Additional scan result of Farbar Recovery Scan Tool (x64) Version:17-08-2015 Ran by Igor (2015-08-18 17:12:56) Running from C:\Users\Igor\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3964238456-481189441-1564628236-500 - Administrator - Disabled) => C:\Users\Administrator Gość (S-1-5-21-3964238456-481189441-1564628236-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3964238456-481189441-1564628236-1003 - Limited - Enabled) Igor (S-1-5-21-3964238456-481189441-1564628236-1001 - Administrator - Enabled) => C:\Users\Igor ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 18 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 18.0.0.232 - Adobe Systems Incorporated) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated) Adobe Photoshop CS3 (HKLM-x32\...\Adobe_678cd98c8365a5647f9a2e539d120a8) (Version: 10.0 - Adobe Systems Incorporated) Adobe Reader XI (11.0.12) - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Atheros) AVG 2015 (HKLM\...\AVG) (Version: 2015.0.6081 - AVG Technologies) AVG 2015 (Version: 15.0.4392 - AVG Technologies) Hidden AVG 2015 (Version: 15.0.6081 - AVG Technologies) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.08 - Piriform) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.155 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden GoPro App (x32 Version: 5.6.509 - GoPro, Inc.) Hidden GoPro Studio 2.5.6 (HKLM-x32\...\{8850d4d9-a0fc-453f-ba03-ec084375d0c2}) (Version: 2.5.6.509 - GoPro, Inc.) gpedt.msc 1.0 (HKLM-x32\...\{10B9C608-BF7C-4CCF-A658-C01D969DCA21}_is1) (Version: - Richard) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) K-Lite Codec Pack 11.1.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 11.1.0 - ) Malwarebytes Anti-Malware wersja 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Marvell Miniport Driver (HKLM-x32\...\Marvell Miniport Driver) (Version: 11.29.4.3 - Marvell) Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Mozilla Firefox 40.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 40.0 (x86 pl)) (Version: 40.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 40.0 - Mozilla) NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10 - NVIDIA Corporation) Obsługa programów Apple (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) PDF Settings (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Polski pakiet językowy dla programu Microsoft .NET Framework 4.5 PLK (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50709 - Microsoft Corporation) QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) Vegas Pro 12.0 (64-bit) (HKLM\...\{A7500970-FE98-11E1-B560-F04DA23A5C58}) (Version: 12.0.367 - Sony) VFW_Codec32 (x32 Version: 0.1.160.0 - GoPro, Inc.) Hidden VFW_Codec64 (Version: 0.1.160.0 - GoPro, Inc.) Hidden VirtualDJ 8 (HKLM-x32\...\{10C4696A-2915-47F2-A14A-78F70DA82E57}) (Version: 8.0.2345.0 - Atomix Productions) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= 11-08-2015 20:21:27 ComboFix created restore point 15-08-2015 11:06:34 OTL Restore Point - 2015-08-15 11:06:32 15-08-2015 12:59:04 Windows Update ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2015-08-15 11:06 - 00000098 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {1CED4C1E-7898-459F-AEF1-852A2229B752} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {569CB8B1-9CB1-48B0-BD44-4498CD6FE3A6} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {A0D472C6-0CE5-409C-BF07-10ED9F77606A} - System32\Tasks\{AA1AB8DB-EE21-4C39-848E-6C05D39095C5} => pcalua.exe -a C:\Users\Igor\AppData\Local\Temp\Temp1_AdobePhotoshop10pl_PL_www.INSTALKI.pl.zip\pl_PL\20070503.t4ce.089\Retail\Setup.exe Task: {B3A7803F-6E15-40D2-940B-DE0DA91417A2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-15] (Google Inc.) Task: {BAEDA463-E04A-41A0-95D8-E295AC61DB11} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-15] (Google Inc.) Task: {CA8A54B7-81E0-4DC0-9DE6-F539A3C81497} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-15] (Adobe Systems Incorporated) Task: {ED8179BB-4777-479D-BC34-21DD24BBC3DA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-07-17] (Piriform Ltd) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2015-07-17 19:34 - 2015-07-17 19:34 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2015-08-18 17:11 - 2015-08-18 17:11 - 00380416 _____ () C:\Users\Igor\Downloads\fex7nyuf.exe 2015-07-02 23:31 - 2015-07-02 23:31 - 02287616 _____ () C:\Program Files (x86)\GoPro\Tools\Importer\gopro-lib-win-analytics.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3964238456-481189441-1564628236-1001\Control Panel\Desktop\\Wallpaper -> HKU\S-1-5-21-3964238456-481189441-1564628236-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> HKU\S-1-5-21-3964238456-481189441-1564628236-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{C5C3B093-2BA6-4110-AC6E-D55894636264}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{6309682E-425B-4CFD-AC0A-2883AF8DF9DB}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{EA7C51EA-D640-402B-A618-7B69583DB4B4}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{D8D0D729-9E73-4E9D-B235-EE15FE0B64E5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{094C6A50-AC30-4085-B43A-A7450494B1C3}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{AD623EB9-C1D6-49A2-B73A-1667DC961A94}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/18/2015 05:08:49 PM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT) Description: SA_Error1709: StandardAction(0xC00706AD): Produkt: AVG 2015 — Błąd 27028. CA_Error27028: WriteCfgValue(0xE001003E): Zapisanie wartości konfiguracji nie powiodło się Error: (08/15/2015 02:29:51 PM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT) Description: SA_Error1709: StandardAction(0xC00706AD): Produkt: AVG 2015 — Błąd 27028. CA_Error27028: WriteCfgValue(0xE001003E): Zapisanie wartości konfiguracji nie powiodło się Error: (08/15/2015 01:22:27 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="*",publicKeyToken="436865772d574741",type="win32",version="6.0.0.0"1". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="*",publicKeyToken="436865772d574741",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (08/15/2015 11:21:23 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error: (08/15/2015 11:21:23 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x8007043C Error: (08/15/2015 10:30:06 AM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT) Description: SA_Error1709: StandardAction(0xC00706AD): Produkt: AVG 2015 — Błąd 27028. CA_Error27028: WriteCfgValue(0xE001003E): Zapisanie wartości konfiguracji nie powiodło się Error: (08/12/2015 07:02:22 PM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT) Description: SA_Error1709: StandardAction(0xC00706AD): Produkt: AVG 2015 — Błąd 27028. CA_Error27028: WriteCfgValue(0xE001003E): Zapisanie wartości konfiguracji nie powiodło się Error: (08/11/2015 08:51:32 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="*",publicKeyToken="436865772d574741",type="win32",version="6.0.0.0"1". Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language="*",processorArchitecture="*",publicKeyToken="436865772d574741",type="win32",version="6.0.0.0". Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę. Error: (08/11/2015 03:25:14 AM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT) Description: SA_Error1709: StandardAction(0xC00706AD): Produkt: AVG 2015 — Błąd 27028. CA_Error27028: WriteCfgValue(0xE001003E): Zapisanie wartości konfiguracji nie powiodło się Error: (08/10/2015 11:25:44 PM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT) Description: SA_Error1709: StandardAction(0xC00706AD): Produkt: AVG 2015 — Błąd 27028. CA_Error27028: WriteCfgValue(0xE001003E): Zapisanie wartości konfiguracji nie powiodło się System errors: ============= Error: (08/15/2015 04:39:54 PM) (Source: bowser) (EventID: 8003) (User: ) Description: Przeglądarka główna odebrała anons serwera z komputera COMPUTADOR. Komputer ten zachowuje się tak, jakby był przeglądarką główną dla domeny w transporcie NetBT_Tcpip_{24A37EDB-D255-44CC-83EE-A8C09BFDFB73}. Przeglądarka główna właśnie jest zatrzymywana albo wymuszany jest wybór. Error: (08/15/2015 02:53:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Instalator modułów systemu Windows niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/15/2015 02:53:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/15/2015 02:53:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/15/2015 02:53:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Microsoft .NET Framework NGEN v4.0.30319_X64 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/15/2015 02:53:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Microsoft .NET Framework NGEN v4.0.30319_X86 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/15/2015 02:53:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Ochrona oprogramowania niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 120000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/15/2015 02:53:02 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (08/15/2015 02:53:02 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa AVG WatchDog niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (08/15/2015 02:53:02 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Adobe Acrobat Update Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Microsoft Office: ========================= Error: (08/18/2015 05:08:49 PM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT) Description: SA_Error1709: StandardAction(0xC00706AD): Produkt: AVG 2015 — Błąd 27028. CA_Error27028: WriteCfgValue(0xE001003E): Zapisanie wartości konfiguracji nie powiodło się(NULL)(NULL)(NULL)(NULL)(NULL) Error: (08/15/2015 02:29:51 PM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT) Description: SA_Error1709: StandardAction(0xC00706AD): Produkt: AVG 2015 — Błąd 27028. CA_Error27028: WriteCfgValue(0xE001003E): Zapisanie wartości konfiguracji nie powiodło się(NULL)(NULL)(NULL)(NULL)(NULL) Error: (08/15/2015 01:22:27 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="*",publicKeyToken="436865772d574741",type="win32",version="6.0.0.0"C:\Windows\System32\systemcpl.dll Error: (08/15/2015 11:21:23 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x000000000x00000001 Error: (08/15/2015 11:21:23 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: 0x8007043C Error: (08/15/2015 10:30:06 AM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT) Description: SA_Error1709: StandardAction(0xC00706AD): Produkt: AVG 2015 — Błąd 27028. CA_Error27028: WriteCfgValue(0xE001003E): Zapisanie wartości konfiguracji nie powiodło się(NULL)(NULL)(NULL)(NULL)(NULL) Error: (08/12/2015 07:02:22 PM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT) Description: SA_Error1709: StandardAction(0xC00706AD): Produkt: AVG 2015 — Błąd 27028. CA_Error27028: WriteCfgValue(0xE001003E): Zapisanie wartości konfiguracji nie powiodło się(NULL)(NULL)(NULL)(NULL)(NULL) Error: (08/11/2015 08:51:32 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="*",publicKeyToken="436865772d574741",type="win32",version="6.0.0.0"C:\Windows\System32\systemcpl.dll Error: (08/11/2015 03:25:14 AM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT) Description: SA_Error1709: StandardAction(0xC00706AD): Produkt: AVG 2015 — Błąd 27028. CA_Error27028: WriteCfgValue(0xE001003E): Zapisanie wartości konfiguracji nie powiodło się(NULL)(NULL)(NULL)(NULL)(NULL) Error: (08/10/2015 11:25:44 PM) (Source: MsiInstaller) (EventID: 10005) (User: ZARZĄDZANIE NT) Description: SA_Error1709: StandardAction(0xC00706AD): Produkt: AVG 2015 — Błąd 27028. CA_Error27028: WriteCfgValue(0xE001003E): Zapisanie wartości konfiguracji nie powiodło się(NULL)(NULL)(NULL)(NULL)(NULL) CodeIntegrity: =================================== Date: 2015-08-18 17:01:26.320 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-15 16:58:50.135 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-15 16:42:48.191 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-15 16:39:07.156 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-15 15:40:19.568 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-15 14:54:16.784 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-15 14:42:58.570 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-15 14:39:46.590 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-15 14:36:57.979 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-15 14:28:58.684 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\user32.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5 CPU M 430 @ 2.27GHz Percentage of memory in use: 29% Total physical RAM: 8052.56 MB Available physical RAM: 5702.82 MB Total Virtual: 16103.32 MB Available Virtual: 13606.68 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:398.11 GB) (Free:188.88 GB) NTFS Drive d: (Nowy) (Fixed) (Total:52.55 GB) (Free:52.16 GB) NTFS Drive e: (P_B2014PLv7A_ST) (CDROM) (Total:1.87 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: E3598C4B) Partition 1: (Not Active) - (Size=15 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=398.1 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=52.6 GB) - (Type=OF Extended) ==================== End of log ============================