Additional scan result of Farbar Recovery Scan Tool (x86) Version: 11-02-2015 01 Ran by Asus at 2015-02-11 19:06:55 Running from C:\Users\Asus\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: ESET Endpoint Antivirus 5.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: ESET Endpoint Antivirus 5.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) ESET Endpoint Antivirus (HKLM\...\{C586E11F-694D-436C-BC67-6F90E6379655}) (Version: 5.0.2229.1 - ESET, spol. s r.o.) Google Chrome (HKLM\...\Google Chrome) (Version: 40.0.2214.111 - Google Inc.) Google Update Helper (Version: 1.3.24.15 - Google Inc.) Hidden Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Home and Student 2010 (HKLM\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 01-10-2014 19:19:53 Zainstalowano ESET Endpoint Antivirus 01-10-2014 19:28:17 Installed Microsoft Office Home and Student 2010 10-02-2015 21:22:18 Windows Update 10-02-2015 21:31:54 Windows Update 11-02-2015 08:08:33 Windows Update 11-02-2015 09:25:31 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {07EA422F-1F3B-43F0-8502-FB445A40ADC6} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {9AF2C4DF-B1DA-4BBD-B5E2-5D0D6CE31C4A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-01] (Google Inc.) Task: {A5C0A838-70A5-4BB9-B71D-515D0BF7A765} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-01] (Google Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== 2014-01-21 14:43 - 2013-03-18 15:16 - 01008128 _____ () C:\Windows\system32\spool\DRIVERS\W32X86\3\spe__du.dll 2015-02-10 20:59 - 2015-02-04 10:02 - 09170760 _____ () C:\Program Files\Google\Chrome\Application\40.0.2214.111\pdf.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-885651297-560806504-1139093528-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.254 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Accounts: ============================= Administrator (S-1-5-21-885651297-560806504-1139093528-500 - Administrator - Disabled) Asus (S-1-5-21-885651297-560806504-1139093528-1000 - Administrator - Enabled) => C:\Users\Asus Gość (S-1-5-21-885651297-560806504-1139093528-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-885651297-560806504-1139093528-1002 - Limited - Enabled) ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/11/2015 02:38:01 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/11/2015 01:10:51 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/11/2015 11:29:14 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/11/2015 09:52:46 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/11/2015 08:05:51 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2015 08:27:30 PM) (Source: Office Software Protection Platform Service) (EventID: 1014) (User: ) Description: Acquisition of End User License failed. hr=0xC004C008 Sku Id=7b7d1f17-fdcb-4820-9789-9bec6e377821 Error: (02/10/2015 08:27:30 PM) (Source: Office Software Protection Platform Service) (EventID: 8200) (User: ) Description: License acquisition failure details. hr=0xC004C008 Error: (02/10/2015 08:25:24 PM) (Source: Office Software Protection Platform Service) (EventID: 1014) (User: ) Description: Acquisition of End User License failed. hr=0xC004C008 Sku Id=7b7d1f17-fdcb-4820-9789-9bec6e377821 Error: (02/10/2015 08:25:24 PM) (Source: Office Software Protection Platform Service) (EventID: 8200) (User: ) Description: License acquisition failure details. hr=0xC004C008 Error: (10/03/2014 03:19:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (02/11/2015 06:25:38 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi ShellHWDetection. Error: (02/11/2015 02:34:59 PM) (Source: Service Control Manager) (EventID: 7043) (User: ) Description: Usługa Windows Update nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem. Error: (02/11/2015 08:43:44 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi ShellHWDetection. Error: (02/11/2015 08:38:12 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi ShellHWDetection. Error: (02/11/2015 08:26:49 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi ShellHWDetection. Error: (02/11/2015 08:26:19 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi LanmanServer. Error: (02/10/2015 09:47:58 PM) (Source: Service Control Manager) (EventID: 7043) (User: ) Description: Usługa Windows Update nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem. Error: (02/10/2015 09:47:24 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80010108: ATK - Input - ATK0100 ACPI UTILITY. Error: (02/10/2015 09:26:48 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {F87B28F1-DA9A-4F35-8EC0-800EFCF26B83} Error: (02/10/2015 08:21:59 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi ShellHWDetection. Microsoft Office Sessions: ========================= Error: (02/11/2015 02:38:01 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/11/2015 01:10:51 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/11/2015 11:29:14 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/11/2015 09:52:46 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/11/2015 08:05:51 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (02/10/2015 08:27:30 PM) (Source: Office Software Protection Platform Service) (EventID: 1014) (User: ) Description: hr=0xC004C0087b7d1f17-fdcb-4820-9789-9bec6e377821 Error: (02/10/2015 08:27:30 PM) (Source: Office Software Protection Platform Service) (EventID: 8200) (User: ) Description: hr=0xC004C00800010001(0x00000000, 20:27:29:527 - http://go.microsoft.com/fwlink/?LinkID=120752) 00020001(0x00000000, 20:27:29:527) 00030001(0x00000000, 20:27:29:527 - http://go.microsoft.com) 00030002(0x00000000, 20:27:29:527 - 1) 00020005(0x00000000, 20:27:29:527 - 0) 0002000C(0x00000000, 20:27:29:745 - 302) 0002000E(0x00000000, 20:27:29:745 - https://activation.sls.microsoft.com/sllicensing/SLLicense.asmx?configextension=o14) 00020001(0x00000000, 20:27:29:745) 00030001(0x00000000, 20:27:29:745 - https://activation.sls.microsoft.com) 00030002(0x00000000, 20:27:29:745 - 1) 00020005(0x00000000, 20:27:29:745 - 0) 0002000C(0x00000000, 20:27:30:525 - 500) 00010002(0x8004FC01, 20:27:30:525 - soap:ServerSoapException0xC004C008113 (Activation) - [PA Maximum unlock exceeded. ---> Maximum unlock exceeded]) 00010003(0x8004FC01, 20:27:30:525) Error: (02/10/2015 08:25:24 PM) (Source: Office Software Protection Platform Service) (EventID: 1014) (User: ) Description: hr=0xC004C0087b7d1f17-fdcb-4820-9789-9bec6e377821 Error: (02/10/2015 08:25:24 PM) (Source: Office Software Protection Platform Service) (EventID: 8200) (User: ) Description: hr=0xC004C00800010001(0x00000000, 20:25:23:669 - http://go.microsoft.com/fwlink/?LinkID=120752) 00020001(0x00000000, 20:25:23:669) 00030001(0x00000000, 20:25:23:669 - http://go.microsoft.com) 00030002(0x00000000, 20:25:23:669 - 1) 00020005(0x00000000, 20:25:23:669 - 0) 0002000C(0x00000000, 20:25:23:887 - 302) 0002000E(0x00000000, 20:25:23:887 - https://activation.sls.microsoft.com/sllicensing/SLLicense.asmx?configextension=o14) 00020001(0x00000000, 20:25:23:887) 00030001(0x00000000, 20:25:23:887 - https://activation.sls.microsoft.com) 00030002(0x00000000, 20:25:23:887 - 1) 00020005(0x00000000, 20:25:23:887 - 0) 0002000C(0x00000000, 20:25:24:542 - 500) 00010002(0x8004FC01, 20:25:24:542 - soap:ServerSoapException0xC004C008113 (Activation) - [PA Maximum unlock exceeded. ---> Maximum unlock exceeded]) 00010003(0x8004FC01, 20:25:24:542) Error: (10/03/2014 03:19:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Processor: Intel(R) Celeron(R) D CPU 220 @ 1.20GHz Percentage of memory in use: 34% Total physical RAM: 3071.34 MB Available physical RAM: 2026.28 MB Total Pagefile: 6140.96 MB Available Pagefile: 5059.2 MB Total Virtual: 2047.88 MB Available Virtual: 1905.85 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:113.18 GB) (Free:89.02 GB) NTFS Drive d: () (Fixed) (Total:119.6 GB) (Free:117.15 GB) NTFS Drive e: () (Fixed) (Total:65.21 GB) (Free:65.12 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 53491B99) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=113.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=119.6 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=65.2 GB) - (Type=07 NTFS) ==================== End Of Log ============================