Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-02-2015 Ran by PC at 2015-02-14 21:13:50 Running from C:\Users\PC\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - ) Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software) CCleaner (HKLM\...\CCleaner) (Version: 5.02 - Piriform) Corel Graphics - Windows Shell Extension (HKLM-x32\...\_{8616305F-122C-4341-9C37-47A9CD322AB2}) (Version: 17.1.0.572 - Corel Corporation) Corel Graphics - Windows Shell Extension (x32 Version: 17.1.572 - Corel Corporation) Hidden Corel Graphics - Windows Shell Extension 64 Bit (Version: 17.1.572 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Capture (x32 Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Common (x32 Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Connect (x32 Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Custom Data (x32 Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Draw (x32 Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Filters (x32 Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - FontNav (x32 Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - IPM Content (x32 Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - IPM T (x32 Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - PHOTO-PAINT (x32 Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Photozoom Plugin (x32 Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - PL (x32 Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Redist (x32 Version: 17.0 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Setup Files (x32 Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - VBA (x32 Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - VideoBrowser (x32 Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 - Writing Tools (x32 Version: 17.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X7 (HKLM-x32\...\_{C5D9CECB-A66F-473F-B406-5C8C2DCA4DF0}) (Version: 17.1.0.572 - Corel Corporation) CorelDRAW Graphics Suite X7 (x32 Version: 17.1 - Corel Corporation) Hidden GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Intel(R) Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2869 - Intel Corporation) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan) Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation) Microsoft Office FrontPage 2003 (HKLM-x32\...\{90170409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2012 (HKLM-x32\...\{89ca2a32-2b52-4595-8dfd-6fe4757958d0}) (Version: 11.0.51108 - Microsoft Corporation) Mobile Internet blueconnect (HKLM-x32\...\{A9E5EDA7-2E6C-49E7-924B-A32B89C24A04}) (Version: 1.0.0.1 - ZTE Corporation) Mozilla Firefox 35.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 35.0.1 (x86 pl)) (Version: 35.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla) OpenOffice.org 2.2 (HKLM-x32\...\{65A27B19-3398-4B23-837C-7A9EA6A39F03}) (Version: 2.2.9134 - OpenOffice.org) Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x64 Hosting Support - PTB (Version: 11.0.51108 - Microsoft Corporation) Hidden Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support - PTB (x32 Version: 11.0.51108 - Microsoft Corporation) Hidden Photo! Editor 1.1 (HKLM-x32\...\PhotoToolkit_is1) (Version: - ) PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) Polski pakiet językowy dla programu Microsoft .NET Framework 4.5 PLK (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50709 - Microsoft Corporation) Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x64) - RUS (Version: 11.0.51108 - Microsoft Corporation) Hidden Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x86) - RUS (x32 Version: 11.0.51108 - Microsoft Corporation) Hidden ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 31-12-2014 15:14:14 Zainstalowane Mobile Internet blueconnect 03-01-2015 21:51:35 Installed OpenOffice.org 2.2 03-01-2015 22:35:08 Removed OpenOffice.org 2.2 03-01-2015 22:35:23 Removed OpenOffice.org 2.2 04-01-2015 14:35:00 Installed OpenOffice.org 2.2 04-01-2015 14:49:23 Removed OpenOffice.org 2.2 04-01-2015 14:50:13 Installed OpenOffice.org 2.2 04-01-2015 14:51:28 Installed OpenOffice.org 2.2 07-01-2015 17:44:25 avast! antivirus system restore point 07-01-2015 21:35:06 Removed OpenOffice.org 2.2 07-01-2015 22:27:47 Installed OpenOffice.org 2.2 09-01-2015 19:47:10 Microsoft Visual Studio Tools for Applications 2012 17-01-2015 23:58:18 Zaplanowany punkt kontrolny 24-01-2015 22:00:17 Installed Microsoft Office FrontPage 2003 02-02-2015 22:38:43 Zaplanowany punkt kontrolny 10-02-2015 16:34:53 Zaplanowany punkt kontrolny 14-02-2015 14:43:37 Revo Uninstaller's restore point - Revo Uninstaller 1.95 ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2014-12-29 16:18 - 00000921 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 genuine.microsoft.com 127.0.0.1 mpa.one.microsoft.com 127.0.0.1 sls.microsoft.com ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0638C36D-BE9F-44B9-9807-E1797F53CC6F} - System32\Tasks\{2357E72E-B93F-4FE8-A5FB-EA468755C856} => pcalua.exe -a C:\Users\PC\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=cor <==== ATTENTION Task: {2D779EDE-6E56-4A76-9B42-65791634C53A} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [2015-01-26] (Enigma Software Group USA, LLC.) Task: {B4472FBF-1675-46F3-88A7-9B8F783DA14D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-05] (Adobe Systems Incorporated) Task: {BA54B2E1-9C10-45C0-837B-85A00E4F1BAD} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-01-07] (AVAST Software) Task: {EA021DDB-A623-40D0-8BCF-37C2259F41D8} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-01-20] (Piriform Ltd) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============== 2015-01-07 17:46 - 2015-01-07 17:46 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll 2015-01-07 17:46 - 2015-01-07 17:46 - 05851328 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll 2015-02-14 21:01 - 2014-01-28 18:36 - 00380416 _____ () C:\Users\PC\Desktop\gmer.exe 2015-02-13 21:20 - 2015-02-13 21:20 - 02912256 _____ () C:\Program Files\AVAST Software\Avast\defs\15021301\algo.dll 2015-01-07 17:46 - 2015-01-07 17:46 - 04495336 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll 2015-02-14 18:26 - 2015-02-14 18:26 - 02911744 _____ () C:\Program Files\AVAST Software\Avast\defs\15021401\algo.dll 2015-01-07 17:46 - 2015-01-07 17:46 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-01-26 21:46 - 2015-01-26 21:46 - 03925104 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\PC\Desktop\kartka-od-nakagawy.jpeg:3or4kl4x13tuuug3Byamue2s4b AlternateDataStreams: C:\Users\PC\Desktop\kartka-od-nakagawy.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} AlternateDataStreams: C:\Users\PC\Desktop\kartka-od-nakagawy2.jpeg:3or4kl4x13tuuug3Byamue2s4b AlternateDataStreams: C:\Users\PC\Desktop\kartka-od-nakagawy2.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} AlternateDataStreams: C:\Users\PC\Desktop\pismo-z-armiru.jpeg:3or4kl4x13tuuug3Byamue2s4b AlternateDataStreams: C:\Users\PC\Desktop\pismo-z-armiru.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1765589224-887387816-2075540833-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\PC\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.0.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Accounts: ============================= Administrator (S-1-5-21-1765589224-887387816-2075540833-500 - Administrator - Disabled) Gość (S-1-5-21-1765589224-887387816-2075540833-501 - Limited - Disabled) PC (S-1-5-21-1765589224-887387816-2075540833-1000 - Administrator - Enabled) => C:\Users\PC ==================== Faulty Device Manager Devices ============= Name: M:\ Description: USB3.0 CRW-SD Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: Generic- Service: WUDFRd Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. Name: L:\ Description: USB3.0 CRW-SM/xD Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: Generic- Service: WUDFRd Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. Name: K:\ Description: USB3.0 CRW-CF/MD Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: Generic- Service: WUDFRd Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: P:\ Description: MMC Storage Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: ZTE Service: WUDFRd Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. Name: N:\ Description: USB3.0 CRW-MS Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: Generic- Service: WUDFRd Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. Name: O:\ Description: USB3.0 CRW-SD/MS Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: Generic- Service: WUDFRd Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. ==================== Event log errors: ========================= Application errors: ================== Error: (02/14/2015 03:56:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 35.0.1.5500, sygnatura czasowa: 0x54c1f9f3 Nazwa modułu powodującego błąd: mozalloc.dll, wersja: 35.0.1.5500, sygnatura czasowa: 0x54c1f224 Kod wyjątku: 0x80000003 Przesunięcie błędu: 0x00001425 Identyfikator procesu powodującego błąd: 0x384 Godzina uruchomienia aplikacji powodującej błąd: 0xplugin-container.exe0 Ścieżka aplikacji powodującej błąd: plugin-container.exe1 Ścieżka modułu powodującego błąd: plugin-container.exe2 Identyfikator raportu: plugin-container.exe3 Error: (02/14/2015 02:25:08 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/14/2015 02:24:55 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error: (02/14/2015 02:24:55 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error: (02/13/2015 05:17:49 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/13/2015 05:17:37 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error: (02/13/2015 05:17:37 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error: (02/12/2015 11:35:43 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/12/2015 11:35:26 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error: (02/12/2015 11:35:26 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 System errors: ============= Error: (02/10/2015 00:19:08 PM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk9\DR9. Error: (02/10/2015 00:19:08 PM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk9\DR9. Error: (02/10/2015 00:19:07 PM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk9\DR9. Error: (02/10/2015 00:19:07 PM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk9\DR9. Error: (02/10/2015 00:19:06 PM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk9\DR9. Error: (02/10/2015 11:51:53 AM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk9\DR9 wystąpił zły blok. Error: (02/10/2015 11:48:34 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {F319F1B8-7587-4146-AF9C-0D6D77819BF1} Error: (02/10/2015 11:47:59 AM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk8\DR8. Error: (02/10/2015 11:47:59 AM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk8\DR8. Error: (02/10/2015 11:47:58 AM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk8\DR8. Microsoft Office Sessions: ========================= Error: (02/14/2015 03:56:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: plugin-container.exe35.0.1.550054c1f9f3mozalloc.dll35.0.1.550054c1f224800000030000142538401d0485b55fc6065C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dllb7332c31-b459-11e4-a195-00a0c6000000 Error: (02/14/2015 02:25:08 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/14/2015 02:24:55 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x000000000x00000001 Error: (02/14/2015 02:24:55 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: 0x800401F9 Error: (02/13/2015 05:17:49 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/13/2015 05:17:37 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x000000000x00000001 Error: (02/13/2015 05:17:37 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: 0x800401F9 Error: (02/12/2015 11:35:43 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/12/2015 11:35:26 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x000000000x00000001 Error: (02/12/2015 11:35:26 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: 0x800401F9 CodeIntegrity Errors: =================================== Date: 2015-02-14 19:36:44.508 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-02-14 14:37:12.597 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-02-14 14:24:51.970 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-02-13 23:48:00.179 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-02-13 22:22:23.784 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-02-13 21:55:21.641 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-02-13 21:41:59.334 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-02-13 21:30:42.278 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-02-13 21:04:36.865 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-02-13 17:17:32.552 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Celeron(R) CPU E3400 @ 2.60GHz Percentage of memory in use: 52% Total physical RAM: 4061.12 MB Available physical RAM: 1928.43 MB Total Pagefile: 8120.43 MB Available Pagefile: 5982.37 MB Total Virtual: 8192 MB Available Virtual: 8191.78 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:100 GB) (Free:46.63 GB) NTFS Drive d: () (Fixed) (Total:182.62 GB) (Free:31.97 GB) NTFS Drive e: () (Fixed) (Total:183.04 GB) (Free:115.48 GB) NTFS Drive f: (Nowy) (Fixed) (Total:54.99 GB) (Free:39.24 GB) NTFS Drive g: (Dysk lokalny) (Fixed) (Total:39.05 GB) (Free:26.06 GB) NTFS Drive h: (Nowy) (Fixed) (Total:54.99 GB) (Free:24.38 GB) NTFS Drive j: (blueconnect) (CDROM) (Total:0.01 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 15B29A17) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=100 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=182.6 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=183 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 149 GB) (Disk ID: EB81EB81) Partition 1: (Not Active) - (Size=39.1 GB) - (Type=OF Extended) Partition 2: (Active) - (Size=55 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=55 GB) - (Type=07 NTFS) ==================== End Of Log ============================