Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-09-2014 Ran by Izabela at 2014-09-21 03:27:10 Running from C:\Users\Izabela\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.179 - Adobe Systems Incorporated) Adobe Reader XI (11.0.09) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated) Aktualizacje NVIDIA 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden Apple Mobile Device Support (HKLM\...\{6AF2AC2A-3532-43FD-9F4D-BDC9C0D724C7}) (Version: 7.1.2.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) FastStone Image Viewer 5.1 (HKLM-x32\...\FastStone Image Viewer) (Version: 5.1 - FastStone Soft) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 37.0.2062.120 - Google Inc.) Google Drive (HKLM-x32\...\{C6640705-7479-4EE5-BC86-879F05F65E74}) (Version: 1.17.7290.4094 - Google, Inc.) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{0EC7F9CC-4741-45AE-9F55-6E9343F726F5}) (Version: 1.1.0.36960 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.20.1447 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.28.487.1 - Intel Corporation) Hidden iPod for Windows 2005-09-23 (HKLM-x32\...\InstallShield_{D4936AAF-FFD0-44A1-A7EA-A2DB41CEB5BC}) (Version: 4.3.0 - Apple Computer, Inc.) iPod for Windows 2005-09-23 (x32 Version: 4.3.0 - Apple Computer, Inc.) Hidden iTunes (HKLM\...\{77DE5105-D05E-448C-96CB-7FA381903753}) (Version: 11.3.1.2 - Apple Inc.) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 32.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 32.0.2 (x86 pl)) (Version: 32.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.0 - Mozilla) Mozilla Thunderbird 31.1.1 (x86 pl) (HKLM-x32\...\Mozilla Thunderbird 31.1.1 (x86 pl)) (Version: 31.1.1 - Mozilla) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Nero 9 Essentials (HKLM-x32\...\{6f0153f3-7b8f-4d12-bee9-be5989335ca1}) (Version: - Nero AG) neroxml (x32 Version: 1.0.0 - Nero AG) Hidden NetCrawl (HKLM\...\NetCrawl) (Version: 2014.07.03.195520 - NetCrawl) <==== ATTENTION NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden NVIDIA Oprogramowanie systemu PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA Optimus Update 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden NVIDIA ShadowPlay 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden NVIDIA Sterownik graficzny 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation) NVIDIA Update Core (Version: 15.3.33 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden Obsługa programów Apple (HKLM-x32\...\{78002155-F025-4070-85B3-7C0453561701}) (Version: 3.0.6 - Apple Inc.) OpenOffice.org 3.4.1 (HKLM-x32\...\{18192D3F-5537-4560-AD89-D695F72AF91D}) (Version: 3.41.9593 - Apache Software Foundation) Panel sterowania NVIDIA 340.52 (Version: 340.52 - NVIDIA Corporation) Hidden PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu) Qualcomm Atheros Bandwidth Control Filter Driver (Version: 1.1.42.1045 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer E220x Drivers (Version: 1.1.42.1045 - Qualcomm Atheros) Hidden Qualcomm Atheros Network Manager (Version: 1.1.42.1045 - Qualcomm Atheros) Hidden Qualcomm Atheros Performance Suite (HKLM-x32\...\{E70DB50B-10B4-46BC-9DE2-AB8B49E061EE}) (Version: 1.1.42.1045 - Qualcomm Atheros) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.21239 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7032 - Realtek Semiconductor Corp.) Rock Turner (HKLM\...\Rock Turner) (Version: 2014.06.02.050403 - Rock Turner) <==== ATTENTION SCM (HKLM\...\{614FD4D7-78CE-43E0-88E1-F6DE78069B9A}) (Version: 13.013.09262 - Application) SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden VLC media player 2.1.4 (HKLM\...\VLC media player) (Version: 2.1.4 - VideoLAN) WinRAR 5.01 (32-bitowy) (HKLM-x32\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) World of Tanks (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version: - Wargaming.net) Yahoo! Search (HKCU\...\Yahoo! Search) (Version: - Pay-By-Ads) <==== ATTENTION ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 02-08-2014 15:32:06 Zainstalowany program DirectX 04-08-2014 19:18:44 Installed iPod for Windows 2005-09-23 08-08-2014 02:36:26 avast! antivirus system restore point 19-08-2014 13:16:13 Installed iTunes 03-09-2014 13:15:44 Windows Update 11-09-2014 15:17:02 avast! antivirus system restore point ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {10E63CB2-D847-43C2-BCB4-A288203A6AA4} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {160AE239-088F-4E5E-8126-157FC4F7AF44} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2013-03-07] (Intel Corporation) Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {3FC9630D-2FA7-4474-8726-47631795A68E} - System32\Tasks\Microsoft\Windows\SetupSQMTask => C:\Windows\SYSTEM32\OOBE\SETUPSQM.EXE [2013-08-22] (Microsoft Corporation) Task: {43035C63-EEE1-4AEB-8756-CFF3B5B6FE2A} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {5F483EB7-B5EE-44B2-8938-7153CBC35B99} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {8415FE97-CBF3-4D93-B20A-5592FA7B0D04} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {C7DA0C5B-C9F1-4DA7-9C73-A163B2D03979} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {D9AF872F-33FE-4B33-BFB6-8518989A5DB9} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {E1F99F17-15ED-4F51-84A0-65A304F14C0B} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Opera D1.job => C:\Program Files (x86)\Opera\launcher.exe Task: C:\Windows\Tasks\Opera D2.job => C:\Program Files (x86)\Opera\launcher.exe Task: C:\Windows\Tasks\Opera D3.job => C:\Program Files (x86)\Opera\launcher.exe Task: C:\Windows\Tasks\Opera D4.job => C:\Program Files (x86)\Opera\launcher.exe Task: C:\Windows\Tasks\Opera D5.job => C:\Program Files (x86)\Opera\launcher.exe Task: C:\Windows\Tasks\Opera D6.job => C:\Program Files (x86)\Opera\launcher.exe Task: C:\Windows\Tasks\Opera D7.job => C:\Program Files (x86)\Opera\launcher.exe Task: C:\Windows\Tasks\Opera N.job => C:\Program Files (x86)\Opera\launcher.exe Task: C:\Windows\Tasks\User_Feed_Synchronization-{56051A11-D2FE-4C7A-BBBC-FBBA19FF1720}.job => C:\Windows\system32\msfeedssync.exe Task: C:\Windows\Tasks\Yahoo! Search Udpater.job => C:\Users\Izabela\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.12.4\dsrsetup.exe <==== ATTENTION Task: C:\Windows\Tasks\Yahoo! Search.job => C:\Users\Izabela\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.12.4\dsrlte.exe <==== ATTENTION ==================== Loaded Modules (whitelisted) ============= 2014-06-02 07:16 - 2014-07-09 22:08 - 00135968 _____ () C:\Program Files (x86)\Rock Turner\updater.exe 2014-06-02 07:16 - 2014-09-21 01:45 - 00325408 _____ () C:\Program Files (x86)\Rock Turner\updateRockTurner.exe 2014-07-09 22:10 - 2014-09-21 01:48 - 00325408 _____ () C:\Program Files (x86)\Rock Turner\bin\utilRockTurner.exe 2014-08-08 18:49 - 2014-09-19 13:52 - 00349984 _____ () C:\Program Files (x86)\Rock Turner\bin\RockTurner.PurBrowse64.exe 2014-07-03 21:55 - 2014-09-21 01:49 - 00325408 _____ () C:\Program Files (x86)\NetCrawl\updateNetCrawl.exe 2014-07-03 23:58 - 2014-09-21 01:52 - 00325408 _____ () C:\Program Files (x86)\NetCrawl\bin\utilNetCrawl.exe 2014-08-08 18:49 - 2014-09-19 13:59 - 00349984 _____ () C:\Program Files (x86)\NetCrawl\bin\NetCrawl.PurBrowse64.exe 2014-04-28 21:54 - 2014-07-02 20:55 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-08-08 04:22 - 2014-09-19 22:59 - 00098592 _____ () C:\Program Files (x86)\NetCrawl\bin\NetCrawl.BrowserAdapter.exe 2014-09-04 11:25 - 2014-09-19 22:59 - 00114976 _____ () C:\Program Files (x86)\NetCrawl\bin\NetCrawl.BrowserAdapter64.exe 2014-09-13 15:04 - 2014-09-19 22:53 - 00114976 _____ () C:\Program Files (x86)\Rock Turner\bin\RockTurner.BrowserAdapter64.exe 2014-09-13 15:04 - 2014-09-19 22:53 - 00098592 _____ () C:\Program Files (x86)\Rock Turner\bin\RockTurner.BrowserAdapter.exe 2014-09-10 13:15 - 2014-09-19 19:09 - 01649952 _____ () C:\Program Files (x86)\NetCrawl\bin\NetCrawl.BOASHelper.exe 2014-09-10 13:15 - 2014-09-19 19:36 - 01649952 _____ () C:\Program Files (x86)\Rock Turner\bin\RockTurner.BOASHelper.exe 2014-04-17 11:02 - 2014-04-17 11:02 - 00300544 _____ () C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe 2014-09-10 13:15 - 2014-09-19 19:09 - 01786656 _____ () C:\Program Files (x86)\NetCrawl\bin\NetCrawl.BOASPRT.exe 2014-09-10 13:15 - 2014-09-19 19:36 - 01786656 _____ () C:\Program Files (x86)\Rock Turner\bin\RockTurner.BOASPRT.exe 2014-09-10 13:15 - 2014-09-19 19:36 - 01791264 _____ () C:\Program Files (x86)\Rock Turner\bin\RockTurner.BOAS.exe 2014-09-10 13:15 - 2014-09-19 19:09 - 01791264 _____ () C:\Program Files (x86)\NetCrawl\bin\NetCrawl.BOAS.exe 2014-07-03 13:20 - 2014-07-03 13:20 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-07-03 13:19 - 2014-07-03 13:19 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2013-10-25 19:15 - 2013-08-08 13:25 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-09-19 01:33 - 2014-09-19 01:33 - 03734640 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-09-18 14:06 - 2014-09-18 14:06 - 00184832 _____ () C:\Users\Izabela\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.12.4\gp9algmc.dll 2014-09-21 03:16 - 2014-09-21 03:16 - 00098816 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\win32api.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00110080 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\pywintypes27.dll 2014-09-21 03:16 - 2014-09-21 03:16 - 00364544 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\pythoncom27.dll 2014-09-21 03:16 - 2014-09-21 03:16 - 00045568 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\_socket.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 01160704 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\_ssl.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00320512 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\win32com.shell.shell.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00713216 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\_hashlib.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 01175040 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\wx._core_.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00805888 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\wx._gdi_.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00811008 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\wx._windows_.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 01062400 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\wx._controls_.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00735232 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\wx._misc_.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00128512 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\_elementtree.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00127488 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\pyexpat.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00557056 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\pysqlite2._sqlite.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00007168 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\hashobjs_ext.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00087552 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\_ctypes.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00119808 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\win32file.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00108544 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\win32security.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00018432 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\win32event.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00038912 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\win32inet.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00070656 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\wx._html2.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00167936 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\win32gui.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00011264 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\win32crypt.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00027136 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\_multiprocessing.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00686080 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\unicodedata.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00122368 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\wx._wizard.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00010240 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\select.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00024064 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\win32pipe.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00025600 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\win32pdh.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00525640 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\windows._lib_cacheinvalidation.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00035840 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\win32process.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00017408 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\win32profile.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00022528 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\win32ts.pyd 2014-09-21 03:16 - 2014-09-21 03:16 - 00078336 _____ () C:\Users\Izabela\AppData\Local\Temp\_MEI61122\wx._animate.pyd ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:05E9FFE5 AlternateDataStreams: C:\Users\Izabela\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ==================== Faulty Device Manager Devices ============= Name: Karta USB bezprzewodowej sieci LAN 802.11 n/g/b Description: Karta USB bezprzewodowej sieci LAN 802.11 n/g/b Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: AzureWave Technologies, Inc. Service: netr28ux Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (09/21/2014 03:27:22 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-08-28T01:27:22Z. Kod błędu: 0x80040154. Error: (09/21/2014 03:26:52 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-08-28T01:26:52Z. Kod błędu: 0x80040154. Error: (09/21/2014 03:26:22 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-08-28T01:26:22Z. Kod błędu: 0x80040154. Error: (09/21/2014 03:25:52 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-08-28T01:25:52Z. Kod błędu: 0x80040154. Error: (09/21/2014 03:25:22 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-08-28T01:25:22Z. Kod błędu: 0x80040154. Error: (09/21/2014 03:24:52 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-08-28T01:24:52Z. Kod błędu: 0x80040154. Error: (09/21/2014 03:24:22 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-08-28T01:24:22Z. Kod błędu: 0x80040154. Error: (09/21/2014 03:23:52 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-08-28T01:23:52Z. Kod błędu: 0x80040154. Error: (09/21/2014 03:23:22 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-08-28T01:23:22Z. Kod błędu: 0x80040154. Error: (09/21/2014 03:22:52 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Nie można zaplanować restartu usługi ochrony oprogramowania o 2114-08-28T01:22:52Z. Kod błędu: 0x80040154. System errors: ============= Error: (09/21/2014 03:17:50 AM) (Source: DCOM) (EventID: 10016) (User: IZABELA) Description: domyślne ustawienia komputeraLokalnyAktywacja{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}IzabelaIzabelaS-1-5-21-3416864892-2804832870-1591593753-1001LocalHost (użycie LRPC)NiedostępnyNiedostępny Error: (09/21/2014 03:17:50 AM) (Source: DCOM) (EventID: 10016) (User: IZABELA) Description: domyślne ustawienia komputeraLokalnyAktywacja{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}IzabelaIzabelaS-1-5-21-3416864892-2804832870-1591593753-1001LocalHost (użycie LRPC)NiedostępnyNiedostępny Error: (09/21/2014 03:16:52 AM) (Source: DCOM) (EventID: 10016) (User: IZABELA) Description: domyślne ustawienia komputeraLokalnyAktywacja{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}IzabelaIzabelaS-1-5-21-3416864892-2804832870-1591593753-1001LocalHost (użycie LRPC)NiedostępnyNiedostępny Error: (09/21/2014 03:16:52 AM) (Source: DCOM) (EventID: 10016) (User: IZABELA) Description: domyślne ustawienia komputeraLokalnyAktywacja{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}IzabelaIzabelaS-1-5-21-3416864892-2804832870-1591593753-1001LocalHost (użycie LRPC)NiedostępnyNiedostępny Error: (09/21/2014 03:16:16 AM) (Source: DCOM) (EventID: 10016) (User: IZABELA) Description: domyślne ustawienia komputeraLokalnyAktywacja{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}IzabelaIzabelaS-1-5-21-3416864892-2804832870-1591593753-1001LocalHost (użycie LRPC)NiedostępnyNiedostępny Error: (09/21/2014 03:16:16 AM) (Source: DCOM) (EventID: 10016) (User: IZABELA) Description: domyślne ustawienia komputeraLokalnyAktywacja{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}IzabelaIzabelaS-1-5-21-3416864892-2804832870-1591593753-1001LocalHost (użycie LRPC)NiedostępnyNiedostępny Error: (09/21/2014 03:05:36 AM) (Source: DCOM) (EventID: 10016) (User: IZABELA) Description: domyślne ustawienia komputeraLokalnyAktywacja{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}IzabelaIzabelaS-1-5-21-3416864892-2804832870-1591593753-1001LocalHost (użycie LRPC)NiedostępnyNiedostępny Error: (09/21/2014 03:05:35 AM) (Source: DCOM) (EventID: 10016) (User: IZABELA) Description: domyślne ustawienia komputeraLokalnyAktywacja{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}IzabelaIzabelaS-1-5-21-3416864892-2804832870-1591593753-1001LocalHost (użycie LRPC)NiedostępnyNiedostępny Error: (09/21/2014 02:32:25 AM) (Source: DCOM) (EventID: 10016) (User: IZABELA) Description: domyślne ustawienia komputeraLokalnyAktywacja{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}IzabelaIzabelaS-1-5-21-3416864892-2804832870-1591593753-1001LocalHost (użycie LRPC)NiedostępnyNiedostępny Error: (09/21/2014 02:31:48 AM) (Source: DCOM) (EventID: 10016) (User: IZABELA) Description: domyślne ustawienia komputeraLokalnyAktywacja{9BA05972-F6A8-11CF-A442-00A0C90A8F39}{9BA05972-F6A8-11CF-A442-00A0C90A8F39}IzabelaIzabelaS-1-5-21-3416864892-2804832870-1591593753-1001LocalHost (użycie LRPC)NiedostępnyNiedostępny Microsoft Office Sessions: ========================= Error: (09/21/2014 03:27:22 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-08-28T01:27:22Z Error: (09/21/2014 03:26:52 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-08-28T01:26:52Z Error: (09/21/2014 03:26:22 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-08-28T01:26:22Z Error: (09/21/2014 03:25:52 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-08-28T01:25:52Z Error: (09/21/2014 03:25:22 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-08-28T01:25:22Z Error: (09/21/2014 03:24:52 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-08-28T01:24:52Z Error: (09/21/2014 03:24:22 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-08-28T01:24:22Z Error: (09/21/2014 03:23:52 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-08-28T01:23:52Z Error: (09/21/2014 03:23:22 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-08-28T01:23:22Z Error: (09/21/2014 03:22:52 AM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800401542114-08-28T01:22:52Z ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-4200M CPU @ 2.50GHz Percentage of memory in use: 32% Total physical RAM: 8112.64 MB Available physical RAM: 5485.39 MB Total Pagefile: 9392.64 MB Available Pagefile: 6489.5 MB Total Virtual: 131072 MB Available Virtual: 131071.8 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:100.08 GB) (Free:13.43 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (DATA) (Fixed) (Total:598.56 GB) (Free:569.26 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: 91EC9048) Partition 1: (Active) - (Size=100.1 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=598.6 GB) - (Type=07 NTFS) ==================== End Of Log ============================