Additional scan result of Farbar Recovery Scan Tool (x64) Version:14-08-2015 01 Ran by Tomek (2015-08-15 19:04:52) Running from C:\Users\Tomek\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3940539798-2983024366-2410409241-500 - Administrator - Disabled) Gość (S-1-5-21-3940539798-2983024366-2410409241-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3940539798-2983024366-2410409241-1002 - Limited - Enabled) Tom (S-1-5-21-3940539798-2983024366-2410409241-1003 - Administrator - Enabled) => C:\Users\Tom Tomek (S-1-5-21-3940539798-2983024366-2410409241-1000 - Administrator - Enabled) => C:\Users\Tomek ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A} AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 4.65 (HKLM-x32\...\7-Zip) (Version: - ) ABBYY PDF Transformer+ (HKLM\...\{FA400000-0001-6400-0000-074957833700}) (Version: 4.1.241 - ABBYY Production LLC) Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.296 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.55.1355, 14.07.2014 - AIMP DevTeam) Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0415-0000-0000000FF1CE}_PROPLUS_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0415-0000-0000000FF1CE}_PROPLUS_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0415-0000-0000000FF1CE}_PROPLUS_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version: - Microsoft) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.6.2 - EA Digital Illusions CE AB) BitTorrent (HKU\S-1-5-21-3940539798-2983024366-2410409241-1000\...\BitTorrent) (Version: 7.9.3.40761 - BitTorrent Inc.) Borderlands (HKLM-x32\...\Borderlands_is1) (Version: - Audioslave) Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version: - Gearbox Software) CBR Reader (HKLM-x32\...\{EDAAC216-AC73-4152-9654-E12FE5A69F5D}_is1) (Version: - cbrreader.com) CodeBlocks (HKU\S-1-5-21-3940539798-2983024366-2410409241-1000\...\CodeBlocks) (Version: 13.12 - The Code::Blocks Team) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Deus Ex: Human Revolution (HKLM-x32\...\Steam App 28050) (Version: - Eidos Montreal) Dishonored - Game of the Year Edition (HKLM-x32\...\Dishonored - Game of the Year Edition_R.G. Mechanics_is1) (Version: - R.G. Mechanics, Panky) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) EclipseCrossword (HKLM-x32\...\{F389DB8F-0716-4FC6-82B2-02B2FA2B4F24}) (Version: 1.2.61 - Green Eclipse) Elsword (HKLM-x32\...\Elsword_pl_is1) (Version: - ) Fallout: New Vegas (HKLM-x32\...\Steam App 22490) (Version: - Obsidian Entertainment) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.155 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software) Hotline Miami (HKLM-x32\...\GOGPACKHOTLINEMIAMI_is1) (Version: 2.1.0.6 - GOG.com) Hotline Miami 2 - Wrong Number (HKLM-x32\...\1424773427_is1) (Version: 2.0.0.1 - GOG.com) HP Photosmart 5520 series — podstawowe oprogramowanie urządzenia (HKLM\...\{ACDA59E7-71D5-4695-9252-AE47B6650B01}) (Version: 27.0.847.0 - Hewlett-Packard Co.) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1011 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3308 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) Katawa Shoujo (HKLM-x32\...\Katawa Shoujo) (Version: - ) K-Lite Codec Pack 7.2.0 (Full) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 7.2.0 - ) Malwarebytes Anti-Malware wersja 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Metro: Last Light (HKLM-x32\...\Steam App 43160) (Version: - 4A Games) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Mozilla Firefox 33.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 33.0 (x86 pl)) (Version: 33.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 33.0 - Mozilla) MPC-HC 1.7.8 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.8 - MPC-HC Team) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) Obsługa programów Apple (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.) ON_OFF Charge 2 B13.1028.1 (HKLM-x32\...\InstallShield_{6B4ED6F7-BB88-4945-B0C6-01410E1BAC3A}) (Version: 1.00.0000 - GIGABYTE) ON_OFF Charge 2 B13.1028.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Oracle VM VirtualBox 4.3.20 (HKLM\...\{DD8F7A7A-852F-4648-8A73-B8FC1DF5F082}) (Version: 4.3.20 - Oracle Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.4.22.2815 - Electronic Arts, Inc.) Portal 2 (HKLM-x32\...\Steam App 620) (Version: - Valve) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.) Quake Live (HKLM-x32\...\Quake Live) (Version: - id Software) QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.) RealPlayer (HKLM-x32\...\RealPlayer 6.0) (Version: - RealNetworks) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.65.1025.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7076 - Realtek Semiconductor Corp.) Rising Storm/Red Orchestra 2 Multiplayer (HKLM-x32\...\Steam App 35450) (Version: - Tripwire Interactive) S.T.A.L.K.E.R. - Lost Alpha (HKLM-x32\...\S.T.A.L.K.E.R. - Lost Alpha_is1) (Version: S.T.A.L.K.E.R. - Lost Alpha - RePack by SeregA-Lus) S.T.A.L.K.E.R. - Zew Prypeci [v1.6.01] (HKLM-x32\...\{406FB8A4-F539-48A9-809C-F94706F9C9F6}_is1) (Version: 1.6.01 - CENEGA) S.T.A.L.K.E.R.: Lost Alpha version 1.3003 (HKLM-x32\...\S.T.A.L.K.E.R.: Lost Alpha_is1) (Version: 1.3003 - dezowave) Skype™ 7.6 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.6.105 - Skype Technologies S.A.) Sniper Elite V2 (HKLM-x32\...\Steam App 63380) (Version: - Rebellion) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) The Binding of Isaac (HKLM-x32\...\Steam App 113200) (Version: - Edmund McMillen and Florian Himsl) The Showdown Effect (HKLM-x32\...\Steam App 204080) (Version: - Arrowhead Game Studios) TightVNC (HKLM\...\{D2372F87-7DA2-47F7-A102-AF2181B8EAA2}) (Version: 2.7.10.0 - GlavSoft LLC.) Tomb Raider (HKLM-x32\...\Steam App 203160) (Version: - Crystal Dynamics) TP-LINK Wireless Client Utility (HKLM-x32\...\{1E58B969-9BB4-4012-8D8B-D06005D1CD24}) (Version: 7.0 - TP-LINK) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) WinRAR 5.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) Wolfenstein - Enemy Territory (HKLM-x32\...\Wolfenstein - Enemy Territory) (Version: - ) XSplit Gamecaster (HKLM-x32\...\{FAE4272A-909E-4C49-BD11-86BEEB2483A2}) (Version: 2.2.1502.1734 - SplitmediaLabs) Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.3) (Version: 1.3.3 - Xvid Team) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-3940539798-2983024366-2410409241-1000_Classes\CLSID\{4D0E1AB2-58F0-6237-65B2-33C4D586137A}\InprocServer32 -> C:\Windows\system32\ole32.dll (Microsoft Corporation) ==================== Restore Points ========================= 15-08-2015 10:53:39 Zaplanowany punkt kontrolny ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2015-08-13 15:42 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0AD00364-AB38-4A60-9F2D-8E9F4C9B0D08} - System32\Tasks\{264467C9-B393-4976-916C-6B2D4E32B292} => pcalua.exe -a "C:\Program Files (x86)\YouTube Accelerator\YTAUninstall.exe" Task: {0B754755-3B1D-478E-A089-F0A824C186BD} - \ShopperProJSUpd -> No File <==== ATTENTION Task: {0F726A6C-A261-4765-B1E9-A108F6E139BB} - \SPBIW_UpdateTask_Time_313431323531373631332d5b374a5a6c6c23322a345541 -> No File <==== ATTENTION Task: {1308C2C9-EAEB-42D1-9B3F-BCC77C575504} - \Installer_sense -> No File <==== ATTENTION Task: {330AFC6B-5738-4504-97DE-A1964632E672} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-21] (Google Inc.) Task: {52C9C22A-68FF-4085-AEEA-025073FEA568} - \Installer_iwebar -> No File <==== ATTENTION Task: {77C794F8-3F41-41DA-A550-652F82BD1E75} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-21] (Google Inc.) Task: {8160FA65-83AC-4CD1-83C0-A32F57655749} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser Task: {9FE2A07B-AED1-4538-A947-EAEA4D404933} - \ShopperPro -> No File <==== ATTENTION Task: {F5D6764D-38D4-434A-AC5C-5A1173106FC2} - \SPDriver -> No File <==== ATTENTION (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2015-07-07 09:46 - 2015-07-07 09:46 - 00022528 _____ () C:\Windows\System32\us005lm.dll 2014-10-27 20:42 - 2015-06-29 12:31 - 00066872 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-10-27 20:42 - 2015-06-29 12:31 - 00107832 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-10-16 13:17 - 2013-09-13 18:04 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2015-08-13 13:19 - 2015-08-13 13:19 - 09255846 ____N () C:\Users\Tomek\AppData\Roaming\pwo12\audiogd.exe 2015-08-15 18:31 - 2015-08-15 18:31 - 00225280 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\bin\eth64\atieclxx.exe 2015-08-15 18:31 - 2015-08-15 18:31 - 00021504 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\bin\eth64\OpenCL.dll 2015-08-15 18:31 - 2015-08-15 18:31 - 03613710 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\bin\atiesrxx.exe 2015-08-15 18:31 - 2015-08-15 18:31 - 00324096 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\_hashlib.pyd 2015-08-15 18:31 - 2015-08-15 18:31 - 00034304 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\win32api.pyd 2015-08-15 18:31 - 2015-08-15 18:31 - 00052736 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\pywintypes27.dll 2015-08-15 18:31 - 2015-08-15 18:31 - 00112128 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\pythoncom27.dll 2015-08-15 18:31 - 2015-08-15 18:31 - 00014336 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\_multiprocessing.pyd 2015-08-15 18:31 - 2015-08-15 18:31 - 00072192 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\win32com.shell.shell.pyd 2015-08-15 18:31 - 2015-08-15 18:31 - 00021504 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\_socket.pyd 2015-08-15 18:31 - 2015-08-15 18:31 - 00473600 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\_ssl.pyd 2015-08-15 18:31 - 2015-08-15 18:31 - 00036864 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\_ctypes.pyd 2015-08-15 18:31 - 2015-08-15 18:31 - 00034816 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\win32file.pyd 2015-08-15 18:31 - 2015-08-15 18:31 - 00019968 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\msgpack._packer.pyd 2015-08-15 18:31 - 2015-08-15 18:31 - 00023552 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\msgpack._unpacker.pyd 2015-08-15 18:31 - 2015-08-15 18:31 - 00012800 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\pyHook._cpyHook.pyd 2015-08-15 18:31 - 2015-08-15 18:31 - 00043520 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\win32gui.pyd 2015-08-15 18:31 - 2015-08-15 18:31 - 00009216 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\select.pyd 2015-08-15 18:31 - 2015-08-15 18:31 - 00020480 _____ () C:\Users\Tomek\AppData\Local\Temp\_MEI38322\psutil._psutil_windows.pyd 2015-08-13 13:35 - 2015-08-08 02:13 - 16393032 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.155\PepperFlash\pepflashplayer.dll 2014-10-16 13:16 - 2013-09-16 12:17 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-05-24 20:14 - 2014-02-10 13:44 - 04592128 _____ () C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libglesv2.dll 2015-05-24 20:14 - 2014-02-10 13:44 - 00112128 _____ () C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:56E2E879 ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3940539798-2983024366-2410409241-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Tomek\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg HKU\S-1-5-21-3940539798-2983024366-2410409241-1003\Control Panel\Desktop\\Wallpaper -> C:\Users\Tom\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 - 8.8.8.8 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{23D3DF41-83FC-4498-BB5B-0DD17904353C}] => (Allow) C:\Program Files\TightVNC\tvnserver.exe FirewallRules: [{8B19E13B-B16F-4EFB-BCA8-0E68EA34790B}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{389AF5E7-24D0-4456-B1AA-B728E80DF976}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{1354BD6B-70A8-46F7-ADC1-46ED8820D99F}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{96BE6246-0DC5-47E3-BE8D-E59630F7FE89}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{9A34E035-57E6-4C9C-A7CC-3103DEED6F97}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{5B9622AE-CFFC-4599-8E69-2584B6BAB805}] => (Allow) C:\Users\Tomek\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{A4AE7FC3-94FD-4696-A205-FF0A1405DF63}] => (Allow) C:\Users\Tomek\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{D52C9725-8A25-4E6C-A9FB-726538FD613B}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Metro Last Light\MetroLL.exe FirewallRules: [{373CBD9D-6A5F-4572-B5E5-74D24CA74892}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Metro Last Light\MetroLL.exe FirewallRules: [{0AAC6F2C-29AC-4BC4-A228-29C337853572}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Sniper Elite V2\bin\SniperEliteV2.exe FirewallRules: [{799767AA-9F1F-40CC-92E8-F288F6DBEF3E}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Sniper Elite V2\bin\SniperEliteV2.exe FirewallRules: [{793C6A73-4337-4131-A45A-FEAEAC181051}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{0004C2A3-3D7A-4B74-86A2-46F4253F5912}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Deus Ex - Human Revolution\dxhr.exe FirewallRules: [{11E9BFE0-6428-43A8-9386-2163A1D35015}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Deus Ex - Human Revolution\dxhr.exe FirewallRules: [{F2BE8178-9E49-456F-8E7A-3F93FD5364BB}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe FirewallRules: [{AEAE36E5-66DB-413F-BA46-1BD723CACC1A}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\dota.exe FirewallRules: [{A3ACC1D9-5822-4F1F-8B08-476577CFDF3E}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{3BFB0C9E-0249-49E8-81FE-DD4A9C08DC45}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{B34C2EC4-95D6-4989-BD03-D29CFCC3A907}] => (Allow) C:\Program Files\HP\HP Photosmart 5520 series\Bin\DeviceSetup.exe FirewallRules: [{34959349-B0C4-4D3E-8AE3-1A7EFC0CFA6C}] => (Allow) C:\Program Files\HP\HP Photosmart 5520 series\Bin\HPNetworkCommunicator.exe FirewallRules: [TCP Query User{786ADB31-4C69-497E-8ADC-C7871EAC65C6}D:\program files (x86)\java\bin\javaw.exe] => (Allow) D:\program files (x86)\java\bin\javaw.exe FirewallRules: [UDP Query User{C519F46B-4A71-4A8C-9F5D-503BC83ACD4F}D:\program files (x86)\java\bin\javaw.exe] => (Allow) D:\program files (x86)\java\bin\javaw.exe FirewallRules: [{6F995492-B021-414F-8DB2-B131ACF5F047}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Showdown\binaries\showdown.exe FirewallRules: [{BFB2A943-2389-4D4E-852F-5FB4391D069D}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Showdown\binaries\showdown.exe FirewallRules: [TCP Query User{8EB07C77-8605-4D46-8D84-3C647B1CA50F}D:\games\fc3 bd\far cry 3 blood dragon\bin\fc3_blooddragon.exe] => (Allow) D:\games\fc3 bd\far cry 3 blood dragon\bin\fc3_blooddragon.exe FirewallRules: [UDP Query User{5BF0DA47-5CB0-4010-BCE3-B4A212A06C3F}D:\games\fc3 bd\far cry 3 blood dragon\bin\fc3_blooddragon.exe] => (Allow) D:\games\fc3 bd\far cry 3 blood dragon\bin\fc3_blooddragon.exe FirewallRules: [TCP Query User{65E69F9E-C75C-4439-B8F1-1002028E4BC0}D:\games\borderlands\binaries\game.exe] => (Allow) D:\games\borderlands\binaries\game.exe FirewallRules: [UDP Query User{A42C136D-9FC2-4FD8-9E6C-A11AD099C909}D:\games\borderlands\binaries\game.exe] => (Allow) D:\games\borderlands\binaries\game.exe FirewallRules: [{890E0C22-8F67-460E-914D-10D0C883BD11}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\The Binding Of Isaac\Isaac.exe FirewallRules: [{BAE1EED1-937E-4C91-AFAE-8D8925947885}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\The Binding Of Isaac\Isaac.exe FirewallRules: [{82D11932-41F0-48A2-93BD-985837FF5E5C}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{ABBC5C22-A810-48A5-AE61-E82DC1C3A42F}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{F942E4FB-6427-4407-9465-44AD23593375}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{6060E721-45CA-4177-B396-EF6CD77B27BD}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{7AA4A09B-918F-4410-A0F3-398EF7FB542D}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{7149871C-B154-4AA9-9861-F08310A486FE}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{F548DCF0-D782-4CE8-936E-B9ECE87B47A1}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Launcher.exe FirewallRules: [{DED832D3-FC5B-4C39-8E68-4B8526CAD219}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Launcher.exe FirewallRules: [{2D440486-0518-4DDE-92AC-ACFB4EF32EBB}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe FirewallRules: [{22E9CF63-FF74-40FE-B44F-EE1D84C2F487}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe FirewallRules: [{30211612-3073-4B6C-8DC9-A4A68AAF7871}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider\TombRaider.exe FirewallRules: [{0B53ABC3-32C6-485D-A1A5-5A19B210BEC5}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Tomb Raider\TombRaider.exe FirewallRules: [{CA0BC25E-8399-4049-961B-547B61038922}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Sniper Elite V2\Launcher\SniperV2Launcher.exe FirewallRules: [{CCC02758-D5E3-4ED0-8B11-EABEDC71B9E7}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Sniper Elite V2\Launcher\SniperV2Launcher.exe FirewallRules: [{8EA42364-0589-475B-9F8E-2F47B37314DA}] => (Allow) D:\Program Files (x86)\GameforgeLive\Games\POL_pol\Elsword\data\x2.exe FirewallRules: [{3C4365E8-4EAD-4E38-A676-1D490E1E62C0}] => (Allow) D:\Program Files (x86)\GameforgeLive\Games\POL_pol\Elsword\data\x2.exe FirewallRules: [TCP Query User{21DA107E-EC8C-4A14-8D18-C1A78B997D07}D:\games\assassins creed iii\assassin's creed 3\ac3sp.exe] => (Allow) D:\games\assassins creed iii\assassin's creed 3\ac3sp.exe FirewallRules: [UDP Query User{2BDE0301-4715-4120-B14A-092CF196D988}D:\games\assassins creed iii\assassin's creed 3\ac3sp.exe] => (Allow) D:\games\assassins creed iii\assassin's creed 3\ac3sp.exe FirewallRules: [{1BC3D509-CC2B-4F4B-81A2-954A8683C251}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Crysis 2 Game of the Year\bin32\Crysis2Launcher.exe FirewallRules: [{42CF83F4-DC92-492D-AC32-B75A9FE9718A}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Crysis 2 Game of the Year\bin32\Crysis2Launcher.exe FirewallRules: [TCP Query User{1ADA9435-FEFC-4A55-B78D-DF5AF1DC987E}D:\program files (x86)\steam\steamapps\common\crysis 2 game of the year\bin32\crysis2.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\crysis 2 game of the year\bin32\crysis2.exe FirewallRules: [UDP Query User{425C287F-4381-4013-A797-4E7DAC3D7F22}D:\program files (x86)\steam\steamapps\common\crysis 2 game of the year\bin32\crysis2.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\crysis 2 game of the year\bin32\crysis2.exe FirewallRules: [{544F5FB3-628E-4D76-8CC7-8699D6C53BE7}] => (Allow) D:\Program Files (x86)\GSC World Publishing\S.T.A.L.K.E.R. - Zew Prypeci\bin\xrEngine.exe FirewallRules: [{6B4A2AF1-3B7A-4ADB-8871-3376BE3D1C9F}] => (Allow) D:\Program Files (x86)\GSC World Publishing\S.T.A.L.K.E.R. - Zew Prypeci\bin\xrEngine.exe FirewallRules: [{C9A847B9-BE5C-4EF4-BBB0-64D830B82CD2}] => (Allow) D:\Program Files (x86)\GSC World Publishing\S.T.A.L.K.E.R. - Zew Prypeci\bin\dedicated\xrEngine.exe FirewallRules: [{994F5041-F2CB-4797-8A06-AD9EE4565DAF}] => (Allow) D:\Program Files (x86)\GSC World Publishing\S.T.A.L.K.E.R. - Zew Prypeci\bin\dedicated\xrEngine.exe FirewallRules: [TCP Query User{A133FBB3-2412-46FC-8B74-5EF81FED873C}C:\users\tomek\appdata\local\id software\quakelive\quakelive.exe] => (Allow) C:\users\tomek\appdata\local\id software\quakelive\quakelive.exe FirewallRules: [UDP Query User{4FB0C627-20C4-4F4E-A8A3-A4FEBABAE10D}C:\users\tomek\appdata\local\id software\quakelive\quakelive.exe] => (Allow) C:\users\tomek\appdata\local\id software\quakelive\quakelive.exe FirewallRules: [{1480B8D9-BD38-47BE-A3AF-E10A277A4D72}] => (Block) C:\users\tomek\appdata\local\id software\quakelive\quakelive.exe FirewallRules: [{37BE0884-7B07-4CBE-9ADD-DAC04B0DD90F}] => (Block) C:\users\tomek\appdata\local\id software\quakelive\quakelive.exe FirewallRules: [TCP Query User{2B9F9321-6BE4-4687-8325-033C768BD222}D:\program files (x86)\r.g. mechanics\dishonored - game of the year edition\binaries\win32\dishonored.exe] => (Allow) D:\program files (x86)\r.g. mechanics\dishonored - game of the year edition\binaries\win32\dishonored.exe FirewallRules: [UDP Query User{C59B5E65-A6AB-4C9A-8A42-B704DAE72D1D}D:\program files (x86)\r.g. mechanics\dishonored - game of the year edition\binaries\win32\dishonored.exe] => (Allow) D:\program files (x86)\r.g. mechanics\dishonored - game of the year edition\binaries\win32\dishonored.exe FirewallRules: [{DB49B400-60C5-4615-841B-1E715876E826}] => (Block) D:\program files (x86)\r.g. mechanics\dishonored - game of the year edition\binaries\win32\dishonored.exe FirewallRules: [{849F1741-6901-4649-BBBD-EFBFD2CE7CDF}] => (Block) D:\program files (x86)\r.g. mechanics\dishonored - game of the year edition\binaries\win32\dishonored.exe FirewallRules: [{C4B82DE8-5FB7-4760-A0D4-FDE18CA41A7F}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Red Orchestra 2\Binaries\Win32\ROGame.exe FirewallRules: [{37D5872F-0BBB-49AB-B685-DA4AA313288B}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Red Orchestra 2\Binaries\Win32\ROGame.exe FirewallRules: [{2B525387-8C11-46DA-8435-D8BCB75EC297}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{4C992759-8621-457C-B324-A3606C9DBDED}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Portal 2\portal2.exe FirewallRules: [{045199B1-F9C4-4432-BBFE-64500642AECF}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Fallout New Vegas enplczru\FalloutNVLauncher.exe FirewallRules: [{42C6A5B9-5AE6-4B85-8810-D0837B9B1BD2}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Fallout New Vegas enplczru\FalloutNVLauncher.exe FirewallRules: [TCP Query User{3A5B38DA-953A-48E2-A7A0-5AB9AEC6C881}D:\program files (x86)\steam\steamapps\downloading\730\csgo.exe] => (Allow) D:\program files (x86)\steam\steamapps\downloading\730\csgo.exe FirewallRules: [UDP Query User{5893021A-D08C-4643-9F33-18CA4021D7D8}D:\program files (x86)\steam\steamapps\downloading\730\csgo.exe] => (Allow) D:\program files (x86)\steam\steamapps\downloading\730\csgo.exe FirewallRules: [{BBDD165E-A502-4BBE-BA09-50B96D7F88D7}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{01FE9D74-BE8D-407F-B7BA-D38A4F1A63DE}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{5A9300C7-F3BD-4C81-BCF5-768967C3B878}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{3B748CEF-E4F3-4EA2-B0FB-DDAF58D7B7B7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{CEB71CF0-8CF2-49C9-85A0-6843CB0DC976}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{72FC8E3C-0DFB-46CE-9B31-5187C2BD69EE}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [TCP Query User{86BBC556-7A7A-4F9B-B88B-B9D0E0BCC95F}D:\program files (x86)\wolfenstein - enemy territory\et.exe] => (Allow) D:\program files (x86)\wolfenstein - enemy territory\et.exe FirewallRules: [UDP Query User{9805BE4B-6CDF-4511-8361-EF4BF57D89CC}D:\program files (x86)\wolfenstein - enemy territory\et.exe] => (Allow) D:\program files (x86)\wolfenstein - enemy territory\et.exe FirewallRules: [{764DFF72-63F8-4F6D-8FD2-3FDBBAFEA47C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (08/15/2015 06:33:04 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/15/2015 06:31:16 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x80070005. Error: (08/15/2015 06:12:33 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 Error: (08/15/2015 05:12:33 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 Error: (08/15/2015 04:12:33 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 Error: (08/15/2015 03:12:33 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 Error: (08/15/2015 02:12:33 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 Error: (08/15/2015 01:12:33 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 Error: (08/15/2015 12:12:33 PM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 Error: (08/15/2015 11:29:15 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Wystąpił błąd harmonogramu aktywacji licencji (sppuinotify.dll), kod błędu: 0x80070005 System errors: ============= Error: (08/15/2015 06:31:15 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: UsbCharger Error: (08/15/2015 06:31:11 PM) (Source: atikmdag) (EventID: 10261) (User: ) Description: Display is not active Error: (08/15/2015 06:31:11 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (08/15/2015 06:30:34 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa MBAMScheduler niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (08/15/2015 06:30:34 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa MBAMService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (08/15/2015 06:30:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Ochrona oprogramowania niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/15/2015 06:30:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/15/2015 06:30:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/15/2015 06:30:32 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) Dynamic Application Loader Host Interface Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (08/15/2015 06:30:32 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) Rapid Storage Technology niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Microsoft Office: ========================= CodeIntegrity: =================================== Date: 2015-08-13 15:42:05.033 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-08-13 15:42:05.013 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-08-13 15:42:05.003 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-08-13 15:42:04.983 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-02-01 09:52:44.550 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-02-01 09:45:12.814 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-01-31 12:36:40.187 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-01-31 12:07:57.949 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-01-31 12:02:00.638 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-01-31 11:18:22.668 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-4330 CPU @ 3.50GHz Percentage of memory in use: 48% Total physical RAM: 8070.8 MB Available physical RAM: 4167.13 MB Total Virtual: 16139.8 MB Available Virtual: 13019.96 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:59.4 GB) (Free:8.57 GB) NTFS Drive d: (Nowy) (Fixed) (Total:931.51 GB) (Free:657.05 GB) NTFS Drive j: (KS) (Removable) (Total:3.74 GB) (Free:3.73 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 59.6 GB) (Disk ID: C4DAED63) Partition: GPT. ======================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: C4DAED56) Partition: GPT. ======================================================== Disk: 6 (Size: 3.7 GB) (Disk ID: 00000000) Partition: GPT. ==================== End of log ============================