Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-01-2015 Ran by Dominik at 2015-01-06 23:12:50 Running from C:\Users\Dominik\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 4500_G510gm_Help (x32 Version: 000.0.439.000 - Hewlett-Packard) Hidden 4500G510gm (x32 Version: 000.0.423.000 - Hewlett-Packard) Hidden 4500G510gm_Software_Min (x32 Version: 000.0.423.000 - Hewlett-Packard) Hidden 64 Bit HP CIO Components Installer (Version: 6.2.1 - Hewlett-Packard) Hidden Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.235 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated) Adobe Flash Player 16 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) AIMP2: Audio Tools (HKLM-x32\...\AIMP2at) (Version: - AIMP DevTeam) AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.55.1355, 14.07.2014 - AIMP DevTeam) ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.206.1717.117 - Alps Electric) AMD Catalyst Install Manager (HKLM\...\{F2A7CE36-57BF-5C86-952D-90DBF3746D82}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.9668 - Perfect World Entertainment) Ashampoo Burning Studio 2015 v.1.15.0 (HKLM-x32\...\{91B33C97-21E3-DF34-9630-2EE80DDE1648}_is1) (Version: 1.15.0 - Ashampoo GmbH & Co. KG) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.2.43 - Atheros Communications Inc.) Audacity 2.0.6 (HKLM-x32\...\Audacity_is1) (Version: 2.0.6 - Audacity Team) AuthenTec TrueAPI (Version: 1.3.0.111 - AuthenTec, Inc.) Hidden Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software) BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform) CDDRV_Installer (Version: 4.24.15 - Logitech) Hidden CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.1.4119 - CyberLink Corp.) Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 130.0.372.000 - Hewlett-Packard) Hidden DocMgr (x32 Version: 130.0.000.000 - Nazwa firmy) Hidden DocProc (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden erLT (x32 Version: 0.72.105 - Logitech, Inc.) Hidden ESU for Microsoft Windows 7 SP1 (HKLM-x32\...\{E96CAA2A-0244-4A2A-8403-0C3C9534778B}) (Version: 2.1.1 - Hewlett-Packard) Fax (x32 Version: 130.0.418.000 - Hewlett-Packard) Hidden Google Drive (HKLM-x32\...\{C60F3836-333A-4AE2-B526-CFDBA143A9BA}) (Version: 1.18.7821.2489 - Google, Inc.) Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden Hewlett-Packard ACLM.NET v1.1.1.0 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden HP 3D DriveGuard (HKLM\...\{488648EF-D1DD-4C20-AF61-8DB16220DF22}) (Version: 4.1.9.1 - Hewlett-Packard Company) HP CoolSense (HKLM-x32\...\{0D8B3696-E52D-4291-B833-9F6AEB1CC4AB}) (Version: 2.1.0 - Hewlett-Packard Company) HP Document Manager 2.0 (HKLM\...\HP Document Manager) (Version: 2.0 - HP) HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP) HP Launch Box (HKLM\...\{9CAB2212-0732-4827-8EC4-61D8EF0AA65B}) (Version: 1.0.11 - Hewlett-Packard Company) HP Officejet 4500 G510g-m (HKLM\...\{E5083D57-D93F-404C-A91F-1C50D67C2BEB}) (Version: 13.0 - HP) HP On Screen Display (HKLM-x32\...\{D7670221-BF9B-4DFF-B26B-5BE55A87329F}) (Version: 1.2.2 - Hewlett-Packard Company) HP Quick Launch (HKLM-x32\...\{ABEF00D0-FCAE-4E47-8D4E-D4AE5FD72B15}) (Version: 2.4.3 - Hewlett-Packard Company) HP SimplePass 2011 (HKLM-x32\...\{31CEFF4E-B6D1-46A5-9169-7C67570E7FFA}) (Version: 5.3.0.163 - Hewlett-Packard) HP Smart Web Printing 4.5 (HKLM\...\HP Smart Web Printing) (Version: 4.5 - HP) HP Software Framework (HKLM-x32\...\{9F31A79A-ABE8-472C-ACE7-A56910855511}) (Version: 4.1.6.1 - Hewlett-Packard Company) HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP) HP Support Assistant (HKLM-x32\...\{CA43FE4F-9FF2-4AD7-88F0-CC3BAC17B226}) (Version: 6.0.5.4 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{7059BDA7-E1DB-442C-B7A1-6144596720A4}) (Version: 4.000.011.006 - Hewlett-Packard) HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6341.0 - IDT) Intel PROSet Wireless (x32 Version: - ) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Display Audio Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 6.14.00.3074 - Intel Corporation) Intel(R) Driver Update Utility 2.0 (x32 Version: 2.0.0.29 - Intel) Hidden Intel(R) Identity Protection Technology 1.1.2.0 (HKLM-x32\...\{C01A86F5-56E7-101F-9BC9-E3F1025EB779}) (Version: 1.1.2.0 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) PROSet/Wireless for Bluetooth(R) 3.0 + High Speed (HKLM\...\{A0E106D2-4815-4B7A-BAA7-7E21B530CFB4}) (Version: 1.1.0.0157 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{006B5C65-3938-4246-B182-994A7E415EDE}) (Version: 1.1.0.0537 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.5.0.1026 - Intel Corporation) Intel(R) WiDi (HKLM-x32\...\{0DD706AF-B542-438C-999E-B30C7F625C8D}) (Version: 2.1.39.0 - Intel Corporation) Intel(R) Wireless Display (HKLM\...\{28EF7372-9087-4AC3-9B9F-D9751FCDF830}) (Version: - ) Intel® Driver Update Utility (HKLM-x32\...\{8409c4f7-2340-4933-a304-5d37db4fb48b}) (Version: 2.0.0.29 - Intel) iWebar (HKLM-x32\...\iWebar) (Version: 1.35.12.18 - iWebar) <==== ATTENTION! Java 8 Update 25 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418025F0}) (Version: 8.0.250 - Oracle Corporation) KhalInstallWrapper (Version: 4.24.99 - Logitech) Hidden K-Lite Codec Pack 10.9.1 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.9.1 - ) Logitech G11 Keyboard Software 1.03 (HKLM\...\{59427B1F-852F-4AF1-8215-E5B12F966D89}) (Version: 1.3.166.0 - Logitech) Logitech SetPoint (HKLM-x32\...\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}) (Version: 4.24 - Logitech) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft) Mozilla Firefox 34.0.5 (x86 pl) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 pl)) (Version: 34.0.5 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Network64 (Version: 130.0.374.000 - Hewlett-Packard) Hidden OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP) Opera Stable 26.0.1656.60 (HKLM-x32\...\Opera 26.0.1656.60) (Version: 26.0.1656.60 - Opera Software ASA) Oprogramowanie Intel(R) PROSet/Wireless WiFi (HKLM\...\{3C41721F-AF0F-4086-AA1C-4C7F29076228}) (Version: 14.01.1000 - Intel Corporation) Oprogramowanie mikroukładu Intel® (x32 Version: 10.0.13 - Intel(R) Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 9.5.3.636 - Electronic Arts, Inc.) Prince Of Persia (HKLM-x32\...\{F3B0AC10-3636-4166-81CF-86CD7A8B0123}) (Version: 1.0 - Ubisoft) PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden Raptr (HKLM-x32\...\Raptr) (Version: - ) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7600.80 - Realtek Semiconductor Corp.) Recovery Manager (x32 Version: 2.0.0 - Hewlett-Packard) Hidden Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden SensePlus (HKLM-x32\...\SensePlus) (Version: 1.35.12.18 - Object Browser) <==== ATTENTION Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) SmartWebPrinting (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden Spotify (HKU\S-1-5-21-361420388-1239155411-725962489-1000\...\Spotify) (Version: 0.9.15.27.g87efe634 - Spotify AB) Status (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 130.0.376.000 - Hewlett-Packard) Hidden Validity WBF DDK (HKLM\...\{79174AF2-6CB1-42F5-981E-66DCA49391D0}) (Version: 4.3.205.0 - Validity Sensors, Inc.) VIP Access SDK (1.0.1.2) (HKLM-x32\...\VIP Access SDK) (Version: 1.0.1.2 - Symantec Inc.) WD Drive Utilities (HKLM-x32\...\{41FB33E8-F7B7-4DAD-97F6-A5FB5C13CE3B}) (Version: 1.0.6.3 - Western Digital Technologies, Inc.) WD Quick View (HKLM-x32\...\{6DD877E2-E782-4C86-83CB-150871BE99C8}) (Version: 2.4.6.3 - Western Digital Technologies, Inc.) WD Security (HKLM-x32\...\{91D4CB50-2839-4436-A272-1215AD05592C}) (Version: 1.0.6.3 - Western Digital Technologies, Inc.) WD SmartWare (HKLM\...\{D3361D60-EF23-435C-A113-7437D4758C51}) (Version: 2.4.6.3 - Western Digital Technologies, Inc.) WD SmartWare Installer (HKLM-x32\...\{1891b882-48f7-442d-98d0-c1ce533f25bd}) (Version: 2.4.6.3 - Western Digital Technologies, Inc.) WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden WinRAR 5.20 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH) Xfire 2.0 (HKLM-x32\...\{43ADAE00-A4ED-4379-A76D-A1FF5D9D334A}_is1) (Version: 2.0 - Xfire, Inc.) Xfire Codec (remove only) (HKLM-x32\...\XfireCodec) (Version: - ) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 02-01-2015 11:29:40 Windows Update 03-01-2015 12:17:38 Zainstalowane Prince Of Persia 03-01-2015 13:09:18 Zainstalowane Prince Of Persia 03-01-2015 13:50:11 Zainstalowane Prince Of Persia 03-01-2015 16:30:29 Zainstalowane Prince Of Persia 03-01-2015 17:15:54 Zainstalowany program DirectX 03-01-2015 17:19:12 Zainstalowano: Microsoft Visual C++ 2005 Redistributable 03-01-2015 17:47:05 Zainstalowany program DirectX 06-01-2015 12:41:26 Restore Point Created by FRST 06-01-2015 22:06:09 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0FF5500F-BA45-4259-B506-931C745CFA39} - System32\Tasks\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-5 => C:\Program Files (x86)\iWebar\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-5.exe [2014-12-30] (iWebar) <==== ATTENTION Task: {18586F65-3161-44DF-A0BA-B9CE3B64CCF9} - System32\Tasks\1873f338-c43d-4456-9380-c002be3d1175-5 => C:\Program Files (x86)\SensePlus\1873f338-c43d-4456-9380-c002be3d1175-5.exe [2014-12-28] (Object Browser) <==== ATTENTION Task: {1880D718-0B5A-4139-B30E-BD54E3F5B266} - System32\Tasks\Leader Technologies\PowerRegister\LGT2 Logitech Registration => C:\Program Files (x86)\Common Files\LogiShrd\eReg\SetPoint\eReg.exe [2007-04-09] (Logitech / Leader Technologies) Task: {18B09DF5-FDFA-4050-9564-98EC305BC338} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2011-06-15] (CyberLink) Task: {1F80EB38-3BD8-44C0-AB3E-2D941BB3CDD9} - System32\Tasks\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-2 => C:\Program Files (x86)\iWebar\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-2.exe [2014-12-30] (iWebar) <==== ATTENTION Task: {30A2CC9B-A358-4C4B-AEB6-2E36CA704BFD} - System32\Tasks\1873f338-c43d-4456-9380-c002be3d1175-5_user => C:\Program Files (x86)\SensePlus\1873f338-c43d-4456-9380-c002be3d1175-5.exe [2014-12-28] (Object Browser) <==== ATTENTION Task: {603B4CA3-AD4C-47E6-A285-C02A72272A2F} - System32\Tasks\1873f338-c43d-4456-9380-c002be3d1175-11 => C:\Program Files (x86)\SensePlus\1873f338-c43d-4456-9380-c002be3d1175-11.exe [2014-12-28] (Object Browser) <==== ATTENTION Task: {619F51F2-46AD-452B-8B62-685E7E6FD6BA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2011-06-21] (Hewlett-Packard Company) Task: {6B2D90A9-51D3-446C-B6B4-5704900C4AD0} - System32\Tasks\1873f338-c43d-4456-9380-c002be3d1175-2 => C:\Program Files (x86)\SensePlus\1873f338-c43d-4456-9380-c002be3d1175-2.exe [2014-12-28] (Object Browser) <==== ATTENTION Task: {70FA3C28-1602-4087-B2AF-AE789B1D8A67} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-12-27] (AVAST Software) Task: {7FD0CA11-0BDC-4177-A7E0-D312DC857AE9} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd) Task: {86F537CB-978E-45F1-B3AB-88118E205F3E} - System32\Tasks\1873f338-c43d-4456-9380-c002be3d1175-4 => C:\Program Files (x86)\SensePlus\1873f338-c43d-4456-9380-c002be3d1175-4.exe [2014-12-28] (Object Browser) <==== ATTENTION Task: {90D2C62D-3DC3-4F90-9165-09D93ADF5FD5} - System32\Tasks\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-5_user => C:\Program Files (x86)\iWebar\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-5.exe [2014-12-30] (iWebar) <==== ATTENTION Task: {9B7F706F-06AF-48F2-83C4-64158F772B75} - System32\Tasks\1873f338-c43d-4456-9380-c002be3d1175-1 => C:\Program Files (x86)\SensePlus\SensePlus-codedownloader.exe [2014-12-28] (Object Browser) <==== ATTENTION Task: {9DB8BEC5-2368-44F4-933B-A27A37313952} - System32\Tasks\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-1 => C:\Program Files (x86)\iWebar\iWebar-codedownloader.exe [2014-12-30] (iWebar) <==== ATTENTION Task: {B265489E-13FD-4256-A30E-1512E1F34CEF} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-27] (Google Inc.) Task: {B99868B6-155A-4D0D-B63A-CFCEAA9D50A6} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_235_pepper.exe [2014-12-27] (Adobe Systems Incorporated) Task: {BBEECEF2-14A7-45C0-9F3B-C72245D9B67E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-27] (Google Inc.) Task: {BC6D36A3-C239-4C34-92C8-BA45352D03EF} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-27] (Adobe Systems Incorporated) Task: {BE6B1118-D8A5-4E91-8A01-EECFC771C8A2} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {C598F1CE-D210-49DC-9410-9B21EFD910B3} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-12-30] (globalUpdate) <==== ATTENTION Task: {CA4EF3F4-7139-4485-BC7A-A003673D52C1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFMessenger\HPSFMsgr.exe [2011-06-21] (Hewlett-Packard Company) Task: {D37630B2-5AE0-4FC7-BFC5-407D9859021E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater\HPSFUpdater.exe [2011-06-14] (Hewlett-Packard) Task: {D9111130-BDEE-49B3-B683-75D2958E8ADF} - System32\Tasks\Opera scheduled Autoupdate 1419684230 => C:\Program Files (x86)\Opera\launcher.exe [2014-12-16] (Opera Software) Task: {DE5C409A-4B5B-41AE-B30A-2947C4DB2DE7} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-12-30] (globalUpdate) <==== ATTENTION Task: {EBD08F10-B078-448A-9E15-5782463B105D} - System32\Tasks\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-11 => C:\Program Files (x86)\iWebar\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-11.exe [2014-12-30] (iWebar) <==== ATTENTION Task: {EBEB6CB1-B05F-4269-A817-12EB2504192A} - System32\Tasks\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-4 => C:\Program Files (x86)\iWebar\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-4.exe [2014-12-30] (iWebar) <==== ATTENTION Task: {F75FD9B5-7E02-4F04-8CF1-DB13E2064701} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2011-06-21] (Hewlett-Packard Company) Task: C:\Windows\Tasks\1873f338-c43d-4456-9380-c002be3d1175-1.job => C:\Program Files (x86)\SensePlus\SensePlus-codedownloader.exe <==== ATTENTION Task: C:\Windows\Tasks\1873f338-c43d-4456-9380-c002be3d1175-11.job => C:\Program Files (x86)\SensePlus\1873f338-c43d-4456-9380-c002be3d1175-11.exe <==== ATTENTION Task: C:\Windows\Tasks\1873f338-c43d-4456-9380-c002be3d1175-2.job => C:\Program Files (x86)\SensePlus\1873f338-c43d-4456-9380-c002be3d1175-2.exe <==== ATTENTION Task: C:\Windows\Tasks\1873f338-c43d-4456-9380-c002be3d1175-4.job => C:\Program Files (x86)\SensePlus\1873f338-c43d-4456-9380-c002be3d1175-4.exe <==== ATTENTION Task: C:\Windows\Tasks\1873f338-c43d-4456-9380-c002be3d1175-5.job => C:\Program Files (x86)\SensePlus\1873f338-c43d-4456-9380-c002be3d1175-5.exe <==== ATTENTION Task: C:\Windows\Tasks\1873f338-c43d-4456-9380-c002be3d1175-5_user.job => C:\Program Files (x86)\SensePlus\1873f338-c43d-4456-9380-c002be3d1175-5.exe <==== ATTENTION Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_235_pepper.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-1.job => C:\Program Files (x86)\iWebar\iWebar-codedownloader.exe <==== ATTENTION Task: C:\Windows\Tasks\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-11.job => C:\Program Files (x86)\iWebar\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-11.exe <==== ATTENTION Task: C:\Windows\Tasks\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-2.job => C:\Program Files (x86)\iWebar\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-2.exe <==== ATTENTION Task: C:\Windows\Tasks\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-4.job => C:\Program Files (x86)\iWebar\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-4.exe <==== ATTENTION Task: C:\Windows\Tasks\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-5.job => C:\Program Files (x86)\iWebar\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-5.exe <==== ATTENTION Task: C:\Windows\Tasks\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-5_user.job => C:\Program Files (x86)\iWebar\cd6fd036-7dfe-4fca-b4e6-f237fe83dfb8-5.exe <==== ATTENTION Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2011-05-02 13:41 - 2011-05-02 13:41 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll 2011-04-15 19:16 - 2011-04-15 19:16 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2011-05-02 13:41 - 2011-05-02 13:41 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\LIBEAY32.dll 2014-12-27 12:30 - 2007-11-15 04:00 - 00077824 _____ () C:\Program Files\Logitech\SetPoint\x86\SetPoint32.exe 2014-12-12 23:25 - 2014-12-12 23:25 - 00057344 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2014-12-27 13:43 - 2014-12-16 16:34 - 00535160 _____ () C:\Program Files (x86)\Opera\26.0.1656.60\opera_crashreporter.exe 2014-12-27 17:08 - 2014-12-27 17:08 - 00374840 _____ () C:\Users\Dominik\AppData\Roaming\Spotify\Data\SpotifyHelper.exe 2015-01-06 12:44 - 2015-01-06 12:44 - 02909696 _____ () C:\Program Files\AVAST Software\Avast\defs\15010600\algo.dll 2015-01-06 21:58 - 2015-01-06 21:58 - 02909696 _____ () C:\Program Files\AVAST Software\Avast\defs\15010601\algo.dll 2015-01-06 21:56 - 2015-01-06 21:56 - 00098816 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\win32api.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00110080 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\pywintypes27.dll 2015-01-06 21:56 - 2015-01-06 21:56 - 00364544 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\pythoncom27.dll 2015-01-06 21:56 - 2015-01-06 21:56 - 00045568 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\_socket.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 01160704 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\_ssl.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00320512 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\win32com.shell.shell.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00713216 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\_hashlib.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 01175040 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\wx._core_.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00805888 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\wx._gdi_.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00811008 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\wx._windows_.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 01062400 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\wx._controls_.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00735232 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\wx._misc_.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00128512 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\_elementtree.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00127488 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\pyexpat.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00557056 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\pysqlite2._sqlite.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00087552 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\_ctypes.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00119808 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\win32file.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00108544 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\win32security.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00007168 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\hashobjs_ext.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00167936 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\win32gui.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00018432 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\win32event.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00038912 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\win32inet.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00011264 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\win32crypt.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00070656 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\wx._html2.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00027136 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\_multiprocessing.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00035840 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\win32process.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00686080 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\unicodedata.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00122368 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\wx._wizard.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00024064 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\win32pipe.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00025600 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\win32pdh.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00525640 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\windows._lib_cacheinvalidation.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00010240 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\select.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00017408 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\win32profile.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00022528 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\win32ts.pyd 2015-01-06 21:56 - 2015-01-06 21:56 - 00078336 _____ () C:\Users\Dominik\AppData\Local\Temp\_MEI43122\wx._animate.pyd 2014-12-27 13:11 - 2014-12-27 13:11 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2010-11-22 23:56 - 2010-11-22 23:56 - 00087040 _____ () C:\Program Files (x86)\Raptr\_ctypes.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00043008 _____ () C:\Program Files (x86)\Raptr\_socket.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00805376 _____ () C:\Program Files (x86)\Raptr\_ssl.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 05812736 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 00067584 _____ () C:\Program Files (x86)\Raptr\sip.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 01662464 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 00494592 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtNetwork.pyd 2010-11-22 23:57 - 2010-11-22 23:57 - 00096256 _____ () C:\Program Files (x86)\Raptr\win32api.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00110592 _____ () C:\Program Files (x86)\Raptr\pywintypes26.dll 2010-11-22 23:56 - 2010-11-22 23:56 - 00010240 _____ () C:\Program Files (x86)\Raptr\select.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00356864 _____ () C:\Program Files (x86)\Raptr\_hashlib.pyd 2010-11-22 23:57 - 2010-11-22 23:57 - 00036352 _____ () C:\Program Files (x86)\Raptr\win32process.pyd 2010-11-22 23:57 - 2010-11-22 23:57 - 00111104 _____ () C:\Program Files (x86)\Raptr\win32file.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00044544 _____ () C:\Program Files (x86)\Raptr\_sqlite3.pyd 2011-02-15 19:17 - 2011-02-15 19:17 - 00417501 _____ () C:\Program Files (x86)\Raptr\sqlite3.dll 2010-11-22 23:57 - 2010-11-22 23:57 - 00167936 _____ () C:\Program Files (x86)\Raptr\win32gui.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 00313856 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtWebKit.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00127488 _____ () C:\Program Files (x86)\Raptr\pyexpat.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00009216 _____ () C:\Program Files (x86)\Raptr\winsound.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00354304 _____ () C:\Program Files (x86)\Raptr\pythoncom26.dll 2010-11-22 23:57 - 2010-11-22 23:57 - 00016384 _____ () C:\Program Files (x86)\Raptr\win32trace.pyd 2014-08-14 01:37 - 2014-08-14 01:37 - 00113171 _____ () C:\Program Files (x86)\Raptr\libvlc.dll 2014-08-14 01:37 - 2014-08-14 01:37 - 02396691 _____ () C:\Program Files (x86)\Raptr\libvlccore.dll 2010-11-22 23:56 - 2010-11-22 23:56 - 00583680 _____ () C:\Program Files (x86)\Raptr\unicodedata.pyd 2010-11-22 23:57 - 2010-11-22 23:57 - 00263168 _____ () C:\Program Files (x86)\Raptr\win32com.shell.shell.pyd 2013-11-21 01:05 - 2013-11-21 01:05 - 00256000 _____ () C:\Program Files (x86)\Raptr\amd_ags.dll 2010-11-22 23:56 - 2010-11-22 23:56 - 00324608 _____ () C:\Program Files (x86)\Raptr\PIL._imaging.pyd 2014-12-27 17:08 - 2014-12-27 17:08 - 36966968 _____ () C:\Users\Dominik\AppData\Roaming\Spotify\Data\libcef.dll 2014-12-27 18:20 - 2014-12-27 18:20 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\c152a64e30c5b94894d75ac86aa7aad2\IsdiInterop.ni.dll 2014-12-27 11:42 - 2011-04-30 09:28 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2014-12-27 13:43 - 2014-12-16 16:34 - 01358456 _____ () C:\Program Files (x86)\Opera\26.0.1656.60\libglesv2.dll 2014-12-27 13:43 - 2014-12-16 16:34 - 00219256 _____ () C:\Program Files (x86)\Opera\26.0.1656.60\libegl.dll 2014-12-27 13:43 - 2014-12-16 16:34 - 09312888 _____ () C:\Program Files (x86)\Opera\26.0.1656.60\pdf.dll 2014-12-27 13:43 - 2014-12-16 16:34 - 00991352 _____ () C:\Program Files (x86)\Opera\26.0.1656.60\ffmpegsumo.dll 2010-11-22 23:57 - 2010-11-22 23:57 - 00141312 _____ () C:\Program Files (x86)\Raptr\gobject._gobject.pyd 2014-06-18 01:56 - 2014-06-18 01:56 - 02717595 _____ () C:\Program Files (x86)\Raptr\heliotrope._purple.pyd 2011-02-15 19:17 - 2011-02-15 19:17 - 01213633 _____ () C:\Program Files (x86)\Raptr\libxml2-2.dll 2010-11-23 00:06 - 2010-11-23 00:06 - 00055808 _____ () C:\Program Files (x86)\Raptr\zlib1.dll 2013-05-10 00:52 - 2013-05-10 00:52 - 00495680 _____ () C:\Program Files (x86)\Raptr\plugins\libaim.dll 2013-05-10 00:52 - 2013-05-10 00:52 - 01183699 _____ () C:\Program Files (x86)\Raptr\liboscar.dll 2013-05-10 00:52 - 2013-05-10 00:52 - 00483306 _____ () C:\Program Files (x86)\Raptr\plugins\libicq.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 00655356 _____ () C:\Program Files (x86)\Raptr\plugins\libirc.dll 2013-05-03 19:56 - 2013-05-03 19:56 - 01306387 _____ () C:\Program Files (x86)\Raptr\plugins\libmsn.dll 2013-05-03 19:56 - 2013-05-03 19:56 - 00565461 _____ () C:\Program Files (x86)\Raptr\plugins\libxmpp.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 01640221 _____ () C:\Program Files (x86)\Raptr\libjabber.dll 2013-05-03 19:56 - 2013-05-03 19:56 - 00506276 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoo.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 01053730 _____ () C:\Program Files (x86)\Raptr\libymsg.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 00497782 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoojp.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 00603326 _____ () C:\Program Files (x86)\Raptr\plugins\ssl-nss.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 00474199 _____ () C:\Program Files (x86)\Raptr\plugins\ssl.dll 2014-12-27 17:08 - 2014-12-27 17:08 - 00867896 _____ () C:\Users\Dominik\AppData\Roaming\Spotify\Data\ffmpegsumo.dll 2014-12-27 17:08 - 2014-12-27 17:08 - 00886840 _____ () C:\Users\Dominik\AppData\Roaming\Spotify\Data\libglesv2.dll 2014-12-27 17:08 - 2014-12-27 17:08 - 00108600 _____ () C:\Users\Dominik\AppData\Roaming\Spotify\Data\libegl.dll 2014-12-27 13:45 - 2014-12-27 13:45 - 14913200 _____ () C:\Windows\SysWOW64\Macromed\Flash\pepflashplayer32_16_0_0_235.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-361420388-1239155411-725962489-500 - Administrator - Disabled) Dominik (S-1-5-21-361420388-1239155411-725962489-1000 - Administrator - Enabled) => C:\Users\Dominik Gość (S-1-5-21-361420388-1239155411-725962489-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-361420388-1239155411-725962489-1002 - Limited - Enabled) ==================== Faulty Device Manager Devices ============= Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (01/06/2015 09:55:31 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/06/2015 09:55:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: TrueSuiteService.exe, wersja: 5.3.0.163, sygnatura czasowa: 0x4dc363f3 Nazwa modułu powodującego błąd: TrueSuiteService.exe, wersja: 5.3.0.163, sygnatura czasowa: 0x4dc363f3 Kod wyjątku: 0xc0000417 Przesunięcie błędu: 0x0001275a Identyfikator procesu powodującego błąd: 0x3d4 Godzina uruchomienia aplikacji powodującej błąd: 0xTrueSuiteService.exe0 Ścieżka aplikacji powodującej błąd: TrueSuiteService.exe1 Ścieżka modułu powodującego błąd: TrueSuiteService.exe2 Identyfikator raportu: TrueSuiteService.exe3 Error: (01/06/2015 01:04:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: TrueSuiteService.exe, wersja: 5.3.0.163, sygnatura czasowa: 0x4dc363f3 Nazwa modułu powodującego błąd: TrueSuiteService.exe, wersja: 5.3.0.163, sygnatura czasowa: 0x4dc363f3 Kod wyjątku: 0xc0000417 Przesunięcie błędu: 0x0001275a Identyfikator procesu powodującego błąd: 0x3f4 Godzina uruchomienia aplikacji powodującej błąd: 0xTrueSuiteService.exe0 Ścieżka aplikacji powodującej błąd: TrueSuiteService.exe1 Ścieżka modułu powodującego błąd: TrueSuiteService.exe2 Identyfikator raportu: TrueSuiteService.exe3 Error: (01/06/2015 01:04:44 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/06/2015 00:46:53 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/06/2015 00:46:42 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: TrueSuiteService.exe, wersja: 5.3.0.163, sygnatura czasowa: 0x4dc363f3 Nazwa modułu powodującego błąd: TrueSuiteService.exe, wersja: 5.3.0.163, sygnatura czasowa: 0x4dc363f3 Kod wyjątku: 0xc0000417 Przesunięcie błędu: 0x0001275a Identyfikator procesu powodującego błąd: 0x3ec Godzina uruchomienia aplikacji powodującej błąd: 0xTrueSuiteService.exe0 Ścieżka aplikacji powodującej błąd: TrueSuiteService.exe1 Ścieżka modułu powodującego błąd: TrueSuiteService.exe2 Identyfikator raportu: TrueSuiteService.exe3 Error: (01/06/2015 00:41:25 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas badania interfejsu IVssWriterCallback. hr = 0x80070005, Odmowa dostępu. . To jest często spowodowane przez niepoprawne ustawienia zabezpieczeń w procesie zapisującym lub żądającym. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {cd747f00-7ab1-49c8-869e-0415623a6838} Error: (01/06/2015 08:53:56 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/06/2015 08:53:50 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: TrueSuiteService.exe, wersja: 5.3.0.163, sygnatura czasowa: 0x4dc363f3 Nazwa modułu powodującego błąd: TrueSuiteService.exe, wersja: 5.3.0.163, sygnatura czasowa: 0x4dc363f3 Kod wyjątku: 0xc0000417 Przesunięcie błędu: 0x0001275a Identyfikator procesu powodującego błąd: 0x3f0 Godzina uruchomienia aplikacji powodującej błąd: 0xTrueSuiteService.exe0 Ścieżka aplikacji powodującej błąd: TrueSuiteService.exe1 Ścieżka modułu powodującego błąd: TrueSuiteService.exe2 Identyfikator raportu: TrueSuiteService.exe3 Error: (01/06/2015 01:19:46 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla „C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1”. Błąd w pliku manifestu lub w pliku zasad „C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2” w wierszu C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3. Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Składnik 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. System errors: ============= Error: (01/06/2015 09:55:35 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa TrueSuiteService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (01/06/2015 01:04:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa TrueSuiteService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (01/06/2015 00:48:35 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa TrueSuiteService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (01/06/2015 00:47:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi WD Backup z powodu następującego błędu: %%1053 Error: (01/06/2015 00:47:08 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą WD Backup. Error: (01/06/2015 00:46:59 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi HPWMISVC. Error: (01/06/2015 00:45:03 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: ZARZĄDZANIE NT) Description: Nastąpiło nieoczekiwane zatrzymanie modułu rozszerzalności sieci WLAN. Ścieżka modułu: C:\Windows\System32\IWMSSvc.dll Error: (01/06/2015 00:45:03 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: ZARZĄDZANIE NT) Description: Nastąpiło nieoczekiwane zatrzymanie modułu rozszerzalności sieci WLAN. Ścieżka modułu: C:\Windows\System32\IWMSSvc.dll Error: (01/06/2015 00:45:03 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: ZARZĄDZANIE NT) Description: Nastąpiło nieoczekiwane zatrzymanie modułu rozszerzalności sieci WLAN. Ścieżka modułu: C:\Windows\System32\IWMSSvc.dll Error: (01/06/2015 00:44:59 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: ZARZĄDZANIE NT) Description: Nastąpiło nieoczekiwane zatrzymanie modułu rozszerzalności sieci WLAN. Ścieżka modułu: C:\Windows\System32\IWMSSvc.dll Microsoft Office Sessions: ========================= Error: (01/06/2015 09:55:31 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/06/2015 09:55:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: TrueSuiteService.exe5.3.0.1634dc363f3TrueSuiteService.exe5.3.0.1634dc363f3c00004170001275a3d401d029f312145be1C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exeC:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe58bbd32e-95e6-11e4-a32e-4ceb420b7c22 Error: (01/06/2015 01:04:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: TrueSuiteService.exe5.3.0.1634dc363f3TrueSuiteService.exe5.3.0.1634dc363f3c00004170001275a3f401d029a8e73978a7C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exeC:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe33d09fb3-959c-11e4-a405-4ceb420b7c22 Error: (01/06/2015 01:04:44 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/06/2015 00:46:53 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/06/2015 00:46:42 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: TrueSuiteService.exe5.3.0.1634dc363f3TrueSuiteService.exe5.3.0.1634dc363f3c00004170001275a3ec01d029a64b430edbC:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exeC:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exeae508e7b-9599-11e4-bd5c-4ceb420b7c22 Error: (01/06/2015 00:41:25 PM) (Source: VSS) (EventID: 8194) (User: ) Description: 0x80070005, Odmowa dostępu. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {cd747f00-7ab1-49c8-869e-0415623a6838} Error: (01/06/2015 08:53:56 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/06/2015 08:53:50 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: TrueSuiteService.exe5.3.0.1634dc363f3TrueSuiteService.exe5.3.0.1634dc363f3c00004170001275a3f001d02985df55711cC:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exeC:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe267b2104-9579-11e4-9fd5-4ceb420b7c22 Error: (01/06/2015 01:19:46 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestc:\program files\CCleaner\CCleaner.exe ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-2430M CPU @ 2.40GHz Percentage of memory in use: 67% Total physical RAM: 4043.86 MB Available physical RAM: 1298.45 MB Total Pagefile: 8085.9 MB Available Pagefile: 4379.66 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:445.93 GB) (Free:243.48 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (Recovery) (Fixed) (Total:15.66 GB) (Free:1.71 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive e: (HP_TOOLS) (Fixed) (Total:3.96 GB) (Free:3.95 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: E4369783) Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=445.9 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=15.7 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=4 GB) - (Type=0C) ==================== End Of Log ============================