Additional scan result of Farbar Recovery Scan Tool (x86) Version: 25-02-2015 01 Ran by NOWAK-LP at 2015-02-27 00:34:54 Running from C:\Users\NOWAK-LP\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Microsoft Security Essentials (Disabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A} AS: Microsoft Security Essentials (Disabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 32 Bit HP CIO Components Installer (Version: 17.1.1 - Hewlett-Packard) Hidden Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Flash Player ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 9.0.124.0 - Adobe Systems Incorporated) Adobe Reader 9 - Polish (HKLM\...\{AC76BA86-7AD7-1045-7B44-A90000000001}) (Version: 9.0.0 - Adobe Systems Incorporated) Agere Systems HDA Modem (HKLM\...\Agere Systems Soft Modem) (Version: - Agere Systems) Atheros WLAN Client (HKLM\...\{04983D37-2202-4295-94A2-8B547C66133F}) (Version: 1.00.000 - ) ATI Catalyst Install Manager (HKLM\...\{5DB307AA-342B-6559-0ABC-66CFF8A0718D}) (Version: 3.0.728.0 - ATI Technologies, Inc.) BatteryLifeExtender (HKLM\...\{AA16A9E5-40E9-44F5-801E-6B3D3CFE79E5}) (Version: 1.0.0 - Samsung) Brother MFL-Pro Suite MFC-8950DW (HKLM\...\{37372D85-4945-4B6B-AC87-7BC5D1AB9F5C}) (Version: 2.0.1.0 - Brother Industries, Ltd.) Brother MFL-Pro Suite MFC-J5910DW (HKLM\...\{830F55B6-4398-4B72-A0D8-66397B902C0E}) (Version: 1.1.1.0 - Brother Industries, Ltd.) Business Contact Manager z dodatkiem SP2 dla programu Outlook 2007 (HKLM\...\Business Contact Manager) (Version: 3.0.8619.1 - Microsoft Corporation) Business Contact Manager z dodatkiem SP2 dla programu Outlook 2007 (Version: 3.0.8619.1 - Microsoft Corporation) Hidden ccc-core-static (Version: 2009.0520.1631.27815 - Nazwa firmy) Hidden CCleaner (HKLM\...\CCleaner) (Version: 4.17 - Piriform) Easy Battery Manager (HKLM\...\{6F730513-8688-4C3C-90A3-6B9792CE2EF3}) (Version: 3.2.1.7 - Samsung) Easy Display Manager (HKLM\...\{17283B95-21A8-4996-97DA-547A48DB266F}) (Version: 2.3 - Samsung Electronics Co., Ltd.) Easy Network Manager (HKLM\...\{A7581D39-EA20-4883-A480-80C21047052B}) (Version: 4.0.2 - Samsung) Easy SpeedUp Manager (HKLM\...\{EF367AA4-070B-493C-9575-85BE59D789C9}) (Version: 2.0.2.2 - ) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Google Chrome (HKLM\...\Google Chrome) (Version: 40.0.2214.115 - Google Inc.) Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden imagine digital freedom - Samsung (HKLM\...\{8E106A57-A17E-431D-B48F-175E42EB9F74}) (Version: 1.0.2.2 - Samsung Electronics Co. Ltd.,) Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: - Intel Corporation) Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version: - Intel Corporation) Java 8 Update 25 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) Marvell Miniport Driver (HKLM\...\Marvell Miniport Driver) (Version: 10.67.5.3 - Marvell) Master PDF Editor 1.9.25 (HKLM\...\Master PDF Editor 1.9.25_is1) (Version: - Code Industry Ltd.) Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft Office 2003 Web Components (HKLM\...\{90A40415-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8003.0 - Microsoft Corporation) Microsoft Office Suite Activation Assistant (HKLM\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.7.205.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 (HKLM\...\Microsoft SQL Server 2005) (Version: - Microsoft Corporation) Microsoft SQL Server Native Client (HKLM\...\{7670D32F-DAE6-4E49-8C8B-B3F08B5B1686}) (Version: 9.00.5000.00 - Microsoft Corporation) Microsoft SQL Server Setup Support Files (English) (HKLM\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.5000.00 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{E7084B89-69E0-46B3-A118-8F99D06988CD}) (Version: 9.00.5000.00 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Mozilla Firefox 35.0.1 (x86 pl) (HKLM\...\Mozilla Firefox 35.0.1 (x86 pl)) (Version: 35.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 31.1.0 - Mozilla) Mozilla Thunderbird 31.4.0 (x86 pl) (HKLM\...\Mozilla Thunderbird 31.4.0 (x86 pl)) (Version: 31.4.0 - Mozilla) MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB973685) (HKLM\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation) Namuga 1.3M Webcam (HKLM\...\{71A51B59-E7D3-11DB-A386-005056C00008}) (Version: 1.00.0000 - Vimicro Corporation) Nuance PaperPort 12 (HKLM\...\{CEB2E185-0481-4926-A976-2EB48D55B366}) (Version: 12.1.0005 - Nuance Communications, Inc.) Nuance PDF Viewer Plus (HKLM\...\{28656860-4728-433C-8AD4-D1A930437BC8}) (Version: 5.30.3290 - Nuance Communications, Inc) OpenOffice 4.1.0 (HKLM\...\{7EB1185B-6319-42D7-B103-707570BFB0D8}) (Version: 4.10.9764 - Apache Software Foundation) Oprogramowanie Intel(R) PROSet/Wireless WiFi (HKLM\...\{AED53CDF-1046-4C6B-B5E2-C195125ECDA0}) (Version: 12.00.4000 - Intel(R) Corporation) PaperPort Image Printer (HKLM\...\{6EF2FDAB-7FBF-4AB9-92CD-594BDDB6A56B}) (Version: 14.00.0000 - Nuance Communications, Inc.) PDF Architect 2 (HKLM\...\PDF Architect 2) (Version: 2.0.24.16092 - pdfforge GmbH) PDF Architect 2 View Module (HKLM\...\{C960FF38-431D-429D-AD1F-FBD12A45B7C5}) (Version: 2.0.17.17583 - pdfforge GmbH) PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.3 - pdfforge) PDF-XChange Viewer (HKLM\...\{3A6F4A31-8CFD-46B4-8385-E1F384DB121E}) (Version: 2.5.309.0 - Tracker Software Products (Canada) Ltd.) Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5755 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Software (HKLM\...\{6A1F72DD-2465-43A2-A137-8A849399B7A8}) (Version: 1.01.0086 - REALTEK Semiconductor Corp.) Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Samsung Magic Doctor (HKLM\...\{32D6A58F-9659-446C-BBFC-E6F2B41F24DC}) (Version: 5.0 - Samsung Electronics Co., LTD) Samsung Recovery Solution III (HKLM\...\{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}) (Version: 3.0.0.8 - Samsung) Samsung Update Plus (HKLM\...\InstallShield_{A5F483F0-2D79-4FCA-AE09-D0D96E23EBF7}) (Version: 2.0 - Samsung Electronics Co., LTD) Samsung Update Plus (Version: 2.0 - Samsung Electronics Co., LTD) Hidden Scansoft PDF Professional (Version: - ) Hidden Skins (Version: 2009.0520.1631.27815 - ATI) Hidden Składniki łączności pakietu Microsoft Office Small Business (HKLM\...\{A939D341-5A04-4E0A-BB55-3E65B386432D}) (Version: 2.0.7024.0 - Microsoft Corporation) Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.2 - Safer Networking Limited) SpyHunter 4 (HKLM\...\SpyHunter) (Version: 4.19.13.4482 - Enigma Software Group, LLC) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 11.1.3.2 - Synaptics) Vipre (Version: 6.1.5496 - Vipre) Hidden WIDCOMM Bluetooth Software 6.1.0.5200 (HKLM\...\{03D1988F-469F-4843-8E6E-E5FE9D17889D}) (Version: 6.1.0.5200 - WIDCOMM, Inc.) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 19-02-2015 13:14:23 Revo Uninstaller's restore point - ConvertAd 19-02-2015 13:16:18 Revo Uninstaller's restore point - GamesDesktop 008.49 23-02-2015 11:47:54 Zaplanowany punkt kontrolny 23-02-2015 12:29:27 Revo Uninstaller's restore point - AnyProtect 23-02-2015 12:30:35 Revo Uninstaller's restore point - Quick Ref 1.10.0.9 23-02-2015 15:50:11 Revo Uninstaller's restore point - AnyProtect 23-02-2015 15:51:14 Revo Uninstaller's restore point - SmartWeb 24-02-2015 15:07:42 Revo Uninstaller's restore point - Quick Ref 1.10.0.9 24-02-2015 15:41:19 Revo Uninstaller's restore point - Quick Ref 1.10.0.9 24-02-2015 15:42:12 Revo Uninstaller's restore point - GamesDesktop 008.55 24-02-2015 15:43:21 Revo Uninstaller's restore point - SmartWeb 24-02-2015 15:44:14 Revo Uninstaller's restore point - AnyProtect 24-02-2015 15:49:03 Revo Uninstaller's restore point - IGS 24-02-2015 15:56:34 Instalacja pakietu sterownika urządzenia: PC Tools Usługa sieciowa 24-02-2015 17:00:59 avast! antivirus system restore point 24-02-2015 21:20:25 Windows Update 25-02-2015 19:28:55 Instalacja pakietu sterownika urządzenia: Marvell Karty sieciowe 25-02-2015 19:34:09 Instalacja pakietu sterownika urządzenia: Intel Karty sieciowe 25-02-2015 21:34:53 Windows Update 25-02-2015 21:40:16 Windows Update 25-02-2015 22:15:08 Revo Uninstaller's restore point - WinZipper 25-02-2015 22:19:32 Revo Uninstaller's restore point - igsc 25-02-2015 23:08:36 Installed STOPzilla AntiVirus. 25-02-2015 23:15:09 Revo Uninstaller's restore point - STOPzilla AntiVirus 25-02-2015 23:15:22 Removed STOPzilla AntiVirus. 25-02-2015 23:25:24 Instalacja pakietu sterownika urządzenia: GFI Software Usługa sieciowa 25-02-2015 23:48:25 Removed Nuance PDF Viewer Plus. 26-02-2015 10:05:24 Windows Update 26-02-2015 16:40:40 Installed SpyHunter 26-02-2015 17:30:28 Revo Uninstaller's restore point - SpyHunter 26-02-2015 17:31:16 Removed SpyHunter 26-02-2015 17:36:36 Revo Uninstaller's restore point - Avast Free Antivirus 26-02-2015 17:38:05 avast! antivirus system restore point 26-02-2015 18:23:42 Revo Uninstaller's restore point - WinZip 18.5 26-02-2015 18:26:08 Removed WinZip 18.5 26-02-2015 18:41:40 Revo Uninstaller's restore point - PC Tools Firewall Plus 7.0 26-02-2015 23:47:24 Windows Update 27-02-2015 00:06:46 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2006-11-02 11:23 - 2006-09-18 22:41 - 00000761 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0783AF2B-ED10-4AAC-A3D3-8D4F08917F54} - System32\Tasks\EasySpeedUpManager => C:\Program Files\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe [2009-02-09] (Samsung Electronics Co., Ltd.) Task: {1CB70F3F-0288-4272-84EF-5046777D787C} - System32\Tasks\SamsungMagicDoctor => C:\Program Files\Samsung\Samsung Magic Doctor\MagicDoctorKbdHk.exe [2008-08-26] (Samsung Electronics Co., Ltd.) Task: {2DFE621D-6BB2-4A2E-A9C1-A2E0C29ACC1C} - System32\Tasks\ef7378cb-c2b1-4f9c-9903-06f9fc5c9bbf-10_user => C:\Program Files\SavePass 1.1\ef7378cb-c2b1-4f9c-9903-06f9fc5c9bbf-10.exe <==== ATTENTION Task: {2E9060F0-D426-406A-8F65-183B46132D79} - System32\Tasks\c3209984-b1bb-4eb9-9882-8a64a02095f0-10_user => C:\Program Files\HQCinema Pro 2.1V13.02\c3209984-b1bb-4eb9-9882-8a64a02095f0-10.exe <==== ATTENTION Task: {3C0EB68D-DBBE-416F-8498-DA242C5F16A6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-08-21] (Piriform Ltd) Task: {7E304B94-3B73-47D5-9FA4-51FB23BD55E5} - System32\Tasks\EasyBatteryManager => C:\Program Files\Samsung\EBM\EasyBatteryMgr3.exe [2008-12-10] (SAMSUNG Electronics co., LTD.) Task: {8718603D-3A10-4F14-A0B2-DC4BD6F95190} - System32\Tasks\ef7378cb-c2b1-4f9c-9903-06f9fc5c9bbf-5_user => C:\Program Files\SavePass 1.1\ef7378cb-c2b1-4f9c-9903-06f9fc5c9bbf-5.exe <==== ATTENTION Task: {9A669D2A-0A0F-486B-AFCF-689DA1DD26FC} - System32\Tasks\BatteryLifeExtender => C:\Program Files\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe [2009-03-13] (Samsung Electronics. Co. Ltd.) Task: {B627CA3B-2E44-468F-BB1A-291D3161B771} - System32\Tasks\c3209984-b1bb-4eb9-9882-8a64a02095f0-5_user => C:\Program Files\HQCinema Pro 2.1V13.02\c3209984-b1bb-4eb9-9882-8a64a02095f0-5.exe <==== ATTENTION Task: {C11D6AC4-57FD-4C34-AA8D-4CEB7D16582D} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [2014-10-24] (Enigma Software Group USA, LLC.) Task: {D5658834-CCFA-4F1C-9D7C-F4E5E5F392A9} - System32\Tasks\EasyDisplayMgr => C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe [2009-05-15] (Samsung Electronics Co., Ltd.) Task: {F8906555-74C0-46AE-A9A2-FD2C436E9B7E} - \Super Optimizer Schedule No Task File <==== ATTENTION Task: {FA23575C-FC93-4A13-8CD0-10BE7730DB1C} - System32\Tasks\SUPBackground => C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe [2010-04-20] () (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\c3209984-b1bb-4eb9-9882-8a64a02095f0-10_user.job => C:\Program Files\HQCinema Pro 2.1V13.02\c3209984-b1bb-4eb9-9882-8a64a02095f0-10.exe <==== ATTENTION Task: C:\Windows\Tasks\c3209984-b1bb-4eb9-9882-8a64a02095f0-5_user.job => C:\Program Files\HQCinema Pro 2.1V13.02\c3209984-b1bb-4eb9-9882-8a64a02095f0-5.exe <==== ATTENTION Task: C:\Windows\Tasks\ef7378cb-c2b1-4f9c-9903-06f9fc5c9bbf-10_user.job => C:\Program Files\SavePass 1.1\ef7378cb-c2b1-4f9c-9903-06f9fc5c9bbf-10.exe <==== ATTENTION Task: C:\Windows\Tasks\ef7378cb-c2b1-4f9c-9903-06f9fc5c9bbf-5_user.job => C:\Program Files\SavePass 1.1\ef7378cb-c2b1-4f9c-9903-06f9fc5c9bbf-5.exe <==== ATTENTION Task: C:\Windows\Tasks\XVJ.job => C:\Users\NOWAK\AppData\Roaming\XVJ.exe <==== ATTENTION ==================== Loaded Modules (whitelisted) ============== 2008-07-10 12:15 - 2008-07-10 12:15 - 00200704 _____ () C:\Program Files\Intel\WiFi\bin\IWMSPROV.DLL 2009-06-17 06:12 - 2009-03-05 10:54 - 00311296 _____ () C:\Windows\SYSTEM32\Rezip.exe 2014-09-09 11:33 - 2009-02-27 15:38 - 00139264 ____R () C:\Program Files\Brother\BrUtilities\BrLogAPI.dll 2009-06-18 07:59 - 2006-08-12 04:48 - 00049152 _____ () C:\Program Files\Samsung\Samsung Magic Doctor\HookDllPS2.dll 2009-06-17 06:30 - 2006-08-12 04:48 - 00049152 _____ () C:\Program Files\SAMSUNG\EasySpeedUpManager\HookDllPS2.dll 2009-12-04 09:25 - 2009-05-15 15:22 - 00159744 _____ () C:\Windows\system32\atitmmxx.dll 2011-01-07 03:51 - 2011-01-07 03:51 - 00014848 _____ () C:\Windows\assembly\GAC_MSIL\AxInterop.WBOCXLib\1.0.0.0__90ba9c70f846762e\AxInterop.WBOCXLib.dll 2009-02-12 06:32 - 2009-02-12 06:32 - 00016384 ____R () C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll 2011-01-07 03:51 - 2011-01-07 03:51 - 00270336 _____ () C:\Windows\assembly\GAC_MSIL\CLI.Aspect.CrossDisplay.Graphics.Dashboard\1.0.0.0__90ba9c70f846762e\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2015-02-21 17:53 - 2015-02-17 23:44 - 09171272 _____ () C:\Program Files\Google\Chrome\Application\40.0.2214.115\pdf.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\ProgramData\Temp:C31F31E6 ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver" ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-84699557-792703091-1178954015-1004\Control Panel\Desktop\\Wallpaper -> c:\Windows\sec\wallpapers\wallpaper.jpg DNS Servers: 62.179.1.62 - 62.179.1.63 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" MSCONFIG\startupreg: gmsd_pl_55 => ==================== Accounts: ============================= Administrator (S-1-5-21-84699557-792703091-1178954015-500 - Administrator - Disabled) Gość (S-1-5-21-84699557-792703091-1178954015-501 - Limited - Disabled) NOWAK (S-1-5-21-84699557-792703091-1178954015-1003 - Administrator - Enabled) => C:\Users\NOWAK NOWAK-LP (S-1-5-21-84699557-792703091-1178954015-1004 - Administrator - Enabled) => C:\Users\NOWAK-LP ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/27/2015 00:01:08 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Aplikacja powodująca błąd 5l00bw4d.exe, wersja 2.1.19357.0, sygnatura czasowa 0x52e7ea83, moduł powodujący błąd 5l00bw4d.exe, wersja 2.1.19357.0, sygnatura czasowa 0x52e7ea83, kod wyjątku 0xc0000005, przesunięcie błędu 0x00012298, identyfikator procesu 0x12d4, godzina rozpoczęcia aplikacji 0x5l00bw4d.exe0. Error: (02/26/2015 11:53:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/26/2015 11:42:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Aplikacja powodująca błąd 5l00bw4d.exe, wersja 2.1.19357.0, sygnatura czasowa 0x52e7ea83, moduł powodujący błąd 5l00bw4d.exe, wersja 2.1.19357.0, sygnatura czasowa 0x52e7ea83, kod wyjątku 0xc0000005, przesunięcie błędu 0x00012298, identyfikator procesu 0x12c4, godzina rozpoczęcia aplikacji 0x5l00bw4d.exe0. Error: (02/26/2015 11:35:12 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/26/2015 10:57:27 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Aplikacja powodująca błąd SynTPEnh.exe, wersja 11.1.3.2, sygnatura czasowa 0x48b6efcc, moduł powodujący błąd SynTPEnh.exe, wersja 11.1.3.2, sygnatura czasowa 0x48b6efcc, kod wyjątku 0xc0000409, przesunięcie błędu 0x0002c1ec, identyfikator procesu 0x9c8, godzina rozpoczęcia aplikacji 0xSynTPEnh.exe0. Error: (02/26/2015 08:52:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Aplikacja powodująca błąd MsMpEng.exe, wersja 4.7.205.0, sygnatura czasowa 0x54cb2053, moduł powodujący błąd unknown, wersja 0.0.0.0, sygnatura czasowa 0x00000000, kod wyjątku 0xc0000005, przesunięcie błędu 0x04bdfcf8, identyfikator procesu 0x460, godzina rozpoczęcia aplikacji 0xMsMpEng.exe0. Error: (02/26/2015 08:32:37 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/26/2015 07:03:00 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Aplikacja powodująca błąd cmdshell.exe, wersja 4.0.1.1615, sygnatura czasowa 0x54a0adf1, moduł powodujący błąd cmdshell.exe, wersja 4.0.1.1615, sygnatura czasowa 0x54a0adf1, kod wyjątku 0xc0000409, przesunięcie błędu 0x000054cf, identyfikator procesu 0x11b4, godzina rozpoczęcia aplikacji 0xcmdshell.exe0. Error: (02/26/2015 06:53:23 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/26/2015 06:41:40 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddWin32ServiceFiles: Unable to back up image of service WinZiper service since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. System errors: ============= Error: (02/27/2015 00:10:41 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: 0x80070643Definition Update for Microsoft Security Essentials - KB2310138 (Definition 1.193.1143.0){2BFC472C-EC2C-48F4-B97F-49D3681C2B60}201 Error: (02/27/2015 00:09:59 AM) (Source: Microsoft Antimalware) (EventID: 2001) (User: ) Description: Produkt %ZARZĄDZANIE NT60 napotkał błąd podczas próby aktualizacji podpisów. Nowa wersja podpisu: Poprzednia wersja podpisu: 1.193.1143.0 Źródło aktualizacji: %ZARZĄDZANIE NT59 Etap aktualizacji: 4.7.0205.00 Ścieżka źródła: 4.7.0205.01 Typ podpisu: %ZARZĄDZANIE NT602 Typ aktualizacji: %ZARZĄDZANIE NT604 Użytkownik: ZARZĄDZANIE NT\SYSTEM Bieżąca wersja aparatu: %ZARZĄDZANIE NT605 Poprzednia wersja aparatu: %ZARZĄDZANIE NT606 Kod błędu: %ZARZĄDZANIE NT607 Opis błędu: %ZARZĄDZANIE NT608 Error: (02/27/2015 00:04:21 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: ScRegSetValueExWFailureCommand%%5 Error: (02/27/2015 00:04:18 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: ScRegSetValueExWStart%%5 Error: (02/26/2015 11:58:59 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: ScRegSetValueExWStart%%5 Error: (02/26/2015 11:55:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: GFI VIPRE Antivirus Service%%3 Error: (02/26/2015 11:54:49 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}ZARZĄDZANIE NTUSŁUGA LOKALNAS-1-5-19LocalHost (użycie LRPC) Error: (02/26/2015 11:53:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Parallel port driver%%1058 Error: (02/26/2015 11:53:43 PM) (Source: Microsoft-Windows-TaskScheduler) (EventID: 412) (User: ZARZĄDZANIE NT) Description: 2147942402 Error: (02/26/2015 11:53:43 PM) (Source: HTTP) (EventID: 15016) (User: ) Description: \Device\Http\ReqQueueKerberos Microsoft Office Sessions: ========================= Error: (02/27/2015 00:01:08 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: 5l00bw4d.exe2.1.19357.052e7ea835l00bw4d.exe2.1.19357.052e7ea83c00000050001229812d401d05217ed99578b Error: (02/26/2015 11:53:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/26/2015 11:42:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: 5l00bw4d.exe2.1.19357.052e7ea835l00bw4d.exe2.1.19357.052e7ea83c00000050001229812c401d05214ed7e8c1c Error: (02/26/2015 11:35:12 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/26/2015 10:57:27 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SynTPEnh.exe11.1.3.248b6efccSynTPEnh.exe11.1.3.248b6efccc00004090002c1ec9c801d051fafc8aee38 Error: (02/26/2015 08:52:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: MsMpEng.exe4.7.205.054cb2053unknown0.0.0.000000000c000000504bdfcf846001d051fadb822343 Error: (02/26/2015 08:32:37 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/26/2015 07:03:00 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: cmdshell.exe4.0.1.161554a0adf1cmdshell.exe4.0.1.161554a0adf1c0000409000054cf11b401d051ee75335640 Error: (02/26/2015 06:53:23 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/26/2015 06:41:40 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddWin32ServiceFiles: Unable to back up image of service WinZiper service since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. CodeIntegrity Errors: =================================== Date: 2015-02-27 00:34:49.399 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\sbhips.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-27 00:34:49.328 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\sbhips.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-27 00:34:49.267 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\sbhips.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-27 00:34:49.205 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\sbhips.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-27 00:34:49.122 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SbFw.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-27 00:34:49.058 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SbFw.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-27 00:34:48.992 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SbFw.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-27 00:34:48.923 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SbFw.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-27 00:34:38.539 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-27 00:34:38.479 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM)2 Duo CPU P8700 @ 2.53GHz Percentage of memory in use: 56% Total physical RAM: 3035.88 MB Available physical RAM: 1329.16 MB Total Pagefile: 6274.91 MB Available Pagefile: 4310.71 MB Total Virtual: 2047.88 MB Available Virtual: 1904.88 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:104.76 GB) (Free:32.15 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: () (Fixed) (Total:348 GB) (Free:198.9 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 5516EC50) Partition 1: (Not Active) - (Size=13 GB) - (Type=27) Partition 2: (Active) - (Size=104.8 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=348 GB) - (Type=07 NTFS) ==================== End Of Log ============================