Additional scan result of Farbar Recovery Scan Tool (x86) Version: 03-12-2014 Ran by Magda at 2014-12-05 18:24:17 Running from C:\Users\Magda\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 15 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 15.0.0.239 - Adobe Systems Incorporated) Adobe Reader XI (11.0.09) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated) avast! Free Antivirus (HKLM\...\avast) (Version: 9.0.2021 - AVAST Software) CCleaner (HKLM\...\CCleaner) (Version: 4.06 - Piriform) D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden Digital Image Recovery 1.47 (HKLM\...\Digital Image Recovery_is1) (Version: - Alexander Grau) Elementarz XXI wieku ,klasa 2, semestr 1 (HKU\S-1-5-21-378606110-1790107904-230257270-1000\...\Elementarz XXI wieku ,klasa 2, semestr 1) (Version: - ) Galeria fotografii (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Garden Composer 3D (HKLM\...\Garden Composer 3D) (Version: - ) Google Chrome (HKLM\...\Google Chrome) (Version: 39.0.2171.71 - Google Inc.) Google Earth Plug-in (HKLM\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden Junk Mail filter update (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Librus Ocena Opisowa (HKLM\...\Ocena Opisowa N) (Version: - ) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Office 2010 Service Pack 1 (SP1) (HKLM\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{047B0968-E622-4FAA-9B4B-121FA109EDDE}) (Version: - Microsoft) Microsoft Office PowerPoint Viewer 2007 (Polish) (HKLM\...\{95120000-00AF-0415-0000-0000000FF1CE}) (Version: 12.0.4518.1020 - Microsoft Corporation) Microsoft Office Standard 2010 (HKLM\...\Office14.STANDARD) (Version: 14.0.6029.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20513.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Movie Maker (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden MSVCRT (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (Version: 16.4.1108.0727 - Microsoft) Hidden NirSoft ProduKey (HKLM\...\NirSoft ProduKey) (Version: - ) Photo Common (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Photo Gallery (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Poczta usługi Windows Live (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Podstawowe programy Windows Live (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Powszechna encyklopedia PWN 2009 (HKLM\...\{A3D63F58-4ABC-4AF0-94A4-04F151E31EED}) (Version: 1.00.0000 - WN PWN SA) Skype™ 6.22 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.22.107 - Skype Technologies S.A.) WinRAR 4.20 (32-bitowy) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 22-11-2014 09:10:33 Zaplanowany punkt kontrolny 29-11-2014 10:20:06 Zaplanowany punkt kontrolny ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0F1A9848-B09F-43F6-8BDB-FC4E19DF818F} - System32\Tasks\{949B7055-97A4-4D81-8C05-410DA9553BF9} => Chrome.exe http://ui.skype.com/ui/0/6.6.0.106/pl/abandoninstall?source=lightinstaller&page=tsBing Task: {1A8FACDD-9AC9-4007-AE11-1A181480DB36} - System32\Tasks\{903F5232-358A-4583-9C13-3C94D5792E89} => Chrome.exe http://ui.skype.com/ui/0/6.10.0.104/pl/abandoninstall?page=tsProgressBar Task: {2151F4DA-8178-46C9-9ED6-E68C7796A319} - System32\Tasks\{BD8484D3-9BED-4E30-9216-F545443980D0} => Chrome.exe http://ui.skype.com/ui/0/6.7.0.102/pl/abandoninstall?page=tsProgressBar Task: {3807D4A2-97A8-4BAF-86ED-FE9F532A039A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2013-01-16] (Google Inc.) Task: {39E7ECF7-7446-4439-8385-7ACCCE619CFB} - System32\Tasks\{38B8B6E1-D388-4125-B620-C3470AAD8C40} => Chrome.exe http://ui.skype.com/ui/0/6.22.59.107/pl/abandoninstall?page=tsProgressBar Task: {414CE146-B9AD-459B-9E96-DA0055F2219F} - System32\Tasks\{FD5807A7-AFB4-4C38-8FC9-AC5A5FF92A91} => Chrome.exe http://ui.skype.com/ui/0/6.7.0.102/pl/abandoninstall?page=tsProgressBar Task: {509A233C-173C-4847-A8A8-1276231DD8E7} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-08-16] (AVAST Software) Task: {6E2A3144-8B33-4FF3-9037-45FD2DC263C9} - System32\Tasks\{F1B3F2CC-FC93-4B35-9716-561CABF9B64E} => Chrome.exe http://ui.skype.com/ui/0/6.7.0.102/pl/abandoninstall?source=lightinstaller&page=tsMain Task: {70B4DF73-74C1-44E0-B768-557D983A2FDF} - System32\Tasks\{2089147D-B5ED-46D7-94BC-1D7996A8448B} => Chrome.exe http://ui.skype.com/ui/0/6.22.59.107/pl/abandoninstall?page=tsProgressBar Task: {933E54A6-7EEE-454A-9FDF-248A9E7AAD93} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-26] (Adobe Systems Incorporated) Task: {ACB9A4D8-96C2-4005-9230-FF525D875649} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-09-19] (Piriform Ltd) Task: {BAC2EACF-F3A5-4836-B612-47FD6F901718} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2013-01-16] (Google Inc.) Task: {D6E38882-1C2A-4115-9662-FC9A068E65CF} - System32\Tasks\{D341B76C-8832-442B-8495-F4FACB269BE2} => Chrome.exe http://ui.skype.com/ui/0/6.6.0.106/pl/abandoninstall?source=lightinstaller&page=tsBing Task: {EB1E1426-01B2-4BD5-9F4A-49F558136168} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {EE045661-885F-4A71-9BB4-B20B95F93E60} - System32\Tasks\{42A80756-A930-4122-B7DF-A1F9DEAED3CC} => Chrome.exe http://ui.skype.com/ui/0/6.22.59.107/pl/abandoninstall?page=tsProgressBar (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-08-16 20:11 - 2014-08-16 20:11 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll 2014-12-04 18:57 - 2014-12-04 18:57 - 02905088 _____ () C:\Program Files\AVAST Software\Avast\defs\14120401\algo.dll 2014-12-05 17:16 - 2014-12-05 17:16 - 02905088 _____ () C:\Program Files\AVAST Software\Avast\defs\14120501\algo.dll 2014-08-16 20:11 - 2014-08-16 20:11 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-378606110-1790107904-230257270-500 - Administrator - Disabled) Gość (S-1-5-21-378606110-1790107904-230257270-501 - Limited - Disabled) Magda (S-1-5-21-378606110-1790107904-230257270-1000 - Administrator - Enabled) => C:\Users\Magda ==================== Faulty Device Manager Devices ============= Name: Kontroler pamięci masowej Description: Kontroler pamięci masowej Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (12/05/2014 02:30:53 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "39.0.2171.65,language="*",type="win32",version="39.0.2171.65"1". Nie można odnaleźć zestawu zależnego 39.0.2171.65,language="*",type="win32",version="39.0.2171.65". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (12/05/2014 01:15:24 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error: (12/05/2014 07:18:10 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error: (12/04/2014 06:54:04 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error: (12/03/2014 06:57:59 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error: (12/02/2014 06:57:18 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error: (12/01/2014 01:34:05 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error: (11/30/2014 08:46:12 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error: (11/29/2014 10:51:25 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error: (11/28/2014 07:17:49 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. System errors: ============= Error: (12/05/2014 06:13:21 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk1\DR8 wystąpił zły blok. Error: (12/05/2014 06:13:21 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk1\DR8 wystąpił zły blok. Error: (12/05/2014 06:13:20 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk1\DR8 wystąpił zły blok. Error: (12/05/2014 06:13:19 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk1\DR8 wystąpił zły blok. Error: (12/05/2014 06:13:19 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk1\DR8 wystąpił zły blok. Error: (12/05/2014 06:13:18 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk1\DR8 wystąpił zły blok. Error: (12/05/2014 06:13:17 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk1\DR8 wystąpił zły blok. Error: (12/05/2014 06:13:17 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk1\DR8 wystąpił zły blok. Error: (12/05/2014 06:13:16 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk1\DR8 wystąpił zły blok. Error: (12/05/2014 06:13:16 PM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR8. Microsoft Office Sessions: ========================= Error: (12/05/2014 02:30:53 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: 39.0.2171.65,language="*",type="win32",version="39.0.2171.65"c:\program files\Google\Chrome\application\old_chrome.exe Error: (12/05/2014 01:15:24 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 Error: (12/05/2014 07:18:10 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 Error: (12/04/2014 06:54:04 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 Error: (12/03/2014 06:57:59 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 Error: (12/02/2014 06:57:18 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 Error: (12/01/2014 01:34:05 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 Error: (11/30/2014 08:46:12 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 Error: (11/29/2014 10:51:25 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 Error: (11/28/2014 07:17:49 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 ==================== Memory info =========================== Processor: Intel(R) Pentium(R) Dual CPU T2370 @ 1.73GHz Percentage of memory in use: 59% Total physical RAM: 1014.43 MB Available physical RAM: 410.55 MB Total Pagefile: 2038.43 MB Available Pagefile: 1179.11 MB Total Virtual: 2047.88 MB Available Virtual: 1879.95 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.69 GB) (Free:78.98 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: E23D2B46) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111.7 GB) - (Type=07 NTFS) ==================== End Of Log ============================