Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23-04-2015 02 Ran by UNIQA at 2015-04-24 18:42:16 Running from C:\Users\UNIQA\Downloads Boot Mode: Safe Mode (with Networking) ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3394720915-3450083292-1391283307-500 - Administrator - Disabled) asdasd (S-1-5-21-3394720915-3450083292-1391283307-1002 - Administrator - Enabled) => C:\Users\asdasd Gość (S-1-5-21-3394720915-3450083292-1391283307-501 - Limited - Disabled) Kozienice (S-1-5-21-3394720915-3450083292-1391283307-1001 - Limited - Enabled) => C:\Users\Kozienice UNIQA (S-1-5-21-3394720915-3450083292-1391283307-1000 - Administrator - Enabled) => C:\Users\UNIQA ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: COMODO Antivirus (Enabled - Up to date) {F0BC89B2-8937-0933-021B-B17D981F2A71} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Comodo Defense+ (Enabled - Up to date) {4BDD6856-AF0D-06BD-38AB-8A0FE39860CC} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated) Adobe Reader XI MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AB0000000001}) (Version: 11.0.00 - Adobe Systems Incorporated) Adobe Reader XI - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.00 - Adobe Systems Incorporated) COMODO Antivirus (HKLM\...\{2736B6BD-31EC-4FC8-A48C-F0A5C914C0B6}) (Version: 7.0.55655.4142 - COMODO Security Solutions Inc.) Comodo Dragon (HKLM-x32\...\Comodo Dragon) (Version: 36.1.1.21 - Comodo) Dell Backup and Recovery - Support Software (HKLM-x32\...\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 1.6.2.0 - Dell Inc.) Dell Backup and Recovery (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 1.6.2.0 - Dell Inc.) Dell Digital Delivery (HKLM-x32\...\{D850CB7E-72BC-4510-BA4F-48932BFAB295}) (Version: 2.9.901.0 - Dell Products, LP) Dell Edoc Viewer (HKLM\...\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc) DSC/AA Factory Installer (Version: 3.4.6299.48 - PC-Doctor, Inc.) Hidden Exsys Corvid Eval (HKLM-x32\...\{C366577D-44A3-4F5F-BAE2-AAAF24A2C9AE}) (Version: 6.0.0 - Exsys) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 42.0.2311.90 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.14.1724 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.18.10.3272 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.7.3.1001 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation) Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) Malwarebytes Anti-Malware wersja 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office 2013 dla Użytkowników Domowych i Małych Firm - pl-pl (HKLM\...\HomeBusinessRetail - pl-pl) (Version: 15.0.4701.1002 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP1 English (HKLM-x32\...\{E59113EB-0285-4BFD-A37A-B79EAC6B8F4B}) (Version: 3.5.5692.0 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 37.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 pl)) (Version: 37.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.3.0 - Mozilla) Mozilla Thunderbird 31.3.0 (x86 pl) (HKLM-x32\...\Mozilla Thunderbird 31.3.0 (x86 pl)) (Version: 31.3.0 - Mozilla) My Dell (HKLM\...\PC-Doctor for Windows) (Version: 3.4.6299.48 - PC-Doctor, Inc.) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.4 - Notepad++ Team) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4693.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4701.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4693.1002 - Microsoft Corporation) Hidden PrivDog (HKLM-x32\...\PrivDog) (Version: 2.2.0.14 - privdog.com) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.30164 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7004 - Realtek Semiconductor Corp.) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 25-02-2015 16:41:45 Windows Update 04-03-2015 17:12:56 Windows Update 11-03-2015 15:13:11 Windows Update 25-03-2015 16:45:05 Windows Update 07-04-2015 15:56:55 Windows Update 15-04-2015 15:55:14 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {184C9F64-4BC8-4359-A9F9-74A231EFBF62} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-04-22] (COMODO) Task: {237F66C7-8AFE-4CDC-A162-729FEA2BAA27} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-04-07] (Microsoft Corporation) Task: {26BAC521-3BB2-41B7-A80D-894D3E21E967} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-04-22] (COMODO) Task: {3D4AD329-DDD6-4FDE-9F4C-C35292DB800C} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-04-07] (Microsoft Corporation) Task: {6EF8E9DF-60F4-4C8E-9313-C5124593487C} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\My Dell\uaclauncher.exe [2013-08-22] (PC-Doctor, Inc.) Task: {74CD81AB-ED8B-499F-937F-9E695966477B} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-03-18] (Microsoft Corporation) Task: {7508FF56-ADD5-46AE-95EF-C3B8C3C3B658} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe Task: {755C9CA9-333E-4E59-B54A-E725D1041A43} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-04-07] (Microsoft Corporation) Task: {9E9A52B3-8BB6-423C-A541-D6B9D21FDD4D} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\My Dell\sessionchecker.exe [2013-08-22] (PC-Doctor, Inc.) Task: {9EFB16CA-FE1D-4F7F-B2A4-3FE9D8B57BCC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-05] (Google Inc.) Task: {A43A200C-83DB-4247-B814-2FB078422EAD} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-04-07] (Microsoft Corporation) Task: {CB18E8F1-81C5-4476-B8D7-DD1244E2EB10} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-03-18] (Microsoft Corporation) Task: {CB2FB6F4-DC75-4FA3-AB4B-29A86A41E6F4} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {D4B55C8E-5B6D-4927-A5BF-E960699DE931} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-04-22] (COMODO) Task: {D642289A-1C8D-4ADE-8464-3F01609D064D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-05] (Google Inc.) Task: {D9D32CE6-1739-4E09-B093-DF724D82480C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-15] (Adobe Systems Incorporated) Task: {DFD5C081-6726-4629-83E5-F05A117EE97A} - System32\Tasks\Games\UpdateCheck_S-1-5-21-3394720915-3450083292-1391283307-1001 Task: {EC34AF7E-DB73-42D5-BC8C-FDCAEBA804EE} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-04-22] (COMODO) Task: {F9DE4BC3-C394-4DDE-A0A9-82A3344524E9} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-04-22] (COMODO) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== 2014-03-17 08:24 - 2013-08-19 03:21 - 00020256 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayIcon.dll 2014-03-17 08:24 - 2013-08-19 03:21 - 00019232 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayNotBackuped.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Windows\system32\aitstatic.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\appidapi.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\appidcertstorecheck.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\appidpolicyconverter.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\appidsvc.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\atmfd.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\atmlib.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\audiodg.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\AudioEng.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\AUDIOKSE.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\AudioSes.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\audiosrv.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\blackbox.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ci.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\crypt32.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\cryptnet.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\cryptsp.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\cryptsvc.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\cryptui.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\dciman32.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\drmmgrtn.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\drmv2clt.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\dxmasf.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\dxtmsft.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\dxtrans.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\EncDump.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\evr.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\fontsub.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ieapfltr.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\iedkcs32.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ieetwcollectorres.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ieframe.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\iertutil.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\iesetup.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ieui.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ieUnatt.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\inetcpl.cpl:$CmdTcID AlternateDataStreams: C:\Windows\system32\JavaScriptCollectionAgent.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\jscript9.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\jscript9diag.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\jsproxy.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\lpk.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\mf.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\mferror.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\mfplat.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\mfpmp.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\mfps.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\msctf.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\msdxm.ocx:$CmdTcID AlternateDataStreams: C:\Windows\system32\msfeeds.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\mshtml.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\MshtmlDac.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\mshtmled.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\mshtmlmedia.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\msmmsp.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\msnetobj.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\msrating.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\msscp.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\MsSpellCheckingFacility.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\mstscax.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\nlasvc.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\oleaut32.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\pcadm.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\pcaevts.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\pcalua.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\pcasvc.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\pcawrk.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\perftrack.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\powertracker.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\profsvc.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\qdvd.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\quartz.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\rrinstaller.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\scesrv.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\setbcdlocale.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\shell32.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\spwmp.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\TSWbPrxy.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\ubpm.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\urlmon.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\vbscript.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\wdi.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\win32k.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\WindowsCodecs.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\wininet.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\winload.efi:$CmdTcID AlternateDataStreams: C:\Windows\system32\winload.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\winresume.efi:$CmdTcID AlternateDataStreams: C:\Windows\system32\winresume.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\wintrust.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\wmdrmsdk.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\wmp.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\WMPhoto.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\wmploc.DLL:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\aaclient.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\appidapi.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\atmfd.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\atmlib.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\AudioEng.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\AUDIOKSE.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\AudioSes.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\blackbox.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\crypt32.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\cryptnet.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\cryptsp.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\cryptsvc.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\cryptui.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\dciman32.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\drmmgrtn.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\drmv2clt.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\dxmasf.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\dxtmsft.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\dxtrans.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\evr.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\FlashPlayerApp.exe:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\fontsub.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ieapfltr.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ieframe.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\iertutil.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\iesetup.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ieui.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ieUnatt.exe:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\inetcpl.cpl:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\jscript9.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\jscript9diag.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\jsproxy.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\lpk.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mf.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mferror.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mfplat.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mfpmp.exe:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mfps.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msctf.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msdxm.ocx:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msfeeds.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mshtml.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mshtmlmedia.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msnetobj.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msrating.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msscp.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mstscax.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ncsi.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\nlaapi.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\oleaut32.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\qdvd.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\quartz.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\rrinstaller.exe:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\scesrv.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\shell32.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\spwmp.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ubpm.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\vbscript.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\wdi.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\WindowsCodecs.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\wininet.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\wintrust.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\wmdrmsdk.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\wmp.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\WMPhoto.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\wmploc.DLL:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\appid.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\cng.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\mountmgr.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\mrxdav.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\PEAuth.sys:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Desktop\05_WIM_TM.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Desktop\05_WIM_TM.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Desktop\dowod.jpeg:3or4kl4x13tuuug3Byamue2s4b AlternateDataStreams: C:\Users\Kozienice\Desktop\dowod.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} AlternateDataStreams: C:\Users\Kozienice\Desktop\ErgoHestia.jpg:3or4kl4x13tuuug3Byamue2s4b AlternateDataStreams: C:\Users\Kozienice\Desktop\ErgoHestia.jpg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} AlternateDataStreams: C:\Users\Kozienice\Desktop\Polisa ErgoHestia.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Desktop\smigus-jpeg.jpg:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Desktop\UMOWA ŚMIETANKA.jpeg:3or4kl4x13tuuug3Byamue2s4b AlternateDataStreams: C:\Users\Kozienice\Desktop\UMOWA ŚMIETANKA.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} AlternateDataStreams: C:\Users\Kozienice\Desktop\wielkanoc3.jpg:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Desktop\WYPOWIEDZENIE SMIETANKA.jpeg:3or4kl4x13tuuug3Byamue2s4b AlternateDataStreams: C:\Users\Kozienice\Desktop\WYPOWIEDZENIE SMIETANKA.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} AlternateDataStreams: C:\Users\Kozienice\Downloads\11124587_859914350747362_939281828_n.jpg:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\13dlda000_ulotka_mieszkaniowa.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\13dlda000_ulotka_mieszkaniowa.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1420812505652.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1420812542745.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422446666166:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422446666166:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422446924045:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422446924045:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422616951246:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422616951246:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422621949464:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422621949464:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422621976336:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422621976336:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422870409064:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422870409064:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422887514730:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422887514730:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422887530792:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422887530792:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422887564972:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422887564972:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422887575644:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422887575644:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422887745400:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1422887745400:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423227961153:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423227961153:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423228095642:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423228095642:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423232231987:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423232231987:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423232276995:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423234271467:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423234271467:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423234301992:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423234301992:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423234311611:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423234311611:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423234360667:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423234360667:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423477747207:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423477747207:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423477970906:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423477970906:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423477994851:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423477994851:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423575572490:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423575572490:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423575600299:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423575600299:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423656808243:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423656808243:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423747191463:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423747191463:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423747227561:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423747227561:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423830800896:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423830800896:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423830827661:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423830827661:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423834547207:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\1423834547207:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1429601135700:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1429601149756:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1429601222789:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1429601374520:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\1429601394509:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\5799.htm:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\5799.htm:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\6432_OWU_prev.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\6432_OWU_prev.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\651011125546:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\651011125546:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\651011125546(1):$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\651011125546(1):$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\651011125546(2):$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\651011125546(2):$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\651011125546(3):$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\651011125546(3):$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\651011125546(4):$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\651011125546(4):$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\71A6(1).pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\71A6(1).pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\71A6.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\automatyczne wznowienie - pismo20150209_0000.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\automatyczne wznowienie - pismo20150209_0000.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\ChromeSetup.exe:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\ChromeSetup.exe:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\CorvidEval.zip:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\CorvidEval.zip:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\dla patrycji od kasi.eml:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\dla patrycji od kasi.eml:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\dla patrycji od kasi.eml:OECustomProperty AlternateDataStreams: C:\Users\Kozienice\Downloads\gimp-2.8.14-setup-1.exe:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\gimp-2.8.14-setup-1.exe:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\gra_Wójciak.7z:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\gra_Wójciak.7z:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\Hudziak Wojciech - Sprawozdanie.rar:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\Hudziak Wojciech - Sprawozdanie.rar:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\IIwSP1.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\IIwSP1.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\image2015-02-13-055046.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\IMG_20150323_0004.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\IMG_20150323_0005.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\JavaSetup8u25.com:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\JavaSetup8u25.com:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\najczesciej_zadawane_pytania.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\najczesciej_zadawane_pytania.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\npp.6.7.4.Installer.exe:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\npp.6.7.4.Installer.exe:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\ocdist21082012.zip:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\ocdist21082012.zip:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\odzysk.rar:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\odzysk.rar:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\Pietrzyk ufg.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\Pietrzyk ufg.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\polisa_100013305540.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\polisa_100013305540.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\raport kolizji1.sxw:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\regulamin.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\regulamin.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\Szkolenie_on_line_odpowiedzi_na_pytania.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\Szkolenie_on_line_odpowiedzi_na_pytania.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\Thunderbird Setup 31.3.0.exe:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\Thunderbird Setup 31.3.0.exe:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\UfgVerificationResult.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\UfgVerificationResult.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\UNIQA_kal_kom_v5_86_(od_19.02.2015)(1).xls:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\UNIQA_kal_kom_v5_86_(od_19.02.2015)(1).xls:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\UNIQA_kal_kom_v5_86_(od_19.02.2015).xls:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\UNIQA_kal_kom_v5_86_(od_19.02.2015).xls:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\UNIQA_wz_3122(1).pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\UNIQA_wz_3122(1).pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\UNIQA_wz_3122.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\UNIQA_wz_3122.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\wykład 1.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\wykład 1.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\wykład 2.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\wykład 2.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\z15zal1.pdf:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\z15zal1.pdf:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\zadaniezaliczeniowezintegracjiinformacji.zip:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\zadaniezaliczeniowezintegracjiinformacji.zip:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\Za_acznik_nr_2___papier_firmowy_dla_UNIQA_TU_SA.doc:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\Za_acznik_nr_2___papier_firmowy_dla_UNIQA_TU_SA.doc:$CmdZnID AlternateDataStreams: C:\Users\Kozienice\Downloads\Za_acznik_nr_4___papier_firmowy_og_lny.doc:$CmdTcID AlternateDataStreams: C:\Users\Kozienice\Downloads\Za_acznik_nr_4___papier_firmowy_og_lny.doc:$CmdZnID AlternateDataStreams: C:\Users\UNIQA\Desktop\Winsock_Repair_Setup_1052.exe:$CmdTcID ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2" ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, the associated entry will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3394720915-3450083292-1391283307-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\UNIQA\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 156.154.70.25 - 156.154.71.25 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Faulty Device Manager Devices ============= Name: Security Processor Loader Driver Description: Security Processor Loader Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: spldr Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (04/24/2015 06:37:18 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 06:33:08 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 06:26:29 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 06:16:45 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 06:15:59 PM) (Source: MsiInstaller) (EventID: 1024) (User: DELL2) Description: Produkt: Adobe Reader XI - Polish - nie można zainstalować aktualizacji '{AC76BA86-7AD7-0000-2550-7A8C40011010}'. Kod błędu 1625. Instalator Windows może tworzyć dzienniki, aby ułatwić rozwiązywanie problemów z instalowaniem pakietów oprogramowania. Użyj następującego łącza, aby uzyskać instrukcje dotyczące włączania obsługi rejestrowania: http://go.microsoft.com/fwlink/?LinkId=23127 Error: (04/24/2015 06:10:45 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 06:03:40 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 05:09:20 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 05:00:36 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 04:57:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (04/24/2015 06:38:31 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084WSearch{9E175B6D-F52A-11D8-B9A5-505054503030} Error: (04/24/2015 06:38:31 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084WSearch{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Error: (04/24/2015 06:38:28 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084EventSystem{1BE1F766-5536-11D1-B726-00C04FB926AF} Error: (04/24/2015 06:38:22 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084ShellHWDetection{DD522ACC-F821-461A-A407-50B198B896DC} Error: (04/24/2015 06:35:33 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: CFRMD cmdGuard discache HMD spldr Wanarpv6 Error: (04/24/2015 06:34:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Windows Search z powodu następującego błędu: %%1053 Error: (04/24/2015 06:34:04 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Windows Search. Error: (04/24/2015 06:34:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Windows Search z powodu następującego błędu: %%1053 Error: (04/24/2015 06:34:00 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Windows Search. Error: (04/24/2015 06:33:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Windows Search z powodu następującego błędu: %%1053 Microsoft Office Sessions: ========================= Error: (04/24/2015 06:37:18 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 06:33:08 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 06:26:29 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 06:16:45 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 06:15:59 PM) (Source: MsiInstaller) (EventID: 1024) (User: DELL2) Description: Adobe Reader XI - Polish{AC76BA86-7AD7-0000-2550-7A8C40011010}1625(NULL)(NULL)(NULL) Error: (04/24/2015 06:10:45 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 06:03:40 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 05:09:20 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 05:00:36 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/24/2015 04:57:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-4130 CPU @ 3.40GHz Percentage of memory in use: 23% Total physical RAM: 4012.95 MB Available physical RAM: 3089.55 MB Total Pagefile: 8024.09 MB Available Pagefile: 6953.68 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:450.06 GB) (Free:397.79 GB) NTFS Drive d: (GOAUTO) (CDROM) (Total:0.03 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 465.8 GB) (Disk ID: 5A9B2227) Partition 1: (Not Active) - (Size=39 MB) - (Type=DE) Partition 2: (Active) - (Size=15.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=450.1 GB) - (Type=07 NTFS) ==================== End Of Log ============================