Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-05-2015 Ran by Aneta at 2015-05-03 14:20:01 Running from C:\Users\Aneta\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-4138480181-1134097336-1731304456-500 - Administrator - Disabled) Aneta (S-1-5-21-4138480181-1134097336-1731304456-1001 - Administrator - Enabled) => C:\Users\Aneta Gość (S-1-5-21-4138480181-1134097336-1731304456-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-4138480181-1134097336-1731304456-1005 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-4138480181-1134097336-1731304456-1001\...\uTorrent) (Version: 3.4.2.34024 - BitTorrent Inc.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 17.0.0.144 - Adobe Systems Incorporated) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) ALLConverter PRO 1.3 (HKLM-x32\...\{9370105C-71BB-4FF9-A85B-36D79B95457A}_is1) (Version: - ALLCinema, Inc.) ALLMediaServer (HKLM-x32\...\{FE77909E-B782-4554-A92A-4D887CEF0ACC}_is1) (Version: 0.95 - ALLCinema Ltd.) ALLPlayer V5.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLCinema Ltd.) AMD Catalyst Install Manager (HKLM\...\{205E0849-EBC1-59B1-E47F-BF00D985FE7D}) (Version: 8.0.911.0 - Advanced Micro Devices, Inc.) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.2.2218 - AVAST Software) Combined Community Codec Pack 2014-01-17 (HKLM-x32\...\Combined Community Codec Pack_is1) (Version: 2014.01.17.0 - CCCP Project) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.65.21.50 - Conexant) Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.8000.17 - Dolby Laboratories Inc) Dolby Digital Plus Advanced Audio (HKLM\...\{B0BFC63F-EA07-419E-960B-3FB2ED5DD0B2}) (Version: 7.5.1.1 - Dolby Laboratories Inc) Dropbox (HKU\S-1-5-21-4138480181-1134097336-1731304456-1001\...\Dropbox) (Version: 2.6.24 - Dropbox, Inc.) Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.11 - Lenovo) Energy Management (x32 Version: 8.0.2.11 - Lenovo) Hidden foobar2000 v1.3.7 (HKLM-x32\...\foobar2000) (Version: 1.3.7 - Peter Pawlowski) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 42.0.2311.135 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33057) (Version: 3.6.1.33057.10 - Intel) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.0.0.1083 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Java 8 Update 31 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418031F0}) (Version: 8.0.310 - Oracle Corporation) Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) Java 8 Update 45 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418045F0}) (Version: 8.0.450 - Oracle Corporation) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) Lenovo Bluetooth with Enhanced Data Rate Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.6600 - Broadcom Corporation) Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10230 - Realtek Semiconductor Corp.) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.1219 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 8.0.0.1219 - CyberLink Corp.) Hidden Lenovo pointing device (HKLM\...\Elantech) (Version: 11.4.14.1 - ELAN Microelectronic Corp.) Lenovo PowerDVD10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4331.52 - CyberLink Corp.) Lenovo PowerDVD10 (x32 Version: 10.0.4331.52 - CyberLink Corp.) Hidden Lenovo Solution Center (HKLM\...\{4C2B6F96-3AED-4E3F-8DCE-917863D1E6B1}) (Version: 2.7.003.00 - Lenovo Group Limited) Lenovo VeriFace (HKLM\...\Lenovo VeriFace) (Version: 5.0.13.5261 - Lenovo) Lenovo YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.1.3423 - CyberLink Corp.) Lenovo YouCam (x32 Version: 4.1.3423 - CyberLink Corp.) Hidden Lenovo_Wireless_Driver (HKLM-x32\...\{5D642A72-8194-4A22-80DA-11FE610CCA8E}) (Version: 6.30.223.75 - Lenovo) Malwarebytes Anti-Malware wersja 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation) Microsoft Office 365 - pl-pl (HKLM\...\O365HomePremRetail - pl-pl) (Version: 15.0.4701.1002 - Microsoft Corporation) Microsoft SkyDrive (HKU\S-1-5-21-4138480181-1134097336-1731304456-1001\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 37.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 pl)) (Version: 37.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) NapiProjekt 2.0.0 (build 2151) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) OEM Application Profile (HKLM-x32\...\{C89A97B6-F991-EBB5-77B7-927BCF420EBE}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4701.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4701.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4701.1002 - Microsoft Corporation) Hidden Pakiet sterowników systemu Windows - Lenovo (ACPIVPC) System (06/15/2012 8.1.0.1) (HKLM\...\71BC3FD63F450BA0A957AAECBDB4A000C4F2BE42) (Version: 06/15/2012 8.1.0.1 - Lenovo) Pakiet sterowników systemu Windows - Lenovo (WUDFRd) LenovoVhid (06/19/2012 10.13.29.733) (HKLM\...\8A223E56FB1ED4F697B54E5BF96F1EB63B512684) (Version: 06/19/2012 10.13.29.733 - Lenovo) Podręcznik użytkownika (x32 Version: 1.0.0.15 - Lenovo) Hidden Power2Go (HKLM-x32\...\{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 5.6.0.9109 - CyberLink Corp.) PowerXpressHybrid (x32 Version: 1.00.0000 - Nazwa firmy) Hidden PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.16 - Qualcomm Atheros Communications Inc.) Realtek USB Card Reader (HKLM-x32\...\{1E496A68-4943-424E-829D-5C3C85B7B8F2}) (Version: 6.2.9200.39041 - Realtek Semiconductor Corp.) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.61.90905 - SugarSync, Inc.) UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.15 - Lenovo) WinRAR 5.20 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-4138480181-1134097336-1731304456-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-4138480181-1134097336-1731304456-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Aneta\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-4138480181-1134097336-1731304456-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Aneta\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-4138480181-1134097336-1731304456-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Aneta\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-4138480181-1134097336-1731304456-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Aneta\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\FileSyncApi64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-4138480181-1134097336-1731304456-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Aneta\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4138480181-1134097336-1731304456-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Aneta\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4138480181-1134097336-1731304456-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Aneta\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4138480181-1134097336-1731304456-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Aneta\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) ==================== Restore Points ========================= 18-04-2015 11:20:13 Windows Update 19-04-2015 13:55:45 avast! antivirus system restore point 26-04-2015 22:59:52 Zaplanowany punkt kontrolny 02-05-2015 09:09:15 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {01F422CF-19AA-41A4-8855-F21F1E733D5D} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-24] (Microsoft Corporation) Task: {091BFA8A-4624-4A2F-8F3E-3CACFD64BD17} - System32\Tasks\GoogleUpdateTaskMachineUA1cfef228267f8ab => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-15] (Google Inc.) Task: {128036D0-7F32-46B9-A585-D19E6E520F38} - System32\Tasks\Lenovo\LSC\LSCTaskService => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCTaskService.exe [2014-10-16] () Task: {2A985301-6593-43C3-BBB7-EAD090250D0F} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2014-10-16] (Lenovo) Task: {338A6464-97E7-4D66-B62E-1126D2903952} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-15] (Google Inc.) Task: {40355278-C333-489E-AD57-90D119CED390} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-02-10] (Microsoft Corporation) Task: {56399DF8-A0B9-435B-AF4E-4EE3C36A9C61} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-02-10] (Microsoft Corporation) Task: {5A21281A-A25D-4CBC-8722-1AC554776204} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation) Task: {6AA1B9C8-AB3A-471B-8868-BC02B67DFE1C} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-05-02] (Avast Software s.r.o.) Task: {70614B0F-7B06-49E2-83C3-80CA6E8E61AC} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2014-10-16] (Lenovo) Task: {9840CE68-B234-4886-9BC4-597618824669} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-02-10] (Microsoft Corporation) Task: {A68D6C24-D0C5-4AEE-933A-8A606839389F} - System32\Tasks\Dolby Selector => C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [2012-08-31] (Dolby Laboratories Inc.) Task: {AB5D355B-01CE-489E-9567-C06C43C93C44} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2014-10-16] () Task: {AFEA7D4E-ACB6-47A4-83DC-24587A3620C5} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2014-10-16] () Task: {B2F74A9E-397C-4C64-BB8B-079108956409} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-15] (Google Inc.) Task: {B809E41B-05F9-40ED-B6AA-2C6600B677A6} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation) Task: {BA6991C1-2E83-451B-ADB5-9775C7FDB72A} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2014-10-16] (Lenovo) Task: {CEFE9A8A-A117-4180-958A-BB70CF148D30} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-04-18] (Microsoft Corporation) Task: {CF9CA5DF-EFEC-46B7-AB83-3DA04FF23A95} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {D364C940-683B-44F7-AA8A-FA827C195DB2} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation) Task: {EF5654A3-2A3A-4E87-9343-5679C308DD9E} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-17] (Adobe Systems Incorporated) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1cfef228267f8ab.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== 2013-04-22 17:16 - 2013-04-22 17:16 - 00049368 _____ () C:\Program Files\Lenovo\Bluetooth Software\btwleapi.dll 2014-03-24 17:54 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2013-09-06 04:30 - 2013-09-06 04:30 - 00068368 _____ () C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe 2013-09-06 04:30 - 2013-09-06 04:30 - 00669288 _____ () C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfDataStorageInterface.dll 2015-05-02 10:10 - 2015-05-02 10:10 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-05-02 10:10 - 2015-05-02 10:10 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-05-03 09:46 - 2015-05-03 09:46 - 02926592 _____ () C:\Program Files\AVAST Software\Avast\defs\15050300\algo.dll 2015-04-19 13:57 - 2015-04-19 13:57 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2013-09-06 03:58 - 2012-07-18 06:55 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2015-04-30 01:43 - 2015-04-28 04:07 - 01252680 _____ () C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\libglesv2.dll 2015-04-30 01:43 - 2015-04-28 04:07 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\libegl.dll 2015-04-30 01:43 - 2015-04-28 04:07 - 14980424 _____ () C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\Aneta\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, the associated entry will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-4138480181-1134097336-1731304456-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Aneta\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta z Przeglądarki fotografii systemu Windows.jpg DNS Servers: 62.179.1.61 - 62.179.1.63 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run32: => "RemoteControl10" HKU\S-1-5-21-4138480181-1134097336-1731304456-1001\...\StartupApproved\StartupFolder: => "Wysyłanie do programu OneNote.lnk" HKU\S-1-5-21-4138480181-1134097336-1731304456-1001\...\StartupApproved\Run: => "ALLUpdate" ==================== FirewallRules (whitelisted) =============== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{DD31CC95-4D2B-4983-B807-41A3D9FBF9C7}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{C78DDD0D-3305-4D90-866A-4FE323553EE1}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{26325882-DB18-4721-BCB7-CC55F76CDF6C}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD10.EXE FirewallRules: [{20FBBA6A-4C72-4C52-8C0C-2F9426A84CE2}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe FirewallRules: [{647889E2-9192-4BCE-89E3-5ED5728B2492}] => (Allow) C:\Users\Aneta\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{99280C22-6043-4A30-8327-AF60BB3F3EA5}] => (Allow) C:\Users\Aneta\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{398AAE7A-A421-405D-8D57-F08665B30A87}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe FirewallRules: [{A9570D95-DC02-43FD-AECB-2912C453D726}] => (Allow) C:\Users\Aneta\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{E94AC9BC-2829-47CE-888C-1C90D9CEEB74}] => (Allow) C:\Users\Aneta\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{DAC0F881-F4F1-4C13-980B-4962F5B32A19}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{08EFCF7F-B6F4-4339-8BD7-9E0D32955FA1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{BF8CC0C2-9F49-4427-852B-D5A61CD3425C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (05/03/2015 02:04:46 PM) (Source: ATIeRecord) (EventID: 16386) (User: ) Description: ATI EEU Client has failed to start Error: (05/03/2015 01:48:31 PM) (Source: ATIeRecord) (EventID: 16386) (User: ) Description: ATI EEU Client has failed to start Error: (05/03/2015 00:59:20 PM) (Source: SideBySide) (EventID: 9) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "1". Błąd w pliku manifestu lub w pliku zasad "2" w wierszu 3. Element główny pliku manifestu musi być zmontowany. Error: (05/03/2015 00:49:34 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program backgroundTaskHost.exe w wersji 6.3.9600.17415 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 98 Godzina rozpoczęcia: 01d0858e1eb916e8 Godzina zakończenia: 4294967295 Ścieżka aplikacji: C:\WINDOWS\system32\backgroundTaskHost.exe Identyfikator raportu: 12f40349-f182-11e4-bebc-201a0620cba3 Pełna nazwa pakietu powodującego błąd: ZinioLLC.Zinio_2.1.0.317_x64__0q6dqzpp40p2e Identyfikator aplikacji względem pakietu powodującego błąd: App Error: (05/03/2015 00:46:50 PM) (Source: SideBySide) (EventID: 9) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "1". Błąd w pliku manifestu lub w pliku zasad "2" w wierszu 3. Element główny pliku manifestu musi być zmontowany. Error: (05/03/2015 00:27:18 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program mpc-hc.exe w wersji 1.7.1.333 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 1ac Godzina rozpoczęcia: 01d0858b64660182 Godzina zakończenia: 45699 Ścieżka aplikacji: C:\Program Files (x86)\Combined Community Codec Pack\MPC\mpc-hc.exe Identyfikator raportu: daa299c1-f17e-11e4-bebc-201a0620cba3 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (05/03/2015 00:24:47 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program mpc-hc.exe w wersji 1.7.1.333 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 1050 Godzina rozpoczęcia: 01d08587b4758526 Godzina zakończenia: 56203 Ścieżka aplikacji: C:\Program Files (x86)\Combined Community Codec Pack\MPC\mpc-hc.exe Identyfikator raportu: 7a52813b-f17e-11e4-bebc-201a0620cba3 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (05/03/2015 11:57:41 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program mpc-hc.exe w wersji 1.7.1.333 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w aplecie Centrum akcji w Panelu sterowania. Identyfikator procesu: 1204 Godzina rozpoczęcia: 01d08583cc0c1f50 Godzina zakończenia: 50281 Ścieżka aplikacji: C:\Program Files (x86)\Combined Community Codec Pack\MPC\mpc-hc.exe Identyfikator raportu: b28a1935-f17a-11e4-bebc-201a0620cba3 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (05/03/2015 09:51:33 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: adwcleaner_4.203_www.INSTALKI.pl.exe, wersja: 4.2.0.3, sygnatura czasowa: 0x55429b1d Nazwa modułu powodującego błąd: adwcleaner_4.203_www.INSTALKI.pl.exe, wersja: 4.2.0.3, sygnatura czasowa: 0x55429b1d Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0001eeaa Identyfikator procesu powodującego błąd: 0x768 Godzina uruchomienia aplikacji powodującej błąd: 0xadwcleaner_4.203_www.INSTALKI.pl.exe0 Ścieżka aplikacji powodującej błąd: adwcleaner_4.203_www.INSTALKI.pl.exe1 Ścieżka modułu powodującego błąd: adwcleaner_4.203_www.INSTALKI.pl.exe2 Identyfikator raportu: adwcleaner_4.203_www.INSTALKI.pl.exe3 Pełna nazwa pakietu powodującego błąd: adwcleaner_4.203_www.INSTALKI.pl.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: adwcleaner_4.203_www.INSTALKI.pl.exe5 Error: (05/02/2015 09:09:09 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: MsiExec.exe, wersja: 5.0.9600.17415, sygnatura czasowa: 0x54504875 Nazwa modułu powodującego błąd: MSI8FEE.tmp, wersja: 2.0.0.9, sygnatura czasowa: 0x50406ab4 Kod wyjątku: 0xc000000d Przesunięcie błędu: 0x0001a268 Identyfikator procesu powodującego błąd: 0xf88 Godzina uruchomienia aplikacji powodującej błąd: 0xMsiExec.exe0 Ścieżka aplikacji powodującej błąd: MsiExec.exe1 Ścieżka modułu powodującego błąd: MsiExec.exe2 Identyfikator raportu: MsiExec.exe3 Pełna nazwa pakietu powodującego błąd: MsiExec.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: MsiExec.exe5 System errors: ============= Error: (05/03/2015 02:05:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi VBoxAsw Support Driver z powodu następującego błędu: %%2 Error: (05/03/2015 02:04:55 PM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x0000009f (0x0000000000000003, 0xffffe001ca699880, 0xffffd00193786960, 0xffffe001c98e6bd0)C:\WINDOWS\MEMORY.DMP050315-203125-01 Error: (05/03/2015 02:04:39 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 13:15:45 na ‎2015-‎05-‎03 było nieoczekiwane. Error: (05/03/2015 10:40:54 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Windows Search zawiesiła się podczas uruchamiania. Error: (05/03/2015 10:36:34 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi VBoxAsw Support Driver z powodu następującego błędu: %%2 Error: (05/03/2015 10:35:44 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 10:15:22 na ‎2015-‎05-‎03 było nieoczekiwane. Error: (05/03/2015 10:34:19 AM) (Source: Microsoft-Windows-Kernel-Boot) (EventID: 29) (User: ZARZĄDZANIE NT) Description: 32212256841143616 Error: (05/03/2015 10:21:38 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player zależy od usługi Windows Search, której nie można uruchomić z powodu następującego błędu: %%1070 Error: (05/03/2015 10:21:38 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Windows Search zawiesiła się podczas uruchamiania. Error: (05/03/2015 10:20:18 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Windows Search zawiesiła się podczas uruchamiania. Microsoft Office Sessions: ========================= Error: (05/03/2015 02:04:46 PM) (Source: ATIeRecord) (EventID: 16386) (User: ) Description: Error: (05/03/2015 01:48:31 PM) (Source: ATIeRecord) (EventID: 16386) (User: ) Description: Error: (05/03/2015 00:59:20 PM) (Source: SideBySide) (EventID: 9) (User: ) Description: c:\program files\windowsapps\c59ad0af.lenovocloudstoragebysugarsync_1.3.0.889_neutral__m3tnjedffpfhj\SugarSyncWin8.exec:\program files\windowsapps\c59ad0af.lenovocloudstoragebysugarsync_1.3.0.889_neutral__m3tnjedffpfhj\SugarSyncWin8.exe2 Error: (05/03/2015 00:49:34 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: backgroundTaskHost.exe6.3.9600.174159801d0858e1eb916e84294967295C:\WINDOWS\system32\backgroundTaskHost.exe12f40349-f182-11e4-bebc-201a0620cba3ZinioLLC.Zinio_2.1.0.317_x64__0q6dqzpp40p2eApp Error: (05/03/2015 00:46:50 PM) (Source: SideBySide) (EventID: 9) (User: ) Description: c:\program files\windowsapps\c59ad0af.lenovocloudstoragebysugarsync_1.3.0.889_neutral__m3tnjedffpfhj\SugarSyncWin8.exec:\program files\windowsapps\c59ad0af.lenovocloudstoragebysugarsync_1.3.0.889_neutral__m3tnjedffpfhj\SugarSyncWin8.exe2 Error: (05/03/2015 00:27:18 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: mpc-hc.exe1.7.1.3331ac01d0858b6466018245699C:\Program Files (x86)\Combined Community Codec Pack\MPC\mpc-hc.exedaa299c1-f17e-11e4-bebc-201a0620cba3 Error: (05/03/2015 00:24:47 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: mpc-hc.exe1.7.1.333105001d08587b475852656203C:\Program Files (x86)\Combined Community Codec Pack\MPC\mpc-hc.exe7a52813b-f17e-11e4-bebc-201a0620cba3 Error: (05/03/2015 11:57:41 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: mpc-hc.exe1.7.1.333120401d08583cc0c1f5050281C:\Program Files (x86)\Combined Community Codec Pack\MPC\mpc-hc.exeb28a1935-f17a-11e4-bebc-201a0620cba3 Error: (05/03/2015 09:51:33 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: adwcleaner_4.203_www.INSTALKI.pl.exe4.2.0.355429b1dadwcleaner_4.203_www.INSTALKI.pl.exe4.2.0.355429b1dc00000050001eeaa76801d08575bd6063e5C:\Users\Aneta\Downloads\adwcleaner_4.203_www.INSTALKI.pl.exeC:\Users\Aneta\Downloads\adwcleaner_4.203_www.INSTALKI.pl.exe36cc651b-f169-11e4-beba-201a0620cba3 Error: (05/02/2015 09:09:09 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: MsiExec.exe5.0.9600.1741554504875MSI8FEE.tmp2.0.0.950406ab4c000000d0001a268f8801d0850b75e3eaafC:\Windows\syswow64\MsiExec.exeC:\WINDOWS\Installer\MSI8FEE.tmpb57ba113-f0fe-11e4-beb8-fa2fa8ed53f3 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz Percentage of memory in use: 54% Total physical RAM: 3961.77 MB Available physical RAM: 1795.96 MB Total Pagefile: 7929.77 MB Available Pagefile: 5571.62 MB Total Virtual: 131072 MB Available Virtual: 131071.77 MB ==================== Drives ================================ Drive c: (Windows8_OS) (Fixed) (Total:891.97 GB) (Free:665.23 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:22.41 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 4F9B8591) Partition: GPT Partition Type. ==================== End Of Log ============================