Additional scan result of Farbar Recovery Scan Tool (x64) Version:18-04-2016 Ran by Marek (2016-04-20 15:44:29) Running from C:\Users\Marek\AppData\Local\Microsoft\Windows\INetCache\IE\UHSMH7JD Windows 8.1 (X64) (2015-05-07 17:52:57) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3377222215-263577021-991360115-500 - Administrator - Disabled) Guest (S-1-5-21-3377222215-263577021-991360115-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3377222215-263577021-991360115-1003 - Limited - Enabled) Marek (S-1-5-21-3377222215-263577021-991360115-1001 - Administrator - Enabled) => C:\Users\Marek ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) abDocs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.09.2001 - Acer Incorporated) abDocs Office AddIn (HKLM-x32\...\{DCBF3379-246B-47E1-8173-639B63940838}) (Version: 3.02.2001 - Acer Incorporated) abMusic (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 3.00.2003.6 - Acer Incorporated) abPhoto (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 3.06.2000.22 - Acer Incorporated) Acer Explorer Agent (HKLM\...\{4D0F42CF-1693-43D9-BDC8-19141D023EE0}) (Version: 2.00.3000 - Acer Incorporated) Acer Launch Manager (HKLM\...\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}) (Version: 8.00.8105 - Acer Incorporated) Acer Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 3.09.2002 - Acer Incorporated) Acer Power Management (HKLM\...\{E438A632-CADC-49E4-9492-C9F50F9AE37F}) (Version: 7.01.8100 - Acer Incorporated) Acer Quick Access (HKLM\...\{C1FA525F-D701-4B31-9D32-504FC0CF0B98}) (Version: 1.01.3012 - Acer Incorporated) Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.8106 - Acer Incorporated) Acer Remote Files (HKLM\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 1.02.2003 - Acer Incorporated) Acer User Experience Improvement Program App Monitor Plugin (HKLM\...\{978724F6-1863-4DD5-9E66-FB77F5AB5613}) (Version: 1.01.3003 - Acer Incorporated) Acer User Experience Improvement Program Framework (HKLM\...\{12A718F2-2357-4D41-9E1F-18583A4745F7}) (Version: 1.01.3003 - Acer Incorporated) Acer Video Player (HKLM-x32\...\{B6846F20-4821-11E3-8F96-0800200C9A66}) (Version: 1.00.2001.4 - Acer Incorporated) Adobe Reader XI (11.0.15) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AB0000000001}) (Version: 11.0.15 - Adobe Systems Incorporated) AOP Framework (HKLM-x32\...\{4A37A114-702F-4055-A4B6-16571D4A5353}) (Version: 3.15.2000.1 - Acer Incorporated) CCleaner (HKLM\...\CCleaner) (Version: 5.09 - Piriform) CyberLink PhotoDirector 3 (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.1.4917 - CyberLink Corp.) CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.3721 - CyberLink Corp.) CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.3914.57 - CyberLink Corp.) eBay Worldwide (HKLM-x32\...\{91589413-6675-4C27-8AFC-EFB9103B90A5}) (Version: 2.4.0105 - OEM) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) Game Channels (HKLM-x32\...\WildTangentGameProvider-acer-genres) (Version: 9.2.0.11 - WildTangent, Inc.) Huawei E3272 (HKLM-x32\...\Huawei E3272) (Version: 22.001.22.00.1202 - Huawei Technologies Co.,Ltd) Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.8101 - Acer Incorporated) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3496 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 1.1.165.1 - Intel Corporation) Java 8 Update 73 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218073F0}) (Version: 8.0.730.2 - Oracle Corporation) JDownloader (HKLM-x32\...\JDownloader) (Version: - AppWork UG (haftungsbeschränkt)) Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.8100 - Acer Incorporated) Malwarebytes Anti-Malware wersja 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) MetaTrader - Pepperstone (HKLM-x32\...\MetaTrader - Pepperstone) (Version: 4.00 - MetaQuotes Software Corp.) MetaTrader 4 Admiral Markets AS (HKLM-x32\...\MetaTrader 4 Admiral Markets AS) (Version: 4.00 - MetaQuotes Software Corp.) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mp3tag v2.71 (HKLM-x32\...\Mp3tag) (Version: v2.71 - Florian Heidenreich) Nero BackItUp 12 Essentials OEM.a01 (HKLM-x32\...\{551AC8F2-FEA2-4B45-ACF7-C98681233CC9}) (Version: 12.5.01200 - Nero AG) OpenOffice 4.1.1 (HKLM-x32\...\{B5373BA3-BAD7-4EAC-A9D2-B66B41B82C57}) (Version: 4.11.9775 - Apache Software Foundation) Prerequisite installer (x32 Version: 12.0.0003 - Nero AG) Hidden Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.318 - Qualcomm Atheros Communications) Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.29 - Qualcomm Atheros) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.21247 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.25.108.2014 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7203 - Realtek Semiconductor Corp.) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation) Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.103 - Skype Technologies S.A.) Spotify (HKLM-x32\...\Spotify) (Version: 0.9.6.81.gd359a796 - Spotify AB) SpywareBlaster 5.4 (HKLM-x32\...\SpywareBlaster_is1) (Version: 5.4.0 - BrightFort LLC) WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) XM MT4 (HKLM-x32\...\XM MT4) (Version: 6.00 - MetaQuotes Software Corp.) Zello 1.68.0.0 (HKLM-x32\...\Zello) (Version: 1.68.0.0 - Zello Inc) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-3377222215-263577021-991360115-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {16F65FC8-27B9-4730-8510-01351C99EA60} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2013-01-22] () Task: {1C5FFE3C-539D-476F-BD5D-BA38DEAA470F} - System32\Tasks\Quick Access Quick Launcher => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2014-03-22] (Acer Incorporate) Task: {43E51ACA-8650-46AD-B7FD-C1B0B04C6119} - System32\Tasks\AcerCloud => C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2016-01-19] (Acer) Task: {4A0C00E4-C834-49D4-B391-DAA1704AC3F3} - System32\Tasks\abDocsDllLoader => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe [2015-11-23] () Task: {4EFE227D-42D6-46F2-A21A-474885FAFF1D} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2014-03-22] (Acer Incorporate) Task: {60A633E5-7268-4A9C-9893-6D928D14175C} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe [2014-01-25] (TODO: ) Task: {63B96397-3BAE-45B7-A252-7D5A0ACA23B8} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2014-03-19] (Acer Incorporated) Task: {66F32C44-BA18-4705-B9BE-554DD8A76657} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated) Task: {B1176ED5-EA27-490C-9388-FAAE6BA5F6F2} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-08-20] (Piriform Ltd) Task: {B596E271-E1F5-49D9-A415-30637E44E5C2} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [2014-03-17] (Acer Incorporate) Task: {D4555600-6D4F-4BAD-916F-BF32ED29F641} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [2016-01-14] (Acer Incorporated) Task: {D81A2FF5-93DD-4418-8848-ADA0665A047A} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2013-07-08] () Task: {ED9F9C15-C36C-4B88-BA6B-8BACCD7278BE} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2013-12-04] (Acer Incorporated) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ShortcutWithArgument: C:\Users\Public\Desktop\PRIVATE WiFi.lnk -> C:\Program Files\PRIVATE WiFi\StartURL.exe () -> hxxp://www.privatewifi.com/partner/clicks.php?pid=928649&bid=76&campaign=default ==================== Loaded Modules (Whitelisted) ============== 2015-08-01 16:06 - 2013-12-03 08:09 - 00240720 _____ () C:\ProgramData\MobileBrServ\mbbservice.exe 2014-06-10 05:22 - 2012-04-24 12:43 - 00254512 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 2014-02-26 07:14 - 2014-02-26 07:14 - 00011264 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll 2014-02-26 07:11 - 2014-02-26 07:11 - 00086016 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll 2014-02-26 07:17 - 2014-02-26 07:17 - 00012928 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe 2015-08-24 20:28 - 2015-08-24 20:28 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1045.dll 2014-04-18 13:50 - 2014-03-07 18:21 - 00080312 _____ () C:\Windows\system32\igfxexps.dll 2015-11-23 19:44 - 2015-11-23 19:44 - 01769312 _____ () C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe 2014-06-10 05:01 - 2013-12-10 01:27 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-11-16 20:55 - 2015-11-16 20:55 - 00202456 _____ () C:\Program Files (x86)\Acer\abPhoto\curllib.dll 2015-11-16 20:56 - 2015-11-16 20:56 - 00654000 _____ () C:\Program Files (x86)\Acer\abPhoto\sqlite3.dll 2015-11-16 20:56 - 2015-11-16 20:56 - 00641240 _____ () C:\Program Files (x86)\Acer\abPhoto\tag.dll 2015-11-16 20:56 - 2015-11-16 20:56 - 00119000 _____ () C:\Program Files (x86)\Acer\abPhoto\OpenLDAP.dll 2016-02-08 12:55 - 2016-02-08 12:55 - 00015064 _____ () C:\Windows\assembly\GAC_MSIL\MyService\1.0.0.1__2dfa3f50f0bed57d\MyService.dll 2016-01-14 18:12 - 2016-01-14 18:12 - 00013016 _____ () C:\Program Files (x86)\Acer\AOP Framework\ServiceInterface.dll 2016-01-14 18:11 - 2016-01-14 18:11 - 00277856 _____ () C:\Program Files (x86)\Acer\AOP Framework\libcurl.dll 2016-01-19 16:06 - 2016-01-19 16:06 - 00194048 _____ () C:\Program Files (x86)\Acer\Acer Portal\curllib.dll 2016-01-19 16:06 - 2016-01-19 16:06 - 00110592 _____ () C:\Program Files (x86)\Acer\Acer Portal\OpenLDAP.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\Temp:5C321E34 [134] ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\008k.com -> 008k.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\00hq.com -> 00hq.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\0190-dialers.com -> 0190-dialers.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\01i.info -> 01i.info IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\0411dd.com -> 0411dd.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\0511zfhl.com -> 0511zfhl.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\05p.com -> 05p.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\0632qyw.com -> 0632qyw.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\0calories.net -> 0calories.net IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\0cj.net -> 0cj.net IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\0scan.com -> 0scan.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\1-domains-registrations.com -> 1-domains-registrations.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\1-se.com -> 1-se.com IE restricted site: HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\1001movie.com -> 1001movie.com There are 6091 more sites. ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3377222215-263577021-991360115-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\acer01.jpg DNS Servers: 10.128.128.128 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-3377222215-263577021-991360115-1001\...\StartupApproved\Run: => "Skype" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{AF5A562A-1D19-4925-AA07-510DF6444165}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe FirewallRules: [{00482C2E-91AC-496B-AC33-C0051DA72CBF}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe FirewallRules: [{B6A07447-821A-4A04-B5D4-20054B3FE76C}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE FirewallRules: [{B9A7381F-C282-4189-8B32-343C0B296CDA}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe FirewallRules: [{9E8B491D-607B-4329-9859-C7D4FD19FAAD}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe FirewallRules: [{F0B6CB01-47E1-416B-886F-EDA52D1F0F84}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe FirewallRules: [{74FDEB04-75A5-49DA-B71D-3A86C0DFCFB5}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe FirewallRules: [{B9C514E0-29E8-40CD-BF2D-5FE77232736F}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe FirewallRules: [{521ED638-D8C8-4728-AA34-C0321BD3D32B}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe FirewallRules: [{9FB42108-4CF4-4D0E-8977-E23E7D5B6960}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe FirewallRules: [{A99A44FB-64F5-4512-977E-86394387E978}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe FirewallRules: [{6D157C4C-2258-46C4-9077-F6EE49E33DDE}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe FirewallRules: [{E4F24A2E-F591-4DB9-84B6-7BA3AD34BD46}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe FirewallRules: [{9F1FF587-BD07-40C5-A0CF-5ECA21A6C7B3}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe FirewallRules: [TCP Query User{9A937D15-4B8C-41C7-B637-843AF73E2C47}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{EE720DAD-86BD-4F9A-A23B-F643142A514D}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{08B46373-5FF7-446F-88E8-0342449E8E0D}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{E76461E5-B56D-446A-B4FF-7B5984959D43}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{2007A2CE-9211-4AA3-835C-C1633DA37B14}] => (Allow) C:\Program Files (x86)\Zello\Zello.exe FirewallRules: [{998A5246-5845-49E6-8385-063A35202E22}] => (Allow) C:\Program Files (x86)\Zello\Zello.exe FirewallRules: [{44CD0B62-0BFE-4EB8-A678-9B3FFD0B7E5E}] => (Allow) C:\Program Files (x86)\Acer\abMusic\DMCDaemon.exe FirewallRules: [{15638E52-B9D0-4452-ADFF-DACD6E56D6E7}] => (Allow) C:\Program Files (x86)\Acer\abMusic\DMCDaemon.exe FirewallRules: [{87C55B9C-937F-4E2A-855C-5F250BA5529E}] => (Allow) C:\Program Files (x86)\Acer\abMusic\WindowsUpnpMV.exe FirewallRules: [{1C7DB309-B1A6-447C-8576-8F8D3CC3FE67}] => (Allow) C:\Program Files (x86)\Acer\abMusic\WindowsUpnpMV.exe FirewallRules: [{7EF190D2-A7DD-4DBF-A726-CE401DD2D794}] => (Allow) C:\Program Files (x86)\Acer\abMusic\DMCDaemon.exe FirewallRules: [{D874C9E6-476A-4ED6-8216-D68D977C4151}] => (Allow) C:\Program Files (x86)\Acer\abMusic\DMCDaemon.exe FirewallRules: [{E9C8836F-F703-490B-BB6B-FC78D86B29B2}] => (Allow) C:\Program Files (x86)\Acer\abMusic\WindowsUpnpMV.exe FirewallRules: [{3C14CFE3-424A-414F-B2EC-BD9B83FE4919}] => (Allow) C:\Program Files (x86)\Acer\abMusic\WindowsUpnpMV.exe ==================== Restore Points ========================= 28-03-2016 22:43:41 Scheduled Checkpoint 08-04-2016 10:43:48 Scheduled Checkpoint 15-04-2016 22:38:22 Operacja przywracania ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (04/20/2016 03:29:27 PM) (Source: ESENT) (EventID: 454) (User: ) Description: svchost (2340) Instance: Odzyskiwanie/przywracanie bazy danych nie powiodło się z powodu nieoczekiwanego błędu: -501. Error: (04/20/2016 03:29:27 PM) (Source: ESENT) (EventID: 465) (User: ) Description: svchost (2340) Instance: Podczas odzyskiwania programowego wykryto uszkodzenie w pliku dziennika C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. Rekord z nieprawidłową sumą kontrolną znajduje się na pozycji END. Dane niezgodne ze wzorem wypełnienia pliku dziennika pojawiły się najpierw w sektorze 117 (0x00000075). Plik dziennika został uszkodzony i jest nieużyteczny. Error: (04/20/2016 03:29:27 PM) (Source: ESENT) (EventID: 477) (User: ) Description: svchost (2340) Instance: Weryfikacja odczytu zakresu dziennika z pliku "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" na pozycji względnej 479232 (0x0000000000075000) w ilości 4096 (0x00001000) bajtów nie powiodła się z powodu niezgodności sumy kontrolnej zakresu. Oczekiwano sumy kontrolnej 8969204007753867935 (0x7c790386302de29f), podczas gdy faktyczna suma kontrolna to 8969204007753867935 (0x7c790386302de29f). Operacja odczytu zostanie zakończona z błędem -501 (0xfffffe0b). Jeśli ten stan będzie się utrzymywał, przywróć plik dziennika z wcześniejszej kopii zapasowej. Error: (04/20/2016 03:29:27 PM) (Source: ESENT) (EventID: 465) (User: ) Description: svchost (2340) Instance: Podczas odzyskiwania programowego wykryto uszkodzenie w pliku dziennika C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. Rekord z nieprawidłową sumą kontrolną znajduje się na pozycji END. Dane niezgodne ze wzorem wypełnienia pliku dziennika pojawiły się najpierw w sektorze 117 (0x00000075). Plik dziennika został uszkodzony i jest nieużyteczny. Error: (04/20/2016 03:29:27 PM) (Source: ESENT) (EventID: 477) (User: ) Description: svchost (2340) Instance: Weryfikacja odczytu zakresu dziennika z pliku "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" na pozycji względnej 479232 (0x0000000000075000) w ilości 4096 (0x00001000) bajtów nie powiodła się z powodu niezgodności sumy kontrolnej zakresu. Oczekiwano sumy kontrolnej 8969204007753867935 (0x7c790386302de29f), podczas gdy faktyczna suma kontrolna to 8969204007753867935 (0x7c790386302de29f). Operacja odczytu zostanie zakończona z błędem -501 (0xfffffe0b). Jeśli ten stan będzie się utrzymywał, przywróć plik dziennika z wcześniejszej kopii zapasowej. Error: (04/20/2016 03:29:27 PM) (Source: ESENT) (EventID: 454) (User: ) Description: svchost (2340) Instance: Odzyskiwanie/przywracanie bazy danych nie powiodło się z powodu nieoczekiwanego błędu: -501. Error: (04/20/2016 03:29:27 PM) (Source: ESENT) (EventID: 465) (User: ) Description: svchost (2340) Instance: Podczas odzyskiwania programowego wykryto uszkodzenie w pliku dziennika C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. Rekord z nieprawidłową sumą kontrolną znajduje się na pozycji END. Dane niezgodne ze wzorem wypełnienia pliku dziennika pojawiły się najpierw w sektorze 117 (0x00000075). Plik dziennika został uszkodzony i jest nieużyteczny. Error: (04/20/2016 03:29:27 PM) (Source: ESENT) (EventID: 477) (User: ) Description: svchost (2340) Instance: Weryfikacja odczytu zakresu dziennika z pliku "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" na pozycji względnej 479232 (0x0000000000075000) w ilości 4096 (0x00001000) bajtów nie powiodła się z powodu niezgodności sumy kontrolnej zakresu. Oczekiwano sumy kontrolnej 8969204007753867935 (0x7c790386302de29f), podczas gdy faktyczna suma kontrolna to 8969204007753867935 (0x7c790386302de29f). Operacja odczytu zostanie zakończona z błędem -501 (0xfffffe0b). Jeśli ten stan będzie się utrzymywał, przywróć plik dziennika z wcześniejszej kopii zapasowej. Error: (04/20/2016 03:29:27 PM) (Source: ESENT) (EventID: 465) (User: ) Description: svchost (2340) Instance: Podczas odzyskiwania programowego wykryto uszkodzenie w pliku dziennika C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. Rekord z nieprawidłową sumą kontrolną znajduje się na pozycji END. Dane niezgodne ze wzorem wypełnienia pliku dziennika pojawiły się najpierw w sektorze 117 (0x00000075). Plik dziennika został uszkodzony i jest nieużyteczny. Error: (04/20/2016 03:29:27 PM) (Source: ESENT) (EventID: 477) (User: ) Description: svchost (2340) Instance: Weryfikacja odczytu zakresu dziennika z pliku "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" na pozycji względnej 479232 (0x0000000000075000) w ilości 4096 (0x00001000) bajtów nie powiodła się z powodu niezgodności sumy kontrolnej zakresu. Oczekiwano sumy kontrolnej 8969204007753867935 (0x7c790386302de29f), podczas gdy faktyczna suma kontrolna to 8969204007753867935 (0x7c790386302de29f). Operacja odczytu zostanie zakończona z błędem -501 (0xfffffe0b). Jeśli ten stan będzie się utrzymywał, przywróć plik dziennika z wcześniejszej kopii zapasowej. System errors: ============= Error: (04/20/2016 03:26:58 PM) (Source: DCOM) (EventID: 10005) (User: MP) Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC} Error: (04/20/2016 03:26:46 PM) (Source: DCOM) (EventID: 10005) (User: MP) Description: 1084WSearchUnavailable{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Error: (04/20/2016 03:26:45 PM) (Source: DCOM) (EventID: 10005) (User: MP) Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC} Error: (04/20/2016 03:26:30 PM) (Source: DCOM) (EventID: 10005) (User: MP) Description: 1084stisvcUnavailable{A1F4E726-8CF1-11D1-BF92-0060081ED811} Error: (04/20/2016 03:26:30 PM) (Source: DCOM) (EventID: 10005) (User: MP) Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC} Error: (04/20/2016 03:26:22 PM) (Source: DCOM) (EventID: 10005) (User: MP) Description: 1084stisvcUnavailable{A1F4E726-8CF1-11D1-BF92-0060081ED811} Error: (04/20/2016 03:26:21 PM) (Source: DCOM) (EventID: 10005) (User: MP) Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC} Error: (04/20/2016 03:25:41 PM) (Source: DCOM) (EventID: 10005) (User: MP) Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC} Error: (04/20/2016 03:25:04 PM) (Source: DCOM) (EventID: 10005) (User: MP) Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC} Error: (04/20/2016 03:24:58 PM) (Source: DCOM) (EventID: 10005) (User: MP) Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC} ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-4210U CPU @ 1.70GHz Percentage of memory in use: 32% Total physical RAM: 6067.27 MB Available physical RAM: 4072.49 MB Total Virtual: 7027.27 MB Available Virtual: 4665.86 MB ==================== Drives ================================ Drive c: (Acer) (Fixed) (Total:459.44 GB) (Free:385.52 GB) NTFS Drive e: (Nowy) (Fixed) (Total:454.1 GB) (Free:371.91 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: AA867219) Partition: GPT. ==================== End of Addition.txt ============================