Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015 Ran by kubos at 2015-03-14 18:39:17 Running from C:\Users\kubos\Desktop\FRST-OlderVersion Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Microsoft Security Essentials (Enabled - Up to date) {108DAC43-C256-20B7-BB05-914135DA5160} AS: Microsoft Security Essentials (Enabled - Up to date) {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) Aktualizacje NVIDIA 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation) ASUS Smart Doctor (HKLM-x32\...\InstallShield_{809D7E6D-915D-4EAD-821F-E13D93F37161}) (Version: 5.43 - ASUSTek COMPUTER INC.) ASUS Smart Doctor (x32 Version: 5.43 - ASUSTek COMPUTER INC.) Hidden Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Hitman: Absolution (HKLM-x32\...\Steam App 203140) (Version: - ) Hold Page (HKLM\...\Hold Page) (Version: 2014.11.29.102156 - Hold Page) <==== ATTENTION K-Lite Mega Codec Pack 9.5.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 9.5.5 - ) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 2.1.1116.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Mozilla Firefox 35.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 35.0.1 (x86 pl)) (Version: 35.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 32.0.2 - Mozilla) Nero 2015 (HKLM-x32\...\{407A3427-28FA-4383-8472-972AE71E3262}) (Version: 16.0.03000 - Nero AG) Nero Info (HKLM-x32\...\{B791E0AB-87A9-41A4-8D98-D13C2E37D928}) (Version: 16.0.1003 - Nero AG) NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.7 - NVIDIA Corporation) NVIDIA MediaShield (HKLM-x32\...\{CC452A50-5C87-4A1F-B295-445C3C69BF7D}) (Version: 11.1.0.43 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.12.0604 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.0604 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 306.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 306.97 - NVIDIA Corporation) NVIDIA Sterownik graficzny 306.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 306.97 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 306.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 306.97 - NVIDIA Corporation) OC Gear Driver (HKLM-x32\...\{791B2FDA-A428-47C6-95D9-56A107C73257}) (Version: 3.1.0.1 - ) Panel sterowania NVIDIA 306.97 (Version: 306.97 - NVIDIA Corporation) Hidden Prerequisite installer (x32 Version: 16.0.0000 - Nero AG) Hidden SpyHunter 4 (HKLM-x32\...\SpyHunter) (Version: 4.18.9.4384 - Enigma Software Group, LLC) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) WinRAR 5.11 (32-bitowy) (HKLM-x32\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 23-02-2015 16:07:13 Windows Update 13-03-2015 18:46:43 Windows Update 13-03-2015 18:49:14 Configured NVIDIA ForceWare Network Access Manager 13-03-2015 19:30:17 Restore Point Created by FRST ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2015-02-18 19:52 - 00000864 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 validation.sls.microsoft.com ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {17762EA4-B614-4366-B19D-C11B3468C8B1} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-08] (Adobe Systems Incorporated) Task: {20D97CD1-A735-41C7-B0B2-4B95F8811BEA} - System32\Tasks\{8B0ADA23-6339-4A92-BA17-8BD048CC3740} => pcalua.exe -a C:\PROGRA~2\SearchProtect\Main\bin\uninstall.exe -c /S <==== ATTENTION Task: {215CCE1B-3C71-4110-8A9E-FFEDBC04783A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {2881B310-63B1-4578-9210-8E6329411CE3} - System32\Tasks\{6540ED2A-C93A-41D0-B771-3AAF5B282D0D} => pcalua.exe -a "C:\Users\kubos\Downloads\Nero Free 9.4.12.3d [1].exe" -d C:\Users\kubos\Downloads Task: {31F970C7-95CA-42D8-B4DB-382BC87E7E51} - System32\Tasks\fc6a064f-a2dd-4cc3-9a73-369f24d55904 => C:\Program Files (x86)\Internet Speed Checker\fc6a064f-a2dd-4cc3-9a73-369f24d55904.exe <==== ATTENTION Task: {42501103-E946-4E04-81B4-8D5AD39D48AA} - System32\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-5_user => C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-5.exe <==== ATTENTION Task: {6516DC79-98C6-4D96-BFE9-BD862D139235} - System32\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-11 => C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-11.exe <==== ATTENTION Task: {6569D626-D40F-4525-8673-8ABEB0BAD5D9} - System32\Tasks\LaunchSignup => C:\Program Files (x86)\MyPC Backup\Signup Wizard.exe <==== ATTENTION Task: {8B441A5E-CFFD-4911-8036-1F5134295F86} - System32\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-1 => C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-codedownloader.exe <==== ATTENTION Task: {939C71BB-234E-4F60-9F58-C4B129EAA116} - System32\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-6 => C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-6.exe <==== ATTENTION Task: {97D052A8-3A56-49A6-8271-E6DBA4BC0F24} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: {9A63EA51-57D5-4DEC-AE64-3A216ED3FB6C} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [2014-07-21] (Nero AG) Task: {AE4FCE2A-A072-4540-84E2-676C2D494006} - System32\Tasks\WSE_Vosteran => C:\Users\kubos\AppData\Roaming\WSE_VO~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: {B5795390-4024-4ADB-B06D-2C2DC60A3422} - System32\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-7 => C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-7.exe <==== ATTENTION Task: {BE1350EB-A9BF-4A46-9B1D-BFFD817DE58F} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: {CE186039-E14E-4891-96B5-64731D81ADC2} - System32\Tasks\Microsoft\Microsoft Antimalware\MP Scheduled Scan => C:\Program Files\Microsoft Security Client\Antimalware\MpCmdRun.exe [2011-04-27] (Microsoft Corporation) Task: {D7AB393A-9F53-4225-92BF-5E3DCCC9E9DC} - System32\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-4 => C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-4.exe <==== ATTENTION Task: {DE514776-EE0F-439D-9774-92F70F5D32CE} - System32\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-5 => C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-5.exe <==== ATTENTION Task: {FD1608F1-C577-4570-BABF-47F4B4D51FD5} - System32\Tasks\9472bf32-801e-4380-a93a-312d3363a0e3 => C:\Program Files (x86)\Internet Speed Checker\9472bf32-801e-4380-a93a-312d3363a0e3.exe <==== ATTENTION Task: C:\Windows\Tasks\9472bf32-801e-4380-a93a-312d3363a0e3.job => C:\Program Files (x86)\Internet Speed Checker\9472bf32-801e-4380-a93a-312d3363a0e3.exe <==== ATTENTION Task: C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-1.job => C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-codedownloader.exe <==== ATTENTION Task: C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-11.job => C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-11.exe <==== ATTENTION Task: C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-4.job => C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-4.exe <==== ATTENTION Task: C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-5.job => C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-5.exe <==== ATTENTION Task: C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-5_user.job => C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-5.exe <==== ATTENTION Task: C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-6.job => C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-6.exe <==== ATTENTION Task: C:\Windows\Tasks\abcbc285-3637-41b2-832a-af47b6df0881-7.job => C:\Program Files (x86)\Internet Speed Checker\abcbc285-3637-41b2-832a-af47b6df0881-7.exe <==== ATTENTION Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\fc6a064f-a2dd-4cc3-9a73-369f24d55904.job => C:\Program Files (x86)\Internet Speed Checker\fc6a064f-a2dd-4cc3-9a73-369f24d55904.exe/agentregpath='Internet Speed Checker' /appid=61752 /srcid='001726' /subid='0' /zdata='0' /bic=0F0585D1A52C44C2B41A5CE792074BC2IE /verifier=9e3f5c19e8c89e01b16a0281ad9e9ad1 /installerversion=1_35_09_29 /installationtime=1416664547 /statsdomain=http:/stats.newonlinedemoserv.com /errorsdomain=http:/errors.newonlinedemoserv.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http:/logs.newonlinedemoserv.com <==== ATTENTION ==================== Loaded Modules (whitelisted) ============== 2012-11-15 15:27 - 2012-10-02 20:51 - 00086888 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2009-07-27 11:13 - 2009-07-27 11:13 - 00061440 _____ () C:\Windows\SysWOW64\ASDR.exe 2015-01-23 21:38 - 2015-01-26 20:38 - 03925104 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1364691054-2715564713-2932916954-1000\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.1.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Accounts: ============================= Administrator (S-1-5-21-1364691054-2715564713-2932916954-500 - Administrator - Disabled) Gość (S-1-5-21-1364691054-2715564713-2932916954-501 - Limited - Disabled) kubos (S-1-5-21-1364691054-2715564713-2932916954-1000 - Administrator - Enabled) => C:\Users\kubos UpdatusUser (S-1-5-21-1364691054-2715564713-2932916954-1001 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Faulty Device Manager Devices ============= Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (03/14/2015 06:18:32 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/13/2015 08:37:59 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/13/2015 07:32:29 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/13/2015 07:30:17 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas badania interfejsu IVssWriterCallback. hr = 0x80070005, Odmowa dostępu. . To jest często spowodowane przez niepoprawne ustawienia zabezpieczeń w procesie zapisującym lub żądającym. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {dbfb4a03-1266-4f01-9cb1-038240ee8b5e} Error: (03/13/2015 06:57:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/13/2015 06:12:33 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/13/2015 00:20:06 AM) (Source: VSS) (EventID: 12289) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd DeviceIoControl(\\?\Volume{3dda5e84-2e65-11e2-9e11-806e6f6e6963} - 0000000000000110,0x0053c008,00000000002BDFD0,0,00000000002BEFE0,4096,[0]). hr = 0x80070079, Przekroczono limit czasu semafora. . Operacja: Przetwarzanie metody EndPrepareSnapshots Kontekst: Kontekst wykonywania: System Provider Error: (03/13/2015 00:10:01 AM) (Source: System Restore) (EventID: 8211) (User: ) Description: Nie można utworzyć zaplanowanego punktu przywracania. Informacje dodatkowe: (0x81000101). Error: (03/13/2015 00:10:01 AM) (Source: System Restore) (EventID: 8193) (User: ) Description: Nie można utworzyć punktu przywracania (Proces = C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreation; Opis = Zaplanowany punkt kontrolny; Błąd = 0x81000101). Error: (03/12/2015 00:20:06 AM) (Source: VSS) (EventID: 12289) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd DeviceIoControl(\\?\Volume{3dda5e84-2e65-11e2-9e11-806e6f6e6963} - 0000000000000110,0x0053c008,000000000018DFD0,0,000000000018EFE0,4096,[0]). hr = 0x80070079, Przekroczono limit czasu semafora. . Operacja: Przetwarzanie metody EndPrepareSnapshots Kontekst: Kontekst wykonywania: System Provider System errors: ============= Error: (03/14/2015 06:19:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi NVIDIA Update Service Daemon z powodu następującego błędu: %%1069 Error: (03/14/2015 06:19:31 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Usługa nvUpdatusService nie może zalogować się jako .\UpdatusUser za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%1330 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error: (03/14/2015 06:17:15 PM) (Source: Microsoft Antimalware) (EventID: 3002) (User: ) Description: Funkcja ochrony w czasie rzeczywistym programu %%860 napotkała błąd i nie można było jej wykonać. Funkcja: %%835 Kod błędu: 0x80004005 Opis błędu: Nieokreślony błąd. Przyczyna: %%842 Error: (03/14/2015 06:16:37 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: ZARZĄDZANIE NT) Description: Niektóre funkcje zarządzania energią procesora w czasie wydajności zostały wyłączone z powodu znanego problemu z oprogramowaniem układowym. Skontaktuj się z producentem komputera w celu uzyskania aktualizacji oprogramowania układowego. Error: (03/13/2015 08:36:50 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: ZARZĄDZANIE NT) Description: Niektóre funkcje zarządzania energią procesora w czasie wydajności zostały wyłączone z powodu znanego problemu z oprogramowaniem układowym. Skontaktuj się z producentem komputera w celu uzyskania aktualizacji oprogramowania układowego. Error: (03/13/2015 07:34:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi NVIDIA Update Service Daemon z powodu następującego błędu: %%1069 Error: (03/13/2015 07:34:07 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Usługa nvUpdatusService nie może zalogować się jako .\UpdatusUser za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%1330 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error: (03/13/2015 07:31:36 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: ZARZĄDZANIE NT) Description: Niektóre funkcje zarządzania energią procesora w czasie wydajności zostały wyłączone z powodu znanego problemu z oprogramowaniem układowym. Skontaktuj się z producentem komputera w celu uzyskania aktualizacji oprogramowania układowego. Error: (03/13/2015 07:30:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Microsoft Antimalware Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 15000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (03/13/2015 07:30:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Ochrona oprogramowania niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Microsoft Office Sessions: ========================= Error: (03/14/2015 06:18:32 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/13/2015 08:37:59 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/13/2015 07:32:29 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/13/2015 07:30:17 PM) (Source: VSS) (EventID: 8194) (User: ) Description: 0x80070005, Odmowa dostępu. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {dbfb4a03-1266-4f01-9cb1-038240ee8b5e} Error: (03/13/2015 06:57:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/13/2015 06:12:33 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/13/2015 00:20:06 AM) (Source: VSS) (EventID: 12289) (User: ) Description: DeviceIoControl(\\?\Volume{3dda5e84-2e65-11e2-9e11-806e6f6e6963} - 0000000000000110,0x0053c008,00000000002BDFD0,0,00000000002BEFE0,4096,[0])0x80070079, Przekroczono limit czasu semafora. Operacja: Przetwarzanie metody EndPrepareSnapshots Kontekst: Kontekst wykonywania: System Provider Error: (03/13/2015 00:10:01 AM) (Source: System Restore) (EventID: 8211) (User: ) Description: 0x81000101 Error: (03/13/2015 00:10:01 AM) (Source: System Restore) (EventID: 8193) (User: ) Description: C:\Windows\system32\rundll32.exe /d srrstr.dll,ExecuteScheduledSPPCreationZaplanowany punkt kontrolny0x81000101 Error: (03/12/2015 00:20:06 AM) (Source: VSS) (EventID: 12289) (User: ) Description: DeviceIoControl(\\?\Volume{3dda5e84-2e65-11e2-9e11-806e6f6e6963} - 0000000000000110,0x0053c008,000000000018DFD0,0,000000000018EFE0,4096,[0])0x80070079, Przekroczono limit czasu semafora. Operacja: Przetwarzanie metody EndPrepareSnapshots Kontekst: Kontekst wykonywania: System Provider ==================== Memory info =========================== Processor: AMD Athlon(tm) 64 Processor 3500+ Percentage of memory in use: 56% Total physical RAM: 3071.55 MB Available physical RAM: 1350.58 MB Total Pagefile: 6141.31 MB Available Pagefile: 4283.92 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:29.29 GB) (Free:3.43 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:63.99 GB) (Free:16.75 GB) NTFS Drive e: () (Fixed) (Total:55.75 GB) (Free:10.9 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149 GB) (Disk ID: 4CCB4CCA) Partition 1: (Active) - (Size=29.3 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=119.8 GB) - (Type=OF Extended) ==================== End Of Log ============================