Additional scan result of Farbar Recovery Scan Tool (x86) Version:01-06-2014 Ran by weronika at 2014-06-01 16:30:45 Running from C:\Users\weronika\Desktop\BEZPIECZENSTWO Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== ABBYY FineReader 6.0 Sprint (HKLM\...\{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}) (Version: 6.00.1990.41618 - ABBYY Software House) Adobe Flash Player 10 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 10.0.12.36 - Adobe Systems Incorporated) Adobe Reader 9 - Polish (HKLM\...\{AC76BA86-7AD7-1045-7B44-A90000000001}) (Version: 9.0.0 - Adobe Systems Incorporated) Advanced Audio FX Engine (HKLM\...\Advanced Audio FX Engine) (Version: - ) Archiwizator WinRAR (HKLM\...\WinRAR archiver) (Version: - ) ATI Catalyst Control Center (HKLM\...\{055EE59D-217B-43A7-ABFF-507B966405D8}) (Version: 2.008.0703.2235 - ) Auslogics Disk Defrag (HKLM\...\{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1) (Version: version 3.3 - Auslogics Software Pty Ltd) Auslogics Registry Defrag (HKLM\...\{D627784F-B3EE-44E8-96B1-9509B991EA34}_is1) (Version: version 6.2 - Auslogics Software Pty Ltd) AutoCAD 2011 - Polski (HKLM\...\AutoCAD 2011 - Polski) (Version: 18.1.49.0 - Autodesk) AutoCAD 2011 - Polski (Version: 18.1.49.0 - Autodesk) Hidden AutoCAD 2011 Language Pack - Polski (Version: 18.1.49.0 - Autodesk) Hidden Autodesk Material Library 2011 (HKLM\...\{9DEABCB6-B759-4D52-92F8-51B34A2B4D40}) (Version: 2.0.0.49 - Autodesk) Autodesk Material Library 2011 Base Image library (HKLM\...\{CD1E078C-A6B9-47DA-B035-6365C85C7832}) (Version: 2.0.0.49 - Autodesk) avast! Free Antivirus (HKLM\...\avast) (Version: 9.0.2007 - Avast Software) Babylon toolbar on IE (HKLM\...\BabylonToolbar) (Version: - BabylonToolbar) <==== ATTENTION BabylonObjectInstaller (HKLM\...\{E55E7026-EF2A-4A17-AAA7-DB98EA3FD1B1}) (Version: 2.0.0.4 - Babylon Ltd) <==== ATTENTION Catalyst Control Center - Branding (Version: 1.00.0000 - ATI) Hidden Catalyst Control Center Core Implementation (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Graphics Full Existing (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Graphics Full New (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Graphics Light (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Graphics Previews Common (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Graphics Previews Vista (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center InstallProxy (Version: 2008.0703.2236.38526 - ATI Technologies, Inc.) Hidden Catalyst Control Center Localization Chinese Standard (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Localization Chinese Traditional (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Localization Danish (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Localization Dutch (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Localization Finnish (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Localization French (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Localization German (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Localization Italian (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Localization Japanese (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Localization Korean (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Localization Norwegian (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Localization Portuguese (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Localization Russian (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Localization Spanish (Version: 2008.0703.2236.38526 - ATI) Hidden Catalyst Control Center Localization Swedish (Version: 2008.0703.2236.38526 - ATI) Hidden CCC Help Chinese Standard (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help Chinese Traditional (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help Danish (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help Dutch (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help English (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help Finnish (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help French (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help German (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help Italian (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help Japanese (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help Korean (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help Norwegian (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help Portuguese (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help Russian (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help Spanish (Version: 2008.0703.2235.38526 - ATI) Hidden CCC Help Swedish (Version: 2008.0703.2235.38526 - ATI) Hidden ccc-core-static (Version: 2008.0703.2236.38526 - ATI) Hidden ccc-utility (Version: 2008.0703.2236.38526 - ATI) Hidden CCleaner (HKLM\...\CCleaner) (Version: 3.14 - Piriform) Cisco EAP-FAST Module (HKLM\...\{415B2719-AD3A-4944-B404-C472DB6085B3}) (Version: 2.1.6 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM\...\{83770D14-21B9-44B3-8689-F7B523F94560}) (Version: 1.0.12 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM\...\{669C7BD8-DAA2-49B6-966C-F1E2AAE6B17E}) (Version: 1.0.13 - Cisco Systems, Inc.) Dell Edoc Viewer (HKLM\...\{3138EAD3-700B-4A10-B617-B3F8096EE30D}) (Version: 1.0.0 - Dell Inc) Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.2.101.209 - Alps Electric) Dell Webcam Central (HKLM\...\Dell Webcam Central) (Version: - ) Dell Wireless WLAN Card Utility (HKLM\...\Broadcom 802.11 Application) (Version: 5.10.38.30 - Dell Inc.) English Translator 3 (HKLM\...\ET3) (Version: - ) FARO LS 1.1.406.58 (HKLM\...\{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}) (Version: 4.6.58.2 - FARO Scanner Production) Integrated Webcam Driver (1.05.02.1227) (HKLM\...\Creative OA001) (Version: 1.05.02.1227 - Creative Technology Ltd.) ITECIR Driver (Version: 1.00.000 - ITE) Hidden Java(TM) 6 Update 11 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216011FF}) (Version: 6.0.110 - Sun Microsystems, Inc.) K-Lite Codec Pack 3.4.0 Standard (HKLM\...\KLiteCodecPack_is1) (Version: 3.40 - ) Lexmark 4800 Series (HKLM\...\Lexmark 4800 Series) (Version: - Lexmark International, Inc.) Live! Cam Avatar Creator (HKLM\...\{65D0C510-D7B6-4438-9FC8-E6B91115AB0D}) (Version: 4.6.1419.1 - Creative Technology Ltd) Lizardtech DjVu Control (HKLM\...\{105CFC7C-6992-11D5-BD9D-000102C10FD8}) (Version: - ) Malwarebytes Anti-Malware wersja 2.0.1.1004 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.1.1004 - Malwarebytes Corporation) MediaDirect (HKLM\...\{9C6978E8-B6D0-4AB7-A7A0-D81A74FBF745}) (Version: 4.0 - Dell) Microsoft .NET Framework 3.5 Language Pack SP1 - plk (Version: 3.5.30729 - Microsoft Corporation) Hidden Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile PLK Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office PowerPoint Viewer 2007 (Polish) (HKLM\...\{95120000-00AF-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (HKLM\...\{90110415-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Nero 7 Essentials (HKLM\...\{66EBD70F-A42C-475F-AEDF-277378151045}) (Version: 7.02.9491 - Nero AG) neroxml (Version: 1.0.0 - Nero AG) Hidden Oprogramowanie faksowe Lexmark (HKLM\...\Lexmark Fax Solutions) (Version: - ) Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - plk) (Version: - Microsoft Corporation) Pakiet zgodności dla systemu Office 2007 (HKLM\...\{90120000-0020-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) PDF Reader (HKCU\...\PDF Reader) (Version: - ) PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.3 - Frank Heindörfer, Philip Chinery) Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation) QuickSet (HKLM\...\{C4972073-2BFE-475D-8441-564EA97DA161}) (Version: 9.2.6 - Dell Inc.) Roxio Creator Audio (Version: 3.7.0 - Roxio) Hidden Roxio Creator Copy (Version: 3.7.0 - Roxio) Hidden Roxio Creator Data (Version: 3.7.0 - Roxio) Hidden Roxio Creator DE (HKLM\...\{09760D42-E223-42AD-8C3E-55B47D0DDAC3}) (Version: 10.1 - Roxio) Roxio Creator DE (Version: 3.7.0 - Roxio) Hidden Roxio Creator Tools (Version: 3.7.0 - Roxio) Hidden Roxio Express Labeler 3 (Version: 3.2.1 - Roxio) Hidden Roxio Update Manager (Version: 6.0.0 - Roxio) Hidden Russkij Translator (HKLM\...\RT) (Version: - ) Skins (Version: 2008.0703.2236.38526 - ATI) Hidden SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.7.1018 - SUPERAntiSpyware.com) Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (HKLM\...\{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}.KB963707) (Version: 1 - Microsoft Corporation) xp-AntiSpy 3.98-1 (HKLM\...\xp-AntiSpy) (Version: - Christian Taubenheim) ==================== Restore Points ========================= 02-04-2014 16:09:05 Windows Update 05-04-2014 11:08:15 Windows Update 08-04-2014 15:50:50 Windows Update 13-04-2014 14:02:53 Windows Update 14-04-2014 17:52:52 Windows Update 15-04-2014 16:14:35 Windows Update 15-04-2014 20:09:46 avast! antivirus system restore point 15-04-2014 20:17:19 Windows Update 16-04-2014 19:08:49 Windows Update 16-04-2014 19:25:34 Windows Update 20-04-2014 10:52:46 Windows Update 23-04-2014 16:13:51 Windows Update 25-04-2014 16:13:11 Windows Update 29-04-2014 16:00:39 Windows Update 02-05-2014 17:18:07 Windows Update 06-05-2014 14:24:09 Windows Update 12-05-2014 14:24:39 Windows Update 13-05-2014 14:53:27 Windows Update 16-05-2014 18:43:28 Windows Update 16-05-2014 18:55:17 Windows Update 21-05-2014 14:51:42 Windows Update 23-05-2014 14:52:14 Windows Update 29-05-2014 16:00:38 Usunięte blueconnect 31-05-2014 10:35:15 Windows Update ==================== Hosts content: ========================== 2006-11-02 12:23 - 2006-09-18 23:41 - 00000761 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {050B15BB-7BBE-459E-8A22-1B47D20517EF} - System32\Tasks\Launch BCM WLAN Tray => C:\Windows\system32\WLTRAY.EXE [2008-12-22] (Dell Inc.) Task: {18DFD9FC-082E-4E9B-8285-5F21D2B4EDAE} - System32\Tasks\Microsoft\Windows\MobilePC\TMM Task: {4FC29981-2422-48DE-BC6B-DCF3160A51E0} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2013-11-08] (AVAST Software) Task: {5916F864-469C-4391-8604-E4EA141A2699} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\system32\gatherWirelessInfo.vbs [2008-01-21] () Task: {7C5A51E8-1AD7-48C6-8879-257A8A9609F5} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI Task: {8B0E6FAB-F43A-4988-AF0A-A21646C212F0} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages Task: {9ED703A9-5FFD-40D5-895A-4385EE1509DE} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\system32\RacAgent.exe [2008-01-21] (Microsoft Corporation) Task: C:\Windows\Tasks\User_Feed_Synchronization-{9B0967BC-2815-48C6-AD07-B0AD09069B0F}.job => C:\Windows\system32\msfeedssync.exe ==================== Loaded Modules (whitelisted) ============= 2009-04-04 12:45 - 2008-12-22 12:34 - 00026112 _____ () C:\Windows\System32\WLTRYSVC.EXE 2009-04-04 12:45 - 2008-12-22 12:32 - 00054784 _____ () C:\Windows\System32\bcmwlrmt.dll 2014-06-01 11:12 - 2014-06-01 09:14 - 02259456 _____ () C:\Program Files\AVAST Software\Avast\defs\14060100\algo.dll 2009-04-17 20:30 - 2007-05-23 09:42 - 00045056 _____ () C:\Windows\System32\LXF3PMON.DLL 2009-04-17 20:30 - 2007-01-17 14:07 - 00036864 _____ () C:\Windows\System32\LXF3OEM.DLL 2009-04-17 20:30 - 2007-05-23 09:40 - 00032768 _____ () C:\Program Files\Lexmark Fax Solutions\ipcmt.dll 2009-04-17 20:30 - 2007-05-23 09:44 - 00012288 _____ () C:\Windows\System32\LXF3PMRC.DLL 2012-01-16 20:28 - 2001-10-28 18:42 - 00116224 _____ () C:\Windows\System32\pdfcmnnt.dll 2009-04-17 20:33 - 2007-05-25 19:42 - 00113664 _____ () C:\Windows\system32\spool\PRTPROCS\W32X86\lxdedrpp.dll 2009-04-04 22:17 - 2008-11-24 11:16 - 00159744 _____ () C:\Windows\system32\atitmmxx.dll 2013-11-08 23:16 - 2013-11-08 23:17 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2009-04-04 12:45 - 2009-04-04 12:45 - 00014848 _____ () C:\Windows\assembly\GAC_MSIL\AxInterop.WBOCXLib\1.0.0.0__90ba9c70f846762e\AxInterop.WBOCXLib.dll 2008-05-07 21:33 - 2008-05-07 21:33 - 00417792 _____ () C:\Program Files\Adobe\Reader 9.0\Reader\adobexmp.dll 2007-11-16 16:02 - 2007-11-16 16:02 - 00401408 ____R () C:\Program Files\Adobe\Reader 9.0\Reader\cryptocme2.dll 2007-11-16 16:02 - 2007-11-16 16:02 - 00479232 ____R () C:\Program Files\Adobe\Reader 9.0\Reader\ccme_base.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData\TEMP:587EB586 ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^QuickSet.lnk => C:\Windows\pss\QuickSet.lnk.CommonStartup MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" MSCONFIG\startupreg: Apoint => C:\Program Files\DellTPad\Apoint.exe MSCONFIG\startupreg: BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} => "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" MSCONFIG\startupreg: Broadcom Wireless Manager UI => C:\Windows\system32\WLTRAY.exe MSCONFIG\startupreg: Dell Webcam Central => "C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell.exe" /mode2 MSCONFIG\startupreg: facemoods => "C:\Program Files\facemoods.com\facemoods\1.4.17.11\facemoodssrv.exe" /md I MSCONFIG\startupreg: FaxCenterServer => "C:\Program Files\Lexmark Fax Solutions\fm3032.exe" /s MSCONFIG\startupreg: lxdeamon => "C:\Program Files\Lexmark 4800 Series\lxdeamon.exe" MSCONFIG\startupreg: lxdemon.exe => "C:\Program Files\Lexmark 4800 Series\lxdemon.exe" MSCONFIG\startupreg: NeroFilterCheck => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe MSCONFIG\startupreg: PCMService => "C:\Program Files\Dell\MediaDirect\PCMService.exe" MSCONFIG\startupreg: SysTrayApp => %ProgramFiles%\IDT\WDM\sttray.exe MSCONFIG\startupreg: WMPNSCFG => C:\Program Files\Windows Media Player\WMPNSCFG.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/01/2014 02:00:48 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/01/2014 11:11:02 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 11:55:22 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 11:16:17 PM) (Source: EventSystem) (EventID: 4621) (User: ) Description: 80070005EventSystem.EventSubscription{AA44355E-6911-4447-BA5D-6720480579AF}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000} Error: (05/31/2014 09:49:25 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 07:47:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 04:45:28 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 03:46:27 PM) (Source: EventSystem) (EventID: 4621) (User: ) Description: 80070005EventSystem.EventSubscription{AA44355E-6911-4447-BA5D-6720480579AF}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000} Error: (05/31/2014 00:27:03 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/30/2014 06:37:37 PM) (Source: EventSystem) (EventID: 4621) (User: ) Description: 80070005EventSystem.EventSubscription{CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000} System errors: ============= Error: (06/01/2014 04:28:56 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Menedżer połączeń usługi Dostęp zdalnyTelefonia%%1058 Error: (06/01/2014 04:28:56 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Menedżer połączeń usługi Dostęp zdalnyTelefonia%%1058 Error: (06/01/2014 04:28:56 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Menedżer połączeń usługi Dostęp zdalnyTelefonia%%1058 Error: (06/01/2014 04:28:56 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Menedżer połączeń usługi Dostęp zdalnyTelefonia%%1058 Error: (06/01/2014 04:28:56 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Menedżer połączeń usługi Dostęp zdalnyTelefonia%%1058 Error: (06/01/2014 04:28:56 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Menedżer połączeń usługi Dostęp zdalnyTelefonia%%1058 Error: (06/01/2014 04:28:56 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Menedżer połączeń usługi Dostęp zdalnyTelefonia%%1058 Error: (06/01/2014 04:28:56 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Menedżer połączeń usługi Dostęp zdalnyTelefonia%%1058 Error: (06/01/2014 04:23:43 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Menedżer połączeń usługi Dostęp zdalnyTelefonia%%1058 Error: (06/01/2014 04:23:38 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Menedżer połączeń usługi Dostęp zdalnyTelefonia%%1058 Microsoft Office Sessions: ========================= Error: (06/01/2014 02:00:48 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/01/2014 11:11:02 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 11:55:22 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 11:16:17 PM) (Source: EventSystem) (EventID: 4621) (User: ) Description: 80070005EventSystem.EventSubscription{AA44355E-6911-4447-BA5D-6720480579AF}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000} Error: (05/31/2014 09:49:25 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 07:47:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 04:45:28 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/31/2014 03:46:27 PM) (Source: EventSystem) (EventID: 4621) (User: ) Description: 80070005EventSystem.EventSubscription{AA44355E-6911-4447-BA5D-6720480579AF}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000} Error: (05/31/2014 00:27:03 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (05/30/2014 06:37:37 PM) (Source: EventSystem) (EventID: 4621) (User: ) Description: 80070005EventSystem.EventSubscription{CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000} CodeIntegrity Errors: =================================== Date: 2014-06-01 16:30:36.827 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-01 16:30:36.530 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-01 16:30:36.265 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-01 16:30:36.047 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-01 16:30:35.579 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-01 16:30:35.314 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-01 16:30:35.095 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-01 16:30:34.877 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\mbamchameleon.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-01 16:30:11.773 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2014-06-01 16:30:11.524 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Percentage of memory in use: 63% Total physical RAM: 2042.13 MB Available physical RAM: 755.55 MB Total Pagefile: 4331.54 MB Available Pagefile: 2628.12 MB Total Virtual: 2047.88 MB Available Virtual: 1891.37 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:222.65 GB) (Free:60.77 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (RECOVERY) (Fixed) (Total:10 GB) (Free:5.5 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 233 GB) (Disk ID: E0000000) Partition 1: (Not Active) - (Size=235 MB) - (Type=DE) Partition 2: (Not Active) - (Size=10 GB) - (Type=07 NTFS) Partition 3: (Active) - (Size=223 GB) - (Type=07 NTFS) ==================== End Of Log ============================