Additional scan result of Farbar Recovery Scan Tool (x86) Version: 27-10-2014 01 Ran by Renia at 2014-10-29 08:25:15 Running from C:\Users\Renia\Desktop\FRST Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 2+2 v.2.1a (HKLM\...\2+2 v.2.1a) (Version: - ) Accelerometer-Magnetometer (HKLM\...\{862892F1-2158-451D-82EC-4112E5DD8A93}) (Version: 1.00.0028 - STMicroelectronics) Adobe AIR (HKLM\...\Adobe AIR) (Version: 3.9.0.1380 - Adobe Systems Incorporated) Adobe Flash Player 15 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated) Adobe Reader X (10.1.12) MUI (HKLM\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.12 - Adobe Systems Incorporated) Advanced Audio FX Engine (HKLM\...\Advanced Audio FX Engine) (Version: 1.12.05 - Creative Technology Ltd) Atheros WLAN and Bluetooth Client Installation Program (HKLM\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Atheros) Audacity 2.0.2 (HKLM\...\Audacity_is1) (Version: 2.0.2 - Audacity Team) Avast Internet Security (HKLM\...\avast) (Version: 10.0.2206 - AVAST Software) Bandisoft MPEG-1 Decoder (HKLM\...\BandiMPEG1) (Version: - Bandisoft.com) Bing Maps 3D (HKLM\...\{2D87E961-577B-492B-AD54-1368680FB9A7}) (Version: 4.0.903.16005 - Microsoft Corporation) Bluetooth Win7 Suite (HKLM\...\{101A497C-7EF6-4001-834D-E5FA1C70FEFA}) (Version: 7.2.0.45 - Atheros Communications) Broadcom CrystalHD Decoder (HKLM\...\{A2312A99-3F31-4ED0-854D-61424B78B0F7}) (Version: 3.5.0.32 - Broadcom Corporation) Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 4.126.0.62 - Conexant) CyberLink YouPaint (HKLM\...\InstallShield_{72BF1DA0-2B00-4794-9173-159722019B74}) (Version: 1.2.2124 - CyberLink Corp.) D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden Dell DataSafe Local Backup - Support Software (HKLM\...\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 9.4.60 - Dell Inc.) Dell DataSafe Local Backup (HKLM\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 9.4.60 - Dell Inc.) Dell duo Stage (HKLM\...\{7A855F2D-24D4-4B93-BFA9-824289902063}) (Version: 1.0.0.12 - ArcSoft) Dell duo Station (HKLM\...\{DBA77958-961F-4161-A094-2E7CD5CD974F}) (Version: 1.0.7.34 - ArcSoft) Dell Edoc Viewer (HKLM\...\{3138EAD3-700B-4A10-B617-B3F8096EE30D}) (Version: 1.0.0 - Dell Inc) Dell MusicStage (HKLM\...\{91AF2672-F5BC-42CF-8037-A9D2F92BBCC0}) (Version: 1.5.201.0 - Fingertapps) Dell PhotoStage (HKLM\...\{E4335E82-17B3-460F-9E70-39D9BC269DB3}) (Version: 1.5.0.65 - ArcSoft) Dell Product Registration (HKLM\...\{2A0F2CC5-3065-492C-8380-B03AA7106B1A}) (Version: 1.1.3 - Dell Inc.) Dell Stage Remote (HKLM\...\{2299EEBD-0A83-4B26-AA4A-057AE9E5BAE8}) (Version: 2.0.0.50 - ArcSoft) Dell Stage Remote (HKLM\...\{AF4D3C63-009B-4A17-B02E-D395065DD3F0}) (Version: 2.0.0.50 - ArcSoft) Dell VideoStage (HKLM\...\InstallShield_{DCE0E79A-B9AC-41AC-98C1-7EF0538BCA7F}) (Version: 1.2.0.1712 - CyberLink Corp.) Dell VideoStage (Version: 1.2.0.1712 - CyberLink Corp.) Hidden Dell Webcam Central (HKLM\...\Dell Webcam Central) (Version: 2.00.44 - Creative Technology Ltd) Detektor Winampa (HKCU\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) Facebook Video Calling 3.1.0.521 (HKLM\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) FastStone Capture 7.9 (HKLM\...\FastStone Capture) (Version: 7.9 - FastStone Soft) Galeria fotografii (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Google Chrome (HKLM\...\Google Chrome) (Version: 38.0.2125.111 - Google Inc.) Google Drive (HKLM\...\{C6640705-7479-4EE5-BC86-879F05F65E74}) (Version: 1.17.7290.4094 - Google, Inc.) Google Update Helper (Version: 1.3.25.5 - Google Inc.) Hidden Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.14.10.2308 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.4.1002 - Intel Corporation) InterVideo DeviceService (HKLM\...\{521AAD14-5030-44BB-8B0E-5CE65FCE57E0}) (Version: 1.0.0 - InterVideo) Java 7 Update 17 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217017FF}) (Version: 7.0.170 - Oracle) Java Auto Updater (Version: 2.1.9.0 - Sun Microsystems, Inc.) Hidden Java(TM) 6 Update 30 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216027FF}) (Version: 6.0.300 - Oracle) Junk Mail filter update (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden MAGIX Speed burnR (MSI) (HKLM\...\MX.{45E83DDE-B2C6-404F-A2EA-688AD34E3D87}) (Version: 7.0.1.27 - MAGIX Software GmbH) MAGIX Speed burnR (MSI) (Version: 7.0.1.27 - MAGIX Software GmbH) Hidden MAGIX Video easy HD (HKLM\...\MX.{BE9199E4-8FE5-43BF-8A66-92A0FFEED053}) (Version: 5.0.3.106 - MAGIX Software GmbH) MAGIX Video easy HD (Version: 5.0.3.106 - MAGIX Software GmbH) Hidden ManyCam 4.0.77 (HKLM\...\ManyCam) (Version: 4.0.77 - Visicom Media Inc.) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office Outlook Connector (HKLM\...\{95140000-007A-0415-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation) Microsoft Office PowerPoint Viewer 2007 (Polish) (HKLM\...\{95120000-00AF-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit (HKLM\...\{95140000-007D-0409-0000-0000000FF1CE}) (Version: 14.0.5120.5000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SkyDrive (HKCU\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Touch Pack for Windows 7 (HKLM\...\{8FF90DB8-6DED-44A3-B182-244FEC09012F}) (Version: 1.0.40517.00 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{820B6609-4C97-3A2B-B644-573B06A0F0CC}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.0 (HKLM\...\{3898934B-05AE-41CD-96BE-70DA9BFBCE1F}) (Version: 3.0.11010.0 - Microsoft Corporation) Mistrz Klawiatury II Demo (HKLM\...\mk2demo_is1) (Version: Mistrz Klawiatury II Demo - Nahlik Soft) Moduł Szybka instalacja pakietu Microsoft Office 2010 (HKLM\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Moduł Szybka instalacja pakietu Microsoft Office 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Movie Maker (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Thunderbird 9.0.1 (x86 pl) (HKLM\...\Mozilla Thunderbird 9.0.1 (x86 pl)) (Version: 9.0.1 - Mozilla) MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (Version: 16.4.1108.0727 - Microsoft) Hidden MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) My Dell (HKLM\...\PC-Doctor for Windows) (Version: 3.5.6426.22 - PC-Doctor, Inc.) Opera Stable 20.0.1387.82 (HKLM\...\Opera 20.0.1387.82) (Version: 20.0.1387.82 - Opera Software ASA) Pakiet sterowników systemu Windows - Ross-Tech USB Driver Package (06/16/2010 2.06.02) (HKLM\...\B4DFFB06B716298277125094C48185BFE8B5A7E1) (Version: 06/16/2010 2.06.02 - Ross-Tech) Photo Common (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Photo Gallery (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden PITy 2012 dla Windows kompilacja:1.4.5.8 (HKLM\...\PITy 2012_is1) (Version: - IPS Przedsiębiorstwo Informatyczne) Poczta usługi Windows Live (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) Podstawowe programy Windows Live (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden QuickSet32 (HKLM\...\{C4972073-2BFE-475D-8441-564EA97DA161}) (Version: 10.5.030 - Dell Inc.) Qwarq (HKLM\...\InstallShield_{BB2D820C-76AF-4CEE-9AE0-70E64B2784DA}) (Version: 1.0.66.29331 - ConnectSoft, Inc.) Qwarq (Version: 1.0.66.29331 - ConnectSoft, Inc.) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) simpliclean (HKLM\...\simplitec POWER SUITE_is1) (Version: 1.5.2.2 - simplitec GmbH) Skype™ 6.20 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.20.104 - Skype Technologies S.A.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.1.8.0 - Synaptics Incorporated) TeamViewer 9 (HKLM\...\TeamViewer 9) (Version: 9.0.32494 - TeamViewer) Ulead VideoStudio 11 (HKLM\...\InstallShield_{F99F9E24-EE2F-47FD-AEB0-FDB82859B5C9}) (Version: 11.0.0.0000 - InterVideo Digital Technology Corporation) VCDS Beta 11.6.0 version , (HKLM\...\{6CA2BD48-DEBD-467D-9EA3-C2A4F5C5141E}_is1) (Version: , - ROSS-TECH) VideoStudio (Version: 11.0.0.0000 - InterVideo Digital Technology Corporation) Hidden Winamp (HKLM\...\Winamp) (Version: 5.623 - Nullsoft, Inc) WinRAR 4.11 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.11.0 - win.rar GmbH) Zinio Reader 4 (HKLM\...\ZinioReader4) (Version: 4.2.4164 - Zinio LLC) Zinio Reader 4 (Version: 4.2.4164 - Zinio LLC) Hidden ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2954293459-2226986906-1304803025-1000_Classes\CLSID\{1FD1FE74-9E3C-4C1C-AEEB-AAB592AD770F}\localserver32 -> C:\Users\Renia\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.) CustomCLSID: HKU\S-1-5-21-2954293459-2226986906-1304803025-1000_Classes\CLSID\{5E71E4F3-E8C7-4906-9626-973E418762B6}\InprocServer32 -> C:\Users\Renia\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll (Facebook Inc.) CustomCLSID: HKU\S-1-5-21-2954293459-2226986906-1304803025-1000_Classes\CLSID\{7B37E4E2-C62F-4914-9620-8FB5062718CC}\localserver32 -> C:\Users\Renia\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2954293459-2226986906-1304803025-1000_Classes\CLSID\{8B9F5BF4-0407-4BB2-9FED-4C0372DABD00}\localserver32 -> C:\Users\Renia\AppData\Local\Facebook\Video\Skype\FacebookVideoCallingProxy.exe (Skype Limited) CustomCLSID: HKU\S-1-5-21-2954293459-2226986906-1304803025-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Renia\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2954293459-2226986906-1304803025-1000_Classes\CLSID\{AB807329-7324-431B-8B36-DBD581F56E0B}\localserver32 -> C:\Users\Renia\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2954293459-2226986906-1304803025-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Renia\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2954293459-2226986906-1304803025-1000_Classes\CLSID\{CBE9C57E-FFA9-4123-8354-AD360D6DD3CC}\InprocServer32 -> C:\Users\Renia\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) CustomCLSID: HKU\S-1-5-21-2954293459-2226986906-1304803025-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Renia\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2954293459-2226986906-1304803025-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Renia\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\FileSyncApi.dll (Microsoft Corporation) ==================== Restore Points ========================= 23-09-2014 15:29:31 Windows Update 25-09-2014 17:58:29 Windows Update 30-09-2014 15:18:53 Windows Update 02-10-2014 18:27:21 Windows Update 07-10-2014 12:37:54 Windows Update 10-10-2014 18:26:49 Windows Update 14-10-2014 12:19:17 Instalacja pakietu sterownika urządzenia: Ross-Tech Kontrolery uniwersalnej magistrali szeregowej 17-10-2014 13:22:51 Windows Update 18-10-2014 10:12:02 Windows Update 21-10-2014 18:06:23 Windows Update 24-10-2014 18:27:10 avast! antivirus system restore point 24-10-2014 18:33:52 Instalacja pakietu sterownika urządzenia: Avast Usługa sieciowa 25-10-2014 18:28:03 Installed Java 7 Update 71 28-10-2014 18:44:16 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {1F683712-B9C4-4A49-9628-27A43B398705} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS.exe Task: {29D5249B-7AFA-4B21-977F-F6EB4A521B2C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2013-06-04] (Google Inc.) Task: {5CE8D1BF-9E26-45FD-A5BA-7D276B20AAC9} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-14] (Microsoft Corporation) Task: {6FD6723E-B31C-43D6-B2CE-9EBCEBA47C19} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\My Dell\uaclauncher.exe [2014-01-31] (PC-Doctor, Inc.) Task: {82C4CCBD-1F16-4C74-A009-0C247DD2C0CF} - System32\Tasks\simplitec Power Suite => C:\Program Files\simplitec\simpliclean\PowerSuite.exe [2014-03-05] (simplitec GmbH) Task: {83F2022A-27AB-4F14-88D1-66815B9FFBFF} - System32\Tasks\Games\UpdateCheck_S-1-5-21-2954293459-2226986906-1304803025-1000 Task: {924BB2DB-5C7C-45E9-9E9A-D85BD1ABB23C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2013-06-04] (Google Inc.) Task: {927BC455-7550-4738-8C42-0D4B16C94CC5} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\My Dell\sessionchecker.exe [2014-01-31] (PC-Doctor, Inc.) Task: {9443221F-DEC2-4489-8BAB-7D6FA137AD9B} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2954293459-2226986906-1304803025-1000UA => C:\Users\Renia\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-13] (Facebook Inc.) Task: {960A9BC5-3EEA-4CE8-B9D2-210E1565DF6C} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe Task: {9CD0960F-D176-47C0-9D0C-7D2F9A72E9BA} - System32\Tasks\{29222AC2-3F19-441A-B6AA-E8A6A88F8242} => Chrome.exe http://ui.skype.com/ui/0/6.7.0.102/pl/abandoninstall?page=tsProgressBar Task: {B5A48F8B-EC28-490E-9532-BD32E55641D2} - System32\Tasks\SRS Premium Sound => C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\srspremiumpanel.exe [2010-12-08] (SRS Labs, Inc.) Task: {C5415B7F-9525-4D0C-A5A6-E4868F003994} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2954293459-2226986906-1304803025-1000Core => C:\Users\Renia\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-13] (Facebook Inc.) Task: {D3B3C58A-EDFD-425F-93E2-98D8B9341A49} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-25] (Adobe Systems Incorporated) Task: {D8B359F9-F271-4888-825C-4F1AA22D8002} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-10-24] (AVAST Software) Task: {D8DC35A4-B9C3-4780-86AF-3D974BC3A16B} - System32\Tasks\simplitec Service Provider => C:\Program Files\simplitec\simpliclean\ServiceProvider.exe [2014-03-05] (simplitec GmbH) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2954293459-2226986906-1304803025-1000Core.job => C:\Users\Renia\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2954293459-2226986906-1304803025-1000UA.job => C:\Users\Renia\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\simplitec Power Suite.job => C:\Program Files\simplitec\simpliclean\PowerSuite.exe Task: C:\Windows\Tasks\simplitec Service Provider.job => C:\Program Files\simplitec\simpliclean\ServiceProvider.exe ==================== Loaded Modules (whitelisted) ============= 2014-10-28 22:35 - 2014-10-28 22:35 - 02898432 _____ () C:\Program Files\AVAST Software\Avast\defs\14102801\algo.dll 2014-10-24 19:31 - 2014-10-24 19:31 - 02151544 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxVMM.dll 2014-10-24 19:31 - 2014-10-24 19:31 - 00021488 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxREM.dll 2014-10-24 19:31 - 2014-10-24 19:31 - 04470080 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll 2014-10-25 20:05 - 2014-09-11 07:06 - 00019216 _____ () C:\Windows\system32\spool\PRTPROCS\W32X86\TeamViewer_PrintProcessor.dll 2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2012-03-07 16:40 - 2012-02-17 20:55 - 00166912 _____ () C:\Program Files\WinRAR\rarext.dll 2011-11-03 02:39 - 2010-11-03 22:37 - 00146032 _____ () C:\Program Files\STMicroelectronics\Accelerometer-Magnetometer\AccMagDriver.dll 2011-08-08 18:26 - 2011-08-08 18:26 - 02034752 _____ () C:\Program Files\Dell\Stage Remote\StageRemote.exe 2010-03-16 20:28 - 2010-03-16 20:28 - 01926144 _____ () C:\Program Files\Dell\Stage Remote\QtCore4.dll 2010-03-22 15:52 - 2010-03-22 15:52 - 06776832 _____ () C:\Program Files\Dell\Stage Remote\QtGui4.dll 2010-03-16 20:28 - 2010-03-16 20:28 - 00635904 _____ () C:\Program Files\Dell\Stage Remote\QtNetwork4.dll 2010-03-16 20:28 - 2010-03-16 20:28 - 00326144 _____ () C:\Program Files\Dell\Stage Remote\QtXml4.dll 2011-06-24 23:20 - 2011-06-24 23:20 - 00565968 _____ () C:\Program Files\Dell\Stage Remote\sqlite3.dll 2011-07-17 10:35 - 2011-07-17 10:35 - 00058944 _____ () C:\Program Files\Dell\Stage Remote\DataService.dll 2011-07-21 08:36 - 2011-07-21 08:36 - 00327744 _____ () C:\Program Files\Dell\Stage Remote\en-US\UI\ManagerUI.dll 2010-03-11 19:52 - 2010-03-11 19:52 - 00028160 _____ () C:\Program Files\Dell\Stage Remote\plugins\imageformats\qgif4.dll 2010-03-05 15:07 - 2010-03-05 15:07 - 00031744 _____ () C:\Program Files\Dell\Stage Remote\plugins\imageformats\qico4.dll 2010-03-05 15:07 - 2010-03-05 15:07 - 00125952 _____ () C:\Program Files\Dell\Stage Remote\plugins\imageformats\qjpeg4.dll 2010-03-11 19:52 - 2010-03-11 19:52 - 00225280 _____ () C:\Program Files\Dell\Stage Remote\plugins\imageformats\qmng4.dll 2011-07-17 10:36 - 2011-07-17 10:36 - 00032832 _____ () C:\Program Files\Dell\Stage Remote\ServiceProxy.dll 2007-04-13 09:39 - 2007-04-13 09:39 - 00252672 _____ () C:\Program Files\Dell\Stage Remote\kgl.dll 2007-04-19 08:28 - 2007-04-19 08:28 - 00436992 _____ () C:\Program Files\Dell\Stage Remote\fpxlib.dll 2011-08-08 18:26 - 2011-08-08 18:26 - 00475200 _____ () C:\Program Files\Dell\Stage Remote\StageRemoteService.exe 2011-08-08 18:26 - 2011-08-08 18:26 - 00891456 _____ () C:\Program Files\Dell\Stage Remote\DMR.exe 2011-07-06 16:53 - 2011-07-06 16:53 - 00068160 _____ () C:\Program Files\Dell\Stage Remote\en-US\UI\DMRUI.dll 2014-10-24 19:33 - 2014-10-24 19:33 - 38561576 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2012-11-14 04:22 - 2012-11-14 04:22 - 02010624 _____ () C:\Program Files\ManyCam\opencv_core220.dll 2012-11-14 04:23 - 2012-11-14 04:23 - 01241088 _____ () C:\Program Files\ManyCam\opencv_imgproc220.dll 2012-11-14 04:23 - 2012-11-14 04:23 - 00241152 _____ () C:\Program Files\ManyCam\opencv_objdetect220.dll 2012-11-14 04:23 - 2012-11-14 04:23 - 00775680 _____ () C:\Program Files\ManyCam\opencv_highgui220.dll 2012-11-14 04:23 - 2012-11-14 04:23 - 00201216 _____ () C:\Program Files\ManyCam\opencv_video220.dll 2009-09-08 20:01 - 2009-09-08 20:01 - 02070528 _____ () C:\Program Files\Dell\duo Stage\QtCore4.dll 2009-12-23 16:45 - 2009-12-23 16:45 - 07505920 _____ () C:\Program Files\Dell\duo Stage\QtGui4.dll 2009-06-25 16:05 - 2009-06-25 16:05 - 00311296 _____ () C:\Program Files\Dell\duo Stage\QtXml4.dll 2009-09-09 01:50 - 2009-09-09 01:50 - 00177664 _____ () C:\Program Files\Dell\duo Stage\QtSql4.dll 2009-07-17 23:08 - 2009-07-17 23:08 - 00850944 _____ () C:\Program Files\Dell\duo Stage\QtNetwork4.dll 2007-04-13 15:39 - 2007-04-13 15:39 - 00252672 _____ () C:\Program Files\Dell\duo Stage\kgl.dll 2010-09-29 15:46 - 2010-09-29 15:46 - 00103488 _____ () C:\Program Files\Dell\duo Stage\en-US\UI\MiniStageUI.dll 2009-09-09 01:51 - 2009-09-09 01:51 - 00347648 _____ () C:\Program Files\Dell\duo Stage\plugins\sqldrivers\qsqlite4.dll 2011-11-03 02:40 - 2011-08-18 17:05 - 02751808 _____ () C:\Program Files\Dell DataSafe Local Backup\COMPONENTS\SCHEDULER\STSERVICE.EXE 2014-10-24 19:31 - 2014-10-24 19:31 - 00317632 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-2954293459-2226986906-1304803025-500 - Administrator - Disabled) Gość (S-1-5-21-2954293459-2226986906-1304803025-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2954293459-2226986906-1304803025-1002 - Limited - Enabled) Renia (S-1-5-21-2954293459-2226986906-1304803025-1000 - Administrator - Enabled) => C:\Users\Renia ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (10/29/2014 08:19:32 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/29/2014 07:54:00 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1533) (User: Renia-Komputer) Description: System Windows nie może usunąć katalogu profilów C:\Users\Adusia . ^^. Przyczyną błędu może być to, że pliki w tym katalogu są używane przez inny program. SZCZEGÓŁY — Katalog nie jest pusty. Error: (10/29/2014 07:48:29 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/29/2014 07:46:11 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury OpenSCManager(NULL,NULL,SC_MANAGER_CONNECT). hr = 0x8007045b, Trwa proces zamykania systemu. . Operacja: Zainicjuj w celu wykonania kopii zapasowej Error: (10/29/2014 07:46:11 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury OpenSCManager(NULL,NULL,SC_MANAGER_CONNECT). hr = 0x8007045b, Trwa proces zamykania systemu. . Operacja: Zainicjuj w celu wykonania kopii zapasowej Error: (10/29/2014 07:37:27 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1533) (User: Renia-Komputer) Description: System Windows nie może usunąć katalogu profilów C:\Users\Olusia. Przyczyną błędu może być to, że pliki w tym katalogu są używane przez inny program. SZCZEGÓŁY — Katalog nie jest pusty. Error: (10/29/2014 07:08:10 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/29/2014 07:04:12 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/28/2014 11:26:22 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/28/2014 11:23:38 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (10/29/2014 08:19:39 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error: (10/29/2014 07:48:31 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi SftService. Error: (10/29/2014 07:48:22 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error: (10/29/2014 07:48:01 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi SftService. Error: (10/29/2014 07:39:59 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi SftService. Error: (10/29/2014 07:08:30 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi SftService. Error: (10/29/2014 07:08:00 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi SftService. Error: (10/29/2014 07:07:54 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: cdrom Error: (10/29/2014 07:04:41 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi SftService. Error: (10/29/2014 07:04:11 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi SftService. Microsoft Office Sessions: ========================= Error: (10/29/2014 08:19:32 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/29/2014 07:54:00 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1533) (User: Renia-Komputer) Description: C:\Users\Adusia . ^^Katalog nie jest pusty. Error: (10/29/2014 07:48:29 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/29/2014 07:46:11 AM) (Source: VSS) (EventID: 8193) (User: ) Description: OpenSCManager(NULL,NULL,SC_MANAGER_CONNECT)0x8007045b, Trwa proces zamykania systemu. Operacja: Zainicjuj w celu wykonania kopii zapasowej Error: (10/29/2014 07:46:11 AM) (Source: VSS) (EventID: 8193) (User: ) Description: OpenSCManager(NULL,NULL,SC_MANAGER_CONNECT)0x8007045b, Trwa proces zamykania systemu. Operacja: Zainicjuj w celu wykonania kopii zapasowej Error: (10/29/2014 07:37:27 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1533) (User: Renia-Komputer) Description: C:\Users\OlusiaKatalog nie jest pusty. Error: (10/29/2014 07:08:10 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/29/2014 07:04:12 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/28/2014 11:26:22 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/28/2014 11:23:38 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Processor: Intel(R) Atom(TM) CPU N570 @ 1.66GHz Percentage of memory in use: 48% Total physical RAM: 2035.87 MB Available physical RAM: 1040.01 MB Total Pagefile: 4071.73 MB Available Pagefile: 2671.8 MB Total Virtual: 2047.88 MB Available Virtual: 1893.32 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:220.59 GB) (Free:163.4 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 9B2B5D4E) Partition 1: (Not Active) - (Size=39 MB) - (Type=DE) Partition 2: (Active) - (Size=12.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=220.6 GB) - (Type=07 NTFS) ==================== End Of Log ============================