Additional scan result of Farbar Recovery Scan Tool (x64) Version:17-10-2015 Ran by z00269rd (2015-10-17 21:03:13) Running from C:\DYSK D\SZJ\Postępowanie w przypadku wykrycia naruszeń zasad Compliance - reguły prowadzenia procesu dyscyplinarnego Windows 7 Enterprise Service Pack 1 (X64) (2013-09-11 16:34:28) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2413137049-1474700650-2168879272-1001 - Limited - Enabled) Ffeqhpgt (S-1-5-21-2413137049-1474700650-2168879272-500 - Administrator - Enabled) Guest (S-1-5-21-2413137049-1474700650-2168879272-501 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Trend Micro OfficeScan Antivirus (Enabled - Up to date) {5D349EF8-873B-C657-917F-F1D93E101A7C} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Trend Micro OfficeScan Anti-spyware (Enabled - Up to date) {E6557F1C-A101-C9D9-ABCF-CAAB459750C1} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) 2007 Microsoft Office Suite Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden 64 Bit HP CIO Components Installer (Version: 15.2.1 - Hewlett-Packard) Hidden 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 13.0.0.83 - Adobe Systems Incorporated) Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.169 - Adobe Systems Incorporated) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated) Adobe Reader XI (11.0.13) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.13 - Adobe Systems Incorporated) Adobe Shockwave Player 12.2 (HKLM-x32\...\{E38C529D-DD73-4002-8489-E09CEBD9BF32}) (Version: 12.2.0.162 - Adobe Systems, Inc) Adobe SVG Viewer 3.0 (HKLM-x32\...\Adobe SVG Viewer) (Version: 3.0 - ) Apple Mobile Device Support (HKLM\...\{2F72F540-1F60-4266-9506-952B21D6640D}) (Version: 6.1.0.13 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.2.4255 - CDBurnerXP) Cisco Systems VPN Client 5.0.07.0440 (HKLM\...\{5FDC06BF-3D3D-4367-8FFB-4FAFCB61972D}) (Version: 5.0.7 - Cisco Systems, Inc.) Configuration Manager Client (x32 Version: 4.00.6487.2000 - Microsoft Corporation) Hidden DesignPro 5 (HKLM-x32\...\InstallShield_{DF57E946-4885-4EEA-A958-D5F82CB21B99}) (Version: 5.0.1056 - Avery Dennison) DesignPro 5 (x32 Version: 5.0.1056 - Avery Dennison) Hidden Digital Image Recovery 1.47 (HKLM-x32\...\Digital Image Recovery_is1) (Version: - Alexander Grau) doPDF 7.3 printer (HKLM\...\doPDF 7 printer_is1) (Version: - Softland) EMET 4.0 (HKLM-x32\...\{1F7019BB-1C9A-4E54-9B59-1744629E63B1}) (Version: 4.0 - Microsoft) Flash Player 19.0 (HKLM-x32\...\{6BA74DA8-18E7-4039-B7DF-2648D4E60DC4}) (Version: 19.0.0.185 - Adobe Inc.) Fujitsu Hotkey Utility (HKLM-x32\...\InstallShield_{BA0CC975-682B-4678-A35C-05E607F36387}) (Version: 3.60.1.0 - FUJITSU LIMITED) Fujitsu Hotkey Utility (x32 Version: 3.60.1.0 - FUJITSU LIMITED) Hidden Fujitsu System Extension Utility (HKLM-x32\...\InstallShield_{E8A5B78F-4456-4511-AB3D-E7BFFB974A7A}) (Version: - ) Fujitsu System Extension Utility (Version: 3.1.0.0 - FUJITSU LIMITED) Hidden Gadu-Gadu 7.7 (HKLM-x32\...\Gadu-Gadu) (Version: - ) Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden iTunes (HKLM\...\{427174C0-096E-40D9-9684-9C109BEE2CBF}) (Version: 11.0.5.5 - Apple Inc.) Java 8 Update 51 32-bit (HKLM-x32\...\{9F53B31B-C7E2-4B4E-83A5-69929E6DC92A}) (Version: 1.8.0.51 - Oracle Corporation) Java Runtime Environment International 7 Update 75 x86 (HKLM-x32\...\{E1B1F642-AC67-4615-B8DB-572F279D0958}) (Version: 1.7.0.75 - Oracle Corp.) Java Runtime Environment International 7 Update 79 x86 (HKLM-x32\...\{45F78AE1-FE91-4069-B6F3-3D79CD12A619}) (Version: 1.7.0.79 - Oracle Corp.) Juniper Installer Service (HKLM-x32\...\{0081D6E7-0CF1-4C19-ADBB-94EEC2476DCC}) (Version: 7.1.0.20169 - Juniper Networks) Juniper Networks Host Checker (HKU\S-1-5-21-1343024091-1935655697-839522115-42261\...\Neoteris_Host_Checker) (Version: 8.0.11.36363 - Juniper Networks) Juniper Networks Network Connect 7.1.9 (HKLM-x32\...\Juniper Network Connect 7.1.9) (Version: 7.1.9.20893 - Juniper Networks) Juniper Networks Network Connect 7.3.0 (HKLM-x32\...\Juniper Network Connect 7.3.0) (Version: 7.3.0.27317 - Juniper Networks) Juniper Networks Network Connect 8.0 (HKLM-x32\...\Juniper Network Connect 8.0) (Version: 8.0.11.36363 - Juniper Networks) Juniper Networks Setup Client (HKU\S-1-5-21-1343024091-1935655697-839522115-42261\...\Juniper_Setup_Client) (Version: 8.0.11.56747 - Juniper Networks) Juniper Networks, Inc. Setup Client 64-bit Activex Control (HKLM\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks, Inc.) Juniper Networks, Inc. Setup Client Activex Control (HKLM-x32\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks, Inc.) Lazesoft Recovery Suite version 4.0 Home Edition (HKLM-x32\...\LS-32CB12D5-CC47-4BC8-BC97-0613CDCB0406_is1) (Version: 4.0 - Lazesoft) Lotus Notes 8.5.3 (HKLM-x32\...\{95246D82-99D2-4229-841E-6867C3251087}) (Version: 8.53.11258 - IBM) LSI HDA Modem (HKLM\...\LSI Soft Modem) (Version: 2.2.97 - LSI Corporation) MergeModule_x64 (Version: 9.1.00 - Sony Corporation) Hidden MergeModule_x86 (x32 Version: 9.3.00 - Sony Corporation) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Conferencing Add-in for Microsoft Office Outlook (HKLM-x32\...\{26480893-5667-47BB-B7B7-6FA9F7F53A49}) (Version: 8.0.6362.229 - Microsoft Corporation) Microsoft Office Communicator 2007 R2 (HKLM-x32\...\{0D1CBBB9-F4A8-45B6-95E7-202BA61D7AF4}) (Version: 3.5.6907.268 - Microsoft Corporation) Microsoft Office Live Meeting 2007 (HKLM-x32\...\{AFADA6D3-EBC0-406E-B3ED-079B7A831467}) (Version: 8.0.6362.229 - Microsoft Corporation) Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Visio Viewer 2007 (HKLM-x32\...\{95120000-0052-0409-0000-0000000FF1CE}) (Version: 12.0.6425.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Mozilla Firefox 40.0.3 (x86 pl) (HKLM-x32\...\Mozilla Firefox 40.0.3 (x86 pl)) (Version: 40.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 40.0.3.5716 - Mozilla) MyDriveConnect 3.3.0.1812 (HKLM-x32\...\MyDriveConnect) (Version: 3.3.0.1812 - TomTom) O2Micro Flash Memory Card Windows Driver (HKLM-x32\...\InstallShield_{4B1CF482-AD0E-48F3-8032-BCF5F071C123}) (Version: 3.00.0006 - O2Micro International LTD.) O2Micro Flash Memory Card Windows Driver (Version: 3.00.0006 - O2Micro International LTD.) Hidden Obsługa programów Apple (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.) OneClick Internet (HKLM-x32\...\OneClickInternet) (Version: 3.0 - OneClick Internet) Ontrack EasyRecovery Professional (HKLM-x32\...\{668CC71A-C2AD-4D56-866D-CF300BD1D5BE}_is1) (Version: 11.1.0.0 - Kroll Ontrack Inc.) Oracle VM VirtualBox 4.2.6 (HKLM\...\{A8A0B1C1-FBC7-4790-8E26-9DA1A6A95452}) (Version: 4.2.6 - Oracle Corporation) OZ711 SCR Driver (x64) (HKLM-x32\...\InstallShield_{2DD893C5-ABC1-4E27-B6D4-279E01AEB4E2}) (Version: 3.0.1.6D - O2Micro) OZ711 SCR Driver (x64) (Version: 3.0.1.6D - O2Micro) Hidden PDF-XChange 2012 Pro (HKLM\...\{F92F0AAB-2EF6-412C-8BF4-0B11EB535280}_is1) (Version: 5.0.269.0 - Tracker Software Products Ltd) PITy2013 IPS 1.5.2.0 kompilacja:1.5.3.5 (HKLM-x32\...\PITy2013IPS_is1) (Version: - IPS Przedsiębiorstwo Informatyczne) PITy2014 IPS 1.6 kompilacja:1.6.2.12 (HKLM-x32\...\PITy2014IPS_is1) (Version: - IPS Przedsiębiorstwo Informatyczne) PKI Basic Client 5.7 (HKLM\...\{D0599F02-E2DD-4DD3-BB97-FA6071D70AAC}) (Version: 5.2.015 - Atos IT Solutions and Services GmbH) PlayMemories Home (HKLM-x32\...\{94F4815B-755A-4FFA-AFDC-EE8FE776981E}) (Version: 4.3.01.06011 - Sony Corporation) Plus Internet 2.4 (HKLM-x32\...\Plus Internet_is1) (Version: - Polkomtel S.A.) PMB_ModeEditor (x32 Version: 9.3.00 - Sony Corporation) Hidden PMB_ServiceUploader (x32 Version: 9.3.01 - Sony Corporation) Hidden Qualcomm Gobi 2000 Package for Sierra (HKLM-x32\...\{A203BDC4-0EC8-4254-8E9C-2A5FA9BEFF15}) (Version: 1.1.180 - QUALCOMM) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6263 - Realtek Semiconductor Corp.) Siemens Learning Manager (HKLM-x32\...\{42251D85-0844-4CB3-A999-77FEE555C7AC}) (Version: 2.1.1 - Siemens AG) Siemens Settings for Office Professional Plus 2007 (x32 Version: 1.0.0.0 - Siemens AG) Hidden Skype™ 7.6 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.6.105 - Skype Technologies S.A.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 14.0.10.0 - Synaptics Incorporated) Trend Micro OfficeScan Client (HKLM-x32\...\{ECEA7878-2100-4525-915D-B09174E36971}) (Version: 10.6.5162 - Trend Micro) UltraVNC 1.0.8.2 (HKLM\...\Ultravnc2_is1) (Version: 1.0.8.2 - 1.0.8.2) USB Webcam (HKLM-x32\...\{399C37FB-08AF-493B-BFED-20FBD85EDF7F}) (Version: 5.8.53001.3 - Sonix) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) WEB Partner (HKLM-x32\...\WEB Partner) (Version: TOOL-ConnLaucher_WIN1.01.01.00 - Huawei Technologies Co.,Ltd) Windows Mobile Device Center (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= 17-10-2015 19:15:59 PPS ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2015-10-16 16:36 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0532E589-CCF1-45BC-A0B6-A38F88CF0A53} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {4D804536-EFE9-4DF4-A43B-CBAFEFC0EEBE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {BBEF6982-D1C3-4C32-972C-32873DE85E35} - System32\Tasks\{B119E8BE-705F-45E7-8153-13E5DFC38EE6} => pcalua.exe -a "C:\New folder\tblpad.exe" -d "C:\New folder" Task: {EBD646DD-410F-49A4-9088-FF6FBEA123A7} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-09-14] (Adobe Systems Incorporated) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2011-03-14 17:27 - 2011-03-14 17:27 - 00346976 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2014-03-31 16:42 - 2011-04-01 14:16 - 00801792 _____ () C:\Program Files (x86)\Trend Micro\OfficeScan Client\sqlite3.dll 2013-09-11 20:10 - 2013-09-11 20:09 - 00075264 _____ () C:\Program Files\Siemens\UCMS\core\UCMS-Common.dll 2013-09-11 20:10 - 2013-09-11 20:09 - 00124416 _____ () C:\Program Files\Siemens\UCMS\core\UCMS-ControlDataGrabber.dll 2013-09-11 20:10 - 2013-09-11 20:09 - 00088064 _____ () C:\Program Files\Siemens\UCMS\plugins\NetworkConnectionGuard\NetworkConnectionGuard-Plugin.dll 2013-09-11 20:10 - 2013-09-11 20:09 - 00052736 _____ () C:\Program Files\Siemens\UCMS\plugins\Bitlocker\Bitlocker-Plugin.dll 2013-09-11 20:10 - 2013-09-11 20:09 - 00068096 _____ () C:\Program Files\Siemens\UCMS\plugins\DesktopIcon\DesktopIcon-Plugin.dll 2013-09-11 20:10 - 2013-09-11 20:09 - 00068096 _____ () C:\Program Files\Siemens\UCMS\plugins\Sysinf\Sysinf-Plugin.dll 2013-09-11 20:10 - 2013-09-11 20:09 - 00068608 _____ () C:\Program Files\Siemens\UCMS\plugins\Grabber\Grabber-Plugin.dll 2013-09-11 20:10 - 2013-09-11 20:09 - 00022016 _____ () C:\Program Files\Siemens\UCMS\plugins\Bitlocker\UCMS-Bitlocker.dll 2013-09-11 20:10 - 2013-09-11 20:09 - 00145408 _____ () C:\Program Files\Siemens\UCMS\core\UCMS-LinkSpeed.dll 2014-02-10 14:19 - 2010-05-20 13:09 - 00329168 ____N () C:\Program Files (x86)\OneClickInternet\WTGService.exe 2013-09-11 19:05 - 2014-03-29 22:26 - 00089088 _____ () C:\Program Files (x86)\Trend Micro\OfficeScan Client\zlibwapi.dll 2013-09-11 18:38 - 2013-09-11 18:38 - 00229376 _____ () C:\Windows\system32\gmp4_2_1_64.dll 2013-06-14 16:19 - 2013-06-14 16:19 - 00116384 _____ () C:\Program Files (x86)\EMET 4.0\HelperLib.dll 2013-06-14 16:19 - 2013-06-14 16:19 - 00034464 _____ () C:\Program Files (x86)\EMET 4.0\ReportingSubsystem.dll 2013-06-12 16:53 - 2013-06-12 16:53 - 00348160 _____ () C:\Program Files (x86)\EMET 4.0\DevExpress.UserSkins.HighContrast.dll 2013-06-14 16:19 - 2013-06-14 16:19 - 00029856 _____ () C:\Program Files (x86)\EMET 4.0\TrayIconSubsystem.dll 2013-06-14 16:19 - 2013-06-14 16:19 - 00049824 _____ () C:\Program Files (x86)\EMET 4.0\PKIPinningSubsystem.dll 2013-04-21 21:44 - 2013-04-21 21:44 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2013-04-21 21:44 - 2013-04-21 21:44 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2011-03-04 12:49 - 2011-03-04 12:49 - 00202752 _____ () C:\Program Files (x86)\Cisco Systems\VPN Client\vpnapi.dll 2014-10-03 14:04 - 2014-10-03 14:04 - 00026488 _____ () C:\Program Files (x86)\MyDrive Connect\DeviceDetection.dll 2014-10-03 14:04 - 2014-10-03 14:04 - 00087416 _____ () C:\Program Files (x86)\MyDrive Connect\TomTomSupporterBase.dll 2014-10-03 14:04 - 2014-10-03 14:04 - 00398712 _____ () C:\Program Files (x86)\MyDrive Connect\TomTomSupporterProxy.dll 2009-02-26 14:46 - 2009-02-26 14:46 - 00064344 _____ () C:\Program Files (x86)\Microsoft Office\Office12\ADDINS\ColleagueImport.dll 2011-06-22 12:46 - 2011-06-22 12:46 - 00434016 _____ () C:\Program Files (x86)\Microsoft Office\Office12\ADDINS\UmOutlookAddin.dll 2015-07-14 18:20 - 2015-07-14 18:20 - 00756376 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1343024091-1935655697-839522115-42261\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 4) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{C1617CB5-4843-4219-AE70-CE4E76031545}] => (Allow) C:\Program Files (x86)\Microsoft Office Communicator\communicator.exe FirewallRules: [{1BF32FA5-7982-4A5C-9974-C8740CE0837B}] => (Allow) C:\Program Files (x86)\Microsoft Office Communicator\communicator.exe FirewallRules: [{73A08976-4E89-4695-AFA0-C9918DBBD3A4}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{F96248CD-1126-421D-A42E-05191288C454}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{3B9AA80A-655C-4897-9025-12D7F1D3DDF2}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{2C7F3F54-EF90-4465-B260-EC4651045C14}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{9E36380E-3C2E-42FE-8498-0E087588FCF5}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{59E5E52B-2D93-4A78-ADD8-431E32C09423}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe FirewallRules: [{B1BF1B22-9991-48D8-B282-C2677EBF5290}] => (Allow) C:\Program Files (x86)\Microsoft Office Communicator\communicator.exe FirewallRules: [{82E56784-E0C4-41A2-8E34-FE64661E82F8}] => (Allow) C:\Program Files (x86)\Microsoft Office Communicator\communicator.exe FirewallRules: [{2FAF76A1-D843-4F3E-B3BF-2B19F8D385A4}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{D21E2D14-4BE8-466B-B0C6-6B1DD8EA726B}] => (Allow) C:\Program Files\UltraVNC\vncviewer.exe FirewallRules: [{67DD3249-ABEA-424E-854A-C25C5ADFBAA5}] => (Allow) C:\Program Files\UltraVNC\vncviewer.exe FirewallRules: [{D3718BE8-AB99-4311-83AB-5831D48458FD}] => (Allow) %systemroot%\WindowsMobile\wmdHost.exe FirewallRules: [{D9D15DF1-2514-4BDD-A29F-00E36E570BD0}] => (Allow) %systemroot%\WindowsMobile\wmdHost.exe FirewallRules: [{159EAFC9-0BA8-4043-BFD5-F0C80968FCF0}] => (Allow) LPort=26675 FirewallRules: [{512B88BB-9307-4925-8EE1-02CC209111E2}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{474E1B27-2C03-4945-8B2A-10404E6F6790}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{4C3D3111-3073-4BE6-ABE0-792CA27AB642}] => (Allow) C:\Program Files (x86)\Java\jre1.7.0_75\bin\java.exe FirewallRules: [{831D9105-9AAC-467C-8BBE-4A087573F6ED}] => (Allow) C:\Program Files (x86)\Sony\PlayMemories Home\PMBBrowser.exe FirewallRules: [{B361FF2F-FD8B-4CDB-A4E4-B43BA2E646D6}] => (Allow) C:\Program Files (x86)\Sony\PlayMemories Home\PMBBrowser.exe FirewallRules: [{FBA6362B-5606-4BDA-A88B-35BD811C9F32}] => (Allow) C:\Program Files (x86)\Java\jre1.7.0_79\bin\java.exe FirewallRules: [{87120DCE-C9A9-4048-A41B-E475805B1927}] => (Allow) C:\Program Files (x86)\Microsoft Office\Live Meeting 8\Console\PWConsole.exe FirewallRules: [{53B5096A-EB71-4117-A591-75375260E86B}] => (Allow) C:\Program Files (x86)\Microsoft Office\Live Meeting 8\Console\PWConsole.exe FirewallRules: [{D21BDB25-8789-464E-B558-FB007BA28CBF}] => (Allow) C:\Program Files (x86)\Microsoft Office\Live Meeting 8\Console\PWConsole.exe FirewallRules: [{E439AE9E-5546-43A5-A8A7-8C83740A8569}] => (Allow) C:\Program Files (x86)\Microsoft Office\Live Meeting 8\Console\PWConsole.exe FirewallRules: [{50142C14-E6F2-4731-AAD9-16155A0143DB}] => (Allow) LPort=59944 FirewallRules: [{3F78F8CB-6D9C-4495-A470-7A0A4E4F2727}] => (Allow) C:\Program Files (x86)\Java\jre1.8.0_51\bin\java.exe ==================== Faulty Device Manager Devices ============= Name: Cisco Systems VPN Adapter for 64-bit Windows Description: Cisco Systems VPN Adapter for 64-bit Windows Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Cisco Systems Service: CVirtA Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (10/17/2015 07:04:41 PM) (Source: UCMSInstaller) (EventID: 0) (User: ) Description: UCMS-Installer.Exe was started without parameters or wrong parameter syntax Error: (10/17/2015 07:04:41 PM) (Source: UCMSInstaller) (EventID: 0) (User: ) Description: Update source is empty or not found in HKEY_LOCAL_MACHINE\Software\Siemens\UCMS\ControlData\ucms.selfupdate\updsource Error: (10/17/2015 06:23:32 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 9797 Error: (10/17/2015 06:23:32 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 9797 Error: (10/17/2015 06:23:31 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (10/17/2015 04:42:36 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 9532 Error: (10/17/2015 04:42:36 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 9532 Error: (10/17/2015 04:42:36 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (10/17/2015 11:48:09 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 9813 Error: (10/17/2015 11:48:09 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 9813 System errors: ============= Error: (10/17/2015 08:23:49 PM) (Source: NETLOGON) (EventID: 5719) (User: ) Description: Ten komputer nie może skonfigurować zabezpieczonej sesji z kontrolerem domeny w domenie PL001 z następującego powodu: %%1311 To może powodować problemy z uwierzytelnianiem. Upewnij się, że ten komputer jest podłączony do sieci. Jeżeli problem się nie rozwiąże, skontaktuj się z administratorem domeny. INFORMACJE DODATKOWE Jeżeli ten komputer jest kontrolerem domeny dla określonej domeny, konfiguruje zabezpieczoną sesję z emulatorem podstawowego kontrolera domeny w określonej domenie. W przeciwnym przypadku komputer może skonfigurować zabezpieczoną sesję z dowolnym kontrolerem domeny w określonej domenie. Error: (10/17/2015 04:17:57 PM) (Source: SCardSvr) (EventID: 610) (User: ) Description: Incorrect function.O2Micro PCMCIA Reader 00x313520XX XX XX XX Error: (10/17/2015 04:17:55 PM) (Source: NETLOGON) (EventID: 5719) (User: ) Description: Ten komputer nie może skonfigurować zabezpieczonej sesji z kontrolerem domeny w domenie PL001 z następującego powodu: %%1311 To może powodować problemy z uwierzytelnianiem. Upewnij się, że ten komputer jest podłączony do sieci. Jeżeli problem się nie rozwiąże, skontaktuj się z administratorem domeny. INFORMACJE DODATKOWE Jeżeli ten komputer jest kontrolerem domeny dla określonej domeny, konfiguruje zabezpieczoną sesję z emulatorem podstawowego kontrolera domeny w określonej domenie. W przeciwnym przypadku komputer może skonfigurować zabezpieczoną sesję z dowolnym kontrolerem domeny w określonej domenie. Error: (10/17/2015 12:48:18 PM) (Source: Microsoft-Windows-BitLocker-API) (EventID: 519) (User: NT AUTHORITY) Description: The servicing of the data recovery agents on the volume failed. Errorcode: 0x800700aa Volume GUID: {7170A807-22AF-487B-BA62-670A974C671A} Error: (10/17/2015 12:48:20 PM) (Source: SCardSvr) (EventID: 610) (User: ) Description: Incorrect function.O2Micro PCMCIA Reader 00x313520XX XX XX XX Error: (10/17/2015 11:33:08 AM) (Source: SCardSvr) (EventID: 610) (User: ) Description: Incorrect function.O2Micro PCMCIA Reader 00x313520XX XX XX XX Error: (10/17/2015 11:04:43 AM) (Source: SCardSvr) (EventID: 610) (User: ) Description: Incorrect function.O2Micro PCMCIA Reader 00x313520XX XX XX XX Error: (10/17/2015 11:04:41 AM) (Source: NETLOGON) (EventID: 5719) (User: ) Description: Ten komputer nie może skonfigurować zabezpieczonej sesji z kontrolerem domeny w domenie PL001 z następującego powodu: %%1311 To może powodować problemy z uwierzytelnianiem. Upewnij się, że ten komputer jest podłączony do sieci. Jeżeli problem się nie rozwiąże, skontaktuj się z administratorem domeny. INFORMACJE DODATKOWE Jeżeli ten komputer jest kontrolerem domeny dla określonej domeny, konfiguruje zabezpieczoną sesję z emulatorem podstawowego kontrolera domeny w określonej domenie. W przeciwnym przypadku komputer może skonfigurować zabezpieczoną sesję z dowolnym kontrolerem domeny w określonej domenie. Error: (10/16/2015 11:44:42 PM) (Source: SCardSvr) (EventID: 610) (User: ) Description: Incorrect function.O2Micro PCMCIA Reader 00x313520XX XX XX XX Error: (10/16/2015 10:29:23 PM) (Source: SCardSvr) (EventID: 610) (User: ) Description: Incorrect function.O2Micro PCMCIA Reader 00x313520XX XX XX XX ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5 CPU M 460 @ 2.53GHz Percentage of memory in use: 71% Total physical RAM: 3891.41 MB Available physical RAM: 1116.53 MB Total Virtual: 7781.03 MB Available Virtual: 4452.43 MB ==================== Drives ================================ Drive c: (SYSTEM) (Fixed) (Total:465.47 GB) (Free:226.81 GB) NTFS Drive h: (Offline) (Network) (Total:465.47 GB) (Free:226.81 GB) CSC-CACHE ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 6E63E79A) Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=465.5 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================