Additional scan result of Farbar Recovery Scan Tool (x64) Version:20-07-2015 Ran by marek at 2015-07-23 00:19:31 Running from C:\Users\marek\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3963615497-4212273936-1433084501-500 - Administrator - Disabled) => C:\Users\Administrator Gość (S-1-5-21-3963615497-4212273936-1433084501-501 - Limited - Disabled) marek (S-1-5-21-3963615497-4212273936-1433084501-1001 - Administrator - Enabled) => C:\Users\marek ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Norton Internet Security (Disabled - Out of date) {53C7D717-52E2-B95E-FA61-6F32ECC805DB} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE} AS: Norton Internet Security (Disabled - Out of date) {E8A636F3-74D8-B6D0-C0D1-5440974F4F66} FW: Norton Internet Security (Disabled) {6BFC5632-188D-B806-D13E-C607121B42A0} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 3Connect (HKLM-x32\...\{A899DA1F-D626-401C-8651-F2921E3B4CB3}) (Version: 2.0.1 - 3) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated) Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.4.634 - Adobe Systems, Inc.) AVG 2015 (HKLM\...\AVG) (Version: 2015.0.6086 - AVG Technologies) AVG 2015 (Version: 15.0.4392 - AVG Technologies) Hidden AVG 2015 (Version: 15.0.6086 - AVG Technologies) Hidden AVG SafeGuard by Ask (HKLM-x32\...\{41564753-5032-2D53-4700-A758B70C1D00}) (Version: 12.29.0.1904 - APN, LLC) Battlefield 1942™ (HKLM-x32\...\{5BE7BD06-512B-43bf-AD78-3BD2A5F5F7B3}) (Version: 1.6.20.0 - Electronic Arts) Connected Music powered by Universal Music Group version 1.0 (HKLM-x32\...\{46037DC7-F927-46DF-935F-D6F122BDD34B}_is1) (Version: 1.0 - Snowite) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1.5407 - CyberLink Corp.) CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.1.1916 - CyberLink Corp.) CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.1.1926 - CyberLink Corp.) CyberLink PowerDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.6.4319 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.4.5527 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Energy Star (HKLM\...\{0FA995CC-C849-4755-B14B-5404CC75DC24}) (Version: 1.0.8 - Hewlett-Packard) Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.134 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden Hewlett-Packard ACLM.NET v1.2.0.0 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP Documentation (HKLM-x32\...\{8E7CB625-076C-4812-87B9-A2695C2CFABF}) (Version: 1.1.0.0 - Hewlett-Packard) HP Quick Launch (HKLM-x32\...\{4ED7050C-9332-4FB2-AB07-E94F25A53D39}) (Version: 3.0.3 - Hewlett-Packard Company) HP Registration Service (HKLM\...\{E4D6CCF2-0AAF-4B9C-9DE5-893EDC9B4BAA}) (Version: 1.0.5976.4186 - Hewlett-Packard) HP Software Framework (HKLM-x32\...\{04352528-0DBF-400F-980C-9BF40E66EE19}) (Version: 4.6.8.1 - Hewlett-Packard Company) HP Support Assistant (HKLM-x32\...\{B8019B54-F9BE-490A-9619-6D06F18F129F}) (Version: 7.0.32.44 - Hewlett-Packard Company) HP Utility Center (HKLM-x32\...\{0C57987A-A03A-4B95-A309-D23F78F406CA}) (Version: 1.0.7 - Hewlett-Packard) HP Wireless Button Driver (HKLM-x32\...\{941DE69D-6CEE-4171-8F1F-3D7E352AA498}) (Version: 1.0.5.1 - Hewlett-Packard Company) Huawei modem (HKLM-x32\...\Huawei Modems) (Version: - ) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2828 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mobile Partner (HKLM-x32\...\Mobile Partner) (Version: 21.003.28.00.159 - Huawei Technologies Co.,Ltd) Mozilla Firefox 39.0 (x86 pl) (HKLM-x32\...\Mozilla Firefox 39.0 (x86 pl)) (Version: 39.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) Norton Internet Security (HKLM-x32\...\NIS) (Version: 20.6.0.27 - Symantec Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.1.10.2728 - Electronic Arts, Inc.) PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) PLAY ONLINE (HKLM-x32\...\PLAY ONLINE) (Version: 21.005.11.14.264 - Huawei Technologies Co.,Ltd) Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu) Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.206 - Nazwa firmy) Qualcomm Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Qualcomm Atheros) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.2.8400.29029 - Realtek Semiconductor Corp.) SimCity 2000 Special Edition (HKLM-x32\...\{59D2C751-F7BE-4E9F-9C8C-1F16013802C7}) (Version: 2.0.0.1 - Electronic Arts) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.12 - Synaptics Incorporated) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= 22-06-2015 21:50:46 Zaplanowany punkt kontrolny 06-07-2015 13:31:35 Zaplanowany punkt kontrolny 14-07-2015 10:09:39 Zaplanowany punkt kontrolny 16-07-2015 23:34:53 Installed AVG 2015 16-07-2015 23:35:30 Installed AVG 2015 22-07-2015 23:53:49 Removed Bonjour ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {00698ED1-F456-4A7A-BD9E-1AF4F3ADC3E9} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08] (CyberLink) Task: {3BD5EF95-1784-424D-B88D-1D9C2E685A92} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-10] (Google Inc.) Task: {4714611B-5897-4AB4-BCB8-05C76A0F31ED} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-08-29] (Synaptics Incorporated) Task: {4DC97E45-B469-4727-AE0C-7CB23BCD0327} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-10] (Google Inc.) Task: {5B30079F-9C27-44D8-89FF-9FA6C58FDDED} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\WSCStub.exe [2015-07-09] (Symantec Corporation) Task: {697DF389-D65F-4050-87B2-598A7BF8B52C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-08-10] (Hewlett-Packard Company) Task: {7F4DC070-4CF2-4959-8DBD-A9620C52836C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-14] (Adobe Systems Incorporated) Task: {85F9F4FA-8CAD-4966-BE03-584476C280B2} - System32\Tasks\{330BA777-56C3-42C8-8D2A-F07768346E41} => pcalua.exe -a "C:\Program Files (x86)\Plus-HD-9.6\Uninstall.exe" -c /fcp=1 Task: {944AA13A-BF3C-456C-86CB-6465E8DF3A15} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2012-07-27] (CyberLink) Task: {98FF3C71-D6C3-4D97-BFC4-565D3C789187} - System32\Tasks\Norton Internet Security\Norton Error Analyzer => C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\SymErr.exe [2013-06-04] (Symantec Corporation) Task: {B7DFEDC2-761B-448F-B981-55BD4E5CA2A3} - System32\Tasks\Norton Internet Security\Norton Error Processor => C:\Program Files (x86)\Norton Internet Security\Engine\20.6.0.27\SymErr.exe [2013-06-04] (Symantec Corporation) Task: {BB50EED6-BF94-4892-9026-CF293E3073AD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-08-10] (Hewlett-Packard Company) Task: {CFF34733-6990-4AE5-B66F-2713CCFC0C51} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2012-08-07] (Hewlett-Packard Company) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2011-03-14 17:27 - 2011-03-14 17:27 - 00346976 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2015-01-15 01:14 - 2015-01-15 01:14 - 00218624 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe 2014-05-31 19:58 - 2014-05-31 19:57 - 00246112 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\ouc.exe 2014-05-31 19:57 - 2014-05-31 19:57 - 00514048 _____ () C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe 2012-08-08 22:17 - 2012-08-08 22:17 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-08-07 18:15 - 2012-08-07 18:15 - 00384128 _____ () C:\Program Files (x86)\Bluetooth Suite\ContactsApi.dll 2012-08-07 18:11 - 2012-08-07 18:11 - 00020992 _____ () C:\Program Files (x86)\Bluetooth Suite\L10n\pl-PL\BtTray.pl-PL.dll 2015-01-15 01:14 - 2015-01-15 01:14 - 00011362 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\mingwm10.dll 2015-01-15 01:14 - 2015-01-15 01:14 - 00043008 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\libgcc_s_dw2-1.dll 2015-01-15 01:14 - 2015-01-15 01:14 - 02415104 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtCore4.dll 2015-01-15 01:14 - 2015-01-15 01:14 - 01148416 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtNetwork4.dll 2014-05-31 19:58 - 2014-05-31 19:57 - 00011362 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\mingwm10.dll 2014-05-31 19:58 - 2014-05-31 19:57 - 00043008 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\libgcc_s_dw2-1.dll 2014-05-31 19:58 - 2014-05-31 19:57 - 02415104 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtCore4.dll 2014-05-31 19:58 - 2014-05-31 19:57 - 01148416 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtNetwork4.dll 2014-05-31 19:58 - 2014-05-31 19:57 - 00384512 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QueryStrategy.dll 2014-05-31 19:58 - 2014-05-31 19:57 - 00398336 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtXml4.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00428032 _____ () C:\Program Files (x86)\PLAY ONLINE\core.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00261632 _____ () C:\Program Files (x86)\PLAY ONLINE\sdk.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00011362 _____ () C:\Program Files (x86)\PLAY ONLINE\mingwm10.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00043008 _____ () C:\Program Files (x86)\PLAY ONLINE\libgcc_s_dw2-1.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 02415104 _____ () C:\Program Files (x86)\PLAY ONLINE\QtCore4.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 09515520 _____ () C:\Program Files (x86)\PLAY ONLINE\QtGui4.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00381952 _____ () C:\Program Files (x86)\PLAY ONLINE\Proxy.DLL 2014-05-31 19:57 - 2014-05-31 19:57 - 00218112 _____ () C:\Program Files (x86)\PLAY ONLINE\Common.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00135168 _____ () C:\Program Files (x86)\PLAY ONLINE\Trace.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00545280 _____ () C:\Program Files (x86)\PLAY ONLINE\PluginContainer.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00238080 _____ () C:\Program Files (x86)\PLAY ONLINE\AtCodec.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00301056 _____ () C:\Program Files (x86)\PLAY ONLINE\DeviceSrvPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00235008 _____ () C:\Program Files (x86)\PLAY ONLINE\NetSrvPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00133120 _____ () C:\Program Files (x86)\PLAY ONLINE\OSDialup.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00159232 _____ () C:\Program Files (x86)\PLAY ONLINE\XCodec.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00157184 _____ () C:\Program Files (x86)\PLAY ONLINE\DataServicePlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00176128 _____ () C:\Program Files (x86)\PLAY ONLINE\CallSrvPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00264704 _____ () C:\Program Files (x86)\PLAY ONLINE\AddrBookSrvPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00217600 _____ () C:\Program Files (x86)\PLAY ONLINE\SmsSrvPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00142336 _____ () C:\Program Files (x86)\PLAY ONLINE\USSDSrvPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00156672 _____ () C:\Program Files (x86)\PLAY ONLINE\STKSrvPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00338432 _____ () C:\Program Files (x86)\PLAY ONLINE\DeviceAppPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00065536 _____ () C:\Program Files (x86)\PLAY ONLINE\OSPowerMgr.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00106496 _____ () C:\Program Files (x86)\PLAY ONLINE\Win7Support.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 01077248 _____ () C:\Program Files (x86)\PLAY ONLINE\AddrBookPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00670720 _____ () C:\Program Files (x86)\PLAY ONLINE\SmsAppPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00550400 _____ () C:\Program Files (x86)\PLAY ONLINE\CallAppPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00547840 _____ () C:\Program Files (x86)\PLAY ONLINE\CallLogSrvPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00158720 _____ () C:\Program Files (x86)\PLAY ONLINE\NetConnectSrvPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00211968 _____ () C:\Program Files (x86)\PLAY ONLINE\DialUpPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00101376 _____ () C:\Program Files (x86)\PLAY ONLINE\OSAdapt.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00180224 _____ () C:\Program Files (x86)\PLAY ONLINE\NDISPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00131072 _____ () C:\Program Files (x86)\PLAY ONLINE\OSNDIS.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 01101824 _____ () C:\Program Files (x86)\PLAY ONLINE\NDISAPI.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00278528 _____ () C:\Program Files (x86)\PLAY ONLINE\NetInfoSrvPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00062976 _____ () C:\Program Files (x86)\PLAY ONLINE\OSCall.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00495104 _____ () C:\Program Files (x86)\PLAY ONLINE\DeviceMgrUIPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00190464 _____ () C:\Program Files (x86)\PLAY ONLINE\XFramePlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00123392 _____ () C:\Program Files (x86)\PLAY ONLINE\ATR2SMgr.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00310272 _____ () C:\Program Files (x86)\PLAY ONLINE\StatusBarMgrPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00118272 _____ () C:\Program Files (x86)\PLAY ONLINE\LayoutPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00427008 _____ () C:\Program Files (x86)\PLAY ONLINE\DialupUIPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00334848 _____ () C:\Program Files (x86)\PLAY ONLINE\MainpagePlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 01148416 _____ () C:\Program Files (x86)\PLAY ONLINE\QtNetwork4.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00093184 _____ () C:\Program Files (x86)\PLAY ONLINE\NotifyServicePlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00333312 _____ () C:\Program Files (x86)\PLAY ONLINE\NetConnectPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00249344 _____ () C:\Program Files (x86)\PLAY ONLINE\MenuMgrPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00384512 _____ () C:\Program Files (x86)\PLAY ONLINE\USSDUIPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00483328 _____ () C:\Program Files (x86)\PLAY ONLINE\NetInfoUIExPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00808960 _____ () C:\Program Files (x86)\PLAY ONLINE\SMSUIPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00739328 _____ () C:\Program Files (x86)\PLAY ONLINE\AddrBookUIPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00269824 _____ () C:\Program Files (x86)\PLAY ONLINE\LiveUpdateInterface.DLL 2014-05-31 19:57 - 2014-05-31 19:57 - 00240128 _____ () C:\Program Files (x86)\PLAY ONLINE\ToolBarMgrPlugin.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00082944 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qgif4.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00081920 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qico4.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00192000 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qjpeg4.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00350720 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qmng4.dll 2014-05-31 19:57 - 2014-05-31 19:57 - 00370176 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qtiff4.dll 2012-10-27 17:38 - 2012-06-08 05:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2012-06-08 11:34 - 2012-06-08 11:34 - 00016400 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll 2012-10-27 17:14 - 2012-06-26 11:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2014-12-14 20:12 - 2012-05-30 08:51 - 00699280 ____R () C:\PROGRAM FILES (X86)\NORTON INTERNET SECURITY\ENGINE\20.6.0.27\wincfi39.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3963615497-4212273936-1433084501-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Hewlett-Packard Backgrounds\backgroundDefault.jpg DNS Servers: 192.168.137.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{73E37A4D-500D-4F0E-96AB-CACA8AB0B043}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{77E2D9C5-BE67-47A9-A2C3-2843074B5159}] => (Allow) LPort=2869 FirewallRules: [{FF40765B-1533-428E-9F11-D66A72D1F922}] => (Allow) LPort=1900 FirewallRules: [{3EA305FB-6A51-4F2B-99B8-3215D0925989}] => (Allow) C:\Program Files (x86)\Bluetooth Suite\Btvstack.exe FirewallRules: [{AA54D403-347D-4F4C-9122-1F4D8611D867}] => (Allow) C:\Program Files (x86)\Bluetooth Suite\BtTray.exe FirewallRules: [{7AB41B64-E006-4041-BACE-4B178CDA72D9}] => (Allow) C:\Program Files (x86)\Bluetooth Suite\BtTray.exe FirewallRules: [{8989A309-C763-45E9-B6CB-4EF4A287CDEF}] => (Allow) C:\Program Files (x86)\Bluetooth Suite\Win7Ui.exe FirewallRules: [{6033EBB6-C78F-44CE-B8F9-41C6B1CE24BA}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE FirewallRules: [TCP Query User{4C4D7569-297B-4CA2-B45C-601D3294AB90}C:\program files (x86)\bluetooth suite\btvstack.exe] => (Block) C:\program files (x86)\bluetooth suite\btvstack.exe FirewallRules: [UDP Query User{DB196E3C-9C20-4518-B4C2-0138724B9F89}C:\program files (x86)\bluetooth suite\btvstack.exe] => (Block) C:\program files (x86)\bluetooth suite\btvstack.exe FirewallRules: [TCP Query User{39E55C37-B8AC-44FD-89C8-3646E7B6D2C3}C:\program files (x86)\bluetooth suite\bttray.exe] => (Block) C:\program files (x86)\bluetooth suite\bttray.exe FirewallRules: [UDP Query User{7C3EA2DD-8B71-4E3C-BB29-35735922388C}C:\program files (x86)\bluetooth suite\bttray.exe] => (Block) C:\program files (x86)\bluetooth suite\bttray.exe FirewallRules: [{A347300C-51C9-4773-80F9-F4846D7CCD02}] => (Allow) C:\Program Files (x86)\Origin Games\SimCity 2000 SE\Game\Game\DOSBox\DOSBox.exe FirewallRules: [{C5A12B8D-263A-4CBD-9CBD-4E7B0881E5BA}] => (Allow) C:\Program Files (x86)\Origin Games\SimCity 2000 SE\Game\Game\DOSBox\DOSBox.exe FirewallRules: [{2EE831F6-E388-4374-88DC-E68562E20F86}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 1942\BF1942.exe FirewallRules: [{09D29153-A299-4F47-9328-BBB7017C9F7D}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 1942\BF1942.exe FirewallRules: [{FEE4F3B6-A361-4DC0-B973-1D2555009D30}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{0425EC22-7AFF-4C0B-B341-F826358DE073}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{48E97B7C-5585-4934-AC41-1E6AED19A1F0}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{6176DB27-DA8B-443C-BB11-49F5B62B44EB}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{648E4E3B-92CD-467E-A4A1-FD8B60C81A45}F:\adober.exe] => (Allow) F:\adober.exe FirewallRules: [UDP Query User{7F04899F-93F3-4332-A9FA-39E57829D73F}F:\adober.exe] => (Allow) F:\adober.exe FirewallRules: [{57A2B4A6-9C93-4BE1-9D49-4D3DB372B2EE}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe FirewallRules: [{0D5E1119-7066-40C6-9BCC-58C9141BE949}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe FirewallRules: [{FA50FCF2-0548-42C4-828B-EAE2E6295874}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe FirewallRules: [{6880786D-4A5C-4FFE-A404-65A30D315C5D}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe FirewallRules: [{8B458512-9A45-4F5B-9D86-BB22D328F476}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{81DDAA9C-E812-4F08-B540-7CC5DA5EAAB1}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{8C9CE5A9-6004-451C-A3E0-7AF750EA8660}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe FirewallRules: [{BD80402F-8CA3-47F5-A78C-FC6965A19346}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe FirewallRules: [{8C7676B9-9058-46AE-B272-8791A3D045DA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/23/2015 12:13:38 AM) (Source: SideBySide) (EventID: 78) (User: ) Description: Nie można wygenerować kontekstu aktywacji dla „C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest1”. Błąd w pliku manifestu lub w pliku zasad „C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest2” w wierszu C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest3. Wersja składnika wymagana przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna. Składniki powodujące konflikt: Składnik 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifest. Składnik 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifest. Error: (07/23/2015 12:02:08 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 39.0.0.5659, sygnatura czasowa: 0x55934d06 Nazwa modułu powodującego błąd: mozalloc.dll, wersja: 39.0.0.5659, sygnatura czasowa: 0x55933a83 Kod wyjątku: 0x80000003 Przesunięcie błędu: 0x00001aa1 Identyfikator procesu powodującego błąd: 0x33c Godzina uruchomienia aplikacji powodującej błąd: 0xplugin-container.exe0 Ścieżka aplikacji powodującej błąd: plugin-container.exe1 Ścieżka modułu powodującego błąd: plugin-container.exe2 Identyfikator raportu: plugin-container.exe3 Pełna nazwa pakietu powodującego błąd: plugin-container.exe4 Identyfikator aplikacji względem pakietu powodującego błąd: plugin-container.exe5 Error: (07/20/2015 11:42:21 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2189187 Error: (07/20/2015 11:42:21 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2189187 Error: (07/20/2015 11:42:21 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/20/2015 11:42:20 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2187687 Error: (07/20/2015 11:42:20 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2187687 Error: (07/20/2015 11:42:20 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/20/2015 11:42:18 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2186296 Error: (07/20/2015 11:42:18 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2186296 System errors: ============= Error: (07/23/2015 12:12:13 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi PLAY ONLINE. OUC z powodu następującego błędu: %%1053 Error: (07/23/2015 12:12:13 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą PLAY ONLINE. OUC. Error: (07/23/2015 12:12:11 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi Mobile Partner. OUC z powodu następującego błędu: %%1053 Error: (07/23/2015 12:12:11 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Mobile Partner. OUC. Error: (07/23/2015 12:10:47 AM) (Source: Service Control Manager) (EventID: 7043) (User: ) Description: Usługa Windows Update nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem. Error: (07/23/2015 12:10:12 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi Appinfo. Error: (07/23/2015 12:09:47 AM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Menedżer sterowania usługami próbował podjąć akcję korekcyjną (Uruchom usługę ponownie) po nieoczekiwanym zakończeniu usługi Windows Search, ale ta akcja nie powiodła się przy następującym błędzie: %%1056. Error: (07/23/2015 12:09:18 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Bufor wydruku niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 5000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (07/23/2015 12:09:17 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 2. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Error: (07/23/2015 12:09:17 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Usługa Intel(R) Capability Licensing Service Interface niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. Microsoft Office: ========================= Error: (07/23/2015 12:13:38 AM) (Source: SideBySide) (EventID: 78) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_418ab7ef718b27ef.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9200.16579_none_8937eec6860750f5.manifestC:\Users\marek\Downloads\SoftonicDownloader_dla_photoscape.exe Error: (07/23/2015 12:02:08 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: plugin-container.exe39.0.0.565955934d06mozalloc.dll39.0.0.565955933a838000000300001aa133c01d0c4c8a5381ed4C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll4b657f6a-30bd-11e5-be9a-20689dc5c3df Error: (07/20/2015 11:42:21 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2189187 Error: (07/20/2015 11:42:21 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2189187 Error: (07/20/2015 11:42:21 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/20/2015 11:42:20 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2187687 Error: (07/20/2015 11:42:20 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2187687 Error: (07/20/2015 11:42:20 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (07/20/2015 11:42:18 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2186296 Error: (07/20/2015 11:42:18 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2186296 ==================== Memory info =========================== Processor: Intel(R) Pentium(R) CPU B980 @ 2.40GHz Percentage of memory in use: 43% Total physical RAM: 3983.27 MB Available physical RAM: 2247.34 MB Total Virtual: 4687.27 MB Available Virtual: 2666.33 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:450.77 GB) (Free:408.18 GB) NTFS ==>[system with boot components (obtained from reading drive)] Drive d: (RECOVERY) (Fixed) (Total:14.22 GB) (Free:1.88 GB) NTFS ==>[system with boot components (obtained from reading drive)] Drive f: () (Removable) (Total:0.92 GB) (Free:0.42 GB) FAT Drive g: (PLAY ONLINE) (CDROM) (Total:0.03 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: B96750DB) Partition: GPT Partition Type. ======================================================== Disk: 1 (Size: 947 MB) (Disk ID: 00000000) Partition: GPT Partition Type. ==================== End of log ============================