Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-10-2014 Ran by Toradora at 2014-10-11 16:39:44 Running from C:\Users\Toradora\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: - Asmedia Technology) Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}) (Version: - Asmedia Technology) avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2021 - AVAST Software) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 38.0.2125.101 - Google Inc.) Google Update Helper (x32 Version: - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: - Intel Corporation) Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle) Java Auto Updater (x32 Version: - Oracle, Inc.) Hidden League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Malwarebytes Anti-Malware wersja (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: - Malwarebytes Corporation) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile PLK Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Extended PLK Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Mozilla Firefox 32.0.3 (x86 pl) (HKLM-x32\...\Mozilla Firefox 32.0.3 (x86 pl)) (Version: 32.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 32.0.3 - Mozilla) MSI Afterburner 2.1.0 (HKLM-x32\...\Afterburner) (Version: 2.1.0 - MSI Co., LTD) NVIDIA Install Application (Version: - NVIDIA Corporation) Hidden NVIDIA Oprogramowanie systemu PhysX 9.10.0514 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.10.0514 - NVIDIA Corporation) NVIDIA PhysX (x32 Version: 9.10.0514 - NVIDIA Corporation) Hidden NVIDIA Stereoscopic 3D Driver (x32 Version: - NVIDIA Corporation) Hidden NVIDIA Sterownik 3D Vision 267.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 267.60 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: - NVIDIA Corporation) NVIDIA Sterownik graficzny 267.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 267.60 - NVIDIA Corporation) Panel sterowania NVIDIA 267.60 (Version: 267.60 - NVIDIA Corporation) Hidden Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended PLK Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.) Winki (HKLM-x32\...\{81CF5153-38CF-41e2-AC3C-3D477C987D96}_is1) (Version: 3.2.116 - MSI) WinRAR 5.11 (32-bitowy) (HKLM-x32\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 10-10-2014 14:39:54 Zainstalowane Realtek Ethernet Controller Driver 10-10-2014 15:46:18 avast! antivirus system restore point 10-10-2014 15:50:31 Windows Update 10-10-2014 16:46:48 Zainstalowano: Microsoft Visual C++ 2005 Redistributable (x64) 10-10-2014 16:48:11 Zainstalowano: Microsoft Visual C++ 2005 Redistributable 10-10-2014 16:49:20 Installed League of Legends 10-10-2014 16:49:43 Zainstalowany program DirectX 10-10-2014 17:05:23 Installed Microsoft XNA Framework Redistributable 4.0 11-10-2014 09:02:04 Windows Update 11-10-2014 14:11:58 Installed Java 7 Update 67 11-10-2014 14:15:01 Removed Java 7 Update 67 11-10-2014 14:16:14 Installed Java 7 Update 67 ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0252C39C-3F0B-40A4-A507-4A762580E591} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-10-10] (AVAST Software) Task: {F0374817-8B5C-41F1-8107-CDB464AEFB20} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-10] (Google Inc.) Task: {F389CB5D-6DC2-4147-A249-EF53CFE00A65} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-10] (Google Inc.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-10-10 17:48 - 2014-10-10 17:48 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll 2014-10-11 10:59 - 2014-10-11 10:59 - 02873856 _____ () C:\Program Files\AVAST Software\Avast\defs\14101100\algo.dll 2014-10-10 17:48 - 2014-10-10 17:48 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2014-10-10 17:51 - 2014-10-01 07:54 - 01042760 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.101\libglesv2.dll 2014-10-10 17:51 - 2014-10-01 07:54 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.101\libegl.dll 2014-10-10 17:51 - 2014-10-01 07:54 - 08911176 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.101\pdf.dll 2014-10-10 17:51 - 2014-10-01 07:54 - 01681224 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.101\ffmpegsumo.dll 2014-10-10 17:51 - 2014-10-01 07:54 - 14891848 _____ () C:\Program Files (x86)\Google\Chrome\Application\38.0.2125.101\PepperFlash\pepflashplayer.dll 2014-10-11 16:33 - 2014-09-24 07:09 - 03715184 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2011-03-08 13:02 - 2011-03-08 13:02 - 00237160 _____ () C:\Program Files (x86)\NVIDIA Corporation\3D Vision\Nv3DVStreaming.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-3565540839-272650501-1161441506-500 - Administrator - Disabled) Gość (S-1-5-21-3565540839-272650501-1161441506-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3565540839-272650501-1161441506-1002 - Limited - Enabled) Toradora (S-1-5-21-3565540839-272650501-1161441506-1000 - Administrator - Enabled) => C:\Users\Toradora ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (10/11/2014 04:30:44 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: Terraria.exe, wersja:, sygnatura czasowa: 0x537510f8 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7601.17514, sygnatura czasowa: 0x4ce7bafa Kod wyjątku: 0xe0434352 Przesunięcie błędu: 0x0000b727 Identyfikator procesu powodującego błąd: 0xfdc Godzina uruchomienia aplikacji powodującej błąd: 0xTerraria.exe0 Ścieżka aplikacji powodującej błąd: Terraria.exe1 Ścieżka modułu powodującego błąd: Terraria.exe2 Identyfikator raportu: Terraria.exe3 Error: (10/11/2014 04:30:43 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Aplikacja: Terraria.exe Wersja architektury: v4.0.30319 Opis: proces został przerwany z powodu nieobsłużonego wyjątku. Informacje o wyjątku: System.IO.FileNotFoundException Stos: w Terraria.Program.Main(System.String[]) Error: (10/11/2014 04:25:17 PM) (Source: MsiInstaller) (EventID: 10005) (User: Aisaka) Description: Product: Search App by Ask -- Error 25001. The following applications must be closed before continuing the uninstall: Google Chrome Error: (10/11/2014 04:25:15 PM) (Source: MsiInstaller) (EventID: 10005) (User: Aisaka) Description: Product: Search App by Ask -- Error 25001. The following applications must be closed before continuing the uninstall: Google Chrome Error: (10/11/2014 04:25:14 PM) (Source: MsiInstaller) (EventID: 10005) (User: Aisaka) Description: Product: Search App by Ask -- Error 25001. The following applications must be closed before continuing the uninstall: Google Chrome Error: (10/11/2014 04:25:14 PM) (Source: MsiInstaller) (EventID: 10005) (User: Aisaka) Description: Product: Search App by Ask -- Error 25001. The following applications must be closed before continuing the uninstall: Google Chrome Error: (10/11/2014 04:25:14 PM) (Source: MsiInstaller) (EventID: 10005) (User: Aisaka) Description: Product: Search App by Ask -- Error 25001. The following applications must be closed before continuing the uninstall: Google Chrome Error: (10/11/2014 04:25:13 PM) (Source: MsiInstaller) (EventID: 10005) (User: Aisaka) Description: Product: Search App by Ask -- Error 25001. The following applications must be closed before continuing the uninstall: Google Chrome Error: (10/11/2014 04:25:13 PM) (Source: MsiInstaller) (EventID: 10005) (User: Aisaka) Description: Product: Search App by Ask -- Error 25001. The following applications must be closed before continuing the uninstall: Google Chrome Error: (10/11/2014 04:17:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: Terraria.exe, wersja:, sygnatura czasowa: 0x537510f8 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7601.17514, sygnatura czasowa: 0x4ce7bafa Kod wyjątku: 0xe0434352 Przesunięcie błędu: 0x0000b727 Identyfikator procesu powodującego błąd: 0x146c Godzina uruchomienia aplikacji powodującej błąd: 0xTerraria.exe0 Ścieżka aplikacji powodującej błąd: Terraria.exe1 Ścieżka modułu powodującego błąd: Terraria.exe2 Identyfikator raportu: Terraria.exe3 System errors: ============= Error: (10/11/2014 04:13:13 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Usługa raportowania błędów systemu Windows. Error: (10/11/2014 00:17:46 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x8024d00e: Windows Update Core. Error: (10/10/2014 06:20:18 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 17:51:50 na ‎2014-‎10-‎10 było nieoczekiwane. Microsoft Office Sessions: ========================= Error: (10/11/2014 04:30:44 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Terraria.exe1.2.4.1537510f8KERNELBASE.dll6.1.7601.175144ce7bafae04343520000b727fdc01cfe55ff064148eE:\Trr\Terraria.exeC:\Windows\syswow64\KERNELBASE.dll2e88776d-5153-11e4-b9a3-8c89a5bfa8d8 Error: (10/11/2014 04:30:43 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Aplikacja: Terraria.exe Wersja architektury: v4.0.30319 Opis: proces został przerwany z powodu nieobsłużonego wyjątku. Informacje o wyjątku: System.IO.FileNotFoundException Stos: w Terraria.Program.Main(System.String[]) Error: (10/11/2014 04:25:17 PM) (Source: MsiInstaller) (EventID: 10005) (User: Aisaka) Description: Product: Search App by Ask -- Error 25001. The following applications must be closed before continuing the uninstall: Google Chrome (NULL)(NULL)(NULL)(NULL)(NULL) Error: (10/11/2014 04:25:15 PM) (Source: MsiInstaller) (EventID: 10005) (User: Aisaka) Description: Product: Search App by Ask -- Error 25001. The following applications must be closed before continuing the uninstall: Google Chrome (NULL)(NULL)(NULL)(NULL)(NULL) Error: (10/11/2014 04:25:14 PM) (Source: MsiInstaller) (EventID: 10005) (User: Aisaka) Description: Product: Search App by Ask -- Error 25001. The following applications must be closed before continuing the uninstall: Google Chrome (NULL)(NULL)(NULL)(NULL)(NULL) Error: (10/11/2014 04:25:14 PM) (Source: MsiInstaller) (EventID: 10005) (User: Aisaka) Description: Product: Search App by Ask -- Error 25001. The following applications must be closed before continuing the uninstall: Google Chrome (NULL)(NULL)(NULL)(NULL)(NULL) Error: (10/11/2014 04:25:14 PM) (Source: MsiInstaller) (EventID: 10005) (User: Aisaka) Description: Product: Search App by Ask -- Error 25001. The following applications must be closed before continuing the uninstall: Google Chrome (NULL)(NULL)(NULL)(NULL)(NULL) Error: (10/11/2014 04:25:13 PM) (Source: MsiInstaller) (EventID: 10005) (User: Aisaka) Description: Product: Search App by Ask -- Error 25001. The following applications must be closed before continuing the uninstall: Google Chrome (NULL)(NULL)(NULL)(NULL)(NULL) Error: (10/11/2014 04:25:13 PM) (Source: MsiInstaller) (EventID: 10005) (User: Aisaka) Description: Product: Search App by Ask -- Error 25001. The following applications must be closed before continuing the uninstall: Google Chrome (NULL)(NULL)(NULL)(NULL)(NULL) Error: (10/11/2014 04:17:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Terraria.exe1.2.4.1537510f8KERNELBASE.dll6.1.7601.175144ce7bafae04343520000b727146c01cfe55e168b6b5dE:\Trr\Terraria.exeC:\Windows\syswow64\KERNELBASE.dll54ad85bf-5151-11e4-b9a3-8c89a5bfa8d8 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-2320 CPU @ 3.00GHz Percentage of memory in use: 68% Total physical RAM: 4076.87 MB Available physical RAM: 1280.18 MB Total Pagefile: 8151.94 MB Available Pagefile: 5045.92 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:130.7 GB) (Free:109.08 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:200.2 GB) (Free:199.86 GB) NTFS Drive e: () (Fixed) (Total:200.2 GB) (Free:199.79 GB) NTFS Drive f: () (Fixed) (Total:200.2 GB) (Free:199.55 GB) NTFS Drive g: () (Fixed) (Total:200.2 GB) (Free:199.31 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 5FFFB45D) Partition 1: (Active) - (Size=130.7 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=800.8 GB) - (Type=05) ==================== End Of Log ============================