Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-12-2013 Ran by Ada at 2013-12-09 22:43:03 Running from C:\Users\Ada\Desktop\od Złego\_logi Boot Mode: Safe Mode (with Networking) ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Disabled - Up to date) {2B2D1395-420B-D5C9-657E-930FE358FC3C} AS: avast! Antivirus (Disabled - Up to date) {904CF271-6431-DA47-5FCE-A87D98DFB681} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.117) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.117) Adobe Reader 9.5.3 - Polish (x32 Version: 9.5.3) avast! Free Antivirus (x32 Version: 7.0.1466.0) ChomikBox (x32 Version: 2.0.4.3) CWK (Czasowy Wyłącznik Komputera) (x32 Version: 2.52.3.43) D3DX10 (x32 Version: 15.4.2368.0902) Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32) foobar2000 v1.1.15 (x32 Version: 1.1.15) Galeria fotografii (x32 Version: 16.4.3505.0912) Google Chrome (x32 Version: 31.0.1650.63) Google Update Helper (x32 Version: 1.3.21.165) Junk Mail filter update (x32 Version: 16.4.3505.0912) K-Lite Codec Pack 9.2.0 (64-bit) (Version: 9.2.0) Last.fm Scrobbler 2.1.30 (x32) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile PLK Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Extended (Version: 4.0.30319) Microsoft .NET Framework 4 Extended PLK Language Pack (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Office Excel MUI (Polish) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000) Microsoft Office OneNote MUI (Polish) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Outlook MUI (Polish) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office PowerPoint MUI (Polish) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proof (Polish) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Proofing (Polish) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Publisher MUI (Polish) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Shared 64-bit MUI (Polish) 2010 (Version: 14.0.7015.1000) Microsoft Office Shared MUI (Polish) 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Standard 2010 (x32 Version: 14.0.7015.1000) Microsoft Office Word MUI (Polish) 2010 (x32 Version: 14.0.7015.1000) Microsoft Silverlight (Version: 5.1.20913.0) Microsoft SkyDrive (HKCU Version: 16.4.6013.0910) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Movie Maker (x32 Version: 16.4.3505.0912) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT_amd64 (x32 Version: 15.4.2862.0708) MSVCRT110 (x32 Version: 16.4.1108.0727) MSVCRT110_amd64 (Version: 16.4.1109.0912) MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0) NapiProjekt (2.1.0.2287) (x32) Nero 8 Essentials (x32 Version: 8.3.562) neroxml (x32 Version: 1.0.0) Nowe Gadu-Gadu (x32) Opera 12.16 (Version: 12.16.1860) Photo Common (x32 Version: 16.4.3505.0912) Photo Gallery (x32 Version: 16.4.3505.0912) Poczta usługi Windows Live (x32 Version: 16.4.3505.0912) Podstawowe programy Windows Live (x32 Version: 16.4.3505.0912) Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended (Version: 4.0.30319) Real Alternative 2.0.2 (x32 Version: 2.0.2) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3) Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (x32) Update for Microsoft Office 2010 (KB2826026) 32-Bit Edition (x32) Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition (x32) Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition (x32) Update for Microsoft Word 2010 (KB2827323) 32-Bit Edition (x32) VLC media player 2.0.4 (x32 Version: 2.0.4) Windows Live Communications Platform (x32 Version: 16.4.3505.0912) Windows Live ID Sign-in Assistant (Version: 7.250.4311.0) Windows Live Installer (x32 Version: 16.4.3505.0912) Windows Live Mail (x32 Version: 16.4.3505.0912) Windows Live MIME IFilter (Version: 16.4.3505.0912) Windows Live Photo Common (x32 Version: 16.4.3505.0912) Windows Live PIMT Platform (x32 Version: 16.4.3505.0912) Windows Live SOXE (x32 Version: 16.4.3505.0912) Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912) Windows Live UX Platform (x32 Version: 16.4.3505.0912) Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912) Windows Live Writer (x32 Version: 16.4.3505.0912) Windows Live Writer Resources (x32 Version: 16.4.3505.0912) Windows Phone app for desktop (x32 Version: 1.0.1720.1) WinRAR 4.20 (64-bitowy) (Version: 4.20.0) ==================== Restore Points ========================= ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {384F5819-F37F-45C5-8B56-5490A009CFF7} - System32\Tasks\AdobeFlashPlayerUpdate => C:\Windows\SysWOW64\FlashPlayerUpdateService.exe Task: {5CBDC3A2-4CB8-4591-BD44-9737633EB8D6} - System32\Tasks\AdobeFlashPlayerUpdate 2 => C:\Windows\SysWOW64\FlashPlayerUpdateService.exe Task: {A683BA58-A694-4F87-A06B-E5B9766944BD} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-10] (Adobe Systems Incorporated) Task: {C65FFE60-AF00-4CAC-90D4-5B910059B15A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-10-05] (Google Inc.) Task: {DE5EA524-0B4E-4858-89FE-90CF89F1C955} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-10-05] (Google Inc.) Task: {E0C0C08E-F483-4F17-A339-206BC5C022DD} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2012-08-21] (AVAST Software) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-10-10 22:06 - 2013-10-10 22:06 - 22316424 _____ () C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2" ==================== Faulty Device Manager Devices ============= Name: avast! Network Shield Support Description: avast! Network Shield Support Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: aswTdi Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Security Processor Loader Driver Description: Security Processor Loader Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: spldr Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (12/09/2013 10:31:37 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/09/2013 09:53:55 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/07/2013 10:51:56 PM) (Source: System Restore) (User: ) Description: Nie można utworzyć punktu przywracania (Proces = C:\Users\Ada\AppData\Local\Temp\{A85006F0-E345-40BE-A9CA-852CAA1FBF1C}\setup.exe -removeonly -media_path:"C:\Program Files (x86)\InstallShield Installation Information\{52B94500-1782-411F-BFA5-EBAC312964DE}\" -tempdisk1folder:"C:\Users\Ada\AppData\Local\Temp\{A85006F0-E345-40BE-A9CA-852CAA1FBF1C}\"; Opis = Usunięte Wiedźmin Demo; Błąd = 0x8007043c). Error: (12/07/2013 10:21:51 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/07/2013 09:15:58 PM) (Source: Application Error) (User: ) Description: System Windows nie może uzyskać dostępu do pliku C:\Windows\System32\sppsvc.exe z jednej z następujących przyczyn: problem z połączeniem sieciowym; problem z dyskiem, na którym jest przechowywany plik; problem ze sterownikami magazynu zainstalowanymi na tym komputerze; brak dysku. System Windows zamknął program Usługa platformy ochrony oprogramowania firmy Microsoft z powodu tego błędu. Program: Usługa platformy ochrony oprogramowania firmy Microsoft Plik: C:\Windows\System32\sppsvc.exe Wartość błędu jest wyświetlona w sekcji Dodatkowe dane. Akcja użytkownika 1. Otwórz plik ponownie. Ta sytuacja może być przejściowym problemem, który sam się rozwiąże po ponownym uruchomieniu programu. 2. Jeśli nadal nie można uzyskać dostępu do pliku i - jest w sieci, administrator sieci powinien sprawdzić, czy nie ma problemu z siecią i czy można skontaktować się z serwerem. - jest na dysku wymiennym, na przykład dyskietce lub dysku CD-ROM, sprawdź, czy cały dysk jest włożony do komputera. 3. Sprawdź i napraw system plików, uruchamiając program CHKDSK. Aby uruchomić program CHKDSK, kliknij przycisk Start, kliknij polecenie Uruchom, wpisz polecenie CMD, a następnie kliknij przycisk OK. W wierszu polecenia wpisz polecenie CHKDSK /F, a następnie naciśnij klawisz ENTER. 4. Jeżeli problem nie ustąpi, przywróć plik z kopii zapasowej. 5. Ustal, czy można otworzyć inne pliki na tym samym dysku. Jeśli nie, dysk może być uszkodzony. Jeśli jest to dysk twardy, skontaktuj się z administratorem komputera lub dostawcą sprzętu komputerowego, aby uzyskać dalszą pomoc. Dodatkowe dane Wartość błędu: C0000185 Typ dysku: 3 Error: (12/07/2013 09:15:50 PM) (Source: Application Error) (User: ) Description: Nazwa aplikacji powodującej błąd: sppsvc.exe, wersja: 6.1.7601.17514, sygnatura czasowa: 0x4ce7bd64 Nazwa modułu powodującego błąd: sppsvc.exe, wersja: 6.1.7601.17514, sygnatura czasowa: 0x4ce7bd64 Kod wyjątku: 0xc0000006 Przesunięcie błędu: 0x000000000010193c Identyfikator procesu powodującego błąd: 0xa58 Godzina uruchomienia aplikacji powodującej błąd: 0xsppsvc.exe0 Ścieżka aplikacji powodującej błąd: sppsvc.exe1 Ścieżka modułu powodującego błąd: sppsvc.exe2 Identyfikator raportu: sppsvc.exe3 Error: (12/07/2013 09:09:41 PM) (Source: Windows Search Service) (User: ) Description: Usługa Windows Search jest zatrzymywana, ponieważ wystąpił problem z indeksatorem: The catalog is corrupt. Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error: (12/07/2013 09:09:36 PM) (Source: Windows Search Service) (User: ) Description: Usługa wyszukiwania wykryła uszkodzone pliki danych w indeksie {id=3800}. Usługa podejmie próbę automatycznego rozwiązania tego problemu przez odbudowanie indeksu. Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) Error: (12/07/2013 09:02:24 PM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Zainicjowanie bazy danych wykazu przez Usługi kryptograficzne nie powiodło się. Błąd: 1117 (0x45d) : Nie można wykonać żądania z powodu błędu urządzenia We/Wy. . Error: (12/07/2013 08:47:16 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (12/09/2013 10:30:23 PM) (Source: DCOM) (User: ) Description: 1084WSearch{9E175B6D-F52A-11D8-B9A5-505054503030} Error: (12/09/2013 10:30:23 PM) (Source: DCOM) (User: ) Description: 1084WSearch{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Error: (12/09/2013 10:30:18 PM) (Source: DCOM) (User: ) Description: 1084EventSystem{1BE1F766-5536-11D1-B726-00C04FB926AF} Error: (12/09/2013 10:30:09 PM) (Source: DCOM) (User: ) Description: 1084ShellHWDetection{DD522ACC-F821-461A-A407-50B198B896DC} Error: (12/09/2013 10:30:02 PM) (Source: Service Control Manager) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: aswSnx aswSP aswTdi discache spldr Wanarpv6 Error: (12/09/2013 10:29:54 PM) (Source: EventLog) (User: ) Description: Poprzednie zamknięcie systemu przy 22:29:09 na ‎2013-‎12-‎09 było nieoczekiwane. Error: (12/09/2013 10:25:09 PM) (Source: DCOM) (User: ) Description: 1084defragsvc{D20A3293-3341-4AE8-9AAF-8E397CB63C34} Error: (12/09/2013 09:52:45 PM) (Source: DCOM) (User: ) Description: 1084WSearch{9E175B6D-F52A-11D8-B9A5-505054503030} Error: (12/09/2013 09:52:44 PM) (Source: DCOM) (User: ) Description: 1084WSearch{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Error: (12/09/2013 09:52:39 PM) (Source: DCOM) (User: ) Description: 1084EventSystem{1BE1F766-5536-11D1-B726-00C04FB926AF} Microsoft Office Sessions: ========================= Error: (12/09/2013 10:31:37 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/09/2013 09:53:55 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/07/2013 10:51:56 PM) (Source: System Restore)(User: ) Description: C:\Users\Ada\AppData\Local\Temp\{A85006F0-E345-40BE-A9CA-852CAA1FBF1C}\setup.exe -removeonly -media_path:"C:\Program Files (x86)\InstallShield Installation Information\{52B94500-1782-411F-BFA5-EBAC312964DE}\" -tempdisk1folder:"C:\Users\Ada\AppData\Local\Temp\{A85006F0-E345-40BE-A9CA-852CAA1FBF1C}\"Usunięte Wiedźmin Demo0x8007043c Error: (12/07/2013 10:21:51 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/07/2013 09:15:58 PM) (Source: Application Error)(User: ) Description: C:\Windows\System32\sppsvc.exeUsługa platformy ochrony oprogramowania firmy MicrosoftC00001853 Error: (12/07/2013 09:15:50 PM) (Source: Application Error)(User: ) Description: sppsvc.exe6.1.7601.175144ce7bd64sppsvc.exe6.1.7601.175144ce7bd64c0000006000000000010193ca5801cef385da4e680eC:\Windows\system32\sppsvc.exeC:\Windows\system32\sppsvc.exe5cf7068d-5f7c-11e3-9ef9-00238bf1c609 Error: (12/07/2013 09:09:41 PM) (Source: Windows Search Service)(User: ) Description: Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) The catalog is corrupt Error: (12/07/2013 09:09:36 PM) (Source: Windows Search Service)(User: ) Description: Kontekst: aplikacja Windows, wykaz SystemIndex Szczegóły: Wykaz indeksów zawartości jest uszkodzony. (HRESULT : 0xc0041801) (0xc0041801) 3800 Error: (12/07/2013 09:02:24 PM) (Source: Microsoft-Windows-CAPI2)(User: ) Description: 1117 (0x45d)Nie można wykonać żądania z powodu błędu urządzenia We/Wy. Error: (12/07/2013 08:47:16 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Percentage of memory in use: 25% Total physical RAM: 3932.62 MB Available physical RAM: 2912.81 MB Total Pagefile: 7863.41 MB Available Pagefile: 6942.61 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:92.21 GB) (Free:27.68 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (Muzyka) (Fixed) (Total:182.32 GB) (Free:121.75 GB) NTFS Drive e: (Dane) (Fixed) (Total:182.44 GB) (Free:82.18 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: EFCE7C6B) Partition 1: (Not Active) - (Size=9 GB) - (Type=27) Partition 2: (Active) - (Size=92 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=182 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=182 GB) - (Type=OF Extended) ==================== End Of Log ============================