Additional scan result of Farbar Recovery Scan Tool (x86) Version: 11-03-2015 Ran by r at 2015-03-20 10:30:03 Running from C:\Users\r\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 16 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.134 - Adobe Systems Incorporated) Aktualizacje NVIDIA 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation) Bing Bar (HKLM\...\{449CE12D-E2C7-4B97-B19E-55D163EA9435}) (Version: 7.0.619.0 - Microsoft Corporation) CCleaner (HKLM\...\CCleaner) (Version: 5.02 - Piriform) D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych (HKLM\...\{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}) (Version: 15.4.5722.2 - Microsoft Corporation) Galeria fotografii usługi Windows Live (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Junk Mail filter update (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden League of Legends (HKLM\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (Version: 3.0.1 - Riot Games) Hidden Mesh Runtime (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.7.205.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Mozilla Firefox 36.0.1 (x86 pl) (HKLM\...\Mozilla Firefox 36.0.1 (x86 pl)) (Version: 36.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 36.0 - Mozilla) NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.11.9621 - NVIDIA Corporation) NVIDIA Sterownik graficzny 307.83 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 307.83 - NVIDIA Corporation) OpenOffice.org 3.2 (HKLM\...\{8727531E-6C58-4852-A90B-39CF45E269A9}) (Version: 3.2.9502 - OpenOffice.org) Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - plk) (Version: - Microsoft Corporation) Panel sterowania NVIDIA 307.83 (Version: 307.83 - NVIDIA Corporation) Hidden Poczta usługi Windows Live (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Podstawowe programy Windows Live (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Pomocnik Messenger (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden PVSonyDll (Version: 1.00.0001 - NVIDIA Corporation) Hidden Realtek AC'97 Audio (HKLM\...\{FB08F381-6533-4108-B7DD-039E11FBC27E}) (Version: - ) Segoe UI (Version: 15.4.2271.0615 - Microsoft Corp) Hidden Skype™ 7.1 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.1.105 - Skype Technologies S.A.) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) The Settlers 7 - Droga do królestwa (HKLM\...\{9C916142-C18C-429D-BFED-40094A7E0BEB}) (Version: 1.12.1396 - Ubisoft) Ubisoft Game Launcher (HKLM\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-267160941-170183395-1183479452-1000_Classes\CLSID\{1c492e6a-2803-5ed7-83e1-1b1d4d41eb39}\InprocServer32 -> C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () ==================== Restore Points ========================= Could not list restore points. Check "winmgmt" service or repair WMI. ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2006-11-02 11:23 - 2006-09-18 22:41 - 00000761 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {4A445763-79B6-4B61-8E9B-26E6318E075F} - System32\Tasks\{6E0690ED-9910-451E-9E16-262FBBB34582} => pcalua.exe -a C:\Windows\system32\ALSNDMGR.CPL -c Menedżer efektów dźwiękowych Task: {D220AC7E-B15C-4F08-BA38-17E3B7AD4216} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-01-20] (Piriform Ltd) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Loaded Modules (whitelisted) ============== 2010-05-04 15:36 - 2010-05-04 15:36 - 00970752 _____ () C:\Program Files\OpenOffice.org 3\program\libxml2.dll 2015-01-21 03:06 - 2015-01-21 03:06 - 00057344 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2015-03-19 20:47 - 2015-03-19 20:47 - 16858288 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_134.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-267160941-170183395-1183479452-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\r\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg HKU\S-1-5-21-267160941-170183395-1183479452-1001\Control Panel\Desktop\\Wallpaper -> C:\windows\Web\Wallpaper\img24.jpg DNS Servers: 31.11.202.254 - 37.8.214.2 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Accounts: ============================= Administrator (S-1-5-21-267160941-170183395-1183479452-500 - Administrator - Disabled) Gość (S-1-5-21-267160941-170183395-1183479452-501 - Limited - Disabled) r (S-1-5-21-267160941-170183395-1183479452-1000 - Administrator - Enabled) => C:\Users\r UpdatusUser (S-1-5-21-267160941-170183395-1183479452-1001 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Faulty Device Manager Devices ============= Could not list Devices. Check "winmgmt" service or repair WMI. ==================== Event log errors: ========================= Application errors: ================== Error: (03/20/2015 09:54:19 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program League of Legends.exe w wersji 5.5.0.278 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania raportami i rozwiązaniami problemów. Identyfikator procesu: 9e8 Godzina rozpoczęcia: 01d062e5645272af Godzina zakończenia: 76 Error: (03/20/2015 08:05:02 AM) (Source: EventSystem) (EventID: 4609) (User: ) Description: d:\longhorn\com\complus\src\events\tier1\eventsystemobj.cpp458007043c Error: (03/20/2015 01:28:45 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program League of Legends.exe w wersji 5.5.0.278 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania raportami i rozwiązaniami problemów. Identyfikator procesu: d5c Godzina rozpoczęcia: 01d062a1af42c1db Godzina zakończenia: 79 Error: (03/20/2015 00:58:52 AM) (Source: Wininit) (EventID: 1015) (User: ) Description: Błąd krytycznego procesu systemowego C:\Windows\system32\lsass.exe z kodem stanu c000001d. Komputer musi być ponownie uruchomiony. Error: (03/20/2015 00:58:44 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Aplikacja powodująca błąd lsass.exe, wersja 6.0.6002.18541, sygnatura czasowa 0x4ec3c4c9, moduł powodujący błąd scecli.dll, wersja 6.0.6002.18005, sygnatura czasowa 0x49e037ec, kod wyjątku 0xc000001d, przesunięcie błędu 0x0000161e, identyfikator procesu 0x288, godzina rozpoczęcia aplikacji 0xlsass.exe0. Error: (03/20/2015 00:57:03 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Aplikacja powodująca błąd MsMpEng.exe, wersja 4.7.205.0, sygnatura czasowa 0x54cb2053, moduł powodujący błąd mpengine.dll, wersja 1.1.11400.0, sygnatura czasowa 0x54ca003f, kod wyjątku 0xc0000005, przesunięcie błędu 0x00150339, identyfikator procesu 0xa84, godzina rozpoczęcia aplikacji 0xMsMpEng.exe0. Error: (03/20/2015 00:56:28 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Aplikacja powodująca błąd MsMpEng.exe, wersja 4.7.205.0, sygnatura czasowa 0x54cb2053, moduł powodujący błąd mpengine.dll, wersja 1.1.11400.0, sygnatura czasowa 0x54ca003f, kod wyjątku 0xc0000005, przesunięcie błędu 0x0012bda5, identyfikator procesu 0x3d8, godzina rozpoczęcia aplikacji 0xMsMpEng.exe0. Error: (03/20/2015 00:18:03 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Aplikacja powodująca błąd LogonUI.exe, wersja 6.0.6001.18000, sygnatura czasowa 0x47918daf, moduł powodujący błąd ole32.dll, wersja 6.0.6002.18277, sygnatura czasowa 0x4c28d53e, kod wyjątku 0xc0000005, przesunięcie błędu 0x0003c81d, identyfikator procesu 0xfc0, godzina rozpoczęcia aplikacji 0xLogonUI.exe0. Error: (03/20/2015 00:18:01 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Aplikacja powodująca błąd LogonUI.exe, wersja 6.0.6001.18000, sygnatura czasowa 0x47918daf, moduł powodujący błąd ole32.dll, wersja 6.0.6002.18277, sygnatura czasowa 0x4c28d53e, kod wyjątku 0xc0000005, przesunięcie błędu 0x0003c81d, identyfikator procesu 0x414, godzina rozpoczęcia aplikacji 0xLogonUI.exe0. Error: (03/20/2015 00:17:57 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Aplikacja powodująca błąd svchost.exe_Netman, wersja 6.0.6001.18000, sygnatura czasowa 0x47918b89, moduł powodujący błąd ole32.dll, wersja 6.0.6002.18277, sygnatura czasowa 0x4c28d53e, kod wyjątku 0xc0000005, przesunięcie błędu 0x0003c81d, identyfikator procesu 0xe14, godzina rozpoczęcia aplikacji 0xsvchost.exe_Netman0. System errors: ============= Error: (03/20/2015 08:27:54 AM) (Source: DCOM) (EventID: 10005) (User: ) Description: 3winmgmt{8BC3F05E-D86B-11D0-A075-00C04FB68820} Error: (03/20/2015 08:27:33 AM) (Source: DCOM) (EventID: 10005) (User: ) Description: 3winmgmt{8BC3F05E-D86B-11D0-A075-00C04FB68820} Error: (03/20/2015 08:27:01 AM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: ZARZĄDZANIE NT) Description: Error: (03/20/2015 08:07:43 AM) (Source: DCOM) (EventID: 10005) (User: ) Description: 3winmgmt{8BC3F05E-D86B-11D0-A075-00C04FB68820} Error: (03/20/2015 08:05:13 AM) (Source: DCOM) (EventID: 10005) (User: ) Description: 3winmgmt{8BC3F05E-D86B-11D0-A075-00C04FB68820} Error: (03/20/2015 08:05:07 AM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084WSearch{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Error: (03/20/2015 08:05:07 AM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084WSearch{9E175B6D-F52A-11D8-B9A5-505054503030} Error: (03/20/2015 08:05:02 AM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084EventSystem{1BE1F766-5536-11D1-B726-00C04FB926AF} Error: (03/20/2015 08:04:56 AM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084ShellHWDetection{DD522ACC-F821-461A-A407-50B198B896DC} Error: (03/20/2015 08:04:55 AM) (Source: Microsoft Antimalware) (EventID: 2004) (User: ) Description: Produkt %60 napotkał błąd podczas próby załadowania podpisów i podejmie próbę powrotu do znanego zestawu dobrych podpisów. Podpisy objęte próbą: %24 Kod błędu: 0x8050800c Opis błędu: Wystąpił nieoczekiwany problem. Zainstaluj dostępne aktualizacje, a następnie spróbuj ponownie uruchomić program. Aby uzyskać informacje na temat instalowania aktualizacji, zobacz Pomoc i obsługę techniczną. Wersja podpisu: 1.193.3192.0;1.193.3192.0 Wersja aparatu: %600 Microsoft Office Sessions: ========================= Error: (03/20/2015 09:54:19 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: League of Legends.exe5.5.0.2789e801d062e5645272af76 Error: (03/20/2015 08:05:02 AM) (Source: EventSystem) (EventID: 4609) (User: ) Description: d:\longhorn\com\complus\src\events\tier1\eventsystemobj.cpp458007043c Error: (03/20/2015 01:28:45 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: League of Legends.exe5.5.0.278d5c01d062a1af42c1db79 Error: (03/20/2015 00:58:52 AM) (Source: Wininit) (EventID: 1015) (User: ) Description: C:\Windows\system32\lsass.exec000001d Error: (03/20/2015 00:58:44 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: lsass.exe6.0.6002.185414ec3c4c9scecli.dll6.0.6002.1800549e037ecc000001d0000161e28801d062a04b2500b0 Error: (03/20/2015 00:57:03 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: MsMpEng.exe4.7.205.054cb2053mpengine.dll1.1.11400.054ca003fc000000500150339a8401d062a059cefedb Error: (03/20/2015 00:56:28 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: MsMpEng.exe4.7.205.054cb2053mpengine.dll1.1.11400.054ca003fc00000050012bda53d801d062a04c3e562c Error: (03/20/2015 00:18:03 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: LogonUI.exe6.0.6001.1800047918dafole32.dll6.0.6002.182774c28d53ec00000050003c81dfc001d0629af27a78a0 Error: (03/20/2015 00:18:01 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: LogonUI.exe6.0.6001.1800047918dafole32.dll6.0.6002.182774c28d53ec00000050003c81d41401d0629af13fc238 Error: (03/20/2015 00:17:57 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: svchost.exe_Netman6.0.6001.1800047918b89ole32.dll6.0.6002.182774c28d53ec00000050003c81de1401d0629aef253eba CodeIntegrity Errors: =================================== Date: 2015-03-03 15:12:41.137 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\verifier.dll because the set of per-page image hashes could not be found on the system. Date: 2015-03-02 09:38:28.031 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\verifier.dll because the set of per-page image hashes could not be found on the system. Date: 2015-02-26 07:43:45.068 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-26 07:43:44.928 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-26 07:43:44.771 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-26 07:43:44.537 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-26 07:43:44.396 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-26 07:18:15.102 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-26 07:18:15.023 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system. Date: 2015-02-26 07:18:14.945 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\tcpip.sys because the set of per-page image hashes could not be found on the system.