Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-12-2014 Ran by ADMIN at 2014-12-09 18:53:18 Running from C:\ Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.00 - Adobe Systems) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.8.0.1430 - Adobe Systems Incorporated) Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.223 - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.223 - Adobe Systems Incorporated) Aktualizacje NVIDIA 10.11.15 (Version: 10.11.15 - NVIDIA Corporation) Hidden Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.7 - Atheros Communications Inc.) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software) Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6514.5001 - Microsoft Corporation) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.48.0 - Conexant) DriverIdentifier 4.2.7 (HKLM-x32\...\{40A3E5DB-5EF8-4F04-BF3E-7AB87C4AE85A}_is1) (Version: - DriverIdentifier) Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited) GeForce Experience NvStream Client Components (Version: 1.6.28 - NVIDIA Corporation) Hidden Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.25.5 - Google Inc.) Hidden Google+ Auto Backup (HKLM-x32\...\{A50DE037-B5C0-4C8A-8049-B0C576B313D1}) (Version: 1.0.21.81 - Google) HP Deskjet 2050 J510 series Badanie ulepszeń produktu (HKLM\...\{6F5A03BD-6415-4EA8-99EC-F0A0A163DBB0}) (Version: 22.0.334.0 - Hewlett-Packard Co.) HP Deskjet 2050 J510 series Podstawowe oprogramowanie urządzenia (HKLM\...\{AAD6E537-3EFC-4ECB-825D-C17094DB5076}) (Version: 22.0.334.0 - Hewlett-Packard Co.) HP Deskjet 2050 J510 series Pomoc (HKLM-x32\...\{7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F}) (Version: 140.0.61.61 - Hewlett Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.16432 - HP) HP Update (HKLM-x32\...\{787D1A33-A97B-4245-87C0-7174609A540C}) (Version: 5.002.005.003 - Hewlett-Packard) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.5.235 - Intel Corporation) ipla 2.8 (HKLM-x32\...\ipla) (Version: 2.8 - Redefine Sp z o.o.) K-Lite Codec Pack 10.0.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.0.5 - ) Lenovo EasyCamera (HKLM-x32\...\{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332}) (Version: 13.12.824.1 - Vimicro) LG United Mobile Driver (HKLM-x32\...\{2A3A4BD6-6CE0-4E2A-80D2-1D0FF6ACBFBA}) (Version: 3.7.2.0 - LG Electronics) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110415-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20513.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Mozilla Firefox 33.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 33.1 (x86 pl)) (Version: 33.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) Neurosoft SynTalk 1.5 SAPI (HKLM-x32\...\SynTalk 1.5 SAPI) (Version: - ) NVDA (HKLM-x32\...\NVDA) (Version: 2014.4 - NV Access Limited) NVIDIA GeForce Experience 1.8.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.8.1 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.13.0725 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0725 - NVIDIA Corporation) NVIDIA Sterownik graficzny 327.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.62 - NVIDIA Corporation) NVIDIA Virtual Audio 1.2.19 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver) (Version: 1.2.19 - NVIDIA Corporation) Oprogramowanie mikroukładu Intel® (x32 Version: 10.0.13 - Intel(R) Corporation) Hidden Panel sterowania NVIDIA 327.62 (Version: 327.62 - NVIDIA Corporation) Hidden Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.) PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation) Profesor Henry 6.0 Słownictwo poziom 1 i 2 (HKLM-x32\...\slow_12_60_is1) (Version: - ) RealDownloader (x32 Version: 1.3.3 - RealNetworks, Inc.) Hidden RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer (HKLM-x32\...\RealPlayer 16.0) (Version: 16.0.3 - RealNetworks) RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.1.36.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.1.36.0 - Renesas Electronics Corporation) Hidden Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Search Protection (HKU\S-1-5-21-1064554875-340528550-2733695748-1000\...\Search Protection) (Version: 10.4.0.3 - Spigot, Inc.) <==== ATTENTION SHIELD Streaming (Version: 1.6.85 - NVIDIA Corporation) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation) Skype™ 6.21 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.13 - Synaptics Incorporated) UltraISO Premium V9.36 (HKLM-x32\...\UltraISO_is1) (Version: - ) Window-Eyes PL 8.4 (HKLM-x32\...\{5D8E4471-FDF0-481E-BAF5-A0324C958A1D}) (Version: 8.4 - GW Micro, Inc.) Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation) WinPatrol (HKLM\...\{6A206A04-6BC1-411B-AA04-4E52EDEEADF2}) (Version: 32.0.2014.5 - Ruiware) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-1064554875-340528550-2733695748-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-1064554875-340528550-2733695748-1000_Classes\CLSID\{EDB41B64-2587-4201-83D5-1A8B2371CE0F}\InprocServer32 -> C:\Program Files (x86)\GW Micro\Window-Eyes\WEOffice64.dll (GW Micro, Inc.) ==================== Restore Points ========================= 03-11-2014 10:35:39 Revo Uninstaller's restore point - War Thunder Launcher 1.0.1.335 05-11-2014 14:23:05 Windows Update 08-11-2014 11:44:01 Removed Java 7 Update 40 08-11-2014 11:45:00 Removed Java 7 Update 40 (64-bit) 13-11-2014 06:13:47 Windows Update 20-11-2014 06:17:54 Windows Update 20-11-2014 16:30:11 avast! antivirus system restore point 24-11-2014 08:25:13 Revo Uninstaller's restore point - Auslogics Registry Defrag 24-11-2014 08:28:30 Revo Uninstaller's restore point - Auslogics BoostSpeed 7 24-11-2014 08:30:00 Revo Uninstaller's restore point - Auslogics BoostSpeed 7 09-12-2014 17:13:53 Revo Uninstaller's restore point - Browser Extensions ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2011-10-14 15:53 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {01B13DEE-0EBC-44E7-875D-60A3AC10B86B} - System32\Tasks\Auslogics\BoostSpeed\Start BoostSpeed оn ADMIN logon => C:\Program Files (x86)\Auslogics\BoostSpeed\BoostSpeed.exe Task: {13A3C565-039B-45D2-8C4D-C1AB3603D51E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-22] (Adobe Systems Incorporated) Task: {67581397-A4DE-4933-B0B4-7EF6462D08BB} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-11-20] (AVAST Software) Task: {7F387D79-2AC7-4C93-807A-3E76B785BC2E} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1064554875-340528550-2733695748-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {A81DD5EB-D899-48F0-AD57-B46FB7E0B69A} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1064554875-340528550-2733695748-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-08-14] (RealNetworks, Inc.) Task: {E6B59B20-BBC7-4F70-9C08-16201FBD99A5} - System32\Tasks\Auslogics\BoostSpeed\Scan and Repair => Rundll32.exe TaskSchedulerHelper.dll,RunTask "BoostSpeed.exe" "-UseTray -Schedule" Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2014-01-25 10:54 - 2013-12-09 11:08 - 00147088 _____ () C:\Windows\system32\GWHK64.DLL 2014-01-25 10:54 - 2013-12-09 11:08 - 00147088 _____ () C:\Windows\System32\GWHK64.DLL 2014-01-25 10:54 - 2013-12-09 11:08 - 00437544 _____ () C:\Windows\system32\gwm64inc.dll 2014-01-25 10:54 - 2013-12-09 11:08 - 00026408 _____ () C:\Program Files (x86)\GW Micro\Window-Eyes\weproxea.exe 2014-01-25 10:54 - 2013-12-09 11:07 - 00040744 _____ () C:\Program Files (x86)\GW Micro\Window-Eyes\weserv.exe 2014-12-04 16:28 - 2014-12-04 16:28 - 01127224 _____ () C:\Users\ADMIN\AppData\Roaming\Search Protection\SP.exe 2014-01-25 10:54 - 2013-12-09 11:07 - 00013608 _____ () C:\Program Files (x86)\GW Micro\Window-Eyes\weli.exe 2014-01-25 10:54 - 2013-12-09 11:08 - 00014632 _____ () C:\Program Files (x86)\GW Micro\Window-Eyes\weli64.exe 2014-01-25 10:54 - 2013-12-09 11:08 - 00127784 _____ () C:\Program Files (x86)\GW Micro\Window-Eyes\bdisplay.exe 2014-01-25 10:54 - 2013-12-09 11:07 - 00038696 _____ () C:\Program Files (x86)\GW Micro\Window-Eyes\wecom.exe 2014-12-09 15:02 - 2014-12-09 15:02 - 02905088 _____ () C:\Program Files\AVAST Software\Avast\defs\14120900\algo.dll 2014-12-09 18:51 - 2014-12-09 18:51 - 02905088 _____ () C:\Program Files\AVAST Software\Avast\defs\14120901\algo.dll 2014-01-25 10:54 - 2013-12-09 11:07 - 00079656 _____ () C:\Program Files (x86)\GW Micro\Window-Eyes\gwmvinst.dll 2014-11-20 17:37 - 2014-11-20 17:37 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2014-01-25 10:54 - 2013-12-09 11:09 - 00023848 _____ () C:\Program Files (x86)\GW Micro\Window-Eyes\wespeech.dll 2014-01-25 10:54 - 2013-12-09 11:07 - 00107304 _____ () C:\Program Files (x86)\GW Micro\Window-Eyes\wesp32.dll 2014-01-25 10:54 - 2013-12-09 11:07 - 00043816 _____ () C:\Program Files (x86)\GW Micro\Window-Eyes\wesapi.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Windows:nlsPreferences ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder => "(Default)"="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Audiosrv => "(Default)"="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\drmkaud => "(Default)"="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService => "(Default)"="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HDAudBus => "(Default)"="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MMCSS => "(Default)"="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318} => "(Default)"="Portable Media Devices" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AudioEndpointBuilder => "(Default)"="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Audiosrv => "(Default)"="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\drmkaud => "(Default)"="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HdAudAddService => "(Default)"="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HDAudBus => "(Default)"="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MMCSS => "(Default)"="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96C-E325-11CE-BFC1-08002BE10318} => "(Default)"="Portable Media Devices" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: 331BigDog => C:\Program Files (x86)\USB Camera\VM331STI.EXE MSCONFIG\startupreg: HotKeysCmds => "C:\Windows\system32\hkcmd.exe" MSCONFIG\startupreg: IgfxTray => "C:\Windows\system32\igfxtray.exe" MSCONFIG\startupreg: IPLA! => C:\Program Files (x86)\ipla\ipla.exe /autorun MSCONFIG\startupreg: Nvtmru => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" MSCONFIG\startupreg: Persistence => "C:\Windows\system32\igfxpers.exe" MSCONFIG\startupreg: ShadowPlay => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun ========================= Accounts: ========================== ADMIN (S-1-5-21-1064554875-340528550-2733695748-1000 - Administrator - Enabled) => C:\Users\ADMIN Administrator (S-1-5-21-1064554875-340528550-2733695748-500 - Administrator - Disabled) Gość (S-1-5-21-1064554875-340528550-2733695748-501 - Limited - Disabled) ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (12/09/2014 06:52:03 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: ZARZĄDZANIE NT) Description: Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error: (12/09/2014 06:52:03 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: ZARZĄDZANIE NT) Description: Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error: (12/09/2014 06:52:03 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: ZARZĄDZANIE NT) Description: Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error: (12/09/2014 06:46:50 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/09/2014 06:34:00 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: IEXPLORE.EXE, wersja: 11.0.9600.17420, sygnatura czasowa: 0x545ad233 Nazwa modułu powodującego błąd: MSHTML.dll, wersja: 11.0.9600.17420, sygnatura czasowa: 0x545ae63c Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000b5d72 Identyfikator procesu powodującego błąd: 0x1014 Godzina uruchomienia aplikacji powodującej błąd: 0xIEXPLORE.EXE0 Ścieżka aplikacji powodującej błąd: IEXPLORE.EXE1 Ścieżka modułu powodującego błąd: IEXPLORE.EXE2 Identyfikator raportu: IEXPLORE.EXE3 Error: (12/09/2014 06:16:14 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: ZARZĄDZANIE NT) Description: Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Pierwszy wpis DWORD w sekcji danych (Data) zawiera kod błędu. Error: (12/09/2014 06:16:14 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: ZARZĄDZANIE NT) Description: Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error: (12/09/2014 06:16:14 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: ZARZĄDZANIE NT) Description: Ciągi wydajności w wartości rejestru wydajności są uszkodzone, kiedy proces wykonuje następującą operację na dostawcy licznika rozszerzeń: Performance. Wartość BaseIndex z rejestru wydajności to pierwszy wpis DWORD w sekcji danych Data, wartość LastCounter to drugi wpis DWORD, a wartość LastHelp to trzeci wpis DWORD w sekcji Data. Error: (12/09/2014 06:13:15 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"1". Nie można odnaleźć zestawu zależnego rpshellextension.1.0,language="*",type="win32",version="1.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (12/09/2014 06:13:15 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"1". Nie można odnaleźć zestawu zależnego rpshellextension.1.0,language="*",type="win32",version="1.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. System errors: ============= Error: (12/09/2014 09:04:36 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 01:11:39 na ‎2014-‎12-‎09 było nieoczekiwane. Error: (12/04/2014 09:47:51 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {49F171DD-B51A-40D3-9A6C-52D674CC729D} Error: (12/04/2014 09:41:13 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {49F171DD-B51A-40D3-9A6C-52D674CC729D} Error: (12/01/2014 07:08:50 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 19:07:27 na ‎2014-‎12-‎01 było nieoczekiwane. Error: (11/30/2014 08:10:20 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {49F171DD-B51A-40D3-9A6C-52D674CC729D} Error: (11/30/2014 07:22:29 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {49F171DD-B51A-40D3-9A6C-52D674CC729D} Error: (11/29/2014 09:20:06 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {49F171DD-B51A-40D3-9A6C-52D674CC729D} Error: (11/28/2014 09:54:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi nvda z powodu następującego błędu: %%1053 Error: (11/28/2014 09:54:22 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą nvda. Error: (11/27/2014 10:13:17 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {49F171DD-B51A-40D3-9A6C-52D674CC729D} Microsoft Office Sessions: ========================= Error: (12/09/2014 06:52:03 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: ZARZĄDZANIE NT) Description: WmiApRplWmiApRpl8F20300004D070000 Error: (12/09/2014 06:52:03 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: ZARZĄDZANIE NT) Description: Performance1637070000000000000000000009030000 Error: (12/09/2014 06:52:03 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: ZARZĄDZANIE NT) Description: Performance1637070000000000000000000009030000 Error: (12/09/2014 06:46:50 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/09/2014 06:34:00 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: IEXPLORE.EXE11.0.9600.17420545ad233MSHTML.dll11.0.9600.17420545ae63cc0000005000b5d72101401d013d58490e6d6C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\Windows\system32\MSHTML.dll8f3ad2ec-7fc9-11e4-a2eb-f4b7e2eda5e6 Error: (12/09/2014 06:16:14 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: ZARZĄDZANIE NT) Description: WmiApRplWmiApRpl8F20300004D070000 Error: (12/09/2014 06:16:14 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: ZARZĄDZANIE NT) Description: Performance1637070000000000000000000009030000 Error: (12/09/2014 06:16:14 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: ZARZĄDZANIE NT) Description: Performance1637070000000000000000000009030000 Error: (12/09/2014 06:13:15 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"C:\Windows\Installer\{C8E8D2E3-EF6A-4B1D-A09E-7B27EBE2F3CE}\recordingmanager.exe Error: (12/09/2014 06:13:15 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: rpshellextension.1.0,language="*",type="win32",version="1.0.0.0"C:\Windows\Installer\{C8E8D2E3-EF6A-4B1D-A09E-7B27EBE2F3CE}\recordingmanager.exe ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-3632QM CPU @ 2.20GHz Percentage of memory in use: 12% Total physical RAM: 12156.85 MB Available physical RAM: 10671.63 MB Total Pagefile: 24311.88 MB Available Pagefile: 22810.38 MB Total Virtual: 8192 MB Available Virtual: 8191.85 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:200 GB) (Free:151.39 GB) NTFS Drive d: () (Fixed) (Total:731.41 GB) (Free:711.97 GB) NTFS Drive f: (GSP1RMCULFR) (Removable) (Total:7.25 GB) (Free:4.01 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: AE60B645) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=200 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=731.4 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 7.3 GB) (Disk ID: CAD4EBEA) Partition 4: (Active) - (Size=7.3 GB) - (Type=0C) ==================== End Of Log ============================