Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-02-2015 Ran by R at 2015-03-01 12:03:04 Running from C:\Users\R\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-2260292901-1510537176-2869363541-1001\...\uTorrent) (Version: 3.4.2.37754 - BitTorrent Inc.) ABBYY FineReader 12 Professional (HKLM-x32\...\{F12000FE-0001-0000-0000-074957833700}) (Version: 12.0.501 - ABBYY Production LLC) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 16.0.0.273 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) AVIOR7000 Software (HKLM-x32\...\InstallShield_{971E5576-25D0-4A23-BF85-7A71E90C1871}) (Version: 1.21 - Mionix) AVIOR7000 Software (x32 Version: 1.21 - Mionix) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.03 - Piriform) CrystalDiskInfo 6.2.1 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.2.1 - Crystal Dew World) CyberGhost 5 (HKLM\...\CyberGhost 5_is1) (Version: - CyberGhost S.R.L.) DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive) DCS World (HKLM-x32\...\Steam App 223750) (Version: - Eagle Dynamics) Dune Legacy (HKLM-x32\...\Dune Legacy) (Version: - ) Dungeon Siege III (HKLM-x32\...\Dungeon Siege III_is1) (Version: - ) e-Deklaracje Desktop (HKLM-x32\...\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1) (Version: 7.0.1 - Ministerstwo Finansow) e-Deklaracje Desktop (x32 Version: 7.0.1 - Ministerstwo Finansow) Hidden foobar2000 v1.3.6 (HKLM-x32\...\foobar2000) (Version: 1.3.6 - Peter Pawlowski) Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.74 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden H1Z1 (HKLM-x32\...\Steam App 295110) (Version: - Sony Online Entertainment) HD Audio PCI-e Audio Device (HKLM-x32\...\{0B43B885-9188-404F-8D1B-56EAB075EB59}) (Version: 1.0.0.0 - ) Homeworld Remastered Collection (HKLM-x32\...\Steam App 244160) (Version: - Gearbox Software) Host OpenAL (HKLM-x32\...\Host OpenAL) (Version: 2.02 - Creative Technology Limited) Insurgency (HKLM-x32\...\Steam App 222880) (Version: - New World Interactive) Intel Extreme Tuning Utility (HKLM-x32\...\{ffa8daa3-4912-4a4a-aac4-a0549064268b}) (Version: 5.1.1.25 - Intel Corporation) Intel Extreme Tuning Utility (x32 Version: 5.1.1.25 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.25.1036 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation) Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version: - Intel Corporation) Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\3FD0C489-0F02-481a-A3E1-9754CD396761) (Version: - Intel Corporation) L.A. Noire (HKLM-x32\...\{915726DF-7891-444A-AA03-0DF1D64F561A}) (Version: 1.00.0000 - Rockstar Games) L.A. Noire Update v1.3.2613 (HKLM-x32\...\L.A Noire_is1) (Version: - ) Life is Feudal: Your Own (HKLM-x32\...\Steam App 290080) (Version: - Bitbox Ltd.) LinuxLive USB Creator (HKLM-x32\...\LinuxLive USB Creator) (Version: 2.9 - Thibaut Lauziere) Malwarebytes Anti-Malware wersja 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) MediaMonkey 4.1 (HKLM-x32\...\MediaMonkey_is1) (Version: 4.1 - Ventis Media Inc.) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Narzędzia sprawdzające pakietu Microsoft Office 2013 — polski (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden NVIDIA GeForce Experience 2.2.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.2 - NVIDIA Corporation) NVIDIA Graphics Driver 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.52 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.33.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.33.0 - NVIDIA Corporation) NVIDIA Miracast Virtual Audio 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 347.52 - NVIDIA Corporation) NVIDIA PhysX System Software 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 9.5.2.2829 - Electronic Arts, Inc.) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.82.106.0 - Overwolf Ltd.) PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.311.0 - Tracker Software Products Ltd) Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.0.6 - Rockstar Games) SHIELD Streaming (Version: 4.0.1000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 17.12.8 - NVIDIA Corporation) Hidden Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp) The Long Dark (HKLM-x32\...\Steam App 305620) (Version: - Hinterland Studio Inc.) UE3Redist (HKU\S-1-5-21-2260292901-1510537176-2869363541-1001\...\InstallShield_{6530FDAA-5B1F-4830-95BB-650E9804D239}) (Version: 1.00.0000 - Epic Games) UE3Redist (x32 Version: 1.00.0000 - Epic Games) Hidden UltraISO Premium V9.62 (HKLM-x32\...\UltraISO_is1) (Version: - ) Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation) WinRAR 5.20 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2260292901-1510537176-2869363541-1001_Classes\CLSID\{736B6AD6-E97D-A39D-E178-57F2AFBFEDCA}\InprocServer32 -> C:\Windows\system32\ole32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2260292901-1510537176-2869363541-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) ==================== Restore Points ========================= 28-02-2015 12:59:14 Installed Windows 7 USB/DVD Download Tool ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {07FE391D-D34C-4067-ACC4-C516F2F9AB19} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {249C0560-71D5-4143-B9C6-E56CFE2BCFAA} - System32\Tasks\InstallShield Updater => Wscript.exe //nologo //E:jscript //B "C:\Users\R\AppData\Roaming\InstallShield Updater\updater.ini" Task: {2D5BF545-78D4-447E-8376-ABFE7272728B} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-02-14] (Microsoft Corporation) Task: {44CFA5EB-5409-4381-A969-07C0BF8371BD} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-02-19] (Piriform Ltd) Task: {6CD22CE6-6BF4-4BB4-BAB2-AE305DE21D6E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-27] (Google Inc.) Task: {857F65E7-A009-43A6-B8DF-2937C3FF9AF3} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation) Task: {8B7880C1-3FEB-4978-A81A-596EC8548A0D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {B83E0BAD-7513-4C67-A254-235FF8138020} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2015-01-15] (Overwolf LTD) Task: {CE5987FD-D573-48C2-AF04-39BE348BEBCA} - System32\Tasks\Microsoft Office 15 Sync Maintenance for TF-1-R TF-1 => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2015-01-21] (Microsoft Corporation) Task: {F1585C58-5FC1-4BEE-91D6-B632DC3BB88D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-11-27] (Google Inc.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\InstallShield Updater.job => Wscript.exeX//nologo //E:jscript //B C:\Users\R\AppData\Roaming\InstallShield Updater\updater.ini ==================== Loaded Modules (whitelisted) ============== 2014-12-21 10:18 - 2015-02-05 20:07 - 00117576 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-12-05 14:51 - 2013-04-25 05:16 - 00286720 ____N () C:\Windows\System\GfsMgr64.exe 2014-12-05 14:51 - 2013-04-25 05:16 - 00204800 ____N () C:\Windows\SysWOW64\GfsMgr.exe 2014-12-05 14:51 - 2011-02-25 10:07 - 00204800 ____N () C:\Windows\SysWOW64\ExMgr.exe 2015-01-09 22:25 - 2014-01-09 11:53 - 02332160 ____N () C:\Program Files\HD Audio PCI-e Audio Device\CPL\FaceLift_x64.exe 2015-02-19 22:40 - 2015-02-19 22:40 - 00057344 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2015-02-26 17:49 - 2015-02-25 03:44 - 01530184 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.74\libglesv2.dll 2015-02-26 17:49 - 2015-02-25 03:44 - 00091976 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.74\libegl.dll 2015-02-26 17:49 - 2015-02-25 03:44 - 11266888 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.74\pdf.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\R\OneDrive:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2260292901-1510537176-2869363541-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\R\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img10.jpg DNS Servers: 192.168.0.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\Services: ATLOISAService => 3 MSCONFIG\Services: cphs => 3 MSCONFIG\Services: Creative Audio Engine Licensing Service => 3 MSCONFIG\Services: GfExperienceService => 2 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: ICCS => 3 MSCONFIG\Services: igfxCUIService1.0.0.0 => 2 MSCONFIG\Services: MBAMScheduler => 2 MSCONFIG\Services: MBAMService => 2 MSCONFIG\Services: NvNetworkService => 2 MSCONFIG\Services: NvStreamSvc => 2 MSCONFIG\Services: nvsvc => 2 MSCONFIG\Services: Origin Client Service => 3 MSCONFIG\Services: Steam Client Service => 3 MSCONFIG\Services: XTU3SERVICE => 2 ==================== Accounts: ============================= Administrator (S-1-5-21-2260292901-1510537176-2869363541-500 - Administrator - Disabled) Gość (S-1-5-21-2260292901-1510537176-2869363541-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2260292901-1510537176-2869363541-1003 - Limited - Enabled) R (S-1-5-21-2260292901-1510537176-2869363541-1001 - Administrator - Enabled) => C:\Users\R ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/27/2015 05:20:34 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program onenoteim.exe version 16.0.3327.1030 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: fcc Start Time: 01d052a93b224507 Termination Time: 4294967295 Application Path: C:\Program Files\WindowsApps\Microsoft.Office.OneNote_16.0.3327.1030_x64__8wekyb3d8bbwe\onenoteim.exe Report Id: 8d33309b-be9c-11e4-828a-d43d7e519037 Faulting package full name: Microsoft.Office.OneNote_16.0.3327.1030_x64__8wekyb3d8bbwe Faulting package-relative application ID: microsoft.onenoteim Error: (02/27/2015 05:20:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: TF-1) Description: Package Microsoft.Office.OneNote_16.0.3327.1030_x64__8wekyb3d8bbwe+microsoft.onenoteim was terminated because it took too long to suspend. Error: (02/25/2015 08:13:22 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: AUDIODG.EXE, version: 6.3.9600.17415, time stamp: 0x54503ea8 Faulting module name: ntdll.dll, version: 6.3.9600.17630, time stamp: 0x54b0e17a Exception code: 0xc0000374 Fault offset: 0x00000000000f1240 Faulting process id: 0x17c8 Faulting application start time: 0xAUDIODG.EXE0 Faulting application path: AUDIODG.EXE1 Faulting module path: AUDIODG.EXE2 Report Id: AUDIODG.EXE3 Faulting package full name: AUDIODG.EXE4 Faulting package-relative application ID: AUDIODG.EXE5 Error: (02/23/2015 05:48:52 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: The volume Odzyskiwanie was not optimized because an error was encountered: Parametr jest niepoprawny. (0x80070057) Error: (02/23/2015 05:30:19 PM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: ZARZĄDZANIE NT) Description: There was an error with the Windows Location Provider database Error: (02/21/2015 05:20:41 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: The volume Odzyskiwanie was not optimized because an error was encountered: Parametr jest niepoprawny. (0x80070057) Error: (02/16/2015 10:06:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: AUDIODG.EXE, version: 6.3.9600.17415, time stamp: 0x54503ea8 Faulting module name: ntdll.dll, version: 6.3.9600.17630, time stamp: 0x54b0e17a Exception code: 0xc0000374 Fault offset: 0x00000000000f1240 Faulting process id: 0x12cc Faulting application start time: 0xAUDIODG.EXE0 Faulting application path: AUDIODG.EXE1 Faulting module path: AUDIODG.EXE2 Report Id: AUDIODG.EXE3 Faulting package full name: AUDIODG.EXE4 Faulting package-relative application ID: AUDIODG.EXE5 Error: (02/15/2015 07:17:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: AUDIODG.EXE, version: 6.3.9600.17415, time stamp: 0x54503ea8 Faulting module name: ntdll.dll, version: 6.3.9600.17630, time stamp: 0x54b0e17a Exception code: 0xc0000374 Fault offset: 0x00000000000f1240 Faulting process id: 0x1a44 Faulting application start time: 0xAUDIODG.EXE0 Faulting application path: AUDIODG.EXE1 Faulting module path: AUDIODG.EXE2 Report Id: AUDIODG.EXE3 Faulting package full name: AUDIODG.EXE4 Faulting package-relative application ID: AUDIODG.EXE5 Error: (02/14/2015 06:17:35 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: Alice.exe, version: 1.0.0.1, time stamp: 0x4b607a74 Faulting module name: Alice.exe, version: 1.0.0.1, time stamp: 0x4b607a74 Exception code: 0x80000003 Fault offset: 0x00af542d Faulting process id: 0x320 Faulting application start time: 0xAlice.exe0 Faulting application path: Alice.exe1 Faulting module path: Alice.exe2 Report Id: Alice.exe3 Faulting package full name: Alice.exe4 Faulting package-relative application ID: Alice.exe5 Error: (02/14/2015 06:16:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: Alice.exe, version: 1.0.0.1, time stamp: 0x4b607a74 Faulting module name: Alice.exe, version: 1.0.0.1, time stamp: 0x4b607a74 Exception code: 0x80000003 Fault offset: 0x00af542d Faulting process id: 0x190c Faulting application start time: 0xAlice.exe0 Faulting application path: Alice.exe1 Faulting module path: Alice.exe2 Report Id: Alice.exe3 Faulting package full name: Alice.exe4 Faulting package-relative application ID: Alice.exe5 System errors: ============= Error: (03/01/2015 11:42:54 AM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: There was an error while attempting to read the local hosts file. Error: (03/01/2015 11:42:34 AM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: There was an error while attempting to read the local hosts file. Error: (03/01/2015 11:29:13 AM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: There was an error while attempting to read the local hosts file. Error: (03/01/2015 11:23:20 AM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: TF-1) Description: 0x8000002a117\??\C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\S-1-5-21-2260292901-1510537176-2869363541-1001-0-ntuser.dat Error: (03/01/2015 11:23:15 AM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: TF-1) Description: 0x8000002a117\??\C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\S-1-5-21-2260292901-1510537176-2869363541-1001-0-ntuser.dat Error: (03/01/2015 11:21:15 AM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: There was an error while attempting to read the local hosts file. Error: (03/01/2015 11:21:12 AM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: There was an error while attempting to read the local hosts file. Error: (03/01/2015 11:21:11 AM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: There was an error while attempting to read the local hosts file. Error: (03/01/2015 10:51:09 AM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: TF-1) Description: 0x8000002a117\??\C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\S-1-5-21-2260292901-1510537176-2869363541-1001-0-ntuser.dat Error: (03/01/2015 10:51:04 AM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: ZARZĄDZANIE NT) Description: There was an error while attempting to read the local hosts file. Microsoft Office Sessions: ========================= Error: (02/27/2015 05:20:34 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: onenoteim.exe16.0.3327.1030fcc01d052a93b2245074294967295C:\Program Files\WindowsApps\Microsoft.Office.OneNote_16.0.3327.1030_x64__8wekyb3d8bbwe\onenoteim.exe8d33309b-be9c-11e4-828a-d43d7e519037Microsoft.Office.OneNote_16.0.3327.1030_x64__8wekyb3d8bbwemicrosoft.onenoteim Error: (02/27/2015 05:20:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: TF-1) Description: Microsoft.Office.OneNote_16.0.3327.1030_x64__8wekyb3d8bbwe+microsoft.onenoteim Error: (02/25/2015 08:13:22 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: AUDIODG.EXE6.3.9600.1741554503ea8ntdll.dll6.3.9600.1763054b0e17ac000037400000000000f124017c801d0512f1ec9c675C:\Windows\system32\AUDIODG.EXEC:\Windows\SYSTEM32\ntdll.dll5cefe0f0-bd22-11e4-828a-d43d7e519037 Error: (02/23/2015 05:48:52 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: OdzyskiwanieParametr jest niepoprawny. (0x80070057) Error: (02/23/2015 05:30:19 PM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: ZARZĄDZANIE NT) Description: -2147024883 Error: (02/21/2015 05:20:41 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: OdzyskiwanieParametr jest niepoprawny. (0x80070057) Error: (02/16/2015 10:06:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: AUDIODG.EXE6.3.9600.1741554503ea8ntdll.dll6.3.9600.1763054b0e17ac000037400000000000f124012cc01d04a246849c5f9C:\Windows\system32\AUDIODG.EXEC:\Windows\SYSTEM32\ntdll.dll9c24af88-b61f-11e4-828a-d43d7e519037 Error: (02/15/2015 07:17:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: AUDIODG.EXE6.3.9600.1741554503ea8ntdll.dll6.3.9600.1763054b0e17ac000037400000000000f12401a4401d0494b057c689dC:\Windows\system32\AUDIODG.EXEC:\Windows\SYSTEM32\ntdll.dlld717c6ad-b53e-11e4-828a-d43d7e519037 Error: (02/14/2015 06:17:35 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Alice.exe1.0.0.14b607a74Alice.exe1.0.0.14b607a748000000300af542d32001d0487a1b10f501C:\Program Files (x86)\Disney Interactive Studios\Alicja w Krainie Czarow\Alice.exeC:\Program Files (x86)\Disney Interactive Studios\Alicja w Krainie Czarow\Alice.exe5e067668-b46d-11e4-828a-d43d7e519037 Error: (02/14/2015 06:16:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Alice.exe1.0.0.14b607a74Alice.exe1.0.0.14b607a748000000300af542d190c01d04879fc317b1cC:\Program Files (x86)\Disney Interactive Studios\Alicja w Krainie Czarow\Alice.exeC:\Program Files (x86)\Disney Interactive Studios\Alicja w Krainie Czarow\Alice.exe402c74b6-b46d-11e4-828a-d43d7e519037 CodeIntegrity Errors: =================================== Date: 2015-02-28 11:42:45.700 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-02-14 19:04:58.352 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-02-11 18:33:37.332 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-02-01 13:46:11.705 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-01-24 15:25:16.835 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-01-15 18:13:42.244 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-01-13 14:21:45.960 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-01-05 20:11:15.190 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-12-29 04:44:39.186 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2014-12-25 10:27:31.976 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3570K CPU @ 3.40GHz Percentage of memory in use: 36% Total physical RAM: 8139.21 MB Available physical RAM: 5194.75 MB Total Pagefile: 9419.21 MB Available Pagefile: 5711.04 MB Total Virtual: 131072 MB Available Virtual: 131071.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:237.96 GB) (Free:110.25 GB) NTFS Drive d: (Nowy) (Fixed) (Total:930 GB) (Free:538.13 GB) NTFS Drive e: (Nowy) (Fixed) (Total:930 GB) (Free:181.2 GB) NTFS Drive f: (Nowy) (Fixed) (Total:934.39 GB) (Free:734.4 GB) NTFS Drive g: (DANE) (Fixed) (Total:303.46 GB) (Free:88.07 GB) NTFS Drive h: () (Fixed) (Total:67.84 GB) (Free:4.13 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 238.5 GB) (Disk ID: 00000000) Partition: GPT Partition Type. ======================================================== Disk: 1 (Size: 465.8 GB) (Disk ID: 4AA954CD) Partition: GPT Partition Type. ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 2794.5 GB) (Disk ID: 00000000) Partition: GPT Partition Type. ==================== End Of Log ============================