Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-07-2014 Ran by JARO at 2015-06-05 06:17:52 Running from C:\Users\JARO\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.169 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.3.153 - Adobe Systems, Inc.) AnyProtect (HKLM-x32\...\AnyProtect) (Version: 1.0.0.4 - CMI Limited) <==== ATTENTION CCleaner (HKLM\...\CCleaner) (Version: 5.06 - Piriform) CMDialog ActiveX Control DLL (x32 Version: 6.0.84.18 - Unknown) Hidden Edu App (HKLM\...\Edu App) (Version: 2015.06.04.172506 - Edu App) Faktura VAT 2013 START v13.1.677 (HKLM-x32\...\Faktura VAT 2013_is1) (Version: - ) Faktura VAT 2015 v15.1.37 (HKLM-x32\...\Faktura VAT 2015_is1) (Version: - ) GamesDesktop 008.125 (HKLM-x32\...\gmsd_pl_125_is1) (Version: - GAMESDESKTOP) GG (HKCU\...\GG) (Version: 12 - GG Network S.A.) globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.81 - Google Inc.) Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden HP Officejet Pro 8600 — badanie mające na celu poprawę produktów (HKLM\...\{BC187043-52D3-48ED-BEA1-2B15787E29FE}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Officejet Pro 8600 — podstawowe oprogramowanie urządzenia (HKLM\...\{7F27E6D4-0760-4F3C-9CF7-41DA73DF428D}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) HP Officejet Pro 8600 Pomoc (HKLM-x32\...\{B81E50EF-9EE2-4249-84BC-66EC6EE53E51}) (Version: 28.0.0 - Hewlett Packard) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP) IC_Katalog ONLINE (HKCU\...\8fe0a249888b2f6b) (Version: 2.5.6.0 - Inter Cars) Infonaut 1.10.0.14 (HKLM-x32\...\Infonaut_1.10.0.14) (Version: 1.10.0.14 - Infonaut) Intel(R) Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2869 - Intel Corporation) Intel(R) Management Engine Interface (HKLM\...\HECI) (Version: - Intel Corporation) istartsurf uninstall (HKLM-x32\...\istartsurf uninstall) (Version: - istartsurf) Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) Java Auto Updater (x32 Version: 2.8.31.13 - Oracle Corporation) Hidden MFCDLL Shared Library - Retail Version (x32 Version: 6.0.8665.0 - Unknown) Hidden Microsoft (R) C Runtime Library (x32 Version: 6.0.8797.0 - Unknown) Hidden Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (PLK) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Common Controls 2 ActiveX Control DLL (x32 Version: 6.0.80.22 - Unknown) Hidden Microsoft Common Controls 2 ActiveX Control DLL (x32 Version: 6.0.88.4 - Unknown) Hidden Microsoft Internet Transfer Control DLL (x32 Version: 6.0.88.42 - Unknown) Hidden Microsoft OLE 2.40 for Windows NT(TM) and Windows 95(TM) Operating Systems (x32 Version: 2.40.4275.1 - Unknown) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) MSMAPI Controls (x32 Version: 6.0.81.69 - Unknown) Hidden MSXML 4.0 (x32 Version: 4.20.9818.0 - Microsoft Corporation) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) My Dell (HKLM\...\PC-Doctor for Windows) (Version: 3.5.6426.22 - PC-Doctor, Inc.) mystartsearch uninstall (HKLM-x32\...\mystartsearch uninstall) (Version: - mystartsearch) <==== ATTENTION OpenOffice.org 3.4.1 (HKLM-x32\...\{18192D3F-5537-4560-AD89-D695F72AF91D}) (Version: 3.41.9593 - Apache Software Foundation) PDF-XChange Viewer (HKLM\...\{9ED333F8-3E6C-4A38-BAFA-728454121CDA}) (Version: 2.5.213.1 - Tracker Software Products (Canada) Ltd.) Profbi Delegacje 2013 (HKLM-x32\...\Profbi Delegacje 2013_is1) (Version: - Profbi Radosław Robociński) Programer Faktura (HKLM-x32\...\{5F4447D9-1D6B-4E6F-943E-D859A9514932}) (Version: 7.3.0 - Programer) Programer PDF Writer (HKLM\...\Programer PDF Writer) (Version: - ) Programer PDF Writer Instalator (HKLM-x32\...\{C0408F88-4F7B-4689-B5B9-64629F504B71}) (Version: 2.7.0.1 - Programer Sp. z o.o.) S.T.A.L.K.E.R. - Zew Prypeci [v1.6.01] (HKLM-x32\...\{406FB8A4-F539-48A9-809C-F94706F9C9F6}_is1) (Version: 1.6.01 - CENEGA) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) SmartWeb (HKLM-x32\...\SmartWeb) (Version: 8.0.9 - SoftBrain Technologies Ltd.) <==== ATTENTION SOAP SDK Files (x32 Version: 3.00.1325.3 - Microsoft Corporation) Hidden Sony Mobile Update Engine (HKLM-x32\...\Update Engine) (Version: 2.14.15.201410271230 - Sony Mobile Communications Inc.) SoundMAX (HKLM-x32\...\{F0A37341-D692-11D4-A984-009027EC0A9C}) (Version: 6.10.2.7280 - Analog Devices) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Trans 4.6.0.6690 (HKLM-x32\...\Trans_is1) (Version: 4.6.0.6690 - Logintrans sp. z o.o.) Visual Basic Virtual Machine (x32 Version: 6.0.88.42 - Unknown) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) Winamp (HKLM-x32\...\Winamp) (Version: 5.65 - Nullsoft, Inc) Windows Common Controls ActiveX Control DLL (x32 Version: 6.0.88.12 - Unknown) Hidden WinRAR 5.00 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) ==================== Restore Points ========================= 02-06-2015 22:04:50 Zaplanowany punkt kontrolny 03-06-2015 01:36:45 Windows Update 05-06-2015 03:23:03 Removed Nero 2014 Content Pack. 05-06-2015 03:33:15 SPTD setup V1.80 ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {13E7D6CA-A63C-4927-8B83-FAEAB3485300} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe Task: {14C7EEF0-13AD-4A62-9CC3-37652FC74694} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-06-05] (AnyProtect.com) Task: {2E906248-0644-4CE3-80EF-B912F717AB77} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-15] (Adobe Systems Incorporated) Task: {3456AEB5-BC16-4FBE-88C4-3D117BDC2F03} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-06-05] (AnyProtect.com) Task: {3FF3F5CA-BC87-4774-9862-76B6E706B96D} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-07] (Microsoft Corporation) Task: {47769754-212A-4880-B588-E1980B036E76} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-17] (Google Inc.) Task: {52B0F66A-6BBF-46CB-BD41-29AA6AE6DACF} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-06-05] (AnyProtect.com) Task: {5ED50FC5-8E0F-4C22-93CC-D8F2B493E3C4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-05-08] (Piriform Ltd) Task: {849EAD63-7E96-4F57-8D67-07C7A55FF149} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) Task: {AB0DCF28-A649-44F2-809B-8304586CCCDE} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks Task: {AFE2AA5B-5AE9-4822-ABBD-72E62CCA9457} - System32\Tasks\HPCustParticipation HP Officejet Pro 8600 => C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.) Task: {B20A2A5B-7EF9-4786-B42E-EDE1BECEA02A} - System32\Tasks\{241F2429-9747-476A-9E9D-AC0E14EA8D49} => C:\Program Files (x86)\Nero\Nero 2014\Nero Launcher\NeroLauncher.exe Task: {B2DA2081-FB15-4608-B4B4-C513A22795F9} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\My Dell\sessionchecker.exe [2014-01-11] (PC-Doctor, Inc.) Task: {B3CE6B12-5B68-430F-A624-C4C1E5D174C8} - System32\Tasks\HP AR Program Upload - 5a581d68c93c4e9cbe2df3762b89e72d953447559a674c1aaedc27ab20b8b590 => C:\Program Files\HP\HP Officejet Pro 8600\bin\HPRewards.exe [2012-10-17] (TODO: ) Task: {C00CBCDA-533D-4709-8BB3-C775A9AE78AF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-17] (Google Inc.) Task: {D57BC361-F5A7-46FC-8C38-CA2C40BE7FD9} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Logon => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) Task: {E418E4CE-0A4A-45D0-9A59-ADDE3EC1BB79} - System32\Tasks\SmartWeb Upgrade Trigger Task => C:\Users\JARO\AppData\Local\SmartWeb\SmartWebHelper.exe [2015-02-17] (SoftBrain Technologies Ltd.) Task: {EEF7C226-8B49-4561-839D-9FFCEBD4D625} - System32\Tasks\HP Officejet Pro 8600.exe_{3E5B723F-7637-479E-85F1-5DF447180AB9} => C:\Program Files\HP\HP Officejet Pro 8600\Bin\HP Officejet Pro 8600.exe [2012-10-17] (Hewlett-Packard Co.) Task: {F491C5A9-0E8B-4D76-BD51-39FBE7B0343D} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\Windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\Windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-01-20 12:50 - 2006-11-30 17:41 - 00087040 _____ () C:\Windows\System32\custmon64.dll 2015-06-05 04:22 - 2015-06-05 04:22 - 00178688 _____ () C:\Users\JARO\AppData\Roaming\4C4C4544-1432476136-4C10-8050-C7C04F34354A\nsi4FE3.tmp 2015-05-24 16:02 - 2015-05-24 16:02 - 00181248 _____ () C:\Users\JARO\AppData\Roaming\4C4C4544-1432476136-4C10-8050-C7C04F34354A\jnsd5F88.tmp 2015-06-04 22:59 - 2015-06-05 03:59 - 00464104 _____ () C:\Program Files (x86)\Edu App\updateEduApp.exe 2015-06-04 22:24 - 2015-06-05 04:02 - 00464104 _____ () C:\Program Files (x86)\Edu App\bin\utilEduApp.exe 2015-05-24 16:02 - 2015-05-24 16:02 - 00364032 _____ () C:\Users\JARO\AppData\Roaming\4C4C4544-1432476136-4C10-8050-C7C04F34354A\hnsd74DE.tmp 2015-06-04 22:56 - 2015-06-04 16:45 - 00101608 _____ () C:\Program Files (x86)\Edu App\bin\EduApp.expext.exe 2015-06-04 22:56 - 2015-06-04 11:47 - 00353512 _____ () C:\Program Files (x86)\Edu App\bin\EduApp.PurBrowse64.exe 2015-06-04 22:56 - 2015-06-04 20:46 - 00126184 _____ () C:\Program Files (x86)\Edu App\bin\EduApp.BrowserAdapter64.exe 2015-06-04 22:56 - 2015-06-04 20:46 - 00108264 _____ () C:\Program Files (x86)\Edu App\bin\EduApp.BrowserAdapter.exe 2015-05-08 20:50 - 2015-05-08 20:50 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2015-06-04 22:53 - 2015-06-04 15:28 - 03284424 _____ () C:\Users\JARO\AppData\Local\gmsd_pl_125\upgmsd_pl_125.exe 2015-06-04 22:53 - 2015-06-04 15:28 - 03984040 _____ () C:\Program Files (x86)\gmsd_pl_125\gmsd_pl_125.exe 2013-01-18 14:20 - 2013-01-18 14:20 - 00985088 _____ () C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll 2015-06-04 22:56 - 2015-06-04 16:45 - 00081640 _____ () C:\Program Files (x86)\Edu App\bin\EduApp.expextdll.dll 2015-06-04 22:56 - 2015-06-04 20:46 - 00197352 _____ () C:\Program Files (x86)\Edu App\bin\ab573ef7acd04715a5c0.dll 2015-05-26 02:57 - 2015-05-22 22:22 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.81\libglesv2.dll 2015-05-26 02:57 - 2015-05-22 22:22 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.81\libegl.dll 2015-05-26 02:57 - 2015-05-22 22:22 - 14982472 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.81\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData\TEMP:56E2E879 ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= ==================== Faulty Device Manager Devices ============= Name: scfd_1_10_0_16 Description: scfd_1_10_0_16 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: scfd_1_10_0_16 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: I:\ Description: GOODDRIVE BK MLC Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: WILK Service: WUDFRd Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. ==================== Event log errors: ========================= Application errors: ================== Error: (06/05/2015 05:36:37 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/04/2015 10:23:58 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/04/2015 07:31:15 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/04/2015 07:30:04 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail (132) WindowsMail0: Tworzenie kopii zapasowej zostało zatrzymane, ponieważ zostało przerwane przez klienta lub nie można nawiązać połączenia z klientem. Error: (06/04/2015 07:05:07 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: beddedabca.exe, wersja: 2015.64.150.64, sygnatura czasowa: 0x55706803 Nazwa modułu powodującego błąd: beddedabca.exe, wersja: 2015.64.150.64, sygnatura czasowa: 0x55706803 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000235e Identyfikator procesu powodującego błąd: 0x3fc Godzina uruchomienia aplikacji powodującej błąd: 0xbeddedabca.exe0 Ścieżka aplikacji powodującej błąd: beddedabca.exe1 Ścieżka modułu powodującego błąd: beddedabca.exe2 Identyfikator raportu: beddedabca.exe3 System errors: ============= Error: (06/05/2015 05:37:08 AM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (06/05/2015 05:36:12 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: scfd_1_10_0_16 Error: (06/05/2015 05:36:07 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Infonaut 1.10.0.14 Client Service z powodu następującego błędu: %%2 Error: (06/04/2015 10:23:17 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: właściwe dla aplikacjiLokalnyUruchom{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}ZARZĄDZANIE NTSYSTEMS-1-5-18LocalHost (użycie LRPC) Error: (06/04/2015 10:22:18 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego: scfd_1_10_0_16 Error: (06/04/2015 10:22:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Infonaut 1.10.0.14 Client Service z powodu następującego błędu: %%2 Error: (06/04/2015 10:21:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Bufor wydruku z powodu następującego błędu: %%1069 Error: (06/04/2015 10:21:41 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: Usługa Spooler nie może zalogować się jako NT AUTHORITY\SYSTEM za pomocą obecnie skonfigurowanego hasła z powodu następującego błędu: %%50 Aby upewnić się, że usługa jest skonfigurowana prawidłowo, użyj przystawki Usługi w programie Microsoft Management Console (MMC). Error: (06/04/2015 10:21:30 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Menedżer sterowania usługami próbował podjąć akcję korekcyjną (Uruchom usługę ponownie) po nieoczekiwanym zakończeniu usługi Windows Search, ale ta akcja nie powiodła się przy następującym błędzie: %%1056. Error: (06/04/2015 10:21:00 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Microsoft Office Sessions: ========================= Error: (06/05/2015 05:36:37 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/04/2015 10:23:58 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/04/2015 07:31:15 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/04/2015 07:30:04 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail132WindowsMail0: Error: (06/04/2015 07:05:07 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: beddedabca.exe2015.64.150.6455706803beddedabca.exe2015.64.150.6455706803c00000050000235e3fc01d09ee899720373C:\Users\JARO\AppData\Local\Temp\beddedabca.exeC:\Users\JARO\AppData\Local\Temp\beddedabca.exed95515d5-0adb-11e5-bde9-180373c19dc5 CodeIntegrity Errors: =================================== Date: 2015-05-29 21:52:52.874 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-05-29 21:52:52.858 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-05-29 21:52:52.827 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-05-29 21:52:52.811 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-05-24 21:35:59.000 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-05-24 21:35:58.969 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-05-24 21:35:15.944 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\JARO\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-05-24 21:35:15.913 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\JARO\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-05-24 21:35:15.898 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\JARO\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-05-24 21:35:15.866 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\JARO\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Percentage of memory in use: 35% Total physical RAM: 5979.61 MB Available physical RAM: 3836.25 MB Total Pagefile: 11957.43 MB Available Pagefile: 9896.21 MB Total Virtual: 8192 MB Available Virtual: 8191.8 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:97.66 GB) (Free:53.45 GB) NTFS Drive e: () (Fixed) (Total:135.13 GB) (Free:83.25 GB) NTFS Drive i: () (Removable) (Total:7.66 GB) (Free:6.55 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: 80E4DF0B) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=98 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=135 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 8 GB) (Disk ID: F09D9D5C) Partition 1: (Not Active) - (Size=8 GB) - (Type=0B) ==================== End Of Log ============================