Dodaje jeszcze jeden log tym razem addition.txt
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-12-2014
Ran by dominikalipiec at 2014-12-17 20:52:36
Running from C:\Users\dominikalipiec\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
==================== Installed Programs ======================
(Only the adware programs with " hidden " flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-558633662-1446165444-3728254979-1000\...\uTorrent) (Version: 3.4.2.34727 - BitTorrent Inc.)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 15.0.0.356 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated)
Adobe Flash Player 16 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 16.0.0.233 - Adobe Systems Incorporated)
Adobe Reader X (10.1.12) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.12 - Adobe Systems Incorporated)
Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98 - WildTangent) Hidden
AMD Catalyst Install Manager (HKLM\...\{6119B3A6-3603-9695-0398-CDF2AF0A13F8}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Ares 2.1.9 (HKLM-x32\...\Ares) (Version: 2.1.9-Build#3043 - Ares Development Group)
Ashampoo Burning Studio 2014 v.12.0.5 (HKLM-x32\...\{91B33C97-280F-B76D-E27B-E712D7041B76}_is1) (Version: 12.0.5 - Ashampoo GmbH & Co. KG)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software)
Backup Manager V3 (x32 Version: 3.0.0.90 - NTI Corporation) Hidden
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Broadcom Card Reader Driver Installer (HKLM\...\{4710662C-8204-4334-A977-B1AC9E547819}) (Version: 15.0.3.1 - Broadcom Corporation)
Broadcom NetLink Controller (HKLM\...\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}) (Version: 14.8.4.1 - Broadcom Corporation)
Build-a-lot 4 - Power Source (x32 Version: 2.2.0.97 - WildTangent) Hidden
Canon Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version: - )
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: - )
Canon MG5300 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5300_series) (Version: - )
Canon MG5300 series On-screen Manual (HKLM-x32\...\Canon MG5300 series On-screen Manual) (Version: - )
Canon MP Navigator EX 5.0 (HKLM-x32\...\MP Navigator EX 5.0) (Version: - )
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: - )
Canon Solution Menu EX (HKLM-x32\...\CanonSolutionMenuEX) (Version: - )
CCleaner (HKLM\...\CCleaner) (Version: 4.14 - Piriform)
Chronicles of Albian (x32 Version: 2.2.0.95 - WildTangent) Hidden
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Cradle of Rome 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
CyberLink MediaEspresso (HKLM-x32\...\InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}) (Version: 6.5.1720_38230 - CyberLink Corp.)
CyberLink PowerDVD 10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.3313.52 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Detektor Winampa (HKU\S-1-5-21-558633662-1446165444-3728254979-1000\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc)
Dora's World Adventure (x32 Version: 2.2.0.95 - WildTangent) Hidden
ETDWare PS/2-X64 8.0.6.0_WHQL (HKLM\...\Elantech) (Version: 8.0.6.0 - ELAN Microelectronic Corp.)
Evernote v. 4.5.1 (HKLM-x32\...\{28921580-E4BB-11E0-9FD7-1CC1DEF07CBE}) (Version: 4.5.1.5451 - Evernote Corp.)
FATE: The Cursed King (x32 Version: 2.2.0.97 - WildTangent) Hidden
Feature Update Service (YFD) (HKU\S-1-5-21-558633662-1446165444-3728254979-1000\...\YourFileDownloaderUpdater) (Version: 2.14.30 - ) & lt; ==== ATTENTION
Final Drive: Nitro (x32 Version: 2.2.0.95 - WildTangent) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Gateway Games (HKLM-x32\...\WildTangent gateway Master Uninstall) (Version: 1.0.2.5 - WildTangent)
Gateway MyBackup (HKLM-x32\...\InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}) (Version: 3.0.0.90 - NTI Corporation)
Gateway Power Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3008 - Gateway Incorporated)
Gateway Recovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3504 - Gateway Incorporated)
Gateway Registration (HKLM-x32\...\Gateway Registration) (Version: 1.04.3504 - Gateway Incorporated)
Gateway ScreenSaver (HKLM-x32\...\Gateway Screensaver) (Version: 1.1.0915.2011 - Gateway Incorporated)
Gateway Social Networks (HKLM-x32\...\InstallShield_{64EF903E-D00A-414C-94A4-FBA368FFCDC9}) (Version: 3.0.3106 - CyberLink Corp.)
Gateway Social Networks (x32 Version: 3.0.3106 - CyberLink Corp.) Hidden
Gateway Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3500 - Gateway Incorporated)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.95 - WildTangent) Hidden
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3501 - Gateway Incorporated)
Internet Security (x32 Version: 1.83.311.0 - F-Secure Corporation) Hidden
Java 7 Update 60 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417060FF}) (Version: 7.0.600 - Oracle)
Java 7 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217060FF}) (Version: 7.0.600 - Oracle)
Jewel Match 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Launch Manager (HKLM-x32\...\LManager) (Version: 5.1.7 - Gateway)
ManageEngine WiFi Manager 5 (HKLM-x32\...\{A4B3A346-594C-4CFD-83CB-FD209F8AD8E8}) (Version: - )
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - English (HKLM-x32\...\{90140011-0066-0409-0000-0000000FF1CE}) (Version: 14.0.5131.5000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Mystery of Mortlake Mansion (x32 Version: 2.2.0.98 - WildTangent) Hidden
Nokia Care Suite 5.0 (HKLM-x32\...\{624A73AA-3E66-4057-BAD0-E4192D6C2125}) (Version: 2011.51.2.63048 - Nokia)
OpenOffice 4.0.1 (HKLM-x32\...\{DA0106A3-216E-48DE-9CF6-655DA8FC1D22}) (Version: 4.01.9714 - Apache Software Foundation)
Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden
Polar Golfer (x32 Version: 2.2.0.95 - WildTangent) Hidden
Qtrax Player (HKLM-x32\...\{A3E9BA4F-2C4C-41F7-B7E0-6F47137688A2}) (Version: 1.00.0001 - Qtrax)
Qtrax Player (HKU\S-1-5-21-558633662-1446165444-3728254979-1000\...\1224167079.portal.qtrax.com) (Version: - portal.qtrax.com)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7240 - Realtek Semiconductor Corp.)
Rejestracja użytkownika drukarki Canon MG5300 series (HKLM-x32\...\Rejestracja użytkownika drukarki Canon MG5300 series) (Version: - )
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Softonic Assistant (HKU\S-1-5-21-558633662-1446165444-3728254979-1000\...\SoftonicAssistant) (Version: 0.1.6 - Softonic International S.A.)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Torchlight (x32 Version: 2.2.0.97 - WildTangent) Hidden
Unity Web Player (HKU\S-1-5-21-558633662-1446165444-3728254979-1000\...\UnityWebPlayer) (Version: - Unity Technologies ApS)
Video Web Camera (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 1.0.1904 - CyberLink Corp.)
Video Web Camera (x32 Version: 1.0.1904 - CyberLink Corp.) Hidden
Virtual Villagers 5 - New Believers (x32 Version: 2.2.0.97 - WildTangent) Hidden
VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
Welcome Center (HKLM-x32\...\Gateway Welcome Center) (Version: 1.02.3504 - Gateway Incorporated)
Winamp (HKLM-x32\...\Winamp) (Version: 5.63 - Nullsoft, Inc)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation)
WinRAR 5.01 (32-bitowy) (HKLM-x32\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
Zuma's Revenge (x32 Version: 2.2.0.97 - WildTangent) Hidden
Zune (HKLM\...\Zune) (Version: 04.08.2345.00 - Microsoft Corporation)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-558633662-1446165444-3728254979-1000_Classes\CLSID\{A75BE48D-BF58-4A8B-B96C-F9A09DFB9844}\InprocServer32 - & gt; %LOCALAPPDATA%\Pokki\ocdeskband_0.dll No File
==================== Restore Points =========================
19-11-2014 23:11:32 Windows Update
21-11-2014 21:44:04 Revo Uninstaller's restore point - WorldofTanks
24-11-2014 12:59:22 Kopia zapasowa systemu Windows
25-11-2014 11:19:53 Windows Update
25-11-2014 15:34:00 avast! antivirus system restore point
25-11-2014 15:41:21 Instalacja pakietu sterownika urządzenia: Avast Usługa sieciowa
27-11-2014 17:51:07 Removed SlimDrivers
28-11-2014 12:17:19 Windows Update
01-12-2014 16:23:03 Kopia zapasowa systemu Windows
02-12-2014 09:55:54 Windows Update
05-12-2014 13:55:22 Windows Update
08-12-2014 09:53:25 Kopia zapasowa systemu Windows
08-12-2014 11:03:40 Revo Uninstaller's restore point - Mozilla Firefox 30.0 (x86 pl)
09-12-2014 11:03:25 Windows Update
10-12-2014 09:36:25 Windows Update
10-12-2014 16:38:21 Revo Uninstaller's restore point - YAC App Store
10-12-2014 19:02:15 Revo Uninstaller's restore point - Malwarebytes Anti-Malware wersja 2.0.4.1028
10-12-2014 19:09:38 Revo Uninstaller's restore point - Yet Another Cleaner!
12-12-2014 14:02:03 Windows Update
13-12-2014 13:29:35 avast! antivirus system restore point
16-12-2014 10:56:40 Windows Update
17-12-2014 13:49:45 Revo Uninstaller's restore point - Opera Stable 26.0.1656.32
17-12-2014 14:01:40 Operacja przywracania
17-12-2014 17:38:52 Revo Uninstaller's restore point - Opera Stable 26.0.1656.60
17-12-2014 18:12:38 Revo Uninstaller's restore point - Opera Stable 26.0.1656.60
17-12-2014 18:17:15 Revo Uninstaller's restore point - Remove 4HD
17-12-2014 18:18:59 Revo Uninstaller's restore point - YTD Video Downloader 4.8.7
17-12-2014 18:20:55 Revo Uninstaller's restore point - NapiProjekt 2.0.0 (build 2151)
17-12-2014 18:22:43 Revo Uninstaller's restore point - ALLPlayer V5.X
17-12-2014 18:30:24 Revo Uninstaller's restore point - Yet Another Cleaner!
17-12-2014 18:34:06 Revo Uninstaller's restore point - Nokia Connectivity Cable Driver
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {0587CDC7-197A-4195-A17A-AF0BECD37C8F} - System32\Tasks\GoogleUpdateTaskMachineUA = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-14] (Google Inc.)
Task: {197CC2B1-E3C5-4130-95CD-4984C9A438E7} - System32\Tasks\{A6206FE6-917A-44C1-A2D9-C6C392F8FB4D} = & gt; C:\Program Files (x86)\Gateway Games\Bejeweled 2 Deluxe\Bejeweled 2 Deluxe-WT.exe [2010-10-27] (WildTangent, Inc.)
Task: {26E247EB-62D9-42F9-A4EE-8C1F74785B55} - System32\Tasks\{09A99040-E09F-443E-BD3F-725643E10B66} = & gt; C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe
Task: {28A516D9-C8AD-401B-A3F8-1B6990E32DC5} - System32\Tasks\{16EF3C43-0DBF-485E-AFE5-B0EAC5179EFA} = & gt; C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe
Task: {2AEDE6F8-76F4-40B5-9D57-763319117114} - System32\Tasks\{0F037284-A71C-4EF7-BAA1-AEF5B620E7DD} = & gt; pcalua.exe -a C:\Users\dominikalipiec\AppData\Local\Mobogenie\driver\Unzip_Files\huawei_666e959c0_64\DriverSetup.exe -d C:\Users\dominikalipiec\AppData\Local\Mobogenie\driver\Unzip_Files\huawei_666e959c0_64
Task: {325BCC20-A9E8-4DD7-B9BA-DFB06549293B} - System32\Tasks\{6DDC15B1-065E-4FBF-8384-6FE045408352} = & gt; pcalua.exe -a " C:\Program Files (x86)\PLAY ONLINE\uninst.exe "
Task: {3A46EFE2-C006-47DD-9B5E-311629D56C92} - System32\Tasks\Opera scheduled Autoupdate 1418834835 = & gt; C:\Program Files (x86)\Opera\launcher.exe
Task: {49641DD3-50AD-4BCB-B013-42B59CF1E773} - \LaunchApp No Task File & lt; ==== ATTENTION
Task: {52288A93-183C-49C7-AB38-9F15BB753BBF} - System32\Tasks\{D5D5036A-C0C5-4D50-9CB5-8B477DF51E43} = & gt; C:\Program Files (x86)\T-Mobile\InternetManager_H\Internet Manager.exe
Task: {64DD73EC-7310-4FCC-90FA-AC2B4D0485F7} - System32\Tasks\avast! Emergency Update = & gt; C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-11-25] (AVAST Software)
Task: {67A4650A-69C1-4B9A-BD2D-21B234E7FEF1} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask = & gt; Sc.exe start osppsvc
Task: {68DA7CFC-8BA3-4A18-9ECD-C963201F02F0} - System32\Tasks\{E5FBDA99-F0F1-4FC4-9676-AF26A1C0F398} = & gt; C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe
Task: {6E19D54E-4D32-418F-8C96-06CF97930EEF} - System32\Tasks\{902D9BEA-F461-471E-9C68-CC9E48BA7503} = & gt; pcalua.exe -a C:\Users\dominikalipiec\AppData\Roaming\qone8\UninstallManager.exe -c -ptid=cvs1
Task: {7646500E-45F2-4309-90DB-0172E55BA599} - System32\Tasks\Update Service HitsBlender = & gt; C:\Program Files (x86)\HitsBlenderUpdater\HitsBlenderUpdater.exe
Task: {824A2AA1-2ED1-4956-B6EA-E848EFE29DBA} - System32\Tasks\{73D9FF7D-6ABC-4E0C-8119-3A9220286C1E} = & gt; pcalua.exe -a " E:\PLAY ONLINE\Setup.exe " -d " E:\PLAY ONLINE "
Task: {972C16AA-AF77-4319-981D-4FC780938AD9} - System32\Tasks\DeviceDetector = & gt; C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2011-05-20] (CyberLink)
Task: {A3BD0624-0B1A-45AD-B729-67944F078370} - System32\Tasks\{A68665C8-4FF3-4EFD-92F1-4B0BA4B27A44} = & gt; pcalua.exe -a C:\Users\dominikalipiec\AppData\Roaming\webssearches\UninstallManager.exe -c -ptid=exp
Task: {A470D5F7-285B-4CCA-8543-4CAF7188BBFA} - System32\Tasks\{50438EE4-72C7-4202-AF8A-1651DF11C907} = & gt; pcalua.exe -a " C:\Program Files (x86)\T-Mobile\InternetManager_H\uninst.exe "
Task: {B141BB6C-A13E-4B72-B6B4-A09157822EF6} - System32\Tasks\{5750B376-2179-4AF9-A2D8-BD1F222166DF} = & gt; E:\DataCard_Setup64.exe
Task: {BB0854EB-9A54-45F1-B9F0-36CDA8B22258} - System32\Tasks\{7A5A4563-3E6C-43BB-B912-53B70E6B7FB9} = & gt; C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe
Task: {BF7ABB81-7239-49D9-9EF9-418963163AAD} - System32\Tasks\{0FA9CF73-28D6-4D01-A8BA-C7C2A35894C6} = & gt; C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe
Task: {C37C1ADE-D703-45CC-A960-F2309D831434} - System32\Tasks\{E0C384D4-803E-42B4-A715-A047A88B2BBE} = & gt; C:\Program Files (x86)\Opera\launcher.exe
Task: {C81ACC06-F75C-4F7D-B946-AC97DE0F5255} - System32\Tasks\{DFDDE264-67E8-484A-814E-E509F0B25312} = & gt; C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe
Task: {C9A48B58-744B-49F1-899A-6818216C4EDF} - System32\Tasks\{0F575FC6-E710-454D-81F5-BDC30F5800A1} = & gt; pcalua.exe -a C:\Users\dominikalipiec\Downloads\Adobe-Reader(12627).exe -d C:\Users\dominikalipiec\Downloads
Task: {D6119BF2-060D-4E04-80B6-343151267F81} - System32\Tasks\Adobe Flash Player Updater = & gt; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-17] (Adobe Systems Incorporated)
Task: {D727D72D-CAAB-4D2C-ADC6-BC731E49B7C6} - System32\Tasks\GoogleUpdateTaskMachineCore = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-14] (Google Inc.)
Task: {E9DEDDE9-EB1E-4784-967D-46924BADCB00} - System32\Tasks\{4EED2E27-518C-4177-A5B7-7B8D973F8012} = & gt; C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe
Task: {ED91252D-D9E0-4DA5-AE67-A830F9E9B1AD} - System32\Tasks\{36ED38CE-15C3-49CC-8F41-38AFDAE0971F} = & gt; C:\Program Files (x86)\Norton Security Scan\Engine\4.0.1.16\Nss.exe
Task: {F18FA585-628C-45E0-B6F0-35DFD7712302} - System32\Tasks\CCleanerSkipUAC = & gt; C:\Program Files\CCleaner\CCleaner.exe [2014-05-20] (Piriform Ltd)
Task: {F2C13CB0-EE59-488A-A68D-572B7E164E9A} - System32\Tasks\{FB202ED6-998E-4EB5-B8C3-0466D93D3C0A} = & gt; C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe
Task: {F9507834-2F47-4C1F-9C54-9BA2E4793F83} - \YourFile DownloaderUpdate No Task File & lt; ==== ATTENTION
Task: {FCF6E831-997D-4629-B891-B2D743529F82} - System32\Tasks\{39A923A6-180A-4E1F-9542-B4090AFFC4BC} = & gt; C:\Program Files (x86)\Makayama Interactive\Easy WiFi Radar\Easy WIFI Radar.exe
Task: {FE60CEB0-17AC-4641-B841-8D42471B8345} - System32\Tasks\{0A9ED0A8-BD46-44E6-B0BC-AD30D4B39524} = & gt; C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job = & gt; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2011-03-14 16:27 - 2011-03-14 16:27 - 00346976 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe
2013-01-28 18:28 - 2011-02-07 08:56 - 00138192 _____ () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
2014-11-25 15:40 - 2014-11-25 15:40 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll
2014-11-25 15:40 - 2014-11-25 15:40 - 05851328 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll
2014-10-23 17:44 - 2014-07-18 11:20 - 02229592 _____ () C:\Program Files (x86)\iSafe\appstore\ipcdl.exe
2014-12-17 20:30 - 2014-12-17 20:31 - 02166272 _____ () C:\Users\dominikalipiec\Downloads\adwcleaner_4.105 (1).exe
2014-10-23 17:44 - 2014-07-18 11:20 - 00298840 _____ () C:\Program Files (x86)\iSafe\appstore\asSvc.dll
2014-10-23 17:44 - 2014-07-18 11:21 - 00066392 _____ () C:\Program Files (x86)\iSafe\appstore\zlib1.dll
2014-10-23 17:44 - 2014-07-18 11:20 - 00093016 _____ () C:\Program Files (x86)\iSafe\appstore\curlpp.dll
2014-10-23 17:44 - 2014-07-18 11:20 - 00427864 _____ () C:\Program Files (x86)\iSafe\appstore\ipcproxy.dll
2014-12-17 19:31 - 2014-12-17 19:31 - 02908160 _____ () C:\Program Files\AVAST Software\Avast\defs\14121701\algo.dll
2014-11-25 15:40 - 2014-11-25 15:40 - 04495336 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll
2011-03-09 18:13 - 2011-03-09 18:13 - 00465640 _____ () C:\Program Files (x86)\NTI\Gateway MyBackup\sqlite3.dll
2011-03-09 18:12 - 2011-03-09 18:12 - 01081664 _____ () C:\Program Files (x86)\NTI\Gateway MyBackup\ACE.dll
2011-03-09 18:12 - 2011-03-09 18:12 - 00125760 _____ () C:\Program Files (x86)\NTI\Gateway MyBackup\MailConverter32.dll
2014-11-25 15:40 - 2014-11-25 15:40 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-12-11 10:14 - 2014-12-06 02:50 - 01077064 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\libglesv2.dll
2014-12-11 10:14 - 2014-12-06 02:50 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\libegl.dll
2014-12-11 10:14 - 2014-12-06 02:50 - 09009480 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\pdf.dll
2014-12-11 10:14 - 2014-12-06 02:50 - 01677128 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\ffmpegsumo.dll
2014-12-11 10:14 - 2014-12-06 02:50 - 14913352 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.95\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\ProgramData\Temp:0DFE2AE1
AlternateDataStreams: C:\ProgramData\Temp:2CB9631F
AlternateDataStreams: C:\Users\dominikalipiec\Downloads:Shareaza.GUID
AlternateDataStreams: C:\Users\dominikalipiec\Downloads\wiadomosc.eml:OECustomProperty
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The " AlternateShell " will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys = & gt; " " = " Driver "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart = & gt; " " = " Service "
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys = & gt; " " = " Driver "
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk = & gt; C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup
MSCONFIG\startupreg: Adobe ARM = & gt; " C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe "
MSCONFIG\startupreg: AlcoholAutomount = & gt; " C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe " -automount
MSCONFIG\startupreg: ALLUpdate = & gt; " C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe " " sleep "
MSCONFIG\startupreg: BackupManagerTray = & gt; " C:\Program Files (x86)\NTI\Gateway MyBackup\BackupManagerTray.exe " -h -k
MSCONFIG\startupreg: CanonMyPrinter = & gt; C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
MSCONFIG\startupreg: CanonSolutionMenuEx = & gt; C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
MSCONFIG\startupreg: ETDCtrl = & gt; %ProgramFiles%\Elantech\ETDCtrl.exe
MSCONFIG\startupreg: Google+ Auto Backup = & gt; " C:\Users\dominikalipiec\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe " /autostart
MSCONFIG\startupreg: LManager = & gt; C:\Program Files (x86)\Launch Manager\LManager.exe
MSCONFIG\startupreg: uTorrent = & gt; " C:\Program Files (x86)\uTorrent\uTorrent.exe " /MINIMIZED
MSCONFIG\startupreg: Zune Launcher = & gt; " C:\Program Files\Zune\ZuneLauncher.exe "
========================= Accounts: ==========================
Administrator (S-1-5-21-558633662-1446165444-3728254979-500 - Administrator - Disabled)
dominikalipiec (S-1-5-21-558633662-1446165444-3728254979-1000 - Administrator - Enabled) = & gt; C:\Users\dominikalipiec
Gość (S-1-5-21-558633662-1446165444-3728254979-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-558633662-1446165444-3728254979-1042 - Limited - Enabled)
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (12/17/2014 08:29:12 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 990x80041003
Error: (12/17/2014 08:01:55 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 990x80041003
Error: (12/17/2014 07:57:27 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 990x80041003
Error: (12/17/2014 07:31:23 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 990x80041003
Error: (12/17/2014 06:11:03 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 990x80041003
System errors:
=============
Error: (12/17/2014 08:28:42 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi vToolbarUpdater18.1.0 z powodu następującego błędu:
%%2
Error: (12/17/2014 08:28:31 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Poprzednie zamknięcie systemu przy 20:16:18 na 2014-12-17 było nieoczekiwane.
Error: (12/17/2014 08:01:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi vToolbarUpdater18.1.0 z powodu następującego błędu:
%%2
Error: (12/17/2014 07:56:57 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi vToolbarUpdater18.1.0 z powodu następującego błędu:
%%2
Error: (12/17/2014 07:56:47 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Poprzednie zamknięcie systemu przy 19:36:43 na 2014-12-17 było nieoczekiwane.
Error: (12/17/2014 07:31:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi vToolbarUpdater18.1.0 z powodu następującego błędu:
%%2
Error: (12/17/2014 07:30:57 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Poprzednie zamknięcie systemu przy 19:00:51 na 2014-12-17 było nieoczekiwane.
Error: (12/17/2014 06:17:53 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa 4hdupdater niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.
Error: (12/17/2014 06:10:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi vToolbarUpdater18.1.0 z powodu następującego błędu:
%%2
Microsoft Office Sessions:
=========================
Error: (12/17/2014 08:29:12 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 990x80041003
Error: (12/17/2014 08:01:55 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 990x80041003
Error: (12/17/2014 07:57:27 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 990x80041003
Error: (12/17/2014 07:31:23 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 990x80041003
Error: (12/17/2014 06:11:03 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA " Win32_Processor " AND TargetInstance.LoadPercentage & gt; 990x80041003
==================== Memory info ===========================
Processor: AMD A6-3420M APU with Radeon(tm) HD Graphics
Percentage of memory in use: 21%
Total physical RAM: 11754.9 MB
Available physical RAM: 9252.62 MB
Total Pagefile: 23507.98 MB
Available Pagefile: 20750.43 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB
==================== Drives ================================
Drive c: (Gateway) (Fixed) (Total:680.54 GB) (Free:460.04 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: 146D6266)
Partition 1: (Not Active) - (Size=18 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=680.5 GB) - (Type=07 NTFS)
==================== End Of Log ============================