Additional scan result of Farbar Recovery Scan Tool (x86) Version: 05-02-2015 Ran by max at 2015-02-06 18:07:56 Running from C:\Users\max\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 9.20 (HKLM\...\7-Zip) (Version: - ) Adobe Reader XI (11.0.10) - Polish (HKLM\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) AIMP3 (HKLM\...\AIMP3) (Version: v3.60.1470, 16.01.2015 - AIMP DevTeam) Akamai NetSession Interface (HKU\S-1-5-21-1031630780-3175621160-1081558820-1000\...\Akamai) (Version: - Akamai Technologies, Inc) ATI Catalyst Install Manager (HKLM\...\{3ACE30A6-0DFA-1D12-DCF6-E6137A63061F}) (Version: 3.0.795.0 - ATI Technologies, Inc.) ccc-core-static (Version: 2010.0921.2140.37013 - Nazwa firmy) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.47.1.0333 - Disc Soft Ltd) ElsaWin (HKLM\...\ElsaWin) (Version: 4.00 - ) ETDWare PS/2-x86 7.0.5.10_WHQL (HKLM\...\Elantech) (Version: 7.0.5.10 - ELAN Microelectronics Corp.) ETKA7 (HKLM\...\ETKA7) (Version: - LexCom Informationssysteme GmbH) Hardlock Device Drivers (HKLM\...\Hardlock Device Drivers) (Version: - ) HD Tune 2.55 (HKLM\...\HD Tune_is1) (Version: - EFD Software) HWiNFO32 Version 4.50 (HKLM\...\HWiNFO32_is1) (Version: 4.50 - Martin Malík - REALiX) Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) JMicron Ethernet Adapter NDIS Driver (HKLM\...\{96DCEE2F-98EE-4F80-8C0F-7C04D1FB9D7F}) (Version: 6.0.23.4 - JMicron Technology Corp.) JMicron Flash Media Controller Driver (HKLM\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.0.33.2 - JMicron Technology Corp.) Malwarebytes Anti-Malware wersja 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) Mozilla Firefox 35.0.1 (x86 pl) (HKLM\...\Mozilla Firefox 35.0.1 (x86 pl)) (Version: 35.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 35.0.1 - Mozilla) Puran Defrag 7.7 (HKLM\...\Puran Defrag_is1) (Version: - Puran Software) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6088 - Realtek Semiconductor Corp.) SRS Premium Sound Control Panel (HKLM\...\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}) (Version: 1.8.5300 - SRS Labs, Inc.) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 06-02-2015 14:18:22 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:04 - 2014-07-26 18:43 - 00000921 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 genuine.microsoft.com 127.0.0.1 mpa.one.microsoft.com 127.0.0.1 sls.microsoft.com ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {C5486121-A29D-43BA-AEC4-3C7F1F3F62A9} - System32\Tasks\{0081150D-F2CE-4CAB-BFCE-A3206AAAD7E3} => pcalua.exe -a F:\programy\programy.exe -d F:\programy (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Loaded Modules (whitelisted) ============== 2009-07-13 22:03 - 2009-07-14 02:15 - 00364544 _____ () C:\Windows\system32\msjetoledb40.dll 2010-09-21 21:38 - 2010-09-21 21:38 - 00270336 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2012-02-07 18:58 - 2008-05-29 23:34 - 00049152 _____ () C:\Users\max\AppData\Local\services.exe 2012-02-07 18:58 - 2008-05-29 23:34 - 00049152 ____N () C:\Users\max\AppData\Local\winlogon.exe 2012-02-07 18:58 - 2008-05-29 23:34 - 00049152 _____ () C:\Users\max\AppData\Local\lsass.exe ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Registry Areas ===================== (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1031630780-3175621160-1081558820-1000\Control Panel\Desktop\\Wallpaper -> ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Accounts: ============================= Administrator (S-1-5-21-1031630780-3175621160-1081558820-500 - Administrator - Disabled) Gość (S-1-5-21-1031630780-3175621160-1081558820-501 - Limited - Disabled) max (S-1-5-21-1031630780-3175621160-1081558820-1000 - Administrator - Enabled) => C:\Users\max ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (02/06/2015 06:01:26 PM) (Source: LCSVRADM) (EventID: 1) (User: ZARZĄDZANIE NT) Description: LoadLibrary Instdllu.dll failed. Error: (02/06/2015 06:01:26 PM) (Source: LCSVRADM) (EventID: 1) (User: ZARZĄDZANIE NT) Description: ConnectToAuftragServer failed, Error: Nie można uruchomić aplikacji, ponieważ jej konfiguracja równoczesna jest niepoprawna. Więcej szczegółów można znaleźć w dzienniku zdarzeń aplikacji lub przy użyciu narzędzia wiersza polecenia sxtrace.exe. Error: (02/06/2015 06:01:26 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"1". Nie można odnaleźć zestawu zależnego Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (02/06/2015 06:01:25 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "Microsoft.VC90.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"1". Nie można odnaleźć zestawu zależnego Microsoft.VC90.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (02/06/2015 06:01:25 PM) (Source: LCSVRHIS) (EventID: 1) (User: ZARZĄDZANIE NT) Description: ADODB.Connection open failed. Error:-2147467259. Nieokreślony błąd. Error: (02/06/2015 05:53:44 PM) (Source: LCSVRADM) (EventID: 1) (User: ZARZĄDZANIE NT) Description: LoadLibrary Instdllu.dll failed. Error: (02/06/2015 05:53:44 PM) (Source: LCSVRADM) (EventID: 1) (User: ZARZĄDZANIE NT) Description: ConnectToAuftragServer failed, Error: Nie można uruchomić aplikacji, ponieważ jej konfiguracja równoczesna jest niepoprawna. Więcej szczegółów można znaleźć w dzienniku zdarzeń aplikacji lub przy użyciu narzędzia wiersza polecenia sxtrace.exe. Error: (02/06/2015 05:53:43 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"1". Nie można odnaleźć zestawu zależnego Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (02/06/2015 05:53:43 PM) (Source: LCSVRHIS) (EventID: 1) (User: ZARZĄDZANIE NT) Description: ADODB.Connection open failed. Error:-2147467259. Nieokreślony błąd. Error: (02/06/2015 05:53:43 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "Microsoft.VC90.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"1". Nie można odnaleźć zestawu zależnego Microsoft.VC90.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. System errors: ============= Error: (02/06/2015 06:03:44 PM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error: (02/06/2015 06:03:43 PM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error: (02/06/2015 06:03:42 PM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error: (02/06/2015 06:03:42 PM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error: (02/06/2015 06:01:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi ELSA Auftragsverwaltungs Service z powodu następującego błędu: %%14001 Error: (02/06/2015 06:01:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi ELSA APOSpro Server z powodu następującego błędu: %%14001 Error: (02/06/2015 06:01:26 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 14001LcSvrAuf-Service{73B0E0F6-5299-11D1-B24D-CB770DA58961} Error: (02/06/2015 05:53:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi ELSA Auftragsverwaltungs Service z powodu następującego błędu: %%14001 Error: (02/06/2015 05:53:43 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 14001LcSvrAuf-Service{73B0E0F6-5299-11D1-B24D-CB770DA58961} Error: (02/06/2015 05:53:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi ELSA APOSpro Server z powodu następującego błędu: %%14001 Microsoft Office Sessions: ========================= Error: (02/06/2015 06:01:26 PM) (Source: LCSVRADM) (EventID: 1) (User: ZARZĄDZANIE NT) Description: LoadLibrary Instdllu.dll failed. Error: (02/06/2015 06:01:26 PM) (Source: LCSVRADM) (EventID: 1) (User: ZARZĄDZANIE NT) Description: ConnectToAuftragServer failed, Error: Nie można uruchomić aplikacji, ponieważ jej konfiguracja równoczesna jest niepoprawna. Więcej szczegółów można znaleźć w dzienniku zdarzeń aplikacji lub przy użyciu narzędzia wiersza polecenia sxtrace.exe. Error: (02/06/2015 06:01:26 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"d:\samochodowe\bin\LcSvrAuf.exe Error: (02/06/2015 06:01:25 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.VC90.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"d:\samochodowe\bin\LcSvrSaz.exe Error: (02/06/2015 06:01:25 PM) (Source: LCSVRHIS) (EventID: 1) (User: ZARZĄDZANIE NT) Description: ADODB.Connection open failed. Error:-2147467259. Nieokreślony błąd. Error: (02/06/2015 05:53:44 PM) (Source: LCSVRADM) (EventID: 1) (User: ZARZĄDZANIE NT) Description: LoadLibrary Instdllu.dll failed. Error: (02/06/2015 05:53:44 PM) (Source: LCSVRADM) (EventID: 1) (User: ZARZĄDZANIE NT) Description: ConnectToAuftragServer failed, Error: Nie można uruchomić aplikacji, ponieważ jej konfiguracja równoczesna jest niepoprawna. Więcej szczegółów można znaleźć w dzienniku zdarzeń aplikacji lub przy użyciu narzędzia wiersza polecenia sxtrace.exe. Error: (02/06/2015 05:53:43 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"d:\samochodowe\bin\LcSvrAuf.exe Error: (02/06/2015 05:53:43 PM) (Source: LCSVRHIS) (EventID: 1) (User: ZARZĄDZANIE NT) Description: ADODB.Connection open failed. Error:-2147467259. Nieokreślony błąd. Error: (02/06/2015 05:53:43 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.VC90.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"d:\samochodowe\bin\LcSvrSaz.exe ==================== Memory info =========================== Processor: AMD V140 Processor Percentage of memory in use: 33% Total physical RAM: 1789.83 MB Available physical RAM: 1197.3 MB Total Pagefile: 3579.66 MB Available Pagefile: 2718.58 MB Total Virtual: 2047.88 MB Available Virtual: 1883.68 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:41.02 GB) (Free:23.3 GB) NTFS Drive d: () (Fixed) (Total:256.98 GB) (Free:226.99 GB) NTFS Drive f: () (Removable) (Total:3.73 GB) (Free:2.95 GB) FAT32 Drive g: (ETKA73_DVD1) (CDROM) (Total:1.53 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 0EF20EF2) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=41 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=257 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 3.7 GB) (Disk ID: C3072E18) Partition 1: (Active) - (Size=3.7 GB) - (Type=0B) ==================== End Of Log ============================