Additional scan result of Farbar Recovery Scan Tool (x64) Version:20-07-2015 Ran by Spider at 2015-07-21 21:58:35 Running from C:\Users\Spider\Desktop Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1400040647-3413486666-1744970339-500 - Administrator - Disabled) Gość (S-1-5-21-1400040647-3413486666-1744970339-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1400040647-3413486666-1744970339-1002 - Limited - Enabled) Spider (S-1-5-21-1400040647-3413486666-1744970339-1000 - Administrator - Enabled) => C:\Users\Spider ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-1400040647-3413486666-1744970339-1000\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.) 7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - ) ABBYY FineReader 10 Corporate Edition (HKLM-x32\...\{F1000000-0001-0000-0000-074957833700}) (Version: 10.501.154.7211 - ABBYY) ACE Mega CoDecS Pack (HKLM-x32\...\{FFFF6D5C-E2F1-4B40-BC89-8923312E89EB}}_is1) (Version: 6.03.0911 - ACE DESIGN Software) Acronis True Image 2014 (HKLM-x32\...\{5858B1D6-8056-471C-8A29-6A1765BBC0BE}) (Version: 17.0.4515 - Acronis) Acronis Disk Director Suite (HKLM-x32\...\{2300EE96-0A41-4FAB-BD03-989EC44577A0}) (Version: 10.0.2160 - Acronis) Adblock Plus dla IE (32-bitowego i 64-bitowego) (HKLM\...\{E3EA4A92-E882-4BAF-9FE2-EAA7C692A1A1}) (Version: 1.4 - Eyeo GmbH) Adblock Plus for IE (HKLM-x32\...\{fd97d1e2-368a-4cd9-af63-8eeff938044a}) (Version: 1.1 - ) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 17.0.0.144 - Adobe Systems Incorporated) Adobe Flash Player 10 Plugin 64-bit (HKLM\...\Adobe Flash Player Plugin 64) (Version: 10.3.162.28 - Adobe Systems Incorporated) Adobe Flash Player 18 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 18.0.0.203 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Adobe Reader X (10.1.15) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.15 - Adobe Systems Incorporated) Aktualizacje NVIDIA 16.13.42 (Version: 16.13.42 - NVIDIA Corporation) Hidden Alan Wake's American Nightmare (HKLM-x32\...\Steam App 202750) (Version: - Remedy Entertainment) AMCap (HKLM-x32\...\AMCap) (Version: 9.21.156.3 - Noël Danjou) AnyBizSoft PDF Merger (Build 1.0.0) (HKLM-x32\...\{5426C7A4-059F-4716-AE80-2C1B7196E768}_is1) (Version: - AnyBizSoft Software) AP Tuner 3.08 (HKLM-x32\...\AP Tuner 3.08) (Version: - ) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.11 Beta1 - Michael Tippach) ASRock XFast RAM v2.0.28 (HKLM\...\ASRock XFast RAM_is1) (Version: - ASRock Inc.) Auto Gordian Knot 2.40 (HKLM-x32\...\AutoGK) (Version: 2.40 - len0x) AviSynth 2.5 (HKLM-x32\...\AviSynth) (Version: - ) CameraHelperMsi (x32 Version: 13.51.815.0 - Logitech) Hidden CDex extraction audio (HKLM-x32\...\CDex) (Version: - ) ClearProg 1.6.0 Final (HKLM-x32\...\ClearProg) (Version: 1.6.0 Final - Sven Hoffman) Combined Community Codec Pack 2010-10-10 (HKLM-x32\...\Combined Community Codec Pack_is1) (Version: 2010.10.10.0 - CCCP Project) Cool Edit Pro 2.1 (HKLM-x32\...\Cool Edit Pro 2.1) (Version: - ) Creative Software AutoUpdate (HKLM-x32\...\Creative Software AutoUpdate) (Version: 1.40 - Creative Technology Limited) Crysis 2 Maximum Edition (HKLM-x32\...\Steam App 108800) (Version: - Crytek Studios) CrystalDiskMark 3.0.3b (HKLM\...\CrystalDiskMark_is1) (Version: 3.0.3b - Crystal Dew World) CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.1514.54 - CyberLink Corp.) DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive) Dead Island (HKLM-x32\...\Steam App 91310) (Version: - Techland) Dead Island: Epidemic (HKLM-x32\...\Steam App 222900) (Version: - Stunlock Studios) Detektor Winampa (HKU\S-1-5-21-1400040647-3413486666-1744970339-1000\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) DriverEasy 4.7.8 (HKLM\...\DriverEasy_is1) (Version: 4.7.8.0 - Easeware) e-Deklaracje Desktop (HKLM-x32\...\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1) (Version: 7.0.3 - Ministerstwo Finansow) e-Deklaracje Desktop (x32 Version: 7.0.3 - Ministerstwo Finansow) Hidden English Translator 3 (HKLM-x32\...\ET3) (Version: - ) e-pity 2011 wersja 3.0 (HKLM-x32\...\{670A2206-F20A-490C-8C13-25EA88BF8E54}_is1) (Version: 3.0 - e-file sp. z o.o.) e-pity 6.4 za rok 2014 (HKLM-x32\...\{80D8170E-5590-218-B9ED-E24E4C99A18C}_is1) (Version: - e-file sp. z o.o.) erLT (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.115 - Etron Technology) Etron USB3.0 Host Controller (x32 Version: 0.115 - Etron Technology) Hidden EZdrummer (HKLM-x32\...\{43E8D9E7-AFC9-4BA3-8106-B95E02B87AB7}) (Version: 1.0 - Toontrack) EZXCocktail (HKLM-x32\...\{147567F0-8575-4BE0-B5B3-62706C67FA5A}) (Version: 1.0 - Toontrack) Fraps (HKLM-x32\...\Fraps) (Version: - ) Geeks3D.com FurMark 1.9.1 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D.com) GG (HKU\S-1-5-21-1400040647-3413486666-1744970339-1000\...\GG) (Version: 12 - GG Network S.A.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.134 - Google Inc.) Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.6710.2136 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden Guitar Pro 4 (HKLM-x32\...\{54A2CFDE-DC70-46E0-92AC-DC88F6303D39}) (Version: 4.1.0 - Arobas Music) Guitar Pro 5.2 (HKLM-x32\...\Guitar Pro 5_is1) (Version: - Arobas Music) Guitar Pro 6 (HKLM-x32\...\{14A487F2-1259-4E6C-AE3C-3C888DDBCB60}_is1) (Version: - Arobas Music) HP LaserJet Professional CP1020 Series (HKLM\...\HP LaserJet Professional CP1020 Series) (Version: - ) HPLJUT (x32 Version: 1.00.0012 - HP) Hidden hppcp1025LaserJetService (HKLM-x32\...\{F31BF057-0D5E-485E-ADFD-560314A27912}) (Version: 1.00.0000 - Hewlett-Packard) hppLaserJetService (x32 Version: 007.015.00635 - Hewlett-Packard) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: - ) Iso2God v1.3.6 (HKLM-x32\...\{AB95979D-85EF-484A-9805-EB28E676E201}_is1) (Version: - Team 360h) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation) JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) Last.fm Scrobbler 2.1.33 (HKLM-x32\...\LastFM_is1) (Version: - Last.fm) Line 6 Uninstaller (HKLM-x32\...\Line 6 Uninstaller) (Version: - Line 6) Logitech Gaming Software 8.46 (HKLM\...\Logitech Gaming Software) (Version: 8.46.27 - Logitech Inc.) Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.51 - Logitech Inc.) MetaTrader 4 Admiral Markets AS (HKLM-x32\...\MetaTrader 4 Admiral Markets AS) (Version: 4.00 - MetaQuotes Software Corp.) MetaTrader 5 (HKLM\...\MetaTrader 5) (Version: 5.00 - MetaQuotes Software Corp.) MetaTrader Admiral Markets AS 4.00 (HKLM-x32\...\{3E5CBADD-2E51-47C1-BBE2-B802DB6DA56A}) (Version: 4.00 - MetaQuotes Software Corp.) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110415-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40620.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{14297226-E0A0-3781-8911-E9D529552663}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox (2.0.0.20) (HKLM-x32\...\Mozilla Firefox (2.0.0.20)) (Version: 2.0.0.20 (pl) - Mozilla) MSI Afterburner 2.1.0 (HKLM-x32\...\Afterburner) (Version: 2.1.0 - MSI Co., LTD) MSI Kombustor 2.0.0 (HKLM-x32\...\{0B7C79A5-5CB2-4ABD-A9C1-92A6213CE8DD}_is1) (Version: - MSI Co., LTD) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) NVIDIA Oprogramowanie systemu PhysX 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 344.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 344.11 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.32.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.32.1 - NVIDIA Corporation) NVIDIA Sterownik graficzny 344.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 344.11 - NVIDIA Corporation) NVIDIA Sterownik kontrolera 3D Vision 344.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 344.11 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenFM (HKU\S-1-5-21-1400040647-3413486666-1744970339-1000\...\OpenFM) (Version: 2 - GG Network S.A.) OpenOffice.org 3.3 (HKLM-x32\...\{0141D498-16DA-4221-A529-1D7A64BE8B05}) (Version: 3.3.9567 - OpenOffice.org) Opera 12.11 (HKLM-x32\...\Opera 12.11.1661) (Version: 12.11.1661 - Opera Software ASA) Origin (HKLM-x32\...\Origin) (Version: 9.4.22.2815 - Electronic Arts, Inc.) Panel sterowania NVIDIA 344.11 (Version: 344.11 - NVIDIA Corporation) Hidden PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden PIT Format 2012 (HKLM-x32\...\PIT Format 2012_is1) (Version: - Biuro Informatyki Stosowanej FORMAT) PIT Format 2014 (HKLM-x32\...\PIT Format 2014_is1) (Version: - Biuro Informatyki Stosowanej FORMAT) PITax.pl Łatwe podatki (HKLM-x32\...\{6dee0916-e10a-48a4-9feb-7166bd61e4a9}) (Version: 4.1.2.10 - PITax.pl) PITax.pl Łatwe podatki (HKLM-x32\...\{f86c65d6-4b85-446d-b262-4781054009b5}) (Version: 4.1.2.10 - PITax.pl) PITax.pl Łatwe podatki (x32 Version: 4.1.2.10 - PITax.pl) Hidden Poprawka dla programu Office (KB942430) (HKLM-x32\...\{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{1F41DDE0-9193-4CE4-A002-4DA79729BACA}) (Version: - Microsoft) Poprawka dla programu Office (KB942430) (HKLM-x32\...\{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{AD25EAD9-5108-4A48-B82C-C6BEE30871C8}) (Version: - Microsoft) Poprawka dla programu Office (KB942430) (HKLM-x32\...\{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{1F41DDE0-9193-4CE4-A002-4DA79729BACA}) (Version: - Microsoft) Poprawka dla programu Office (KB942430) (HKLM-x32\...\{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{1F41DDE0-9193-4CE4-A002-4DA79729BACA}) (Version: - Microsoft) Poprawka dla programu Office (KB942430) (HKLM-x32\...\{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{1F41DDE0-9193-4CE4-A002-4DA79729BACA}) (Version: - Microsoft) Power Tab Editor 1.7 (HKLM-x32\...\{6B3CA80E-6AC0-4725-BABF-9B0FEF880CB3}) (Version: 1.7.0 - Power Tab Software) PSP Movie Creator(remove only) (HKLM-x32\...\PSPMovieCreator) (Version: - ) PSP Video Express(remove only) (HKLM-x32\...\PSPVideoExpress) (Version: - ) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.989 - Even Balance, Inc.) QuickTime Alternative 3.1.1 (HKLM-x32\...\QuicktimeAlt_is1) (Version: 3.1.1 - ) Real Alternative 2.0.1 (HKLM-x32\...\RealAlt_is1) (Version: 2.0.1 - ) Realtek Ethernet Controller Driver For Windows 7 (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.23.623.2010 - Realtek) REAPER (x64) (HKLM\...\REAPER) (Version: - ) Ryse - Son of Rome (HKLM-x32\...\Ryse - Son of Rome_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91) Skype™ 6.22 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.22.106 - Skype Technologies S.A.) Sound Blaster Audigy 2 (HKLM-x32\...\{18F11181-EA1A-42AE-AF89-4867C7F7A6FA}) (Version: 1.0 - Creative Technology Limited) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Steinberg Cubase 5 (HKLM-x32\...\{4A19D6AC-ADE0-4A07-80FF-9C9812C45557}) (Version: 5.1.2 - Steinberg Media Technologies GmbH) Superior Drummer 64 bit (HKLM\...\{22029AEE-38DF-4E35-AEF4-FE8CA3F6667F}) (Version: 2.3.0 - Toontrack) Superior Drummer Installer (HKLM-x32\...\{009AC76E-1A66-4682-82B7-417E77F3C648}) (Version: 2.0.0 - Toontrack) Total Audio MP3 Converter v2.3 build 1037 (HKLM-x32\...\{18D13E8A-7BD3-486F-847D-57FBE828F537}_is1) (Version: - Hoo Technologies) Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft) Vegas Pro 12.0 (64-bit) (HKLM\...\{7963F870-6575-11E2-A4D9-F04DA23A5C58}) (Version: 12.0.486 - Sony) VirtualDubMod 1.5.10.2 PL (HKLM-x32\...\VirtualDubMod) (Version: 1.5.10.2 PL - ) VobSub v2.23 (Remove Only) (HKLM-x32\...\VobSub) (Version: - ) WATCH_DOGS (HKLM-x32\...\Uplay Install 274) (Version: - Ubisoft) Winamp (HKLM-x32\...\Winamp) (Version: 5.621 - Nullsoft, Inc) WinRAR 4.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH) Wtyczka e-Deklaracje (HKLM-x32\...\{81BF6353-3C5B-4E6E-A566-7E162A00BF72}_is1) (Version: 4.1.0 - Ministerstwo Finansów) XFastUSB (HKLM-x32\...\XFastUSB) (Version: 3.02.30 - ASRock Inc.) XviD MPEG4 Video Codec (remove only) (HKLM-x32\...\XviD MPEG4 Video Codec) (Version: - ) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1400040647-3413486666-1744970339-1000_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Spider\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll (GG Network S.A.) CustomCLSID: HKU\S-1-5-21-1400040647-3413486666-1744970339-1000_Classes\CLSID\{F6BF8414-962C-40FE-90F1-B80A7E72DB9A}\InprocServer32 -> C:\ProgramData\{9A88E103-A20A-4EA5-8636-C73B709A5BF8}\wpccpl.dll (ropoatfrcortoinsoC Mi) <==== ATTENTION ==================== Restore Points ========================= 11-06-2015 18:32:44 Zaplanowany punkt kontrolny 18-06-2015 20:01:46 Zaplanowany punkt kontrolny 26-06-2015 20:15:15 Zaplanowany punkt kontrolny 04-07-2015 10:57:47 Zaplanowany punkt kontrolny 09-07-2015 20:18:28 ComboFix created restore point 19-07-2015 22:08:35 Zaplanowany punkt kontrolny 21-07-2015 21:41:51 SPTD setup V1.87 ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2015-07-09 20:23 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0292F31E-6766-4B08-A5F0-8514511E7ECB} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-21] (Microsoft Corporation) Task: {4E03865A-FBD6-4776-B7E9-490E4A24549D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {69C8AC87-BB19-415C-8EAC-F0017F6ACDC8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-04] (Google Inc.) Task: {81CAF2D1-6037-403F-BD24-DA7B43E63546} - System32\Tasks\PITax rss checker => C:\Program Files (x86)\PITax.pl\PITax.pl.exe [2015-01-21] (PITax.pl) Task: {8C12740D-9365-4AF1-BBFA-F4BA4921D83E} - System32\Tasks\HPLJCustParticipation => C:\Program Files (x86)\HP\HPLJUT\HPLJUTSCH.exe [2010-09-22] (Hewlett Packard) Task: {A2B3DAA9-86B3-4CA5-8A09-6E872F335C35} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1400040647-3413486666-1744970339-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe Task: {A9DAA1C6-3FA0-4442-92CD-DF894F5C6321} - System32\Tasks\e-pity2015_kwiecien => C:\Program Files (x86)\e-file\e-pity2014\Assets\signxml.exe [2015-03-04] (e-file sp. z o.o.) Task: {AC390478-9726-4B09-8F4F-7F723972A9F3} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1400040647-3413486666-1744970339-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe Task: {C3CD666F-22AD-46E4-9D48-CA7C28FA9F33} - System32\Tasks\e-pity2015_styczen => C:\Program Files (x86)\e-file\e-pity2014\Assets\signxml.exe [2015-03-04] (e-file sp. z o.o.) Task: {C9CD4EF5-3E38-41D1-A5B9-0303904FD2DD} - System32\Tasks\PITax reminder => C:\Program Files (x86)\PITax.pl\PITax.pl.exe [2015-01-21] (PITax.pl) Task: {E7B5BF5E-113B-42C6-B5AE-E1CB78DB6076} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-04] (Google Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2014-10-03 22:07 - 2014-09-13 23:53 - 00116880 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-01-26 18:32 - 2012-11-28 12:18 - 00129024 ____N () C:\Windows\System32\HPCP1020LM.DLL 2013-10-01 10:26 - 2013-10-01 10:26 - 02810968 _____ () C:\Program Files (x86)\Acronis True Image 2014\TrueImageHome\tishell64.dll 2014-10-04 13:57 - 2011-03-02 12:40 - 00164864 _____ () C:\Program Files\WinRAR\rarext.dll 2014-11-22 17:12 - 2014-11-22 17:12 - 00075064 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2015-07-21 21:51 - 2014-01-28 18:36 - 00380416 _____ () C:\Users\Spider\Desktop\gmer\gmer.exe 2014-10-04 13:10 - 2012-02-08 06:23 - 00541683 _____ () C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\sqlite3.dll 2011-01-17 16:19 - 2014-10-05 00:32 - 00985088 _____ () C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll 2014-10-04 13:09 - 2012-01-02 04:21 - 00374056 _____ () C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\CLNetMediaDMA.dll 2014-10-04 13:09 - 2011-08-24 04:39 - 00081920 _____ () C:\Program Files (x86)\CyberLink\PowerDVD12\Common\koan\_ctypes.pyd 2014-10-04 13:09 - 2011-08-24 04:39 - 00053248 _____ () C:\Program Files (x86)\CyberLink\PowerDVD12\Common\Koan\_socket.pyd 2014-10-04 13:09 - 2011-08-24 04:39 - 00655360 _____ () C:\Program Files (x86)\CyberLink\PowerDVD12\Common\Koan\_ssl.pyd 2014-10-04 13:09 - 2012-03-14 13:33 - 00075048 _____ () C:\Program Files (x86)\CyberLink\PowerDVD12\subsys\DLNA\DMS\_PyDMSCtrl.pyd 2012-09-13 00:38 - 2012-09-13 00:38 - 02144104 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtCore4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 07955304 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtGui4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 00341352 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtXml4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 00028008 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QGif4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 00127336 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QJpeg4.dll 2013-11-22 13:03 - 2013-11-22 13:03 - 00036672 _____ () C:\Program Files (x86)\Acronis True Image 2014\TrueImageHome\qt_icontray_ex.dll 2013-11-22 13:03 - 2013-11-22 13:03 - 00028024 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\thread_pool.dll 2014-10-03 21:59 - 2014-11-28 13:41 - 00074240 _____ () C:\Windows\SysWOW64\CmdRtr.DLL 2014-10-03 21:59 - 2014-11-28 13:38 - 00274944 _____ () C:\Windows\SysWOW64\APOMngr.DLL 2013-11-22 13:06 - 2013-11-22 13:06 - 00420160 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\ulxmlrpcpp.dll 2013-10-01 11:00 - 2013-10-01 11:00 - 00022336 _____ () C:\Program Files (x86)\Acronis True Image 2014\TrueImageHome\ti_managers_proxy_stub.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-1400040647-3413486666-1744970339-1000\...\line6.net -> line6.net ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1400040647-3413486666-1744970339-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Spider\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 62.179.1.62 - 62.179.1.63 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{72751B62-F44C-4F2B-8E3A-DF6E2D37D435}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{C24D0461-4D5E-47D4-BAEE-B83E2424131A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{3C9B1EEA-41DA-4071-B4E0-EB796BE12F7B}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe FirewallRules: [{ABC2BF64-47E0-4C96-B248-72F1ED949EC8}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe FirewallRules: [{F313559F-6B2D-49D1-A260-EE71E4214D98}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe FirewallRules: [{0F5ACD37-1F9C-41FE-B81B-9578875374CF}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe FirewallRules: [{42F0F84D-0ADF-400C-A7AC-6A3AE25F1452}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe FirewallRules: [{6C820189-F38E-42B3-8917-BF47C502AA47}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD Cinema\PowerDVDCinema12.exe FirewallRules: [{0AE8F0D1-64CF-479B-AE2C-109EF3B16ED7}] => (Allow) C:\Users\Spider\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{CB39F960-BF82-40DB-BCE0-D76F1B7D49C4}] => (Allow) C:\Users\Spider\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{81674714-6E4E-419C-A53F-393624FE59E7}] => (Allow) C:\Program Files (x86)\Microsoft Office 2007\Office12\outlook.exe FirewallRules: [{B8FCB7B3-94F7-48F6-90AD-E559717B1BF0}] => (Allow) C:\Program Files (x86)\Microsoft Office 2007\Office12\GROOVE.EXE FirewallRules: [{1586278E-6B40-4F45-8C37-4C5CE84C139A}] => (Allow) C:\Program Files (x86)\Microsoft Office 2007\Office12\GROOVE.EXE FirewallRules: [{F2E577D9-2CB4-4C4C-ADA7-3EF3B4EF90AF}] => (Allow) C:\Program Files (x86)\Microsoft Office 2007\Office12\ONENOTE.EXE FirewallRules: [{4E885D6C-2632-44A8-85BA-3F99AF30AB0D}] => (Allow) C:\Program Files (x86)\Microsoft Office 2007\Office12\ONENOTE.EXE FirewallRules: [{4E749DF6-6583-447C-A6EB-7CA3B27D0483}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{7D1D2F5A-97A5-4649-90FA-D3CFB395E4E6}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{B2544FE7-E059-48A8-9B10-C606DF7C594F}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{7D05B44D-37A5-411D-A4B4-E330F4F342C2}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{E15D6630-14EC-48A3-950A-B7A8D12943F7}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{71E11A38-A730-47AF-B475-8A0DE3C35AED}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [TCP Query User{95322F35-2DAE-4B84-B1B5-F6F8AB88A5F8}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{110C093F-1673-43CE-96DA-9724429B4B02}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe FirewallRules: [{7F7BD5EC-E524-48B0-8A0A-ECF9500D497D}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{C804F942-0FE0-454D-BBD0-E4765109BE0D}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{6A0B410A-417F-4CAD-A724-6350AA69BA3E}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{C5F2BFB8-E0FE-4C99-95A3-2C4606806898}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [TCP Query User{0422CC1E-8090-4EAC-9D46-FBF314A14933}C:\gry\quake 3\quake3.exe] => (Allow) C:\gry\quake 3\quake3.exe FirewallRules: [UDP Query User{67405C38-6BF0-4190-960D-40B074B872FD}C:\gry\quake 3\quake3.exe] => (Allow) C:\gry\quake 3\quake3.exe FirewallRules: [TCP Query User{8F36F693-702E-4411-8065-9E93E8477DAB}C:\gry\quake 3 (1.32)\quake3.exe] => (Allow) C:\gry\quake 3 (1.32)\quake3.exe FirewallRules: [UDP Query User{B90CC26F-945C-4AD4-8B70-041E7719B0C8}C:\gry\quake 3 (1.32)\quake3.exe] => (Allow) C:\gry\quake 3 (1.32)\quake3.exe FirewallRules: [{DA146F54-9E29-4DBA-A267-9AC9DD76F88F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DayZ\DayZ.exe FirewallRules: [{3FCF1389-0BA8-4E96-BFFE-965881F24405}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DayZ\DayZ.exe FirewallRules: [{98A93661-25DF-487D-A161-97027D1A2964}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Crysis 2 Game of the Year\bin32\Crysis2Launcher.exe FirewallRules: [{7EE815CC-1EAD-4B7D-A742-A51A65066165}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Crysis 2 Game of the Year\bin32\Crysis2Launcher.exe FirewallRules: [{BC42E092-941A-4929-928D-312BAB1F4DFC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\alan wakes american nightmare\alan_wakes_american_nightmare.exe FirewallRules: [{E2EB9FB8-3FCB-47AE-AC75-3E2435E39933}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\alan wakes american nightmare\alan_wakes_american_nightmare.exe FirewallRules: [{09FF225E-8EED-4F58-8220-51409441C6E1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Island\DeadIslandGame.exe FirewallRules: [{D3BD9D62-B612-4C6E-995F-567CD0D178BC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Island\DeadIslandGame.exe FirewallRules: [{DB7F0761-5B72-4E42-BCE9-C595FC9E0FBB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Island Epidemic\Dead Island Epidemic - Launcher.exe FirewallRules: [{5A7B14A8-E497-4417-A970-7976745D1587}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Island Epidemic\Dead Island Epidemic - Launcher.exe FirewallRules: [{215B0D9C-57AD-4D93-AABC-3393FC63C656}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Medal of Honor\MP\mohmpgame.exe FirewallRules: [{683352A7-DACE-44FD-8D6F-D1BC3ED3B6D9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Medal of Honor\MP\mohmpgame.exe FirewallRules: [TCP Query User{9667ACA7-A153-49ED-A07A-B2D093D3DE50}C:\program files (x86)\steam\steamapps\common\crysis 2 game of the year\bin32\crysis2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\crysis 2 game of the year\bin32\crysis2.exe FirewallRules: [UDP Query User{24D93CF3-CC30-436A-AC75-41EF78F67DF3}C:\program files (x86)\steam\steamapps\common\crysis 2 game of the year\bin32\crysis2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\crysis 2 game of the year\bin32\crysis2.exe FirewallRules: [{6F9C318F-D51C-4FEE-A3D8-AA497BAFAAD9}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{2ABDD791-55EA-4AF5-ACD4-E1069E40DB87}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{7AA5593E-10AE-4F9A-887F-4DCE24381575}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{549BD038-0905-485D-9145-A9463A7F4E02}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{9C9ECDD8-D4DE-490A-86FF-32A77A65E2A4}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{E9F4AD15-AC8F-4F4C-8DA9-CDD300559BF5}] => (Allow) C:\GRY\Watch Dogs\bin\Watch_Dogs.exe FirewallRules: [{3AC0DB3F-0F5E-48A1-A70F-EE33B3764B7A}] => (Allow) C:\GRY\Watch Dogs\bin\Watch_Dogs.exe FirewallRules: [{221ADF7B-EED8-4A18-9A01-69FD47E09EC9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DayZ\DayZ_BE.exe FirewallRules: [{1FF2B954-F026-4419-A0AD-C740EB868BE3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DayZ\DayZ_BE.exe FirewallRules: [{4C260173-249D-424E-8F12-05B2AE2A32B8}] => (Allow) C:\Users\Spider\AppData\Local\Temp\7zS756E\hppiw.exe FirewallRules: [{E77FB895-239C-41B8-9E06-8E12AA740A58}] => (Allow) C:\Users\Spider\AppData\Local\Temp\7zS756E\hppiw.exe FirewallRules: [TCP Query User{674339C3-EBDE-42E7-A27E-771498FDFFDC}C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{C30DB210-CD72-43CF-A75C-7D3AB935731F}C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_25\bin\javaw.exe FirewallRules: [{7A6E3BCE-68A1-48B4-B861-424411094617}] => (Allow) C:\Program Files\MetaTrader 5\metatester64.exe FirewallRules: [TCP Query User{C50FF9B7-2F0D-4735-B96A-FCE1954B767A}C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe FirewallRules: [UDP Query User{240718AC-D0BF-4B5E-9A5F-4CFEE55C9CD9}C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe FirewallRules: [{8CF815DE-9F3A-4E34-BE51-D32BC394ED7B}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/21/2015 09:48:02 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/21/2015 09:46:25 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: HPLaserJetService.exe, wersja: 7.15.635.0, sygnatura czasowa: 0x4d39aa4e Nazwa modułu powodującego błąd: hppccompio.DLL, wersja: 1.3.0.24, sygnatura czasowa: 0x4c9685d0 Kod wyjątku: 0xc0000417 Przesunięcie błędu: 0x000073bf Identyfikator procesu powodującego błąd: 0x940 Godzina uruchomienia aplikacji powodującej błąd: 0xHPLaserJetService.exe0 Ścieżka aplikacji powodującej błąd: HPLaserJetService.exe1 Ścieżka modułu powodującego błąd: HPLaserJetService.exe2 Identyfikator raportu: HPLaserJetService.exe3 Error: (07/21/2015 09:44:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: HPLaserJetService.exe, wersja: 7.15.635.0, sygnatura czasowa: 0x4d39aa4e Nazwa modułu powodującego błąd: hppccompio.DLL, wersja: 1.3.0.24, sygnatura czasowa: 0x4c9685d0 Kod wyjątku: 0xc0000417 Przesunięcie błędu: 0x000073bf Identyfikator procesu powodującego błąd: 0x940 Godzina uruchomienia aplikacji powodującej błąd: 0xHPLaserJetService.exe0 Ścieżka aplikacji powodującej błąd: HPLaserJetService.exe1 Ścieżka modułu powodującego błąd: HPLaserJetService.exe2 Identyfikator raportu: HPLaserJetService.exe3 Error: (07/21/2015 09:41:51 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas badania interfejsu IVssWriterCallback. hr = 0x80070005, Odmowa dostępu. . To jest często spowodowane przez niepoprawne ustawienia zabezpieczeń w procesie zapisującym lub żądającym. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {594cab95-2f48-42a9-ae61-37e42a265fcc} Error: (07/21/2015 09:41:04 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program Explorer.EXE w wersji 6.1.7601.17514 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 740 Godzina rozpoczęcia: 01d0c3cb283704ee Godzina zakończenia: 28 Ścieżka aplikacji: C:\Windows\Explorer.EXE Identyfikator raportu: 69a587f9-2fe0-11e5-a914-002522a6f364 Error: (07/21/2015 09:24:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: IEXPLORE.EXE, wersja: 10.0.9200.17088, sygnatura czasowa: 0x53eedc10 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7601.18247, sygnatura czasowa: 0x521ea8e7 Kod wyjątku: 0xc0000374 Przesunięcie błędu: 0x000ce753 Identyfikator procesu powodującego błąd: 0x1760 Godzina uruchomienia aplikacji powodującej błąd: 0xIEXPLORE.EXE0 Ścieżka aplikacji powodującej błąd: IEXPLORE.EXE1 Ścieżka modułu powodującego błąd: IEXPLORE.EXE2 Identyfikator raportu: IEXPLORE.EXE3 Error: (07/21/2015 09:08:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: IEXPLORE.EXE, wersja: 10.0.9200.17088, sygnatura czasowa: 0x53eedc10 Nazwa modułu powodującego błąd: iertutil.dll, wersja: 10.0.9200.17088, sygnatura czasowa: 0x53eef2c8 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x0000a072 Identyfikator procesu powodującego błąd: 0x26ac Godzina uruchomienia aplikacji powodującej błąd: 0xIEXPLORE.EXE0 Ścieżka aplikacji powodującej błąd: IEXPLORE.EXE1 Ścieżka modułu powodującego błąd: IEXPLORE.EXE2 Identyfikator raportu: IEXPLORE.EXE3 Error: (07/21/2015 05:39:20 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/21/2015 05:37:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: HPLaserJetService.exe, wersja: 7.15.635.0, sygnatura czasowa: 0x4d39aa4e Nazwa modułu powodującego błąd: hppccompio.DLL, wersja: 1.3.0.24, sygnatura czasowa: 0x4c9685d0 Kod wyjątku: 0xc0000417 Przesunięcie błędu: 0x000073bf Identyfikator procesu powodującego błąd: 0x938 Godzina uruchomienia aplikacji powodującej błąd: 0xHPLaserJetService.exe0 Ścieżka aplikacji powodującej błąd: HPLaserJetService.exe1 Ścieżka modułu powodującego błąd: HPLaserJetService.exe2 Identyfikator raportu: HPLaserJetService.exe3 Error: (07/21/2015 05:23:13 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program IEXPLORE.EXE w wersji 10.0.9200.17088 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: 1358 Godzina rozpoczęcia: 01d0c3c8fad86651 Godzina zakończenia: 0 Ścieżka aplikacji: C:\Program Files\Internet Explorer\IEXPLORE.EXE Identyfikator raportu: System errors: ============= Error: (07/21/2015 09:46:25 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa HP LaserJet Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (07/21/2015 09:44:22 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa HP LaserJet Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (07/21/2015 05:37:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa HP LaserJet Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (07/21/2015 04:54:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa HP LaserJet Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (07/21/2015 08:27:17 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa HP LaserJet Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (07/20/2015 10:38:24 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {0002DF01-0000-0000-C000-000000000046} Error: (07/20/2015 05:34:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa HP LaserJet Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (07/20/2015 12:41:33 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa HP LaserJet Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (07/19/2015 10:57:00 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {0002DF01-0000-0000-C000-000000000046} Error: (07/19/2015 09:14:12 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa HP LaserJet Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Microsoft Office: ========================= Error: (01/06/2015 12:47:45 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 164 seconds with 120 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2015-07-09 20:22:17.595 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-07-09 20:22:17.564 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz Percentage of memory in use: 53% Total physical RAM: 8174.69 MB Available physical RAM: 3766.33 MB Total Virtual: 16347.55 MB Available Virtual: 12194.34 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:238.47 GB) (Free:6.1 GB) NTFS Drive d: () (Fixed) (Total:683.59 GB) (Free:9.09 GB) NTFS Drive e: () (Fixed) (Total:488.28 GB) (Free:119.92 GB) NTFS Drive f: () (Fixed) (Total:632.54 GB) (Free:23.61 GB) NTFS Drive g: () (Fixed) (Total:58.59 GB) (Free:48.23 GB) NTFS ==>[system with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 238.5 GB) (Disk ID: B858CD99) Partition 1: (Not Active) - (Size=238.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: FD69FD69) Partition 1: (Active) - (Size=58.6 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=1804.4 GB) - (Type=OF Extended) ==================== End of log ============================