Additional scan result of Farbar Recovery Scan Tool (x64) Version:13-08-2015 Ran by PETRI (2015-08-14 11:12:17) Running from C:\Users\PETRI\Desktop\fix Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1323491106-2663415833-3138256045-500 - Administrator - Disabled) Gość (S-1-5-21-1323491106-2663415833-3138256045-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1323491106-2663415833-3138256045-1004 - Limited - Enabled) PETRI (S-1-5-21-1323491106-2663415833-3138256045-1000 - Administrator - Enabled) => C:\Users\PETRI UpdatusUser (S-1-5-21-1323491106-2663415833-3138256045-1002 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 12.0.0.38 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.296 - Adobe Systems Incorporated) Aktualizacje NVIDIA 8.3.14 (Version: 8.3.14 - NVIDIA Corporation) Hidden AMD Catalyst Install Manager (HKLM\...\{1D1DCF8A-6961-F848-0DA0-5401969C44CE}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.) Ashampoo Burning Studio 2015 v.1.15.0 (HKLM-x32\...\{91B33C97-21E3-DF34-9630-2EE80DDE1648}_is1) (Version: 1.15.0 - Ashampoo GmbH & Co. KG) AVG 2015 (HKLM\...\AVG) (Version: 2015.0.6125 - AVG Technologies) AVG 2015 (Version: 15.0.4392 - AVG Technologies) Hidden AVG 2015 (Version: 15.0.6125 - AVG Technologies) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DRUKI Gofin 2.2.19.0 (HKLM-x32\...\{852B928B-042E-4555-B59B-3473734906FF}) (Version: 2.2.19.0 - Wydawnictwo Podatkowe GOFIN sp. z o.o.) FileZilla Client 3.7.4.1 (HKLM-x32\...\FileZilla Client) (Version: 3.7.4.1 - Tim Kosse) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.1.4.217 - Foxit Corporation) GeForce Experience NvStream Client Components (Version: 0.1.87 - NVIDIA Corporation) Hidden HP LaserJet Professional M1130-M1210 MFP Series (HKLM\...\HP LaserJet Professional M1130-M1210 MFP Series) (Version: - ) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Komunikator WTW 0.9.18.3794 (HKLM\...\{1DF5019A-68B5-4ba1-8E59-E185C7B7FF11}) (Version: 0.9.18.3794 - K2T.eu) Mała Księgowość Rzeczpospolitej (HKLM-x32\...\Mała Księgowość Rzeczpospolitej) (Version: 23.08 - Usługi Informatyczne Andrzej Ciupiński) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) NVIDIA GeForce Experience 1.6.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.6.1 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.13.0725 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0725 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 327.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 327.23 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.26.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.26.4 - NVIDIA Corporation) NVIDIA Sterownik graficzny 327.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.23 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 326.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 326.01 - NVIDIA Corporation) NVIDIA Virtual Audio 1.2.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver) (Version: 1.2.5 - NVIDIA Corporation) OpenOffice.org 3.4.1 (HKLM-x32\...\{18192D3F-5537-4560-AD89-D695F72AF91D}) (Version: 3.41.9593 - Apache Software Foundation) Panel sterowania NVIDIA 327.23 (Version: 327.23 - NVIDIA Corporation) Hidden Poczta usługi Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Podstawowe programy Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Ralink RT2870 Wireless LAN Card (HKLM-x32\...\{28DA7D8B-F9A4-4F18-8AA0-551B1E084D0D}) (Version: 1.5.12.0 - Ralink) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7076 - Realtek Semiconductor Corp.) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.24.0 - SAMSUNG Electronics Co., Ltd.) Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 2.0.1 - HP) SeaMonkey 2.33.1 (x86 pl) (HKLM-x32\...\SeaMonkey 2.33.1 (x86 pl)) (Version: 2.33.1 - Mozilla) SHIELD Streaming (Version: 1.05.28 - NVIDIA Corporation) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - Microsoft Corporation) Skype™ 7.6 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.6.105 - Skype Technologies S.A.) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.45862 - TeamViewer) Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Web Components (HKLM-x32\...\{03B13AF8-9625-478A-AF0E-205337B9415A}_is1) (Version: - ) Web Components (HKLM-x32\...\{7F1CB236-672F-4C33-9289-09184622E0F0}_is1) (Version: - ) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) WinRAR 5.01 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) Zebra Font Downloader (HKLM-x32\...\Zebra Font Downloader_is1) (Version: - Zebra Technologies Corporation) Zebra Setup Utilities (HKLM-x32\...\Zebra Setup Utilities) (Version: 1.1.9.1137 - Zebra Technologies) Zebra Setup Utilities (x32 Version: 1.1.9.1137 - Zebra Technologies) Hidden ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= 29-07-2015 20:33:05 Windows Update 03-08-2015 09:50:51 Windows Update 06-08-2015 10:15:37 Windows Update 09-08-2015 12:01:08 Windows Update 12-08-2015 20:16:12 Windows Update 14-08-2015 11:01:44 Installed AVG 2015 ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {7F19EF56-423E-425B-A4A5-73B9E6735AC7} - System32\Tasks\{8E7940AC-6B3D-4BA1-A019-5877591C60A6} => pcalua.exe -a C:\Users\PETRI\Desktop\wtw-setup-all.exe -d C:\Users\PETRI\Desktop Task: {94EFFA49-BDBC-4340-8562-A39CCC32F9A1} - System32\Tasks\{9A034BC9-386E-4E66-BF24-BBE48EBA40EE} => C:\Users\PETRI\Desktop\WebComponents.exe Task: {C4C48555-DC15-46AA-95C0-2682E67F6C0A} - System32\Tasks\{D1DAFDA8-0B7C-4DF7-8E3D-B7F7E662444B} => C:\Users\PETRI\Desktop\WebComponents.exe Task: {EB88897D-6FC2-4DC6-B361-7AAA6685F83B} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Loaded Modules (Whitelisted) ============== 2014-01-18 17:20 - 2013-09-12 09:25 - 00097568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-01-27 14:58 - 2012-09-29 14:25 - 00409088 _____ () C:\Windows\System32\HPM1210LM.DLL 2014-01-27 14:58 - 2012-09-29 14:25 - 00074240 _____ () C:\Windows\system32\spool\PRTPROCS\x64\HPM1210PP.dll 2015-08-13 10:31 - 2015-07-07 11:48 - 00020240 _____ () C:\Windows\system32\spool\PRTPROCS\x64\TeamViewer_PrintProcessor.dll 2013-08-30 20:47 - 2013-08-30 20:47 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2010-01-02 16:42 - 2010-01-02 16:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2014-01-27 17:00 - 2015-05-01 14:04 - 00019456 _____ () C:\Program Files\K2T\WTW\libCryptoLayer.module 2014-01-27 17:00 - 2015-05-01 14:04 - 00088064 _____ () C:\Program Files\K2T\WTW\libCryptoWtw.module 2014-01-27 17:00 - 2015-05-01 14:04 - 00546816 _____ () C:\Program Files\K2T\WTW\libSQ3.module 2014-01-27 17:00 - 2015-05-01 14:04 - 00579072 _____ () C:\Program Files\K2T\WTW\libImage.module 2014-01-27 17:00 - 2015-05-01 14:04 - 00092160 _____ () C:\Program Files\K2T\WTW\libZlib.module 2014-01-27 17:00 - 2015-05-01 14:04 - 00129024 _____ () C:\Program Files\K2T\WTW\libExpat.module 2014-01-27 17:00 - 2015-05-01 14:04 - 00442880 _____ () C:\Program Files\K2T\WTW\libLexer.module 2014-02-25 17:10 - 2014-03-16 17:52 - 00177664 _____ () c:\users\petri\appdata\roaming\.wtw\profiles\nakazdaokazje.com\Plugins64\sounds.plug 2013-01-18 14:20 - 2013-01-18 14:20 - 00985088 _____ () C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1323491106-2663415833-3138256045-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\PETRI\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 89.108.202.20 - 89.108.195.20 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{78BE7FA6-B0D6-46E8-93C0-06C7966BF09C}] => (Allow) C:\Program files (x86)\raidxpert2\apache\bin\httpd.exe FirewallRules: [{AE626D35-8BF7-4C1C-BC3D-489F160355D9}] => (Allow) C:\Program files (x86)\raidxpert2\apache\bin\httpd.exe FirewallRules: [{A63081FF-B1FE-4914-A80C-9300E298C4EA}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{A2AC58D5-2868-47B4-988F-277BB181A4E3}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{30D16486-7FEB-47A0-A52F-D75AB387153A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{D2320A49-99C6-4887-9768-B9C42D1C2311}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{BBCF0E94-B2AF-4DAE-AA10-B7A3E115031F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{8D331DDA-43BE-490F-BEF7-B869562F7A0F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{1D612348-A335-4900-BF18-300CA8176C5E}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgmfapx.exe FirewallRules: [{FA1334CD-019F-44CF-9E66-A91BAF54CD8B}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgmfapx.exe FirewallRules: [{599C88BF-C67D-4969-900C-26452D3342EC}] => (Allow) C:\Program Files\K2T\WTW\wtw.exe FirewallRules: [{1C7E7FE7-F2F0-420A-AA1D-5E5E96774CDC}] => (Allow) C:\Program Files\K2T\WTW\wtw.exe FirewallRules: [TCP Query User{0AC6CF9C-7BED-401D-93CA-4F1DA5C1F4DA}C:\program files\totalcmd\totalcmd64.exe] => (Allow) C:\program files\totalcmd\totalcmd64.exe FirewallRules: [UDP Query User{01ABCA33-C33C-4D4C-946C-EB72D9995773}C:\program files\totalcmd\totalcmd64.exe] => (Allow) C:\program files\totalcmd\totalcmd64.exe FirewallRules: [{F7B8BED6-6E9B-47AE-9A60-969F66C2A9FA}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{43D4A728-E686-4A6B-B30C-451CF4591A27}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{24C846C6-DD74-4482-A882-0229B698BAE1}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{82554728-043A-4325-8063-AAE39548E61D}] => (Allow) C:\Program Files\K2T\WTW\wtw.exe FirewallRules: [{5FFBBA40-4389-4930-B8ED-E4ABB47C2D55}] => (Allow) C:\Program Files\K2T\WTW\wtw.exe FirewallRules: [TCP Query User{C6FCCA02-38AA-4999-82BA-A483176687EF}E:\mr_faktury\mr_faktury_pro.exe] => (Allow) E:\mr_faktury\mr_faktury_pro.exe FirewallRules: [UDP Query User{784FB583-7192-499C-BBBB-432CAFD403EB}E:\mr_faktury\mr_faktury_pro.exe] => (Allow) E:\mr_faktury\mr_faktury_pro.exe FirewallRules: [{949D90E5-51D4-4007-9B6B-8C67FC2BC14B}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{79420CC2-CA6A-4D0F-9B74-7E05BAB45C4B}] => (Allow) LPort=2869 FirewallRules: [{7A65B3B3-1104-4A18-A5D1-9F97234C4658}] => (Allow) LPort=1900 FirewallRules: [{F3F4954F-6D10-4842-BE36-A5D488BD57D8}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe FirewallRules: [{13BF866D-A793-4B1E-907B-FB67892C2F07}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe FirewallRules: [{1305B1CE-EF7F-4BB2-8695-D834C07A069F}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgdiagex.exe FirewallRules: [{628BA9C4-3758-4DD0-94C8-2FABFF842599}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgdiagex.exe FirewallRules: [{14F17CC2-BD5A-44A7-BAA6-25FBEDA80081}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe FirewallRules: [{CDBEF135-4E8F-4E76-B903-EA9196D387A9}] => (Allow) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe FirewallRules: [{90CA7A52-6031-4610-932C-A40913E2BE10}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe FirewallRules: [{272A3F8A-F378-40A1-B350-CD7C9DFBD3E3}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe FirewallRules: [{8888445A-4CB3-47A7-9F21-9C671CEE98D2}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe FirewallRules: [{62B1CAD7-8A03-477D-901E-0BEC5854A9A6}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe FirewallRules: [TCP Query User{0F651F15-546F-4F27-8443-075D9D1B6D8C}E:\mr_faktury\mr_faktury_pro.exe] => (Allow) E:\mr_faktury\mr_faktury_pro.exe FirewallRules: [UDP Query User{D1F0465B-1BAA-4279-999E-E34504FE6F75}E:\mr_faktury\mr_faktury_pro.exe] => (Allow) E:\mr_faktury\mr_faktury_pro.exe FirewallRules: [{11A23B2B-83CC-49BF-B3A4-2C2F3EF5BBB6}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe FirewallRules: [{9CBAED14-4F5A-4C09-9DE5-90C7EF6CA0CA}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe FirewallRules: [{28F74C8E-CC7A-4C92-BEE3-88E320963D40}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe FirewallRules: [{EE480C8D-CFB4-46FB-8616-91399A556B84}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe FirewallRules: [{E8B8A26D-F9F0-43A9-8B8F-3C2127020288}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{70ECCD73-6805-4D86-9940-E790D69AFA2B}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{746C8430-1457-47B6-B7E8-9DF71407BD17}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe FirewallRules: [{53601A73-EC9D-42BF-85EC-610E3AF178F9}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe FirewallRules: [{04BC457D-9176-43B2-8C47-1B797E3980FB}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{6E56A0B1-AEF6-4701-A365-CD7B7F604CE6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{39359753-C652-48BF-941E-E79983BB20DF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{827628E6-895C-4E32-B82C-02173F4BDBCA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{BC72A49D-C94F-4E8A-BD66-B1430AD819E6}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe FirewallRules: [{9B85BA3C-A1B2-4632-BD4F-5A221DAAB1A8}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe FirewallRules: [{90164ED9-58F8-4D82-927D-469A3B9A468D}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe FirewallRules: [{896CD2A7-BDBD-4B9E-A779-45E1B9FC7BA5}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe FirewallRules: [{4D78BF2C-E8E9-4B21-AAAF-22B2C1080956}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{59A084DB-04DF-44AC-8B01-169444999B34}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{43F01FB3-8571-4021-A649-6D6D57045569}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe FirewallRules: [{450517B9-9A55-4D6B-8EE9-4B4C2B6C4E61}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/14/2015 11:10:30 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/14/2015 11:09:36 AM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (08/14/2015 11:09:36 AM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (08/13/2015 06:51:00 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 06:49:51 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (08/13/2015 06:49:51 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (08/13/2015 11:52:11 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 11:51:12 AM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (08/13/2015 11:51:12 AM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (08/13/2015 10:13:07 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (08/14/2015 11:07:48 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa HP SI Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 1000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/14/2015 11:07:46 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Instalator modułów systemu Windows niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/14/2015 11:07:46 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Instalator Windows niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/14/2015 11:07:46 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/14/2015 11:07:45 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Live ID Sign-in Assistant niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 10000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/14/2015 11:07:45 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa NVIDIA Update Service Daemon niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (08/14/2015 11:07:45 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa NVIDIA Streamer Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (08/14/2015 11:07:44 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa HP SI Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 1000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/14/2015 11:07:44 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Skype Click to Call PNR Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (08/14/2015 11:07:44 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Skype Click to Call Updater niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Microsoft Office: ========================= Error: (08/14/2015 11:10:30 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/14/2015 11:09:36 AM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (08/14/2015 11:09:36 AM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (08/13/2015 06:51:00 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 06:49:51 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (08/13/2015 06:49:51 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (08/13/2015 11:52:11 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 11:51:12 AM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (08/13/2015 11:51:12 AM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (08/13/2015 10:13:07 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Processor: AMD Athlon(tm) X4 740 Quad Core Processor Percentage of memory in use: 61% Total physical RAM: 4043.13 MB Available physical RAM: 1565.87 MB Total Virtual: 8084.47 MB Available Virtual: 5753.58 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:292.75 GB) (Free:224.35 GB) NTFS Drive e: (Nowy) (Fixed) (Total:292.97 GB) (Free:284.54 GB) NTFS Drive f: (Nowy) (Fixed) (Total:345.58 GB) (Free:308.22 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT. ==================== End of log ============================