Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-02-2014 02 Ran by Marcin at 2014-02-27 21:05:49 Running from C:\Users\Marcin\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== µTorrent (HKCU\...\uTorrent) (Version: 3.3.2.30488 - BitTorrent Inc.) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 2.2.0.248 - Adobe Systems Incorporated) Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.70 - Adobe Systems Incorporated) Adobe Photoshop CC (HKLM-x32\...\{2D99B50E-431D-4AA8-85C1-172A6F8BCF09}) (Version: 14.0 - Adobe Systems Incorporated) Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.4.634 - Adobe Systems, Inc.) Aff Packages (HKCU\...\Aff Packages) (Version: - ) <==== ATTENTION AMD APP SDK Runtime (Version: 10.0.938.2 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (HKLM\...\{63ADEC24-A374-80A8-E89B-BE401C787F75}) (Version: 8.0.881.0 - Advanced Micro Devices, Inc.) AMD Fuel (Version: 2012.0806.1156.19437 - Nazwa firmy) Hidden AMD VISION Engine Control Center (x32 Version: 2012.0806.1156.19437 - Nazwa firmy) Hidden BankBrowser (HKCU\...\BankBrowser) (Version: 3.6 - DialCom24 Sp. z o.o.) BitGuard (HKLM-x32\...\{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693}) (Version: - MediaTechSoft Inc.) <==== ATTENTION Bonanza Deals (remove only) (HKLM-x32\...\Bonanza Deals) (Version: 5.0.1.0 - Bonanza Deals) <==== ATTENTION Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Burn4Free CD and DVD (HKLM-x32\...\Burn4Free) (Version: - ) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2012.0806.1156.19437 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2012.0806.1156.19437 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2012.0806.1156.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2012.0806.1155.19437 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2012.0806.1156.19437 - Advanced Micro Devices, Inc.) Hidden Connected Music powered by Universal Music Group version 1.0 (HKLM-x32\...\{46037DC7-F927-46DF-935F-D6F122BDD34B}_is1) (Version: 1.0 - Snowite) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1.5407 - CyberLink Corp.) CyberLink LabelPrint (x32 Version: 2.5.1.5407 - CyberLink Corp.) Hidden CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.1.1916 - CyberLink Corp.) CyberLink Media Suite 10 (x32 Version: 10.0.1.1916 - CyberLink Corp.) Hidden CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.1.1926 - CyberLink Corp.) CyberLink Power2Go 8 (x32 Version: 8.0.1.1926 - CyberLink Corp.) Hidden CyberLink PowerDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.6.4319 - CyberLink Corp.) CyberLink PowerDVD (x32 Version: 10.0.6.4319 - CyberLink Corp.) Hidden CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.4.5527 - CyberLink Corp.) CyberLink YouCam (x32 Version: 3.5.4.5527 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Delta Chrome Toolbar (HKLM-x32\...\Delta Chrome Toolbar) (Version: - Visual Tools) <==== ATTENTION Delta toolbar (HKLM-x32\...\delta) (Version: 1.8.21.5 - Delta) <==== ATTENTION Energy Star (HKLM\...\{0FA995CC-C849-4755-B14B-5404CC75DC24}) (Version: 1.0.8 - Hewlett-Packard) Firebird SQL Server - MAGIX Edition (HKLM-x32\...\{39AB2E37-1A55-4292-A5D3-971E9F70D0F8}) (Version: 2.1.32.0 - MAGIX AG) Foxtab (HKLM-x32\...\foxtab) (Version: - FoxTab) <==== ATTENTION Free YouTube Download version 3.2.2.430 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.2.2.430 - DVDVideoSoft Ltd.) Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 33.0.1750.117 - Google Inc.) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden Hewlett-Packard ACLM.NET v1.2.0.0 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden HP Documentation (HKLM-x32\...\{8E7CB625-076C-4812-87B9-A2695C2CFABF}) (Version: 1.1.0.0 - Hewlett-Packard) HP Postscript Converter (Version: 3.1.3554 - Hewlett-Packard) Hidden HP Quick Launch (HKLM-x32\...\{4ED7050C-9332-4FB2-AB07-E94F25A53D39}) (Version: 3.0.3 - Hewlett-Packard Company) HP Recovery Manager (x32 Version: 7.00 - Hewlett-Packard) Hidden HP Registration Service (HKLM\...\{E4D6CCF2-0AAF-4B9C-9DE5-893EDC9B4BAA}) (Version: 1.0.5976.4186 - Hewlett-Packard) HP Software Framework (HKLM-x32\...\{04352528-0DBF-400F-980C-9BF40E66EE19}) (Version: 4.6.8.1 - Hewlett-Packard Company) HP Support Assistant (HKLM-x32\...\{B8019B54-F9BE-490A-9619-6D06F18F129F}) (Version: 7.0.32.44 - Hewlett-Packard Company) HP Utility Center (HKLM-x32\...\{0C57987A-A03A-4B95-A309-D23F78F406CA}) (Version: 1.0.7 - Hewlett-Packard) HP Wireless Button Driver (HKLM-x32\...\{941DE69D-6CEE-4171-8F1F-3D7E352AA498}) (Version: 1.0.5.1 - Hewlett-Packard Company) Jet (HKCU\...\Jet) (Version: 24.0.1293.0 - Performersoft) <==== ATTENTION Jet Browser version 0.2.0.7 (HKLM-x32\...\{1EB98921-3AD1-4A7A-BED2-B4054E9CFA8E}_is1) (Version: 0.2.0.7 - Performersoft LLC) <==== ATTENTION MAGIX Screenshare (HKLM-x32\...\{36B5C759-4243-48A4-A0C9-CAB0263DFF4C}) (Version: 4.3.6.1987 - MAGIX AG) MAGIX Speed burnR (MSI) (HKLM-x32\...\MAGIX_{9B874839-9FFD-4604-A0F1-7588122C2BE6}) (Version: 7.0.1.27 - MAGIX AG) MAGIX Speed burnR (MSI) (Version: 7.0.1.27 - MAGIX AG) Hidden MAGIX Video deluxe 2013 Plus (HKLM-x32\...\MAGIX_{2EA84418-F533-4621-B799-0295E380FDA7}) (Version: 12.0.3.4 - MAGIX AG) MAGIX Video deluxe 2013 Plus (Version: 12.0.3.4 - MAGIX AG) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20913.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mobogenie (HKLM-x32\...\Mobogenie) (Version: - Mobogenie.com) <==== ATTENTION Mozilla Firefox 27.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 27.0.1 (x86 pl)) (Version: 27.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 27.0.1 - Mozilla) Mozilla Thunderbird 17.0.8 (x86 pl) (HKLM-x32\...\Mozilla Thunderbird 17.0.8 (x86 pl)) (Version: 17.0.8 - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MyPC Backup (HKLM\...\MyPC Backup) (Version: - MyPC Backup) <==== ATTENTION NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) OpenOffice.org 3.3 (HKLM-x32\...\{0141D498-16DA-4221-A529-1D7A64BE8B05}) (Version: 3.3.9567 - OpenOffice.org) PC Performer (HKLM-x32\...\PC Performer_is1) (Version: 11.10 - PerformerSoft LLC) <==== ATTENTION PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden PLAY ONLINE (HKLM-x32\...\PLAY ONLINE) (Version: 21.005.11.14.264 - Huawei Technologies Co.,Ltd) Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu) Pokki (HKCU\...\Pokki) (Version: 0.267.1.208 - Pokki) Qtrax Player (HKCU\...\1540585613.portal.qtrax.com) (Version: - portal.qtrax.com) Qtrax Player (HKLM-x32\...\{89505A66-35F0-4401-B3AD-D077051F8698}) (Version: 01.001.0001 - Qtrax) Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.206 - Nazwa firmy) Qualcomm Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Qualcomm Atheros) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.2.8400.29029 - Realtek Semiconductor Corp.) simplitec simplicheck (HKLM-x32\...\{40F06479-E965-423F-9261-5849A050350C}) (Version: 1.3.10.0 - simplitec GmbH) Smileys We Love Toolbar for IE (HKLM-x32\...\{4B67E501-761A-4544-BD88-3CCB23746516}) (Version: 3.0.17 - SqueekyChocolate, LLC) Speed Test 127 (HKLM-x32\...\Speed Test 127) (Version: 3.0.0.0 - BestOffers) <==== ATTENTION swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.12 - Synaptics Incorporated) TuneUp Utilities 2013 (HKLM-x32\...\TuneUp Utilities 2013) (Version: 13.0.2020.84 - TuneUp Software) TuneUp Utilities 2013 (x32 Version: 13.0.2020.84 - TuneUp Software) Hidden TuneUp Utilities Language Pack (pl-PL) (x32 Version: 13.0.2020.84 - TuneUp Software) Hidden UpdateChecker (HKLM-x32\...\SqueakyChocolate, LLC UpdateChecker) (Version: - SqueakyChocolate, LLC) <==== ATTENTION William Hill CASINO CLUB (HKCU\...\William Hill CASINO CLUB) (Version: - ) Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden ==================== Restore Points ========================= 21-01-2014 20:15:38 Windows Update 28-01-2014 20:43:52 Zaplanowany punkt kontrolny 05-02-2014 18:59:45 Installed OpenOffice 4.0.1 27-02-2014 18:57:13 ComboFix created restore point ==================== Hosts content: ========================== 2012-07-26 06:26 - 2014-02-27 20:17 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {069CFC08-4486-412F-9E69-15EA5F07D1F2} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\Windows\system32\NotificationUI.exe [2013-08-16] (Microsoft Corporation) Task: {15BC8624-2E9E-4197-A0EA-40C0FCAE5948} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2012-08-07] (Hewlett-Packard Company) Task: {188BC4E8-723C-43A0-853A-065ABB261AA2} - System32\Tasks\QtraxPlayer => C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe [2013-09-13] (Microsoft Corporation) Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {2F984DE9-E657-454F-AC3B-B25A275C9F7E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-24] (Google Inc.) Task: {40A1B7E9-8169-414B-A7E9-EB72EB9D6B0B} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-08-29] (Synaptics Incorporated) Task: {56BED525-B822-4325-825E-3A94465D3579} - System32\Tasks\PC Performer_UPDATES => C:\Program Files (x86)\PC Performer\PCPerformer.exe [2013-06-19] (PerformerSoft LLC) <==== ATTENTION Task: {57D3CB53-586E-4702-9601-918B50E49595} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-01-24] (Google Inc.) Task: {61F12EC3-3EFA-449C-BB92-436A3FB622A9} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08] (CyberLink) Task: {67325D6D-853E-4A69-8D2C-A4E2E039C232} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-08-10] (Hewlett-Packard Company) Task: {6BBB3D9D-F6E7-41A7-9A58-8AD779DB1CA2} - System32\Tasks\PC Performer_DEFAULT => C:\Program Files (x86)\PC Performer\PCPerformer.exe [2013-06-19] (PerformerSoft LLC) <==== ATTENTION Task: {6D538A93-1471-40FE-857A-5771C496943B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-08-10] (Hewlett-Packard Company) Task: {7E9DCA6D-0FF2-464E-B3C8-672E056AB71F} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2013\OneClick.exe [2012-10-15] (TuneUp Software) Task: {81410331-4B06-4389-AA44-FFF4456432CF} - System32\Tasks\BonanzaDealsLiveUpdateTaskMachineUA => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe [2013-12-23] (BonanzaDeals) <==== ATTENTION Task: {997C0B61-DE9B-4E59-8A31-B3F1E319720D} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2012-07-27] (CyberLink) Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {B020BDC5-4253-45BC-8AC4-A4F8FE6DCC5C} - System32\Tasks\BonanzaDealsUpdate => C:\Program <==== ATTENTION Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {D189E008-08E1-40CC-8A74-09A490E11648} - System32\Tasks\AdobeAAMUpdater-1.0-MDH-CZAJKOWSKA-Marcin => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-09-25] (Adobe Systems Incorporated) Task: {E471E703-1BFC-45A0-B124-9B882F6182C0} - System32\Tasks\BonanzaDealsLiveUpdateTaskMachineCore => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe [2013-12-23] (BonanzaDeals) <==== ATTENTION Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {FB192E31-C355-438D-9AA6-F2D95ED09DAD} - System32\Tasks\PC Performer => C:\Program Files (x86)\PC Performer\PCPerformer.exe [2013-06-19] (PerformerSoft LLC) <==== ATTENTION Task: {FF3B8874-7D1C-4F04-B82F-092C909B1ADB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-20] (Adobe Systems Incorporated) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe <==== ATTENTION Task: C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe <==== ATTENTION Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\PC Performer_DEFAULT.job => C:\Program Files (x86)\PC Performer\PCPerformer.exe <==== ATTENTION Task: C:\Windows\Tasks\PC Performer_UPDATES.job => C:\Program Files (x86)\PC Performer\PCPerformer.exe <==== ATTENTION ==================== Loaded Modules (whitelisted) ============= 2012-08-06 11:09 - 2012-08-06 11:09 - 00073728 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2013-09-19 23:32 - 2013-09-19 23:32 - 01102336 _____ () C:\Program Files (x86)\MyPC Backup\x64\System.Data.SQLite.dll 2013-09-19 23:37 - 2013-09-19 23:37 - 00012288 _____ () C:\Program Files (x86)\MyPC Backup\GetText.dll 2013-12-05 19:24 - 2013-12-05 19:24 - 02330440 _____ () C:\Users\Marcin\AppData\Local\Pokki\ocdeskband_0.dll 2013-10-16 18:02 - 2013-10-16 18:02 - 03358064 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll 2011-03-14 16:27 - 2011-03-14 16:27 - 00346976 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2012-08-07 17:15 - 2012-08-07 17:15 - 00384128 _____ () C:\Program Files (x86)\Bluetooth Suite\ContactsApi.dll 2012-08-07 17:11 - 2012-08-07 17:11 - 00020992 _____ () C:\Program Files (x86)\Bluetooth Suite\L10n\pl-PL\BtTray.pl-PL.dll 2013-12-07 22:18 - 2014-01-28 19:09 - 00775872 _____ () C:\Program Files (x86)\Mobogenie\DaemonProcess.exe 2012-08-06 11:08 - 2012-08-06 11:08 - 00103424 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2012-08-06 10:54 - 2012-08-06 10:54 - 00369664 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2013-10-16 18:01 - 2013-10-16 18:01 - 04624240 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe 2013-07-29 19:30 - 2013-07-29 19:30 - 00514048 _____ () C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe 2012-10-19 19:19 - 2012-06-08 04:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2012-06-08 10:34 - 2012-06-08 10:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll 2013-10-17 16:45 - 2013-10-17 16:45 - 32726528 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\libcef.dll 2014-01-26 00:40 - 2014-01-28 19:09 - 00061440 _____ () C:\Program Files (x86)\Mobogenie\Device.dll 2014-01-26 00:40 - 2014-01-28 19:09 - 00471040 _____ () C:\Program Files (x86)\Mobogenie\DCR.dll 2013-03-13 13:42 - 2013-06-05 14:21 - 00071560 _____ () C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\zlib1.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00428032 _____ () C:\Program Files (x86)\PLAY ONLINE\core.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00261632 _____ () C:\Program Files (x86)\PLAY ONLINE\sdk.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00011362 _____ () C:\Program Files (x86)\PLAY ONLINE\mingwm10.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00043008 _____ () C:\Program Files (x86)\PLAY ONLINE\libgcc_s_dw2-1.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 02415104 _____ () C:\Program Files (x86)\PLAY ONLINE\QtCore4.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 09515520 _____ () C:\Program Files (x86)\PLAY ONLINE\QtGui4.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00381952 _____ () C:\Program Files (x86)\PLAY ONLINE\Proxy.DLL 2013-07-29 19:30 - 2013-07-29 19:30 - 00218112 _____ () C:\Program Files (x86)\PLAY ONLINE\Common.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00135168 _____ () C:\Program Files (x86)\PLAY ONLINE\Trace.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00545280 _____ () C:\Program Files (x86)\PLAY ONLINE\PluginContainer.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00238080 _____ () C:\Program Files (x86)\PLAY ONLINE\AtCodec.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00301056 _____ () C:\Program Files (x86)\PLAY ONLINE\DeviceSrvPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00235008 _____ () C:\Program Files (x86)\PLAY ONLINE\NetSrvPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00133120 _____ () C:\Program Files (x86)\PLAY ONLINE\OSDialup.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00159232 _____ () C:\Program Files (x86)\PLAY ONLINE\XCodec.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00157184 _____ () C:\Program Files (x86)\PLAY ONLINE\DataServicePlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00176128 _____ () C:\Program Files (x86)\PLAY ONLINE\CallSrvPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00264704 _____ () C:\Program Files (x86)\PLAY ONLINE\AddrBookSrvPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00217600 _____ () C:\Program Files (x86)\PLAY ONLINE\SmsSrvPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00142336 _____ () C:\Program Files (x86)\PLAY ONLINE\USSDSrvPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00156672 _____ () C:\Program Files (x86)\PLAY ONLINE\STKSrvPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00338432 _____ () C:\Program Files (x86)\PLAY ONLINE\DeviceAppPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00065536 _____ () C:\Program Files (x86)\PLAY ONLINE\OSPowerMgr.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00106496 _____ () C:\Program Files (x86)\PLAY ONLINE\Win7Support.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 01077248 _____ () C:\Program Files (x86)\PLAY ONLINE\AddrBookPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00670720 _____ () C:\Program Files (x86)\PLAY ONLINE\SmsAppPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00550400 _____ () C:\Program Files (x86)\PLAY ONLINE\CallAppPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00547840 _____ () C:\Program Files (x86)\PLAY ONLINE\CallLogSrvPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00158720 _____ () C:\Program Files (x86)\PLAY ONLINE\NetConnectSrvPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00211968 _____ () C:\Program Files (x86)\PLAY ONLINE\DialUpPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00101376 _____ () C:\Program Files (x86)\PLAY ONLINE\OSAdapt.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00180224 _____ () C:\Program Files (x86)\PLAY ONLINE\NDISPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00131072 _____ () C:\Program Files (x86)\PLAY ONLINE\OSNDIS.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 01101824 _____ () C:\Program Files (x86)\PLAY ONLINE\NDISAPI.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00278528 _____ () C:\Program Files (x86)\PLAY ONLINE\NetInfoSrvPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00062976 _____ () C:\Program Files (x86)\PLAY ONLINE\OSCall.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00495104 _____ () C:\Program Files (x86)\PLAY ONLINE\DeviceMgrUIPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00123392 _____ () C:\Program Files (x86)\PLAY ONLINE\ATR2SMgr.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00190464 _____ () C:\Program Files (x86)\PLAY ONLINE\XFramePlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00310272 _____ () C:\Program Files (x86)\PLAY ONLINE\StatusBarMgrPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00118272 _____ () C:\Program Files (x86)\PLAY ONLINE\LayoutPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00427008 _____ () C:\Program Files (x86)\PLAY ONLINE\DialupUIPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00334848 _____ () C:\Program Files (x86)\PLAY ONLINE\MainpagePlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 01148416 _____ () C:\Program Files (x86)\PLAY ONLINE\QtNetwork4.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00093184 _____ () C:\Program Files (x86)\PLAY ONLINE\NotifyServicePlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00333312 _____ () C:\Program Files (x86)\PLAY ONLINE\NetConnectPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00249344 _____ () C:\Program Files (x86)\PLAY ONLINE\MenuMgrPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00384512 _____ () C:\Program Files (x86)\PLAY ONLINE\USSDUIPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00483328 _____ () C:\Program Files (x86)\PLAY ONLINE\NetInfoUIExPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00808960 _____ () C:\Program Files (x86)\PLAY ONLINE\SMSUIPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00739328 _____ () C:\Program Files (x86)\PLAY ONLINE\AddrBookUIPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00269824 _____ () C:\Program Files (x86)\PLAY ONLINE\LiveUpdateInterface.DLL 2013-07-29 19:30 - 2013-07-29 19:30 - 00240128 _____ () C:\Program Files (x86)\PLAY ONLINE\ToolBarMgrPlugin.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00082944 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qgif4.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00081920 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qico4.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00192000 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qjpeg4.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00350720 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qmng4.dll 2013-07-29 19:30 - 2013-07-29 19:30 - 00370176 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qtiff4.dll 2014-02-19 21:01 - 2014-02-19 21:01 - 03578992 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2013-09-07 03:11 - 2013-09-07 03:11 - 00569856 _____ () C:\Users\Marcin\AppData\Local\Pokki\Engine\ppGoogleNaClPluginChrome.dll 2013-09-07 03:11 - 2013-09-07 03:11 - 01400846 _____ () C:\Users\Marcin\AppData\Local\Pokki\Engine\avcodec-54.dll 2013-09-07 03:11 - 2013-09-07 03:11 - 00151054 _____ () C:\Users\Marcin\AppData\Local\Pokki\Engine\avutil-51.dll 2013-09-07 03:11 - 2013-09-07 03:11 - 00222734 _____ () C:\Users\Marcin\AppData\Local\Pokki\Engine\avformat-54.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver" ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/27/2014 06:49:20 PM) (Source: Customer Experience Improvement Program) (User: ) Description: 80070005 Error: (02/27/2014 05:59:26 PM) (Source: Customer Experience Improvement Program) (User: ) Description: 80070005 Error: (02/27/2014 00:31:40 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 8767 Error: (02/27/2014 00:31:40 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 8767 Error: (02/27/2014 00:31:40 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/27/2014 00:31:38 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 7176 Error: (02/27/2014 00:31:38 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 7176 Error: (02/27/2014 00:31:38 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/27/2014 00:31:37 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5351 Error: (02/27/2014 00:31:37 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 5351 System errors: ============= Error: (02/27/2014 08:17:15 PM) (Source: Service Control Manager) (User: ) Description: Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error: (02/27/2014 08:15:58 PM) (Source: Application Popup) (User: ) Description: \??\C:\ComboFix\catchme.sys Error: (02/27/2014 08:09:55 PM) (Source: Service Control Manager) (User: ) Description: Usługa PEVSystemStart jest oznaczona jako usługa interakcyjna. System jest jednak skonfigurowany tak, aby nie zezwalać na usługi interakcyjne, dlatego ta usługa może nie działać właściwie. Error: (02/25/2014 08:45:25 PM) (Source: Schannel) (User: ZARZĄDZANIE NT) Description: Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. Error: (02/25/2014 08:45:24 PM) (Source: Schannel) (User: ZARZĄDZANIE NT) Description: Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. Error: (02/25/2014 08:45:18 PM) (Source: Schannel) (User: ZARZĄDZANIE NT) Description: Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. Error: (02/25/2014 08:45:16 PM) (Source: Schannel) (User: ZARZĄDZANIE NT) Description: Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. Error: (02/25/2014 08:39:58 PM) (Source: Service Control Manager) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi LanmanWorkstation. Error: (02/25/2014 08:39:27 PM) (Source: Service Control Manager) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi NlaSvc. Error: (02/24/2014 10:45:17 PM) (Source: Schannel) (User: ZARZĄDZANIE NT) Description: Wygenerowano alert krytyczny, który został wysłany do zdalnego punktu końcowego. W efekcie połączenie może zostać zakończone. Kod błędu krytycznego zdefiniowany przez protokół TLS to 10. Kod stanu błędu SChannel w systemie Windows to 10. Microsoft Office Sessions: ========================= Error: (02/27/2014 06:49:20 PM) (Source: Customer Experience Improvement Program)(User: ) Description: 80070005 Error: (02/27/2014 05:59:26 PM) (Source: Customer Experience Improvement Program)(User: ) Description: 80070005 Error: (02/27/2014 00:31:40 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 8767 Error: (02/27/2014 00:31:40 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 8767 Error: (02/27/2014 00:31:40 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/27/2014 00:31:38 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 7176 Error: (02/27/2014 00:31:38 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 7176 Error: (02/27/2014 00:31:38 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/27/2014 00:31:37 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5351 Error: (02/27/2014 00:31:37 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 5351 CodeIntegrity Errors: =================================== Date: 2014-02-27 20:15:58.212 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Percentage of memory in use: 58% Total physical RAM: 3674.25 MB Available physical RAM: 1525.86 MB Total Pagefile: 4314.25 MB Available Pagefile: 2016.31 MB Total Virtual: 8192 MB Available Virtual: 8191.77 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:450.74 GB) (Free:400.48 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (RECOVERY) (Fixed) (Total:14.25 GB) (Free:1.89 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive f: (PLAY ONLINE) (CDROM) (Total:0.03 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 466 GB) (Disk ID: 1FB83FB5) Partition: GPT Partition Type. ==================== End Of Log ============================