Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-05-2015 Ran by Lewy at 2015-05-19 20:39:21 Running from D:\DOWNLOADS Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1332373539-1881414760-2737133929-500 - Administrator - Disabled) Guest (S-1-5-21-1332373539-1881414760-2737133929-501 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-1332373539-1881414760-2737133929-1003 - Limited - Enabled) Lewy (S-1-5-21-1332373539-1881414760-2737133929-1000 - Administrator - Enabled) => C:\Users\Lewy UpdatusUser (S-1-5-21-1332373539-1881414760-2737133929-1001 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.) Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.169 - Adobe Systems Incorporated) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated) Adobe Reader XI (11.0.03) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.03 - Adobe Systems Incorporated) Advertising Center (x32 Version: 0.0.0.1 - Nero AG) Hidden Age of Empires III - The WarChiefs (HKLM-x32\...\InstallShield_{1C08A24C-B168-407E-A826-68FAF5F20710}) (Version: 1.00.0000 - Microsoft Game Studios) Age of Empires III - The WarChiefs (x32 Version: 1.00.0000 - Microsoft Game Studios) Hidden AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.60.1483, 27.02.2015 - AIMP DevTeam) Aktualizacje NVIDIA 6.4.23 (Version: 6.4.23 - NVIDIA Corporation) Hidden AoA Audio Extractor (HKLM-x32\...\{D1725D54-279A-40C5-A70D-23C1785DB920}_is1) (Version: - AoAMedia.com) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.0.9.9 - Atheros Communications Inc.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.2 - EA Digital Illusions CE AB) Brothers - A Tale of Two Sons (HKLM-x32\...\Brothers - A Tale of Two Sons_is1) (Version: - 505 Games) Brothers: A Tale of Two Sons PL [BDIP] wersja 1.0 (HKLM-x32\...\{05F11D37-03F8-4CE5-AF7C-CE95A74942FB}_is1) (Version: 1.0 - BartleDooInPolish) Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Licomp EMPiK Multimedia) Call of Duty(R) 4 - Modern Warfare(TM) (x32 Version: 1.6 - Licomp EMPiK Multimedia) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: 1.7 - Activision) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.05 - Piriform) Child of Light (HKLM-x32\...\Q2hpbGRvZkxpZ2h0_is1) (Version: 1 - ) ChomikBox (HKLM-x32\...\{C7B52FAF-58D8-438C-B810-F78C3C927504}) (Version: 2.0.8.0 - Chomikuj.pl) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dead Space™ (HKLM-x32\...\{6E6F22D7-8AD6-4A87-9A47-733E6E996F50}) (Version: 1.0.0.222 - Electronic Arts) Dead Synchronicity (HKLM-x32\...\Dead Synchronicity_is1) (Version: 1.0.6 - Daedalic Entertainment GmbH) D-Link Connection Manager vV7.0.0PL (HKLM-x32\...\Broad Mobi HSPA Modem Normal Version_is1) (Version: - ) Dragon Nest Europe (HKLM-x32\...\Dragon Nest Europe) (Version: - ) Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 7.0.3.2 - Lenovo) Energy Management (x32 Version: 7.0.3.2 - Lenovo) Hidden ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) ffdshow v1.3.4531 [2014-06-28] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4531.0 - ) Galeria fotografii (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Gaming Mouse (HKLM-x32\...\{A7B243AA-6D4C-4575-A873-6F01A1EFC5E2}}_is1) (Version: - ) GOCLEVER GCM02 (HKLM-x32\...\GOCLEVER GCM02) (Version: 1.0.0.1 - GOCLEVER GCM02) Google Update Helper (x32 Version: 1.3.23.0 - DealPly Technologies Ltd) Hidden <==== ATTENTION GPU Monitor (HKLM-x32\...\VLC Player GPU+11.041.44) (Version: 11.041.44 - GPU Usage) <==== ATTENTION Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) HiJackThis (HKLM-x32\...\{45A66726-69BC-466B-A7A4-12FCBA4883D7}) (Version: 1.0.0 - Trend Micro) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.3.1427 - Intel Corporation) Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2932 - Intel Corporation) Intel(R) PROSet/Wireless for Bluetooth(R) 3.0 + High Speed (HKLM\...\{2C0E6BD4-65B1-4E82-B2AC-43EFFC8F100C}) (Version: 15.0.0.0059 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.4.220 - Intel Corporation) Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation) JMicron Flash Media Controller Driver (HKLM-x32\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.0.64.1 - JMicron Technology Corp.) K-Lite Codec Pack 9.9.5 (64-bit) (HKLM\...\KLiteCodecPack64_is1) (Version: 9.9.5 - ) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Lenovo Bluetooth with Enhanced Data Rate Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.2300 - Broadcom Corporation) Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.1.7600.117 - Realtek Semiconductor Corp.) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 7.0.0.3712 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 7.0.0.3712 - CyberLink Corp.) Hidden Medal of Honor Allied Assault (HKLM-x32\...\{0DEA94ED-915A-4834-A87E-388D012C8E02}) (Version: - ) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Mortal Kombat Komplete Edition, âĺđńč˙ 1.0.0.0 (HKLM-x32\...\Mortal Kombat Komplete Edition_is1) (Version: 1.0.0.0 - ) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 37.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 pl)) (Version: 37.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 36.0.1 - Mozilla) MPC-HC 1.7.8 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.8 - MPC-HC Team) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NapiProjekt (2.1.1.2314) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Nero 9 Essentials (HKLM-x32\...\{962f6c8e-3039-462c-ad95-382b5a70bc1b}) (Version: - Nero AG) NVIDIA GeForce Experience 1.5.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.5.1 - NVIDIA Corporation) NVIDIA PhysX System Software 9.13.0604 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0604 - NVIDIA Corporation) NVIDIA Sterownik graficzny 327.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.62 - NVIDIA Corporation) Oprogramowanie Intel® PROSet/Wireless WiFi (HKLM\...\{DF7756DD-656A-45C3-BA71-74673E8259A9}) (Version: 15.00.0000.0642 - Intel Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.3.11.2762 - Electronic Arts, Inc.) Panel sterowania NVIDIA 327.62 (Version: 327.62 - NVIDIA Corporation) Hidden PDF Architect (HKLM-x32\...\{064A929A-4DE8-40CF-A901-BD40C14E4D25}) (Version: 1.1.83.9982 - pdfforge GmbH) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.1 - pdfforge) PLAY ONLINE (HKLM-x32\...\PLAY ONLINE) (Version: 23.015.05.00.264 - Huawei Technologies Co.,Ltd) Podatnik.info PIT pro 2014 wersja 2.1.9.17953 (HKLM-x32\...\{B239B43B-3E99-40B0-80BF-1B1BCA868D4E}_is1) (Version: 2.1.9.17953 - Podatnik.info Sp. z o.o.) Podręcznik użytkownika (x32 Version: 1.0.0.6 - Lenovo) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Podstawowe programy Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden PowerISO (HKLM-x32\...\PowerISO) (Version: 6.1 - Power Software Ltd) Ravia.eu (HKLM-x32\...\Ravia.eu) (Version: - ) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6543 - Realtek Semiconductor Corp.) Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.) Słownik angielsko-polski wersja 2.25 (HKLM-x32\...\Słownik angielsko-polski_is1) (Version: - Ajt Soft) Smite (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}) (Version: 2.4.2684.1 - Hi-Rez Studios) South Park - The Stick of Truth (HKLM-x32\...\South Park - The Stick of Truth_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) SUPER © v2013.build.58+Recorder (2013/11/13) wersja v2013.build (HKLM-x32\...\{8E2A1F92-9B4F-4DF9-8459-5C06B0813C69}_is1) (Version: v2013.build.58+Recorder - eRightSoft) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.38.0 - Synaptics Incorporated) Syndicate (HKLM-x32\...\{64CFBAAB-46F7-4628-8D9B-E656A8C11CDB}) (Version: 2.0.0.3 - Electronic Arts) TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) The Binding of Isaac Rebirth 1.0 (HKLM-x32\...\The Binding of Isaac Rebirth 1.0) (Version: 1.0 - Games on Cat-A-Cat.Net) The Walking Dead - Season 2 (HKLM-x32\...\The Walking Dead - Season 2_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91) This War of Mine (HKLM-x32\...\{5FD7B6B3-08C7-4FEE-9C37-A2134C699885}}_is1) (Version: 1 - 11 bit studios) Titan Souls (HKLM-x32\...\1427985242_is1) (Version: 2.0.0.1 - GOG.com) TSEV Skyrim LE (HKLM-x32\...\TSEV Skyrim LE_is1) (Version: 2.0.0.0 - ) Tunngle beta (HKLM-x32\...\Tunngle beta_is1) (Version: - Tunngle.net GmbH) Unity Web Player (HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Update for Office 2007 (KB932080) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{EDC9CA29-6BC1-471C-828C-7A36109005D7}) (Version: - Microsoft) Update for Outlook 2007 (KB933493) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{23F2FF76-ABCD-421D-9860-0D0B2999D028}) (Version: - Microsoft) Update for Word 2007 (KB934173) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C6A89125-5473-45E3-B413-ED8186437475}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft) UsbFix (HKLM-x32\...\Usbfix) (Version: 7.940 - El Desaparecido - www.usbfix.net - www.sosvirus.net) UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.6 - Lenovo) Valiant Hearts The Great War (HKLM-x32\...\Valiant Hearts The Great War_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91) Vegas Pro 13.0 (64-bit) (HKLM\...\{D0360940-CCC6-11E3-B9C6-F04DA23A5C58}) (Version: 13.0.310 - Sony) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation) Windows Driver Package - Lenovo (ACPIVPC) System (12/15/2011 7.1.0.1) (HKLM\...\99841829BE839365AA67B2AD0E50D371F59F8A1E) (Version: 12/15/2011 7.1.0.1 - Lenovo) Windows Phone app for desktop (HKLM-x32\...\{35B12C34-DD04-4DDA-9342-E00958BC8414}) (Version: 1.0.1720.1 - Microsoft Corporation) WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= ATTENTION: System Restore is disabled. ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {460873F5-B059-4767-8665-6992A151FF54} - System32\Tasks\Microsoft\Windows\RVLKL\RVLKL => C:\ProgramData\rvlkl\rvlkl.exe [2015-01-24] (Logixoft) Task: {8F59A1C9-BA3E-48DF-A81D-87BEA36DB759} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1332373539-1881414760-2737133929-1000Core => C:\Users\Lewy\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-10-29] (Facebook Inc.) Task: {C30CC402-2A00-4F94-90EF-FF7BBD7C8584} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1332373539-1881414760-2737133929-1000UA => C:\Users\Lewy\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-10-29] (Facebook Inc.) Task: {DDAD2163-42C9-490E-A595-D9095B28ADDE} - System32\Tasks\CCleanerSkipUAC => D:\PROGRAMY\CCleaner\CCleaner.exe [2015-04-08] (Piriform Ltd) Task: {DF469753-73D3-4E9B-B725-41ACDDDF27E8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-05-01] (Adobe Systems Incorporated) Task: {EB02381F-D652-4B1C-894A-712498C62C51} - \Microsoft\Windows\MUI\LPRemove No Task File <==== ATTENTION Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1332373539-1881414760-2737133929-1000Core.job => C:\Users\Lewy\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1332373539-1881414760-2737133929-1000UA.job => C:\Users\Lewy\AppData\Local\Facebook\Update\FacebookUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2013-07-16 06:36 - 2013-10-29 01:38 - 00097568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-07-16 06:28 - 2012-02-17 18:21 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-07-16 06:37 - 2010-10-26 07:40 - 00049056 _____ () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe 2008-12-20 12:20 - 2013-07-15 23:00 - 00054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\HookLib.dll 2012-02-05 02:44 - 2013-07-15 23:00 - 01496920 _____ () C:\Program Files (x86)\Lenovo\Energy Management\EMWpfUI.dll 2012-01-31 21:15 - 2013-07-15 23:00 - 00011096 _____ () C:\Program Files (x86)\Lenovo\Energy Management\pl-PL\EMWpfUI.resources.dll 2008-12-20 12:20 - 2013-07-15 23:00 - 00054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\kbdhook.dll 2014-12-24 18:47 - 2012-06-07 11:11 - 00262656 _____ () C:\Program Files (x86)\GamingMouse\hid.exe 2014-01-15 05:42 - 2014-01-15 05:42 - 00351824 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2015-01-17 23:40 - 2013-10-26 11:45 - 00651856 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\ouc.exe 2013-07-27 19:59 - 2015-05-11 22:06 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-12-24 18:47 - 2011-11-22 15:18 - 00061440 _____ () C:\Program Files (x86)\GamingMouse\HidDevice.dll 2015-01-17 23:40 - 2013-08-31 07:44 - 02417152 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtCore4.dll 2015-01-17 23:40 - 2009-01-10 20:32 - 00011362 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\mingwm10.dll 2015-01-17 23:40 - 2009-06-23 04:42 - 00043008 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\libgcc_s_dw2-1.dll 2015-01-17 23:40 - 2013-08-31 07:46 - 01148416 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtNetwork4.dll 2013-07-16 06:23 - 2012-02-21 06:09 - 01198872 ____R () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\ProgramData\Temp:373E1720 AlternateDataStreams: C:\ProgramData\Temp:8CE646EE ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot => "AlternateShell"="" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, the associated entry will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Lewy\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.137.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk => C:\Windows\pss\Bluetooth.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Lewy^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^smart.vbs => C:\Windows\pss\smart.vbs.Startup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: DAEMON Tools Lite => "D:\PROGRAMY\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: Facebook Update => "C:\Users\Lewy\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver MSCONFIG\startupreg: GrooveMonitor => "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" MSCONFIG\startupreg: NextLive => C:\Windows\SysWOW64\rundll32.exe "C:\Users\Lewy\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l MSCONFIG\startupreg: Nvtmru => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" MSCONFIG\startupreg: unkaxohfukuakvmnnfy => C:\Users\Lewy\AppData\Local\Temp\unkaxohfukuakvmnnfy.exe ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) FirewallRules: [{5DBD5511-686F-4C7D-AC63-2BFBA4A41FB9}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{109490DA-3C5C-4EBD-8394-0FBAB0E3B925}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{A0D7CEF3-92A7-433B-9D4A-B83A52FE923E}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{E7599586-3DB9-49BC-90B8-39CD2F43A905}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{2FF293E6-079D-43AD-A3D4-8566E5B133A1}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{11CB93EA-EBFF-4256-85D2-A8E797929EF3}] => (Allow) C:\Users\Lewy\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{4DBA44D7-44B8-48DD-B5AF-D498D9AF58E6}] => (Allow) C:\Users\Lewy\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{2C1AA79E-13C9-47B9-9CC2-EDBEC186FA5E}D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe] => (Block) D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe FirewallRules: [UDP Query User{80E43114-A4DC-45B1-B96E-962DA32BACA8}D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe] => (Block) D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe FirewallRules: [{7A5BCCC9-65F0-4E6E-B516-827B6067163F}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{D010F27D-2C18-4A0F-BB5A-B753EE1DF059}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{CEAB24AF-CD1A-408E-9500-E2DFA0A27084}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{D769BB97-4192-400A-B856-FBF2C3C077A5}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [TCP Query User{CA6023EC-33A7-4221-ADE7-0A2249920BF0}D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe] => (Block) D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe FirewallRules: [UDP Query User{DF2E29CD-32C1-434B-BA75-8B18FA52E51E}D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe] => (Block) D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe FirewallRules: [TCP Query User{F0393EDA-86B0-49ED-B21B-52A030EB4A9E}D:\gry\mohaa\mohaa.exe] => (Allow) D:\gry\mohaa\mohaa.exe FirewallRules: [UDP Query User{C7998B07-3C1E-4E8A-A2BA-8D6B2FDCB7C2}D:\gry\mohaa\mohaa.exe] => (Allow) D:\gry\mohaa\mohaa.exe FirewallRules: [{B9A9A174-27F3-43AF-AD0B-5EC1B3525AFC}] => (Allow) D:\GRY\DN\Dragon Nest Europe\DragonNest.exe FirewallRules: [{92D16721-BB18-45E4-8237-E16B5BF5602B}] => (Allow) D:\GRY\DN\Dragon Nest Europe\DragonNest.exe FirewallRules: [TCP Query User{D947B945-6E5D-4AE5-88F5-580A41C199C7}D:\gry\smite\hirezgames\smite\binaries\win32\smite.exe] => (Allow) D:\gry\smite\hirezgames\smite\binaries\win32\smite.exe FirewallRules: [UDP Query User{8262EC61-4D7F-4CC6-B818-6058E25AE829}D:\gry\smite\hirezgames\smite\binaries\win32\smite.exe] => (Allow) D:\gry\smite\hirezgames\smite\binaries\win32\smite.exe FirewallRules: [{22446444-A3B6-4C05-830F-8F61AD95FB17}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{C33D4BD9-788C-46BD-AB1C-7BBF73EE4A23}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{59B83983-D0F1-49F2-8D73-2F38ECDD94DB}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{51CE7D22-9C85-4013-83E7-7C9B65352F9F}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{6AEC38D3-D3D4-42D3-8892-2A5FF2173DDE}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{E7A0415E-9C9D-492A-B6F0-5D90AE0C5A07}] => (Allow) C:\Users\Lewy\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{CFCFB3DD-1AAD-4B1B-9D69-C86C9DD38B9E}] => (Allow) C:\Users\Lewy\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{077A2ED5-747D-4FE4-A101-5B590F624984}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{BE1D4AF5-F053-467D-B4E4-89778B10CD34}] => (Allow) LPort=2869 FirewallRules: [{B16B7ABB-39DD-4C21-B644-14C68F4C9739}] => (Allow) LPort=1900 FirewallRules: [{8BE707E1-8689-4913-B95D-F7E5418CB868}] => (Allow) D:\PROGRAMY\Tunngle\TnglCtrl.exe FirewallRules: [{485F08B2-7648-49CC-93CF-C9C0CFEFBEA3}] => (Allow) D:\PROGRAMY\Tunngle\TnglCtrl.exe FirewallRules: [{E159AF32-56E3-4695-A99F-9F9E32E93009}] => (Allow) D:\PROGRAMY\Tunngle\Tunngle.exe FirewallRules: [{29D658BC-8556-425E-89DD-E70191E5E03E}] => (Allow) D:\PROGRAMY\Tunngle\Tunngle.exe FirewallRules: [TCP Query User{54D20C58-16FB-4ABF-9435-D19C6EE94340}D:\gry\brothers - a tale of two sons\binaries\win32\brothers.exe] => (Block) D:\gry\brothers - a tale of two sons\binaries\win32\brothers.exe FirewallRules: [UDP Query User{99BA3A41-E7F0-401C-8CF2-B301498D1C9E}D:\gry\brothers - a tale of two sons\binaries\win32\brothers.exe] => (Block) D:\gry\brothers - a tale of two sons\binaries\win32\brothers.exe FirewallRules: [TCP Query User{E8315207-516F-4B62-A8E7-7D997DB1C756}D:\gry\rzal.pl\game.exe] => (Allow) D:\gry\rzal.pl\game.exe FirewallRules: [UDP Query User{98F924D1-C07C-4A04-992D-AEFD67FAFC53}D:\gry\rzal.pl\game.exe] => (Allow) D:\gry\rzal.pl\game.exe FirewallRules: [{61732B4A-1CCC-43F3-9E21-7F0C0C913878}] => (Allow) C:\Users\Lewy\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [{FB81FBF8-8FF3-4BCA-817C-5165F35339B7}] => (Block) D:\TORRENT\FIFA 14 ULTIMATE EDITION MULTI14-FULLUNLOCKED\FIFA 14\Game\fifa14.exe FirewallRules: [TCP Query User{622F165E-D98E-40BD-8A66-9975780080DA}D:\gry\rzal.pl\game.exe] => (Allow) D:\gry\rzal.pl\game.exe FirewallRules: [UDP Query User{2B87F41C-8912-4194-88BE-BCF7F023759E}D:\gry\rzal.pl\game.exe] => (Allow) D:\gry\rzal.pl\game.exe FirewallRules: [{66B5E196-2509-4042-884C-79CED5D8E229}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{62FC81C6-C060-40FD-BD1F-0297E8299165}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{10EE792A-6D47-462D-89B6-52C8654632B1}] => (Allow) D:\Program Files (x86)\Origin Games\Dead Space\Dead Space.exe FirewallRules: [{500D5C54-DF89-452B-9888-7478B1848A1A}] => (Allow) D:\Program Files (x86)\Origin Games\Dead Space\Dead Space.exe FirewallRules: [{38E38F87-257A-4FED-BAAD-560A8A309EB5}] => (Allow) D:\Program Files (x86)\Origin Games\Syndicate (1993)\data\Game\DOSBox\LAUNCHER.exe FirewallRules: [{E11F5FAD-56BD-4647-AC73-354B10BE9035}] => (Allow) D:\Program Files (x86)\Origin Games\Syndicate (1993)\data\Game\DOSBox\LAUNCHER.exe FirewallRules: [TCP Query User{D0790944-64E2-4144-9640-738A8AC31972}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{1886ED39-D68E-4FFC-9051-3671377E3BD6}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{8CDE287E-73F5-4EFB-A576-7AB3DECE2302}D:\program files (x86)\origin games\dead space\dead space.exe] => (Block) D:\program files (x86)\origin games\dead space\dead space.exe FirewallRules: [UDP Query User{8288CDCE-15CC-46A9-B597-7B249230AB97}D:\program files (x86)\origin games\dead space\dead space.exe] => (Block) D:\program files (x86)\origin games\dead space\dead space.exe FirewallRules: [{5E438EC3-0AD4-4273-A296-C1E5D5A414B3}] => (Allow) D:\GRY\Hearthstone\Hearthstone.exe FirewallRules: [{EABBA28C-651B-4278-870F-3846171851C7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{2E2B5062-066E-4306-A8DF-5A6CBCF0A7B3}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{16DED5D3-E3C1-4B67-A66B-EC8A4A425511}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{80C849FB-B19C-4426-9386-59986BB81FDB}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{D041D8D8-5BE6-4FA7-8B02-38AE3EC0DF09}] => (Allow) D:\GRY\Call of Duty\iw3mp.exe FirewallRules: [{BA1F2CD3-736B-4137-89D2-BE8163311FD7}] => (Allow) D:\GRY\Call of Duty\iw3mp.exe FirewallRules: [{A5570630-9802-4E08-B86A-1E37D802D458}] => (Allow) C:\ProgramData\FasterNow.exe FirewallRules: [{5059719C-58B0-4205-B7CF-EF1A564CDC99}] => (Allow) C:\ProgramData\FasterNow.exe ==================== Faulty Device Manager Devices ============= Name: Broadcom Bluetooth 4.0 USB Description: Broadcom Bluetooth 4.0 USB Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Broadcom Service: BTHUSB Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Microsoft Virtual WiFi Miniport Adapter #2 Description: Karta wirtualnego miniportu WiFi firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: vwifimp Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: ttnfd Description: ttnfd Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: ttnfd Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (05/17/2015 11:33:02 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: iw3mp.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4859a219 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000 Identyfikator procesu powodującego błąd: 0x7bc Godzina uruchomienia aplikacji powodującej błąd: 0xiw3mp.exe0 Ścieżka aplikacji powodującej błąd: iw3mp.exe1 Ścieżka modułu powodującego błąd: iw3mp.exe2 Identyfikator raportu: iw3mp.exe3 Error: (05/17/2015 11:22:28 PM) (Source: RasClient) (EventID: 20227) (User: ) Description: Identyfikator CoId={4AF42822-BE91-43CF-BE19-DC18E94EA2C7}: Użytkownik Lewy-PC\Lewy wybrał numer w celu nawiązania połączenia o nazwie Połączenie szerokopasmowe, jednak jego nawiązanie nie powiodło się. Kod błędu zwrócony w wyniku niepowodzenia: 651. Error: (05/17/2015 11:00:35 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program iw3mp.exe w wersji 0.0.0.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 80c Godzina rozpoczęcia: 01d090e47cc0a348 Godzina zakończenia: 4 Ścieżka aplikacji: D:\GRY\Call of Duty\iw3mp.exe Identyfikator raportu: c1aeccd5-fcd7-11e4-9aa3-b888e3c62c89 Error: (05/17/2015 10:27:05 PM) (Source: Google Update) (EventID: 20) (User: Lewy-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80 Error: (05/17/2015 07:27:05 PM) (Source: Google Update) (EventID: 20) (User: Lewy-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80 Error: (05/17/2015 06:00:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: Dead Space.exe, wersja: 1.0.0.222, sygnatura czasowa: 0x48dbcf01 Nazwa modułu powodującego błąd: Dead Space.exe, wersja: 1.0.0.222, sygnatura czasowa: 0x48dbcf01 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x001808e9 Identyfikator procesu powodującego błąd: 0xf1c Godzina uruchomienia aplikacji powodującej błąd: 0xDead Space.exe0 Ścieżka aplikacji powodującej błąd: Dead Space.exe1 Ścieżka modułu powodującego błąd: Dead Space.exe2 Identyfikator raportu: Dead Space.exe3 Error: (05/17/2015 05:52:31 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: Dead Space.exe, wersja: 1.0.0.222, sygnatura czasowa: 0x48dbcf01 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x81dabae0 Identyfikator procesu powodującego błąd: 0x1570 Godzina uruchomienia aplikacji powodującej błąd: 0xDead Space.exe0 Ścieżka aplikacji powodującej błąd: Dead Space.exe1 Ścieżka modułu powodującego błąd: Dead Space.exe2 Identyfikator raportu: Dead Space.exe3 Error: (05/17/2015 04:27:06 PM) (Source: Google Update) (EventID: 20) (User: Lewy-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80 Error: (05/17/2015 01:27:05 PM) (Source: Google Update) (EventID: 20) (User: Lewy-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80 Error: (05/17/2015 10:27:06 AM) (Source: Google Update) (EventID: 20) (User: Lewy-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80 System errors: ============= Error: (05/19/2015 08:36:17 PM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error: (05/19/2015 08:36:16 PM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error: (05/19/2015 08:36:15 PM) (Source: Disk) (EventID: 11) (User: ) Description: Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1. Error: (05/19/2015 08:12:19 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: ttnfd Error: (05/19/2015 08:12:16 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi PLAY ONLINE. OUC z powodu następującego błędu: %%1053 Error: (05/19/2015 08:12:16 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą PLAY ONLINE. OUC. Error: (05/19/2015 07:04:19 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: ttnfd Error: (05/19/2015 07:04:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi PLAY ONLINE. OUC z powodu następującego błędu: %%1053 Error: (05/19/2015 07:04:15 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą PLAY ONLINE. OUC. Error: (05/19/2015 01:27:00 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Microsoft Office Sessions: ========================= Error: (02/11/2015 02:44:23 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 3447 seconds with 720 seconds of active time. This session ended with a crash. Error: (02/11/2015 01:46:23 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 1007 seconds with 180 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2015-05-17 23:33:14.700 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 23:33:14.418 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 23:29:53.667 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 23:29:52.957 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 23:07:56.470 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 23:07:56.276 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 23:01:27.422 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 23:01:27.155 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 18:05:32.053 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 18:05:31.328 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-3120M CPU @ 2.50GHz Percentage of memory in use: 41% Total physical RAM: 3998.36 MB Available physical RAM: 2339.49 MB Total Pagefile: 7994.89 MB Available Pagefile: 5898.37 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:99.9 GB) (Free:47.58 GB) NTFS Drive d: () (Fixed) (Total:830.43 GB) (Free:62.37 GB) NTFS Drive g: (LEWY) (Removable) (Total:3.75 GB) (Free:3.32 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: C3FFC3FF) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=99.9 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=830.4 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=1.1 GB) - (Type=12) ======================================================== Disk: 1 (Size: 3.7 GB) (Disk ID: 020B1D7B) Partition 1: (Active) - (Size=3.7 GB) - (Type=07 NTFS) ==================== End Of Log ============================