Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-02-2015 Ran by Marek Markiewicz at 2015-02-13 17:27:40 Running from C:\Users\Marek Markiewicz\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: ESET Smart Security 8.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: ESET Smart Security 8.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834} FW: Zapora osobista ESET (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-922980303-2826830891-3979983212-1001\...\uTorrent) (Version: 3.4.2.32354 - BitTorrent Inc.) 64 Bit HP CIO Components Installer (Version: 13.2.1 - Hewlett-Packard) Hidden ABBYY FineReader 12 Professional (HKLM-x32\...\{F12000FE-0001-0000-0000-074957833700}) (Version: 12.0.501 - ABBYY Production LLC) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) Aktualizacje NVIDIA 17.12.8 (Version: 17.12.8 - NVIDIA Corporation) Hidden Assassins Creed Unity (HKLM-x32\...\QXNzYXNzaW5zQ3JlZWRVbml0eQ==_is1) (Version: 1 - ) ASUS MultiFrame (HKLM-x32\...\{FB4D076A-DEFD-4EAF-AD63-70D5A3BC262A}) (Version: 1.1.0 - ASUS) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.4.2.23831 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.6.2 - EA Digital Illusions CE AB) Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version: - Cheat Engine) Cities XXL (HKLM-x32\...\Cities XXL_is1) (Version: 1.0 - PLAZA) CorelDRAW Graphics Suite X6 - Capture (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Common (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Connect (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Custom Data (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Draw (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Filters (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - FontNav (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - IPM (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - PHOTO-PAINT (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - PL (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Redist (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Setup Files (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - VBA (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - VideoBrowser (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - VSTA (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 - Writing Tools (x64) (Version: 16.1 - Corel Corporation) Hidden CorelDRAW Graphics Suite X6 (64-Bit) (HKLM\...\_{BDBFAC49-8877-472F-876B-75ADB7DBC955}) (Version: 16.1.0.843 - Corel Corporation) CorelDRAW Graphics Suite X6 (x64) (Version: 16.1 - Corel Corporation) Hidden CPUID CPU-Z 1.67.1 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) CyberLink PowerDVD 13 (HKLM-x32\...\InstallShield_{3CFDF154-7E60-4E98-A8DF-C693A4F8E6B6}) (Version: 13.0.3313.58 - CyberLink Corp.) Dying Light wersja 1.0.0.0 (HKLM-x32\...\Dying Light_is1) (Version: 1.0.0.0 - GTX Box Team) EA SPORTS™ FIFA 15 (HKLM-x32\...\{3D4ADA2B-F028-4307-ADF4-6F9AA44725DA}) (Version: 1.4.0.0 - Electronic Arts) e-Deklaracje Desktop (HKLM-x32\...\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1) (Version: 6.0.1 - Ministerstwo Finansow) e-Deklaracje Desktop (x32 Version: 6.0.1 - Ministerstwo Finansow) Hidden EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - ) ESET Smart Security (HKLM\...\{A9550052-52AD-414B-AB58-74F0D7DC8188}) (Version: 8.0.304.2 - ESET, spol s r. o.) FormatFactory 3.3.4.0 (HKLM-x32\...\FormatFactory) (Version: 3.3.4.0 - Format Factory) Foxit Advanced PDF Editor 3 (HKLM-x32\...\B521582C-6BE3-491D-BCC8-FFB8301298E9_is1) (Version: 3.0.5.0 - Foxit Corporation) GIGABYTE OC_GURU II (x32 Version: 1.56.0000 - GIGABYTE Technology Co.,Ltd.) Hidden GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.111 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden HP LaserJet Pro MFP M521 (HKLM-x32\...\{8c0c6b8e-5f52-48bc-afe5-e43403a7d16e}) (Version: 6.0.12335.396 - Hewlett-Packard) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) hpbDSService (x32 Version: 002.002.07399 - Hewlett-Packard) Hidden hpbM521DSService (x32 Version: 001.001.08049 - Hewlett-Packard) Hidden HPDXP (x32 Version: 3.0.26.12 - HP) Hidden HPLJDXPHelper (x32 Version: 060.048.005 - HP) Hidden HPLJProMFPM521 (HKLM-x32\...\{F8689E4B-C66F-4DBB-8425-7E9E89F6E2B4}) (Version: 1.00.0000 - Hewlett-Packard) HPLJUTCore (x32 Version: 006.000.0001 - HP) Hidden HPLJUTM521 (x32 Version: 006.000.0001 - HP) Hidden hppLaserJetService (x32 Version: 009.031.00898 - Hewlett-Packard) Hidden hppM521LaserJetService (x32 Version: 001.026.00683 - Hewlett-Packard) Hidden hpStatusAlerts (x32 Version: 060.037.00165 - Hewlett Packard) Hidden hpStatusAlertsM521 (x32 Version: 060.045.00109 - Hewlett-Packard) Hidden Intel(R) C++ Redistributables for Windows* on Intel(R) 64 (HKLM-x32\...\{D2437C5C-2D8C-40D2-8059-689AD7239FA3}) (Version: 11.1.048 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.0.1323 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3621 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.0.0.1083 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.63463 - Intel Corporation) Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.510 - Oracle) K-Lite Codec Pack 10.2.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.2.0 - ) Klucz Sprzętowy 2013.0 (HKLM-x32\...\{245BC389-0FCB-43B8-B79D-0574903F40C9}) (Version: 13.0.0 - Sage sp. z o.o.) Komponent Graficznej Wizualizacji 2014 (HKLM-x32\...\{A79F748E-F89C-4E21-B767-F485D14373E0}) (Version: 14.0.441.0 - Sage sp. z o.o.) LJDXPHelperUI (x32 Version: 060.048.005 - HP) Hidden Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech) Mała Księgowość Rzeczpospolitej (HKLM-x32\...\Mała Księgowość Rzeczpospolitej) (Version: 23.07 - Usługi Informatyczne Andrzej Ciupiński) Marvell Storage Utility V4 (HKLM-x32\...\mvMSU) (Version: 4.1.0.2013 - Marvell) Mezzmo (HKU\S-1-5-21-922980303-2826830891-3979983212-1001\...\Mezzmo) (Version: 3.4.4.0 - Conceiva Pty. Ltd.) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office 2013 dla Użytkowników Domowych i Małych Firm - pl-pl (HKLM\...\HomeBusinessRetail - pl-pl) (Version: 15.0.4675.1003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SkyDrive (HKU\S-1-5-21-922980303-2826830891-3979983212-1001\...\SkyDriveSetup.exe) (Version: 17.0.2015.0811 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft WSE 3.0 (HKLM-x32\...\{EDEA8AB7-7683-4ED2-AA19-E6C078064C0D}) (Version: 3.0.5305.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) NBA 2K15 (HKLM-x32\...\Steam App 282350) (Version: - Visual Concepts) NVIDIA GeForce Experience 2.2.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.2 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 347.52 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.33.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.33.0 - NVIDIA Corporation) NVIDIA Sterownik graficzny 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.52 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 347.09 - NVIDIA Corporation) NVIDIA Wirtualny dźwięk Miracast 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 347.52 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4675.1003 - Microsoft Corporation) Hidden ON_OFF Charge 2 B13.0403.1 (HKLM-x32\...\InstallShield_{6B4ED6F7-BB88-4945-B0C6-01410E1BAC3A}) (Version: 1.00.0000 - GIGABYTE) ON_OFF Charge 2 B13.0403.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden ON_OFF Charge B13.0403.1 (HKLM-x32\...\{3DECD372-76A1-4483-BF10-B547790A3261}) (Version: 1.00.0001 - GIGABYTE) Origin (HKLM-x32\...\Origin) (Version: 9.4.22.2815 - Electronic Arts, Inc.) Panel sterowania NVIDIA 347.52 (Version: 347.52 - NVIDIA Corporation) Hidden pdfFactory Pro (HKLM\...\pdfFactory Pro) (Version: 4.50 - FinePrint Software, LLC) PDF-XChange 3 (HKLM\...\PDF-XChange 3_is1) (Version: - Tracker Software) PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation) Płatnik 9.01.001 (HKLM-x32\...\{05381030-963D-4779-BECA-0D7D49268EDB}) (Version: 9.01.001 - Asseco Poland S.A.) Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) proCertum CardManager (HKLM-x32\...\{B96A7F3B-AF29-489A-AE84-1DDF5942971C}) (Version: 3.2.0.144 - Unizeto) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6849 - Realtek Semiconductor Corp.) Resident Evil HD Remaster (HKLM-x32\...\Resident Evil HD Remaster_is1) (Version: - ) Sage Komunikator (HKLM-x32\...\Sage Komunikator) (Version: Sage Komunikator 2013.0 - Sage sp. z o.o.) SHIELD Streaming (Version: 4.0.1000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 17.12.8 - NVIDIA Corporation) Hidden Sound Blaster X-Fi MB3 (HKLM-x32\...\{3689CE39-3173-4952-B7AF-F1A9D6F9A288}) (Version: 1.00.01 - Creative Technology Limited) SpyHunter (HKLM-x32\...\{AF549236-6258-4AC6-A043-5B5B89C6EB61}) (Version: 4.17.6.4336 - Enigma Software Group USA, LLC) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Symfonia Finanse i Księgowość (HKLM-x32\...\Symfonia Finanse i Księgowość) (Version: Symfonia Finanse i Księgowość 2014.b - Sage sp. z o.o.) Symfonia Kadry i Płace (HKLM-x32\...\Symfonia Kadry i Płace) (Version: Symfonia Kadry i Płace 2014.1.b - Sage sp. z o.o.) Symfonia Start Faktura i Kasa (HKLM-x32\...\Symfonia Start Faktura i Kasa) (Version: Symfonia Start Faktura i Kasa 2013 - Sage sp. z o.o.) The Crew (Worldwide) (HKLM-x32\...\Uplay Install 413) (Version: - Ubisoft) UltraISO Premium V9.53 (HKLM-x32\...\UltraISO_is1) (Version: - ) Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft) VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden WATCH_DOGS (HKLM-x32\...\Uplay Install 274) (Version: - Ubisoft) WinRAR 5.01 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) WRF 1.02.001 G (HKLM-x32\...\{460BE803-88CF-4FD2-9082-2450A5959959}) (Version: 1.02.001 G - Asseco Poland S.A.) WRFKL 1.02.001 B (HKLM-x32\...\{A98C53C1-D7D5-43FE-82F4-EACD66292004}) (Version: 1.02.001 B - Asseco Poland S.A.) WRFSL (x32 Version: 1.02.001 D - Asseco Poland S.A.) Hidden WRFSL 1.02.001 D (HKLM-x32\...\{98A95680-71E0-4C6B-B3D0-384193FCA4F6}) (Version: 1.02.001 D - Asseco Poland S.A.) Wtyczka e-Deklaracje (HKLM-x32\...\{81BF6353-3C5B-4E6E-A566-7E162A00BF72}_is1) (Version: 4.0.0 - Ministerstwo Finansów) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-922980303-2826830891-3979983212-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-922980303-2826830891-3979983212-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Marek Markiewicz\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\FileSyncApi64.dll (Microsoft Corporation) ==================== Restore Points ========================= 28-01-2015 21:03:27 Windows Update 06-02-2015 08:29:14 Windows Update 11-02-2015 12:53:48 Windows Update 13-02-2015 14:29:20 Installed SpyHunter ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2015-02-13 12:51 - 2015-02-13 12:51 - 00000000 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {04A09AF8-CB62-466F-AAD7-1C9B72F5919C} - System32\Tasks\GoogleUpdateTaskMachineCore1d04144681ab3a6 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-10] (Google Inc.) Task: {7373A31A-61B2-4DED-88AD-9690D0E57DC6} - System32\Tasks\SpyHunter4Startup => C:\Program Files (x86)\Enigma Software Group\SpyHunter\Spyhunter4.exe [2015-02-13] (Enigma Software Group USA, LLC.) Task: {7CF0BE21-7C8F-4538-97F8-9FC736BD1AEC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-10] (Google Inc.) Task: {881E8407-8834-49C0-B63F-6A788C50702C} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-11-04] (Microsoft Corporation) Task: {B18DC820-B224-4D6E-9558-E3B161749E64} - System32\Tasks\Microsoft Office 15 Sync Maintenance for RACH-CIACH-Marek Markiewicz RACH-CIACH => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-11-04] (Microsoft Corporation) Task: {BF1A69EF-E72C-4186-B5B1-D0B32272B7AD} - System32\Tasks\HPLJCustParticipation => C:\Program Files (x86)\HP\HPLJUT\HPLJUTSCH.exe [2012-08-07] (Hewlett Packard) Task: {DB22B200-3B66-45D6-96D6-1CA29B1504CA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-10] (Google Inc.) Task: {DEA1E54D-F8EE-41BC-B51D-32CEAD4DDFA3} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-02-13] (Microsoft Corporation) Task: {F68A48F4-FAF7-457F-98C1-5CE65434D517} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d04144681ab3a6.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== 2013-12-21 00:25 - 2015-02-05 20:07 - 00117576 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-01-12 16:03 - 2013-04-15 11:50 - 00198144 _____ () C:\Windows\System32\HP1006LM.DLL 2014-01-12 16:03 - 2013-04-15 11:50 - 00065024 _____ () C:\Windows\system32\spool\PRTPROCS\x64\HP1006PP.dll 2014-03-15 19:51 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2014-12-27 12:32 - 2014-12-27 12:32 - 00076152 _____ () C:\Windows\system32\PnkBstrA.exe 2015-02-11 19:45 - 2015-02-11 19:44 - 142678016 ____N () C:\ProgramData\nvxasync\cvxasync.exe 2015-02-11 19:44 - 2015-02-11 19:44 - 142678016 __RSH () C:\Users\Marek Markiewicz\AppData\Roaming\nvxasync\nvxasync.exe 2013-12-21 00:18 - 2013-01-25 11:08 - 00089600 _____ () C:\Windows\SYSTEM32\CmdRtr64.DLL 2013-12-21 00:18 - 2013-01-25 11:06 - 00328704 _____ () C:\Windows\SYSTEM32\APOMgr64.DLL 2012-06-13 03:34 - 2012-06-13 03:34 - 01213952 _____ () C:\Program Files (x86)\Marvell\storage\tray\MarvellTray.exe 2010-11-25 02:11 - 2010-11-25 02:11 - 00062464 _____ () D:\Program Files\Conceiva\Mezzmo\HS_REGEX.dll 2012-08-14 02:36 - 2012-08-14 02:36 - 00477696 _____ () D:\Program Files\Conceiva\Mezzmo\tag.dll 2012-04-04 03:08 - 2012-04-04 03:08 - 00839680 _____ () D:\Program Files\Conceiva\Mezzmo\LIBEAY32.dll 2012-04-04 03:08 - 2012-04-04 03:08 - 00159744 _____ () D:\Program Files\Conceiva\Mezzmo\SSLEAY32.dll 2013-03-19 02:42 - 2013-03-19 02:42 - 00061440 _____ () D:\Program Files\Conceiva\Mezzmo\extension-functions.dll 2011-11-22 03:48 - 2011-11-22 03:48 - 00073782 _____ () C:\Program Files (x86)\Marvell\storage\Apache2\bin\zlib1.dll 2007-03-01 10:31 - 2007-03-01 10:31 - 00049152 _____ () C:\Program Files (x86)\Common Files\Sage\OCX\Rockey2.dll 2014-11-18 10:26 - 2014-11-18 10:26 - 00198144 _____ () g:\MK\som.dll 2014-11-18 09:29 - 2014-11-18 09:29 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll 2014-02-05 17:11 - 2013-09-13 12:16 - 00862472 _____ () C:\Program Files (x86)\CyberLink\PowerDVD13\common\UNO\UNO.dll 2014-02-05 17:10 - 2013-05-02 01:06 - 00081920 _____ () C:\Program Files (x86)\CyberLink\PowerDVD13\Common\koan\_ctypes.pyd 2014-02-05 17:10 - 2013-05-02 01:06 - 00053248 _____ () C:\Program Files (x86)\CyberLink\PowerDVD13\Common\Koan\_socket.pyd 2014-02-05 17:10 - 2013-05-02 01:06 - 00655360 _____ () C:\Program Files (x86)\CyberLink\PowerDVD13\Common\Koan\_ssl.pyd 2014-02-05 17:11 - 2013-09-13 12:18 - 00043272 _____ () C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DHProcedure\DHProcedure.dll 2013-12-21 00:11 - 2013-03-12 13:19 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-02-13 17:17 - 2015-02-13 17:17 - 01007104 _____ () D:\Program Files\Origin\platforms\qwindows.dll 2015-02-13 17:17 - 2015-02-13 17:17 - 00023552 _____ () D:\Program Files\Origin\imageformats\qgif.dll 2015-02-13 17:17 - 2015-02-13 17:17 - 00024576 _____ () D:\Program Files\Origin\imageformats\qico.dll 2015-02-13 17:17 - 2015-02-13 17:17 - 00216576 _____ () D:\Program Files\Origin\imageformats\qjpeg.dll 2015-02-13 17:17 - 2015-02-13 17:17 - 00261120 _____ () D:\Program Files\Origin\imageformats\qmng.dll 2015-02-13 17:17 - 2015-02-13 17:17 - 00019456 _____ () D:\Program Files\Origin\imageformats\qtga.dll 2015-02-13 17:17 - 2015-02-13 17:17 - 00337408 _____ () D:\Program Files\Origin\imageformats\qtiff.dll 2015-02-13 17:17 - 2015-02-13 17:17 - 00018944 _____ () D:\Program Files\Origin\imageformats\qwbmp.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\Marek Markiewicz\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-922980303-2826830891-3979983212-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Theme1\img1.jpg DNS Servers: 192.168.0.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\Services: BBSvc => 2 MSCONFIG\Services: BBUpdate => 3 MSCONFIG\Services: Browser => 3 HKLM\...\StartupApproved\StartupFolder: => "more.url" HKLM\...\StartupApproved\Run: => "Nvtmru" ==================== Accounts: ============================= Administrator (S-1-5-21-922980303-2826830891-3979983212-500 - Administrator - Disabled) Gość (S-1-5-21-922980303-2826830891-3979983212-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-922980303-2826830891-3979983212-1005 - Limited - Enabled) Marek Markiewicz (S-1-5-21-922980303-2826830891-3979983212-1001 - Administrator - Enabled) => C:\Users\Marek Markiewicz ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/13/2015 04:58:51 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: delegate_execute.exe, wersja: 40.0.2214.111, sygnatura czasowa: 0x54d1c63a Nazwa modułu powodującego błąd: delegate_execute.exe, wersja: 40.0.2214.111, sygnatura czasowa: 0x54d1c63a Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0002c546 Identyfikator procesu powodującego błąd: 0x19a0 Godzina uruchomienia aplikacji powodującej błąd: 0xdelegate_execute.exe0 Ścieżka aplikacji powodującej błąd: delegate_execute.exe1 Ścieżka modułu powodującego błąd: delegate_execute.exe2 Identyfikator raportu: delegate_execute.exe3 Pełna nazwa pakietu powodującego błąd: delegate_execute.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: delegate_execute.exe5 Error: (02/13/2015 04:58:02 PM) (Source: Apache Service) (EventID: 3299) (User: ) Description: The Apache service named reported the following error: >>> httpd.exe: Could not reliably determine the server's fully qualified domain name, using 192.168.0.104 for ServerName . Error: (02/13/2015 04:42:19 PM) (Source: Apache Service) (EventID: 3299) (User: ) Description: The Apache service named reported the following error: >>> httpd.exe: Could not reliably determine the server's fully qualified domain name, using 192.168.0.104 for ServerName . Error: (02/13/2015 04:33:26 PM) (Source: SideBySide) (EventID: 59) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "1". Błąd w pliku manifestu lub w pliku zasad "2" w wierszu 3. Nieprawidłowa składnia XML. Error: (02/13/2015 04:32:41 PM) (Source: Apache Service) (EventID: 3299) (User: ) Description: The Apache service named reported the following error: >>> httpd.exe: Could not reliably determine the server's fully qualified domain name, using 192.168.0.104 for ServerName . Error: (02/13/2015 03:47:13 PM) (Source: Apache Service) (EventID: 3299) (User: ) Description: The Apache service named reported the following error: >>> httpd.exe: Could not reliably determine the server's fully qualified domain name, using 192.168.0.104 for ServerName . Error: (02/13/2015 03:25:03 PM) (Source: Apache Service) (EventID: 3299) (User: ) Description: The Apache service named reported the following error: >>> httpd.exe: Could not reliably determine the server's fully qualified domain name, using 192.168.0.2 for ServerName . Error: (02/13/2015 03:11:07 PM) (Source: Apache Service) (EventID: 3299) (User: ) Description: The Apache service named reported the following error: >>> httpd.exe: Could not reliably determine the server's fully qualified domain name, using 192.168.0.2 for ServerName . Error: (02/13/2015 02:41:18 PM) (Source: Apache Service) (EventID: 3299) (User: ) Description: The Apache service named reported the following error: >>> httpd.exe: Could not reliably determine the server's fully qualified domain name, using 192.168.0.2 for ServerName . Error: (02/13/2015 02:29:24 PM) (Source: VSS) (EventID: 12305) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: wolumin/dysk jest niepodłączony lub nie został odnaleziony. Kontekst błędu: DeviceIoControl(\\?\GLOBALROOT\Device\HarddiskVolumeShadowCopy1 - 0000000000000168,0x00530190,0000000000000000,0,000000CEC13A20A0,4096,[0]). Operacja: Badaj kopie w tle System errors: ============= Error: (02/13/2015 04:41:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi EsgScanner z powodu następującego błędu: %%1275 Error: (02/13/2015 04:41:39 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\DRIVERS\EsgScanner.sys Error: (02/13/2015 04:35:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi EsgScanner z powodu następującego błędu: %%1275 Error: (02/13/2015 04:35:46 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\DRIVERS\EsgScanner.sys Error: (02/13/2015 03:51:01 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi EsgScanner z powodu następującego błędu: %%1275 Error: (02/13/2015 03:51:01 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\DRIVERS\EsgScanner.sys Error: (02/13/2015 03:36:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi EsgScanner z powodu następującego błędu: %%1275 Error: (02/13/2015 03:36:49 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\DRIVERS\EsgScanner.sys Error: (02/13/2015 03:11:15 PM) (Source: Microsoft-Windows-Directory-Services-SAM) (EventID: 12291) (User: ZARZĄDZANIE NT) Description: Modułowi SAM nie powiodło się uruchomienie wątku nasłuchu TCP/IP lub SPX/IPX. Error: (02/13/2015 03:11:11 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Serwer zakończyła działanie; wystąpił następujący błąd: %%1115 Microsoft Office Sessions: ========================= Error: (02/13/2015 04:58:51 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: delegate_execute.exe40.0.2214.11154d1c63adelegate_execute.exe40.0.2214.11154d1c63ac00000050002c54619a001d047a5ef3c8cccC:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\delegate_execute.exeC:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\delegate_execute.exe3379c005-b399-11e4-8312-94de806d882e Error: (02/13/2015 04:58:02 PM) (Source: Apache Service) (EventID: 3299) (User: ) Description: The Apache service namedreported the following error: >>>httpd.exe: Could not reliably determine the server's fully qualified domain name, using 192.168.0.104 for ServerName Error: (02/13/2015 04:42:19 PM) (Source: Apache Service) (EventID: 3299) (User: ) Description: The Apache service namedreported the following error: >>>httpd.exe: Could not reliably determine the server's fully qualified domain name, using 192.168.0.104 for ServerName Error: (02/13/2015 04:33:26 PM) (Source: SideBySide) (EventID: 59) (User: ) Description: C:\Windows\System32\Taskmgr.exeC:\Windows\System32\Taskmgr.exe0 Error: (02/13/2015 04:32:41 PM) (Source: Apache Service) (EventID: 3299) (User: ) Description: The Apache service namedreported the following error: >>>httpd.exe: Could not reliably determine the server's fully qualified domain name, using 192.168.0.104 for ServerName Error: (02/13/2015 03:47:13 PM) (Source: Apache Service) (EventID: 3299) (User: ) Description: The Apache service namedreported the following error: >>>httpd.exe: Could not reliably determine the server's fully qualified domain name, using 192.168.0.104 for ServerName Error: (02/13/2015 03:25:03 PM) (Source: Apache Service) (EventID: 3299) (User: ) Description: The Apache service namedreported the following error: >>>httpd.exe: Could not reliably determine the server's fully qualified domain name, using 192.168.0.2 for ServerName Error: (02/13/2015 03:11:07 PM) (Source: Apache Service) (EventID: 3299) (User: ) Description: The Apache service namedreported the following error: >>>httpd.exe: Could not reliably determine the server's fully qualified domain name, using 192.168.0.2 for ServerName Error: (02/13/2015 02:41:18 PM) (Source: Apache Service) (EventID: 3299) (User: ) Description: The Apache service namedreported the following error: >>>httpd.exe: Could not reliably determine the server's fully qualified domain name, using 192.168.0.2 for ServerName Error: (02/13/2015 02:29:24 PM) (Source: VSS) (EventID: 12305) (User: ) Description: DeviceIoControl(\\?\GLOBALROOT\Device\HarddiskVolumeShadowCopy1 - 0000000000000168,0x00530190,0000000000000000,0,000000CEC13A20A0,4096,[0]) Operacja: Badaj kopie w tle ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-4770K CPU @ 3.50GHz Percentage of memory in use: 15% Total physical RAM: 16271.85 MB Available physical RAM: 13826.88 MB Total Pagefile: 32655.85 MB Available Pagefile: 29495.69 MB Total Virtual: 131072 MB Available Virtual: 131071.79 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:118.9 GB) (Free:49.73 GB) NTFS Drive d: (Nowy) (Fixed) (Total:1024 GB) (Free:713.25 GB) NTFS Drive e: (PEN) (Removable) (Total:15.01 GB) (Free:14.66 GB) FAT32 Drive f: (Nowy) (Fixed) (Total:1024 GB) (Free:615.49 GB) NTFS Drive g: (Księgowość) (Fixed) (Total:746.52 GB) (Free:737.49 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: 2CF14974) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=118.9 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 2794.5 GB) (Disk ID: 2CF14948) Partition: GPT Partition Type. ======================================================== Disk: 2 (Size: 15 GB) (Disk ID: CAD4EBEA) Partition 4: (Active) - (Size=15 GB) - (Type=0C) ==================== End Of Log ============================