/2014 08:59:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Agent zasad IPsec z powodu następującego błędu: %%1053 Error: (09/19/2014 08:59:38 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Agent zasad IPsec. Error: (09/19/2014 08:57:52 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Pomoc IP zawiesiła się podczas uruchamiania. Error: (09/19/2014 08:55:22 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą NVIDIA Network Service. Microsoft Office Sessions: ========================= Error: (09/20/2014 10:29:36 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x80071A912014-10-15T13:17:36Z Error: (09/20/2014 10:29:06 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x80071A912014-10-15T13:17:06Z Error: (09/20/2014 10:28:36 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x80071A912014-10-15T13:17:35Z Error: (09/20/2014 10:28:05 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x80071A912014-10-15T13:17:05Z Error: (09/20/2014 10:27:35 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x80071A912014-10-15T13:17:35Z Error: (09/20/2014 10:27:05 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x80071A912014-10-15T13:17:05Z Error: (09/20/2014 10:26:35 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x80071A912014-10-15T13:17:35Z Error: (09/20/2014 10:26:05 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x80071A912014-10-15T13:17:05Z Error: (09/20/2014 10:25:35 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x80071A912014-10-15T13:17:35Z Error: (09/20/2014 10:25:05 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x80071A912014-10-15T13:17:05Z ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-2430M CPU @ 2.40GHz Percentage of memory in use: 38% Total physical RAM: 4009.54 MB Available physical RAM: 2474.26 MB Total Pagefile: 4713.55 MB Available Pagefile: 3311.63 MB Total Virtual: 131072 MB Available Virtual: 131071.78 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:101.76 GB) (Free:74.67 GB) NTFS Drive e: (Tomek) (Fixed) (Total:341.3 GB) (Free:103.57 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 07F3F33C) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=101.8 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=341.3 GB) - (Type=OF Extended) ==================== End Of Log ============================