Task: {133EDD5A-FE10-4457-9867-4B3E93A78791} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM Task: {2884A016-0542-4F13-B4FF-B7C3C62CE064} - System32\Tasks\WinThruster_UPDATES => C:\Program Files\WinThruster\WinThruster.exe Task: {320124A7-D70F-41DE-A9D1-D5E8E19D5D91} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI Task: {35F157AE-0BA0-4A94-BD90-922D7CB9845E} - System32\Tasks\SBWUpdateTask_Logon_4cc754eb-002163AE921A => C:\Program Files\Common Files\SpeedBit\SBUpdate\SBUpdate.exe [2011-05-11] () Task: {3844B300-B2A5-45E9-80A9-02C58C8D74ED} - System32\Tasks\SBWUpdateTask_Time_4cc754eb-002163AE921A => C:\Program Files\Common Files\SpeedBit\SBUpdate\SBUpdate.exe [2011-05-11] () Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages Task: {42D70ADE-40D3-4CDE-8302-778182C29E48} - System32\Tasks\{6B1B67C0-EAB9-451A-BD76-205CC06557E1} => C:\Program Files\Skype\Phone\Skype.exe [2013-02-28] (Skype Technologies S.A.) Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\System32\RacAgent.exe [2008-01-21] (Microsoft Corporation) Task: {617F6DB9-5837-43D8-A87D-198D1019628B} - System32\Tasks\HPCustParticipation HP Deskjet 2050 J510 series => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HPCustPartic.exe [2010-06-14] (Hewlett-Packard Co.) Task: {7BFE54E9-4AA8-47E1-AE86-F4CEE612A736} - System32\Tasks\WinThruster_DEFAULT => C:\Program Files\WinThruster\WinThruster.exe Task: {851DFFD1-083F-4EC1-8930-25E335542EA3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-08] (Adobe Systems Incorporated) Task: {8D3D4320-B4C9-4459-B821-811AEDC25F16} - System32\Tasks\Microsoft\Windows\RestartManager\{550A6E21-9F2D-4181-B1A4-77DAEF7C961E} => C:\Windows\System32\RmClient.exe [2006-11-02] (Microsoft Corporation) Task: {9EE6CEFF-66F1-48E2-9F63-01936B6490E5} - System32\Tasks\Microsoft\Windows\RestartManager\{103E1B19-33B5-4d3f-8202-2EADFAC7F029} => C:\Windows\System32\RmClient.exe [2006-11-02] (Microsoft Corporation) Task: {AC916C8A-029F-4E51-8C5C-6940B49FF759} - System32\Tasks\WinThruster => C:\Program Files\WinThruster\WinThruster.exe Task: {DC88FC91-4499-430D-90BF-B427F21E7DF4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-08-20] (Google Inc.) Task: {DDEBDC20-156E-46CC-9149-B289616FC92F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-08-20] (Google Inc.) Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\System32\gatherWirelessInfo.vbs [2008-01-21] () Task: {E8C4C804-CE73-46B6-9CDA-33A745CA53CF} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2008-07-30] (Apple Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\User_Feed_Synchronization-{3C6064FD-8529-42FA-A2C8-852550C2FAEE}.job => C:\Windows\system32\msfeedssync.exe ==================== Loaded Modules (whitelisted) ============= ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Windows:netNLSPreferences AlternateDataStreams: C:\Windows:nlsPreferences AlternateDataStreams: C:\ProgramData\TEMP:553CA6CA AlternateDataStreams: C:\ProgramData\TEMP:A9662AE0 ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2" ==================== Faulty Device Manager Devices ============= Name: Karta Microsoft ISATAP #2 Description: Karta Microsoft ISATAP Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Karta Microsoft ISATAP #3 Description: Karta Microsoft ISATAP Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Karta Microsoft ISATAP #6 Description: Karta Microsoft ISATAP Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (12/08/2013 02:16:17 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/08/2013 02:15:04 PM) (Source: EventSystem) (User: ) Description: d:\vistasp1_gdr\com\complus\src\events\tier1\eventsystemobj.cpp458007043c Error: (12/08/2013 01:55:27 PM) (Source: System Restore) (User: ) Description: Nie można utworzyć punktu przywracania na woluminie (Proces = C:\Windows\system32\wbem\wmiprvse.exe; Opis = ComboFix created restore point; Hr = 0x8007043c). Error: (12/08/2013 00:04:49 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/08/2013 00:03:37 PM) (Source: EventSystem) (User: ) Description: d:\vistasp1_gdr\com\complus\src\events\tier1\eventsystemobj.cpp458007043c Error: (12/08/2013 11:11:03 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/08/2013 11:09:48 AM) (Source: EventSystem) (User: ) Description: d:\vistasp1_gdr\com\complus\src\events\tier1\eventsystemobj.cpp458007043c Error: (12/08/2013 10:34:04 AM) (Source: Application Error) (User: ) Description: Aplikacja powodująca błąd s42subst.exe, wersja 2007.2.7035.0, sygnatura czasowa 0x478513b5, moduł powodujący błąd ActivationWizardRS_libFNP.dll, wersja 11.4.10.1, sygnatura czasowa 0x452e33c4, kod wyjątku 0xc0000005, przesunięcie błędu 0x00001523, identyfikator procesu 0x114, godzina rozpoczęcia aplikacji 0xs42subst.exe0. Error: (12/08/2013 10:33:17 AM) (Source: Application Error) (User: ) Description: Aplikacja powodująca błąd sdlx.exe, wersja 2007.2.0.7035, sygnatura czasowa 0x47851510, moduł powodujący błąd ActivationWizardRS_libFNP.dll, wersja 11.4.10.1, sygnatura czasowa 0x452e33c4, kod wyjątku 0xc0000005, przesunięcie błędu 0x00001523, identyfikator procesu 0x358, godzina rozpoczęcia aplikacji 0xsdlx.exe0. Error: (12/08/2013 08:51:53 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Microsoft Office Sessions: ========================= Error: (07/09/2012 01:40:32 AM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 552 seconds with 0 seconds of active time. This session ended with a crash. Error: (07/09/2012 01:24:44 AM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 372 seconds with 0 seconds of active time. This session ended with a crash. Error: (07/09/2012 01:24:43 AM) (Source: Microsoft Office 12 Sessions)(User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6661.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 158 seconds with 60 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2013-04-07 22:11:00.012 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ERDNT\cache\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2013-04-07 22:10:59.372 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ERDNT\cache\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2013-04-07 22:10:58.701 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ERDNT\cache\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2013-04-07 22:10:57.921 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ERDNT\cache\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2013-04-07 22:10:57.204 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ERDNT\cache\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2013-04-07 22:10:56.595 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\ERDNT\cache\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2013-04-07 22:09:50.982 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18493_none_b2bfcb7c66ac7d10\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2013-04-07 22:09:50.342 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18493_none_b2bfcb7c66ac7d10\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2013-04-07 22:09:49.593 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18493_none_b2bfcb7c66ac7d10\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2013-04-07 22:09:48.938 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\winsxs\x86_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.0.6001.18493_none_b2bfcb7c66ac7d10\tcpip.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Percentage of memory in use: 43% Total physical RAM: 2939.07 MB Available physical RAM: 1657.64 MB Total Pagefile: 6084.43 MB Available Pagefile: 5063.88 MB Total Virtual: 2047.88 MB Available Virtual: 1935.39 MB ==================== Drives ================================ Drive c: (Vista) (Fixed) (Total:148.89 GB) (Free:19.28 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive e: (Data) (Fixed) (Total:147.73 GB) (Free:108 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 298 GB) (Disk ID: 488BEFD3) Partition 1: (Not Active) - (Size=1 GB) - (Type=27) Partition 2: (Active) - (Size=149 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=148 GB) - (Type=07 NTFS) ==================== End Of Log ============================