Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-05-2015 Ran by Zbyszek at 2015-05-26 19:40:05 Running from C:\Users\Zbyszek\Desktop Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2702069576-3377963828-517850969-500 - Administrator - Disabled) ASPNET (S-1-5-21-2702069576-3377963828-517850969-1007 - Limited - Enabled) Gość (S-1-5-21-2702069576-3377963828-517850969-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2702069576-3377963828-517850969-1014 - Limited - Enabled) Jarosław (S-1-5-21-2702069576-3377963828-517850969-1001 - Administrator - Enabled) => C:\Users\Jarosław Piotrek (S-1-5-21-2702069576-3377963828-517850969-1009 - Administrator - Enabled) Zbyszek (S-1-5-21-2702069576-3377963828-517850969-1005 - Administrator - Enabled) => C:\Users\Zbyszek ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated) Adobe Photoshop CS3 (HKLM-x32\...\Adobe_2ac78060bc5856b0c1cf873bb919b58) (Version: 10.0 - Adobe Systems Incorporated) Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.0.112 - Adobe Systems, Inc.) AMD Catalyst Install Manager (HKLM\...\{8F3C9854-8EB9-3D28-4AD7-E3ADD800C7E3}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Aslain's XVM Mod wersja 3.9.8 (HKLM-x32\...\ZRwTINhSZfduKONYrSCTiCiGPggQZdcLRvoAVxyCOXXpkHeC~1DC3968F_is1) (Version: 3.9.8 - Aslain) Assassin's Creed ® III (HKLM-x32\...\{9D15E813-0C26-41E7-ABC5-3EB06FF1B3CF}) (Version: 1.00 - Ubisoft) Avast Free Antivirus (HKLM-x32\...\avast) (Version: 10.2.2218 - AVAST Software) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.5.1 - EA Digital Illusions CE AB) CCleaner (HKLM\...\CCleaner) (Version: 3.28 - Piriform) Centrum obsługi urządzeń z systemem Windows Mobile — aktualizacja sterowników (HKLM\...\{92DBCA36-9B41-4DD1-941A-AED149DD37F0}) (Version: 6.1.6965.0 - Microsoft Corporation) Centrum obsługi urządzeń z systemem Windows Mobile (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation) Cities Skylines (HKLM-x32\...\Cities Skylines_is1) (Version: 1.0 - Релиз от R.G. Steamgames) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.46.1.0328 - DT Soft Ltd) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Diablo III server crack (HKLM-x32\...\Diablo III server crack 1.0.0) (Version: 1.0.0 - Skidrow) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) Dragonball Xenoverse (HKLM-x32\...\Dragonball Xenoverse_is1) (Version: - ) Dual-Core Optimizer (HKLM-x32\...\{9FD6F1A8-5550-46AF-8509-271DF0E768B5}) (Version: 1.1.4.0169 - AMD) Euro Truck Simulator 2 v1.13.4.1s (17 DLC) (HKLM-x32\...\Euro Truck Simulator 2 v1.13.4.1s (17 DLC)1.13.4.1s) (Version: 1.13.4.1s - Friends in War) Free Mouse Auto Clicker 3.1 (HKLM-x32\...\{7D9D583E-EC8B-4390-B3A4-017B8182C8FF}_is1) (Version: - Advanced Mouse Auto Clicker ltd.) Free Sound Recorder v10.5.2 (HKLM-x32\...\Free Sound Recorder_is1) (Version: - Copyright(C) 2005-2015 FreeSoundRecorder Technologies, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.81 - Google Inc.) Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden Grand Theft Auto V (HKLM-x32\...\R3JhbmRUaGVmdEF1dG9W_is1) (Version: 1 - ) Hotline Miami (HKLM-x32\...\GOGPACKHOTLINEMIAMI_is1) (Version: 2.0.0.4 - GOG.com) Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) Kerbal Space Program v.1.0.830 (HKLM-x32\...\{09426681-7B5C-4488-8DA8-BE87504BAB0E}_is1) (Version: v.1.0.830 - Squad) League of Legends (HKLM-x32\...\{92606477-9366-4D3B-8AE3-6BE4B29727AB}) (Version: 1.3 - Riot Games) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual J# .NET Redistributable Package 1.1 (HKLM-x32\...\{1A655D51-1423-48A3-B748-8F5A0BE294C8}) (Version: 1.1.4322 - Microsoft) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden NapiProjekt 2.0.0 (build 2151) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Nokia Connectivity Cable Driver (HKLM-x32\...\{A57025CC-5F2E-4D01-B387-06DB10500D43}) (Version: 7.1.78.0 - Nokia) NVIDIA PhysX (HKLM-x32\...\{9530AE42-DAE1-4619-9594-B23487285D17}) (Version: 9.11.1107 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 9.3.10.4710 - Electronic Arts, Inc.) Pakiet sterowników systemu Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia) Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.8 - Pando Networks Inc.) PC Connectivity Solution (HKLM-x32\...\{644F4910-E812-49AD-93EC-86828CB81A0D}) (Version: 12.0.27.0 - Nokia) PDF Settings (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Polski pakiet językowy dla narzędzi Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - PLK) (Version: 10.0.50903 - Microsoft Corporation) PragmaEngine (HKLM-x32\...\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{9b6ed4d7}) (Version: - Software Publisher) <==== ATTENTION PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Raptr (HKLM-x32\...\Raptr) (Version: - ) Rapture3D 2.4.8 Game (HKLM-x32\...\{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1) (Version: - Blue Ripple Sound) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Sp5 (x32 Version: 5.1.4324.0 - Microsoft) Hidden Sp5Intl (x32 Version: 5.1.4324.0 - Microsoft) Hidden Sp5TTInt (x32 Version: 5.1.4324.0 - Microsoft) Hidden SpCommon (x32 Version: 5.1.4324.0 - Microsoft) Hidden SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) SpinTires (04.02.15) (HKLM-x32\...\SpinTires (04.02.15)04.02.15) (Version: 04.02.15 - Friends in War) SpinTires Tech Demo (May 13) (HKLM-x32\...\{F4DD1C10-1DCB-4EB1-8380-B7BC9907F457}) (Version: 1.0.2 - Oovee) SpPhones (x32 Version: 6.0.3122.0 - Microsoft) Hidden Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) Steam(TM) (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve) Street Legal Racing Redline (HKLM-x32\...\Street Legal Racing Redline) (Version: - ) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) TermBlazer 1.10.0.16 (HKLM-x32\...\TermBlazer_1.10.0.16) (Version: 1.10.0.16 - TermBlazer) The KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 3.6.0.87 - KMP Media co., Ltd) The Witcher 2 (HKLM-x32\...\{F0A209B7-7F85-4BDD-8F1F-B98EEAD9E04B}) (Version: 1.00.0000 - CD Projekt Red) The Witcher 2 Assassins of Kings version 1.0 (HKLM-x32\...\{3F5FA47E-B4DE-45B4-85E3-11CD5E4974A3}_is1) (Version: 1.0 - Atari) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) Unturned (HKLM-x32\...\Steam App 304930) (Version: - Nelson Sexton) Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft) Vehicle Simulator (HKLM-x32\...\Vehicle Simulator_is1) (Version: - Quality Simulations) VirtualDJ 8 (HKLM-x32\...\{9ADBBA93-4625-4898-BB0D-BCE7EA9F8B4A}) (Version: 8.0.0 - Atomix Productions) VobSub 2.23 (HKLM-x32\...\VobSub) (Version: 2.23 - Gabest) War Thunder Launcher 1.0.1.199 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - 2012 Gaijin Entertainment Corporation) WATCH_DOGS (HKLM-x32\...\Uplay Install 274) (Version: - Ubisoft) Winamp (HKLM-x32\...\Winamp) (Version: 5.63 - Nullsoft, Inc) WinRAR 4.20 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.2) (Version: 1.3.2 - Xvid Team) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-10 19:25 - 2014-02-01 18:48 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {26795CAE-2FF6-4DE7-A258-4852BE051BDD} - System32\Tasks\Chromium => C:\Users\Jarosław\AppData\Local\Chromium\Application\uninstall.exe [2015-05-20] () Task: {3074C749-CCD5-42A1-B8CA-8A68AE9F565D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-25] (Google Inc.) Task: {54CE1B6F-001E-4C36-A98E-E3965CD8F34F} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-06] (Microsoft Corporation) Task: {7CF25556-C851-4EEA-9300-EE7522984659} - System32\Tasks\BitGuard => Sc.exe start BitGuard <==== ATTENTION Task: {86EA9AED-87E5-49B7-B8B3-21ECDD227709} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-05-14] (Microsoft Corporation) Task: {8A989C5D-E816-45C4-B196-81B38F3BF520} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-05-25] (Avast Software s.r.o.) Task: {8BD4DAB5-E15B-496C-A9F5-3730598FC4CC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-25] (Google Inc.) Task: {93400E6A-EFFC-462A-B438-67A14DC11A46} - \Optimize Start Menu Cache Files-S-1-5-21-2702069576-3377963828-517850969-1002 No Task File <==== ATTENTION Task: {A8299C7F-EAAE-45A0-827C-48E26D1B9A2A} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {CB103ABA-56B4-499D-B04D-0016403E09C7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-02-25] (Piriform Ltd) Task: {CE1883F8-666C-418A-8AC5-4CAC151350C8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-14] (Adobe Systems Incorporated) Task: {E6078781-991A-412C-806D-BD8B26527FDA} - \Optimize Start Menu Cache Files-S-1-5-21-2702069576-3377963828-517850969-1009 No Task File <==== ATTENTION Task: {F841D911-66B2-4527-83FB-37761447B924} - System32\Tasks\MdmUpdateTaskMachineCore => C:\Users\Jarosław\AppData\Roaming\Toadwater JTWC\Caches\mdm [2015-04-21] () Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\Chromium.job => C:\Users\JAROSA~1\AppData\Local\Chromium\APPLIC~1\UNINST~1.EXE Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2014-03-12 11:34 - 2014-03-12 11:34 - 00214528 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll 2013-11-04 16:03 - 2013-11-04 16:03 - 00818688 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll 2013-11-04 16:03 - 2013-11-04 16:03 - 03650560 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll 2013-03-21 16:45 - 2014-12-03 17:54 - 00075136 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2014-03-12 11:33 - 2014-03-12 11:33 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2013-07-27 12:11 - 2011-01-17 21:41 - 00008192 _____ () D:\Program Files (x86)\Xvid\CheckUpdate.exe 2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2015-05-25 22:24 - 2015-05-25 22:24 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-05-25 22:24 - 2015-05-25 22:24 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-05-25 22:17 - 2015-05-25 22:17 - 02948096 _____ () C:\Program Files\AVAST Software\Avast\defs\15052502\algo.dll 2015-05-26 19:25 - 2015-05-26 19:25 - 02948096 _____ () C:\Program Files\AVAST Software\Avast\defs\15052600\algo.dll 2015-05-25 22:45 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2015-05-25 22:45 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2015-05-25 22:45 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2015-05-25 22:45 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2015-05-25 22:24 - 2015-05-25 22:24 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-05-25 23:42 - 2015-05-22 22:22 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.81\libglesv2.dll 2015-05-25 23:42 - 2015-05-22 22:22 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.81\libegl.dll 2015-05-25 23:42 - 2015-05-22 22:22 - 14982472 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.81\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2702069576-3377963828-517850969-1005\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 62.233.233.233 - 8.8.8.8 ==================== MSCONFIG/TASK MANAGER Error getting == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run: => "BCSSync" HKLM\...\StartupApproved\Run32: => "WinampAgent" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [{5373557D-D3E4-41FC-B9E7-7F59B870CF8A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe FirewallRules: [{5D56FA32-571D-4EC4-A0BB-74162F8A892F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe FirewallRules: [{3C559735-45FB-4845-9DD4-2C42B4A864D7}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe FirewallRules: [{9A8742D0-746D-4FB4-95A1-ED98AFA66940}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe FirewallRules: [{779D9674-9596-44BB-B67A-E526F0C19C9D}] => (Allow) D:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{4DC34F58-A4C2-4523-9DE1-FD4BA6EF87C8}] => (Allow) D:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [UDP Query User{0A100E4F-DB0C-4DD6-AB13-A089F66035E2}D:\war thunder\aces.exe] => (Allow) D:\war thunder\aces.exe FirewallRules: [TCP Query User{9B7F7305-CA1A-4078-8ACA-81C316B55508}D:\war thunder\aces.exe] => (Allow) D:\war thunder\aces.exe FirewallRules: [UDP Query User{852C31A6-D61A-458C-AD52-099438CFA2C0}D:\war thunder\launcher.exe] => (Allow) D:\war thunder\launcher.exe FirewallRules: [TCP Query User{6F6B3C17-24AF-4ABF-B37D-2F124E97FC1E}D:\war thunder\launcher.exe] => (Allow) D:\war thunder\launcher.exe FirewallRules: [UDP Query User{88BB1FEC-0D73-498F-A683-4F16B9BA3168}C:\program files (x86)\valve\steam\steam.exe] => (Allow) C:\program files (x86)\valve\steam\steam.exe FirewallRules: [TCP Query User{6023ED83-98B5-43FB-B2C2-50C3CEE66A8A}C:\program files (x86)\valve\steam\steam.exe] => (Allow) C:\program files (x86)\valve\steam\steam.exe FirewallRules: [{27CB238B-0CAA-47EA-9909-A0A0C461244D}] => (Allow) C:\Program Files (x86)\Valve\Steam\Steam.exe FirewallRules: [{9FFC8D9A-73D7-4D07-AB21-97C2583C4C70}] => (Allow) C:\Program Files (x86)\Valve\Steam\Steam.exe FirewallRules: [UDP Query User{DCBC11AC-F46A-4451-A0E7-9AB71E71FE40}C:\program files (x86)\valve\steam\steamapps\common\half-life\hl.exe] => (Allow) C:\program files (x86)\valve\steam\steamapps\common\half-life\hl.exe FirewallRules: [TCP Query User{8515AE42-A563-492B-A4F2-A1EAD43C4B4E}C:\program files (x86)\valve\steam\steamapps\common\half-life\hl.exe] => (Allow) C:\program files (x86)\valve\steam\steamapps\common\half-life\hl.exe FirewallRules: [{745A4E0F-DB82-4FAE-ACFB-6D3C48A27692}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{B5E61059-B16F-45EB-B4E5-F32D914075DB}] => (Allow) D:\Program Files (x86)\Diablo III\Diablo III.exe FirewallRules: [{B11CACAA-15F3-48C7-9379-CAC885D11719}] => (Allow) D:\Program Files (x86)\Diablo III\Diablo III.exe FirewallRules: [UDP Query User{B07B5579-080D-46D0-AA7B-383475455261}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [TCP Query User{DF8C8A9E-7558-4D36-95D6-8D701267525A}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{0715364B-ED09-4A56-9735-BC10499F2413}D:\program files (x86)\war thunder\aces.exe] => (Allow) D:\program files (x86)\war thunder\aces.exe FirewallRules: [TCP Query User{AD8F3F63-FC3B-4BEF-B6C6-87A0409611F4}D:\program files (x86)\war thunder\aces.exe] => (Allow) D:\program files (x86)\war thunder\aces.exe FirewallRules: [{656FFAAF-388B-4BE6-905A-A0C8E1F2F3DD}] => (Allow) D:\Program Files (x86)\War Thunder\launcher.exe FirewallRules: [{5F5EC38D-46BE-4375-88A5-C54772F1E17D}] => (Allow) D:\Program Files (x86)\War Thunder\launcher.exe FirewallRules: [UDP Query User{0C4405C2-03C5-46FB-95FC-3679DC304084}D:\program files (x86)\hawx 2\hawx2.exe] => (Allow) D:\program files (x86)\hawx 2\hawx2.exe FirewallRules: [TCP Query User{A8ECF378-08A4-4B96-B36C-48CED4A63573}D:\program files (x86)\hawx 2\hawx2.exe] => (Allow) D:\program files (x86)\hawx 2\hawx2.exe FirewallRules: [UDP Query User{CA8361AA-07C9-47AF-A340-30489BAB536B}D:\program files (x86)\hawx 2\hawx2_dx11.exe] => (Block) D:\program files (x86)\hawx 2\hawx2_dx11.exe FirewallRules: [TCP Query User{46DB3CE3-C76A-44D8-9C85-CA0864C61541}D:\program files (x86)\hawx 2\hawx2_dx11.exe] => (Block) D:\program files (x86)\hawx 2\hawx2_dx11.exe FirewallRules: [UDP Query User{A446C35B-4296-4833-9C83-1582A5BB606E}D:\program files (x86)\hawx 2\hawx2_dx11.exe] => (Allow) D:\program files (x86)\hawx 2\hawx2_dx11.exe FirewallRules: [TCP Query User{159FCE74-0CBE-4020-84AF-55C99B75615E}D:\program files (x86)\hawx 2\hawx2_dx11.exe] => (Allow) D:\program files (x86)\hawx 2\hawx2_dx11.exe FirewallRules: [TCP Query User{3F51A646-FFA7-4A5C-99E2-F227C413AE4D}D:\program files (x86)\wb games\batman arkham city goty\binaries\win32\batmanac_o.exe] => (Allow) D:\program files (x86)\wb games\batman arkham city goty\binaries\win32\batmanac_o.exe FirewallRules: [{0C09EF65-8470-4520-B729-EE8C1A4AE037}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{79DF3F8C-D156-46AA-AEB4-DF59813E12DD}] => (Allow) LPort=56864 FirewallRules: [{BF76BDD1-B152-421F-A946-E89E84D6626B}] => (Allow) LPort=56864 FirewallRules: [{7C239C21-B482-424E-873D-3CDB163EB7FB}] => (Allow) LPort=56864 FirewallRules: [{7C4F9089-A206-473E-B7A7-BEA66303F1FE}] => (Allow) LPort=56864 FirewallRules: [{41537B80-BDA1-439F-B076-085765368D5E}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{CD4C3BA7-AA4C-48DD-B07D-2F86375FC6FC}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{712E7603-9306-41EA-B002-BF0910FAFD7D}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{32B5EB1F-01EA-4A0A-8F2E-EFA16D7B30D7}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{03431BAB-6093-4D51-AE17-A4EC99D33D1D}] => (Allow) LPort=1688 FirewallRules: [{2B84A37E-68CA-469E-B0A6-0F2BD27CB7C6}] => (Allow) LPort=8090 FirewallRules: [{A64D80C4-281A-4396-BC0F-F2008D7212A0}] => (Allow) LPort=20443 FirewallRules: [{79EB8E6B-38E3-4CAD-A3DF-991FD56A09D3}] => (Allow) LPort=33333 FirewallRules: [{1EFDD3A5-C082-403A-A844-8D7C61155E1D}] => (Allow) LPort=6881 FirewallRules: [{A0EC1CAF-4362-4EC0-92AC-CA85E95C15EE}] => (Allow) LPort=27022 FirewallRules: [{561CAD46-D6CC-4AE9-9407-887D2B33BB12}] => (Allow) LPort=7850 FirewallRules: [{7B78E09A-F5A2-4CE0-AACD-7BD168185C60}] => (Allow) LPort=3478 FirewallRules: [{77F5F50E-AA68-4172-BC0F-B32350443901}] => (Allow) LPort=20010 FirewallRules: [{19ADDBA1-C90E-4175-A92B-625F247C8314}] => (Allow) LPort=443 FirewallRules: [{7ECC30A3-77D2-4F64-9526-E91904BF7AF5}] => (Allow) LPort=80 FirewallRules: [UDP Query User{98693C10-AB43-4A6F-9245-8B19F87AE4DE}D:\program files (x86)\winamp\winamp.exe] => (Allow) D:\program files (x86)\winamp\winamp.exe FirewallRules: [TCP Query User{40A202AE-0507-4090-98CB-31730177E23E}D:\program files (x86)\winamp\winamp.exe] => (Allow) D:\program files (x86)\winamp\winamp.exe FirewallRules: [{C522CE3B-9C7C-4974-BB44-7A656D85C22F}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{D1929D12-AF9A-4454-833E-F5A2C4BC9B1B}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{8EF5820C-CA45-49E9-98E9-FCF1184C0665}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{E08E729E-1B95-4C29-A903-6D16BEAE5186}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{C5B3F291-BA29-4C56-A2C2-3A4B24D1A4D8}] => (Allow) D:\SteamLibrary\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{4B52B7A2-5EF5-4F58-A5EC-A5633C6C9AEC}] => (Allow) D:\SteamLibrary\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{3D503974-4292-484B-AAC3-6FBA575ECDE6}] => (Allow) D:\Program Files\Ubisoft\WATCH_DOGS\bin\Watch_Dogs.exe FirewallRules: [{EAD4BDF0-F205-45AB-9233-AA5981571C65}] => (Allow) D:\Program Files\Ubisoft\WATCH_DOGS\bin\Watch_Dogs.exe FirewallRules: [{EB1664A2-4AA5-4D1E-84E2-ECDD5DCC8287}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\dota.exe FirewallRules: [{F1460D27-FD7D-476D-832D-9A5F25692A72}] => (Allow) D:\SteamLibrary\SteamApps\common\dota 2 beta\dota.exe FirewallRules: [{DDEF7ED4-95BD-4C08-82EA-1F89BDF37B26}] => (Allow) D:\SteamLibrary\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{DA4075E2-AE4E-4FDE-A8ED-F5B40CFFE249}] => (Allow) D:\SteamLibrary\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{CB9A89C0-F453-4E35-AF9A-CDC4F6E708A4}] => (Allow) C:\Users\Jarosław\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{C0220A44-5165-42B0-BC0F-6565039A899B}] => (Allow) C:\Users\Jarosław\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{FF2E9089-5C5E-4BC9-955D-69D48CBE44BA}D:\program files (x86)\hawx 2\hawx2.exe] => (Allow) D:\program files (x86)\hawx 2\hawx2.exe FirewallRules: [UDP Query User{D690DA7E-51C2-4510-9679-F5ACA8B87EF3}D:\program files (x86)\hawx 2\hawx2.exe] => (Allow) D:\program files (x86)\hawx 2\hawx2.exe FirewallRules: [{425A570E-9B54-4BD5-8C59-18208BD1096A}] => (Allow) C:\Program Files (x86)\Valve\Steam\bin\steamwebhelper.exe FirewallRules: [{B437A71E-00AB-4F27-BEC2-F5FF0F40A42B}] => (Allow) C:\Program Files (x86)\Valve\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{2AB6377D-44C1-4336-8414-AE57BF76702C}D:\filmy\games\world_of_tanks\wotlauncher.exe] => (Allow) D:\filmy\games\world_of_tanks\wotlauncher.exe FirewallRules: [UDP Query User{A69A1A04-978B-4C23-AB84-B1459B63B89D}D:\filmy\games\world_of_tanks\wotlauncher.exe] => (Allow) D:\filmy\games\world_of_tanks\wotlauncher.exe FirewallRules: [TCP Query User{D2B0769C-BE3C-4240-B7C4-56AC3989A22E}D:\filmy\games\world_of_tanks\worldoftanks.exe] => (Allow) D:\filmy\games\world_of_tanks\worldoftanks.exe FirewallRules: [UDP Query User{0DC8224A-9B89-49DB-B73B-0B4D0F12B42D}D:\filmy\games\world_of_tanks\worldoftanks.exe] => (Allow) D:\filmy\games\world_of_tanks\worldoftanks.exe FirewallRules: [TCP Query User{7C5BB546-29D4-47D5-8B5A-72AC97F5496A}D:\instalki\live for speed 0.6 b + unlocker\live for speed 0.6 b + unlock\lfs.exe] => (Block) D:\instalki\live for speed 0.6 b + unlocker\live for speed 0.6 b + unlock\lfs.exe FirewallRules: [UDP Query User{7906C30D-24FB-4CBF-A0AF-67EB8E62D92B}D:\instalki\live for speed 0.6 b + unlocker\live for speed 0.6 b + unlock\lfs.exe] => (Block) D:\instalki\live for speed 0.6 b + unlocker\live for speed 0.6 b + unlock\lfs.exe FirewallRules: [{5A1162CC-6747-42F4-8008-21FF298B7BE0}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{0F9FF585-198C-4CCA-A870-C9948B709C5E}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{906BEC90-5864-4005-9A67-79B0F154052A}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{FB4FB847-D29A-43F8-A912-E996BF131593}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{229FD8BF-32C8-4233-A9A6-7AB0FC641DE5}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{20D07968-92BC-4483-8D42-6BF2A1834B05}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [TCP Query User{84C0B633-952A-45AE-9A85-885427471D18}D:\program files (x86)\black_box\the witcher 2 assassins of kings\bin\witcher2.exe] => (Allow) D:\program files (x86)\black_box\the witcher 2 assassins of kings\bin\witcher2.exe FirewallRules: [UDP Query User{4BDF1106-54E5-45E7-B298-97BE8FA59B2D}D:\program files (x86)\black_box\the witcher 2 assassins of kings\bin\witcher2.exe] => (Allow) D:\program files (x86)\black_box\the witcher 2 assassins of kings\bin\witcher2.exe FirewallRules: [TCP Query User{07771D40-476C-4AA2-8450-D639A52C3812}D:\program files (x86)\grand theft auto v\gta5.exe] => (Allow) D:\program files (x86)\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{8B3093BF-EA81-4648-8EE5-6E5BF9B437F8}D:\program files (x86)\grand theft auto v\gta5.exe] => (Allow) D:\program files (x86)\grand theft auto v\gta5.exe FirewallRules: [{C6EA64A8-AAC5-4C80-8073-888119977F3F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (05/26/2015 07:38:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: SDScan.exe, wersja: 2.4.40.181, sygnatura czasowa: 0x535a5179 Nazwa modułu powodującego błąd: SDScanLibrary.dll_unloaded, wersja: 2.4.40.131, sygnatura czasowa: 0x535a510a Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x001136fd Identyfikator procesu powodującego błąd: 0x848 Godzina uruchomienia aplikacji powodującej błąd: 0xSDScan.exe0 Ścieżka aplikacji powodującej błąd: SDScan.exe1 Ścieżka modułu powodującego błąd: SDScan.exe2 Identyfikator raportu: SDScan.exe3 Pełna nazwa pakietu powodującego błąd: SDScan.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: SDScan.exe5 Error: (05/26/2015 09:36:45 AM) (Source: Winlogon) (EventID: 4005) (User: ) Description: Proces usługi logowania systemu Windows został nieoczekiwanie zakończony. Error: (05/25/2015 10:38:48 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: MsMpEng.exe, wersja: 4.7.205.0, sygnatura czasowa: 0x54cb5aeb Nazwa modułu powodującego błąd: mpengine.dll, wersja: 1.1.10802.0, sygnatura czasowa: 0x53b3757c Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000005ae176 Identyfikator procesu powodującego błąd: 0x1054 Godzina uruchomienia aplikacji powodującej błąd: 0xMsMpEng.exe0 Ścieżka aplikacji powodującej błąd: MsMpEng.exe1 Ścieżka modułu powodującego błąd: MsMpEng.exe2 Identyfikator raportu: MsMpEng.exe3 Pełna nazwa pakietu powodującego błąd: MsMpEng.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: MsMpEng.exe5 Error: (05/25/2015 10:36:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: MsMpEng.exe, wersja: 4.7.205.0, sygnatura czasowa: 0x54cb5aeb Nazwa modułu powodującego błąd: mpengine.dll, wersja: 1.1.10802.0, sygnatura czasowa: 0x53b3757c Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00000000005ae176 Identyfikator procesu powodującego błąd: 0xa18 Godzina uruchomienia aplikacji powodującej błąd: 0xMsMpEng.exe0 Ścieżka aplikacji powodującej błąd: MsMpEng.exe1 Ścieżka modułu powodującego błąd: MsMpEng.exe2 Identyfikator raportu: MsMpEng.exe3 Pełna nazwa pakietu powodującego błąd: MsMpEng.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: MsMpEng.exe5 Error: (05/25/2015 10:23:55 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddWin32ServiceFiles: Unable to back up image of service Usługa Google Update (gupdatem) since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. . Error: (05/25/2015 10:23:55 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddWin32ServiceFiles: Unable to back up image of service Usługa Google Update (gupdate) since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. . Error: (05/25/2015 10:23:55 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddLegacyDriverFiles: Unable to back up image of binary Protokół LLDP (Link-Layer Discovery Protocol) firmy Microsoft. System Error: Odmowa dostępu. . Error: (05/25/2015 10:23:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddWin32ServiceFiles: Unable to back up image of service Usługa Google Update (gupdatem) since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. . Error: (05/25/2015 10:23:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddWin32ServiceFiles: Unable to back up image of service Usługa Google Update (gupdate) since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. . Error: (05/25/2015 10:23:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddLegacyDriverFiles: Unable to back up image of binary Protokół LLDP (Link-Layer Discovery Protocol) firmy Microsoft. System Error: Odmowa dostępu. . System errors: ============= Error: (05/25/2015 10:44:31 PM) (Source: volsnap) (EventID: 36) (User: ) Description: Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error: (05/25/2015 10:38:55 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80070643: Definition Update for Windows Defender - KB2267602 (Definition 1.199.721.0). Error: (05/25/2015 10:38:49 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa Windows Defender niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (05/25/2015 10:36:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa Windows Defender niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (05/25/2015 10:30:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi avast! Firewall z powodu następującego błędu: %%1053 Error: (05/25/2015 10:30:27 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą avast! Firewall. Error: (05/25/2015 10:20:17 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Usługa Google Update (gupdate) z powodu następującego błędu: %%2 Error: (05/25/2015 10:18:23 PM) (Source: DCOM) (EventID: 10016) (User: Stacjonarny) Description: właściwe dla aplikacjiLokalnyUruchom{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}StacjonarnyZbyszekS-1-5-21-2702069576-3377963828-517850969-1005LocalHost (użycie LRPC)NiedostępnyNiedostępny Error: (05/25/2015 10:18:23 PM) (Source: DCOM) (EventID: 10016) (User: Stacjonarny) Description: właściwe dla aplikacjiLokalnyUruchom{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}StacjonarnyZbyszekS-1-5-21-2702069576-3377963828-517850969-1005LocalHost (użycie LRPC)NiedostępnyNiedostępny Error: (05/25/2015 10:18:23 PM) (Source: DCOM) (EventID: 10016) (User: Stacjonarny) Description: właściwe dla aplikacjiLokalnyUruchom{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}StacjonarnyZbyszekS-1-5-21-2702069576-3377963828-517850969-1005LocalHost (użycie LRPC)NiedostępnyNiedostępny Microsoft Office: ========================= Error: (05/26/2015 07:38:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SDScan.exe2.4.40.181535a5179SDScanLibrary.dll_unloaded2.4.40.131535a510ac0000005001136fd84801d097d72d8c92abC:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exeSDScanLibrary.dll055f0129-03ce-11e5-beec-50e5493c9ff3 Error: (05/26/2015 09:36:45 AM) (Source: Winlogon) (EventID: 4005) (User: ) Description: Error: (05/25/2015 10:38:48 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: MsMpEng.exe4.7.205.054cb5aebmpengine.dll1.1.10802.053b3757cc000000500000000005ae176105401d0972a96a47e4eC:\Program Files\Windows Defender\MsMpEng.exeC:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D1A6AFD5-42FE-451A-9983-FB7F0F1A369A}\mpengine.dll0b5b32b3-031e-11e5-beec-50e5493c9ff3 Error: (05/25/2015 10:36:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: MsMpEng.exe4.7.205.054cb5aebmpengine.dll1.1.10802.053b3757cc000000500000000005ae176a1801d09729a66010e1C:\Program Files\Windows Defender\MsMpEng.exeC:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D1A6AFD5-42FE-451A-9983-FB7F0F1A369A}\mpengine.dllb05663c5-031d-11e5-beec-50e5493c9ff3 Error: (05/25/2015 10:23:55 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddWin32ServiceFiles: Unable to back up image of service Usługa Google Update (gupdatem) since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. Error: (05/25/2015 10:23:55 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddWin32ServiceFiles: Unable to back up image of service Usługa Google Update (gupdate) since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. Error: (05/25/2015 10:23:55 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary Protokół LLDP (Link-Layer Discovery Protocol) firmy Microsoft. System Error: Odmowa dostępu. Error: (05/25/2015 10:23:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddWin32ServiceFiles: Unable to back up image of service Usługa Google Update (gupdatem) since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. Error: (05/25/2015 10:23:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddWin32ServiceFiles: Unable to back up image of service Usługa Google Update (gupdate) since QueryServiceConfig API failed System Error: Nie można odnaleźć określonego pliku. Error: (05/25/2015 10:23:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary Protokół LLDP (Link-Layer Discovery Protocol) firmy Microsoft. System Error: Odmowa dostępu. CodeIntegrity Errors: =================================== Date: 2015-05-26 16:32:21.819 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-26 16:32:21.494 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-26 16:26:41.048 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-26 16:26:40.766 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-26 16:26:40.454 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-26 16:26:40.032 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-26 16:26:39.110 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-26 08:58:23.365 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-26 08:58:23.052 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-26 08:58:22.756 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: AMD Phenom(tm) II X4 955 Processor Percentage of memory in use: 56% Total physical RAM: 4093.55 MB Available physical RAM: 1761.59 MB Total Pagefile: 4797.55 MB Available Pagefile: 1959.13 MB Total Virtual: 131072 MB Available Virtual: 131071.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:48.73 GB) (Free:4.65 GB) NTFS Drive d: () (Fixed) (Total:882.68 GB) (Free:82.94 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 3F4F2CA0) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=48.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=882.7 GB) - (Type=07 NTFS) ==================== End of log ============================