Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-02-2015 Ran by Johnny at 2015-03-01 13:20:09 Running from E:\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-2214583215-4056911293-1326149680-1001\...\uTorrent) (Version: 3.4.2.38758 - BitTorrent Inc.) Avast License by ZeNiX [2014-03-14] (HKLM-x32\...\Avast_2050_ZeNiX [2014-03-14]_is1) (Version: - ) Avast Pro Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2206 - AVAST Software) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 5.0.1.0406 - Disc Soft Ltd) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.115 - Google Inc.) Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) Intel(R) Chipset Device Software (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) K-Lite Codec Pack 10.9.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.9.5 - ) KMSpico v9.1.3 (HKLM\...\KMSpico_is1) (Version: 9.1.3 - ) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) NVIDIA 3D Vision Controller Driver 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 347.09 - NVIDIA Corporation) NVIDIA 3D Vision Driver 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 347.52 - NVIDIA Corporation) NVIDIA GeForce Experience 2.2.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.2 - NVIDIA Corporation) NVIDIA Graphics Driver 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.52 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.33.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.33.0 - NVIDIA Corporation) NVIDIA Miracast Virtual Audio 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 347.52 - NVIDIA Corporation) NVIDIA PhysX System Software 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.83.60.0 - Overwolf Ltd.) Overwolf.Setup.VC100CRTx64.Dist (HKLM\...\{EC9D5554-6852-4A55-81BB-AC02C7A8CFED}) (Version: 1.0.0 - Overwolf) Overwolf.Setup.VC100CRTx86.Dist (x32 Version: 1.0.0 - Overwolf) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7399 - Realtek Semiconductor Corp.) RuneScape Launcher 1.2.3 (HKLM-x32\...\{FAE99C85-0732-4C58-9C6B-10B5B12FA2E9}) (Version: 1.2.3 - Jagex Ltd) SHIELD Streaming (Version: 4.0.1000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 17.12.8 - NVIDIA Corporation) Hidden StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TP-LINK TL-WN727N Driver (HKLM-x32\...\{52C7E8B3-A21E-460B-A9EC-5B6CBB8635CE}) (Version: 1.3.1 - TP-LINK) WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 16-02-2015 21:51:32 Windows Update 21-02-2015 16:24:23 Windows Update 24-02-2015 18:35:31 Installed LogMeIn Hamachi 27-02-2015 16:06:11 Installed RuneScape Launcher 1.2.3 01-03-2015 12:36:07 Punkt przywracania stworzony przez HitmanPro ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {52395993-7590-4926-96A9-9A0E72065519} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-16] (Google Inc.) Task: {8E1E294D-4279-4B8A-87BA-E4122DDF3F08} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-01-29] (Microsoft Corporation) Task: {A9ECAFB7-1355-4C85-A6F2-F4AEA1EA411D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-16] (Google Inc.) Task: {B18607D6-1A73-4A6B-BC49-E188CFE2F4FE} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [2013-12-11] () Task: {B8CEE5B8-C94C-4F10-AEE5-DA8B8B166ACF} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-02-28] (AVAST Software) Task: {BD150F3C-66CD-4A0C-AFAB-9C52734CCC49} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2015-02-18] (Overwolf LTD) Task: {D3FF0AE8-129E-484F-9C61-FD024131ADD3} - System32\Tasks\{9601E213-EA6E-46E1-8E3D-82F3D4B66269} => pcalua.exe -a G:\skoki2002start.exe -d G:\ Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== 2015-02-16 22:20 - 2015-02-05 20:07 - 00117576 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-02-28 09:25 - 2015-02-28 09:25 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll 2015-02-28 09:25 - 2015-02-28 09:25 - 05846160 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll 2015-02-28 09:45 - 2014-03-14 08:00 - 00695808 _____ () C:\Program Files\AVAST Software\Avast\VERSION.dll 2015-03-01 10:50 - 2015-03-01 10:50 - 02913792 _____ () C:\Program Files\AVAST Software\Avast\defs\15030100\algo.dll 2015-02-28 09:25 - 2015-02-28 09:25 - 04491192 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll 2015-02-16 22:59 - 2014-11-11 19:47 - 00774656 _____ () D:\Steam\SDL2.dll 2015-02-16 22:59 - 2014-12-02 01:29 - 05002752 _____ () D:\Steam\v8.dll 2015-02-16 22:59 - 2015-02-19 00:51 - 02360000 _____ () D:\Steam\video.dll 2015-02-16 22:59 - 2014-12-02 01:29 - 01612800 _____ () D:\Steam\icui18n.dll 2015-02-16 22:59 - 2014-12-02 01:29 - 01210368 _____ () D:\Steam\icuuc.dll 2015-02-16 22:59 - 2014-12-01 22:31 - 02396672 _____ () D:\Steam\libavcodec-56.dll 2015-02-16 22:59 - 2014-12-01 22:31 - 00479744 _____ () D:\Steam\libavformat-56.dll 2015-02-16 22:59 - 2014-12-01 22:31 - 00332800 _____ () D:\Steam\libavresample-2.dll 2015-02-16 22:59 - 2014-12-01 22:31 - 00442880 _____ () D:\Steam\libavutil-54.dll 2015-02-16 22:59 - 2014-12-01 22:31 - 00485888 _____ () D:\Steam\libswscale-3.dll 2015-02-16 22:59 - 2015-02-19 00:51 - 00702656 _____ () D:\Steam\bin\chromehtml.DLL 2015-02-18 12:37 - 2015-02-18 12:37 - 38713856 _____ () C:\Program Files (x86)\Overwolf\0.83.60.0\libcef.DLL 2015-02-28 09:25 - 2015-02-28 09:25 - 38561576 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-02-18 12:37 - 2015-02-18 12:37 - 00514528 _____ () C:\Program Files (x86)\Overwolf\0.83.60.0\libglesv2.dll 2015-02-18 12:37 - 2015-02-18 12:37 - 00105952 _____ () C:\Program Files (x86)\Overwolf\0.83.60.0\libegl.dll 2015-02-16 22:59 - 2015-01-28 02:30 - 34641288 _____ () D:\Steam\bin\libcef.dll 2015-02-20 23:52 - 2015-02-17 23:44 - 01117512 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\libglesv2.dll 2015-02-20 23:52 - 2015-02-17 23:44 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\libegl.dll 2015-02-20 23:52 - 2015-02-17 23:44 - 09171272 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\pdf.dll 2015-02-20 23:52 - 2015-02-17 23:44 - 14965064 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\Johnny\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2214583215-4056911293-1326149680-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Johnny\Desktop\sky_lanterns_by_wlop-d7b5nfg.jpg DNS Servers: 192.168.1.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Accounts: ============================= Administrator (S-1-5-21-2214583215-4056911293-1326149680-500 - Administrator - Disabled) Guest (S-1-5-21-2214583215-4056911293-1326149680-501 - Limited - Disabled) Johnny (S-1-5-21-2214583215-4056911293-1326149680-1001 - Administrator - Enabled) => C:\Users\Johnny ==================== Faulty Device Manager Devices ============= Name: PCI Simple Communications Controller Description: PCI Simple Communications Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Ethernet Controller Description: Ethernet Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (03/01/2015 00:36:07 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied. . This is often caused by incorrect security settings in either the writer or requestor process. Operation: Gathering Writer Data Context: Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220} Writer Name: System Writer Writer Instance ID: {b0d513fb-0f26-4654-acae-365d3b1212dc} Error: (03/01/2015 00:18:10 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: POWERLEVELING) Description: Activation of app microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (02/28/2015 09:26:39 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary pbwqkxor. System Error: The system cannot find the file specified. . Error: (02/28/2015 09:26:28 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary pbwqkxor. System Error: The system cannot find the file specified. . Error: (02/28/2015 00:40:43 AM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Service cannot be started. The handle is invalid Error: (02/28/2015 00:34:57 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: Service_KMS.exe, version: 11.0.0.0, time stamp: 0x52a8d15d Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0x00000000 Fault offset: 0x00007ff893630565 Faulting process id: 0x464 Faulting application start time: 0xService_KMS.exe0 Faulting application path: Service_KMS.exe1 Faulting module path: Service_KMS.exe2 Report Id: Service_KMS.exe3 Faulting package full name: Service_KMS.exe4 Faulting package-relative application ID: Service_KMS.exe5 Error: (02/28/2015 00:22:58 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program ski2002.exe version 0.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 2798 Start Time: 01d052dbda1e53c4 Termination Time: 4294967295 Application Path: D:\Skoki\ski2002.exe Report Id: 9030c168-bed7-11e4-8257-a34df95628af Faulting package full name: Faulting package-relative application ID: Error: (02/27/2015 11:17:18 PM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Service cannot be started. The handle is invalid Error: (02/27/2015 11:16:54 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program skoki2002start.exe version 0.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 1a0c Start Time: 01d052dacb7cabf9 Termination Time: 4294967295 Application Path: G:\skoki2002start.exe Report Id: 55764e89-bece-11e4-8257-a34df95628af Faulting package full name: Faulting package-relative application ID: Error: (02/27/2015 08:20:00 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program LiveComm.exe version 17.5.9600.20689 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 888 Start Time: 01d052bfd6d6c815 Termination Time: 4294967295 Application Path: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exe Report Id: 9d842470-beb5-11e4-8256-f92503647d30 Faulting package full name: microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe Faulting package-relative application ID: ppleae38af2e007f4358a809ac99a64a67c1 System errors: ============= Error: (03/01/2015 00:19:26 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The Service KMSELDI service terminated unexpectedly. It has done this 1 time(s). Error: (03/01/2015 00:18:25 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The Superfetch service terminated with the following error: %%1062 Error: (03/01/2015 00:18:23 PM) (Source: DCOM) (EventID: 10010) (User: POWERLEVELING) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (03/01/2015 00:18:23 PM) (Source: DCOM) (EventID: 10010) (User: POWERLEVELING) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (03/01/2015 00:18:05 PM) (Source: DCOM) (EventID: 10010) (User: POWERLEVELING) Description: Microsoft.WindowsLive.Mail.AppXchpnq3xrg3grbgjnhp88jn3v9r1xskxr.mca Error: (02/28/2015 09:48:04 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The Service KMSELDI service terminated unexpectedly. It has done this 1 time(s). Error: (02/28/2015 08:57:36 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The Service KMSELDI service terminated unexpectedly. It has done this 1 time(s). Error: (02/28/2015 02:18:20 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The Service KMSELDI service terminated unexpectedly. It has done this 1 time(s). Error: (02/28/2015 02:17:09 AM) (Source: DCOM) (EventID: 10010) (User: POWERLEVELING) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (02/28/2015 02:17:02 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The Volume Shadow Copy service terminated unexpectedly. It has done this 1 time(s). Microsoft Office Sessions: ========================= Error: (03/01/2015 00:36:07 PM) (Source: VSS) (EventID: 8194) (User: ) Description: 0x80070005, Access is denied. Operation: Gathering Writer Data Context: Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220} Writer Name: System Writer Writer Instance ID: {b0d513fb-0f26-4654-acae-365d3b1212dc} Error: (03/01/2015 00:18:10 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: POWERLEVELING) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2144927141 Error: (02/28/2015 09:26:39 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary pbwqkxor. System Error: The system cannot find the file specified. Error: (02/28/2015 09:26:28 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary pbwqkxor. System Error: The system cannot find the file specified. Error: (02/28/2015 00:40:43 AM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Service cannot be started. The handle is invalid Error: (02/28/2015 00:34:57 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Service_KMS.exe11.0.0.052a8d15dunknown0.0.0.0000000000000000000007ff89363056546401d052e5ecd57ac3C:\Program Files\KMSpico\Service_KMS.exeunknown3ca8fcde-bed9-11e4-8258-d851db6d1e2d Error: (02/28/2015 00:22:58 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: ski2002.exe0.0.0.0279801d052dbda1e53c44294967295D:\Skoki\ski2002.exe9030c168-bed7-11e4-8257-a34df95628af Error: (02/27/2015 11:17:18 PM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Service cannot be started. The handle is invalid Error: (02/27/2015 11:16:54 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: skoki2002start.exe0.0.0.01a0c01d052dacb7cabf94294967295G:\skoki2002start.exe55764e89-bece-11e4-8257-a34df95628af Error: (02/27/2015 08:20:00 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: LiveComm.exe17.5.9600.2068988801d052bfd6d6c8154294967295C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exe9d842470-beb5-11e4-8256-f92503647d30microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbweppleae38af2e007f4358a809ac99a64a67c1 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-4460 CPU @ 3.20GHz Percentage of memory in use: 40% Total physical RAM: 8119.94 MB Available physical RAM: 4849.79 MB Total Pagefile: 16311.94 MB Available Pagefile: 12538.95 MB Total Virtual: 131072 MB Available Virtual: 131071.81 MB ==================== Drives ================================ Drive c: (SYSTEM) (Fixed) (Total:99.75 GB) (Free:33.31 GB) NTFS Drive d: (GAMES) (Fixed) (Total:392.14 GB) (Free:283.8 GB) NTFS Drive e: (SAVING PART) (Fixed) (Total:439.4 GB) (Free:438.12 GB) NTFS Drive j: (KAROLPEN) (Removable) (Total:3.73 GB) (Free:2.92 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT Partition Type. ======================================================== Disk: 1 (Size: 3.7 GB) (Disk ID: CAD4EBEA) Partition 4: (Active) - (Size=3.7 GB) - (Type=0B) ==================== End Of Log ============================