Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-07-2015 Ran by Rodzina at 2015-07-06 23:47:47 Running from C:\Users\Rodzina\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NGZVCP8C Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3654260889-3095111008-2617426574-500 - Administrator - Disabled) Gość (S-1-5-21-3654260889-3095111008-2617426574-501 - Limited - Disabled) Rodzina (S-1-5-21-3654260889-3095111008-2617426574-1000 - Administrator - Enabled) => C:\Users\Rodzina ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - ) 7-Zip 9.22 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0922-000001000000}) (Version: 9.22.00.0 - Igor Pavlov) Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.190 - Adobe Systems Incorporated) Adobe Reader XI (11.0.11) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated) ASUS AP Bank (HKLM-x32\...\ASUS AP Bank_is1) (Version: 1.0.0.0 - ASUSTEK) ASUS CopyProtect (HKLM-x32\...\{6B77A7F6-DD63-4F13-A6FF-83137A5AC354}) (Version: 1.0.0015 - ASUS) ASUS FancyStart (HKLM-x32\...\{2B81872B-A054-48DA-BE3B-FA5C164C303A}) (Version: 1.0.8 - ASUSTeK Computer Inc.) ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.20 - ASUS) ASUS Live Update (HKLM-x32\...\{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}) (Version: 2.5.9 - ASUS) ASUS MultiFrame (HKLM-x32\...\{9D48531D-2135-49FC-BC29-ACCDA5396A76}) (Version: 1.0.0021 - ASUS) ASUS Power4Gear Hybrid (HKLM\...\{91EFE3A1-585E-4F66-B5F6-F118F56C4C47}) (Version: 1.1.37 - ASUS) ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0028 - ASUS) ASUS Video Magic (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 6.0.4015 - CyberLink Corp.) ASUS Video Magic (x32 Version: 6.0.4015 - CyberLink Corp.) Hidden ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.20 - asus) ASUS WebStorage (HKLM-x32\...\ASUS WebStorage) (Version: 2.0.46.1429 - eCareme Technologies, Inc.) Asystent rejestracji usługi Windows Live (HKLM-x32\...\{74CC5B4D-CBB5-46F1-82B0-3169977B1D36}) (Version: 5.000.818.6 - Microsoft Corporation) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0006 - ASUS) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software) Bezpieczeństwo rodzinne usługi Windows Live (Version: 14.0.8052.1208 - Microsoft Corporation) Hidden Bing Bar (HKLM-x32\...\{B4089055-D468-45A4-A6BA-5A138DD715FC}) (Version: 7.0.850.0 - Microsoft Corporation) blueconnect (HKLM-x32\...\blueconnect) (Version: 11.302.09.17.49 - Huawei Technologies Co.,Ltd) Boingo Wi-Fi (HKLM-x32\...\{B653A2EC-D816-4498-A4FD-651047AB9DC9}) (Version: 1.7.0048 - Boingo Wireless, Inc.) Bubble Town (HKLM-x32\...\Bubble Town1.1) (Version: 1.1 - Adnan_Boy 2008) Bubble Xmas (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-119625140}) (Version: - Oberon Media) Bubbletown (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115065740}) (Version: - Oberon Media) Build a lot 3 (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115735150}) (Version: - Oberon Media) Choice Guard (x32 Version: 1.2.87.0 - Microsoft Corporation) Hidden Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 4.111.0.63 - Conexant) ControlDeck (HKLM-x32\...\{5B65EF64-1DFA-414A-8C94-7BB726158E21}) (Version: 1.0.8 - ASUS) ETDWare PS/2-x64 7.0.5.13_WHQL (HKLM\...\Elantech) (Version: 7.0.5.13 - ELAN Microelectronics Corp.) Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.6 - ASUS) FindWide.com (HKU\S-1-5-21-3654260889-3095111008-2617426574-1000\...\{2DC52815-CC42-4808-8BE2-838540194AFB}) (Version: - FindWide.com) <==== ATTENTION Galeria fotografii usługi Windows Live (x32 Version: 14.0.8051.1204 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.130 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2125 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation) Internet Manager (HKLM-x32\...\{A9E5EDA7-2E6C-49E7-924B-A32B89C24A04}) (Version: 1.0.0.1 - ZTE Corporation) Java(TM) 6 Update 26 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86416026FF}) (Version: 6.0.260 - Oracle) Java(TM) 6 Update 29 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216026FF}) (Version: 6.0.290 - Oracle) JMicron Ethernet Adapter NDIS Driver (HKLM-x32\...\{96DCEE2F-98EE-4F80-8C0F-7C04D1FB9D7F}) (Version: 6.0.17.1 - JMicron Technology Corp.) JMicron Flash Media Controller Driver (HKLM-x32\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.0.33.2 - JMicron Technology Corp.) Junk Mail filter update (x32 Version: 14.0.8050.1202 - Microsoft Corporation) Hidden K_Series_ScreenSaver_EN (HKLM-x32\...\K_Series_ScreenSaver_EN) (Version: - ) Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office XP Professional z programem FrontPage (HKLM-x32\...\{90280415-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation) Microsoft PowerPoint Viewer (HKLM-x32\...\{95140000-00AF-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Sync Framework Runtime Native v1.0 (x86) (HKLM-x32\...\{8A74E887-8F0F-4017-AF53-CBA42211AAA5}) (Version: 1.0.1215.0 - Microsoft Corporation) Microsoft Sync Framework Services Native v1.0 (x86) (HKLM-x32\...\{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}) (Version: 1.0.1215.0 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM-x32\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Mozilla Firefox 7.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 7.0.1 (x86 pl)) (Version: 7.0.1 - Mozilla) Mozilla Thunderbird (3.1.7) (HKLM-x32\...\Mozilla Thunderbird (3.1.7)) (Version: 3.1.7 (pl) - Mozilla) MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation) Narzędzie do przekazywania usługi Windows Live (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation) Pakiet zgodności dla systemu Office 2007 (HKLM-x32\...\{90120000-0020-0415-0000-0000000FF1CE}) (Version: 12.0.6514.5001 - Microsoft Corporation) Panda Global Protection 2011 (x32 Version: 4.00.00 - Panda Security) Hidden Poczta usługi Windows Live (x32 Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8050.1202 - Microsoft Corporation) Podstawowe programy Windows Live (x32 Version: 14.0.8050.1202 - Microsoft Corporation) Hidden Skype™ 6.22 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.22.104 - Skype Technologies S.A.) TomTom HOME (HKLM-x32\...\{7A2BB1C8-903D-4585-9F3B-CADD67D07D37}) (Version: 2.9.8 - Nazwa firmy) TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.) Unity Web Player (HKU\S-1-5-21-3654260889-3095111008-2617426574-1000\...\UnityWebPlayer) (Version: 5.1.0f3 - Unity Technologies ApS) USB2.0 UVC VGA WebCam (HKLM\...\USB2.0 UVC VGA WebCam) (Version: 5.8.54000.207 - Sonix) WIDCOMM Bluetooth Software (HKLM\...\{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}) (Version: 6.2.5.600 - Broadcom Corporation) Windows Driver Package - Broadcom (BTHUSB) Bluetooth (02/25/2010 6.2.0.9419) (HKLM\...\85CE3A3657FAE5FD305B143E90E6FC89BA53001C) (Version: 02/25/2010 6.2.0.9419 - Broadcom) Windows Driver Package - Broadcom Bluetooth (01/19/2010 6.2.0.1417) (HKLM\...\7341A1B43E7FE58942EB1E820A17C18305DFBCE6) (Version: 01/19/2010 6.2.0.1417 - Broadcom) Windows Driver Package - Broadcom Bluetooth (07/29/2009 6.1.7100.0) (HKLM\...\2AA10AB519DC7432D599A0E860206A7DDCC27764) (Version: 07/29/2009 6.1.7100.0 - Broadcom) Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) (HKLM\...\6B6B5E96843E55CF5CF8C7E45FB457F1FE642FF1) (Version: 07/30/2009 6.2.0.9405 - Broadcom) Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (HKLM\...\3BA80AB4C7E9F8497C115C844953A3D4BEB84D21) (Version: 07/28/2009 6.2.0.9800 - Broadcom) Windows Live Sync (HKLM-x32\...\{C3335EFB-008F-44DB-A87A-9EC8EE53D045}) (Version: 14.0.8050.1202 - Microsoft Corporation) Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation) WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.30.3 - ASUS) WinZip 15.5 (HKLM-x32\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240C2}) (Version: 15.5.9468 - WinZip Computing, S.L. ) Wireless Console 3 (HKLM-x32\...\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}) (Version: 3.0.18 - ASUS) YAC(Yet Another Cleaner!) (HKLM-x32\...\iSafe) (Version: 6.6.94 - ELEX DO BRASIL PARTICIPAÇÕES LTDA) <==== ATTENTION ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-3654260889-3095111008-2617426574-1000_Classes\CLSID\{F6BF8414-962C-40FE-90F1-B80A7E72DB9A}\InprocServer32 -> C:\ProgramData\{9A88E103-A20A-4EA5-8636-C73B709A5BF8}\eqossnap.dll (inrrooCoti sfcoprotaM) <==== ATTENTION ==================== Restore Points ========================= 05-07-2014 22:49:47 Installed TomTom HOME. 13-07-2014 23:08:14 avast! antivirus system restore point 20-12-2014 23:14:20 avast! antivirus system restore point 11-01-2015 23:18:18 avast! antivirus system restore point 14-01-2015 23:20:08 avast! antivirus system restore point 01-02-2015 18:25:08 Windows Update 02-02-2015 11:41:04 Windows Update 24-06-2015 07:52:15 Zainstalowano: Pakiet zgodności dla systemu Office 2007 ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {36DB464D-2DB7-45EA-A2E4-C74AF6DA9553} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-23] (Adobe Systems Incorporated) Task: {3BE21AD6-CFBB-496F-AB0C-D767884E5EE2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-29] (Google Inc.) Task: {69D05F96-ECF6-4433-ACB4-5E808CB31D5A} - System32\Tasks\{BEC3B880-1B3A-4363-91A1-D525DD52AE11} => pcalua.exe -a C:\Users\Rodzina\Downloads\jre-6u26-windows-i586-iftw.exe -d C:\Users\Rodzina\Downloads Task: {93B7EF27-A91A-4C2A-940E-A24BBC1A04D7} - System32\Tasks\ASPG => C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe [2009-06-29] (ASUS) Task: {ACEA80A7-6557-4A96-8002-D66F50DF62F4} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-08-18] (ASUS) Task: {B51DC7E1-32ED-4CAA-8C9C-51CDB0133A15} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2009-07-23] (ATK) Task: {B8AFAB04-5918-4083-AD41-5409099F6334} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe [2007-11-30] () Task: {BAAF1794-503F-4C81-A2C6-8A0F9024A34D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-29] (Google Inc.) Task: {C59952A9-9C3F-4CFB-9119-B6C5435B6201} - System32\Tasks\ASUSControlDeck => C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe [2010-06-09] (asus) Task: {C5D46474-321E-4901-A4BD-4FB13EECBC80} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-06-20] (Avast Software s.r.o.) Task: {C8C979BA-F06B-492A-A712-4B03E1512C9E} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2010-05-28] (ATK) Task: {CA5A171D-1024-40C3-8927-D082262E98CF} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-3654260889-3095111008-2617426574-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe Task: {EB6B38B1-4456-44BA-8D40-E555708CA254} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-3654260889-3095111008-2617426574-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2010-08-19 10:52 - 2010-08-19 10:52 - 00229376 _____ () C:\ProgramData\DatacardService\DCService.exe 2008-10-01 09:02 - 2008-10-01 09:08 - 00011264 _____ () C:\Program Files (x86)\ASUS\Splendid\GLCDdll.dll 2010-11-26 00:22 - 2007-11-30 21:20 - 00051768 _____ () C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe 2010-01-11 20:27 - 2010-01-11 20:27 - 00017920 _____ () C:\Program Files\P4G\DevMng.dll 2010-05-06 04:22 - 2010-05-06 04:22 - 00108544 _____ () C:\Program Files\P4G\OvrClk.dll 2015-01-14 23:21 - 2015-01-14 23:21 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll 2015-01-14 23:21 - 2015-01-14 23:21 - 05851328 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll 2010-03-16 03:48 - 2010-03-16 03:48 - 01754448 _____ () C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe 2010-03-12 06:14 - 2010-03-12 06:14 - 00173344 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll 2010-08-12 05:46 - 2010-08-12 05:46 - 01597440 _____ () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe 2015-07-01 23:23 - 2015-05-25 12:32 - 00068432 _____ () C:\Program Files (x86)\Elex-tech\YAC\zlib1.dll 2015-07-01 23:23 - 2015-06-05 04:50 - 00176976 _____ () C:\Program Files (x86)\Elex-tech\YAC\tws\unrar.dll 2015-07-01 23:23 - 2015-06-05 04:50 - 00087744 _____ () C:\Program Files (x86)\Elex-tech\YAC\tws\unacev2.dll 2015-07-03 12:06 - 2015-07-03 12:06 - 02956288 _____ () C:\Program Files\AVAST Software\Avast\defs\15070300\algo.dll 2015-01-14 23:21 - 2015-01-14 23:21 - 04495336 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll 2015-07-06 22:54 - 2015-07-06 22:54 - 02956288 _____ () C:\Program Files\AVAST Software\Avast\defs\15070602\algo.dll 2015-07-01 23:23 - 2015-01-13 06:31 - 00179200 _____ () C:\Program Files (x86)\Elex-tech\YAC\libpng.dll 2015-03-15 23:22 - 2015-03-15 23:22 - 38714440 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2010-02-24 01:14 - 2010-02-24 01:14 - 00041472 _____ () C:\Program Files (x86)\ASUS\ControlDeck\HelpFunc.dll 2010-02-24 01:14 - 2010-02-24 01:14 - 00071680 _____ () C:\Program Files (x86)\ASUS\ControlDeck\Brightness.dll 2010-02-24 01:11 - 2010-02-24 01:11 - 00076288 _____ () C:\Program Files (x86)\ASUS\ControlDeck\Volume.dll 2010-02-24 01:12 - 2010-02-24 01:12 - 00186880 _____ () C:\Program Files (x86)\ASUS\ControlDeck\Resolution.dll 2010-02-24 01:14 - 2010-02-24 01:14 - 00050688 _____ () C:\Program Files (x86)\ASUS\ControlDeck\P4GControl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\Temp:01442FD8 AlternateDataStreams: C:\ProgramData\Temp:0207454C AlternateDataStreams: C:\ProgramData\Temp:029E021F AlternateDataStreams: C:\ProgramData\Temp:18E45954 AlternateDataStreams: C:\ProgramData\Temp:1AE68282 AlternateDataStreams: C:\ProgramData\Temp:255B2DDA AlternateDataStreams: C:\ProgramData\Temp:27AD48A5 AlternateDataStreams: C:\ProgramData\Temp:2CFBE2D1 AlternateDataStreams: C:\ProgramData\Temp:38849DE5 AlternateDataStreams: C:\ProgramData\Temp:3AE22B1A AlternateDataStreams: C:\ProgramData\Temp:3E7393FC AlternateDataStreams: C:\ProgramData\Temp:45A334DD AlternateDataStreams: C:\ProgramData\Temp:493524DB AlternateDataStreams: C:\ProgramData\Temp:4BB26BE9 AlternateDataStreams: C:\ProgramData\Temp:4F58D818 AlternateDataStreams: C:\ProgramData\Temp:52DBE86F AlternateDataStreams: C:\ProgramData\Temp:531637AD AlternateDataStreams: C:\ProgramData\Temp:59F2F9FB AlternateDataStreams: C:\ProgramData\Temp:5D458568 AlternateDataStreams: C:\ProgramData\Temp:5E358F67 AlternateDataStreams: C:\ProgramData\Temp:6EAE3ABC AlternateDataStreams: C:\ProgramData\Temp:70F0A2F4 AlternateDataStreams: C:\ProgramData\Temp:81F83028 AlternateDataStreams: C:\ProgramData\Temp:89123481 AlternateDataStreams: C:\ProgramData\Temp:93C494CA AlternateDataStreams: C:\ProgramData\Temp:981884E7 AlternateDataStreams: C:\ProgramData\Temp:9AB56A06 AlternateDataStreams: C:\ProgramData\Temp:9B52F176 AlternateDataStreams: C:\ProgramData\Temp:9F683177 AlternateDataStreams: C:\ProgramData\Temp:A163B050 AlternateDataStreams: C:\ProgramData\Temp:A18D4DB1 AlternateDataStreams: C:\ProgramData\Temp:BD13A410 AlternateDataStreams: C:\ProgramData\Temp:C4A1F01E AlternateDataStreams: C:\ProgramData\Temp:CF5483CE AlternateDataStreams: C:\ProgramData\Temp:D20FFA63 AlternateDataStreams: C:\ProgramData\Temp:DBA1A307 AlternateDataStreams: C:\ProgramData\Temp:E1F04E8D AlternateDataStreams: C:\ProgramData\Temp:E21C71E5 AlternateDataStreams: C:\ProgramData\Temp:E54FA796 AlternateDataStreams: C:\ProgramData\Temp:E6D38BF2 AlternateDataStreams: C:\ProgramData\Temp:ED66F190 AlternateDataStreams: C:\ProgramData\Temp:F82CA780 ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3654260889-3095111008-2617426574-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Rodzina\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.0.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" MSCONFIG\startupreg: ADSMTray => C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe MSCONFIG\startupreg: ASUS Screen Saver Protector => C:\Windows\AsScrPro.exe MSCONFIG\startupreg: CLMLServer => "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe" MSCONFIG\startupreg: LanzarP2006 => "C:\Users\Rodzina\AppData\Local\Temp\P2006tmp\Install.exe" /SETUP:"/l0x0015" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{6B7031D3-36C6-49CE-B55B-1B9E03EBA7C7}] => (Allow) LPort=5353 FirewallRules: [{2346A429-69B1-4731-B766-59D428660695}] => (Allow) LPort=8182 FirewallRules: [{D8E3371B-8217-4314-B0B9-018EA1B7E073}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{A0DB8A92-6182-47FC-BAD0-DCC80C5B4D17}] => (Allow) svchost.exe FirewallRules: [{1F06F375-5C3C-4A7A-8619-A9B1FF31E4DC}] => (Allow) C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe FirewallRules: [TCP Query User{FDE1C81E-E1F0-4E67-AF63-7163F3B9A5F3}C:\program files (x86)\syncables\syncables desktop\jre\bin\javaw.exe] => (Allow) C:\program files (x86)\syncables\syncables desktop\jre\bin\javaw.exe FirewallRules: [UDP Query User{B8F0F40E-6CC3-4441-8A2D-B48A9E249B9A}C:\program files (x86)\syncables\syncables desktop\jre\bin\javaw.exe] => (Allow) C:\program files (x86)\syncables\syncables desktop\jre\bin\javaw.exe FirewallRules: [TCP Query User{370B9888-19F4-4812-9D9A-7B8A9582501C}C:\program files (x86)\gadu-gadu 10\gg.exe] => (Allow) C:\program files (x86)\gadu-gadu 10\gg.exe FirewallRules: [UDP Query User{8865F015-1BF0-4A3C-A480-33A42EAA468D}C:\program files (x86)\gadu-gadu 10\gg.exe] => (Allow) C:\program files (x86)\gadu-gadu 10\gg.exe FirewallRules: [TCP Query User{37104128-E57E-4AF3-9187-3732522220D7}C:\program files (x86)\panda security\panda global protection 2011\apvxdwin.exe] => (Allow) C:\program files (x86)\panda security\panda global protection 2011\apvxdwin.exe FirewallRules: [UDP Query User{E11D741E-294C-46C3-9BDA-18D9EAF98A3B}C:\program files (x86)\panda security\panda global protection 2011\apvxdwin.exe] => (Allow) C:\program files (x86)\panda security\panda global protection 2011\apvxdwin.exe FirewallRules: [{0C59D1CF-6E40-4A4F-B357-CFEF805B8CF4}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{835B0018-2795-4B1D-B8B7-B2A1A52E06C0}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [TCP Query User{0E122480-11AE-41D1-963A-33FD437F67DF}C:\program files (x86)\panda security\panda global protection 2012\apvxdwin.exe] => (Allow) C:\program files (x86)\panda security\panda global protection 2012\apvxdwin.exe FirewallRules: [UDP Query User{0771D925-2E61-406D-8C1E-9E2C8F2529C4}C:\program files (x86)\panda security\panda global protection 2012\apvxdwin.exe] => (Allow) C:\program files (x86)\panda security\panda global protection 2012\apvxdwin.exe FirewallRules: [TCP Query User{8EADA1E6-611B-4F99-8A8C-4BDEA28BC0CD}C:\program files (x86)\syncables\syncables desktop\jre\bin\javaw.exe] => (Allow) C:\program files (x86)\syncables\syncables desktop\jre\bin\javaw.exe FirewallRules: [UDP Query User{F0358B2C-1E5E-456E-81F8-40CD31C836D3}C:\program files (x86)\syncables\syncables desktop\jre\bin\javaw.exe] => (Allow) C:\program files (x86)\syncables\syncables desktop\jre\bin\javaw.exe FirewallRules: [TCP Query User{262A3F71-D78B-4296-A670-A6214586C5E3}C:\program files (x86)\gadu-gadu 10\gg.exe] => (Block) C:\program files (x86)\gadu-gadu 10\gg.exe FirewallRules: [UDP Query User{EC509A03-DE1E-4914-9314-1649F5EC41DD}C:\program files (x86)\gadu-gadu 10\gg.exe] => (Block) C:\program files (x86)\gadu-gadu 10\gg.exe FirewallRules: [{7DF83748-95B4-4FA0-A663-538700C0CA12}] => (Allow) C:\Users\Rodzina\AppData\Local\TNT2\2.0.0.1702\TNT2User.exe FirewallRules: [{A000DC30-9F6D-49A3-A52B-30AEE0534D78}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{0B46AE6E-0691-4E76-8BE7-F21CDB0631DE}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{FFBD5619-32CD-4574-9513-64DD494E7C2E}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{A29E124E-8DB4-4F37-8144-4A5A6A66B7D3}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (06/30/2015 10:49:29 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program iexplore.exe w wersji 9.0.8112.16421 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 1294 Godzina rozpoczęcia: 01d0b31139e188ae Godzina zakończenia: 30 Ścieżka aplikacji: C:\Program Files (x86)\Internet Explorer\iexplore.exe Identyfikator raportu: Error: (06/24/2015 08:51:22 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program iexplore.exe w wersji 9.0.8112.16421 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 78c Godzina rozpoczęcia: 01d0aeae1e2aa9cf Godzina zakończenia: 500 Ścieżka aplikacji: C:\Program Files (x86)\Internet Explorer\iexplore.exe Identyfikator raportu: Error: (06/18/2015 09:13:05 AM) (Source: TomTomHOMEService) (EventID: 10000) (User: ) Description: TomTomHOMEServiceStartServiceCtrlDispatcher failed with 0 Error: (06/11/2015 04:17:09 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program iexplore.exe w wersji 9.0.8112.16421 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: de4 Godzina rozpoczęcia: 01d0a44cb73f05fe Godzina zakończenia: 170 Ścieżka aplikacji: C:\Program Files (x86)\Internet Explorer\iexplore.exe Identyfikator raportu: Error: (06/08/2015 10:40:50 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program iexplore.exe w wersji 9.0.8112.16421 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 82c Godzina rozpoczęcia: 01d0a1bfcb35c3c6 Godzina zakończenia: 140 Ścieżka aplikacji: C:\Program Files (x86)\Internet Explorer\iexplore.exe Identyfikator raportu: Error: (05/29/2015 08:02:53 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: iexplore.exe, wersja: 9.0.8112.16421, sygnatura czasowa: 0x4d76255d Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x1c5d0f20 Identyfikator procesu powodującego błąd: 0x157c Godzina uruchomienia aplikacji powodującej błąd: 0xiexplore.exe0 Ścieżka aplikacji powodującej błąd: iexplore.exe1 Ścieżka modułu powodującego błąd: iexplore.exe2 Identyfikator raportu: iexplore.exe3 Error: (05/27/2015 06:35:51 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program iexplore.exe w wersji 9.0.8112.16421 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 158 Godzina rozpoczęcia: 01d0989b1eb299cd Godzina zakończenia: 16 Ścieżka aplikacji: C:\Program Files (x86)\Internet Explorer\iexplore.exe Identyfikator raportu: Error: (05/25/2015 06:20:19 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program iexplore.exe w wersji 9.0.8112.16421 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: eac Godzina rozpoczęcia: 01d097054f04c01f Godzina zakończenia: 50 Ścieżka aplikacji: C:\Program Files (x86)\Internet Explorer\iexplore.exe Identyfikator raportu: Error: (05/22/2015 10:26:23 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: iexplore.exe, wersja: 9.0.8112.16421, sygnatura czasowa: 0x4d76255d Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x7544c9f1 Identyfikator procesu powodującego błąd: 0xe70 Godzina uruchomienia aplikacji powodującej błąd: 0xiexplore.exe0 Ścieżka aplikacji powodującej błąd: iexplore.exe1 Ścieżka modułu powodującego błąd: iexplore.exe2 Identyfikator raportu: iexplore.exe3 Error: (05/13/2015 08:17:15 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program iexplore.exe w wersji 9.0.8112.16421 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 1194 Godzina rozpoczęcia: 01d08da8bf78b58a Godzina zakończenia: 5 Ścieżka aplikacji: C:\Program Files (x86)\Internet Explorer\iexplore.exe Identyfikator raportu: System errors: ============= Error: (07/06/2015 10:50:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Update Jump Flip z powodu następującego błędu: %%2 Error: (07/06/2015 10:50:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Update Deal Keeper z powodu następującego błędu: %%2 Error: (07/06/2015 08:21:37 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Update Jump Flip z powodu następującego błędu: %%2 Error: (07/06/2015 08:21:37 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Update Deal Keeper z powodu następującego błędu: %%2 Error: (07/03/2015 05:46:45 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Wywołanie ScRegSetValueExW dla Start nie powiodło się i wystąpił następujący błąd: %%5. Error: (07/03/2015 05:27:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Update Jump Flip z powodu następującego błędu: %%2 Error: (07/03/2015 05:27:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Update Deal Keeper z powodu następującego błędu: %%2 Error: (07/03/2015 00:19:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Update Jump Flip z powodu następującego błędu: %%2 Error: (07/03/2015 00:19:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Update Deal Keeper z powodu następującego błędu: %%2 Error: (07/03/2015 00:03:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Update Jump Flip z powodu następującego błędu: %%2 Microsoft Office: ========================= Error: (06/30/2015 10:49:29 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: iexplore.exe9.0.8112.16421129401d0b31139e188ae30C:\Program Files (x86)\Internet Explorer\iexplore.exe Error: (06/24/2015 08:51:22 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: iexplore.exe9.0.8112.1642178c01d0aeae1e2aa9cf500C:\Program Files (x86)\Internet Explorer\iexplore.exe Error: (06/18/2015 09:13:05 AM) (Source: TomTomHOMEService) (EventID: 10000) (User: ) Description: TomTomHOMEServiceStartServiceCtrlDispatcher failed with 0 Error: (06/11/2015 04:17:09 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: iexplore.exe9.0.8112.16421de401d0a44cb73f05fe170C:\Program Files (x86)\Internet Explorer\iexplore.exe Error: (06/08/2015 10:40:50 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: iexplore.exe9.0.8112.1642182c01d0a1bfcb35c3c6140C:\Program Files (x86)\Internet Explorer\iexplore.exe Error: (05/29/2015 08:02:53 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: iexplore.exe9.0.8112.164214d76255dunknown0.0.0.000000000c00000051c5d0f20157c01d09a377ae6b10fC:\Program Files (x86)\Internet Explorer\iexplore.exeunknowneca7a2d7-062c-11e5-a889-00a0c6000000 Error: (05/27/2015 06:35:51 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: iexplore.exe9.0.8112.1642115801d0989b1eb299cd16C:\Program Files (x86)\Internet Explorer\iexplore.exe Error: (05/25/2015 06:20:19 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: iexplore.exe9.0.8112.16421eac01d097054f04c01f50C:\Program Files (x86)\Internet Explorer\iexplore.exe Error: (05/22/2015 10:26:23 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: iexplore.exe9.0.8112.164214d76255dunknown0.0.0.000000000c00000057544c9f1e7001d0945cf09ea479C:\Program Files (x86)\Internet Explorer\iexplore.exeunknown3a7611fd-005c-11e5-b2a5-00a0c6000000 Error: (05/13/2015 08:17:15 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: iexplore.exe9.0.8112.16421119401d08da8bf78b58a5C:\Program Files (x86)\Internet Explorer\iexplore.exe ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3 CPU M 350 @ 2.27GHz Percentage of memory in use: 48% Total physical RAM: 2924.37 MB Available physical RAM: 1498.62 MB Total Virtual: 5846.93 MB Available Virtual: 3240.37 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:72.69 GB) (Free:7.74 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (Data) (Fixed) (Total:205.87 GB) (Free:203.54 GB) NTFS Drive f: (Internet Manager) (CDROM) (Total:0.01 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 849C66B0) Partition 1: (Not Active) - (Size=19.5 GB) - (Type=1C) Partition 2: (Active) - (Size=72.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=205.9 GB) - (Type=OF Extended) ==================== End of log ============================