Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015 Ran by oem at 2015-03-17 18:54:00 Running from F:\ Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886} AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Reader X (10.1.13) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.13 - Adobe Systems Incorporated) Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.7.148 - Adobe Systems, Inc.) Agatha Christie - Peril at End House (x32 Version: 2.2.0.95 - WildTangent) Hidden Angry Birds Breakfast 1 (HKLM-x32\...\{DE5BE262-C5E7-49B2-A673-56A3E2522F06}) (Version: 1.0.16 - Rovio Entertainment Ltd.) ATI Catalyst Install Manager (HKLM\...\{9A11B072-9CE7-ABB9-2F65-EC971A7B839D}) (Version: 3.0.816.0 - ATI Technologies, Inc.) AuthenTec TrueAPI (Version: 1.2.1.33 - AuthenTec, Inc.) Hidden Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.4.2.23831 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.6.2 - EA Digital Illusions CE AB) Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Bejeweled 3 (x32 Version: 2.2.0.95 - WildTangent) Hidden Blackhawk Striker 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden Blasterball 3 (x32 Version: 2.2.0.95 - WildTangent) Hidden Bounce Symphony (x32 Version: 2.2.0.95 - WildTangent) Hidden Build-a-lot 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden Cake Mania (x32 Version: 2.2.0.95 - WildTangent) Hidden CCleaner (HKLM\...\CCleaner) (Version: 4.09 - Piriform) Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.1.3922 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95 - WildTangent) Hidden Dora's World Adventure (x32 Version: 2.2.0.95 - WildTangent) Hidden EA Sports FIFA World (HKLM-x32\...\{8F9AC744-EEF6-43DB-A4B6-FA1A18F1C640}) (Version: 7.0.0.45489 - Electronic Arts, Inc.) EA SPORTS™ FIFA 15 Demo (HKLM-x32\...\{108C0C19-6316-4944-A62F-C744488F8639}) (Version: 1.0.0.0 - Electronic Arts) Energy Star Digital Logo (HKLM-x32\...\{BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}) (Version: 1.0.1 - Hewlett-Packard) ESU for Microsoft Windows 7 (HKLM-x32\...\{3877C901-7B90-4727-A639-B6ED2DD59D43}) (Version: 1.0.0 - Hewlett-Packard) Evernote v. 4.2.2 (HKLM-x32\...\{F761359C-9CED-45AE-9A51-9D6605CD55C4}) (Version: 4.2.2.3979 - Evernote Corp.) Farm Frenzy (x32 Version: 2.2.0.95 - WildTangent) Hidden FATE - The Traitor Soul (x32 Version: 2.2.0.95 - WildTangent) Hidden FIFA 14 (HKLM-x32\...\{AA7A2800-1E75-4240-855B-03AFF8E5171E}) (Version: 1.0.0.4 - Electronic Arts) Final Drive Nitro (x32 Version: 2.2.0.95 - WildTangent) Hidden Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych (HKLM-x32\...\{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}) (Version: 15.4.5722.2 - Microsoft Corporation) Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.93 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden GTA: San Andreas Trailer Packages (HKU\S-1-5-21-1862378328-319157339-1045187305-1000\...\GTA: San Andreas Trailer Packages) (Version: - ) <==== ATTENTION Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP 3D DriveGuard (HKLM\...\{A2B01DF0-2C4A-4334-AC40-3E185C657722}) (Version: 4.1.16.1 - Hewlett-Packard Company) HP Connection Manager (HKLM-x32\...\{5E63C0AB-19B0-47D4-842E-6B324EB0614B}) (Version: 4.1.23.1 - Hewlett-Packard Company) HP Documentation (HKLM-x32\...\{3C5AB11A-2DDB-49E6-9FC0-CFD88A7DDFE4}) (Version: 1.1.0.0 - Hewlett-Packard) HP DVB-T TV Tuner 8.0.64.43 (HKLM-x32\...\HP DVB-T TV Tuner) (Version: 8.0.64.43 - ) HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.4 - WildTangent) HP On Screen Display (HKLM-x32\...\{ED1BD69A-07E3-418C-91F1-D856582581BF}) (Version: 1.3.5 - Hewlett-Packard Company) HP Power Manager (HKLM-x32\...\{872B1C80-38EC-4A31-A25C-980820593900}) (Version: 1.2.3 - Hewlett-Packard Company) HP Quick Launch (HKLM-x32\...\{53B17A98-5BF0-40BC-AAFF-850A357975AC}) (Version: 2.7.2 - Hewlett-Packard Company) HP Setup (HKLM-x32\...\{210A03F5-B2ED-4947-B27E-516F50CBB292}) (Version: 8.6.4530.3651 - Hewlett-Packard Company) HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.1.13253.3682 - Hewlett-Packard Company) HP SimplePass 2011 (HKLM-x32\...\{BCFAA37D-A6DB-43BF-A351-43F183E52D07}) (Version: 5.1.0.495 - Hewlett-Packard) HP Software Framework (HKLM-x32\...\{A2FFB12E-4A66-478C-814C-26A9F54A2E17}) (Version: 4.5.10.1 - Hewlett-Packard Company) HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company) IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6381.0 - IDT) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Display Audio Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 6.14.00.3074 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (HKLM\...\{37EC048A-81A2-452A-8D1F-3BE2018E767D}) (Version: 15.1.0.0096 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{C7B40C35-85AE-4303-9EEA-1A1EA779664D}) (Version: 1.0.2.0511 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.6.0.1002 - Intel Corporation) Intel(R) WiDi (HKLM-x32\...\{0DD706AF-B542-438C-999E-B30C7F625C8D}) (Version: 2.1.39.0 - Intel Corporation) Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217040FF}) (Version: 7.0.710 - Oracle) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{8ED07EBD-22AD-415A-B71E-C1AD86862C2E}) (Version: 15.0.1.415 - Kaspersky Lab) Kaspersky Internet Security (x32 Version: 15.0.1.415 - Kaspersky Lab) Hidden KG Wiktor Pojedynek w Koloseum (HKLM-x32\...\KG Wiktor Pojedynek w Koloseum) (Version: - ) LEGO Star Wars II (HKLM-x32\...\InstallShield_{578FA426-47C0-4A3F-98A4-01ACD26B7556}) (Version: 1.00.0000 - LucasArts) LEGO Star Wars II (x32 Version: 1.00.0000 - LucasArts) Hidden LEGO® Przygoda - Gra Wideo DEMO (HKLM-x32\...\{99CEC4A5-20F3-4B0B-8E0A-A65796E86050}) (Version: 1.00.0000 - Warner Bros. Interactive Entertainment) Mah Jong Medley (x32 Version: 2.2.0.95 - WildTangent) Hidden Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Starter 2010 - Polski (HKLM-x32\...\{90140011-0066-0415-0000-0000000FF1CE}) (Version: 14.0.5131.5000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Moduł Szybka instalacja pakietu Microsoft Office 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Moduł Szybka instalacja pakietu Microsoft Office 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Mozilla Firefox 29.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 pl)) (Version: 29.0.1 - Mozilla) Mozilla Firefox 33.1.1 (x86 pl) (HKU\S-1-5-21-1862378328-319157339-1045187305-1000\...\Mozilla Firefox 33.1.1 (x86 pl)) (Version: 33.1.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) Mystery P.I. - Stolen in San Francisco (x32 Version: 2.2.0.95 - WildTangent) Hidden Namco All-Stars PAC-MAN (x32 Version: 2.2.0.95 - WildTangent) Hidden Need for Speed™ Undercover (HKLM-x32\...\{E6D22FE1-AB5F-42CA-9480-6F70B96DDD88}) (Version: 1.0.1.0 - Electronic Arts) Oprogramowanie Intel® PROSet/Wireless WiFi (HKLM\...\{E2D0B67F-8032-4E11-87C6-C8C721D331B3}) (Version: 15.01.0500.0903 - Intel Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.3.1.4482 - Electronic Arts, Inc.) Pakiet sterowników systemu Windows - Sagem, SA (SG762_64) Net (10/28/2005 6.3.0.0) (HKLM\...\DBDB2B2E231D0260DB18F8EAFCA6C8AE7C206629) (Version: 10/28/2005 6.3.0.0 - Sagem, SA) Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Poker Superstars III (x32 Version: 2.2.0.95 - WildTangent) Hidden Polar Bowler (x32 Version: 2.2.0.95 - WildTangent) Hidden Polar Golfer (x32 Version: 2.2.0.95 - WildTangent) Hidden Prince Of Persia (HKLM-x32\...\{F3B0AC10-3636-4166-81CF-86CD7A8B0123}) (Version: 1.0 - Ubisoft) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.41.216.2011 - Realtek) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7601.83 - Realtek Semiconductor Corp.) Recovery Manager (x32 Version: 2.0.0 - Hewlett-Packard) Hidden Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.1.19.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.1.19.0 - Renesas Electronics Corporation) Hidden Sanny Builder 3.2.2 (HKLM-x32\...\Sanny Builder 3_is1) (Version: - ) SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 4.0.86.0859 - Electronic Arts) Skype™ 6.20 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.20.104 - Skype Technologies S.A.) Slingo Supreme (x32 Version: 2.2.0.95 - WildTangent) Hidden Spintires (HKLM-x32\...\Steam App 263280) (Version: - Oovee® Game Studios) Star Wars Empire at War (HKLM-x32\...\{99AE7207-8612-4DBA-A8F8-BAE5C633390D}) (Version: 1.0 - LucasArts) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics TouchPad Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.29.0 - Synaptics Incorporated) Szkoła podstawowa klasa 4 - Tajemnice przyrody (HKLM-x32\...\Szkoła podstawowa klasa 4 - Tajemnice przyrody) (Version: - ) Szkoła podstawowa klasy 4-6 - Muzyka na ekranie (HKLM-x32\...\Szkoła podstawowa klasy 4-6 - Muzyka na ekranie) (Version: - ) tuto4pc_pl_21 (HKLM-x32\...\tuto4pc_pl_21_is1) (Version: - TUTO4PC) <==== ATTENTION Unity Web Player (HKU\S-1-5-21-1862378328-319157339-1045187305-1000\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Validity WBF DDK (HKLM\...\{79174AF2-6CB1-42F5-981E-66DCA49391D0}) (Version: 4.3.205.0 - Validity Sensors, Inc.) Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.95 - WildTangent) Hidden War Thunder Launcher 1.0.1.329 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment) WildTangent Games App for HP (x32 Version: 4.0.11.2 - WildTangent) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) WinRAR 4.00 (32-bitowy) (HKLM-x32\...\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH) WinRAR 4.00 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH) WinThruster (HKLM-x32\...\WinThruster_is1) (Version: 1.79 - ) Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 01-01-2010 00:35:36 WinThruster Pt, sty 01, 10 00:35 01-01-2010 00:46:48 WinThruster Pt, sty 01, 10 00:46 27-01-2015 14:36:08 Windows Update 30-01-2015 19:21:46 Windows Update 02-02-2015 14:23:05 Zainstalowany program DirectX 03-02-2015 17:29:14 Windows Update 15-03-2015 20:52:40 Windows Update 15-03-2015 21:36:00 Kopia zapasowa systemu Windows 15-03-2015 22:10:44 Windows Update 17-03-2015 17:33:11 Windows Update 17-03-2015 18:13:25 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {088BB6DE-D020-4267-8303-3049A9A6D194} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1862378328-319157339-1045187305-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe Task: {0F335D9C-1C8E-4F4B-9495-9AFBDA8AAACD} - System32\Tasks\HPCeeScheduleForoem => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard) Task: {12EA7DBE-6288-4FE6-8758-E0E94DD226FD} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {46A5DDF0-B645-49A2-8BA0-C9525BAFC46A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {4904BA0C-61FE-4467-A895-E87499848FAD} - System32\Tasks\{FF96E42F-164E-4585-91FD-DFB4393033D9} => Iexplore.exe http://ui.skype.com/ui/0/5.1.0.104.161/pl/abandoninstall?page=tsMain&installinfo=google-toolbar:notoffered;notincluded,google-chrome:notoffered;disabled Task: {60C0ED64-E8EB-493A-BDD0-EC8E75DE7D3A} - System32\Tasks\{3E5A2958-EED8-4F9F-B8B5-24727EFBBCA5} => Iexplore.exe http://ui.skype.com/ui/0/6.6.0.106/pl/abandoninstall?page=tsProgressBar Task: {66C6B5A6-4C6D-4582-B6EE-75291D2F4E44} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {684ECD64-A971-485B-A3DF-C91801047230} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-03-15] (Adobe Systems Incorporated) Task: {7204C0C1-C84A-41D7-84C8-E0D4AEC34EB7} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1862378328-319157339-1045187305-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe Task: {7FBC8BA7-5DAA-4D4B-85CB-2DE48CBC80B0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company) Task: {8E81F1D4-BC98-452E-9C5D-8A9B76F9FFB7} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-01-31] () Task: {95BBFA28-5788-44DE-836A-6158556ADC71} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard) Task: {9E94D9B9-BAD8-490B-8345-375FBDB4A6E5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-01-21] (Hewlett-Packard) Task: {A25EC19D-8739-4FDA-8A74-1BCC402773D8} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-12-17] (Piriform Ltd) Task: {A6E6EC7C-9C58-4C30-9446-4E8D22ED10A4} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2011-03-22] (CyberLink) Task: {C3FC235D-851F-4FBE-A13E-B5209C1347F1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe [2015-03-05] (Microsoft) Task: {C71B5B15-4435-4BF0-A2E5-0BEB8EEA6716} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-02-02] (Google Inc.) Task: {DD77C2C3-DE7C-4082-A6C7-1450650D8C76} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {E643773E-54BA-4639-9A2F-81013F6B39EE} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-02-02] (Google Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\HPCeeScheduleForoem.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Loaded Modules (whitelisted) ============== 2012-05-14 19:13 - 2015-01-04 19:59 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2011-11-04 03:54 - 2011-04-15 04:16 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2011-05-12 14:13 - 2011-05-12 14:13 - 00016384 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll 2011-05-08 02:23 - 2011-05-08 02:23 - 00243712 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2011-04-27 16:05 - 2011-04-27 16:05 - 01102336 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\System.Data.SQLite.dll 2014-08-30 16:12 - 2014-08-30 16:12 - 01269952 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\kpcengine.2.3.dll 2014-11-09 14:05 - 2014-11-09 14:05 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\b2363cf94faf59386ab4778a39c16e2b\IsdiInterop.ni.dll 2011-11-04 03:53 - 2011-05-20 09:05 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2011-04-27 16:05 - 2011-04-27 16:05 - 00514570 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\sqlite3.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1862378328-319157339-1045187305-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\oem\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: Media is not connected to internet. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\Services: WSearch => 2 MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\Steam.exe" -silent MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" ==================== Accounts: ============================= Administrator (S-1-5-21-1862378328-319157339-1045187305-500 - Administrator - Disabled) Gość (S-1-5-21-1862378328-319157339-1045187305-501 - Limited - Disabled) oem (S-1-5-21-1862378328-319157339-1045187305-1000 - Administrator - Enabled) => C:\Users\oem ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (03/17/2015 06:45:19 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: ZARZĄDZANIE NT) Description: Nie można odczytać ciągów licznika wydajności zdefiniowanych dla identyfikatora języka 015. Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu Win32. Error: (03/17/2015 06:45:19 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: ZARZĄDZANIE NT) Description: Nie można odczytać ciągów licznika wydajności zdefiniowanych dla identyfikatora języka 009. Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu Win32. Error: (03/17/2015 06:45:19 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: ZARZĄDZANIE NT) Description: Nie można odczytać ciągów licznika wydajności zdefiniowanych dla identyfikatora języka 015. Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu Win32. Error: (03/17/2015 06:45:19 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: ZARZĄDZANIE NT) Description: Nie można odczytać ciągów licznika wydajności zdefiniowanych dla identyfikatora języka 009. Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu Win32. Error: (03/17/2015 06:40:10 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - 1>Failed to compile: System, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x800706be Error: (03/17/2015 06:39:55 PM) (Source: CVHSVC) (EventID: 100) (User: ) Description: Tylko informacje. (Patch task for {90140011-0066-0415-0000-0000000FF1CE}): DownloadLatest Failed: Obecnie nie ma aktywnych połączeń sieciowych. Usługa inteligentnego transferu w tle (BITS) ponowni próbę po podłączeniu karty. Error: (03/17/2015 06:39:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: mscorsvw.exe, wersja: 4.0.30319.34209, sygnatura czasowa: 0x5348947f Nazwa modułu powodującego błąd: clr.dll, wersja: 4.0.30319.34209, sygnatura czasowa: 0x5348961e Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x003afb2b Identyfikator procesu powodującego błąd: 0x153c Godzina uruchomienia aplikacji powodującej błąd: 0xmscorsvw.exe0 Ścieżka aplikacji powodującej błąd: mscorsvw.exe1 Ścieżka modułu powodującego błąd: mscorsvw.exe2 Identyfikator raportu: mscorsvw.exe3 Error: (03/17/2015 06:39:53 PM) (Source: .NET Runtime) (EventID: 1023) (User: ) Description: Aplikacja: mscorsvw.exe Wersja architektury: v4.0.30319 Opis: proces został przerwany z powodu błędu wewnętrznego w środowisku wykonawczym .NET pod adresem IP 6D02FB2B (6CC80000), kod zakończenia: 80131506. Error: (03/17/2015 06:33:13 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: ZARZĄDZANIE NT) Description: Nie można odczytać ciągów licznika wydajności zdefiniowanych dla identyfikatora języka 015. Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu Win32. Error: (03/17/2015 06:33:13 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: ZARZĄDZANIE NT) Description: Nie można odczytać ciągów licznika wydajności zdefiniowanych dla identyfikatora języka 009. Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu Win32. System errors: ============= Error: (03/17/2015 06:28:41 PM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x00000050 (0xfffff88103e469a0, 0x0000000000000000, 0xfffff88006eadc75, 0x0000000000000005)C:\Windows\MEMORY.DMP Error: (03/17/2015 06:28:41 PM) (Source: BugCheck) (EventID: 1005) (User: ) Description: Error: (03/17/2015 06:28:23 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 18:26:41 na ‎2015-‎03-‎17 było nieoczekiwane. Error: (03/17/2015 06:19:08 PM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x00000050 (0xfffff8817e418ba0, 0x0000000000000000, 0xfffff88005ae2c75, 0x0000000000000005)C:\Windows\MEMORY.DMP Error: (03/17/2015 06:19:08 PM) (Source: BugCheck) (EventID: 1005) (User: ) Description: Error: (03/17/2015 06:18:51 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 18:17:11 na ‎2015-‎03-‎17 było nieoczekiwane. Error: (03/17/2015 06:06:39 PM) (Source: KLIF) (EventID: 0) (User: ) Description: Сonnection is not established Error: (03/17/2015 06:06:39 PM) (Source: KLIF) (EventID: 0) (User: ) Description: Сonnection is not established Error: (03/17/2015 05:26:57 PM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x000000c2 (0x0000000000000007, 0x000000000000109b, 0x0000000004200091, 0xfffffa8008bd8920)C:\Windows\MEMORY.DMP031715-85644-01 Error: (03/15/2015 10:54:33 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x800b0100: Aktualizacja zabezpieczeń systemu Windows 7 dla systemów opartych na procesorach x64 (KB3032323). Microsoft Office Sessions: ========================= Error: (03/17/2015 06:45:19 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: ZARZĄDZANIE NT) Description: 0158020000002D010000 Error: (03/17/2015 06:45:19 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: ZARZĄDZANIE NT) Description: 0098020000002D010000 Error: (03/17/2015 06:45:19 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: ZARZĄDZANIE NT) Description: 015120200000000000000AF000000 Error: (03/17/2015 06:45:19 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: ZARZĄDZANIE NT) Description: 009120200000000000000AF000000 Error: (03/17/2015 06:40:10 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - 1>Failed to compile: System, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x800706be System, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 Error: (03/17/2015 06:39:55 PM) (Source: CVHSVC) (EventID: 100) (User: ) Description: (Patch task for {90140011-0066-0415-0000-0000000FF1CE}): DownloadLatest Failed: Obecnie nie ma aktywnych połączeń sieciowych. Usługa inteligentnego transferu w tle (BITS) ponowni próbę po podłączeniu karty. Error: (03/17/2015 06:39:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: mscorsvw.exe4.0.30319.342095348947fclr.dll4.0.30319.342095348961ec0000005003afb2b153c01d060d959b34e28C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exeC:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll9eef17c7-cccc-11e4-bf68-ac7289dab0f5 Error: (03/17/2015 06:39:53 PM) (Source: .NET Runtime) (EventID: 1023) (User: ) Description: Aplikacja: mscorsvw.exe Wersja architektury: v4.0.30319 Opis: proces został przerwany z powodu błędu wewnętrznego w środowisku wykonawczym .NET pod adresem IP 6D02FB2B (6CC80000), kod zakończenia: 80131506. Error: (03/17/2015 06:33:13 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: ZARZĄDZANIE NT) Description: 0158020000002D010000 Error: (03/17/2015 06:33:13 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: ZARZĄDZANIE NT) Description: 0098020000002D010000 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-2430M CPU @ 2.40GHz Percentage of memory in use: 43% Total physical RAM: 4043.86 MB Available physical RAM: 2296.41 MB Total Pagefile: 8085.91 MB Available Pagefile: 5915.43 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:447.81 GB) (Free:321.93 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (RECOVERY) (Fixed) (Total:17.65 GB) (Free:1.9 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive f: () (Removable) (Total:7.42 GB) (Free:7.42 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: CC165309) Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=447.8 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=17.7 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=103 MB) - (Type=0C) ======================================================== Disk: 1 (Size: 7.4 GB) (Disk ID: 017D06B9) Partition 1: (Active) - (Size=7.4 GB) - (Type=0B) ==================== End Of Log ============================