Additional scan result of Farbar Recovery Scan Tool (x86) Version: 15-04-2015 04 Ran by q at 2015-04-16 15:12:43 Running from C:\Documents and Settings\q\Moje dokumenty\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Acrobat 5.0 (HKLM\...\Adobe Acrobat 5.0) (Version: 5.0 - Adobe Systems, Inc.) Adobe AIR (HKLM\...\Adobe AIR) (Version: 16.0.0.245 - Adobe Systems Incorporated) Adobe Flash Player 16 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) Aktualizacje NVIDIA 1.5.20 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.5.20 - NVIDIA Corporation) Automatyczny Wyłącznik Systemu 2.0 (HKLM\...\Automatyczny Wyłącznik Systemu_is1) (Version: - SkaWit - Witold Skałka) DocProc (Version: 7.0.0.0 - Hewlett-Packard) Hidden DocProcQFolder (Version: 1.00.0000 - Hewlett-Packard) Hidden Foxit Reader (HKLM\...\Foxit Reader) (Version: 4.3.1.118 - Foxit Corporation) Foxtab (HKLM\...\foxtab) (Version: - FoxTab) <==== ATTENTION FoxTab PDF Creator (HKU\S-1-5-21-1085031214-2025429265-725345543-1003\...\FoxTab PDF Creator) (Version: - ) <==== ATTENTION FoxTab PDF Reader (HKU\S-1-5-21-1085031214-2025429265-725345543-1003\...\FoxTab PDF Reader) (Version: - ) <==== ATTENTION Google Chrome (HKLM\...\Google Chrome) (Version: 40.0.2214.111 - Google Inc.) Google Update Helper (Version: 1.3.24.15 - Google Inc.) Hidden Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden Grand Theft Auto IV (HKLM\...\{579BA58C-F33D-4970-9953-B94B43768AC3}) (Version: 1.00.0000 - Rockstar Games) Grand Theft Auto IV (Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden Java(TM) 6 Update 30 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216030FF}) (Version: 6.0.300 - Oracle) K-Lite Codec Pack 7.1.0 (Full) (HKLM\...\KLiteCodecPack_is1) (Version: 7.1.0 - ) Łatka polonizacyjna GTA IV v1.0 (HKLM\...\Łatka polonizacyjna GTA IV v1.0) (Version: 1.0 - GTAPOLSKA.PL) Media Player Classic Packages (HKU\S-1-5-21-1085031214-2025429265-725345543-1003\...\Media Player Classic Packages) (Version: - ) <==== ATTENTION Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation) Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - PLK (HKLM\...\{2AFF2951-86B1-3C53-B34D-B440F11E7D0A}) (Version: 2.2.30729 - Microsoft Corporation) Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation) Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - PLK (HKLM\...\{5A0DDC27-88E5-3CAD-BC3D-28FFD05CA6B9}) (Version: 3.2.30729 - Microsoft Corporation) Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft Games for Windows - LIVE (HKLM\...\{4D243BA7-9AC4-46D1-90E5-EEB88974F501}) (Version: 2.0.687.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM\...\{05B49229-22A2-4F88-842A-BBC2EBE1CCF6}) (Version: 2.0.687.0 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.0.61118.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mobile Partner (HKLM\...\Mobile Partner) (Version: 23.009.11.00.69 - Huawei Technologies Co.,Ltd) Nero 7 Lite 7.9.6.0 (HKLM\...\Nero 7 Lite_is1) (Version: - Updatepack.nl) NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.57.35 - NVIDIA Corporation) NVIDIA nView 135.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 135.95 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.11.0621 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.11.0621 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.2.24.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.2.24.0 - NVIDIA Corporation) NVIDIA Sterownik graficzny 285.58 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 285.58 - NVIDIA Corporation) OCR Software by I.R.I.S 7.0 (HKLM\...\HPOCR) (Version: 7.0 - HP) Panel sterowania NVIDIA 285.58 (Version: 285.58 - NVIDIA Corporation) Hidden Platform (Version: 1.36 - VIA Technologies, Inc.) Hidden Poprawka dla systemu Windows XP (KB942288-v3) (HKLM\...\KB942288-v3) (Version: 3 - Microsoft Corporation) QuickTime Alternative 3.2.2 (HKLM\...\QuicktimeAlt_is1) (Version: 3.2.2 - ) Real Alternative 2.0.2 (HKLM\...\RealAlt_is1) (Version: 2.0.2 - ) Rockstar Games Social Club (HKLM\...\{08B3869E-D282-424C-9AFC-870E04A4BA14}) (Version: 1.00.0000 - Rockstar Games) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.3.650.0 - SAMSUNG Electronics Co., Ltd.) Skype™ 7.1 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.1.105 - Skype Technologies S.A.) swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Update for Foxtab (HKU\S-1-5-21-1085031214-2025429265-725345543-1003\...\FoxTab) (Version: - Update for Foxtab) <==== ATTENTION Update for PriceFountain (HKU\S-1-5-21-1085031214-2025429265-725345543-1003\...\Price Fountain) (Version: - Update for PriceFountain) <==== ATTENTION UxStyle Core Beta (HKLM\...\{8E363055-15E5-4D8A-9C69-A0A9DE9A3337}) (Version: 0.2.1.1 - The Within Network, LLC) VIA Platforma Menedżera urządzeń (HKLM\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.36 - VIA Technologies, Inc.) WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden WebReg (Version: 70.0.170.000 - Hewlett-Packard) Hidden Windows Media Format 11 runtime (HKLM\...\Windows Media Format Runtime) (Version: - ) XML Paper Specification Shared Components Language Pack 1.0 (Version: - Microsoft Corporation) Hidden ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-1085031214-2025429265-725345543-1003_Classes\CLSID\{D9F397C5-3053-4D1D-9DFD-4B3E08E570D8}\InprocServer32 -> C:\Documents and Settings\All Users\Dane aplikacji\{7D14E36A-889F-4FDA-8B78-2423FB17A4D3}\vfnws.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1085031214-2025429265-725345543-1003_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Documents and Settings\q\Dane aplikacji\GG\ggdrive\ggdrive-menu.dll No File ==================== Restore Points ========================= ATTENTION: System Restore is disabled. 17-11-2014 23:15:08 Punkt kontrolny systemu 19-11-2014 15:50:29 Punkt kontrolny systemu 24-11-2014 19:10:27 Punkt kontrolny systemu 26-11-2014 13:45:19 Punkt kontrolny systemu 28-11-2014 22:24:49 Punkt kontrolny systemu 13-12-2014 12:46:59 Punkt kontrolny systemu 13-12-2014 15:31:49 avast! antivirus system restore point 14-12-2014 16:36:36 Punkt kontrolny systemu 20-12-2014 13:22:29 Punkt kontrolny systemu 21-12-2014 16:11:16 Punkt kontrolny systemu 23-12-2014 15:43:02 Punkt kontrolny systemu 26-12-2014 21:42:20 Punkt kontrolny systemu 02-01-2015 10:11:50 Punkt kontrolny systemu 02-01-2015 16:48:49 avast! antivirus system restore point 09-01-2015 14:07:18 Punkt kontrolny systemu 10-01-2015 14:36:52 Punkt kontrolny systemu 22-01-2015 10:57:37 Punkt kontrolny systemu 23-01-2015 21:30:39 Punkt kontrolny systemu 27-01-2015 16:44:27 Punkt kontrolny systemu 29-01-2015 16:57:46 Usunięto: ChomikBox 31-01-2015 15:02:20 Punkt kontrolny systemu 03-02-2015 11:36:33 Punkt kontrolny systemu 04-02-2015 23:05:27 Punkt kontrolny systemu 06-02-2015 17:58:44 Punkt kontrolny systemu 08-02-2015 13:45:01 Punkt kontrolny systemu 15-02-2015 19:10:05 Punkt kontrolny systemu 18-02-2015 14:30:54 Punkt kontrolny systemu 21-02-2015 10:27:14 Punkt kontrolny systemu 23-02-2015 19:48:43 Punkt kontrolny systemu 08-03-2015 19:39:19 Punkt kontrolny systemu 21-03-2015 14:33:52 Punkt kontrolny systemu 28-03-2015 19:16:38 Punkt kontrolny systemu 31-03-2015 17:56:30 Punkt kontrolny systemu 01-04-2015 13:47:31 avast! antivirus system restore point 01-04-2015 15:19:53 avast! antivirus system restore point ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2010-01-22 00:47 - 2010-01-22 00:47 - 00000775 ____N C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost 127.0.0.1 mpa.one.microsoft.com ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Loaded Modules (whitelisted) ============== 2015-04-07 12:29 - 2015-04-07 12:29 - 00025600 _____ () C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\dpasydb.dll 2015-04-08 21:59 - 2015-04-08 21:59 - 00017920 _____ () C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\dpasysq.dll 2015-04-02 08:22 - 2015-04-02 08:22 - 00023552 _____ () C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\hcxpipd.dll 2015-04-03 11:04 - 2015-04-03 11:04 - 00023552 _____ () C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\hcxtgtd.dll 2015-04-01 15:21 - 2015-04-01 15:21 - 00023552 _____ () C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\hgacxpp.dll 2015-04-07 20:27 - 2015-04-07 20:27 - 00026624 _____ () C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\sydpasq.dll 2015-04-04 08:46 - 2015-04-04 08:46 - 00023552 _____ () C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\tgtdyhn.dll 2015-04-09 21:42 - 2015-04-09 21:42 - 00017920 _____ () C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\ysfvvsq.dll 2015-04-10 21:41 - 2015-04-10 21:41 - 00017920 _____ () C:\Documents and Settings\q\Ustawienia lokalne\Dane aplikacji\ysvsqfv.dll 2011-12-16 13:05 - 2011-10-08 06:50 - 00355432 _____ () C:\Program Files\NVIDIA Corporation\nview\nvshell.dll 2012-01-04 12:19 - 2007-08-21 14:32 - 00098304 _____ () C:\WINDOWS\system32\redmonnt.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Documents and Settings\All Users\Dane aplikacji\TEMP:AD022376 AlternateDataStreams: C:\Documents and Settings\q\Local Settings:init ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Pdm27.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Pdm27.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{1a3e09be-1e45-494b-9174-d7385b45bbf5} => ""="" ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1085031214-2025429265-725345543-1003\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\Web\Wallpaper\Idylla.bmp DNS Servers: 192.168.0.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Accounts: ============================= Administrator (S-1-5-21-1085031214-2025429265-725345543-500 - Administrator - Enabled) Gość (S-1-5-21-1085031214-2025429265-725345543-501 - Limited - Disabled) Pomocnik (S-1-5-21-1085031214-2025429265-725345543-1000 - Limited - Disabled) q (S-1-5-21-1085031214-2025429265-725345543-1003 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\q SUPPORT_388945a0 (S-1-5-21-1085031214-2025429265-725345543-1002 - Limited - Disabled) UpdatusUser (S-1-5-21-1085031214-2025429265-725345543-1004 - Limited - Enabled) => %SystemDrive%\Documents and Settings\UpdatusUser ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318} Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (04/09/2015 03:11:31 PM) (Source: Microsoft Office 12) (EventID: 5000) (User: ) Description: EventType officelifeboathang, P1 winword.exe, P2 12.0.4518.1014, P3 wwlib.dll, P4 12.0.4518.1014, P5 NIL, P6 NIL, P7 NIL, P8 NIL, P9 officelifeboathang0, P10 officelifeboathang1. Error: (03/27/2015 10:10:50 PM) (Source: Microsoft Office 12) (EventID: 2001) (User: ) Description: Rejected Safe Mode action : Microsoft Office Outlook. Error: (03/03/2015 04:17:05 PM) (Source: Microsoft Office 12) (EventID: 5000) (User: ) Description: EventType officelifeboathang, P1 winword.exe, P2 12.0.4518.1014, P3 ntdll.dll, P4 5.1.2600.5755, P5 NIL, P6 NIL, P7 NIL, P8 NIL, P9 officelifeboathang0, P10 officelifeboathang1. Error: (01/28/2015 09:36:39 PM) (Source: MsiInstaller) (EventID: 11334) (User: Q-41FFE44F89654) Description: Produkt: QuickTime 7 -- Błąd 1334. Nie można zainstalować pliku „msvcm80.dll.8.0.50727.6195.98CB24AD_52FB_DB5F_FF1F_C8B3B9A1E18E”, ponieważ nie można znaleźć go w pliku cabinet „QuickTime.cab”. Może to wskazywać błąd sieciowy, błąd odczytu ze stacji dysków CD-ROM lub problem z tym pakietem. Error: (01/25/2015 02:45:44 PM) (Source: Microsoft Office 12) (EventID: 2001) (User: ) Description: Rejected Safe Mode action : Microsoft Office Outlook. Error: (12/29/2014 07:52:15 PM) (Source: MsiInstaller) (EventID: 10005) (User: Q-41FFE44F89654) Description: Product: Windows Movie Maker 2.6 -- This product only runs on Windows Vista System errors: ============= Error: (04/16/2015 02:05:40 PM) (Source: DCOM) (EventID: 10010) (User: Q-41FFE44F89654) Description: Serwer {0002DF01-0000-0000-C000-000000000046} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (04/16/2015 02:04:55 PM) (Source: DCOM) (EventID: 10010) (User: Q-41FFE44F89654) Description: Serwer {0002DF01-0000-0000-C000-000000000046} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (04/16/2015 02:04:10 PM) (Source: DCOM) (EventID: 10010) (User: Q-41FFE44F89654) Description: Serwer {0002DF01-0000-0000-C000-000000000046} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (04/16/2015 02:03:25 PM) (Source: DCOM) (EventID: 10010) (User: Q-41FFE44F89654) Description: Serwer {0002DF01-0000-0000-C000-000000000046} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (04/16/2015 02:02:40 PM) (Source: DCOM) (EventID: 10010) (User: Q-41FFE44F89654) Description: Serwer {0002DF01-0000-0000-C000-000000000046} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (04/16/2015 02:01:55 PM) (Source: DCOM) (EventID: 10010) (User: Q-41FFE44F89654) Description: Serwer {0002DF01-0000-0000-C000-000000000046} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (04/16/2015 02:01:10 PM) (Source: DCOM) (EventID: 10010) (User: Q-41FFE44F89654) Description: Serwer {0002DF01-0000-0000-C000-000000000046} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (04/16/2015 02:00:25 PM) (Source: DCOM) (EventID: 10010) (User: Q-41FFE44F89654) Description: Serwer {0002DF01-0000-0000-C000-000000000046} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (04/16/2015 01:59:40 PM) (Source: DCOM) (EventID: 10010) (User: Q-41FFE44F89654) Description: Serwer {0002DF01-0000-0000-C000-000000000046} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (04/16/2015 01:58:55 PM) (Source: DCOM) (EventID: 10010) (User: Q-41FFE44F89654) Description: Serwer {0002DF01-0000-0000-C000-000000000046} nie zarejestrował się w modelu DCOM w wymaganym czasie. Microsoft Office Sessions: ========================= ==================== Memory info =========================== Processor: AMD Athlon(tm) II X3 455 Processor Percentage of memory in use: 18% Total physical RAM: 3071.15 MB Available physical RAM: 2501.4 MB Total Pagefile: 4955.78 MB Available Pagefile: 4542.91 MB Total Virtual: 2047.88 MB Available Virtual: 1932.07 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:195.31 GB) (Free:86.51 GB) NTFS ==>[Drive with boot components (Windows XP)] Drive d: () (Fixed) (Total:270.44 GB) (Free:270 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 23AE23AD) Partition 1: (Active) - (Size=195.3 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=270.4 GB) - (Type=OF Extended) ==================== End Of Log ============================