Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-05-2015 Ran by Lewy at 2015-05-19 22:19:08 Running from D:\DOWNLOADS Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1332373539-1881414760-2737133929-500 - Administrator - Disabled) Guest (S-1-5-21-1332373539-1881414760-2737133929-501 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-1332373539-1881414760-2737133929-1003 - Limited - Enabled) Lewy (S-1-5-21-1332373539-1881414760-2737133929-1000 - Administrator - Enabled) => C:\Users\Lewy UpdatusUser (S-1-5-21-1332373539-1881414760-2737133929-1001 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.) Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.169 - Adobe Systems Incorporated) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated) Adobe Reader XI (11.0.03) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.03 - Adobe Systems Incorporated) Advertising Center (x32 Version: 0.0.0.1 - Nero AG) Hidden Age of Empires III - The WarChiefs (HKLM-x32\...\InstallShield_{1C08A24C-B168-407E-A826-68FAF5F20710}) (Version: 1.00.0000 - Microsoft Game Studios) Age of Empires III - The WarChiefs (x32 Version: 1.00.0000 - Microsoft Game Studios) Hidden AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.60.1483, 27.02.2015 - AIMP DevTeam) Aktualizacje NVIDIA 6.4.23 (Version: 6.4.23 - NVIDIA Corporation) Hidden AoA Audio Extractor (HKLM-x32\...\{D1725D54-279A-40C5-A70D-23C1785DB920}_is1) (Version: - AoAMedia.com) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.0.9.9 - Atheros Communications Inc.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.2 - EA Digital Illusions CE AB) Brothers - A Tale of Two Sons (HKLM-x32\...\Brothers - A Tale of Two Sons_is1) (Version: - 505 Games) Brothers: A Tale of Two Sons PL [BDIP] wersja 1.0 (HKLM-x32\...\{05F11D37-03F8-4CE5-AF7C-CE95A74942FB}_is1) (Version: 1.0 - BartleDooInPolish) Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Licomp EMPiK Multimedia) Call of Duty(R) 4 - Modern Warfare(TM) (x32 Version: 1.6 - Licomp EMPiK Multimedia) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: 1.7 - Activision) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.05 - Piriform) Child of Light (HKLM-x32\...\Q2hpbGRvZkxpZ2h0_is1) (Version: 1 - ) ChomikBox (HKLM-x32\...\{C7B52FAF-58D8-438C-B810-F78C3C927504}) (Version: 2.0.8.0 - Chomikuj.pl) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dead Space™ (HKLM-x32\...\{6E6F22D7-8AD6-4A87-9A47-733E6E996F50}) (Version: 1.0.0.222 - Electronic Arts) Dead Synchronicity (HKLM-x32\...\Dead Synchronicity_is1) (Version: 1.0.6 - Daedalic Entertainment GmbH) D-Link Connection Manager vV7.0.0PL (HKLM-x32\...\Broad Mobi HSPA Modem Normal Version_is1) (Version: - ) Dragon Nest Europe (HKLM-x32\...\Dragon Nest Europe) (Version: - ) Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 7.0.3.2 - Lenovo) Energy Management (x32 Version: 7.0.3.2 - Lenovo) Hidden ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) ffdshow v1.3.4531 [2014-06-28] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4531.0 - ) Galeria fotografii (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Gaming Mouse (HKLM-x32\...\{A7B243AA-6D4C-4575-A873-6F01A1EFC5E2}}_is1) (Version: - ) GOCLEVER GCM02 (HKLM-x32\...\GOCLEVER GCM02) (Version: 1.0.0.1 - GOCLEVER GCM02) Google Update Helper (x32 Version: 1.3.23.0 - DealPly Technologies Ltd) Hidden <==== ATTENTION GPU Monitor (HKLM-x32\...\VLC Player GPU+11.041.44) (Version: 11.041.44 - GPU Usage) <==== ATTENTION Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) HiJackThis (HKLM-x32\...\{45A66726-69BC-466B-A7A4-12FCBA4883D7}) (Version: 1.0.0 - Trend Micro) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.3.1427 - Intel Corporation) Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2932 - Intel Corporation) Intel(R) PROSet/Wireless for Bluetooth(R) 3.0 + High Speed (HKLM\...\{2C0E6BD4-65B1-4E82-B2AC-43EFFC8F100C}) (Version: 15.0.0.0059 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.4.220 - Intel Corporation) Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation) JMicron Flash Media Controller Driver (HKLM-x32\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.0.64.1 - JMicron Technology Corp.) K-Lite Codec Pack 9.9.5 (64-bit) (HKLM\...\KLiteCodecPack64_is1) (Version: 9.9.5 - ) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Lenovo Bluetooth with Enhanced Data Rate Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.2300 - Broadcom Corporation) Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.1.7600.117 - Realtek Semiconductor Corp.) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 7.0.0.3712 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 7.0.0.3712 - CyberLink Corp.) Hidden Medal of Honor Allied Assault (HKLM-x32\...\{0DEA94ED-915A-4834-A87E-388D012C8E02}) (Version: - ) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Mortal Kombat Komplete Edition, âĺđńč˙ 1.0.0.0 (HKLM-x32\...\Mortal Kombat Komplete Edition_is1) (Version: 1.0.0.0 - ) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 38.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 38.0.1 (x86 pl)) (Version: 38.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 36.0.1 - Mozilla) MPC-HC 1.7.8 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.8 - MPC-HC Team) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NapiProjekt (2.1.1.2314) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Nero 9 Essentials (HKLM-x32\...\{962f6c8e-3039-462c-ad95-382b5a70bc1b}) (Version: - Nero AG) NVIDIA GeForce Experience 1.5.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.5.1 - NVIDIA Corporation) NVIDIA PhysX System Software 9.13.0604 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0604 - NVIDIA Corporation) NVIDIA Sterownik graficzny 327.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.62 - NVIDIA Corporation) Oprogramowanie Intel® PROSet/Wireless WiFi (HKLM\...\{DF7756DD-656A-45C3-BA71-74673E8259A9}) (Version: 15.00.0000.0642 - Intel Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.3.11.2762 - Electronic Arts, Inc.) Panel sterowania NVIDIA 327.62 (Version: 327.62 - NVIDIA Corporation) Hidden PDF Architect (HKLM-x32\...\{064A929A-4DE8-40CF-A901-BD40C14E4D25}) (Version: 1.1.83.9982 - pdfforge GmbH) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.1 - pdfforge) PLAY ONLINE (HKLM-x32\...\PLAY ONLINE) (Version: 23.015.05.00.264 - Huawei Technologies Co.,Ltd) Podatnik.info PIT pro 2014 wersja 2.1.9.17953 (HKLM-x32\...\{B239B43B-3E99-40B0-80BF-1B1BCA868D4E}_is1) (Version: 2.1.9.17953 - Podatnik.info Sp. z o.o.) Podręcznik użytkownika (x32 Version: 1.0.0.6 - Lenovo) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Podstawowe programy Windows Live (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden PowerISO (HKLM-x32\...\PowerISO) (Version: 6.1 - Power Software Ltd) Ravia.eu (HKLM-x32\...\Ravia.eu) (Version: - ) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6543 - Realtek Semiconductor Corp.) Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.) Słownik angielsko-polski wersja 2.25 (HKLM-x32\...\Słownik angielsko-polski_is1) (Version: - Ajt Soft) Smite (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}) (Version: 2.4.2684.1 - Hi-Rez Studios) South Park - The Stick of Truth (HKLM-x32\...\South Park - The Stick of Truth_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) SUPER © v2013.build.58+Recorder (2013/11/13) wersja v2013.build (HKLM-x32\...\{8E2A1F92-9B4F-4DF9-8459-5C06B0813C69}_is1) (Version: v2013.build.58+Recorder - eRightSoft) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.38.0 - Synaptics Incorporated) Syndicate (HKLM-x32\...\{64CFBAAB-46F7-4628-8D9B-E656A8C11CDB}) (Version: 2.0.0.3 - Electronic Arts) TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) The Binding of Isaac Rebirth 1.0 (HKLM-x32\...\The Binding of Isaac Rebirth 1.0) (Version: 1.0 - Games on Cat-A-Cat.Net) The Walking Dead - Season 2 (HKLM-x32\...\The Walking Dead - Season 2_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91) This War of Mine (HKLM-x32\...\{5FD7B6B3-08C7-4FEE-9C37-A2134C699885}}_is1) (Version: 1 - 11 bit studios) Titan Souls (HKLM-x32\...\1427985242_is1) (Version: 2.0.0.1 - GOG.com) TSEV Skyrim LE (HKLM-x32\...\TSEV Skyrim LE_is1) (Version: 2.0.0.0 - ) Tunngle beta (HKLM-x32\...\Tunngle beta_is1) (Version: - Tunngle.net GmbH) Unity Web Player (HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Update for Office 2007 (KB932080) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{EDC9CA29-6BC1-471C-828C-7A36109005D7}) (Version: - Microsoft) Update for Outlook 2007 (KB933493) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{23F2FF76-ABCD-421D-9860-0D0B2999D028}) (Version: - Microsoft) Update for Word 2007 (KB934173) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C6A89125-5473-45E3-B413-ED8186437475}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft) UsbFix (HKLM-x32\...\Usbfix) (Version: 7.940 - El Desaparecido - www.usbfix.net - www.sosvirus.net) UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.6 - Lenovo) Valiant Hearts The Great War (HKLM-x32\...\Valiant Hearts The Great War_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91) Vegas Pro 13.0 (64-bit) (HKLM\...\{D0360940-CCC6-11E3-B9C6-F04DA23A5C58}) (Version: 13.0.310 - Sony) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Windows 7 USB/DVD Download Tool (HKLM-x32\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation) Windows Driver Package - Lenovo (ACPIVPC) System (12/15/2011 7.1.0.1) (HKLM\...\99841829BE839365AA67B2AD0E50D371F59F8A1E) (Version: 12/15/2011 7.1.0.1 - Lenovo) Windows Phone app for desktop (HKLM-x32\...\{35B12C34-DD04-4DDA-9342-E00958BC8414}) (Version: 1.0.1720.1 - Microsoft Corporation) WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= ATTENTION: System Restore is disabled. ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {460873F5-B059-4767-8665-6992A151FF54} - System32\Tasks\Microsoft\Windows\RVLKL\RVLKL => C:\ProgramData\rvlkl\rvlkl.exe [2015-01-24] (Logixoft) Task: {8F59A1C9-BA3E-48DF-A81D-87BEA36DB759} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1332373539-1881414760-2737133929-1000Core => C:\Users\Lewy\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-10-29] (Facebook Inc.) Task: {C30CC402-2A00-4F94-90EF-FF7BBD7C8584} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1332373539-1881414760-2737133929-1000UA => C:\Users\Lewy\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-10-29] (Facebook Inc.) Task: {DDAD2163-42C9-490E-A595-D9095B28ADDE} - System32\Tasks\CCleanerSkipUAC => D:\PROGRAMY\CCleaner\CCleaner.exe [2015-04-08] (Piriform Ltd) Task: {DF469753-73D3-4E9B-B725-41ACDDDF27E8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-05-01] (Adobe Systems Incorporated) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1332373539-1881414760-2737133929-1000Core.job => C:\Users\Lewy\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1332373539-1881414760-2737133929-1000UA.job => C:\Users\Lewy\AppData\Local\Facebook\Update\FacebookUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2013-07-16 06:36 - 2013-10-29 01:38 - 00097568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-07-16 06:28 - 2012-02-17 18:21 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2008-12-20 12:20 - 2013-07-15 23:00 - 00054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\HookLib.dll 2012-02-05 02:44 - 2013-07-15 23:00 - 01496920 _____ () C:\Program Files (x86)\Lenovo\Energy Management\EMWpfUI.dll 2012-01-31 21:15 - 2013-07-15 23:00 - 00011096 _____ () C:\Program Files (x86)\Lenovo\Energy Management\pl-PL\EMWpfUI.resources.dll 2008-12-20 12:20 - 2013-07-15 23:00 - 00054088 _____ () C:\Program Files (x86)\Lenovo\Energy Management\kbdhook.dll 2014-01-15 05:42 - 2014-01-15 05:42 - 00351824 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2013-07-16 06:37 - 2010-10-26 07:40 - 00049056 _____ () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe 2014-12-24 18:47 - 2012-06-07 11:11 - 00262656 _____ () C:\Program Files (x86)\GamingMouse\hid.exe 2015-01-17 23:40 - 2013-10-26 11:45 - 00651856 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\ouc.exe 2013-07-27 19:59 - 2015-05-11 22:06 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-12-24 18:47 - 2011-11-22 15:18 - 00061440 _____ () C:\Program Files (x86)\GamingMouse\HidDevice.dll 2015-01-17 23:40 - 2013-08-31 07:44 - 02417152 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtCore4.dll 2015-01-17 23:40 - 2009-01-10 20:32 - 00011362 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\mingwm10.dll 2015-01-17 23:40 - 2009-06-23 04:42 - 00043008 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\libgcc_s_dw2-1.dll 2015-01-17 23:40 - 2013-08-31 07:46 - 01148416 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtNetwork4.dll 2015-03-10 10:23 - 2015-03-10 10:23 - 00218112 _____ () D:\PROGRAMY\AIMP3\System\libsoxr.dll 2015-03-10 10:23 - 2015-03-10 10:23 - 00467968 _____ () D:\PROGRAMY\AIMP3\System\Encoders\libFLAC.dll 2015-03-10 10:23 - 2015-03-10 10:23 - 01733120 _____ () D:\PROGRAMY\AIMP3\System\Encoders\aimp_libvorbis.dll 2015-03-10 10:23 - 2015-03-10 10:23 - 00160840 _____ () D:\PROGRAMY\AIMP3\Plugins\aimp_cdda\aimp_cdda.dll 2015-03-10 10:23 - 2015-03-10 10:23 - 00159232 _____ () D:\PROGRAMY\AIMP3\Plugins\aimp_sacd\libsacd.dll 2015-03-10 10:23 - 2015-03-10 10:23 - 00026624 _____ () D:\PROGRAMY\AIMP3\Plugins\Aorta\Aorta.dll 2015-03-10 10:23 - 2015-03-10 10:23 - 00237568 _____ () D:\PROGRAMY\AIMP3\Plugins\OptimFROG\OptimFROG.dll 2015-03-10 10:23 - 2015-03-10 10:23 - 00152648 _____ () D:\PROGRAMY\AIMP3\Plugins\PandemicAnalogMeter\PandemicAnalogMeter.dll 2013-07-16 06:23 - 2012-02-21 06:09 - 01198872 ____R () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\ProgramData\Temp:373E1720 AlternateDataStreams: C:\ProgramData\Temp:8CE646EE ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot => "AlternateShell"="" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, the associated entry will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Lewy\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.137.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk => C:\Windows\pss\Bluetooth.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Lewy^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^smart.vbs => C:\Windows\pss\smart.vbs.Startup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: DAEMON Tools Lite => "D:\PROGRAMY\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: Facebook Update => "C:\Users\Lewy\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver MSCONFIG\startupreg: GrooveMonitor => "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" MSCONFIG\startupreg: NextLive => C:\Windows\SysWOW64\rundll32.exe "C:\Users\Lewy\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l MSCONFIG\startupreg: Nvtmru => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" MSCONFIG\startupreg: unkaxohfukuakvmnnfy => C:\Users\Lewy\AppData\Local\Temp\unkaxohfukuakvmnnfy.exe ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) FirewallRules: [{5DBD5511-686F-4C7D-AC63-2BFBA4A41FB9}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{109490DA-3C5C-4EBD-8394-0FBAB0E3B925}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{A0D7CEF3-92A7-433B-9D4A-B83A52FE923E}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{E7599586-3DB9-49BC-90B8-39CD2F43A905}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{2FF293E6-079D-43AD-A3D4-8566E5B133A1}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{11CB93EA-EBFF-4256-85D2-A8E797929EF3}] => (Allow) C:\Users\Lewy\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{4DBA44D7-44B8-48DD-B5AF-D498D9AF58E6}] => (Allow) C:\Users\Lewy\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{2C1AA79E-13C9-47B9-9CC2-EDBEC186FA5E}D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe] => (Block) D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe FirewallRules: [UDP Query User{80E43114-A4DC-45B1-B96E-962DA32BACA8}D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe] => (Block) D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe FirewallRules: [{7A5BCCC9-65F0-4E6E-B516-827B6067163F}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{D010F27D-2C18-4A0F-BB5A-B753EE1DF059}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{CEAB24AF-CD1A-408E-9500-E2DFA0A27084}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{D769BB97-4192-400A-B856-FBF2C3C077A5}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [TCP Query User{CA6023EC-33A7-4221-ADE7-0A2249920BF0}D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe] => (Block) D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe FirewallRules: [UDP Query User{DF2E29CD-32C1-434B-BA75-8B18FA52E51E}D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe] => (Block) D:\gry\mortal kombat komplete edition\disccontentpc\mkke.exe FirewallRules: [TCP Query User{F0393EDA-86B0-49ED-B21B-52A030EB4A9E}D:\gry\mohaa\mohaa.exe] => (Allow) D:\gry\mohaa\mohaa.exe FirewallRules: [UDP Query User{C7998B07-3C1E-4E8A-A2BA-8D6B2FDCB7C2}D:\gry\mohaa\mohaa.exe] => (Allow) D:\gry\mohaa\mohaa.exe FirewallRules: [{B9A9A174-27F3-43AF-AD0B-5EC1B3525AFC}] => (Allow) D:\GRY\DN\Dragon Nest Europe\DragonNest.exe FirewallRules: [{92D16721-BB18-45E4-8237-E16B5BF5602B}] => (Allow) D:\GRY\DN\Dragon Nest Europe\DragonNest.exe FirewallRules: [TCP Query User{D947B945-6E5D-4AE5-88F5-580A41C199C7}D:\gry\smite\hirezgames\smite\binaries\win32\smite.exe] => (Allow) D:\gry\smite\hirezgames\smite\binaries\win32\smite.exe FirewallRules: [UDP Query User{8262EC61-4D7F-4CC6-B818-6058E25AE829}D:\gry\smite\hirezgames\smite\binaries\win32\smite.exe] => (Allow) D:\gry\smite\hirezgames\smite\binaries\win32\smite.exe FirewallRules: [{22446444-A3B6-4C05-830F-8F61AD95FB17}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{C33D4BD9-788C-46BD-AB1C-7BBF73EE4A23}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{59B83983-D0F1-49F2-8D73-2F38ECDD94DB}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{51CE7D22-9C85-4013-83E7-7C9B65352F9F}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{6AEC38D3-D3D4-42D3-8892-2A5FF2173DDE}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{E7A0415E-9C9D-492A-B6F0-5D90AE0C5A07}] => (Allow) C:\Users\Lewy\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{CFCFB3DD-1AAD-4B1B-9D69-C86C9DD38B9E}] => (Allow) C:\Users\Lewy\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{077A2ED5-747D-4FE4-A101-5B590F624984}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{BE1D4AF5-F053-467D-B4E4-89778B10CD34}] => (Allow) LPort=2869 FirewallRules: [{B16B7ABB-39DD-4C21-B644-14C68F4C9739}] => (Allow) LPort=1900 FirewallRules: [{8BE707E1-8689-4913-B95D-F7E5418CB868}] => (Allow) D:\PROGRAMY\Tunngle\TnglCtrl.exe FirewallRules: [{485F08B2-7648-49CC-93CF-C9C0CFEFBEA3}] => (Allow) D:\PROGRAMY\Tunngle\TnglCtrl.exe FirewallRules: [{E159AF32-56E3-4695-A99F-9F9E32E93009}] => (Allow) D:\PROGRAMY\Tunngle\Tunngle.exe FirewallRules: [{29D658BC-8556-425E-89DD-E70191E5E03E}] => (Allow) D:\PROGRAMY\Tunngle\Tunngle.exe FirewallRules: [TCP Query User{54D20C58-16FB-4ABF-9435-D19C6EE94340}D:\gry\brothers - a tale of two sons\binaries\win32\brothers.exe] => (Block) D:\gry\brothers - a tale of two sons\binaries\win32\brothers.exe FirewallRules: [UDP Query User{99BA3A41-E7F0-401C-8CF2-B301498D1C9E}D:\gry\brothers - a tale of two sons\binaries\win32\brothers.exe] => (Block) D:\gry\brothers - a tale of two sons\binaries\win32\brothers.exe FirewallRules: [TCP Query User{E8315207-516F-4B62-A8E7-7D997DB1C756}D:\gry\rzal.pl\game.exe] => (Allow) D:\gry\rzal.pl\game.exe FirewallRules: [UDP Query User{98F924D1-C07C-4A04-992D-AEFD67FAFC53}D:\gry\rzal.pl\game.exe] => (Allow) D:\gry\rzal.pl\game.exe FirewallRules: [{61732B4A-1CCC-43F3-9E21-7F0C0C913878}] => (Allow) C:\Users\Lewy\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [{FB81FBF8-8FF3-4BCA-817C-5165F35339B7}] => (Block) D:\TORRENT\FIFA 14 ULTIMATE EDITION MULTI14-FULLUNLOCKED\FIFA 14\Game\fifa14.exe FirewallRules: [TCP Query User{622F165E-D98E-40BD-8A66-9975780080DA}D:\gry\rzal.pl\game.exe] => (Allow) D:\gry\rzal.pl\game.exe FirewallRules: [UDP Query User{2B87F41C-8912-4194-88BE-BCF7F023759E}D:\gry\rzal.pl\game.exe] => (Allow) D:\gry\rzal.pl\game.exe FirewallRules: [{66B5E196-2509-4042-884C-79CED5D8E229}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{62FC81C6-C060-40FD-BD1F-0297E8299165}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{10EE792A-6D47-462D-89B6-52C8654632B1}] => (Allow) D:\Program Files (x86)\Origin Games\Dead Space\Dead Space.exe FirewallRules: [{500D5C54-DF89-452B-9888-7478B1848A1A}] => (Allow) D:\Program Files (x86)\Origin Games\Dead Space\Dead Space.exe FirewallRules: [{38E38F87-257A-4FED-BAAD-560A8A309EB5}] => (Allow) D:\Program Files (x86)\Origin Games\Syndicate (1993)\data\Game\DOSBox\LAUNCHER.exe FirewallRules: [{E11F5FAD-56BD-4647-AC73-354B10BE9035}] => (Allow) D:\Program Files (x86)\Origin Games\Syndicate (1993)\data\Game\DOSBox\LAUNCHER.exe FirewallRules: [TCP Query User{D0790944-64E2-4144-9640-738A8AC31972}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{1886ED39-D68E-4FFC-9051-3671377E3BD6}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{8CDE287E-73F5-4EFB-A576-7AB3DECE2302}D:\program files (x86)\origin games\dead space\dead space.exe] => (Block) D:\program files (x86)\origin games\dead space\dead space.exe FirewallRules: [UDP Query User{8288CDCE-15CC-46A9-B597-7B249230AB97}D:\program files (x86)\origin games\dead space\dead space.exe] => (Block) D:\program files (x86)\origin games\dead space\dead space.exe FirewallRules: [{5E438EC3-0AD4-4273-A296-C1E5D5A414B3}] => (Allow) D:\GRY\Hearthstone\Hearthstone.exe FirewallRules: [{EABBA28C-651B-4278-870F-3846171851C7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{2E2B5062-066E-4306-A8DF-5A6CBCF0A7B3}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{16DED5D3-E3C1-4B67-A66B-EC8A4A425511}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{80C849FB-B19C-4426-9386-59986BB81FDB}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{D041D8D8-5BE6-4FA7-8B02-38AE3EC0DF09}] => (Allow) D:\GRY\Call of Duty\iw3mp.exe FirewallRules: [{BA1F2CD3-736B-4137-89D2-BE8163311FD7}] => (Allow) D:\GRY\Call of Duty\iw3mp.exe FirewallRules: [{A5570630-9802-4E08-B86A-1E37D802D458}] => (Allow) C:\ProgramData\FasterNow.exe FirewallRules: [{5059719C-58B0-4205-B7CF-EF1A564CDC99}] => (Allow) C:\ProgramData\FasterNow.exe ==================== Faulty Device Manager Devices ============= Name: Broadcom Bluetooth 4.0 USB Description: Broadcom Bluetooth 4.0 USB Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Broadcom Service: BTHUSB Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Microsoft Virtual WiFi Miniport Adapter #2 Description: Karta wirtualnego miniportu WiFi firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: vwifimp Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (05/17/2015 11:33:02 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: iw3mp.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4859a219 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000 Identyfikator procesu powodującego błąd: 0x7bc Godzina uruchomienia aplikacji powodującej błąd: 0xiw3mp.exe0 Ścieżka aplikacji powodującej błąd: iw3mp.exe1 Ścieżka modułu powodującego błąd: iw3mp.exe2 Identyfikator raportu: iw3mp.exe3 Error: (05/17/2015 11:22:28 PM) (Source: RasClient) (EventID: 20227) (User: ) Description: Identyfikator CoId={4AF42822-BE91-43CF-BE19-DC18E94EA2C7}: Użytkownik Lewy-PC\Lewy wybrał numer w celu nawiązania połączenia o nazwie Połączenie szerokopasmowe, jednak jego nawiązanie nie powiodło się. Kod błędu zwrócony w wyniku niepowodzenia: 651. Error: (05/17/2015 11:00:35 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program iw3mp.exe w wersji 0.0.0.0 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 80c Godzina rozpoczęcia: 01d090e47cc0a348 Godzina zakończenia: 4 Ścieżka aplikacji: D:\GRY\Call of Duty\iw3mp.exe Identyfikator raportu: c1aeccd5-fcd7-11e4-9aa3-b888e3c62c89 Error: (05/17/2015 10:27:05 PM) (Source: Google Update) (EventID: 20) (User: Lewy-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80 Error: (05/17/2015 07:27:05 PM) (Source: Google Update) (EventID: 20) (User: Lewy-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80 Error: (05/17/2015 06:00:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: Dead Space.exe, wersja: 1.0.0.222, sygnatura czasowa: 0x48dbcf01 Nazwa modułu powodującego błąd: Dead Space.exe, wersja: 1.0.0.222, sygnatura czasowa: 0x48dbcf01 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x001808e9 Identyfikator procesu powodującego błąd: 0xf1c Godzina uruchomienia aplikacji powodującej błąd: 0xDead Space.exe0 Ścieżka aplikacji powodującej błąd: Dead Space.exe1 Ścieżka modułu powodującego błąd: Dead Space.exe2 Identyfikator raportu: Dead Space.exe3 Error: (05/17/2015 05:52:31 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: Dead Space.exe, wersja: 1.0.0.222, sygnatura czasowa: 0x48dbcf01 Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x81dabae0 Identyfikator procesu powodującego błąd: 0x1570 Godzina uruchomienia aplikacji powodującej błąd: 0xDead Space.exe0 Ścieżka aplikacji powodującej błąd: Dead Space.exe1 Ścieżka modułu powodującego błąd: Dead Space.exe2 Identyfikator raportu: Dead Space.exe3 Error: (05/17/2015 04:27:06 PM) (Source: Google Update) (EventID: 20) (User: Lewy-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80 Error: (05/17/2015 01:27:05 PM) (Source: Google Update) (EventID: 20) (User: Lewy-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80 Error: (05/17/2015 10:27:06 AM) (Source: Google Update) (EventID: 20) (User: Lewy-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=FireFox, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80 System errors: ============= Error: (05/19/2015 10:16:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi PLAY ONLINE. OUC z powodu następującego błędu: %%1053 Error: (05/19/2015 10:16:05 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą PLAY ONLINE. OUC. Error: (05/19/2015 10:15:11 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: ZARZĄDZANIE NT) Description: Nastąpiło nieoczekiwane zatrzymanie modułu rozszerzalności sieci WLAN. Ścieżka modułu: C:\Windows\System32\IWMSSvc.dll Error: (05/19/2015 10:15:11 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: ZARZĄDZANIE NT) Description: Nastąpiło nieoczekiwane zatrzymanie modułu rozszerzalności sieci WLAN. Ścieżka modułu: C:\Windows\System32\IWMSSvc.dll Error: (05/19/2015 10:15:11 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: ZARZĄDZANIE NT) Description: Nastąpiło nieoczekiwane zatrzymanie modułu rozszerzalności sieci WLAN. Ścieżka modułu: C:\Windows\System32\IWMSSvc.dll Error: (05/19/2015 10:15:09 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: ZARZĄDZANIE NT) Description: Nastąpiło nieoczekiwane zatrzymanie modułu rozszerzalności sieci WLAN. Ścieżka modułu: C:\Windows\System32\IWMSSvc.dll Error: (05/19/2015 10:14:50 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Ochrona oprogramowania niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (05/19/2015 10:14:49 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (05/19/2015 10:14:49 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) Management and Security Application User Notification Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (05/19/2015 10:14:49 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Microsoft Office Sessions: ========================= Error: (02/11/2015 02:44:23 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 3447 seconds with 720 seconds of active time. This session ended with a crash. Error: (02/11/2015 01:46:23 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 1007 seconds with 180 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2015-05-17 23:33:14.700 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 23:33:14.418 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 23:29:53.667 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 23:29:52.957 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 23:07:56.470 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 23:07:56.276 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 23:01:27.422 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 23:01:27.155 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 18:05:32.053 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. Date: 2015-05-17 18:05:31.328 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-3120M CPU @ 2.50GHz Percentage of memory in use: 70% Total physical RAM: 3998.36 MB Available physical RAM: 1178.8 MB Total Pagefile: 7994.89 MB Available Pagefile: 5383.84 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:99.9 GB) (Free:46.86 GB) NTFS Drive d: () (Fixed) (Total:830.43 GB) (Free:62.37 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: C3FFC3FF) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=99.9 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=830.4 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=1.1 GB) - (Type=12) ==================== End Of Log ============================