Additional scan result of Farbar Recovery Scan Tool (x64) Version:17-12-2015 Ran by jurek (2015-12-17 10:09:24) Running from C:\Users\jurek\Downloads Windows 8 Pro (X64) (2013-05-21 19:22:37) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1268698185-3662455055-1806142860-500 - Administrator - Disabled) => C:\Users\Administrator ASPNET (S-1-5-21-1268698185-3662455055-1806142860-1004 - Limited - Enabled) Guest (S-1-5-21-1268698185-3662455055-1806142860-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1268698185-3662455055-1806142860-1006 - Limited - Enabled) jurek (S-1-5-21-1268698185-3662455055-1806142860-1001 - Administrator - Enabled) => C:\Users\jurek ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-1268698185-3662455055-1806142860-1001\...\uTorrent) (Version: 3.4.6.41506 - BitTorrent Inc.) µTorrent (HKU\S-1-5-21-1268698185-3662455055-1806142860-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\uTorrent) (Version: 3.4.6.41506 - BitTorrent Inc.) 7 Sticky Notes (HKLM-x32\...\{2DB7DD8E-F17B-408A-B93B-92867EF7974D}_is1) (Version: - Fabio Martin) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.009.20079 - Adobe Systems Incorporated) Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.235 - Adobe Systems Incorporated) AirDC++ 2.90 (HKLM-x32\...\AirDC++) (Version: 2.90 - AirDC++ Team) Aktualizacje NVIDIA 2.4.5.44 (Version: 2.4.5.44 - NVIDIA Corporation) Hidden ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.1.1 - ASUS) ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 1.2.1 - ASUS) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0023 - ASUS) BitComet 1.40 64-bit (HKLM-x32\...\BitComet_x64) (Version: 1.40 - CometNetwork) Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Licomp EMPiK Multimedia) Call of Duty(R) 4 - Modern Warfare(TM) (x32 Version: 1.00.0000 - Licomp EMPiK Multimedia) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.2 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.2 Patch (x32 Version: 1.2 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch (x32 Version: 1.4 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Multiplayer Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Patch (x32 Version: 1.5 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: 1.6 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: 1.7 - Activision) Hidden Canon MP140 series (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP140_series) (Version: - ) CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform) ChomikBox (HKLM-x32\...\{C7B52FAF-58D8-438C-B810-F78C3C927504}) (Version: 2.0.8.0 - Chomikuj.pl) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.106 - Google Inc.) Google Earth Plug-in (HKLM-x32\...\{79361740-EAE3-11E2-9911-B8AC6F98CCE3}) (Version: 7.1.1.1888 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden Heroes & Generals (HKLM-x32\...\Heroes & Generals) (Version: 1.0.6.1 - Reto-Moto) Heroes III Armageddon's Blade (HKLM-x32\...\Heroes III Armageddon's Blade) (Version: - ) Heroes III The Restoration of Erathia (HKLM-x32\...\Heroes III The Restoration of Erathia) (Version: - ) Heroes III The Shadow of Death (HKLM-x32\...\Heroes III The Shadow of Death) (Version: - ) Heroes of Might and Magic IV - Złota Edycja (HKLM-x32\...\{94B4E2D8-A184-415C-BF9E-F699D76466BD}) (Version: 3.0 - ) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3540 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation) IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 4.0.4.30 - IObit) IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.9 - HTC) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan) Java 7 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.450 - Oracle) Malwarebytes Anti-Malware wersja 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft) Microsoft Games for Windows - LIVE (HKLM-x32\...\{F97E3841-CA9D-4964-9D64-26066241D26F}) (Version: 3.3.24.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{8FB1B528-E260-451E-9B55-E9152F94B80B}) (Version: 3.2.3.0 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual J# .NET Redistributable Package 1.1 (HKLM-x32\...\{1A655D51-1423-48A3-B748-8F5A0BE294C8}) (Version: 1.1.4322 - Microsoft) Mobile Partner (HKLM-x32\...\Mobile Partner) (Version: 23.002.08.03.54 - Huawei Technologies Co.,Ltd) Mozilla Firefox 41.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 41.0.1 (x86 pl)) (Version: 41.0.1 - Mozilla) MPC-HC 1.6.7.7114 (9eb64ec) (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.6.7.7114 - MPC-HC Team) NapiProjekt (2.1.1.2310) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) NVIDIA GeForce Experience 2.4.5.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.5.44 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Sterownik dźwięku HD 1.3.32.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.32.1 - NVIDIA Corporation) NVIDIA Sterownik graficzny 353.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.06 - NVIDIA Corporation) OpenOffice.org 3.4.1 (HKLM-x32\...\{18192D3F-5537-4560-AD89-D695F72AF91D}) (Version: 3.41.9593 - Apache Software Foundation) Panel sterowania NVIDIA 353.06 (Version: 353.06 - NVIDIA Corporation) Hidden PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.990 - Even Balance, Inc.) Qualcomm Atheros WiFi Driver Installation Program (HKLM-x32\...\{7D916FA5-DAE9-4A25-B089-655C70EAF607}) (Version: 9.2 - Qualcomm Atheros) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.15.410.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7304 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7601.30130 - Realtek Semiconductor Corp.) SHIELD Streaming (Version: 4.1.2000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.4.5.44 - NVIDIA Corporation) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.5.0.9082 - Microsoft Corporation) Skype™ 7.16 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.16.102 - Skype Technologies S.A.) Stronghold Crusader (HKLM-x32\...\{8C3727F2-8E37-49E4-820C-03B1677F53B6}) (Version: - ) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) War Thunder Launcher 1.0.1.199 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - 2012 Gaijin Entertainment Corporation) WinRAR 4.20 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) Zune (HKLM\...\Zune) (Version: 04.08.2345.00 - Microsoft Corporation) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1268698185-3662455055-1806142860-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-1268698185-3662455055-1806142860-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) ==================== Restore Points ========================= 23-11-2015 15:54:40 Zaplanowany punkt kontrolny 02-12-2015 22:14:00 Zaplanowany punkt kontrolny 10-12-2015 17:06:31 Zaplanowany punkt kontrolny 15-12-2015 19:37:52 Operacja przywracania ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2012-07-26 06:26 - 2014-11-16 14:00 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0F3E99BB-D6E9-4C59-BE6B-9915B8A84EB1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-30] (Google Inc.) Task: {211F3682-ABE2-4EF2-ABD5-C965AF384721} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-30] (Google Inc.) Task: {3AD55E9A-B71D-42D5-976B-72AB3A7AAA16} - \AutoKMS -> No File <==== ATTENTION Task: {3D233A3B-5B33-43EE-938C-8F54469B4AB1} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2000-01-01] (Realtek Semiconductor) Task: {5A5F8F94-DD00-487C-9621-3BF532543A1C} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-11-16] (Piriform Ltd) Task: {9E411152-0833-4F4A-BE7C-BAA987D41F08} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated) Task: {A5552717-A140-41C1-B873-55540920AE87} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {ABC0ED81-C950-4D0F-BEA9-ECB10536B1D5} - System32\Tasks\Odkurzacz => E:\Programosy\Odkurzacz\odkurzacz.exe [2015-11-06] (FranmoSoftware) Task: {B6388605-BFFB-4114-8A2A-65604D517254} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation) Task: {B9854986-165C-4DB1-990C-486860337F71} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2012-02-15] (ASUS) Task: {C8A41F1A-0C89-4298-ABA0-7FDC5E04C2D6} - System32\Tasks\Uninstaller_SkipUac_jurek => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2014-11-14] (IObit) Task: {E00610B7-74B3-4E88-BD3E-BA8DBCC31BE5} - System32\Tasks\ASUS InstallAll ReInst => C:\Users\jurek\AppData\Local\Temp\\InstallAll\ReInst.exe <==== ATTENTION Task: {F9E6116D-0EAB-455B-93FA-94856A035CE0} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-10] (Adobe Systems Incorporated) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Uninstaller_SkipUac_jurek.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2013-10-29 16:45 - 2015-05-28 08:04 - 00012104 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll 2013-05-21 20:33 - 2015-05-28 05:15 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2011-03-14 16:27 - 2011-03-14 16:27 - 00346976 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2013-10-17 15:27 - 2013-10-17 15:27 - 00166912 _____ () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe 2013-06-23 08:09 - 2013-07-22 14:11 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2010-01-30 01:40 - 2010-01-30 01:40 - 04254560 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2010-07-14 15:11 - 2010-07-14 15:11 - 00031360 _____ () C:\Program Files\ASUS\P4G\DevMng.dll 2012-12-14 01:42 - 2000-01-01 01:00 - 00080312 _____ () C:\Windows\system32\IGFXEXPS.DLL 2014-12-18 15:27 - 2014-12-18 15:27 - 00821600 _____ () E:\Programosy\htc sync\HTC Sync\adb.exe 2015-08-26 08:44 - 2015-08-26 08:44 - 00055576 _____ () C:\Program Files\CCleaner\branding.dll 2015-11-16 17:55 - 2015-11-16 17:55 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2013-06-14 09:00 - 2013-06-13 09:18 - 06291968 _____ () E:\Programosy\NapiProjekt\napisy.exe 2014-12-18 15:25 - 2014-12-18 15:25 - 00031080 _____ () E:\Programosy\htc sync\DbAccess.dll 2014-12-18 15:26 - 2014-12-18 15:26 - 00607376 _____ () E:\Programosy\htc sync\sqlite3.dll 2014-12-18 15:26 - 2014-12-18 15:26 - 00059752 _____ () E:\Programosy\htc sync\NAdvLog.dll 2014-12-18 15:26 - 2014-12-18 15:26 - 00036216 _____ () E:\Programosy\htc sync\NFileCacheDBAccess.dll 2014-12-18 15:26 - 2014-12-18 15:26 - 00080248 _____ () E:\Programosy\htc sync\ninstallerhelper.dll 2014-12-18 15:29 - 2014-12-18 15:29 - 00129376 _____ () E:\Programosy\htc sync\zlib1.dll 2014-12-18 15:31 - 2014-12-18 15:31 - 00223592 _____ () E:\Programosy\htc sync\DevConnMon.dll 2014-11-14 10:53 - 2014-11-14 10:53 - 00622880 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll 2010-01-30 01:41 - 2010-01-30 01:41 - 04254560 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2015-12-10 13:04 - 2015-12-04 22:32 - 01583432 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\libglesv2.dll 2015-12-10 13:04 - 2015-12-04 22:32 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.80\libegl.dll 2013-06-14 09:00 - 2008-06-22 10:58 - 00134656 _____ () E:\Programosy\NapiProjekt\chsdet.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1268698185-3662455055-1806142860-1001\Control Panel\Desktop\\Wallpaper -> E:\Zdjęcia\dupsy.gif HKU\S-1-5-21-1268698185-3662455055-1806142860-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> E:\Zdjęcia\dupsy.gif HKU\S-1-5-21-1268698185-3662455055-1806142860-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg DNS Servers: 62.179.1.63 - 62.179.1.62 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run: => "Zune Launcher" HKLM\...\StartupApproved\Run32: => "APSDaemon" HKLM\...\StartupApproved\Run32: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKU\S-1-5-21-1268698185-3662455055-1806142860-1001\...\StartupApproved\StartupFolder: => "Tworzenie wycinków ekranu i uruchamianie programu OneNote 2010.lnk" HKU\S-1-5-21-1268698185-3662455055-1806142860-1001\...\StartupApproved\Run: => "OfficeSyncProcess" HKU\S-1-5-21-1268698185-3662455055-1806142860-1001\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-1268698185-3662455055-1806142860-1001\...\StartupApproved\Run: => "svchost" HKU\S-1-5-21-1268698185-3662455055-1806142860-1001\...\StartupApproved\Run: => "ChomikBox" HKU\S-1-5-21-1268698185-3662455055-1806142860-1001\...\StartupApproved\Run: => "Mobile Partner" HKU\S-1-5-21-1268698185-3662455055-1806142860-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\StartupFolder: => "Tworzenie wycinków ekranu i uruchamianie programu OneNote 2010.lnk" HKU\S-1-5-21-1268698185-3662455055-1806142860-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "OfficeSyncProcess" HKU\S-1-5-21-1268698185-3662455055-1806142860-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-1268698185-3662455055-1806142860-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "svchost" HKU\S-1-5-21-1268698185-3662455055-1806142860-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "ChomikBox" HKU\S-1-5-21-1268698185-3662455055-1806142860-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "Mobile Partner" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [TCP Query User{C311DB03-C165-4E97-9901-3A16440FA406}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [UDP Query User{A441531D-6A6D-4060-92B0-2D25C9452F1F}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [{C9E3CA1E-D688-46F4-A20D-803EC0C63B85}] => (Allow) E:\Gry\War Thunder\launcher.exe FirewallRules: [{E1AEEFA1-1370-4863-A788-66625973E6D7}] => (Allow) E:\Gry\War Thunder\launcher.exe FirewallRules: [{B1929F94-4075-499D-81A1-107CE8B47241}] => (Allow) LPort=80 FirewallRules: [{7EA8ECBA-9E4A-41AD-A2E0-C494AE5621E6}] => (Allow) LPort=443 FirewallRules: [{7D9E413B-3E13-47DE-BF3C-FE4CBB3E1220}] => (Allow) LPort=20010 FirewallRules: [{2EF5AF50-6027-4B9D-8C6C-20C8F9E50080}] => (Allow) LPort=3478 FirewallRules: [{3409F17D-CD33-4302-A789-C62E99C2FBD2}] => (Allow) LPort=7850 FirewallRules: [{7CF8284D-E0D9-44DF-812B-DD8E1A1284E0}] => (Allow) LPort=27022 FirewallRules: [{A5289D3E-88C2-4EBE-B669-DB8AD6FFE714}] => (Allow) LPort=6881 FirewallRules: [{42E5A468-B99B-4137-B636-5015996A4C63}] => (Allow) LPort=33333 FirewallRules: [{28C49B23-F3B6-4A71-917F-4005B76E53BB}] => (Allow) LPort=20443 FirewallRules: [{3CD48B0A-56F0-4395-9248-03D4A44E8940}] => (Allow) LPort=8090 FirewallRules: [TCP Query User{D264AEDA-B2AF-4BF3-916C-8574E3D74E21}E:\gry\war thunder\launcher.exe] => (Block) E:\gry\war thunder\launcher.exe FirewallRules: [UDP Query User{E97FB256-F81A-4646-8B62-46A1F8C60180}E:\gry\war thunder\launcher.exe] => (Block) E:\gry\war thunder\launcher.exe FirewallRules: [{12F450ED-0E11-43EC-8ECF-78440EF7E087}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{0B943B4C-D107-4DE8-AABF-EAC2A1FE6813}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{8B1EA743-4A9A-4F34-8CF3-589EF4D864EA}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{F4212EBD-05F3-422B-99CE-E62465300D0D}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{EA7F8C50-C11D-4830-9EB7-93B44AD80A62}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{14A015B2-65D4-406E-AD4C-BDB17B8284A2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{F6A01FAE-7FE1-4357-8F38-50FC963C2B5E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{4F732BD1-0786-4576-8919-48A60F4B23F0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{B34E4F0E-F191-429A-9E66-11CEB9FA0C75}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{D32330FF-25F0-4591-BA17-6DC01BCAFFB2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{800873C2-7595-49B6-B9AE-73CC80ED52DF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{27A32C10-20E7-40A6-B73B-4B60B667D776}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{CBDC0F04-0B03-403D-9D5D-6C6B093B720B}E:\gry\fifa 14\game\fifa14.exe] => (Block) E:\gry\fifa 14\game\fifa14.exe FirewallRules: [UDP Query User{344D9A32-2B3C-48C1-87AC-42D2118FF665}E:\gry\fifa 14\game\fifa14.exe] => (Block) E:\gry\fifa 14\game\fifa14.exe FirewallRules: [{733D86CC-984B-4FDD-A91A-B0EBCB26C813}] => (Allow) C:\Users\jurek\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{FD9FF258-5905-45C9-96FF-CD44BCC3D4AF}] => (Allow) C:\Users\jurek\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{EDC10C80-4A26-466B-9449-DA43E4B93820}E:\gry\war thunder\aces.exe] => (Block) E:\gry\war thunder\aces.exe FirewallRules: [UDP Query User{D3BB9618-D554-4219-A3F1-4A4D71574933}E:\gry\war thunder\aces.exe] => (Block) E:\gry\war thunder\aces.exe FirewallRules: [TCP Query User{31C3F0FE-CBC1-4E64-AA77-556CA5B5256C}E:\gry\worms armageddon v3.7.2.1\wa.exe] => (Block) E:\gry\worms armageddon v3.7.2.1\wa.exe FirewallRules: [UDP Query User{A2092F2B-614B-4D39-8099-0DDCE47431CC}E:\gry\worms armageddon v3.7.2.1\wa.exe] => (Block) E:\gry\worms armageddon v3.7.2.1\wa.exe FirewallRules: [TCP Query User{D48D44B0-4CCA-4BDB-B81E-DD15CBD0ADE8}E:\gry\heroes 3 pl + dodatki\heroes3.exe] => (Block) E:\gry\heroes 3 pl + dodatki\heroes3.exe FirewallRules: [UDP Query User{C1488CEC-C8C7-46B5-904F-19873BD970D5}E:\gry\heroes 3 pl + dodatki\heroes3.exe] => (Block) E:\gry\heroes 3 pl + dodatki\heroes3.exe FirewallRules: [{44920641-3325-47A5-96DC-A8B4D8008B0A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{184A5ED5-FC07-4E45-BF3B-1C42BB7B7F92}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{5A1741EB-B4DB-40BE-B678-7F4C2E2BC6AF}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{4EB4A863-F234-4D48-AA55-E550DB83D809}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [TCP Query User{BEFCD0E8-90E1-4046-8EAB-D345712CDD86}C:\windows\syswow64\dplaysvr.exe] => (Block) C:\windows\syswow64\dplaysvr.exe FirewallRules: [UDP Query User{A18766AC-5173-4607-A3C9-C0DD21199AE8}C:\windows\syswow64\dplaysvr.exe] => (Block) C:\windows\syswow64\dplaysvr.exe FirewallRules: [{FE46B27E-BC8D-4AF6-B277-E93C89FC8622}] => (Allow) E:\Gry\CoDzik\iw3mp.exe FirewallRules: [{C404722A-0C4E-4690-AE74-7FF57CC8D3F6}] => (Allow) E:\Gry\CoDzik\iw3mp.exe FirewallRules: [TCP Query User{CF7E254C-F823-47CB-84C9-D8A969F88B26}E:\gry\codzik\iw3mp.exe] => (Block) E:\gry\codzik\iw3mp.exe FirewallRules: [UDP Query User{9995984E-C1BA-4E7E-9EB5-C3DA452AD1A3}E:\gry\codzik\iw3mp.exe] => (Block) E:\gry\codzik\iw3mp.exe FirewallRules: [TCP Query User{14395A35-775A-40BA-893A-E90A7BEB44A6}E:\gry\war thunder\aces.exe] => (Block) E:\gry\war thunder\aces.exe FirewallRules: [UDP Query User{A1B8E58D-4C18-4EFD-923B-E1F0D9481780}E:\gry\war thunder\aces.exe] => (Block) E:\gry\war thunder\aces.exe FirewallRules: [{43B60BB6-923C-4F76-B7AD-E2C6F168BBDC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{F1E34BC1-75FE-4846-83CE-D8E216798F69}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{B23AAD2A-C834-496E-801E-733D60F1C237}] => (Allow) %ProgramFiles%\Zune\Zune.exe FirewallRules: [{37DB37B8-6E86-42DB-8222-AEA13E0BA886}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{D07FBAE1-8C89-4929-A370-6F74732B80FF}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{A4034B40-C6E8-4DB9-B520-6EB4568C466B}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{887F9571-F5D2-4C26-89AB-ED5EC24D22F5}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{9CDDD792-C4EC-4C15-9987-C506E950AE97}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{AE396F7E-56A1-45F2-8F20-E06304DB3CE2}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{F77AAD6D-52A8-4158-AAA7-D3756CFE9421}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{2252C85B-7F8A-4941-B8B6-9DEBB5503516}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{E621C4CF-F30E-4F84-BA78-E12EA1C5C548}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{E70D4583-FB64-4786-9D7D-202A2A09026A}] => (Allow) E:\Gry\Heroes & Generals\live\hng.exe FirewallRules: [{C3BB0C7C-8DEA-4CE1-861D-5019F622D7AE}] => (Allow) E:\Gry\Heroes & Generals\live\hng.exe FirewallRules: [TCP Query User{54A4A8F8-F640-4136-B2FA-65E0C9A27CB5}C:\users\jurek\appdata\roaming\utorrent\updates\3.4.5_41202.exe] => (Allow) C:\users\jurek\appdata\roaming\utorrent\updates\3.4.5_41202.exe FirewallRules: [UDP Query User{F202FD5B-BCBC-4FDB-80EF-B9E7634E6763}C:\users\jurek\appdata\roaming\utorrent\updates\3.4.5_41202.exe] => (Allow) C:\users\jurek\appdata\roaming\utorrent\updates\3.4.5_41202.exe FirewallRules: [{073ADD8F-DB4B-4C4D-BCF2-DAF1F8A4A4B1}] => (Allow) C:\Users\jurek\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{DDE93BB2-D8DA-4D95-826E-F6A768AC32CC}] => (Allow) C:\Users\jurek\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{25A78945-F2A2-4912-AB78-FBB9E04584E9}] => (Allow) E:\Programosy\BitComet\BitComet.exe FirewallRules: [{E5812335-C10B-4174-96B3-FB8BD8A3001F}] => (Allow) E:\Programosy\BitComet\BitComet.exe FirewallRules: [TCP Query User{EDBFAE21-DA78-49E2-BE7F-122D4E6D9647}E:\programosy\airdc.exe] => (Allow) E:\programosy\airdc.exe FirewallRules: [UDP Query User{8DE0E02D-C930-46C7-AD57-20871BC56B8D}E:\programosy\airdc.exe] => (Allow) E:\programosy\airdc.exe FirewallRules: [{119059B9-F86E-49D7-96A2-9E7AB3FAE2EC}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: Mysz zgodna z PS/2 Description: Mysz zgodna z PS/2 Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (12/17/2015 10:07:06 AM) (Source: ESENT) (EventID: 454) (User: ) Description: taskhostex (2740) WebCacheLocal: Odzyskiwanie/przywracanie bazy danych nie powiodło się z powodu nieoczekiwanego błędu: -1032. Error: (12/17/2015 10:07:06 AM) (Source: ESENT) (EventID: 439) (User: ) Description: taskhostex (2740) WebCacheLocal: Nie można dokonać zapisu lustrzanego nagłówka pliku C:\Users\jurek\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat. Błąd -1032. Error: (12/17/2015 10:07:06 AM) (Source: ESENT) (EventID: 490) (User: ) Description: taskhostex (2740) WebCacheLocal: Próba otwarcia pliku "C:\Users\jurek\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" w trybie odczytu lub zapisu zakończyła się niepomyślnie z błędem systemowym 5 (0x00000005): "Odmowa dostępu. ". Operacja otwierania pliku zostanie zakończona z błędem -1032 (0xfffffbf8). Error: (12/17/2015 10:06:56 AM) (Source: ESENT) (EventID: 490) (User: ) Description: taskhostex (2740) WebCacheLocal: Próba otwarcia pliku "C:\Users\jurek\AppData\Local\Microsoft\Windows\WebCache\V01.chk" w trybie odczytu lub zapisu zakończyła się niepomyślnie z błędem systemowym 5 (0x00000005): "Odmowa dostępu. ". Operacja otwierania pliku zostanie zakończona z błędem -1032 (0xfffffbf8). Error: (12/17/2015 10:06:46 AM) (Source: ESENT) (EventID: 454) (User: ) Description: taskhostex (2740) WebCacheLocal: Odzyskiwanie/przywracanie bazy danych nie powiodło się z powodu nieoczekiwanego błędu: -1032. Error: (12/17/2015 10:06:46 AM) (Source: ESENT) (EventID: 439) (User: ) Description: taskhostex (2740) WebCacheLocal: Nie można dokonać zapisu lustrzanego nagłówka pliku C:\Users\jurek\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat. Błąd -1032. Error: (12/17/2015 10:06:46 AM) (Source: ESENT) (EventID: 490) (User: ) Description: taskhostex (2740) WebCacheLocal: Próba otwarcia pliku "C:\Users\jurek\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" w trybie odczytu lub zapisu zakończyła się niepomyślnie z błędem systemowym 5 (0x00000005): "Odmowa dostępu. ". Operacja otwierania pliku zostanie zakończona z błędem -1032 (0xfffffbf8). Error: (12/17/2015 10:06:36 AM) (Source: ESENT) (EventID: 490) (User: ) Description: taskhostex (2740) WebCacheLocal: Próba otwarcia pliku "C:\Users\jurek\AppData\Local\Microsoft\Windows\WebCache\V01.chk" w trybie odczytu lub zapisu zakończyła się niepomyślnie z błędem systemowym 5 (0x00000005): "Odmowa dostępu. ". Operacja otwierania pliku zostanie zakończona z błędem -1032 (0xfffffbf8). Error: (12/17/2015 10:06:25 AM) (Source: ESENT) (EventID: 454) (User: ) Description: taskhostex (2740) WebCacheLocal: Odzyskiwanie/przywracanie bazy danych nie powiodło się z powodu nieoczekiwanego błędu: -1032. Error: (12/17/2015 10:06:25 AM) (Source: ESENT) (EventID: 439) (User: ) Description: taskhostex (2740) WebCacheLocal: Nie można dokonać zapisu lustrzanego nagłówka pliku C:\Users\jurek\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat. Błąd -1032. System errors: ============= Error: (12/17/2015 10:05:07 AM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: Buka) Description: 0x8000002a117\??\C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\S-1-5-21-1268698185-3662455055-1806142860-1001-0-ntuser.dat Error: (12/17/2015 10:04:59 AM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: Buka) Description: 0x8000002a117\??\C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\S-1-5-21-1268698185-3662455055-1806142860-1001-0-ntuser.dat Error: (12/15/2015 09:05:09 PM) (Source: DCOM) (EventID: 10010) (User: Buka) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (12/15/2015 09:04:58 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Office Software Protection Platform niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/15/2015 09:04:58 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa udostępniania w sieci programu Windows Media Player niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/15/2015 09:04:58 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) Dynamic Application Loader Host Interface Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/15/2015 09:04:58 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa Intel(R) ME Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error: (12/15/2015 09:04:58 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/15/2015 09:04:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Usługa buforowania czcionek platformy Windows Presentation Foundation, wersja 3.0.0.0 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (12/15/2015 09:04:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Usługa PnkBstrA niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. CodeIntegrity: =================================== Date: 2014-11-16 14:00:07.558 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3210M CPU @ 2.50GHz Percentage of memory in use: 32% Total physical RAM: 12174.3 MB Available physical RAM: 8196.05 MB Total Virtual: 13902.3 MB Available Virtual: 9298.17 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:74.79 GB) (Free:18.33 GB) NTFS Drive d: (Studiosss) (Fixed) (Total:97.66 GB) (Free:74.75 GB) NTFS Drive e: (Miszczunio) (Fixed) (Total:292.97 GB) (Free:58.57 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: A5135A6B) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=74.8 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=97.7 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=293 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================