Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-04-2015 Ran by user at 2015-04-27 13:42:00 Running from G:\ Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-751849595-2506772392-985313409-500 - Administrator - Disabled) Gość (S-1-5-21-751849595-2506772392-985313409-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-751849595-2506772392-985313409-1003 - Limited - Enabled) user (S-1-5-21-751849595-2506772392-985313409-1001 - Administrator - Enabled) => C:\Users\user ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Acer Device Fast-lane (HKLM\...\{3F62D2FD-13C1-49A2-8B5D-47623D9460D7}) (Version: 1.00.3013 - Acer Incorporated) Acer Launch Manager (HKLM\...\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}) (Version: 8.00.3005 - Acer Incorporated) Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.3013 - Acer Incorporated) Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.3016 - Acer Incorporated) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated) Ancient Quest of Saqqarah (HKLM-x32\...\Ancient Quest of Saqqarah/PL-Polish_is1) (Version: - City Interactive) avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2021 - AVAST Software) AVG PC TuneUp 2015 (HKLM-x32\...\AVG PC TuneUp) (Version: 15.0.1001.185 - AVG Technologies) AVG PC TuneUp 2015 (pl-PL) (x32 Version: 15.0.1001.185 - AVG Technologies) Hidden AVG PC TuneUp 2015 (x32 Version: 15.0.1001.185 - AVG Technologies) Hidden Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden Broadcom Card Reader Driver Installer (HKLM\...\{67AA948F-8D83-4566-B84A-7CAABCF64E3F}) (Version: 16.0.2.6 - Broadcom Corporation) Broadcom NetLink Controller (HKLM\...\{D1D7ED66-5C08-40A0-AEC0-B6DF977697BB}) (Version: 16.0.2.4 - Broadcom Corporation) Delicious: Emily's Childhood Memories Premium Edition (x32 Version: 3.0.2.32 - WildTangent) Hidden Direct Show Ogg Vorbis Filter (remove only) (HKLM-x32\...\OggDS) (Version: - ) Enemy Front (HKLM-x32\...\Steam App 256190) (Version: - CI Games) ETDWare PS/2-X64 11.6.23.203_WHQL (HKLM\...\Elantech) (Version: 11.6.23.203 - ELAN Microelectronic Corp.) Farming Simulator 15 (HKLM-x32\...\FarmingSimulator2015PL_is1) (Version: 1.2.0.0 - GIANTS Software) Farming-Simulator 2009 (HKLM-x32\...\FarmingSimulator2009GoldPL_is1) (Version: 1.2 - GIANTS Software GmbH) FIFA 14 (HKLM-x32\...\{AA7A2800-1E75-4240-855B-03AFF8E5171E}) (Version: 1.0.0.7 - Electronic Arts) Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Gameforge Live 2.0.6 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.6 - Gameforge) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 42.0.2311.90 - Google Inc.) Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.110 - WildTangent) Hidden GTA San Andreas (HKLM-x32\...\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}) (Version: 1.00.00001 - Rockstar Games) Heroes & Generals (HKLM-x32\...\Steam App 227940) (Version: - Reto-Moto) Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3006 - Acer Incorporated) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.30.1349 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.4.1001 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation) Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden LG United Mobile Drivers (HKLM-x32\...\{C2944BE7-9BFF-4EF0-A362-CB3281B7C50D}) (Version: 3.6.0.0 - LG Electronics) LibreOffice 4.2.4.2 (HKLM-x32\...\{6B4977CB-5B9F-4B24-8310-3BA527A8AF22}) (Version: 4.2.4.2 - The Document Foundation) Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3010 - Acer Incorporated) Magic Academy (x32 Version: 2.2.0.98 - WildTangent) Hidden Malwarebytes Anti-Malware wersja 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) Max Payne (HKLM-x32\...\{E270A0FD-2DC0-4BFA-8EEE-2AB8B963F0F5}) (Version: 1.00.000 - ) Max Payne 2 (HKLM-x32\...\{32272C99-9A54-4195-95A2-1BECA55C252B}) (Version: 1.00.000 - ) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.) Metric Collection SDK 35 (x32 Version: 1.2.0006.00 - Lenovo Group Limited) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Mozilla Firefox 37.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 pl)) (Version: 37.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 37.0.2 - Mozilla) NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation) Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.02.2008 - Acer) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 9.3.1.4482 - Electronic Arts, Inc.) PacRush (HKLM-x32\...\PacRush_is1) (Version: - Nowe Media) PC Reviver (HKLM\...\PC Reviver) (Version: 2.0.0.44 - ReviverSoft LLC) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden Plus Internet 2.4 (HKLM-x32\...\Plus Internet_is1) (Version: - Polkomtel S.A.) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.305 - Qualcomm Atheros Communications) Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.07 - Qualcomm Atheros) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6927 - Realtek Semiconductor Corp.) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Skarby Tajemniczej Wyspy (HKLM-x32\...\{9F5BE737-FB32-45FC-AAE4-BBDABB503D82}_is1) (Version: - nowe-media.eu) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation) Skype™ 7.2 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.2.103 - Skype Technologies S.A.) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Szkoła podstawowa klasa 4 - Tajemnice przyrody (HKLM-x32\...\Szkoła podstawowa klasa 4 - Tajemnice przyrody) (Version: - ) Szkoła podstawowa klasa 4 - Wczoraj i dziś (HKLM-x32\...\Szkoła podstawowa klasa 4 - Wczoraj i dziś) (Version: - ) Tales of Lagoona (x32 Version: 2.2.0.110 - WildTangent) Hidden Unity Web Player (HKU\S-1-5-21-751849595-2506772392-985313409-1001\...\UnityWebPlayer) (Version: 4.6.1f1 - Unity Technologies ApS) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version: - Microsoft Corporation) Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version: - Microsoft Corporation) Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation) WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent) WildTangent Games App (x32 Version: 4.0.10.5 - WildTangent) Hidden WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) World of Tanks (HKU\S-1-5-21-751849595-2506772392-985313409-1001\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version: - Wargaming.net) ZTE LTE Device USB Driver (HKLM\...\{00C1EF09-B5B7-4082-B1F4-C35CE7A7FCA9}) (Version: - ZTE Corporation) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-751849595-2506772392-985313409-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) ==================== Restore Points ========================= 22-04-2015 08:50:04 Zainstalowany program DirectX 26-04-2015 12:49:17 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {09771866-36A9-42C3-A0FA-6DED85C36765} - System32\Tasks\{90486521-F5F2-411D-AC67-80D673EF252C} => Iexplore.exe http://ui.skype.com/ui/0/7.1.0.105/pl/abandoninstall?page=tsProgressBar Task: {11A394ED-D95B-4BC8-AE2E-AF8460F1E3B7} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation) Task: {4B3378B3-B982-467A-9B6F-64E53462BC2C} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe Task: {4CCB6EB5-A2EE-41A9-AC5D-F4108358B7DD} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2013-01-22] () Task: {583B2C65-9D49-445C-B7BB-B4C9E8DE304C} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-15] (Adobe Systems Incorporated) Task: {659786F8-C49D-4625-833F-9559B89EFEDA} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [2014-09-10] (Lenovo) Task: {6ADB6981-A13E-4CBB-87FD-2971786A22F4} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\AVG\AVG PC TuneUp\OneClick.exe [2014-10-17] (AVG Technologies) Task: {722B5947-33B8-4059-88E8-7E14C011E2A5} - System32\Tasks\{FA50D6ED-259F-48B6-87FB-1BEC2521DB47} => pcalua.exe -a D:\startmenu.exe -d D:\ Task: {7503B138-E933-409E-A47A-B2B044690754} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-04-15] (Microsoft Corporation) Task: {7FDB7519-A317-417B-A274-45192359E44E} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-24] (Microsoft Corporation) Task: {9E9A21E8-D298-4FB6-B359-D667238E8139} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-17] (Google Inc.) Task: {AAC0251F-F0B3-4408-AC46-B7D1DC7A8B04} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation) Task: {B5A63E71-35B2-4DC2-94F2-DE9E1AEC3118} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2013-03-13] () Task: {C211FC2B-1ECC-453B-914E-5F74F213E86E} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-08-12] (AVAST Software) Task: {CCF6EF3D-9BE1-42E1-844D-CF258ACEE863} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation) Task: {D3D1B5C3-7F7E-4718-9442-150A22B63952} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-17] (Google Inc.) Task: {EBE022A8-B96D-4C06-A7D9-EB01BF78511F} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [2013-06-18] (Acer Incorporate) Task: {F3BC3198-7086-4A0A-A4AF-710C0CD79F96} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2013-03-16] (Acer Incorporated) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== 2013-12-16 21:33 - 2013-02-21 08:58 - 00111176 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext_x64.dll 2015-03-25 19:58 - 2015-03-26 17:00 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2014-10-17 13:34 - 2014-10-17 13:34 - 00699704 _____ () C:\Program Files (x86)\AVG\AVG PC TuneUp\avgrepliba.dll 2013-09-07 11:48 - 2013-09-07 11:48 - 00011264 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll 2013-09-07 11:45 - 2013-09-07 11:45 - 00086016 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll 2014-10-17 13:34 - 2014-10-17 13:34 - 00835896 _____ () C:\Program Files (x86)\AVG\AVG PC TuneUp\tulnga.dll 2013-09-07 11:52 - 2013-09-07 11:52 - 00012928 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe 2014-05-13 12:38 - 2012-03-13 07:02 - 03380600 _____ () C:\Program Files (x86)\Plus Internet\Plus Internet.exe 2014-08-12 13:51 - 2014-08-12 13:51 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll 2015-04-27 10:38 - 2015-04-27 10:38 - 02927104 _____ () C:\Program Files\AVAST Software\Avast\defs\15042700\algo.dll 2015-02-23 18:04 - 2015-02-27 14:39 - 01007104 _____ () C:\Program Files (x86)\Origin\platforms\qwindows.dll 2015-02-23 18:04 - 2015-02-27 14:39 - 00023552 _____ () C:\Program Files (x86)\Origin\imageformats\qgif.dll 2015-02-23 18:04 - 2015-02-27 14:39 - 00024576 _____ () C:\Program Files (x86)\Origin\imageformats\qico.dll 2015-02-23 18:04 - 2015-02-27 14:39 - 00216576 _____ () C:\Program Files (x86)\Origin\imageformats\qjpeg.dll 2015-02-23 18:04 - 2015-02-27 14:39 - 00261120 _____ () C:\Program Files (x86)\Origin\imageformats\qmng.dll 2015-02-23 18:04 - 2015-02-27 14:39 - 00019456 _____ () C:\Program Files (x86)\Origin\imageformats\qtga.dll 2015-02-23 18:04 - 2015-02-27 14:39 - 00337408 _____ () C:\Program Files (x86)\Origin\imageformats\qtiff.dll 2015-02-23 18:04 - 2015-02-27 14:39 - 00018944 _____ () C:\Program Files (x86)\Origin\imageformats\qwbmp.dll 2014-08-12 13:51 - 2014-08-12 13:51 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2014-05-13 12:38 - 2012-03-13 07:02 - 01105920 _____ () C:\Program Files (x86)\Plus Internet\NDISAPI.dll 2013-12-16 21:09 - 2013-01-14 20:25 - 01200088 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, the associated entry will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-751849595-2506772392-985313409-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\user\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 212.2.96.51 - 212.2.96.52 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (whitelisted) =============== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) FirewallRules: [Wininit-Shutdown-In-Rule-TCP-RPC] => (Allow) %systemroot%\system32\wininit.exe FirewallRules: [Wininit-Shutdown-In-Rule-TCP-RPC-EPMapper] => (Allow) %systemroot%\system32\wininit.exe FirewallRules: [ProximityUxHost-Sharing-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\proximityuxhost.exe FirewallRules: [ProximityUxHost-Sharing-Out-TCP-NoScope] => (Allow) %SystemRoot%\system32\proximityuxhost.exe FirewallRules: [NETDIS-DAS-In-UDP-Active] => (Allow) %SystemRoot%\system32\dashost.exe FirewallRules: [NETDIS-DAS-In-UDP] => (Allow) %SystemRoot%\system32\dashost.exe FirewallRules: [EventForwarder-In-TCP] => (Allow) %SystemRoot%\system32\NetEvtFwdr.exe FirewallRules: [TPMVSCMGR-Server-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\RmtTpmVscMgrSvr.exe FirewallRules: [TPMVSCMGR-Server-Out-TCP-NoScope] => (Allow) %SystemRoot%\system32\RmtTpmVscMgrSvr.exe FirewallRules: [TPMVSCMGR-Server-In-TCP] => (Allow) %SystemRoot%\system32\RmtTpmVscMgrSvr.exe FirewallRules: [TPMVSCMGR-Server-Out-TCP] => (Allow) %SystemRoot%\system32\RmtTpmVscMgrSvr.exe FirewallRules: [PlayTo-In-UDP-NoScope] => (Allow) %SystemRoot%\system32\mdeserver.exe FirewallRules: [PlayTo-In-UDP-LocalSubnetScope] => (Allow) %SystemRoot%\system32\mdeserver.exe FirewallRules: [PlayTo-In-UDP-PlayToScope] => (Allow) %SystemRoot%\system32\mdeserver.exe FirewallRules: [PlayTo-Out-UDP-NoScope] => (Allow) %SystemRoot%\system32\mdeserver.exe FirewallRules: [PlayTo-Out-UDP-LocalSubnetScope] => (Allow) %SystemRoot%\system32\mdeserver.exe FirewallRules: [PlayTo-Out-UDP-PlayToScope] => (Allow) %SystemRoot%\system32\mdeserver.exe FirewallRules: [PlayTo-In-RTSP-NoScope] => (Allow) %SystemRoot%\system32\mdeserver.exe FirewallRules: [PlayTo-In-RTSP-LocalSubnetScope] => (Allow) %SystemRoot%\system32\mdeserver.exe FirewallRules: [PlayTo-In-RTSP-PlayToScope] => (Allow) %SystemRoot%\system32\mdeserver.exe FirewallRules: [WFDPRINT-DAFWSD-In-Active] => (Allow) %SystemRoot%\system32\dashost.exe FirewallRules: [WFDPRINT-DAFWSD-Out-Active] => (Allow) %SystemRoot%\system32\dashost.exe FirewallRules: [{F78DCC8B-75DF-4142-9446-64EFDE131D00}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{B7BA5B3F-9C44-41A8-9105-E1ABB448C53C}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{0C2FD6EB-01D7-4465-898E-1F4A76A8FA36}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{4AE0D60B-24A7-480E-B63E-61E97F2BD1AF}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{1CB57EB5-36CF-4E21-B2B1-BF89875C89C1}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [UDP Query User{42437A29-4747-4C7C-9A70-879641FBFEE2}C:\games\world_of_warplanes\wowplauncher.exe] => (Allow) C:\games\world_of_warplanes\wowplauncher.exe FirewallRules: [TCP Query User{C57A7C97-F151-4D96-ADC8-66292B1F4AC5}C:\games\world_of_warplanes\wowplauncher.exe] => (Allow) C:\games\world_of_warplanes\wowplauncher.exe FirewallRules: [{71ADE78B-CCE9-4205-8DEC-EA69E6EDE68F}] => (Allow) C:\Program Files (x86)\Farming Simulator 2015\x64\FarmingSimulator2015Game.exe FirewallRules: [{E72EB4F7-8308-41F6-B391-0406659126B5}] => (Allow) C:\Program Files (x86)\Farming Simulator 2015\x64\FarmingSimulator2015Game.exe FirewallRules: [{B00BE315-352B-4395-8D1C-8D9A8E8A603E}] => (Allow) C:\Program Files (x86)\Farming Simulator 2015\x86\FarmingSimulator2015Game.exe FirewallRules: [{F2298E4A-18B8-4CA9-BBA0-D7550B3BA170}] => (Allow) C:\Program Files (x86)\Farming Simulator 2015\x86\FarmingSimulator2015Game.exe FirewallRules: [{129A69EC-481B-4B30-BBDF-9CC16C26EC30}] => (Allow) C:\Program Files (x86)\Farming Simulator 2015\FarmingSimulator2015.exe FirewallRules: [{E36AD241-6447-4D5F-8C50-917BA1A8779A}] => (Allow) C:\Program Files (x86)\Farming Simulator 2015\FarmingSimulator2015.exe FirewallRules: [UDP Query User{7768C716-A155-4952-8503-C8B5EA8EE7D3}C:\program files (x86)\techland\agrar symulator 2011 złota edycja\agrar symulator bga 2011\farm.bga.dll] => (Block) C:\program files (x86)\techland\agrar symulator 2011 złota edycja\agrar symulator bga 2011\farm.bga.dll FirewallRules: [TCP Query User{4F1BF30F-529C-401D-A7E8-2AEEA41A87E1}C:\program files (x86)\techland\agrar symulator 2011 złota edycja\agrar symulator bga 2011\farm.bga.dll] => (Block) C:\program files (x86)\techland\agrar symulator 2011 złota edycja\agrar symulator bga 2011\farm.bga.dll FirewallRules: [UDP Query User{76E6F405-762A-4907-9359-F414727842BB}C:\users\user\desktop\jrg w akcji demo v.1.0\jrg w akcji demo v.1.0.exe] => (Block) C:\users\user\desktop\jrg w akcji demo v.1.0\jrg w akcji demo v.1.0.exe FirewallRules: [TCP Query User{8AD45A7C-5080-4078-92F4-4940B933C816}C:\users\user\desktop\jrg w akcji demo v.1.0\jrg w akcji demo v.1.0.exe] => (Block) C:\users\user\desktop\jrg w akcji demo v.1.0\jrg w akcji demo v.1.0.exe FirewallRules: [UDP Query User{DFAFCE76-A28A-46D5-9B47-45DA465EF136}C:\program files\world_of_tanks\wotlauncher.exe] => (Allow) C:\program files\world_of_tanks\wotlauncher.exe FirewallRules: [TCP Query User{D3225A38-49DC-4F30-8227-491943A03087}C:\program files\world_of_tanks\wotlauncher.exe] => (Allow) C:\program files\world_of_tanks\wotlauncher.exe FirewallRules: [UDP Query User{3C718AFA-9AAB-47DC-9B3F-3919293DBE9E}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [TCP Query User{BBB424A9-200B-4CFE-8701-7779B77F6695}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [{EAD6F91C-5AF3-4DE9-BD52-657B8B728B25}] => (Allow) C:\Program Files (x86)\CDP Games\Farming-Simulator 2009\FarmingSimulator2009Game.exe FirewallRules: [{B0F43514-9190-4412-828E-5CC80AED6AC8}] => (Allow) C:\Program Files (x86)\CDP Games\Farming-Simulator 2009\FarmingSimulator2009.exe FirewallRules: [UDP Query User{BE205919-C5D9-492E-9799-1255410FBB12}C:\games\wotlauncher.exe] => (Allow) C:\games\wotlauncher.exe FirewallRules: [TCP Query User{B956E293-A7DE-49C8-A260-768655CD0328}C:\games\wotlauncher.exe] => (Allow) C:\games\wotlauncher.exe FirewallRules: [UDP Query User{D5B78FCD-FE2A-401B-B05F-7E586C9540AC}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe FirewallRules: [TCP Query User{80463EC3-6C79-4A50-9D94-6D6229C0ACBF}C:\games\world_of_tanks\wotlauncher.exe] => (Allow) C:\games\world_of_tanks\wotlauncher.exe FirewallRules: [{8A4E8588-5B01-4629-B961-E058E20516DD}] => (Allow) C:\Program Files (x86)\CDP Games\Symulator wedkarstwa\main.exe FirewallRules: [{E96F7FD4-7457-46B7-9A03-EE7677FA9E01}] => (Allow) C:\Program Files (x86)\cdp.pl\Farming Simulator 2013\FarmingSimulator2013Game.exe FirewallRules: [{50646F2F-E218-42C9-B71C-141F700C1E73}] => (Allow) C:\Program Files (x86)\cdp.pl\Farming Simulator 2013\FarmingSimulator2013.exe FirewallRules: [{9EBB2A6C-0AC9-4B8B-9BA7-69A46C36015F}] => (Allow) C:\Program Files (x86)\cdp.pl\Farming Simulator 2013\FarmingSimulator2013Game.exe FirewallRules: [{FC9EC6D9-09F3-4F69-A6B6-184D1E19282B}] => (Allow) C:\Program Files (x86)\cdp.pl\Farming Simulator 2013\FarmingSimulator2013.exe FirewallRules: [{55F0A9A3-F3AC-43EE-9E9B-BA5BC2BE1DBB}] => (Allow) C:\Program Files (x86)\CDP Games\Farming-Simulator 2009\FarmingSimulator2009Game.exe FirewallRules: [{FFFEA0C5-9162-4E49-AC46-B5F6B7D3C6C4}] => (Allow) C:\Program Files (x86)\CDP Games\Farming-Simulator 2009\FarmingSimulator2009.exe FirewallRules: [UDP Query User{4709DAFA-664B-4BEF-BB60-00F1D4628DD0}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin FirewallRules: [TCP Query User{16D5437C-7D4B-4D4C-9565-F1008AC7BA78}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin FirewallRules: [{75539BC0-0FF7-4EF5-8911-D88CFC06C0B8}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe FirewallRules: [{8ECF357F-752D-40E0-9469-52BD9663BE35}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe FirewallRules: [{2956B0AB-70D5-4CAB-9BF2-8E34C5538051}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe FirewallRules: [{83D1B21A-223E-4932-B650-6FF9BD4B6F67}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe FirewallRules: [{69951DFC-B6CE-4DA6-8407-C2B73F7255EC}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe FirewallRules: [{F1D9DBC0-3A97-4DBA-8AA4-D62CE7242CD8}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe FirewallRules: [{84FC8CB3-D640-4676-A6DB-8D234E384CD8}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe FirewallRules: [{D437B67A-7BBB-4E76-938E-7746F15D870E}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe FirewallRules: [{C36EB54D-DDDE-400B-BB7B-31281651CB38}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe FirewallRules: [{3D72E1B0-E7AC-46F6-B38E-5CB834D3B2A6}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe FirewallRules: [{B971CCF0-E1D6-475E-A065-28CF0BB470C7}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK21\Movie\PlayMovie.exe FirewallRules: [{7A553860-F1B9-4B0D-8FBF-1DACCD088A63}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe FirewallRules: [{CE3257A6-8122-447B-8790-1450B85279BA}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe FirewallRules: [{486956EA-ABB3-4E58-A2B3-77178BB204EF}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe FirewallRules: [{5868D0FC-A5E6-47CD-A1C2-249998262F5B}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe FirewallRules: [{18313CDF-7E3E-4190-B37B-70ED02508107}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe FirewallRules: [{E2EC140D-4661-4C15-89E5-6D5D04E72F5D}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe FirewallRules: [{92FF2C6C-4577-4562-8DFA-E20CAFECA086}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe FirewallRules: [{9F33CA5B-4A3B-4ADC-B804-6F5196A04B56}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe FirewallRules: [{15BE254D-A58F-4C6A-9CF7-5CCEE466E642}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe FirewallRules: [{AEA759AD-FAFC-45AD-BF95-42AA7A36B351}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe FirewallRules: [{6C5F60D9-E45A-4423-A889-B0A82FD91CE2}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{098732C7-4589-4E49-9A27-8BDF54D52067}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{5A6B1F89-670D-4364-BACF-18FCEDDB7E0B}] => (Allow) C:\BANDAI NAMCO Games America\BattleLine\BattleLine.exe FirewallRules: [{77BEAFC4-781A-45C4-9BFB-935DE8E7640A}] => (Allow) C:\BANDAI NAMCO Games America\BattleLine\BattleLine.exe FirewallRules: [TCP Query User{D8835736-ADF8-446C-AE7C-A42083C758D1}C:\program files (x86)\crytek\far cry\bin32\farcry.exe] => (Block) C:\program files (x86)\crytek\far cry\bin32\farcry.exe FirewallRules: [UDP Query User{36FA1C4E-612E-4BB4-ADA1-114AAB0B377B}C:\program files (x86)\crytek\far cry\bin32\farcry.exe] => (Block) C:\program files (x86)\crytek\far cry\bin32\farcry.exe FirewallRules: [TCP Query User{4DA7EE9F-CF8D-43FB-95B7-7510551C9070}C:\users\user\desktop\gta4-instalator.exe] => (Block) C:\users\user\desktop\gta4-instalator.exe FirewallRules: [UDP Query User{22652413-A3EF-4966-837C-95068B669815}C:\users\user\desktop\gta4-instalator.exe] => (Block) C:\users\user\desktop\gta4-instalator.exe FirewallRules: [TCP Query User{6EF18687-F3C0-4606-93BA-B142F2D904BE}C:\users\user\desktop\marcin mager\gta4-instalator.exe] => (Allow) C:\users\user\desktop\marcin mager\gta4-instalator.exe FirewallRules: [UDP Query User{2D4B46D4-D273-482E-A457-B4A222D8C377}C:\users\user\desktop\marcin mager\gta4-instalator.exe] => (Allow) C:\users\user\desktop\marcin mager\gta4-instalator.exe FirewallRules: [TCP Query User{6160EED5-A49A-4705-AB3E-0792AC414A9D}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Block) C:\program files (x86)\mozilla firefox\plugin-container.exe FirewallRules: [UDP Query User{9DEDB96F-7AC1-4C78-ABAC-6041EA7BD50E}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Block) C:\program files (x86)\mozilla firefox\plugin-container.exe FirewallRules: [{0AC66C9E-7EEE-40FD-967B-32067A5EF6F9}] => (Allow) C:\Program Files (x86)\GameforgeLive\gfl_client.exe FirewallRules: [{6E571A06-620C-483C-9444-38373AE0E5F1}] => (Allow) C:\Program Files (x86)\GameforgeLive\Games\POL_pol\S.K.I.L.L\Binaries\Win32\sf2.exe FirewallRules: [{068BEBD7-DE24-40DE-A4BE-4D06129E4741}] => (Allow) C:\Program Files (x86)\GameforgeLive\Games\POL_pol\S.K.I.L.L\Binaries\Win32\sf2.exe FirewallRules: [{6C8F3FCA-09EB-4F68-BBCD-D944641AFD37}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 14\Game\fifa14.exe FirewallRules: [{D38885A3-3A9A-4402-8A5D-425CA3A99D65}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 14\Game\fifa14.exe FirewallRules: [TCP Query User{B8661704-66F4-4953-B2C0-7D7505C19E58}C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe FirewallRules: [UDP Query User{66BF17E7-4B5E-47BE-B9DF-D99A0F843B85}C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe FirewallRules: [{0A8E16FC-6879-4F19-9C42-CA90812375EA}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{B40DD411-F0C7-422D-859C-396D26E14308}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{E59195AF-71EF-4D97-BA68-8270A258AC6A}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{73970C98-2986-451A-904A-14CD6A34B618}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{D938BF3A-AFAB-4C19-8C97-261940D197A1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enemy Front\Bin32\EnemyFront.exe FirewallRules: [{EC754686-673C-40B2-A1B4-E692306000CA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enemy Front\Bin32\EnemyFront.exe FirewallRules: [{1E70B84F-3C78-4A64-A5DD-13F7287698AB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enemy Front\Bin32\DedicatedServer.exe FirewallRules: [{4D3C64CF-2BB0-4A5D-9534-F2A074DE2C8A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enemy Front\Bin32\DedicatedServer.exe FirewallRules: [{C2B6BC20-6A33-4652-8E68-8286E80EA204}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe FirewallRules: [{1906CB6C-9EC7-436A-9025-EAA9F1F8FE44}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe FirewallRules: [{C184A6A2-E44F-4BB6-8562-95E34C4D6995}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{5A784A2D-5C83-4636-B07A-4D40178AF72E}C:\games\world_of_tanks2\wotlauncher.exe] => (Allow) C:\games\world_of_tanks2\wotlauncher.exe FirewallRules: [UDP Query User{35F42B8A-678C-4410-8A72-0F261F142B35}C:\games\world_of_tanks2\wotlauncher.exe] => (Allow) C:\games\world_of_tanks2\wotlauncher.exe FirewallRules: [TCP Query User{7E3E1829-3F58-4BE2-B9E8-68637A5C6724}C:\games\world_of_tanks2\worldoftanks.exe] => (Allow) C:\games\world_of_tanks2\worldoftanks.exe FirewallRules: [UDP Query User{D1BB5D80-6D90-463B-9E11-39902A745538}C:\games\world_of_tanks2\worldoftanks.exe] => (Allow) C:\games\world_of_tanks2\worldoftanks.exe FirewallRules: [{307C7FB3-7B76-49B7-9274-C0FC6EA2D4B0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{3559A31C-A541-48DE-A8AF-E7CE2658DCEF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Faulty Device Manager Devices ============= Name: Bluetooth USB Module Description: Bluetooth USB Module Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Qualcomm Atheros Communications Service: BTHUSB Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (04/27/2015 01:28:48 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program mbam.exe w wersji 1.0.1.711 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 8d4 Godzina rozpoczęcia: 01d080dd43c0ba67 Godzina zakończenia: 4294967295 Ścieżka aplikacji: C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe Identyfikator raportu: 8fb6325e-ecd0-11e4-840b-00a0c6000000 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (04/27/2015 11:54:57 AM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: ZARZĄDZANIE NT) Description: There was an error with the Windows Location Provider database Error: (04/27/2015 11:19:45 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: Plus Internet.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4f5ee184 Nazwa modułu powodującego błąd: Plus Internet.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4f5ee184 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000b2730 Identyfikator procesu powodującego błąd: 0x5f0 Godzina uruchomienia aplikacji powodującej błąd: 0xPlus Internet.exe0 Ścieżka aplikacji powodującej błąd: Plus Internet.exe1 Ścieżka modułu powodującego błąd: Plus Internet.exe2 Identyfikator raportu: Plus Internet.exe3 Pełna nazwa pakietu powodującego błąd: Plus Internet.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: Plus Internet.exe5 Error: (04/26/2015 08:58:34 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 37.0.2.5583, sygnatura czasowa: 0x552ef76c Nazwa modułu powodującego błąd: mozalloc.dll, wersja: 37.0.2.5583, sygnatura czasowa: 0x552ee9ae Kod wyjątku: 0x80000003 Przesunięcie błędu: 0x00001aa1 Identyfikator procesu powodującego błąd: 0x11c4 Godzina uruchomienia aplikacji powodującej błąd: 0xplugin-container.exe0 Ścieżka aplikacji powodującej błąd: plugin-container.exe1 Ścieżka modułu powodującego błąd: plugin-container.exe2 Identyfikator raportu: plugin-container.exe3 Pełna nazwa pakietu powodującego błąd: plugin-container.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: plugin-container.exe5 Error: (04/25/2015 08:49:26 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program IEXPLORE.EXE w wersji 11.0.9600.17416 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 964 Godzina rozpoczęcia: 01d07f888290d113 Godzina zakończenia: 51 Ścieżka aplikacji: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Identyfikator raportu: cb99ab13-eb7b-11e4-8402-00a0c6000000 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (04/25/2015 08:48:58 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program IEXPLORE.EXE w wersji 11.0.9600.17416 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 1424 Godzina rozpoczęcia: 01d07f88748580f5 Godzina zakończenia: 4294967295 Ścieżka aplikacji: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Identyfikator raportu: ba8f0aa1-eb7b-11e4-8402-00a0c6000000 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (04/25/2015 07:24:33 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: iSafe.exe, wersja: 6.0.188.23675, sygnatura czasowa: 0x550b98c1 Nazwa modułu powodującego błąd: isafemvsv.dll, wersja: 6.0.188.23675, sygnatura czasowa: 0x550b988e Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0002ebbf Identyfikator procesu powodującego błąd: 0x15e4 Godzina uruchomienia aplikacji powodującej błąd: 0xiSafe.exe0 Ścieżka aplikacji powodującej błąd: iSafe.exe1 Ścieżka modułu powodującego błąd: iSafe.exe2 Identyfikator raportu: iSafe.exe3 Pełna nazwa pakietu powodującego błąd: iSafe.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: iSafe.exe5 Error: (04/24/2015 06:23:33 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program WWAHost.exe w wersji 6.3.9600.17415 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 1a8 Godzina rozpoczęcia: 01d07eaaf1d8e9ef Godzina zakończenia: 4294967295 Ścieżka aplikacji: C:\Windows\System32\WWAHost.exe Identyfikator raportu: 3d22924c-ea9e-11e4-8400-00a0c6000000 Pełna nazwa pakietu powodującego błąd: winstore_1.0.0.0_neutral_neutral_cw5n1h2txyewy Identyfikator aplikacji względem pakietu powodującego błąd: Windows.Store Error: (04/24/2015 06:23:28 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: acer) Description: Działanie pakietu winstore_1.0.0.0_neutral_neutral_cw5n1h2txyewy+Windows.Store zostało zakończone, ponieważ operacja wstrzymywania pakietu trwała zbyt długo. Error: (04/23/2015 11:05:34 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: FlashPlayerPlugin_17_0_0_169.exe, wersja: 17.0.0.169, sygnatura czasowa: 0x5529da64 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x01391810 Identyfikator procesu powodującego błąd: 0x1624 Godzina uruchomienia aplikacji powodującej błąd: 0xFlashPlayerPlugin_17_0_0_169.exe0 Ścieżka aplikacji powodującej błąd: FlashPlayerPlugin_17_0_0_169.exe1 Ścieżka modułu powodującego błąd: FlashPlayerPlugin_17_0_0_169.exe2 Identyfikator raportu: FlashPlayerPlugin_17_0_0_169.exe3 Pełna nazwa pakietu powodującego błąd: FlashPlayerPlugin_17_0_0_169.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: FlashPlayerPlugin_17_0_0_169.exe5 System errors: ============= Error: (04/27/2015 01:21:29 PM) (Source: DCOM) (EventID: 10010) (User: acer) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (04/27/2015 01:04:05 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Menedżer sterowania usługami próbował podjąć akcję korekcyjną (Uruchom usługę ponownie) po nieoczekiwanym zakończeniu usługi Windows Search, ale ta akcja nie powiodła się przy następującym błędzie: %%1056. Error: (04/27/2015 01:03:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Bufor wydruku niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (04/27/2015 01:03:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (04/27/2015 01:03:35 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0 niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. Error: (04/27/2015 01:03:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Intel(R) Capability Licensing Service Interface niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (04/27/2015 01:03:20 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) Management and Security Application User Notification Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (04/27/2015 01:03:20 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa ePower Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (04/27/2015 01:03:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (04/27/2015 01:03:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Microsoft Office Sessions: ========================= Error: (04/27/2015 01:28:48 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: mbam.exe1.0.1.7118d401d080dd43c0ba674294967295C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe8fb6325e-ecd0-11e4-840b-00a0c6000000 Error: (04/27/2015 11:54:57 AM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: ZARZĄDZANIE NT) Description: -2147024883 Error: (04/27/2015 11:19:45 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Plus Internet.exe0.0.0.04f5ee184Plus Internet.exe0.0.0.04f5ee184c0000005000b27305f001d080c558ec04aeC:\Program Files (x86)\Plus Internet\Plus Internet.exeC:\Program Files (x86)\Plus Internet\Plus Internet.exe8b0f8595-ecbe-11e4-8408-00a0c6000000 Error: (04/26/2015 08:58:34 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: plugin-container.exe37.0.2.5583552ef76cmozalloc.dll37.0.2.5583552ee9ae8000000300001aa111c401d07fee1353a704C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dlla74ef6bd-ebe1-11e4-8403-00a0c6000000 Error: (04/25/2015 08:49:26 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: IEXPLORE.EXE11.0.9600.1741696401d07f888290d11351C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEcb99ab13-eb7b-11e4-8402-00a0c6000000 Error: (04/25/2015 08:48:58 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: IEXPLORE.EXE11.0.9600.17416142401d07f88748580f54294967295C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEba8f0aa1-eb7b-11e4-8402-00a0c6000000 Error: (04/25/2015 07:24:33 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: iSafe.exe6.0.188.23675550b98c1isafemvsv.dll6.0.188.23675550b988ec00000050002ebbf15e401d07f7c7978dcdbC:\Program Files (x86)\Elex-tech\YAC\iSafe.exeC:\Program Files (x86)\Elex-tech\YAC\isafemvsv.dlleffc37bd-eb6f-11e4-8402-00a0c6000000 Error: (04/24/2015 06:23:33 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: WWAHost.exe6.3.9600.174151a801d07eaaf1d8e9ef4294967295C:\Windows\System32\WWAHost.exe3d22924c-ea9e-11e4-8400-00a0c6000000winstore_1.0.0.0_neutral_neutral_cw5n1h2txyewyWindows.Store Error: (04/24/2015 06:23:28 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: acer) Description: winstore_1.0.0.0_neutral_neutral_cw5n1h2txyewy+Windows.Store Error: (04/23/2015 11:05:34 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: FlashPlayerPlugin_17_0_0_169.exe17.0.0.1695529da64unknown0.0.0.000000000c000000501391810162401d07da1f0995f53C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exeunknowne5ce91e0-e997-11e4-83fc-00a0c6000000 CodeIntegrity Errors: =================================== Date: 2015-04-27 11:35:01.690 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-04-27 11:35:01.690 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-04-27 11:35:01.690 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-04-27 10:50:16.457 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2015-04-27 10:39:48.215 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2015-04-27 10:39:47.960 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2015-04-27 10:39:47.944 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2015-04-27 10:39:47.944 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2015-04-26 12:48:42.500 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. Date: 2015-04-26 08:57:40.254 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll that did not meet the Windows signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-3217U CPU @ 1.80GHz Percentage of memory in use: 35% Total physical RAM: 3985.27 MB Available physical RAM: 2587.3 MB Total Pagefile: 4689.27 MB Available Pagefile: 3150.2 MB Total Virtual: 131072 MB Available Virtual: 131071.76 MB ==================== Drives ================================ Drive c: (Acer) (Fixed) (Total:449.75 GB) (Free:298.44 GB) NTFS Drive g: () (Removable) (Total:3.65 GB) (Free:3.46 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: B861CF20) Partition: GPT Partition Type. ======================================================== Disk: 2 (Size: 3.7 GB) (Disk ID: C3072E18) Partition 1: (Active) - (Size=3.7 GB) - (Type=0B) ==================== End Of Log ============================