Additional scan result of Farbar Recovery Scan Tool (x86) Version: 11-01-2015 Ran by dom at 2015-01-11 17:34:36 Running from E:\Pliki instalacyjne\Nowy folder (2) Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKLM\...\uTorrent) (Version: 3.3.0.29625 - BitTorrent Inc.) µTorrent (HKU\S-1-5-21-2821332150-970914226-2612375139-1004\...\uTorrent) (Version: 3.4.1.30888 - BitTorrent Inc.) Adobe Flash Player 16 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 16.0.0.235 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.5.155 - Adobe Systems, Inc.) Advanced Renamer (HKLM\...\Advanced Renamer_is1) (Version: 3.61 - Hulubulu Software) AIMP3 (HKLM\...\AIMP3) (Version: v3.60.1465, 29.12.2014 - AIMP DevTeam) AMD Catalyst Install Manager (HKLM\...\{B448BC74-1CB7-7A57-3313-5E075AFB413E}) (Version: 8.0.877.0 - Advanced Micro Devices, Inc.) Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Ashampoo Burning Studio 2014 v.12.0.5 (HKLM\...\{91B33C97-280F-B76D-E27B-E712D7041B76}_is1) (Version: 12.0.5 - Ashampoo GmbH & Co. KG) Audacity 2.0.2 (HKLM\...\Audacity_is1) (Version: 2.0.2 - Audacity Team) Avanquest update (HKLM\...\{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}) (Version: 1.34 - Avanquest Software) Avast Free Antivirus (HKLM\...\Avast) (Version: 10.0.2208 - AVAST Software) Bandizip (HKLM\...\Bandizip) (Version: 5.03 - Bandisoft.com) CCleaner (HKLM\...\CCleaner) (Version: 5.00 - Piriform) CDisplay (HKLM\...\{8DA9D7E6-8F69-4171-9007-81B0A84C83F6}) (Version: 1.8.5 - CDisplay) Classic Shell (HKLM\...\{5012C3AD-9A0D-443D-9463-76E45A4655C9}) (Version: 3.6.5 - IvoSoft) Directory Lister v0.9.1 (HKLM\...\Directory Lister_is1) (Version: - KRKSoft) Driver Booster 2.1 (HKLM\...\Driver Booster_is1) (Version: 2.1 - IObit) ESET Online Scanner v3 (HKLM\...\ESET Online Scanner) (Version: - ) FastStone Image Viewer 5.2 (HKLM\...\FastStone Image Viewer) (Version: 5.2 - FastStone Soft) FileZilla Client 3.9.0.6 (HKLM\...\FileZilla Client) (Version: 3.9.0.6 - Tim Kosse) FormatFactory 3.5.0.0 (HKLM\...\FormatFactory) (Version: 3.5.0.0 - Format Factory) forteManager (HKLM\...\{DA6FAB8D-E87A-4E8E-A3D3-B7B9F479C725}) (Version: 3.18 - LG Soft India) GIMP 2.8.4 (HKLM\...\GIMP-2_is1) (Version: 2.8.4 - The GIMP Team) Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Hardwipe 3.1.1 (HKLM\...\{BB5BF528-F731-445D-A31A-57F0EB24D7A7}) (Version: 3.1.1 - Big Angry Dog) ImageShack Uploader 2.2.0 (HKLM\...\{8BCD7AE7-F713-4D50-BAB9-7839B9386870}) (Version: 2.2.0 - ImageShack Corp.) ipla 2.8.4 (HKLM\...\ipla) (Version: 2.8.4 - Redefine Sp z o.o.) Java 7 Update 72 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217072FF}) (Version: 7.0.720 - Oracle) JDownloader (HKLM\...\JDownloader) (Version: - AppWork UG (haftungsbeschränkt)) K-Lite Codec Pack 10.7.5 Standard (HKLM\...\KLiteCodecPack_is1) (Version: 10.7.5 - ) LAME v3.99.3 (for Windows) (HKLM\...\LAME_is1) (Version: - ) Logitech SetPoint 6.65 (HKLM\...\sp6) (Version: 6.65.62 - Logitech) Mahjong (HKLM\...\Mahjong) (Version: - ) Malwarebytes Anti-Malware wersja 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) Microsoft .NET Framework 1.1 (HKLM\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft WSE 3.0 (HKLM\...\{EDEA8AB7-7683-4ED2-AA19-E6C078064C0D}) (Version: 3.0.5305.0 - Microsoft Corporation) MozBackup 1.5.1 (HKLM\...\MozBackup) (Version: - Pavel Cvrcek) Mozilla Firefox 34.0.5 (x86 pl) (HKLM\...\Mozilla Firefox 34.0.5 (x86 pl)) (Version: 34.0.5 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 31.1.2 - Mozilla) Mozilla Thunderbird 31.3.0 (x86 pl) (HKLM\...\Mozilla Thunderbird 31.3.0 (x86 pl)) (Version: 31.3.0 - Mozilla) Mp3tag v2.66 (HKLM\...\Mp3tag) (Version: v2.66 - Florian Heidenreich) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP2 Parser and SDK (HKLM\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) NapiProjekt (2.2.0.2399) (HKLM\...\NapiProjekt_is1) (Version: - ) Notepad++ (HKLM\...\Notepad++) (Version: 6.3.2 - Notepad++ Team) NVIDIA PhysX (HKLM\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) Obsługa programów Apple (HKLM\...\{F5266D28-E0B2-4130-BFC5-EE155AD514DC}) (Version: 2.3 - Apple Inc.) odf-converter-integrator (HKLM\...\odf-converter-integrator) (Version: - ) Odkurzacz (HKLM\...\Odkurzacz 13.5_is1) (Version: 13.5.0.1911 - FranmoSoftware - Maciej Opaliński) Opera Stable 26.0.1656.60 (HKLM\...\Opera 26.0.1656.60) (Version: 26.0.1656.60 - Opera Software ASA) Pasjanse (HKLM\...\Pasjanse) (Version: - ) PDF-XChange Viewer (HKLM\...\{3A6F4A31-8CFD-46B4-8385-E1F384DB121E}) (Version: 2.5.210.0 - Tracker Software Products (Canada) Ltd.) PeerBlock 1.2 (r693) (HKLM\...\{015C5B35-B678-451C-9AEE-821E8D69621C}_is1) (Version: 1.2.0.693 - PeerBlock, LLC) PlayReady PC Runtime x86 (HKLM\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation) QuickTime 7 (HKLM\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) RadioSure (HKU\S-1-5-21-2821332150-970914226-2612375139-1004\...\RadioSure) (Version: - ) Rainlendar2 (remove only) (HKLM\...\Rainlendar2) (Version: - ) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7293 - Realtek Semiconductor Corp.) Registry Recycler (HKLM\...\Registry Recycler_is1) (Version: 0.9.2.5 - Developer Tribe (Pvt) Ltd.) Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) ScanWizard 5 (HKLM\...\{B08D262E-D902-11D5-9C28-0080C85A0C2D}) (Version: - ) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TechPowerUp GPU-Z (HKLM\...\TechPowerUp GPU-Z) (Version: - TechPowerUp) TeraCopy 2.3 (HKLM\...\TeraCopy_is1) (Version: - Code Sector) Unity Web Player (HKU\S-1-5-21-2821332150-970914226-2612375139-1004\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) WapSter AQQ (HKLM\...\AQQ) (Version: 2.5.0.63 - Creative Team S.A.) Xerox Phaser 3010 (HKLM\...\InstallShield_{3402F837-F1CC-4A02-B554-D02C96D43C5F}) (Version: 1.003.00 - Xerox) Xerox Phaser 3010 (Version: 1.003.00 - Xerox) Hidden xp-AntiSpy 3.98-2 (HKLM\...\xp-AntiSpy) (Version: - Christian Taubenheim) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2821332150-970914226-2612375139-1004_Classes\CLSID\{010833F3-751A-402F-9FCC-C365B6A12E41}\localserver32 -> D:\Program Files\BESTplayer.exe (Karol Winnicki) CustomCLSID: HKU\S-1-5-21-2821332150-970914226-2612375139-1004_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> D:\Users\dom\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS) CustomCLSID: HKU\S-1-5-21-2821332150-970914226-2612375139-1004_Classes\CLSID\{5B69A6B4-393B-459C-8EBB-214237A9E7AC}\InprocServer32 -> d:\Program Files\Bandizip\bdzshl32.dll (Bandisoft.com) ==================== Restore Points ========================= Check "winmgmt" service or repair WMI. ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:04 - 2013-09-13 10:22 - 00000896 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0298E922-70B3-4D42-8730-BFF85B001A2B} - System32\Tasks\avast! Emergency Update => d:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-11-08] (AVAST Software) Task: {16CA87BF-9BE1-433F-B6C4-2759E62290A9} - System32\Tasks\klcp_update => d:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2014-09-23] () Task: {1B5412C3-AE00-4ED3-9BED-9BC835CD5794} - System32\Tasks\{47A33EC2-46E0-4F2D-8F37-AEBA2805C67F} => pcalua.exe -a "E:\Pliki instalacyjne\RadioSure-2.2.1042-setup.exe" -d "E:\Pliki instalacyjne" Task: {344D3F6D-159B-4A7F-8CA9-77EDC1058215} - System32\Tasks\{7A89BFE7-6C1C-4902-A560-8661A1BFF68F} => pcalua.exe -a G:\OriginInstaller.exe -d G:\ Task: {70934480-2C71-49F6-B96D-FCDAD1588DC1} - System32\Tasks\{35A02743-9A84-46CB-B9C1-A754B96E3422} => pcalua.exe -a "E:\Pliki instalacyjne\TagesSetup.exe" -d "E:\Pliki instalacyjne" Task: {72739D77-AE0C-4283-A584-35A573A262C6} - \SPBIW_UpdateTask_Time_313338323736313139352d3437415a556c2a3223346c41 No Task File <==== ATTENTION Task: {75E683B6-225B-4D69-9555-7DAD454EDDEA} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-12] (Adobe Systems Incorporated) Task: {8E594693-A7E9-44A6-A7D8-44D0A255A7A6} - System32\Tasks\Opera scheduled Autoupdate 1411912594 => d:\Program Files\Opera\launcher.exe [2014-12-17] (Opera Software) Task: {A10B48EA-4729-4EBA-A623-5B540BD31B92} - System32\Tasks\CJVW => D:\Users\dom\AppData\Roaming\CJVW.exe <==== ATTENTION Task: {B6E8E8EE-2604-4966-943F-D6A3E5527E73} - System32\Tasks\Driver Booster SkipUAC (dom) => D:\Program Files\IObit\Driver Booster\DriverBooster.exe [2014-12-30] (IObit) Task: {BCCF6DD7-281B-4508-A930-FD1B2444ADC7} - System32\Tasks\Registry Recycler Scheduled Scan - dom => d:\Program Files\Registry Recycler\RegistryRecycler.exe [2013-09-30] (Developer Tribe (Pvt) Ltd.) Task: {E41A2A56-7A8A-4E0C-871D-D565C4EBCF1F} - System32\Tasks\CCleanerSkipUAC => D:\Program Files\CCleaner\CCleaner.exe [2014-11-21] (Piriform Ltd) Task: {E7B26DBA-A5E5-403F-93D5-2A2FFD9719A0} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {E977AB5D-13A5-409F-95FE-93DA21C4E51A} - System32\Tasks\KOO => D:\Users\dom\AppData\Roaming\KOO.exe <==== ATTENTION (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\CJVW.job => D:\Users\dom\AppData\Roaming\CJVW.exe <==== ATTENTION Task: C:\Windows\Tasks\KOO.job => D:\Users\dom\AppData\Roaming\KOO.exe <==== ATTENTION Task: C:\Windows\Tasks\Registry Recycler Scheduled Scan - dom.job => d:\Program Files\Registry Recycler\RegistryRecycler.exe ==================== Loaded Modules (whitelisted) ============= 2015-01-11 09:51 - 2015-01-11 09:51 - 02909696 _____ () d:\Program Files\AVAST Software\Avast\defs\15011100\algo.dll 2014-11-08 15:53 - 2014-11-08 15:53 - 02151544 _____ () d:\Program Files\AVAST Software\Avast\ng\vbox\VBoxVMM.dll 2014-11-08 15:53 - 2014-11-08 15:53 - 00021488 _____ () d:\Program Files\AVAST Software\Avast\ng\vbox\VBoxREM.dll 2014-11-08 15:53 - 2014-11-08 15:53 - 04474224 _____ () d:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll 2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2013-05-16 09:00 - 2012-03-09 13:32 - 00018944 _____ () C:\Windows\System32\xrhr1alm.dll 2011-04-19 08:58 - 2011-04-19 08:58 - 00079872 _____ () C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe 2014-11-08 15:53 - 2014-11-08 15:53 - 38562088 _____ () D:\Program Files\AVAST Software\Avast\libcef.dll 2014-03-14 14:22 - 2014-03-14 14:22 - 02611808 _____ () D:\Program Files\Rainlendar2\Rainlendar2.exe 2012-05-16 20:01 - 2012-05-16 20:01 - 00140800 _____ () D:\Program Files\Rainlendar2\lua52.dll 2014-03-14 11:11 - 2014-03-14 11:11 - 00250368 _____ () D:\Program Files\Rainlendar2\libical.dll 2014-03-14 14:23 - 2014-03-14 14:23 - 00060512 _____ () D:\Program Files\Rainlendar2\plugins\iCalendarPlugin.dll 2014-03-14 11:11 - 2014-03-14 11:11 - 00065024 _____ () D:\Program Files\Rainlendar2\libicalss.dll 2012-06-17 14:22 - 2012-06-17 14:22 - 00012800 _____ () D:\Program Files\Rainlendar2\lfs.dll 2014-11-08 15:53 - 2014-11-08 15:53 - 00317632 _____ () d:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll 2013-04-29 23:08 - 2013-04-29 23:08 - 00369152 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2013-06-18 15:49 - 2013-06-18 15:49 - 00016384 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll 2015-01-04 12:20 - 2015-01-04 12:20 - 00218112 _____ () D:\Program Files\AIMP3\System\libsoxr.dll 2015-01-04 12:20 - 2015-01-04 12:20 - 00220672 _____ () D:\Program Files\AIMP3\System\Encoders\MACDll.dll 2015-01-04 12:20 - 2015-01-04 12:20 - 00435200 _____ () D:\Program Files\AIMP3\System\Encoders\libFLAC.dll 2015-01-04 12:20 - 2015-01-04 12:20 - 01733120 _____ () D:\Program Files\AIMP3\System\Encoders\aimp_libvorbis.dll 2015-01-04 12:20 - 2015-01-04 12:20 - 00099912 _____ () D:\Program Files\AIMP3\Plugins\aimp_cdda\aimp_cdda.dll 2015-01-04 12:20 - 2015-01-04 12:20 - 00159232 _____ () D:\Program Files\AIMP3\Plugins\aimp_sacd\libsacd.dll 2015-01-04 12:20 - 2015-01-04 12:20 - 00026624 _____ () D:\Program Files\AIMP3\Plugins\Aorta\Aorta.dll 2015-01-04 12:20 - 2015-01-04 12:20 - 00237568 _____ () D:\Program Files\AIMP3\Plugins\OptimFROG\OptimFROG.dll 2015-01-04 12:20 - 2015-01-04 12:20 - 00152136 _____ () D:\Program Files\AIMP3\Plugins\PandemicAnalogMeter\PandemicAnalogMeter.dll 2014-11-11 10:29 - 2014-12-12 22:47 - 03758192 _____ () D:\Program Files\Mozilla Firefox\mozjs.dll 2012-12-28 20:58 - 2009-04-24 16:03 - 00040960 _____ () C:\Program Files\LG Soft India\forteManager\bin\ContextMenu.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\Services: MpsSvc => 2 MSCONFIG\Services: WinDefend => 3 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Scanner Finder.lnk => C:\Windows\pss\Scanner Finder.lnk.CommonStartup MSCONFIG\startupreg: AMD AVT => Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files\AMD AVT\bin\kdbsync.exe" aml MSCONFIG\startupreg: APSDaemon => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: BCSSync => "D:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices MSCONFIG\startupreg: BCSSync.exe => "D:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices MSCONFIG\startupreg: CCleaner Monitoring => "D:\Program Files\CCleaner\CCleaner.exe" /MONITOR MSCONFIG\startupreg: DAEMON Tools Lite => MSCONFIG\startupreg: DAEMON Tools Pro Agent => MSCONFIG\startupreg: DocuPrint 3010 RUN => "C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe" MSCONFIG\startupreg: DriverMax => MSCONFIG\startupreg: DriverMax_RESTART => MSCONFIG\startupreg: EaseUs Tray => MSCONFIG\startupreg: EaseUs Watch => MSCONFIG\startupreg: ISUSPM Startup => C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup MSCONFIG\startupreg: ISUSScheduler => "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start MSCONFIG\startupreg: Launcher3010 => "C:\Program Files\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe" /S Xerox Phaser 3010 MSCONFIG\startupreg: QuickTime Task => "D:\Program Files\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: RTHDVCPL => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s MSCONFIG\startupreg: StatusAutoRun3010 => "C:\Program Files\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmpl.exe" Xerox Phaser 3010,hide,\S ========================= Accounts: ========================== Administrator (S-1-5-21-2821332150-970914226-2612375139-500 - Administrator - Disabled) ASPNET (S-1-5-21-2821332150-970914226-2612375139-1452 - Limited - Enabled) dom (S-1-5-21-2821332150-970914226-2612375139-1004 - Administrator - Enabled) => D:\Users\dom Gość (S-1-5-21-2821332150-970914226-2612375139-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2821332150-970914226-2612375139-1002 - Limited - Enabled) ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (01/11/2015 05:34:38 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance. hr = 0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. . Operacja: Tworzenie wystąpienia serwera VSS Error: (01/11/2015 05:34:38 PM) (Source: VSS) (EventID: 13) (User: ) Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {e579ab5f-1cc4-44b4-bed9-de0991ff0623} i nazwą IVssCoordinatorEx2. [0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. ] Operacja: Tworzenie wystąpienia serwera VSS Error: (01/11/2015 05:17:55 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/11/2015 05:11:24 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/11/2015 04:55:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/11/2015 11:34:57 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/11/2015 11:30:53 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: Explorer.EXE, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d6727a7 Nazwa modułu powodującego błąd: SupTab.dll_unloaded, wersja: 0.0.0.0, sygnatura czasowa: 0x54adecf4 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x5ce11ae0 Identyfikator procesu powodującego błąd: 0x664 Godzina uruchomienia aplikacji powodującej błąd: 0xExplorer.EXE0 Ścieżka aplikacji powodującej błąd: Explorer.EXE1 Ścieżka modułu powodującego błąd: Explorer.EXE2 Identyfikator raportu: Explorer.EXE3 Error: (01/11/2015 11:23:13 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/11/2015 11:14:37 AM) (Source: MsiInstaller) (EventID: 11309) (User: test-Komputer) Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it. Error: (01/11/2015 11:14:02 AM) (Source: MsiInstaller) (EventID: 11309) (User: test-Komputer) Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it. System errors: ============= Error: (01/11/2015 05:18:11 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Usługa Usługa nasłuchująca grup domowych zakończyła działanie; wystąpił specyficzny dla niej błąd %%-2147023143. Error: (01/11/2015 05:16:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi ASPI32 z powodu następującego błędu: %%2 Error: (01/11/2015 05:15:09 PM) (Source: Service Control Manager) (EventID: 7043) (User: ) Description: Usługa Windows Update nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem. Error: (01/11/2015 05:11:35 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Usługa Usługa nasłuchująca grup domowych zakończyła działanie; wystąpił specyficzny dla niej błąd %%-2147023143. Error: (01/11/2015 05:09:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi ASPI32 z powodu następującego błędu: %%2 Error: (01/11/2015 05:08:02 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Menedżer sterowania usługami próbował podjąć akcję korekcyjną (Uruchom usługę ponownie) po nieoczekiwanym zakończeniu usługi Windows Search, ale ta akcja nie powiodła się przy następującym błędzie: %%1056. Error: (01/11/2015 05:07:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (01/11/2015 05:07:32 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Bufor wydruku niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (01/11/2015 05:07:32 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa XRcnStatutsDatabase niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (01/11/2015 05:07:24 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Microsoft Office Sessions: ========================= Error: (01/11/2015 05:34:38 PM) (Source: VSS) (EventID: 8193) (User: ) Description: CoCreateInstance0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Operacja: Tworzenie wystąpienia serwera VSS Error: (01/11/2015 05:34:38 PM) (Source: VSS) (EventID: 13) (User: ) Description: {e579ab5f-1cc4-44b4-bed9-de0991ff0623}IVssCoordinatorEx20x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Operacja: Tworzenie wystąpienia serwera VSS Error: (01/11/2015 05:17:55 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/11/2015 05:11:24 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/11/2015 04:55:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/11/2015 11:34:57 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/11/2015 11:30:53 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Explorer.EXE6.1.7601.175674d6727a7SupTab.dll_unloaded0.0.0.054adecf4c00000055ce11ae066401d02d7b700716f4C:\Windows\Explorer.EXESupTab.dlleada07a9-997c-11e4-9872-0021851243c8 Error: (01/11/2015 11:23:13 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (01/11/2015 11:14:37 AM) (Source: MsiInstaller) (EventID: 11309) (User: test-Komputer) Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (01/11/2015 11:14:02 AM) (Source: MsiInstaller) (EventID: 11309) (User: test-Komputer) Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt. System error 3. Verify that the file exists and that you can access it.(NULL)(NULL)(NULL)(NULL)(NULL) CodeIntegrity Errors: =================================== Date: 2013-01-04 19:06:08.030 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2013-01-04 19:06:08.028 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2013-01-04 19:06:08.026 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2013-01-04 19:06:08.020 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2013-01-04 19:06:08.018 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2013-01-04 19:06:08.016 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\ELAMBKUP\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2013-01-04 19:06:08.011 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX86\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2013-01-04 19:06:08.009 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX86\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2013-01-04 19:06:08.006 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX86\klelam.sys because the set of per-page image hashes could not be found on the system. Date: 2013-01-04 19:06:08.000 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX86\klelam.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM)2 Duo CPU E8400 @ 3.00GHz Percentage of memory in use: 72% Total physical RAM: 2047.18 MB Available physical RAM: 570.08 MB Total Pagefile: 3071.18 MB Available Pagefile: 1249.82 MB Total Virtual: 2047.88 MB Available Virtual: 1881.14 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:33 GB) (Free:11.83 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:25.82 GB) (Free:18.68 GB) NTFS Drive e: () (Fixed) (Total:239.25 GB) (Free:89.54 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: D8D0D8D0) Partition 1: (Active) - (Size=33 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=265.1 GB) - (Type=OF Extended) ==================== End Of Log ============================