Additional scan result of Farbar Recovery Scan Tool (x64) Version:13-08-2015 Ran by Bozix-pan (2015-08-14 20:11:38) Running from C:\Users\Bozix-pan\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-143263523-3770091596-503792995-500 - Administrator - Disabled) Bozix-pan (S-1-5-21-143263523-3770091596-503792995-1001 - Administrator - Enabled) => C:\Users\Bozix-pan Gość (S-1-5-21-143263523-3770091596-503792995-501 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: COMODO Antivirus (Enabled - Up to date) {F25D0092-CDBE-B303-ADB7-88DE8CDECCF5} AS: Comodo Defense+ (Enabled - Up to date) {493CE176-EB84-BC8D-9707-B3ACF7598648} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: COMODO Firewall (Enabled) {CA6681B7-87D1-B25B-86E8-21EB720D8B8E} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-143263523-3770091596-503792995-1001\...\uTorrent) (Version: 3.4.3.40097 - BitTorrent Inc.) Adobe Reader XI (11.0.12) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) Aktualizacje NVIDIA 2.5.11.45 (Version: 2.5.11.45 - NVIDIA Corporation) Hidden ANNO 1503 (HKLM-x32\...\{EBBB1DEF-8878-4CB8-BC0D-1196B30E7527}) (Version: - ) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0008 - ASUS) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 1942 (HKLM-x32\...\{698D7E61-E4BF-4CA6-8A09-CF6BDBFDEF65}) (Version: - ) Battlefield 1942: Secret Weapons of WWII (HKLM-x32\...\{B73B4A99-4173-4747-BBEC-0F05E966F9D2}) (Version: - ) Battlefield 1942: The Road To Rome (HKLM-x32\...\{D057AA08-8CBF-42E3-9EAB-23B8FED1C279}) (Version: - ) Chromodo (HKLM-x32\...\Chromodo) (Version: 43.3.3.177 - Comodo) COMODO Internet Security Premium (HKLM\...\{4C5D0B6A-944A-47A6-A2F3-BCB58E05CA5D}) (Version: 8.2.0.4591 - COMODO Security Solutions Inc.) Curse (HKLM-x32\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 6.0.0.0 - Curse) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) Driver Magician 4.1 (HKLM-x32\...\Driver Magician_is1) (Version: - GoldSolution Software, Inc.) Europa Universalis III Złota Edycja (HKLM-x32\...\{8520505F-3734-4BF8-9DEC-ECBB8737C497}) (Version: 5.1b - Paradox Interactive) Europa Universalis IV version 1.11.4 (HKLM-x32\...\{A0A05CBD-5A83-45E4-B90E-7ED2F9C74404}_is1) (Version: 1.11.4 - Paradox Interactive) foobar2000 v1.3.6 (HKLM-x32\...\foobar2000) (Version: 1.3.6 - Peter Pawlowski) GeekBuddy (HKLM\...\{3DA2EB59-FB68-4383-9A3B-B348521367C7}) (Version: 4.19.137 - Comodo Security Solutions Inc) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.155 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden Gothic II Złota Edycja (HKLM-x32\...\{6FB6D550-DDC4-4996-9CDF-91C34F0A4C4A}) (Version: 2.6 - JoWood) HashCheck Shell Extension (x86-32) (HKLM-x32\...\HashCheck Shell Extension) (Version: 2.1.11.1 - Kai Liu) HashCheck Shell Extension (x86-64) (HKLM\...\HashCheck Shell Extension) (Version: 2.1.11.1 - Kai Liu) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3517 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Java 8 Update 45 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418045F0}) (Version: 8.0.450 - Oracle Corporation) K-Lite Codec Pack 10.9.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.9.0 - ) LG United Mobile Driver (HKLM-x32\...\{2A3A4BD6-6CE0-4E2A-80D2-1D0FF6ACBFBA}) (Version: 3.8.1 - LG Electronics) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) NVIDIA GeForce Experience 2.5.11.45 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.11.45 - NVIDIA Corporation) Oprogramowanie mikroukładu Intel® (x32 Version: 10.0.13 - Intel(R) Corporation) Hidden Oracle VM VirtualBox 4.3.12 (HKLM\...\{B5121457-0126-4E62-BCBF-6DC7C73D9E4A}) (Version: 4.3.12 - Oracle Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.5.20.5318 - Electronic Arts, Inc.) PunkBuster for Battlefield 1942 (HKLM-x32\...\{127B684B-A002-44C8-99A7-6CF8F1E26873}) (Version: - ) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.34.617.2014 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.) Realtek USB 2.0 Reader Driver (HKLM-x32\...\{62BBB2F0-E220-4821-A564-730807D2C34D}) (Version: 6.1.7600.10001 - Realtek Semiconductor Corp.) Sacred Underworld (HKLM-x32\...\Sacred Underworld_is1) (Version: - ) SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.11.45 - NVIDIA Corporation) Hidden Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.) Silent Storm + Sentinels (HKLM-x32\...\Silent Storm + Sentinels_is1) (Version: - ) StartIsBack+ (HKLM-x32\...\StartIsBack) (Version: 1.5.1 - startisback.com) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Tunngle (HKLM-x32\...\Tunngle_is1) (Version: 5.2 - Tunngle.net GmbH) Ventrilo Client for Windows x64 (HKLM\...\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}) (Version: 3.0.8.0 - Flagship Industries, Inc.) WinRAR 5.01 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= Check "winmgmt" service or repair WMI. ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {06357548-C6A8-4198-B806-15FC5EE72B36} - System32\Tasks\{31DDBD37-5DB7-4030-8064-10B0CAA806C3} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-08-13] (COMODO) Task: {1A0D782F-5A2A-48EA-BA7B-75BA67D30EDF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-15] (Adobe Systems Incorporated) Task: {48B6B138-9679-4DCE-995E-607CB1994B4E} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-08-17] (ASUS) Task: {6533E275-7C2D-4ACF-AB0B-F500AABEFFAB} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-08-13] (COMODO) Task: {67BEDC0B-9C66-42B5-875C-0FE809C56C6D} - \AutoPico Daily Restart -> No File <==== ATTENTION Task: {6FBE9BE2-2E86-4792-BC69-8BE652E11AEF} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-08-13] (COMODO) Task: {8150DFAF-964F-44B4-9162-1D18B7C8899E} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-08-13] (COMODO) Task: {C09114B2-C060-42D4-9A51-6823C6C895E4} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-08-13] (COMODO) Task: {CE1D3D51-8250-4F51-9873-49A846248B2F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-18] (Google Inc.) Task: {EAD39DE6-A370-41BB-BEDF-E4793C678B29} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-08-13] (COMODO) Task: {F50A14AC-56F4-414F-B535-ABB412CC50FC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-18] (Google Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2010-01-30 02:40 - 2010-01-30 02:40 - 04254560 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\office.odf 2015-01-08 23:02 - 2015-01-08 23:02 - 00067808 _____ () C:\Program Files\COMODO\COMODO Internet Security\scanners\smart.cav 2014-03-20 09:34 - 2014-03-20 09:34 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2015-06-01 10:44 - 2015-06-01 10:44 - 02875584 _____ () C:\Program Files\COMODO\GeekBuddy\QtCore4.dll 2015-06-01 10:44 - 2015-06-01 10:44 - 01283776 _____ () C:\Program Files\COMODO\GeekBuddy\QtNetwork4.dll 2015-06-01 10:44 - 2015-06-01 10:44 - 10451648 _____ () C:\Program Files\COMODO\GeekBuddy\QtGui4.dll 2015-06-01 10:44 - 2015-06-01 10:44 - 00039104 _____ () C:\Program Files\COMODO\GeekBuddy\imageformats\qgif4.dll 2015-06-01 10:44 - 2015-06-01 10:44 - 01529024 _____ () C:\Program Files\COMODO\GeekBuddy\QtScript4.dll 2013-08-22 13:00 - 2011-06-02 00:00 - 00925184 _____ () C:\Windows\SYSTEM32\notepad.exe 2015-07-17 00:03 - 2015-07-14 21:06 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-08-13 14:44 - 2015-08-08 02:13 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.155\libglesv2.dll 2015-08-13 14:44 - 2015-08-08 02:13 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.155\libegl.dll 2015-08-13 14:44 - 2015-08-08 02:13 - 16393032 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.155\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\install.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\VBoxNetFltNobj.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\RtsUVStoricon.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\diskperf64.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\dtlitescsibus.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\HECIx64.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\rtsuvstor.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\VBoxDrv.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\VBoxNetAdp.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\VBoxNetFlt.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\VBoxUSBMon.sys:$CmdTcID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\1426849776563.webm:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\Anno 1503 - CD1.ISO:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\Anno 1503 - CD2.ISO:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\anno 1503 crack pl.txt:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\anno_1503_crack_pl.txt:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\battlefield_1942_gamespy_patch_v1.61.exe:$CmdTcID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\battlefield_1942_gamespy_patch_v1.61.exe:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\bdp0db03.exe:$CmdTcID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\bdp0db03.exe:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\CardReader_Win7_32_Win7_64_Z61760010001.zip:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\DTLiteInstaller.exe:$CmdTcID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\DTLiteInstaller.exe:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\Dystans.rar:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\Egzamin-1617.06.2014-godz-8.30.docx:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\europa universalis iv extreme upgrade.txt:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\Europa Universalis IV(23,03,2015).iso:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\FRST64.exe:$CmdTcID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\FRST64.exe:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\genymotion-2.5.2-vbox.exe:$CmdTcID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\genymotion-2.5.2-vbox.exe:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\Hearthstone-Setup-plPL.exe:$CmdTcID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\Hearthstone-Setup-plPL.exe:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\keks.png:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\materialy_targowe_2015.zip:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\mp3stream.pls:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\OriginThinSetup.exe:$CmdTcID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\OriginThinSetup.exe:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\Paul A. Samuelson, William D. Nordhaus - Ekonomia.pdf:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\SilentStorm+Sentinels.iso:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\Silent_Storm_ _Silent_Storm _Sentinels_[PL]_[DVD]_[ iso][Torrenty.org].torrent:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\ster_43291.zip:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\Szczegolowe-Warunki-swiadczenia-Pakietu-Pakiet-Extra-z-HBO-11.05.2015.pdf:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Downloads\teoriafirmy.odt:$CmdZnID AlternateDataStreams: C:\Users\Bozix-pan\Documents\papa.pro.jpg:$CmdZnID ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-143263523-3770091596-503792995-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Bozix-pan\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta z Przeglądarki fotografii systemu Windows.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run32: => "tvncontrol" HKU\S-1-5-21-143263523-3770091596-503792995-1001\...\StartupApproved\StartupFolder: => "Curse.lnk" HKU\S-1-5-21-143263523-3770091596-503792995-1001\...\StartupApproved\Run: => "DAEMON Tools Lite" HKU\S-1-5-21-143263523-3770091596-503792995-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe FirewallRules: [{17D440D5-8D6F-445A-8BA1-EC429B92413E}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe FirewallRules: [{AD33A58D-9734-44FC-8055-FD631B45437A}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe FirewallRules: [{8DBBD238-7EE4-4700-94E2-7880CBA6834D}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{734885D8-B67E-4E0B-93DB-3636EE717A26}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{298CB0B3-4BDC-4EE0-A903-A9B2150CD75D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{2242F127-7888-457C-8404-592CC866B72A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{2C451B3E-8E49-46E0-8617-B9ADF1407289}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe FirewallRules: [{C202D33E-2B10-4F45-8E80-BAE5E6376CEF}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe FirewallRules: [{51250C5B-899E-4573-87C9-B313D705CEC1}] => (Allow) F:\Gry\Steam\Steam.exe FirewallRules: [{60D6D72C-77FB-405A-8F1B-12B4CB8F692C}] => (Allow) F:\Gry\Steam\Steam.exe FirewallRules: [{C15D4659-9376-4A37-A0C5-F8D317E0EB71}] => (Allow) F:\Gry\Steam\bin\steamwebhelper.exe FirewallRules: [{DCC794B7-0384-4CDA-98DE-B26F275FD227}] => (Allow) F:\Gry\Steam\bin\steamwebhelper.exe FirewallRules: [{8AFC10E7-7058-42FA-89F5-093F2C235ADB}] => (Allow) F:\Gry\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{DCF5334E-8C4C-4BFC-843E-99BAE3DBD75A}] => (Allow) F:\Gry\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{C575D8E9-1E58-4E59-B5F7-5B4718F8F01D}] => (Allow) C:\Users\Bozix-pan\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{812BEF44-D3CF-498E-9E78-6EED72A9C89D}] => (Allow) C:\Users\Bozix-pan\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{EDC067E1-127B-4E47-8116-B7EBB974AADA}] => (Allow) F:\Gry\Steam\steamapps\common\dota 2 beta\dota.exe FirewallRules: [{A3A8AA7C-F68A-4B52-8847-14F1AE5686AF}] => (Allow) F:\Gry\Steam\steamapps\common\dota 2 beta\dota.exe FirewallRules: [{7229AC3B-8A55-4CEA-9091-BDFC839D3BD0}] => (Allow) LPort=1689 FirewallRules: [TCP Query User{3B29FF53-A7B5-439D-A985-B0ED19A579AE}F:\gry\call of duty 4 modern warfare\iw3mp.exe] => (Block) F:\gry\call of duty 4 modern warfare\iw3mp.exe FirewallRules: [UDP Query User{E1EC8DC2-5F10-4305-BAC6-7C018B2002AF}F:\gry\call of duty 4 modern warfare\iw3mp.exe] => (Block) F:\gry\call of duty 4 modern warfare\iw3mp.exe FirewallRules: [{8045F7A4-4CFD-4AD4-AEBC-23152DB6CD5A}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{C752526E-5A80-4480-B0DC-0B787A89A7B3}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{D9AF2CD8-1ECE-4554-8111-CE6E258978BF}] => (Allow) C:\Program Files\Hearthstone\Hearthstone.exe FirewallRules: [{F55C9FB4-F723-4F92-9A70-F5713406B396}] => (Allow) C:\Program Files\Hearthstone\Hearthstone.exe FirewallRules: [{0718CB64-0300-4AD8-99A5-75EA42F16DFC}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{817656B9-CB84-46D9-83C0-F44D59DF3E3B}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{2BAB74F5-E2DA-47E3-850A-CC3F784898D7}] => (Allow) C:\Program Files\Ventrilo\Ventrilo.exe FirewallRules: [{52008CD7-1115-4F51-92FF-F0AED9EEDB4E}] => (Allow) C:\Program Files\Ventrilo\Ventrilo.exe FirewallRules: [{2D174E92-DDC0-46E2-8745-1389E11C1695}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe FirewallRules: [{0C928104-5F9D-4BDE-82C5-F5349484A46D}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe FirewallRules: [{4D898AEF-A85E-4B71-B43A-08F7930351C2}] => (Allow) LPort=1689 FirewallRules: [{903B3D67-A70E-4771-ACE6-5D99FF6A293D}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [{4F16544F-C2F0-4626-AF6C-6490EE00FF2F}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe FirewallRules: [TCP Query User{8D684525-A69F-43AB-8B82-F65B06F568A3}F:\gry\nevrwinternights\nwn\nwmain.exe] => (Block) F:\gry\nevrwinternights\nwn\nwmain.exe FirewallRules: [UDP Query User{59467228-F9D3-44AA-B1B5-87EC31BCF820}F:\gry\nevrwinternights\nwn\nwmain.exe] => (Block) F:\gry\nevrwinternights\nwn\nwmain.exe FirewallRules: [TCP Query User{78F8543D-94CB-47ED-A169-849AC7A07E4E}F:\gry\warcraft iii\war3.exe] => (Allow) F:\gry\warcraft iii\war3.exe FirewallRules: [UDP Query User{97EA9CF9-6E29-4D3E-8DE1-5B236C9585E9}F:\gry\warcraft iii\war3.exe] => (Allow) F:\gry\warcraft iii\war3.exe FirewallRules: [{22071CFA-5ADA-4C63-9BB0-A9C26C0E705F}] => (Block) F:\gry\warcraft iii\war3.exe FirewallRules: [{5551D0DA-A5B4-45CE-A746-8BF0173C025C}] => (Block) F:\gry\warcraft iii\war3.exe FirewallRules: [{2E6B9685-F59B-4F5D-AF1C-C81B6767540D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe FirewallRules: [{CA068121-5A30-45C0-9FF0-45FADA117A53}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe FirewallRules: [TCP Query User{B40772A4-1FDE-4472-B658-23204D7D6317}F:\gry\steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2.exe] => (Allow) F:\gry\steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2.exe FirewallRules: [UDP Query User{C6A82BE5-2D0D-47E2-A062-1A332D4FD072}F:\gry\steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2.exe] => (Allow) F:\gry\steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2.exe FirewallRules: [TCP Query User{F6C682A6-F5D6-4FF3-9682-4826F042C6E5}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [UDP Query User{2B01CFEF-E9B8-481D-9515-B9FB9615071D}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [TCP Query User{5291AA19-5359-4074-B594-FDA19FC1C5A3}C:\program files\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_45\bin\javaw.exe FirewallRules: [UDP Query User{4188D3DD-5FBF-4D59-ACCD-DC0897517932}C:\program files\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_45\bin\javaw.exe FirewallRules: [{848B58EE-0F50-4464-99DF-24C10DE772CE}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{D2577D6A-D92D-4E5A-9CD3-06AB55370A65}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{792721C2-FA42-40FE-A740-543CB58C22DC}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{507A8A5B-79D0-4C70-83AE-3ADD522C1835}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{0E71865E-344E-41C3-A683-F9FACFBAA69E}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{8F819EBE-EFB6-48FE-A01C-8B9CC488E5C9}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{60E36B74-FB4A-4CF5-A839-2802DAA654EE}] => (Allow) F:\Gry\Hearthstone\Hearthstone.exe FirewallRules: [{B0030E4C-2B42-4A04-A31B-A11AA8BCD87C}] => (Allow) F:\Gry\Hearthstone\Hearthstone.exe FirewallRules: [{063DA6F7-A534-47D0-81C5-5B0D53FDC2B5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{E87BCD4C-1655-4F9B-9860-5E54F44F3FFD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{B9E4D33A-7C74-4C35-83E6-3FFE1073ECAF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{93FBDEA9-A5B4-4A55-BAB2-F0AFE4D524C0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{CB501488-E94D-44D2-9E59-2C458D9713A2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{F2552B49-836E-4041-AE7B-FD5ED4B20E1B}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: VirtualBox Host-Only Ethernet Adapter Description: VirtualBox Host-Only Ethernet Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Oracle Corporation Service: VBoxNetAdp Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: VirtualBox Host-Only Ethernet Adapter #2 Description: VirtualBox Host-Only Ethernet Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Oracle Corporation Service: VBoxNetAdp Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Generic Bluetooth Adapter Description: Generic Bluetooth Adapter Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: GenericAdapter Service: BTHUSB Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. ==================== Event log errors: ========================= Application errors: ================== Error: (08/14/2015 08:11:39 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance. hr = 0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. . Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 08:11:39 PM) (Source: VSS) (EventID: 13) (User: ) Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {e579ab5f-1cc4-44b4-bed9-de0991ff0623} i nazwą IVssCoordinatorEx2. [0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. ] Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:20 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance. hr = 0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. . Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:20 PM) (Source: VSS) (EventID: 13) (User: ) Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {e579ab5f-1cc4-44b4-bed9-de0991ff0623} i nazwą IVssCoordinatorEx2. [0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. ] Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:20 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance. hr = 0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. . Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:20 PM) (Source: VSS) (EventID: 13) (User: ) Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {e579ab5f-1cc4-44b4-bed9-de0991ff0623} i nazwą IVssCoordinatorEx2. [0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. ] Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:20 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance. hr = 0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. . Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:20 PM) (Source: VSS) (EventID: 13) (User: ) Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {e579ab5f-1cc4-44b4-bed9-de0991ff0623} i nazwą IVssCoordinatorEx2. [0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. ] Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:19 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas wywoływania procedury CoCreateInstance. hr = 0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. . Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:19 PM) (Source: VSS) (EventID: 13) (User: ) Description: Informacje Usługi kopiowania woluminów w tle: nie można uruchomić serwera usługi COM z identyfikatorem CLSID {e579ab5f-1cc4-44b4-bed9-de0991ff0623} i nazwą IVssCoordinatorEx2. [0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. ] Operacja: Tworzenie wystąpienia serwera VSS System errors: ============= Error: (08/14/2015 01:16:23 PM) (Source: DCOM) (EventID: 10010) (User: BOZIX) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (08/14/2015 01:15:53 PM) (Source: DCOM) (EventID: 10010) (User: BOZIX) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (08/14/2015 12:43:09 PM) (Source: BTHUSB) (EventID: 17) (User: ) Description: W lokalnym adapterze Bluetooth wystąpił nieokreślony błąd. Adapter nie będzie używany. Sterownik został usunięty z pamięci. Error: (08/14/2015 12:42:55 PM) (Source: Ntfs) (EventID: 137) (User: ) Description: Domyślny menedżer zasobów transakcji w woluminie F: napotkał błąd niepowtarzający operacji i nie można go uruchomić. Dane zawierają kod błędu. Error: (08/14/2015 12:04:15 PM) (Source: Tcpip) (EventID: 4199) (User: ) Description: System wykrył konflikt adresów między adresem IP 192.168.0.3 a komputerem o sieciowym adresie sprzętowym 88-C9-D0-EB-59-A5. W rezultacie mogą być zakłócone operacje sieciowe na tym komputerze. Error: (08/14/2015 12:04:12 PM) (Source: DCOM) (EventID: 10016) (User: BOZIX) Description: właściwe dla aplikacjiLokalnyUruchom{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}BOZIXBozix-panS-1-5-21-143263523-3770091596-503792995-1001LocalHost (użycie LRPC)NiedostępnyNiedostępny Error: (08/14/2015 12:04:12 PM) (Source: DCOM) (EventID: 10016) (User: BOZIX) Description: właściwe dla aplikacjiLokalnyUruchom{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}BOZIXBozix-panS-1-5-21-143263523-3770091596-503792995-1001LocalHost (użycie LRPC)NiedostępnyNiedostępny Error: (08/14/2015 12:02:45 PM) (Source: BTHUSB) (EventID: 17) (User: ) Description: W lokalnym adapterze Bluetooth wystąpił nieokreślony błąd. Adapter nie będzie używany. Sterownik został usunięty z pamięci. Error: (08/14/2015 12:02:33 PM) (Source: Ntfs) (EventID: 137) (User: ) Description: Domyślny menedżer zasobów transakcji w woluminie F: napotkał błąd niepowtarzający operacji i nie można go uruchomić. Dane zawierają kod błędu. Error: (08/14/2015 12:02:00 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Usługa Wstępne ładowanie do pamięci zakończyła działanie; wystąpił następujący błąd: %%1062 Microsoft Office: ========================= Error: (08/14/2015 08:11:39 PM) (Source: VSS) (EventID: 8193) (User: ) Description: CoCreateInstance0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 08:11:39 PM) (Source: VSS) (EventID: 13) (User: ) Description: {e579ab5f-1cc4-44b4-bed9-de0991ff0623}IVssCoordinatorEx20x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:20 PM) (Source: VSS) (EventID: 8193) (User: ) Description: CoCreateInstance0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:20 PM) (Source: VSS) (EventID: 13) (User: ) Description: {e579ab5f-1cc4-44b4-bed9-de0991ff0623}IVssCoordinatorEx20x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:20 PM) (Source: VSS) (EventID: 8193) (User: ) Description: CoCreateInstance0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:20 PM) (Source: VSS) (EventID: 13) (User: ) Description: {e579ab5f-1cc4-44b4-bed9-de0991ff0623}IVssCoordinatorEx20x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:20 PM) (Source: VSS) (EventID: 8193) (User: ) Description: CoCreateInstance0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:20 PM) (Source: VSS) (EventID: 13) (User: ) Description: {e579ab5f-1cc4-44b4-bed9-de0991ff0623}IVssCoordinatorEx20x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:19 PM) (Source: VSS) (EventID: 8193) (User: ) Description: CoCreateInstance0x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Operacja: Tworzenie wystąpienia serwera VSS Error: (08/14/2015 01:15:19 PM) (Source: VSS) (EventID: 13) (User: ) Description: {e579ab5f-1cc4-44b4-bed9-de0991ff0623}IVssCoordinatorEx20x80070422, Nie można uruchomić określonej usługi, ponieważ jest ona wyłączona lub ponieważ nie są włączone skojarzone z nią urządzenia. Operacja: Tworzenie wystąpienia serwera VSS CodeIntegrity: =================================== Date: 2015-08-14 20:10:55.800 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-14 19:49:35.009 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-14 12:46:27.973 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-14 12:06:52.001 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-14 00:43:12.978 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-13 20:47:24.602 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-13 19:09:31.691 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-13 13:57:12.367 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-13 13:42:00.418 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-13 11:35:39.180 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-2410M CPU @ 2.30GHz Percentage of memory in use: 56% Total physical RAM: 4007.85 MB Available physical RAM: 1757.8 MB Total Virtual: 4903.85 MB Available Virtual: 2464.86 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:126.61 GB) (Free:31.47 GB) NTFS Drive f: (Data) (Fixed) (Total:327.83 GB) (Free:20.63 GB) NTFS Drive i: () (Removable) (Total:7.26 GB) (Free:0.34 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: E0C5913D) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=126.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=327.8 GB) - (Type=OF Extended) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 7.3 GB) (Disk ID: C3072E18) Partition 1: (Active) - (Size=7.3 GB) - (Type=07 NTFS) ==================== End of log ============================