Additional scan result of Farbar Recovery Scan Tool (x64) Version:13-08-2015 Ran by Witold (2015-08-21 13:56:40) Running from C:\Users\Witold\Desktop\cleanery\FRST Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-4263293795-372819126-2868305949-500 - Administrator - Disabled) Gość (S-1-5-21-4263293795-372819126-2868305949-501 - Limited - Enabled) IME_ADMIN (S-1-5-21-4263293795-372819126-2868305949-1010 - Limited - Enabled) IME_USER (S-1-5-21-4263293795-372819126-2868305949-1009 - Limited - Enabled) Witold (S-1-5-21-4263293795-372819126-2868305949-1001 - Administrator - Enabled) => C:\Users\Witold ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) «Project CARS 1.0.1.3 (HKLM-x32\...\«Project CARS_is1) (Version: 1.0.1.3 - Slightly Mad Studios Ltd.) «Witcher 3 - Wild Hunt» 1.0.2.0 (HKLM-x32\...\{BF679CAD-FE6D-4CBE-9E99-D7193809207A}_is1) (Version: 1.0.2.0 - CD Project RED) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) ABBYY FineReader 12 Professional (HKLM-x32\...\{F12000FE-0001-0000-0000-074957833700}) (Version: 12.1.531 - ABBYY Production LLC) Adobe Reader XI (11.0.12) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) Age of Wonders III (HKLM-x32\...\QWdlb2ZXb25kZXJzSUlJ_is1) (Version: 1 - ) Aktualizacje NVIDIA 2.5.12.11 (Version: 2.5.12.11 - NVIDIA Corporation) Hidden AMD Catalyst Install Manager (HKLM\...\{66AD7978-00EE-AE61-889B-CC68818C0135}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AOMEI Partition Assistant Home Edition 5.1.2 (HKLM-x32\...\{02F850ED-FD0E-4ED1-BE0B-54981f5BD3D4}_is1) (Version: - Aomei Technology Co., Ltd.) Army Men RTS (HKLM-x32\...\Army Men RTS) (Version: - ) ASUS Xonar DX Audio (HKLM-x32\...\{71B53BA8-4BE3-49AF-BC3E-07F392008788}) (Version: - ASUSTeK Computer Inc.) Auslogics Disk Defrag Touch (HKLM-x32\...\{B259CF8C-5028-4F71-95E0-30E1E4F56606}_is1) (Version: 1.1.0.0 - Auslogics Software Pty Ltd) Batman Arkham Knight (HKLM-x32\...\Batman Arkham Knight_is1) (Version: v1.2 - Warner Bros. Interactive Entertainment) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.6.2 - EA Digital Illusions CE AB) BitComet 1.37 64-bit (HKLM-x32\...\BitComet_x64) (Version: 1.37 - CometNetwork) CCleaner (HKLM\...\CCleaner) (Version: 5.05 - Piriform) ChomikBox (HKLM-x32\...\{C7B52FAF-58D8-438C-B810-F78C3C927504}) (Version: 2.0.8.0 - Chomikuj.pl) Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft) Combined Community Codec Pack 2014-04-20 (HKLM-x32\...\Combined Community Codec Pack_is1) (Version: 2014.04.20.0 - CCCP Project) Command and Conquer - Generals (HKLM-x32\...\Command and Conquer - Generals_R.G. Mechanics_is1) (Version: - R.G. Mechanics, Panky) Command and Conquer 4 - Tiberian Twilight (HKLM-x32\...\Command and Conquer 4 - Tiberian Twilight_is1) (Version: - ) CrystalDiskInfo 5.6.2 Shizuku Edition (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 5.6.2 - Crystal Dew World) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) Dying Light Ultimate Edition version 1.2.0 (HKLM-x32\...\Dying Light Ultimate Edition_is1) (Version: 1.2.0 - GMT-MAX.ORG) EasyBCD 2.2 (HKLM-x32\...\EasyBCD) (Version: 2.2 - NeoSmart Technologies) EDU CD. Vademecum języka angielskiego (HKLM-x32\...\EDU CD. Vademecum języka angielskiego_is1) (Version: - EDU CD) Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.96 - Etron Technology) Etron USB3.0 Host Controller (x32 Version: 0.96 - Etron Technology) Hidden Far Cry 4 (HKLM-x32\...\Far Cry 4_is1) (Version: 1.0 - Релиз от R.G. Steamgames) GG (HKU\S-1-5-21-4263293795-372819126-2868305949-1001\...\GG) (Version: 12 - GG Network S.A.) GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ATTENTION GRID Autosport (HKLM-x32\...\R1JJREF1dG9zcG9ydA==_is1) (Version: 1 - ) HWiNFO64 Version 4.40 (HKLM\...\HWiNFO64_is1) (Version: 4.40 - Martin Malík - REALiX) IVONA 2 (HKLM-x32\...\IVONA 2) (Version: 1.6.63 - IVONA Software Sp. z o.o.) IVONA ControlCenter (HKLM-x32\...\IVONA ControlCenter) (Version: 1.1.10 - IVONA Software Sp. z o.o.) IVONA MiniReader (HKLM-x32\...\IVONA MiniReader) (Version: - IVONA Software Sp. z o.o.) IVONA Reader (HKLM-x32\...\IVONA Reader) (Version: - IVONA Software Sp. z o.o.) Lenovo Smart Assistant 1.03 (HKLM-x32\...\VibeRomFlash) (Version: 1.03.0.0 - Lenovo) Malwarebytes Anti-Malware wersja 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Middle-earth Shadow of Mordor (HKLM-x32\...\Middle-earth Shadow of Mordor_is1) (Version: 1.0 - Релиз от R.G. Steamgames) Mobile Partner (HKLM-x32\...\Mobile Partner) (Version: 23.012.05.00.1185 - Huawei Technologies Co.,Ltd) Mortal Kombat X (HKLM-x32\...\Mortal Kombat X_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91) MSI Afterburner 3.0.1 (HKLM-x32\...\Afterburner) (Version: 3.0.1 - MSI Co., LTD) MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 3.0.0.12 - MSI) Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.69 - ) NVIDIA GeForce Experience 2.5.12.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.12.11 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 355.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 355.60 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA Sterownik graficzny 355.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 355.60 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA Wirtualny dźwięk Miracast 355.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 355.60 - NVIDIA Corporation) Odkurzacz (HKLM-x32\...\Odkurzacz 13.5_is1) (Version: 13.5.4.1971 - FranmoSoftware - Maciej Opaliński) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenOffice 4.1.1 (HKLM-x32\...\{B5373BA3-BAD7-4EAC-A9D2-B66B41B82C57}) (Version: 4.11.9775 - Apache Software Foundation) Panel sterowania NVIDIA 355.60 (Version: 355.60 - NVIDIA Corporation) Hidden Plustek OpticSlim 2600 (HKLM-x32\...\{C0EEB671-169B-4423-971D-B2D710FE9132}) (Version: 5.1.0 - ) Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.13 - Qualcomm Atheros Communications Inc.) RIDE (HKLM-x32\...\RIDE_R.G. Mechanics_is1) (Version: - R.G. Mechanics, ProZorg_tm) RivaTuner Statistics Server 6.1.2 (HKLM-x32\...\RTSS) (Version: 6.1.2 - Unwinder) Ryse Son of Rome (HKLM-x32\...\Ryse Son of Rome_is1) (Version: - ) Saints Row Gat out of Hell (HKLM-x32\...\U2FpbnRzUm93R2F0b3V0b2ZIZWxs_is1) (Version: 1 - ) SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.12.11 - NVIDIA Corporation) Hidden Sniper Ghost Warrior 2 (HKLM-x32\...\Sniper Ghost Warrior 2_is1) (Version: - ) Sp5 (x32 Version: 5.1.4324.0 - Microsoft) Hidden Sp5Intl (x32 Version: 5.1.4324.0 - Microsoft) Hidden Sp5TTInt (x32 Version: 5.1.4324.0 - Microsoft) Hidden SpCommon (x32 Version: 5.1.4324.0 - Microsoft) Hidden SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spirit of Speed Demo (HKLM-x32\...\Spirit of Speed Demo) (Version: - ) SpPhones (x32 Version: 6.0.3122.0 - Microsoft) Hidden Strategic War in Europe (HKLM-x32\...\Strategic War in Europe_is1) (Version: - ) The Incredible Adventures of Van Helsing III, âĺđńč˙ 1.0.0.0 (HKLM-x32\...\The Incredible Adventures of Van Helsing III_is1) (Version: 1.0.0.0 - RePack by SEYTER) Warzone 2100-3.1.2 (HKLM-x32\...\Warzone 2100-3.1.2) (Version: 3.1.2 - Warzone 2100 Project) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) WinRAR 5.21 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) Wolfenstein The Old Blood (HKLM-x32\...\Wolfenstein The Old Blood_is1) (Version: - ) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-4263293795-372819126-2868305949-1001_Classes\CLSID\{44996865-E670-9DC1-3743-37B4D650EA9E}\InprocServer32 -> C:\WINDOWS\system32\ole32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-4263293795-372819126-2868305949-1001_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Witold\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll (GG Network S.A.) ==================== Restore Points ========================= 05-08-2015 20:07:51 Removed Java 8 Update 51 07-08-2015 18:15:05 Zainstalowany program DirectX 14-08-2015 18:11:40 Windows Update 15-08-2015 09:17:11 Instalator modułów systemu Windows 21-08-2015 08:25:05 Zainstalowany program DirectX ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2015-05-25 11:17 - 00000855 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {43A225AF-321F-449F-B5FC-DDC653C7F9FF} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser Task: {5950FAC7-90C7-4962-9D56-DC61DFF4B1BB} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-08-14] (Microsoft Corporation) Task: {97F8959B-7E12-4917-86DB-1071CD0DC9F5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {B50033B8-D5BC-4DD9-8876-B0A7F61080F5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-04-23] (Piriform Ltd) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Loaded Modules (Whitelisted) ============== 2015-06-09 18:28 - 2015-08-07 06:34 - 00116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-04-10 07:58 - 2013-04-10 07:58 - 00351824 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2015-08-19 16:25 - 2015-08-19 16:25 - 00379904 _____ () C:\Program Files\igfx32\igfx32.exe 2015-08-21 13:41 - 2015-08-21 13:41 - 00227328 _____ () C:\Program Files (x86)\03000200-1440157265-0500-0006-000700080009\jnsvD5A0.tmp 2015-08-21 13:41 - 2015-08-21 13:41 - 00137728 _____ () C:\Program Files (x86)\03000200-1440157265-0500-0006-000700080009\hnskECF3.tmp 2015-08-21 13:01 - 2015-08-21 13:01 - 00246784 _____ () C:\Program Files (x86)\03000200-1440157265-0500-0006-000700080009\knstAB3E.tmpfs 2014-07-14 23:00 - 2014-07-14 23:00 - 00200704 ____N () C:\Windows\SysWOW64\HsMgr.exe 2014-07-14 23:00 - 2014-07-14 23:00 - 00282112 ____N () C:\Windows\System\HsMgr64.exe 2014-07-15 14:52 - 2013-03-25 17:06 - 00210944 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\DocuAction.exe 2015-02-13 12:51 - 2015-02-13 12:51 - 18570328 _____ () C:\Users\Witold\Desktop\cleanery\RogueKillerX64.exe 2015-08-15 15:27 - 2015-07-24 06:22 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2014-12-28 19:19 - 2012-06-06 10:56 - 00143360 ____N () C:\Program Files\ASUS Xonar DX Audio\Customapp\VmixP8.dll 2014-07-15 14:52 - 2013-03-25 17:05 - 00027136 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\AmCommonLib.dll 2014-07-15 14:52 - 2013-02-06 02:57 - 00098304 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\DocuRes.dll 2014-07-15 14:52 - 2008-06-25 14:03 - 00045056 _____ () C:\Program Files (x86)\Common Files\iMpacct\EdgeFillRsc.dll 2014-07-15 14:52 - 2006-05-15 15:24 - 00122938 _____ () C:\Program Files (x86)\Common Files\iMpacct\CommonFunc.dll 2014-07-15 14:52 - 2013-05-03 17:38 - 00269824 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\Scan.dll 2014-07-15 14:52 - 2013-05-03 16:27 - 00163840 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\ScanRes.dll 2014-07-15 14:52 - 2013-04-25 09:31 - 00151552 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\ScanProcess.dll 2014-07-15 14:52 - 2009-06-25 10:00 - 00897024 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\EncryptPdf.dll 2014-07-15 14:52 - 2013-04-25 09:31 - 00058368 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\PlkMsg.dll 2014-07-15 14:52 - 2013-03-08 21:19 - 00069632 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\PlkMsgRes.dll 2014-07-15 14:52 - 2013-03-25 17:06 - 00038912 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\Copy.DLL 2014-07-15 14:52 - 2010-06-07 15:06 - 00045056 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\CopyRes.dll 2014-07-15 14:52 - 2005-09-21 14:36 - 00061440 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\PrnDriver.dll 2014-07-15 14:52 - 2013-03-25 17:05 - 00075264 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\OCR.DLL 2014-07-15 14:52 - 2012-11-13 05:51 - 00049152 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\OcrRes.dll 2014-07-15 14:52 - 2013-03-25 17:06 - 00060416 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\eMail.DLL 2014-07-15 14:52 - 2013-03-25 17:05 - 00087040 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\FormatManager.dll 2014-07-15 14:52 - 2013-02-06 02:57 - 00061440 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\FormatManagerRes.dll 2014-07-15 14:52 - 2010-06-07 15:06 - 00049152 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\EmailRes.dll 2014-07-15 14:52 - 2013-03-25 17:06 - 00104448 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\Custom.DLL 2014-07-15 14:52 - 2012-11-13 05:51 - 00049152 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\CustomRes.dll 2014-07-15 14:52 - 2013-03-25 17:05 - 00098304 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\PDF.DLL 2014-07-15 14:52 - 2012-11-13 05:51 - 00049152 _____ () C:\Program Files (x86)\Plustek\Plustek OpticSlim 2600\FilingRes.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-4263293795-372819126-2868305949-1001\...\mailgrupowy.pl -> hxxps://mailgrupowy.pl ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-4263293795-372819126-2868305949-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Witold\Pictures\7d70ac39b0dcd690ccef_1920x1080_cropromiar-niestandardowy.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run32: => "Adobe ARM" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [TCP Query User{3F69B97E-F55C-43F9-AA48-0A4E20201840}C:\program files\bitcomet\bitcomet.exe] => (Allow) C:\program files\bitcomet\bitcomet.exe FirewallRules: [UDP Query User{1E131355-C81A-476A-9C45-08DFF7712D4A}C:\program files\bitcomet\bitcomet.exe] => (Allow) C:\program files\bitcomet\bitcomet.exe FirewallRules: [TCP Query User{B4E2BB91-9DDD-488B-A05C-75288AC84B1D}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [UDP Query User{8C76F14C-33B0-4376-836A-D708D0A93BD7}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe FirewallRules: [TCP Query User{49AF7034-1484-40DF-8AC8-B8017C801835}F:\program files.1\ride\ridex64.exe] => (Block) F:\program files.1\ride\ridex64.exe FirewallRules: [UDP Query User{B5F4BF35-F352-4BE4-B913-48E1C21FAAB9}F:\program files.1\ride\ridex64.exe] => (Block) F:\program files.1\ride\ridex64.exe FirewallRules: [{268DDC40-AB6B-4775-B55F-0416B5E474F4}] => (Block) F:\Program Files.1\RIDE\Ride.exe FirewallRules: [{DEE86E92-DD00-44EB-9980-FAACBE17BC68}] => (Block) F:\Program Files.1\RIDE\RideX64.exe FirewallRules: [{FFAC05F8-E553-4FB4-A087-DE55FFD7A873}] => (Block) D:\Program Games\R.G. Catalyst\Witcher 3 - Wild Hunt\bin\x64\witcher3.exe FirewallRules: [{F63D385A-AB71-4685-982B-DB7ED8C68B1A}] => (Block) D:\Program Games\The Incredible Adventures of Van Helsing III\VanHelsing.exe FirewallRules: [{79751598-6013-47ED-B192-9904794A4354}] => (Block) D:\Program Games\The Incredible Adventures of Van Helsing III\VanHelsing_x64.exe FirewallRules: [{5FBB5E37-6DF3-4BCA-94E7-093475E8251A}] => (Block) D:\Program Games\The Incredible Adventures of Van Helsing III\VanHelsing_x86.exe FirewallRules: [{AE775649-9CD6-4B09-A6F9-4B9AA922F0BA}] => (Block) F:\Program Files.1\Sniper Ghost Warrior 2\Bin32\fxc.exe FirewallRules: [{468A0162-E542-4D60-9901-808EC6CA98F0}] => (Block) F:\Program Files.1\Sniper Ghost Warrior 2\Bin32\SniperGhostWarrior2.exe FirewallRules: [{4EC111E1-840C-4013-B4BB-47D6853D14B7}] => (Block) E:\ProgramGames\Age of Wonders III\AoW3.exe FirewallRules: [{7560AAED-8DE7-44F4-9F6C-26607B25CF3C}] => (Block) E:\ProgramGames\Age of Wonders III\AoW3_Debug.exe FirewallRules: [{92CD3E09-F4D1-4D09-8D9A-19DB5DC649E9}] => (Block) E:\ProgramGames\Age of Wonders III\AoW3_Editor.exe FirewallRules: [{72A4D8EB-DF1A-436A-8E07-AD9EEBB6C9D9}] => (Block) E:\ProgramGames\Age of Wonders III\AoW3Launcher.exe FirewallRules: [{6246C674-54B2-4F47-8E0F-8E3F9923EB5C}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{EF67654F-5A44-4F96-B03C-E501744EAFB2}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{589A7ECA-97B1-4086-B783-4C676CA58C76}] => (Block) D:\Program Games\R.G. Catalyst\Witcher 3 - Wild Hunt\bin\x64\witcher3.exe FirewallRules: [{BCF740BA-BF7C-46F2-A97B-A2BCC4CED5DF}] => (Block) F:\Program Files.1\Far Cry 4\bin\FarCry4.exe FirewallRules: [{5A0170F6-0356-453F-A937-23D63DC8578F}] => (Block) F:\Program Files.1\Far Cry 4\bin\IGE_WPF64.exe FirewallRules: [{45CDC6A5-CD95-4797-94D6-786F8FBD1C94}] => (Block) D:\Program Games\R.G. Catalyst\Project CARS\pCARS.exe FirewallRules: [{8C2721A1-4C4D-4D83-A9A9-11B4A097904F}] => (Block) D:\Program Games\R.G. Catalyst\Project CARS\pCARS64.exe FirewallRules: [{74E13DD1-663E-4D62-A4BB-7FA95B0A627D}] => (Block) D:\Program Games\GRID Autosport\GRIDAutosport.exe FirewallRules: [{652F6EF9-C5BD-4AE6-AC3B-DE95C85B97DA}] => (Block) D:\Program Games\GRID Autosport\GRIDAutosport_avx.exe FirewallRules: [{586976D4-37F0-4ED3-89DA-E0D889C25FB9}] => (Block) D:\Program Games\GRID Autosport\unins000.exe FirewallRules: [{D611EBD2-213C-4189-B38D-BA77D6705962}] => (Block) E:\ProgramGames\Dying Light Ultimate Edition\DyingLightGame.exe FirewallRules: [{4C457D84-90B3-463F-9B1A-B4B6555D2A1D}] => (Block) D:\Program Games\Wolfenstein The Old Blood\WolfOldBlood_x64.exe FirewallRules: [{7D184FB3-4222-406F-8F3E-CAFE3D321C36}] => (Block) F:\Program Files.1\Mortal Kombat Complete Edition\MKKE.exe FirewallRules: [{E5C9DB66-2292-4257-AB6C-BD2593BF6EF4}] => (Block) G:\Program Games\Mortal Kombat X\Binaries\Retail\MK10.exe FirewallRules: [{C66DC955-2A46-4653-9772-58E6895FAD4F}] => (Block) G:\Program Games\Mortal Kombat X\Binaries\Retail\MKXBootStrap.exe FirewallRules: [{53E3B99F-2B80-44ED-9891-7BDB0D2C0807}] => (Block) G:\Program Games\Mortal Kombat X\Binaries\Retail\MKXLauncher.exe FirewallRules: [{AD20ABAD-925E-45BE-9468-B4AD87D792A4}] => (Block) G:\Program Games\Batman Arkham Knight\Binaries\Win64\BatmanAK.exe FirewallRules: [{997BABAE-DFF4-4B86-8020-2376A770FC3A}] => (Block) D:\Program Games\Ryse Son of Rome\Bin64\Ryse.exe FirewallRules: [{16084D0A-6D93-4ED7-A46D-39BA860BD7EA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{7B50C101-4542-4353-A0D2-845411263149}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{CC4629DB-121E-4CDD-BAA7-7D381AA5EBAB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{5C946F1B-9D7A-4FB2-91BC-EF9686423732}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{668D4973-2EB4-4BE0-96D5-7C776EB3E281}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{0BB382E9-46F5-4277-B97F-57F2B8BFFE9B}C:\program files (x86)\warzone 2100-3.1.2\warzone2100.exe] => (Allow) C:\program files (x86)\warzone 2100-3.1.2\warzone2100.exe FirewallRules: [UDP Query User{85C4D648-E502-4915-9249-21D5DEECB2F7}C:\program files (x86)\warzone 2100-3.1.2\warzone2100.exe] => (Allow) C:\program files (x86)\warzone 2100-3.1.2\warzone2100.exe FirewallRules: [TCP Query User{27274621-47CB-41F4-9272-E30BAFBD7E2A}C:\program files\3do\army men rts\amrts.exe] => (Allow) C:\program files\3do\army men rts\amrts.exe FirewallRules: [UDP Query User{6CD88086-7F4C-408F-89A4-589D34E61992}C:\program files\3do\army men rts\amrts.exe] => (Allow) C:\program files\3do\army men rts\amrts.exe FirewallRules: [{6A39B676-AB3E-4C35-AB2B-8341163335D7}] => (Block) D:\Program Games\bfh.exe FirewallRules: [{6AA44B92-79ED-4C20-B8C8-EB38EA7C310F}] => (Block) D:\Program Games\BFHWebHelper.exe FirewallRules: [{76D3932B-ACE1-4916-BE6F-670A6C86C7A5}] => (Block) D:\Program Games\pbsvc.exe FirewallRules: [{1714436C-AF14-4CD1-92A8-EA1DBBE8D4BC}] => (Allow) C:\ProgramData\CismaUva\yvegaufu.exe FirewallRules: [{115F4914-ADA0-4E0D-9004-928EAD39F686}] => (Allow) C:\ProgramData\CismaUva\yvegaufu.exe FirewallRules: [{6D6B4355-D971-4D09-94A4-D6B5DF6741BD}] => (Allow) C:\ProgramData\CismaUva\yvegaufu.exe FirewallRules: [{BB233C06-336B-4B62-8A0A-44262ECB017E}] => (Allow) C:\ProgramData\CismaUva\yvegaufu.exe ==================== Faulty Device Manager Devices ============= Name: Standardowa klawiatura PS/2 Description: Standardowa klawiatura PS/2 Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318} Manufacturer: (Klawiatury standardowe) Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Mysz Microsoft PS/2 Description: Mysz Microsoft PS/2 Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (08/21/2015 01:51:09 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: Explorer.EXE, wersja: 6.3.9600.17667, sygnatura czasowa: 0x54c6f7c2 Nazwa modułu powodującego błąd: ggdrive-menu.dll_unloaded, wersja: 11.0.0.12, sygnatura czasowa: 0x507944cb Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000000000001c00 Identyfikator procesu powodującego błąd: 0x80c Godzina uruchomienia aplikacji powodującej błąd: 0xExplorer.EXE0 Ścieżka aplikacji powodującej błąd: Explorer.EXE1 Ścieżka modułu powodującego błąd: Explorer.EXE2 Identyfikator raportu: Explorer.EXE3 Pełna nazwa pakietu powodującego błąd: Explorer.EXE4 Identyfikator aplikacji względem pakietu powodującego błąd: Explorer.EXE5 Error: (08/21/2015 01:46:07 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail (3988) WindowsMail0: Tworzenie kopii zapasowej zostało zatrzymane, ponieważ zostało przerwane przez klienta lub nie można nawiązać połączenia z klientem. Error: (08/21/2015 01:11:11 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: swie.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x54008a93 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.3.9600.17936, sygnatura czasowa: 0x55a68dd1 Kod wyjątku: 0xc0000374 Przesunięcie błędu: 0x000e5904 Identyfikator procesu powodującego błąd: 0x1020 Godzina uruchomienia aplikacji powodującej błąd: 0xswie.exe0 Ścieżka aplikacji powodującej błąd: swie.exe1 Ścieżka modułu powodującego błąd: swie.exe2 Identyfikator raportu: swie.exe3 Pełna nazwa pakietu powodującego błąd: swie.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: swie.exe5 Error: (08/21/2015 09:03:01 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: bfh.exe, wersja: 1.1.0.5, sygnatura czasowa: 0x55a70766 Nazwa modułu powodującego błąd: RTSSHooks64.dll, wersja: 0.0.0.0, sygnatura czasowa: 0x53903b4d Kod wyjątku: 0xc0000094 Przesunięcie błędu: 0x0000000000012b6e Identyfikator procesu powodującego błąd: 0x15c0 Godzina uruchomienia aplikacji powodującej błąd: 0xbfh.exe0 Ścieżka aplikacji powodującej błąd: bfh.exe1 Ścieżka modułu powodującego błąd: bfh.exe2 Identyfikator raportu: bfh.exe3 Pełna nazwa pakietu powodującego błąd: bfh.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: bfh.exe5 Error: (08/21/2015 08:26:28 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: touchup.exe, wersja: 3.7.0.8, sygnatura czasowa: 0x546d980e Nazwa modułu powodującego błąd: msvcrt.dll, wersja: 7.0.9600.17415, sygnatura czasowa: 0x54504b2e Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0002440b Identyfikator procesu powodującego błąd: 0x15ac Godzina uruchomienia aplikacji powodującej błąd: 0xtouchup.exe0 Ścieżka aplikacji powodującej błąd: touchup.exe1 Ścieżka modułu powodującego błąd: touchup.exe2 Identyfikator raportu: touchup.exe3 Pełna nazwa pakietu powodującego błąd: touchup.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: touchup.exe5 Error: (08/21/2015 08:26:26 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: touchup.exe, wersja: 3.7.0.8, sygnatura czasowa: 0x546d980e Nazwa modułu powodującego błąd: Wpc.dll_unloaded, wersja: 6.3.9600.17415, sygnatura czasowa: 0x54503e7c Kod wyjątku: 0xc00001a5 Przesunięcie błędu: 0x000775a0 Identyfikator procesu powodującego błąd: 0x15ac Godzina uruchomienia aplikacji powodującej błąd: 0xtouchup.exe0 Ścieżka aplikacji powodującej błąd: touchup.exe1 Ścieżka modułu powodującego błąd: touchup.exe2 Identyfikator raportu: touchup.exe3 Pełna nazwa pakietu powodującego błąd: touchup.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: touchup.exe5 Error: (08/21/2015 08:25:16 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddLegacyDriverFiles: Unable to back up image of binary Protokół LLDP (Link-Layer Discovery Protocol) firmy Microsoft. System Error: Odmowa dostępu. . Error: (08/20/2015 09:24:42 PM) (Source: RasClient) (EventID: 20227) (User: ) Description: CoId={8FAE2B89-15AF-4C04-A485-3B20192EA564}: The user Witek\Witold dialed a connection named Orange.pl which has failed. The error code returned on failure is 797. Error: (08/20/2015 07:20:51 PM) (Source: Windows Search Service) (EventID: 7010) (User: ) Description: Nie można zainicjować indeksu. Szczegóły: Nie można odnaleźć określonego obiektu. Określ nazwę istniejącego obiektu. (HRESULT : 0x80040d06) (0x80040d06) Error: (08/20/2015 07:20:51 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: Nie można zainicjować aplikacji. Kontekst: aplikacja Windows Szczegóły: Nie można odnaleźć określonego obiektu. Określ nazwę istniejącego obiektu. (HRESULT : 0x80040d06) (0x80040d06) System errors: ============= Error: (08/21/2015 01:50:50 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Hothatlab niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/21/2015 01:45:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Kerning Down z powodu następującego błędu: %%2 Error: (08/21/2015 01:45:35 PM) (Source: NETLOGON) (EventID: 3095) (User: ) Description: Ten komputer jest skonfigurowany jako członek grupy roboczej, a nie domeny. W tej konfiguracji usługa Netlogon nie musi być uruchamiana. Error: (08/21/2015 01:44:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Windows Search z powodu następującego błędu: %%3 Error: (08/21/2015 01:44:36 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player zależy od usługi Windows Search, której nie można uruchomić z powodu następującego błędu: %%3 Error: (08/21/2015 01:44:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Windows Search z powodu następującego błędu: %%3 Error: (08/21/2015 01:44:21 PM) (Source: DCOM) (EventID: 10010) (User: Witek) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (08/21/2015 01:44:20 PM) (Source: DCOM) (EventID: 10010) (User: Witek) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (08/21/2015 01:44:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa IHProtect Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (08/21/2015 01:44:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Connectivity Port niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Microsoft Office: ========================= Error: (08/21/2015 01:51:09 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Explorer.EXE6.3.9600.1766754c6f7c2ggdrive-menu.dll_unloaded11.0.0.12507944cbc00000050000000000001c0080c01d0dc06e78596e2C:\WINDOWS\Explorer.EXEggdrive-menu.dlle95c701e-47fa-11e5-bfa0-002522ff4c01 Error: (08/21/2015 01:46:07 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail3988WindowsMail0: Error: (08/21/2015 01:11:11 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: swie.exe0.0.0.054008a93ntdll.dll6.3.9600.1793655a68dd1c0000374000e5904102001d0dc020c0169deD:\Program Games\Strategic War in Europe\swie.exeC:\WINDOWS\SYSTEM32\ntdll.dll541981ae-47f5-11e5-bf9e-0a775812c0ee Error: (08/21/2015 09:03:01 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: bfh.exe1.1.0.555a70766RTSSHooks64.dll0.0.0.053903b4dc00000940000000000012b6e15c001d0dbde302aac7fD:\Program Games\bfh.exeC:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dlla90e1dff-47d2-11e5-bf9e-0a775812c0ee Error: (08/21/2015 08:26:28 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: touchup.exe3.7.0.8546d980emsvcrt.dll7.0.9600.1741554504b2ec00000050002440b15ac01d0dbda1da9c35eD:\Program Games\__Installer\touchup.exeC:\WINDOWS\SYSTEM32\msvcrt.dll8d966c76-47cd-11e5-bf9e-0a775812c0ee Error: (08/21/2015 08:26:26 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: touchup.exe3.7.0.8546d980eWpc.dll_unloaded6.3.9600.1741554503e7cc00001a5000775a015ac01d0dbda1da9c35eD:\Program Games\__Installer\touchup.exeWpc.dll8c3860f7-47cd-11e5-bf9e-0a775812c0ee Error: (08/21/2015 08:25:16 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary Protokół LLDP (Link-Layer Discovery Protocol) firmy Microsoft. System Error: Odmowa dostępu. Error: (08/20/2015 09:24:42 PM) (Source: RasClient) (EventID: 20227) (User: ) Description: {8FAE2B89-15AF-4C04-A485-3B20192EA564}Witek\WitoldOrange.pl797 Error: (08/20/2015 07:20:51 PM) (Source: Windows Search Service) (EventID: 7010) (User: ) Description: Szczegóły: Nie można odnaleźć określonego obiektu. Określ nazwę istniejącego obiektu. (HRESULT : 0x80040d06) (0x80040d06) Error: (08/20/2015 07:20:51 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: Kontekst: aplikacja Windows Szczegóły: Nie można odnaleźć określonego obiektu. Określ nazwę istniejącego obiektu. (HRESULT : 0x80040d06) (0x80040d06) CodeIntegrity: =================================== Date: 2015-08-21 13:43:56.002 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-21 13:43:55.852 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-21 13:43:55.700 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-21 13:43:55.548 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-21 13:43:55.294 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-21 13:43:14.118 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-21 13:43:13.962 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-21 13:43:13.796 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-21 13:43:13.642 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-21 13:43:13.492 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: AMD FX(tm)-8350 Eight-Core Processor Percentage of memory in use: 7% Total physical RAM: 32747.62 MB Available physical RAM: 30298.27 MB Total Virtual: 37611.62 MB Available Virtual: 35696.59 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:491.33 GB) (Free:399.73 GB) NTFS ==>[drive with boot components (obtained from BCD)] Drive d: (Nowy) (Fixed) (Total:488.28 GB) (Free:171.34 GB) NTFS Drive e: () (Fixed) (Total:111.79 GB) (Free:17.76 GB) NTFS Drive f: (Nowy) (Fixed) (Total:443.23 GB) (Free:89.59 GB) NTFS Drive g: (Nowy) (Fixed) (Total:440.18 GB) (Free:102.5 GB) NTFS ==================== MBR & Partition Table ================== ==================== End of log ============================