Additional scan result of Farbar Recovery Scan Tool (x86) Version: 13-06-2015 Ran by Howoj at 2015-06-16 15:03:12 Running from C:\Users\Howoj\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-636647274-2273593247-2775318690-500 - Administrator - Disabled) Guest (S-1-5-21-636647274-2273593247-2775318690-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-636647274-2273593247-2775318690-1002 - Limited - Enabled) Howoj (S-1-5-21-636647274-2273593247-2775318690-1000 - Administrator - Enabled) => C:\Users\Howoj ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 4.57 (HKLM\...\7-Zip) (Version: - ) ABBYY FineReader 4.0 Sprint (HKLM\...\ABBYY FineReader 4.0 Sprint) (Version: - ) Adobe Acrobat 5.0 (HKLM\...\Adobe Acrobat 5.0) (Version: 5.0 - Adobe Systems, Inc.) Adobe AIR (HKLM\...\Adobe AIR) (Version: 16.0.0.273 - Adobe Systems Incorporated) Adobe Community Help (HKLM\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated) Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.188 - Adobe Systems Incorporated) Adobe Media Player (HKLM\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated) Adobe Photoshop CS5 (HKLM\...\{15FEDA5F-141C-4127-8D7E-B962D1742728}) (Version: 12.0 - Adobe Systems Incorporated) Adobe Reader XI (11.0.11) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated) Advertising Center (Version: 0.0.0.1 - Nero AG) Hidden Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{04E205D6-88B1-4652-B162-42DF2C3B1228}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}) (Version: - Microsoft) Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{128A36ED-21BE-4547-9FFE-5B85AEC735DD}) (Version: - Microsoft) AOMEI Partition Assistant Standard Edition 5.6 (HKLM\...\{02F850ED-FD0E-4ED1-BE0B-54981f5BD3D4}_is1) (Version: - AOMEI Technology Co., Ltd.) Archiwizator WinRAR (HKLM\...\WinRAR archiver) (Version: - ) ArcSoft Panorama Maker 6 (HKLM\...\{8A7D0970-C0A4-4B56-94D4-E3A175AB45BB}) (Version: 6.0.0.94 - ArcSoft) Ashampoo Music Studio 2009 (HKLM\...\Ashampoo Music Studio 2009_is1) (Version: 3.5.0 - ashampoo GmbH & Co. KG) Ashampoo Music Studio 3.50 (HKLM\...\Ashampoo Music Studio 3_is1) (Version: 3.5.0 - ashampoo GmbH & Co. KG) Audacity 1.3.12 (Unicode) (HKLM\...\Audacity 1.3 Beta (Unicode)_is1) (Version: - Audacity Team) AVG 2015 (HKLM\...\AVG) (Version: 2015.0.5961 - AVG Technologies) AVG 2015 (Version: 15.0.4365 - AVG Technologies) Hidden AVG 2015 (Version: 15.0.5961 - AVG Technologies) Hidden AVG PC TuneUp 2015 (HKLM\...\AVG PC TuneUp) (Version: 15.0.1001.518 - AVG Technologies) AVG PC TuneUp 2015 (pl-PL) (Version: 15.0.1001.518 - AVG Technologies) Hidden AVG PC TuneUp 2015 (Version: 15.0.1001.518 - AVG Technologies) Hidden AVG Web TuneUp (HKLM\...\AVG Web TuneUp) (Version: 4.1.0.411 - AVG Technologies) Dodatek Zapisywanie jako PDF lub XPS firmy Microsoft dla programów pakietu Microsoft Office 2007 (HKLM\...\{90120000-00B2-0415-0000-0000000FF1CE}) (Version: 12.0.4518.1020 - Microsoft Corporation) e-Deklaracje Desktop (HKLM\...\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1) (Version: 7.0.1 - Ministerstwo Finansow) e-Deklaracje Desktop (Version: 7.0.1 - Ministerstwo Finansow) Hidden EndNote X7 (HKLM\...\{86B3F2D6-AC2B-0017-8AE1-F2F77F781B0C}) (Version: 17.0.0.7072 - Thomson Reuters) EVEREST Ultimate Edition v5.30 (HKLM\...\EVEREST Ultimate Edition_is1) (Version: 5.30 - Lavalys, Inc.) EXPERTool 7.5 (HKLM\...\EXPERTool_is1) (Version: - Gainward Co., Ltd) Extended Asian Language font pack for Adobe Reader XI (HKLM\...\{AC76BA86-7AD7-2530-0000-A00000000049}) (Version: 11.0.09 - Adobe Systems Incorporated) Firebird SQL Server - MAGIX Edition (HKLM\...\{39AB2E37-1A55-4292-A5D3-971E9F70D0F8}) (Version: 2.1.32.0 - MAGIX AG) FotoSender 3.0 (HKLM\...\FotoSender_is1) (Version: - DiPrint) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Google Chrome (HKLM\...\Google Chrome) (Version: 43.0.2357.124 - Google Inc.) Google Gmail Notifier (HKLM\...\{0228e555-4f9c-4e35-a3ec-b109a192b4c2}) (Version: - Google Inc.) Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (Version: 1.3.27.5 - Google Inc.) Hidden ImagXpress (Version: 7.0.74.0 - Nero AG) Hidden K-Lite Codec Pack 10.4.5 Basic (HKLM\...\KLiteCodecPack_is1) (Version: 10.4.5 - ) Magic Bullet Looks Studio (HKLM\...\Magic Bullet Looks Studio) (Version: - ) MAGIX Photo Manager 15 Deluxe (HKLM\...\MX.{1FD8173D-4974-463C-AD6D-BDCC8041CCA2}) (Version: 11.0.2.36 - MAGIX Software GmbH) MAGIX Photo Manager 15 Deluxe (Version: 11.0.2.36 - MAGIX Software GmbH) Hidden MAGIX Slideshow Maker 2 (HKLM\...\MX.{ADB6CF23-87C3-493D-A12D-DCE526E0418C}) (Version: 2.0.1.9 - MAGIX Software GmbH) MAGIX Slideshow Maker 2 (Version: 2.0.1.9 - MAGIX Software GmbH) Hidden MAGIX Speed burnR (MSI) (HKLM\...\MX.{DE41B5F2-7AAB-4046-83E4-11E69BCAD2CE}) (Version: 7.0.1.27 - MAGIX Software GmbH) MAGIX Speed burnR (MSI) (Version: 7.0.1.27 - MAGIX Software GmbH) Hidden Malwarebytes Anti-Malware wersja 2.1.6.1022 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Primary Interoperability Assemblies 2005 (HKLM\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Research AutoCollage 2008 version 1.1 (HKLM\...\{423D8FBE-EC52-40FD-B2A0-8C9C8F973FD7}) (Version: 1.01.2008 - Microsoft Research) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation) Mozilla Firefox 37.0.2 (x86 pl) (HKLM\...\Mozilla Firefox 37.0.2 (x86 pl)) (Version: 37.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 32.0.3 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) Need for Speed™ Most Wanted (HKLM\...\{ADE91A13-434D-4229-00BC-182BAD607303}) (Version: - ) Nero 7 Ultra Edition (HKLM\...\{9FB8CAC0-CCF6-47C9-8EDE-3AC69FD61045}) (Version: 7.02.4741 - Nero AG) Nero 9 Essentials (HKLM\...\{b8175ce6-9ad9-44b6-9700-2f80c2d56e09}) (Version: - Nero AG) NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.3 - NVIDIA Corporation) NVIDIA PhysX (HKLM\...\{B83FC356-B7C0-441F-8A4D-D71E088E7974}) (Version: 9.09.0428 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (HKLM\...\NVIDIAStereo) (Version: 7.15.11.8618 - NVIDIA Corporation) Pakiet sterowników systemu Windows - Lexmark International Printer (05/03/2013 2.8.0.0) (HKLM\...\FC0D9D867813ABE415A95F23A0AB4D255A2D9E1D) (Version: 05/03/2013 2.8.0.0 - Lexmark International) Pakiet zgodności dla systemu Office 2007 (HKLM\...\{90120000-0020-0415-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) PDF Settings CS5 (Version: 10.0 - Adobe Systems Incorporated) Hidden Pinnacle Studio 14 (HKLM\...\{AADD1C8F-D59F-4D55-A726-768C71A205A8}) (Version: 14.0.0.7255 - Pinnacle Systems) Pinnacle Studio Ultimate Collection Plugins (HKLM\...\{F5C372A1-40F3-49DA-A049-F75CDE9177DC}) (Version: 14.0.0.7255 - Pinnacle Systems) PlayReady PC Runtime x86 (HKLM\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation) Red Giant ToonIt Studio (HKLM\...\Red Giant ToonIt Studio) (Version: - ) ResearchSoft Direct Export Helper (HKLM\...\ResearchSoft Direct Export Helper) (Version: - Thomson Reuters) ScanWizard 5 (HKLM\...\{B08D262E-D902-11D5-9C28-0080C85A0C2D}) (Version: - ) SmartSound Quicktracks Plugin (HKLM\...\InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}) (Version: 3.0.2.3 - SmartSound Software Inc) SmartSound Quicktracks Plugin (Version: 3.0.2.3 - SmartSound Software Inc) Hidden STATISTICA PL 12.5.192.18 (HKLM\...\{152E9771-0A42-484E-8E5B-9B3F6B292F31}) (Version: 12.5.192.18 - StatSoft, Inc.) STATNOVAPDF (novaPDF 7.7 printer) (HKLM\...\STATNOVAPDF_is1) (Version: - Softland) Sterownik wideo firmy Pinnacle (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.030 - Pinnacle Systems) SYNABA 2015 (HKU\S-1-5-21-636647274-2273593247-2775318690-1000\...\SYNABA 2015) (Version: - OPI) SYNABA 2015 (Version: 3.0.0.0 - OPI) Hidden Trapcode 3DStroke Studio (HKLM\...\Trapcode 3DStroke Studio) (Version: - ) Trapcode Particular Studio (HKLM\...\Trapcode Particular Studio) (Version: - ) Trapcode Shine Studio (HKLM\...\Trapcode Shine Studio) (Version: - ) Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Vuze (HKLM\...\8461-7759-5462-8226) (Version: 5.4.0.0 - Azureus Software, Inc.) Winamp (HKLM\...\Winamp) (Version: 5.541 - Nullsoft, Inc) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-636647274-2273593247-2775318690-1000_Classes\CLSID\{5B004CDE-0211-469C-B9B5-0552E7E63917}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH) CustomCLSID: HKU\S-1-5-21-636647274-2273593247-2775318690-1000_Classes\CLSID\{77D8C8C7-6B46-4429-B876-DBC006C96EB1}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH) CustomCLSID: HKU\S-1-5-21-636647274-2273593247-2775318690-1000_Classes\CLSID\{CD37ED08-860C-4B86-AD25-5587D8386587}\InprocServer32 -> C:\Program Files\Pinnacle\Shared Files\Filter\MarvinAVRenderer.ax (Pinnacle Systems GmbH) ==================== Restore Points ========================= 11-06-2015 07:17:07 Windows Update 11-06-2015 08:12:16 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {1ACF8837-98CB-4360-8FE8-BBD5D2D8483D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-04] (Google Inc.) Task: {2419FA85-0165-4B60-95A5-C6C9C9184782} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {27FFAAE5-5DAC-4A49-AD5A-45DCE93B171D} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-07] (Microsoft Corporation) Task: {288374CE-DC18-4172-B38B-E252D65EE356} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-04] (Google Inc.) Task: {3D9EB918-1B35-49C7-B5D5-95B2E56CADF3} - System32\Tasks\{706D4FA0-3928-41C4-9C82-8E80FCFCEB2E} => C:\Program Files\Microtek\ScanWizard 5\ScanWizard5.exe [2002-01-11] () Task: {434F9C9F-58D8-4C40-8394-13AEB4FC7D25} - System32\Tasks\{DFA94493-BC79-42DA-9947-75CCD47E16CF} => C:\Program Files\Microsoft\Research\AutoCollage 2008\AutoCollage.exe [2009-01-30] (Microsoft Research) Task: {4369865B-565E-42BC-81B0-521E3AD0925D} - System32\Tasks\{E53F0F30-0CF0-48DF-BEE8-82CAF3414D26} => pcalua.exe -a F:\ScanWizard5\Polish\setup.exe -d F:\ScanWizard5\Polish Task: {4CB1EBE7-F947-4268-9134-49FEF09990EE} - System32\Tasks\{91AE9DAE-3E19-4121-960C-B5E8B2FE8823} => pcalua.exe -a E:\Ewi_pobierane\trial10.exe -d E:\Ewi_pobierane Task: {5355EA34-2E8B-45A2-9D77-3E8D48AB39CC} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files\AVG\AVG PC TuneUp\OneClick.exe [2015-05-15] (AVG Technologies) Task: {59F74D13-BB89-4EFB-B364-F0D58F3FA727} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) Task: {5D2394AB-B825-41CE-A331-DD4D10AF17E8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-05-28] (Adobe Systems Incorporated) Task: {6821AD8B-4AA5-4204-9E16-9C2A63CD1030} - System32\Tasks\{BCD734B5-79E2-42E7-BAE0-0C1D1F7DCC93} => C:\Program Files\Microtek\ScanWizard 5\ScanWizard5.exe [2002-01-11] () Task: {7D20C818-243B-47B7-A26D-245D6CAC90CC} - System32\Tasks\{37783BCF-63E0-46F6-B574-1DD83DD66C62} => C:\Program Files\Microtek\ScanWizard 5\ScanWizard5.exe [2002-01-11] () Task: {82CFE87D-B563-4AAE-9449-88213E2E274B} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks Task: {88543217-2B4D-49F1-8D83-7EE0BACD0E99} - System32\Tasks\{3DAF72C7-3217-43BC-B6ED-D5DF6E01E3DE} => C:\Program Files\Microtek\ScanWizard 5\ScanWizard5.exe [2002-01-11] () Task: {A30FD9AD-4D5F-4DA4-90CB-B49FD617EB2C} - System32\Tasks\Adobe Reader and Acrobat Manager => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {BC492B61-F6CE-4F09-B9BF-247F88C08B73} - System32\Tasks\AdobeAAMUpdater-1.0-Howoj-PC-Howoj => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated) Task: {C86D79E8-1832-493C-B62F-850DF090729F} - System32\Tasks\{DDC73CE8-8387-4A46-BDC4-0AFF3580FEAC} => C:\Program Files\Microtek\ScanWizard 5\ScanWizard5.exe [2002-01-11] () Task: {E2052021-51E3-4C58-8EB6-A7094ABF7300} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Logon => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) Task: {E4EF42F4-6CF6-46AF-9F26-E82D1CE14451} - System32\Tasks\{F9824B51-041B-4CE6-BDF1-81138A73E958} => pcalua.exe -a F:\CDSETUP.EXE -d C:\Users\Howoj\Desktop Task: {EA19D228-D511-4834-99F1-9457D433053A} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2015-05-07 15:29 - 2015-05-07 15:29 - 01711128 ____N () C:\Program Files\AVG Web TuneUp\TBAPI.dll 2015-05-07 15:30 - 2015-05-07 15:29 - 01794584 _____ () C:\Program Files\Common Files\AVG Secure Search\ScriptHelperInstaller\18.4.0\avgtbr.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-636647274-2273593247-2775318690-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Howoj\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\Services: ADExchange => 2 MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: AxAutoMntSrv => 2 MSCONFIG\Services: FirebirdServerMAGIXInstance => 3 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: NBService => 3 MSCONFIG\Services: Nero BackItUp Scheduler 4.0 => 2 MSCONFIG\Services: NMIndexingService => 3 MSCONFIG\Services: nvsvc => 2 MSCONFIG\Services: SpyHunter 4 Service => 2 MSCONFIG\Services: StarWindServiceAE => 2 MSCONFIG\Services: Stereo Service => 2 MSCONFIG\Services: SwitchBoard => 3 MSCONFIG\Services: TuneUp.UtilitiesSvc => 2 MSCONFIG\Services: vToolbarUpdater18.4.0 => 2 MSCONFIG\Services: WtuSystemSupport => 2 MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCS5ServiceManager => "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: AlcoholAutomount => "C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount MSCONFIG\startupreg: GAINWARD => C:\Program Files\EXPERTool\TBPanel.exe /A MSCONFIG\startupreg: GrooveMonitor => "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" MSCONFIG\startupreg: LaunchList => C:\Program Files\Pinnacle\Studio 9\LaunchList.exe MSCONFIG\startupreg: NeroFilterCheck => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe MSCONFIG\startupreg: NvCplDaemon => RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup MSCONFIG\startupreg: PinnacleDriverCheck => C:\Windows\system32\PSDrvCheck.exe -CheckReg MSCONFIG\startupreg: SwitchBoard => C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe MSCONFIG\startupreg: USBToolTip => C:\PROGRA~1\Pinnacle\SHARED~1\Programs\USBTip\USBTip.exe MSCONFIG\startupreg: vProt => "C:\Program Files\AVG Web TuneUp\vprot.exe" MSCONFIG\startupreg: WinampAgent => "C:\Program Files\Winamp\winampa.exe" MSCONFIG\startupreg: {0228e555-4f9c-4e35-a3ec-b109a192b4c2} => C:\Program Files\Google\Gmail Notifier\gnotify.exe ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{D95C5384-21CD-4871-9C67-185C03E52475}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [{BDD9EBCD-3E0E-4E83-B6E4-F1DB04F18284}] => (Allow) C:\Program Files\Pinnacle\Studio 14\Programs\RM.exe FirewallRules: [{BE93F8D3-BCAB-44EE-BC9A-D2E3E5AD7065}] => (Allow) C:\Program Files\Pinnacle\Studio 14\Programs\RM.exe FirewallRules: [{BFE55E80-ECA3-4F07-82C2-D4E0156D38D2}] => (Allow) C:\Program Files\Pinnacle\Studio 14\Programs\Studio.exe FirewallRules: [{81404BBC-D9E7-46D3-A227-25D62C1BF2BF}] => (Allow) C:\Program Files\Pinnacle\Studio 14\Programs\Studio.exe FirewallRules: [{37B5191D-F79E-4145-BAF0-A51963D5F497}] => (Allow) C:\Program Files\Pinnacle\Studio 14\Programs\umi.exe FirewallRules: [{9EB9AB6E-F5F4-495A-A11A-92858B98C838}] => (Allow) C:\Program Files\Pinnacle\Studio 14\Programs\umi.exe FirewallRules: [{28A2079F-B037-4414-8A7F-B9B816ABC25B}] => (Allow) C:\Program Files\Vuze\Azureus.exe FirewallRules: [{F69611ED-9042-4B89-8332-018EB999BD5D}] => (Allow) C:\Program Files\Vuze\Azureus.exe FirewallRules: [{E0107275-3744-468D-AFA9-423A0D37AFA9}] => (Allow) C:\Windows\System32\muzapp.exe FirewallRules: [{F4A5C3D2-9D31-479B-B704-25235F5B4284}] => (Allow) C:\Windows\System32\muzapp.exe FirewallRules: [{3015E5BD-7CDA-4B17-927C-DB72B2D5F0F9}] => (Allow) C:\Program Files\AVG\AVG2015\avgmfapx.exe FirewallRules: [{C12368B5-B9F8-4D8F-A986-760B1791DEC0}] => (Allow) C:\Program Files\AVG\AVG2015\avgmfapx.exe FirewallRules: [{4386BCB2-617E-4D2E-A638-6DDB25744B17}] => (Allow) C:\Program Files\AVG\AVG2015\avgnsx.exe FirewallRules: [{A8A6C460-E031-4EAF-AB68-FD29F2D80111}] => (Allow) C:\Program Files\AVG\AVG2015\avgnsx.exe FirewallRules: [{B73FD8A1-A875-4087-A919-08629548ECC1}] => (Allow) C:\Program Files\AVG\AVG2015\avgdiagex.exe FirewallRules: [{7CCA1A2D-6AAC-4224-BE1F-96C5F13A695D}] => (Allow) C:\Program Files\AVG\AVG2015\avgdiagex.exe FirewallRules: [{9E89E3CF-BBC6-4B86-9D9A-338F5E7A1800}] => (Allow) C:\Program Files\AVG\AVG2015\avgemcx.exe FirewallRules: [{D251D14F-12DD-4041-B1B5-C11475020C49}] => (Allow) C:\Program Files\AVG\AVG2015\avgemcx.exe FirewallRules: [{5CCCBDFF-51A5-4FEB-B3C2-9AEB0F0313ED}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{EFE93883-D331-41D4-B3D8-68464E9EB1CA}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{7BB38667-6662-486D-A49F-6A84A8AE367D}] => (Allow) C:\Program Files\AVG\AVG2015\avgmfapx.exe FirewallRules: [{050D766F-E301-46C6-B130-EC575D02F61F}] => (Allow) C:\Program Files\AVG\AVG2015\avgmfapx.exe FirewallRules: [TCP Query User{BCE9561C-1DE7-43A9-8E72-69F88136AFAE}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{3716EBFE-3900-4D64-B9D3-A4A9EB9643E5}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe FirewallRules: [{BFF0B83B-20F3-4D8C-A091-1CB0642BB1B0}] => (Allow) C:\Program Files\Pinnacle\Studio 14\Programs\RM.exe FirewallRules: [{344751C8-2731-42A5-9288-3AB66875B28F}] => (Allow) C:\Program Files\Pinnacle\Studio 14\Programs\RM.exe FirewallRules: [{5B738CE9-DE4C-4E6F-9D89-3F1ACCC34723}] => (Allow) C:\Program Files\Pinnacle\Studio 14\Programs\Studio.exe FirewallRules: [{FB514C85-92A1-4252-83E0-9DB1299B1E0D}] => (Allow) C:\Program Files\Pinnacle\Studio 14\Programs\Studio.exe FirewallRules: [{86D89985-881B-4DCE-AC6A-2FE0C15E0428}] => (Allow) C:\Program Files\Pinnacle\Studio 14\Programs\umi.exe FirewallRules: [{BF47D95B-2767-4C69-A9FF-79DAE4150738}] => (Allow) C:\Program Files\Pinnacle\Studio 14\Programs\umi.exe FirewallRules: [{E6686F7D-C15D-4113-8225-4F92CBFE3541}] => (Allow) C:\Program Files\AVG\AVG2015\avgnsx.exe FirewallRules: [{47790D42-AAE9-4C39-86E0-C23972A8C442}] => (Allow) C:\Program Files\AVG\AVG2015\avgnsx.exe FirewallRules: [{71B73ACA-0240-4E97-B594-769480D850E8}] => (Allow) C:\Program Files\AVG\AVG2015\avgdiagex.exe FirewallRules: [{B598ED36-1187-40AA-ADC8-8777F777B258}] => (Allow) C:\Program Files\AVG\AVG2015\avgdiagex.exe FirewallRules: [{EAB3C9CB-BF12-441D-ACCC-9DC210A4BBF2}] => (Allow) C:\Program Files\AVG\AVG2015\avgemcx.exe FirewallRules: [{24429587-D8BA-42DD-921A-F56C1E08B012}] => (Allow) C:\Program Files\AVG\AVG2015\avgemcx.exe FirewallRules: [{9DB9C566-B67F-46E0-8FA1-4F8B030E24E9}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: N:\ Description: USB MS Reader Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: Generic Service: WUDFRd Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. Name: I:\ Description: USB SD Reader Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: Generic Service: WUDFRd Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. Name: M:\ Description: USB SM Reader Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: Generic Service: WUDFRd Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. Name: J:\ Description: USB CF Reader Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: Generic Service: WUDFRd Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. ==================== Event log errors: ========================= Application errors: ================== Error: (06/16/2015 03:06:27 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: explorer.exe, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d6727a7 Nazwa modułu powodującego błąd: NeroDigitalExt.dll, wersja: 2.0.0.8, sygnatura czasowa: 0x4379b352 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0007e5d3 Identyfikator procesu powodującego błąd: 0xe88 Godzina uruchomienia aplikacji powodującej błąd: 0xexplorer.exe0 Ścieżka aplikacji powodującej błąd: explorer.exe1 Ścieżka modułu powodującego błąd: explorer.exe2 Identyfikator raportu: explorer.exe3 Error: (06/16/2015 03:06:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: explorer.exe, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d6727a7 Nazwa modułu powodującego błąd: NeroDigitalExt.dll, wersja: 2.0.0.8, sygnatura czasowa: 0x4379b352 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0007e5d3 Identyfikator procesu powodującego błąd: 0x1580 Godzina uruchomienia aplikacji powodującej błąd: 0xexplorer.exe0 Ścieżka aplikacji powodującej błąd: explorer.exe1 Ścieżka modułu powodującego błąd: explorer.exe2 Identyfikator raportu: explorer.exe3 Error: (06/16/2015 03:06:05 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: explorer.exe, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d6727a7 Nazwa modułu powodującego błąd: NeroDigitalExt.dll, wersja: 2.0.0.8, sygnatura czasowa: 0x4379b352 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0007e5d3 Identyfikator procesu powodującego błąd: 0x13d4 Godzina uruchomienia aplikacji powodującej błąd: 0xexplorer.exe0 Ścieżka aplikacji powodującej błąd: explorer.exe1 Ścieżka modułu powodującego błąd: explorer.exe2 Identyfikator raportu: explorer.exe3 Error: (06/16/2015 03:05:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: explorer.exe, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d6727a7 Nazwa modułu powodującego błąd: NeroDigitalExt.dll, wersja: 2.0.0.8, sygnatura czasowa: 0x4379b352 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0007e5d3 Identyfikator procesu powodującego błąd: 0x13a8 Godzina uruchomienia aplikacji powodującej błąd: 0xexplorer.exe0 Ścieżka aplikacji powodującej błąd: explorer.exe1 Ścieżka modułu powodującego błąd: explorer.exe2 Identyfikator raportu: explorer.exe3 Error: (06/16/2015 03:05:44 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: explorer.exe, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d6727a7 Nazwa modułu powodującego błąd: NeroDigitalExt.dll, wersja: 2.0.0.8, sygnatura czasowa: 0x4379b352 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0007e5d3 Identyfikator procesu powodującego błąd: 0x17f0 Godzina uruchomienia aplikacji powodującej błąd: 0xexplorer.exe0 Ścieżka aplikacji powodującej błąd: explorer.exe1 Ścieżka modułu powodującego błąd: explorer.exe2 Identyfikator raportu: explorer.exe3 Error: (06/16/2015 03:05:33 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: explorer.exe, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d6727a7 Nazwa modułu powodującego błąd: NeroDigitalExt.dll, wersja: 2.0.0.8, sygnatura czasowa: 0x4379b352 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0007e5d3 Identyfikator procesu powodującego błąd: 0x1084 Godzina uruchomienia aplikacji powodującej błąd: 0xexplorer.exe0 Ścieżka aplikacji powodującej błąd: explorer.exe1 Ścieżka modułu powodującego błąd: explorer.exe2 Identyfikator raportu: explorer.exe3 Error: (06/16/2015 03:03:24 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: explorer.exe, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d6727a7 Nazwa modułu powodującego błąd: NeroDigitalExt.dll, wersja: 2.0.0.8, sygnatura czasowa: 0x4379b352 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0007e5d3 Identyfikator procesu powodującego błąd: 0x1208 Godzina uruchomienia aplikacji powodującej błąd: 0xexplorer.exe0 Ścieżka aplikacji powodującej błąd: explorer.exe1 Ścieżka modułu powodującego błąd: explorer.exe2 Identyfikator raportu: explorer.exe3 Error: (06/16/2015 03:03:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: explorer.exe, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d6727a7 Nazwa modułu powodującego błąd: NeroDigitalExt.dll, wersja: 2.0.0.8, sygnatura czasowa: 0x4379b352 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0007e5d3 Identyfikator procesu powodującego błąd: 0x102c Godzina uruchomienia aplikacji powodującej błąd: 0xexplorer.exe0 Ścieżka aplikacji powodującej błąd: explorer.exe1 Ścieżka modułu powodującego błąd: explorer.exe2 Identyfikator raportu: explorer.exe3 Error: (06/16/2015 03:03:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: explorer.exe, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d6727a7 Nazwa modułu powodującego błąd: NeroDigitalExt.dll, wersja: 2.0.0.8, sygnatura czasowa: 0x4379b352 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0007e5d3 Identyfikator procesu powodującego błąd: 0x15cc Godzina uruchomienia aplikacji powodującej błąd: 0xexplorer.exe0 Ścieżka aplikacji powodującej błąd: explorer.exe1 Ścieżka modułu powodującego błąd: explorer.exe2 Identyfikator raportu: explorer.exe3 Error: (06/16/2015 03:02:52 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: explorer.exe, wersja: 6.1.7601.17567, sygnatura czasowa: 0x4d6727a7 Nazwa modułu powodującego błąd: NeroDigitalExt.dll, wersja: 2.0.0.8, sygnatura czasowa: 0x4379b352 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0007e5d3 Identyfikator procesu powodującego błąd: 0x1540 Godzina uruchomienia aplikacji powodującej błąd: 0xexplorer.exe0 Ścieżka aplikacji powodującej błąd: explorer.exe1 Ścieżka modułu powodującego błąd: explorer.exe2 Identyfikator raportu: explorer.exe3 System errors: ============= Error: (06/16/2015 02:43:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi ASPI32 z powodu następującego błędu: %%2 Error: (06/16/2015 02:42:56 PM) (Source: Microsoft-Windows-BitLocker-Driver) (EventID: 24620) (User: NT AUTHORITY) Description: Sprawdzanie zaszyfrowanego woluminu: nie można odczytać informacji o woluminie \\?\Volume{3abf23c7-e78c-11e4-b4b9-806e6f6e6963}. Error: (06/16/2015 02:42:56 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk1\DR1 wystąpił zły blok. Error: (06/16/2015 02:05:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi ASPI32 z powodu następującego błędu: %%2 Error: (06/16/2015 02:04:57 PM) (Source: Microsoft-Windows-BitLocker-Driver) (EventID: 24620) (User: NT AUTHORITY) Description: Sprawdzanie zaszyfrowanego woluminu: nie można odczytać informacji o woluminie \\?\Volume{3abf23c7-e78c-11e4-b4b9-806e6f6e6963}. Error: (06/16/2015 02:04:57 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk1\DR1 wystąpił zły blok. Error: (06/16/2015 02:03:43 PM) (Source: Service Control Manager) (EventID: 7043) (User: ) Description: Usługa Diagnostics Tracking Service nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem. Error: (06/16/2015 02:02:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi ASPI32 z powodu następującego błędu: %%2 Error: (06/16/2015 02:02:19 PM) (Source: Microsoft-Windows-BitLocker-Driver) (EventID: 24620) (User: NT AUTHORITY) Description: Sprawdzanie zaszyfrowanego woluminu: nie można odczytać informacji o woluminie \\?\Volume{3abf23c7-e78c-11e4-b4b9-806e6f6e6963}. Error: (06/16/2015 02:02:19 PM) (Source: Disk) (EventID: 7) (User: ) Description: W urządzeniu \Device\Harddisk1\DR1 wystąpił zły blok. Microsoft Office: ========================= Error: (12/04/2014 03:47:32 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6707.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 223 seconds with 120 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2015-06-12 14:40:49.482 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. Date: 2015-06-12 14:40:49.471 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. Date: 2015-06-12 14:40:49.437 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. Date: 2015-06-11 21:24:47.870 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. Date: 2015-06-11 21:24:47.841 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. Date: 2015-06-10 08:53:22.505 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. Date: 2015-06-10 08:53:22.495 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. Date: 2015-06-10 08:53:22.485 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. Date: 2015-06-10 08:51:45.452 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. Date: 2015-06-09 21:50:01.066 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\AVG\AVG PC TuneUp\avgdumpx.exe because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM)2 Quad CPU Q8200 @ 2.33GHz Percentage of memory in use: 46% Total physical RAM: 3582.49 MB Available physical RAM: 1919.25 MB Total Pagefile: 7163.3 MB Available Pagefile: 5248.32 MB Total Virtual: 2047.88 MB Available Virtual: 1892.55 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:97.65 GB) (Free:28.52 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (Multimedia) (Fixed) (Total:263.67 GB) (Free:48.89 GB) NTFS Drive e: () (Fixed) (Total:104.43 GB) (Free:64.67 GB) NTFS Drive f: (F) (Fixed) (Total:222.88 GB) (Free:132.95 GB) NTFS Drive h: (MójDysk) (CDROM) (Total:0.24 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 0A090A08) Partition 1: (Active) - (Size=97.7 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=368.1 GB) - (Type=OF Extended) ======================================================== Disk: 1 (MBR Code: Windows 7 or Vista) (Size: 232.9 GB) (Disk ID: AB42C7DD) Partition 1: (Not Active) - (Size=10 GB) - (Type=27) Partition 2: (Active) - (Size=222.9 GB) - (Type=07 NTFS) ==================== End of log ============================