Additional scan result of Farbar Recovery Scan Tool (x86) Version: 31-08-2016 Ran by Ksenia (03-09-2016 12:08:39) Running from C:\Users\Ksenia\Downloads Майкрософт Windows 8 Профессиональная (X86) (2013-07-29 20:37:42) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Ksenia (S-1-5-21-2990964415-1147040174-3707853304-1001 - Administrator - Enabled) => C:\Users\Ksenia Администратор (S-1-5-21-2990964415-1147040174-3707853304-500 - Administrator - Disabled) Гость (S-1-5-21-2990964415-1147040174-3707853304-501 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-2990964415-1147040174-3707853304-1001\...\uTorrent) (Version: 3.3.1.30017 - BitTorrent Inc.) Adobe Flash Player 22 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated) Adobe Flash Player 22 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated) Adobe Reader XI (11.0.13) - Russian (HKLM\...\{AC76BA86-7AD7-1049-7B44-AB0000000001}) (Version: 11.0.13 - Adobe Systems Incorporated) Apple Mobile Device Support (HKLM\...\{9A629DCB-415D-4A50-85B9-5C2E4F8F74A8}) (Version: 9.1.0.6 - Apple Inc.) Apple Software Update (HKLM\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.04 - Piriform) ChomikBox (HKLM\...\{C7B52FAF-58D8-438C-B810-F78C3C927504}) (Version: 2.0.8.0 - Chomikuj.pl) Etxt Antiplagiat (HKLM\...\{533FD87B-A3A1-49CD-8334-2A63010C1CFD}) (Version: 3.63.0 - Inet-trade) Generating The Web 2.7 (HKLM\...\{CB4B86C1-24AA-43D3-8B92-8B2075F607CA}_is1) (Version: - S5 Development LLC) IBM SPSS Statistics 21 (HKLM\...\{1E26B9C2-ED08-4EEA-83C8-A786502B41E5}) (Version: 21.0.0.0 - IBM Corp) iTunes (HKLM\...\{2C741651-87E0-4479-9703-6DD0D7988B84}) (Version: 12.3.2.35 - Apple Inc.) Java 8 Update 40 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation) K-Lite Codec Pack 10.5.5 Standard (HKLM\...\KLiteCodecPack_is1) (Version: 10.5.5 - ) KMSnano 25 (HKLM\...\KMSnano 25_is1) (Version: KMSnano 25 - ) Microsoft Office профессиональный плюс 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) MSXML 4.0 SP2 Parser and SDK (HKLM\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) paint.net (HKLM\...\{DF3A46D9-67B3-44B2-9D01-25C8BA772C89}) (Version: 4.0.6 - dotPDN LLC) Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9 - Google, Inc.) Skype™ 7.26 (HKLM\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.26.101 - Skype Technologies S.A.) UmmyVideoDownloader (HKLM\...\{E028DBDA-EEE7-48A0-ADF7-D250589A02C5}_is1) (Version: 1.7.0.0 - ) <==== ATTENTION WinRAR 4.01 (32-разрядная) (HKLM\...\WinRAR archiver) (Version: 4.01.0 - win.rar GmbH) Yandex (HKU\S-1-5-21-2990964415-1147040174-3707853304-1001\...\YandexBrowser) (Version: 16.7.0.3342 - ООО «ЯНДЕКС») Засоби перевірки правопису Microsoft Office 2013 – Українська версія (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Кнопка "Яндекс" на панели задач (HKU\S-1-5-21-2990964415-1147040174-3707853304-1001\...\YaPinLancher) (Version: 2.0.0.2117 - Яндекс) Поддержка программ Apple (x86) (HKLM\...\{7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F}) (Version: 4.1.2 - Apple Inc.) Программное обеспечение Panasonic Multi-Function Station (HKLM\...\{53DE4FAD-F853-44F3-AC39-AD2940E5DD53}) (Version: 1.00 - Panasonic System Networks Co., Ltd.) Средства проверки правописания Microsoft Office 2013 — русский (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0E9B0338-7133-496F-A67A-3216617BB7D7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {1E84DCB8-8C84-4436-A108-209A65086823} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {24259ECB-9A3B-421F-86C0-5330A9F1E741} - System32\Tasks\Trigger KMS Activation => C:\Program Files\KMSnano\TriggerKMS.exe [2013-01-26] () Task: {2CD41B61-A24E-4458-AE00-CFB0CC3D1773} - System32\Tasks\{3F8BCBB6-C0AF-4817-965D-CC9155850819} => c:\users\ksenia\appdata\local\yandex\yandexbrowser\application\browser.exe [2016-07-21] (YANDEX LLC) Task: {2FD58FA9-AB51-453E-85E8-D5B79B6FF6BC} - System32\Tasks\Microsoft Office 15 Sync Maintenance for ksenia-pc-Ksenia ksenia-pc => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2012-10-01] (Microsoft Corporation) Task: {6422A068-311E-41C7-B81C-7E22FE40074E} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\WatTask => C:\Windows Activation Technologies\wat.exe [2006-04-21] () Task: {76874763-441D-438F-A0FE-002FAB42F9C3} - System32\Tasks\Обновление Браузера Яндекс => C:\Users\Ksenia\AppData\Local\Yandex\YandexBrowser\Application\browser.exe [2016-07-21] (YANDEX LLC) Task: {7B7CF8E3-0046-4508-8E7B-1EDB4BB9639D} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_22_0_0_209_pepper.exe [2016-07-12] (Adobe Systems Incorporated) Task: {AB311EE1-3B4F-40CA-B1C7-546055333AC2} - System32\Tasks\Обновление Браузера Яндекс => C:\Users\Ksenia\AppData\Local\Yandex\YandexBrowser\Application\browser.exe [2016-07-21] (YANDEX LLC) Task: {B590E765-14DB-478A-862A-8BD23F41C53B} - System32\Tasks\{B09175DE-257C-4F03-A63C-E8BDA5DA6448} => c:\users\ksenia\appdata\local\yandex\yandexbrowser\application\browser.exe [2016-07-21] (YANDEX LLC) Task: {B9BD0181-1DA3-43F1-A51D-F5454075A1BB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated) Task: {BF1139AA-1599-4359-ACAC-B6B524A26404} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-03-13] (Piriform Ltd) Task: {BF6E3502-C0E3-4B6E-9DA4-29E14067638F} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-12] (Adobe Systems Incorporated) Task: {CEEBE7B9-2EF1-4A88-A258-A3EDFED307DA} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation) Task: {FD281D28-7295-4D01-85B1-A6A02A6BAC5F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\system32\Macromed\Flash\FlashUtil32_22_0_0_209_pepper.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\Обновление Браузера Яндекс .job => C:\Users\Ksenia\AppData\Local\Yandex\YandexBrowser\Application\browser.exe Task: C:\Windows\Tasks\Обновление Браузера Яндекс.job => C:\Users\Ksenia\AppData\Local\Yandex\YandexBrowser\Application\browser.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ShortcutWithArgument: C:\Users\Ksenia\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.InternetExplorer.Default\Яндекс.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> -contentTile -formatVersion 0x00000002 -pinnedTimeLow 0x97d444c2 -pinnedTimeHigh 0x01cd8430 -securityFlags 0x00000000 -url 0x0000002e hxxp://www.yandex.ru/?win=214&clid=2008277-308 ShortcutWithArgument: C:\Users\Ksenia\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.InternetExplorer.Default\Яндекс.Почта.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> -contentTile -formatVersion 0x00000002 -pinnedTimeLow 0x97d444c2 -pinnedTimeHigh 0x01cd8430 -securityFlags 0x00000000 -url 0x0000003c hxxp://mail.yandex.ru/?win=214&clid=2008277-308&from=dist_tl ==================== Loaded Modules (Whitelisted) ============== 2015-12-17 18:39 - 2015-12-17 18:39 - 00073512 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-12-17 18:39 - 2015-12-17 18:39 - 01040144 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2013-08-15 12:02 - 2013-08-15 11:13 - 06021448 _____ () c:\Windows\LicenseServer\rutserv.exe 2013-08-15 12:02 - 2013-06-19 13:53 - 00020992 _____ () c:\Windows\LicenseServer\winmm.dll 2013-08-15 12:02 - 2013-08-15 11:16 - 04781384 _____ () c:\Windows\LicenseServer\rfusclient.exe 2013-08-15 14:13 - 2011-05-28 21:04 - 00140288 _____ () C:\Program Files\WinRAR\rarext.dll 2012-12-25 11:39 - 2012-12-25 11:39 - 00561664 _____ () C:\Program Files\Yandex\Punto Switcher\Updater\yupdate.dll 2015-03-13 16:54 - 2015-03-13 16:54 - 00053248 _____ () C:\Program Files\CCleaner\lang\lang-1049.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2012-07-26 07:17 - 2015-11-25 10:41 - 00000830 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2990964415-1147040174-3707853304-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ksenia\Desktop\душевное\rZkrvSv0M-Q.jpg DNS Servers: 87.246.220.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: iPod Service => 3 MSCONFIG\Services: McComponentHostService => 3 HKU\S-1-5-21-2990964415-1147040174-3707853304-1001\...\StartupApproved\StartupFolder: => "Punto Switcher.lnk" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{6B17F652-EE14-4C47-B5E1-1B80D7A8C2B9}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{626F9DF6-0849-4479-8B0A-095DE9A8E689}] => (Allow) C:\Users\Ksenia\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{EC43AFEB-5F24-4AF2-BDE5-3E6A23058ECA}] => (Allow) C:\Users\Ksenia\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{3E06E8C7-89B5-43D7-A2EB-2E5F70A3EAC1}] => (Allow) c:\Windows\LicenseServer\rutserv.exe FirewallRules: [{2CD2615F-4791-4804-8B32-D75777A5AFB6}] => (Allow) C:\Program Files\KMSnano\data\qemu-system-i386.exe FirewallRules: [{532FBDA4-19AF-4BD9-8B59-DF4C25E4FD02}] => (Allow) C:\Program Files\KMSnano\data\qemu-system-i386.exe FirewallRules: [{8D66B3F8-1E96-4406-B8E0-409C7721970C}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\stats.com FirewallRules: [{04044AD0-955C-4515-BCEC-C65A5B1EF3AE}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\WinWrapIDE.exe FirewallRules: [{203C2850-0DBC-4FCF-BE6F-B357CF4CADAD}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\stats.exe FirewallRules: [{A832146B-5826-4611-8ED2-82D90713B734}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\stats.com FirewallRules: [{CDBC2AB0-5248-4EF9-97B0-98DFC82CE26F}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\WinWrapIDE.exe FirewallRules: [{104B83FE-C82C-4149-86AE-B020052C1F2C}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\stats.exe FirewallRules: [{D0044C12-BA8E-408E-836F-86EC82E2EBAB}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [TCP Query User{C6763D91-BF76-4D47-8DD6-941C731DC412}C:\program files\ibm\spss\statistics\21\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\21\jre\bin\javaw.exe FirewallRules: [UDP Query User{6C3F6734-9762-4BD5-A328-C87EE4B7DC5A}C:\program files\ibm\spss\statistics\21\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\21\jre\bin\javaw.exe FirewallRules: [{95C837B1-642E-4FBE-B09B-451AFC8DC818}] => (Block) C:\program files\ibm\spss\statistics\21\jre\bin\javaw.exe FirewallRules: [{3EDCBFF4-9FA2-4C1E-B443-83F327F9CDD5}] => (Block) C:\program files\ibm\spss\statistics\21\jre\bin\javaw.exe FirewallRules: [{26249CB1-4C9B-4721-84CB-1D909AD8508E}] => (Allow) C:\Program Files\KMSnano\data\qemu-system-i386.exe FirewallRules: [{4330E5C7-61F0-49FF-84D1-412D2B5E21FE}] => (Allow) C:\Program Files\KMSnano\data\qemu-system-i386.exe ==================== Restore Points ========================= 03-08-2016 15:24:34 Запланированная контрольная точка 14-08-2016 21:58:44 Запланированная контрольная точка 23-08-2016 21:35:00 Запланированная контрольная точка 03-09-2016 10:57:44 Removed Bonjour ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/03/2016 11:36:43 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Сбой активации лицензий (slui.exe) со следующим кодом ошибки: hr=0xC004F074 Аргументы командной строки: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (09/03/2016 11:36:30 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Сбой активации лицензий (slui.exe) со следующим кодом ошибки: hr=0xC004F074 Аргументы командной строки: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (09/03/2016 11:25:54 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Имя сбойного приложения: Explorer.EXE, версия: 6.2.9200.16628, метка времени: 0x51a942ac Имя сбойного модуля: unknown, версия: 0.0.0.0, метка времени: 0x00000000 Код исключения: 0xc0000005 Смещение ошибки: 0x0000f4fe Идентификатор сбойного процесса: 0x774 Время запуска сбойного приложения: 0x01d205ba23803d18 Путь сбойного приложения: C:\Windows\Explorer.EXE Путь сбойного модуля: unknown Идентификатор отчета: 077eefb3-71b0-11e6-b01f-1c7508a64f9b Полное имя сбойного пакета: Код приложения, связанного со сбойным пакетом: Error: (09/03/2016 11:14:09 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Сбой активации лицензий (slui.exe) со следующим кодом ошибки: hr=0xC004F074 Аргументы командной строки: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (09/03/2016 11:13:48 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Сбой активации лицензий (slui.exe) со следующим кодом ошибки: hr=0xC004F074 Аргументы командной строки: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (09/03/2016 10:55:10 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Сбой активации лицензий (slui.exe) со следующим кодом ошибки: hr=0xC004F074 Аргументы командной строки: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkQuarantineRetry Error: (09/03/2016 10:55:05 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Сбой активации лицензий (slui.exe) со следующим кодом ошибки: hr=0xC004F074 Аргументы командной строки: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=a98bcd6d-5343-4603-8afe-5908e4611112;NotificationInterval=1440;Trigger=NetworkAvailable Error: (09/03/2016 10:38:23 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ksenia-pc) Description: Сбой активации приложения DefaultBrowser_NOPUBLISHERID!Microsoft.InternetExplorer.Default. Ошибка: -2147024891. Дополнительные сведения см. в журнале Microsoft-Windows-TWinUI/Operational. Error: (09/03/2016 10:38:10 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ksenia-pc) Description: Сбой активации приложения DefaultBrowser_NOPUBLISHERID!Microsoft.InternetExplorer.Default. Ошибка: -2147024891. Дополнительные сведения см. в журнале Microsoft-Windows-TWinUI/Operational. Error: (09/03/2016 09:49:54 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 291612 System errors: ============= Error: (09/03/2016 10:57:31 AM) (Source: Ntfs) (EventID: 55) (User: NT AUTHORITY) Description: Обнаружено повреждение в структуре файловой системы на томе Acer. Основная таблица файлов (MFT) содержит поврежденную запись файла. Номер ссылки файла: 0x9000000000009. Имя файла: "<не удалось определить имя файла>". Error: (09/03/2016 10:09:00 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 4 Error: (09/03/2016 09:58:49 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 4 Error: (09/03/2016 09:45:12 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 4 Error: (09/03/2016 09:08:52 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 4 Error: (09/03/2016 08:57:10 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: Параметры разрешений для конкретного приложения не дают разрешения Локально Активация для приложения COM-сервера с CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} и APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} пользователю NT AUTHORITY\СИСТЕМА с ИД безопасности (S-1-5-18) и адресом LocalHost (с использованием LRPC), выполняемого в контейнере приложения Недоступно с ИД безопасности (Недоступно). Это разрешение безопасности можно изменить с помощью средства администрирования служб компонентов. Error: (08/30/2016 10:23:36 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: Параметры разрешений для конкретного приложения не дают разрешения Локально Активация для приложения COM-сервера с CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} и APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} пользователю NT AUTHORITY\СИСТЕМА с ИД безопасности (S-1-5-18) и адресом LocalHost (с использованием LRPC), выполняемого в контейнере приложения Недоступно с ИД безопасности (Недоступно). Это разрешение безопасности можно изменить с помощью средства администрирования служб компонентов. Error: (08/29/2016 10:16:23 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: Параметры разрешений для конкретного приложения не дают разрешения Локально Активация для приложения COM-сервера с CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} и APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} пользователю NT AUTHORITY\СИСТЕМА с ИД безопасности (S-1-5-18) и адресом LocalHost (с использованием LRPC), выполняемого в контейнере приложения Недоступно с ИД безопасности (Недоступно). Это разрешение безопасности можно изменить с помощью средства администрирования служб компонентов. Error: (08/25/2016 10:32:53 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: Параметры разрешений для конкретного приложения не дают разрешения Локально Активация для приложения COM-сервера с CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} и APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} пользователю NT AUTHORITY\СИСТЕМА с ИД безопасности (S-1-5-18) и адресом LocalHost (с использованием LRPC), выполняемого в контейнере приложения Недоступно с ИД безопасности (Недоступно). Это разрешение безопасности можно изменить с помощью средства администрирования служб компонентов. Error: (08/24/2016 07:08:51 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 4 ==================== Memory info =========================== Processor: Intel(R) Atom(TM) CPU N450 @ 1.66GHz Percentage of memory in use: 81% Total physical RAM: 1013.09 MB Available physical RAM: 191.1 MB Total Virtual: 2805.09 MB Available Virtual: 1449.07 MB ==================== Drives ================================ Drive c: (Acer) (Fixed) (Total:215.79 GB) (Free:22.37 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: FCD7FABB) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=215.8 GB) - (Type=OF Extended) ==================== End of Addition.txt ============================