Elektroda.pl
Elektroda.pl
X

Search our partners

Find the latest content on electronic components. Datasheets.com
Please add exception to AdBlock for elektroda.pl.
If you watch the ads, you support portal and users.

Błąd podczas zamykania systemu

Gacek227 14 Nov 2014 19:00 1725 12
  • #1
    Gacek227
    Level 9  
    Witam,
    Podczas zamykania systemu, bądź ponownego uruchomienia za każdym razem wyskakuje mi następująca rzecz.
    Błąd podczas zamykania systemu
  • #2
    kokapetyl
    Level 43  
    Czy przed zamknięciem systemu, zamykasz wszystkie otwarte programy strony internetowe itp.
    Może klikasz zamknij system z otwartymi programami ?
  • #3
    Gacek227
    Level 9  
    Tak wszystko jest zamknięte nawet, gdy wyłączę komputer, od razu po włączeniu go ten błąd.
  • #4
    swiercm
    Moderator on vacation ...
    Przeskanuj profilaktycznie system MBAM: https://www.malwarebytes.org/
    ADWCleaner: http://www.bleepingcomputer.com/download/adwcleaner/dl/125/
    CCLeaner (opcja czyszczenia plików tymczasowych i opcja naprawy rejestru): http://www.filehippo.com/pl/download_ccleaner/download/78325cb97c23cd95a395335c7a6bc5bd/

    Zamieść proszę logi z FRST w załącznikach (2 pliki - frst.txt oraz addition.txt).
    Zamieść zrzut ekranu z CristalDiskInfo:
    http://crystalmark.info/download/index-e.html
  • #5
    Gacek227
    Level 9  
    Błąd podczas zamykania systemu


    FRST.txt
    Spoiler:
    Code:
    Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:31-08-2014
    
    Ran by Gacek227 (administrator) on GACEK on 14-11-2014 20:40:14
    Running from C:\Documents and Settings\Gacek227\Moje dokumenty\Pobrane
    Platform: Microsoft Windows XP Professional Dodatek Service Pack 3 (X86) OS Language: Polski
    Internet Explorer Version 6
    Boot Mode: Normal

    The only official download link for FRST:
    Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
    Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
    Download link from any site other than Bleeping Computer is unpermitted or outdated.
    See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

    ==================== Processes (Whitelisted) =================

    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

    (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
    (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
    (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
    (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
    (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE
    (LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
    (Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
    (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
    (Atheros) C:\WINDOWS\system32\acs.exe
    (Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe
    (LogMeIn, Inc.) C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe
    (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
    (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
    (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
    (Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
    (Skype Technologies) C:\Program Files\Skype\Updater\Updater.exe
    (LogMeIn Inc.) C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
    (Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
    (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe


    ==================== Registry (Whitelisted) ==================

    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

    HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
    HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-07-30] (AVAST Software)
    HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
    HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [256896 2014-07-11] (Oracle Corporation)
    HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [20065936 2012-06-06] (Realtek Semiconductor Corp.)
    HKLM\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [3835728 2014-11-03] (LogMeIn Inc.)
    HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    HKLM\...\Run: [NvMediaCenter] => RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
    HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2593056 2014-07-02] ()
    HKLM\...\Run: [SDTray] => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
    Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X]
    HKU\S-1-5-21-1229272821-117609710-839522115-1003\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
    HKU\S-1-5-21-1229272821-117609710-839522115-1003\...\MountPoints2: {5461940a-0905-11e4-9f21-001485b5cd1f} - G:\AutoRun.exe
    Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\TP-LINK Wireless Configuration Utility.lnk
    ShortcutTarget: TP-LINK Wireless Configuration Utility.lnk -> C:\Program Files\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe ()
    ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
    ShellIconOverlayIdentifiers: GGDriveOverlay1 -> {E68D0A50-3C40-4712-B90D-DCFA93FF2534} => C:\Documents and Settings\All Users\Dane aplikacji\GG\ggdrive\ggdrive-overlay.dll (GG Network S.A.)
    ShellIconOverlayIdentifiers: GGDriveOverlay2 -> {E68D0A51-3C40-4712-B90D-DCFA93FF2534} => C:\Documents and Settings\All Users\Dane aplikacji\GG\ggdrive\ggdrive-overlay.dll (GG Network S.A.)
    ShellIconOverlayIdentifiers: GGDriveOverlay3 -> {E68D0A52-3C40-4712-B90D-DCFA93FF2534} => C:\Documents and Settings\All Users\Dane aplikacji\GG\ggdrive\ggdrive-overlay.dll (GG Network S.A.)
    ShellIconOverlayIdentifiers: GGDriveOverlay4 -> {E68D0A53-3C40-4712-B90D-DCFA93FF2534} => C:\Documents and Settings\All Users\Dane aplikacji\GG\ggdrive\ggdrive-overlay.dll (GG Network S.A.)
    BootExecute: autocheck autochk * sdnclean.exe

    ==================== Internet (Whitelisted) ====================

    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

    HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    SearchScopes: HKLM - DefaultScope value is missing.
    SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
    BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
    BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
    Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
    Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation)
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
    Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

    FireFox:
    ========
    FF ProfilePath: C:\Documents and Settings\Gacek227\Dane aplikacji\Mozilla\Firefox\Profiles\6cav0gh8.default
    FF Homepage: hxxp://www.onet.pl/
    FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_15_0_0_223.dll ()
    FF Plugin: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
    FF Plugin: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
    FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
    FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
    FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
    FF Plugin: @pandonetworks.com/PandoWebPlugin -> C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
    FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
    FF Plugin HKCU: pandonetworks.com/PandoWebPlugin -> C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
    FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
    FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\ddg.xml
    FF Extension: PEKAO S.A. Sign Plugin - C:\Documents and Settings\Gacek227\Dane aplikacji\Mozilla\Firefox\Profiles\6cav0gh8.default\Extensions\SignPlugin@pekao.pl [2014-05-15]
    FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
    FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-05-10]
    FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
    FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2014-06-23]

    Chrome:
    =======
    CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-26]

    ========================== Services (Whitelisted) =================

    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

    R2 acs; C:\WINDOWS\system32\acs.exe [499796 2011-12-26] (Atheros) [File not signed]
    R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-26] (AVAST Software)
    R2 Hamachi2Svc; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [1894224 2014-11-03] (LogMeIn Inc.)
    R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-07-11] (Oracle Corporation)
    R2 LMIGuardianSvc; C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe [411920 2014-10-21] (LogMeIn, Inc.)
    R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
    R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
    R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
    S2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)

    ==================== Drivers (Whitelisted) ====================

    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

    S3 Ambfilt; C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative)
    S3 AR9271; C:\WINDOWS\System32\DRIVERS\athuw.sys [1763584 2012-10-18] (Atheros Communications, Inc.)
    R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-07-26] ()
    R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [67824 2014-07-26] (AVAST Software)
    R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [55112 2014-07-26] (AVAST Software)
    R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-07-26] ()
    R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [779536 2014-07-26] (AVAST Software)
    R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [414520 2014-07-26] (AVAST Software)
    R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57800 2014-07-26] (AVAST Software)
    R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [192352 2014-07-26] ()
    R1 dtsoftbus01; C:\WINDOWS\System32\DRIVERS\dtsoftbus01.sys [243128 2014-05-11] (Disc Soft Ltd)
    R3 hamachi; C:\WINDOWS\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.)
    R3 JSWSCIMD; C:\WINDOWS\System32\DRIVERS\jswscimd.sys [57440 2011-12-26] (Atheros Communications, Inc.)
    S3 Monfilt; C:\WINDOWS\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.)
    R3 WSIMD; C:\WINDOWS\System32\DRIVERS\wsimd.sys [58208 2011-12-26] (Atheros Communications, Inc.) [File not signed]
    S3 EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys [X]
    S4 IntelIde; No ImagePath
    S3 MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [X]
    S3 MEMSWEEP2; \??\C:\WINDOWS\system32\E.tmp [X]
    U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
    U1 WS2IFSL; No ImagePath

    ==================== NetSvcs (Whitelisted) ===================


    (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


    ==================== One Month Created Files and Folders ========

    (If an entry is included in the fixlist, the file\folder will be moved.)

    2014-11-14 20:40 - 2014-11-14 20:40 - 00000000 ____D () C:\FRST
    2014-11-14 20:14 - 2014-11-14 20:37 - 00000000 ____D () C:\AdwCleaner
    2014-11-14 18:38 - 2014-11-14 18:38 - 00000000 ____D () C:\Documents and Settings\LocalService\Menu Start\Programy
    2014-11-14 18:38 - 2014-11-14 18:38 - 00000000 ____D () C:\Documents and Settings\LocalService\Menu Start
    2014-11-14 18:38 - 2014-11-14 18:38 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Spybot - Search & Destroy 2
    2014-11-14 18:38 - 2014-11-14 18:38 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Sophos
    2014-11-14 17:57 - 2014-11-14 20:39 - 00000644 _____ () C:\WINDOWS\Tasks\Check for updates (Spybot - Search & Destroy).job
    2014-11-14 17:57 - 2014-11-14 18:38 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
    2014-11-14 17:57 - 2014-11-14 18:31 - 00065536 _____ () C:\WINDOWS\system32\config\SpybotSD.evt
    2014-11-14 17:57 - 2014-11-14 18:30 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy
    2014-11-14 17:57 - 2014-11-14 17:57 - 00001842 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Spybot-S&D Start Center.lnk
    2014-11-14 17:57 - 2014-11-14 17:57 - 00001836 _____ () C:\Documents and Settings\All Users\Pulpit\Spybot-S&D Start Center.lnk
    2014-11-14 17:57 - 2014-11-14 17:57 - 00000616 _____ () C:\WINDOWS\Tasks\Refresh immunization (Spybot - Search & Destroy).job
    2014-11-14 17:57 - 2014-11-14 17:57 - 00000446 _____ () C:\WINDOWS\Tasks\Scan the system (Spybot - Search & Destroy).job
    2014-11-14 17:57 - 2013-09-20 10:49 - 00018968 _____ (Safer Networking Limited) C:\WINDOWS\system32\sdnclean.exe
    2014-11-14 17:27 - 2014-11-14 17:27 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes
    2014-11-14 16:53 - 2014-11-14 16:53 - 00000000 ____D () C:\Program Files\Sophos
    2014-11-14 16:52 - 2014-11-14 16:53 - 03651002 _____ () C:\WINDOWS\system32\XJEJS
    2014-11-10 21:17 - 2014-11-11 14:27 - 00000163 _____ () C:\Documents and Settings\Gacek227\Pulpit\Path of Exile.url
    2014-11-10 18:07 - 2014-11-10 18:07 - 00000000 ____D () C:\Program Files\Mozilla Firefox
    2014-11-09 22:29 - 2014-11-14 18:38 - 00000000 ____D () C:\Documents and Settings\Gacek227\Ustawienia lokalne\Dane aplikacji\Heroes and Generals
    2014-11-09 14:33 - 2014-11-09 16:33 - 00000146 _____ () C:\Documents and Settings\Gacek227\Pulpit\Dota 2.url
    2014-11-07 22:43 - 2014-11-07 22:43 - 00000000 ____D () C:\Program Files\AGEIA Technologies
    2014-11-07 22:43 - 2014-07-02 19:40 - 03826628 _____ () C:\WINDOWS\system32\nvcoproc.bin
    2014-11-07 22:40 - 2014-07-02 21:43 - 01054552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco3234052.dll
    2014-11-07 22:40 - 2014-07-02 21:43 - 00906584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco3234052.dll
    2014-11-06 15:21 - 2014-11-06 15:40 - 00000000 ____D () C:\Documents and Settings\Gacek227\Ustawienia lokalne\Dane aplikacji\CSO
    2014-11-06 15:21 - 2014-11-06 15:21 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Nexon
    2014-11-04 20:50 - 2014-11-04 20:50 - 00000000 ____D () C:\Program Files\LogMeIn Hamachi
    2014-11-04 20:50 - 2014-11-04 20:50 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\LogMeIn Hamachi

    ==================== One Month Modified Files and Folders =======

    (If an entry is included in the fixlist, the file\folder will be moved.)

    2014-11-14 20:40 - 2014-11-14 20:40 - 00000000 ____D () C:\FRST
    2014-11-14 20:40 - 2014-06-11 21:54 - 00000000 ____D () C:\Documents and Settings\Gacek227\Moje dokumenty\Pobrane
    2014-11-14 20:40 - 2014-05-10 13:53 - 00000000 ____D () C:\Documents and Settings\Gacek227\Ustawienia lokalne\Temp
    2014-11-14 20:39 - 2014-11-14 17:57 - 00000644 _____ () C:\WINDOWS\Tasks\Check for updates (Spybot - Search & Destroy).job
    2014-11-14 20:38 - 2014-05-10 15:47 - 00000000 ____D () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\LogMeIn Hamachi
    2014-11-14 20:38 - 2014-05-10 15:47 - 00000000 ____D () C:\Documents and Settings\Gacek227\Ustawienia lokalne\Dane aplikacji\LogMeIn Hamachi
    2014-11-14 20:38 - 2014-05-10 15:11 - 00000364 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
    2014-11-14 20:38 - 2014-05-10 13:50 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
    2014-11-14 20:38 - 2014-05-10 13:44 - 00413560 _____ () C:\WINDOWS\WindowsUpdate.log
    2014-11-14 20:38 - 2004-12-31 23:21 - 00000159 _____ () C:\WINDOWS\wiadebug.log
    2014-11-14 20:38 - 2004-12-31 23:21 - 00000050 _____ () C:\WINDOWS\wiaservc.log
    2014-11-14 20:37 - 2014-11-14 20:14 - 00000000 ____D () C:\AdwCleaner
    2014-11-14 20:37 - 2014-05-10 15:45 - 00458752 _____ () C:\WINDOWS\system32\config\ACS.evt
    2014-11-14 20:37 - 2014-05-10 13:53 - 00000188 ___SH () C:\Documents and Settings\Gacek227\ntuser.ini
    2014-11-14 20:37 - 2014-05-10 13:50 - 00032548 _____ () C:\WINDOWS\SchedLgU.Txt
    2014-11-14 20:37 - 2004-12-31 23:18 - 00000000 __RHD () C:\Documents and Settings\All Users\Dane aplikacji
    2014-11-14 20:34 - 2014-05-10 16:00 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
    2014-11-14 20:31 - 2002-09-29 01:00 - 00554124 _____ () C:\WINDOWS\system32\perfh015.dat
    2014-11-14 20:31 - 2002-09-29 01:00 - 00103936 _____ () C:\WINDOWS\system32\perfc015.dat
    2014-11-14 20:30 - 2014-05-10 15:09 - 00015344 _____ () C:\WINDOWS\system32\nvAppTimestamps
    2014-11-14 20:30 - 2004-12-31 23:19 - 01251944 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
    2014-11-14 20:20 - 2014-05-11 13:38 - 00000000 ____D () C:\Documents and Settings\Gacek227\Dane aplikacji\uTorrent
    2014-11-14 19:10 - 2014-05-10 15:06 - 01398944 _____ () C:\WINDOWS\system32\nvdrsdb1.bin
    2014-11-14 19:10 - 2014-05-10 15:06 - 01398944 _____ () C:\WINDOWS\system32\nvdrsdb0.bin
    2014-11-14 19:10 - 2014-05-10 15:06 - 00000001 _____ () C:\WINDOWS\system32\nvdrssel.bin
    2014-11-14 18:52 - 2014-05-10 13:53 - 00000000 ____D () C:\Documents and Settings\Gacek227\Pulpit
    2014-11-14 18:42 - 2004-12-31 23:18 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy
    2014-11-14 18:42 - 2004-12-31 23:18 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit
    2014-11-14 18:38 - 2014-11-14 18:38 - 00000000 ____D () C:\Documents and Settings\LocalService\Menu Start\Programy
    2014-11-14 18:38 - 2014-11-14 18:38 - 00000000 ____D () C:\Documents and Settings\LocalService\Menu Start
    2014-11-14 18:38 - 2014-11-14 18:38 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Spybot - Search & Destroy 2
    2014-11-14 18:38 - 2014-11-14 18:38 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Sophos
    2014-11-14 18:38 - 2014-11-14 17:57 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
    2014-11-14 18:38 - 2014-11-09 22:29 - 00000000 ____D () C:\Documents and Settings\Gacek227\Ustawienia lokalne\Dane aplikacji\Heroes and Generals
    2014-11-14 18:38 - 2014-05-10 13:53 - 00000000 ___HD () C:\Documents and Settings\Gacek227\Ustawienia lokalne\Dane aplikacji
    2014-11-14 18:38 - 2014-05-10 13:53 - 00000000 ____D () C:\Documents and Settings\Gacek227
    2014-11-14 18:38 - 2014-05-10 13:50 - 00000000 __SHD () C:\Documents and Settings\LocalService
    2014-11-14 18:36 - 2014-05-10 13:42 - 00000000 ____D () C:\WINDOWS\system32\Restore
    2014-11-14 18:31 - 2014-11-14 17:57 - 00065536 _____ () C:\WINDOWS\system32\config\SpybotSD.evt
    2014-11-14 18:31 - 2004-12-31 23:12 - 00000000 ____D () C:\WINDOWS\twain_32
    2014-11-14 18:30 - 2014-11-14 17:57 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy
    2014-11-14 17:57 - 2014-11-14 17:57 - 00001842 _____ () C:\Documents and Settings\All Users\Menu Start\Programy\Spybot-S&D Start Center.lnk
    2014-11-14 17:57 - 2014-11-14 17:57 - 00001836 _____ () C:\Documents and Settings\All Users\Pulpit\Spybot-S&D Start Center.lnk
    2014-11-14 17:57 - 2014-11-14 17:57 - 00000616 _____ () C:\WINDOWS\Tasks\Refresh immunization (Spybot - Search & Destroy).job
    2014-11-14 17:57 - 2014-11-14 17:57 - 00000446 _____ () C:\WINDOWS\Tasks\Scan the system (Spybot - Search & Destroy).job
    2014-11-14 17:27 - 2014-11-14 17:27 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes
    2014-11-14 16:53 - 2014-11-14 16:53 - 00000000 ____D () C:\Program Files\Sophos
    2014-11-14 16:53 - 2014-11-14 16:52 - 03651002 _____ () C:\WINDOWS\system32\XJEJS
    2014-11-11 22:34 - 2014-05-10 16:00 - 00701104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
    2014-11-11 22:34 - 2014-05-10 16:00 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
    2014-11-11 15:25 - 2014-05-11 19:47 - 00000000 ____D () C:\Documents and Settings\Gacek227\Moje dokumenty\My Games
    2014-11-11 14:27 - 2014-11-10 21:17 - 00000163 _____ () C:\Documents and Settings\Gacek227\Pulpit\Path of Exile.url
    2014-11-10 18:40 - 2014-05-10 15:19 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
    2014-11-10 18:07 - 2014-11-10 18:07 - 00000000 ____D () C:\Program Files\Mozilla Firefox
    2014-11-09 22:24 - 2014-05-10 13:53 - 00000000 __RHD () C:\Documents and Settings\Gacek227\Dane aplikacji
    2014-11-09 16:33 - 2014-11-09 14:33 - 00000146 _____ () C:\Documents and Settings\Gacek227\Pulpit\Dota 2.url
    2014-11-09 00:09 - 2014-05-10 13:44 - 00000000 ____D () C:\WINDOWS\system32\DirectX
    2014-11-08 14:50 - 2014-05-18 00:53 - 00288314 _____ () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-1229272821-117609710-839522115-1003-0.dat
    2014-11-08 14:50 - 2014-05-18 00:53 - 00151994 _____ () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat
    2014-11-07 22:43 - 2014-11-07 22:43 - 00000000 ____D () C:\Program Files\AGEIA Technologies
    2014-11-07 22:43 - 2014-05-10 15:04 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
    2014-11-07 22:41 - 2014-05-10 15:09 - 00000000 ____D () C:\WINDOWS\system32\ReinstallBackups
    2014-11-06 23:22 - 2014-05-29 21:46 - 00065536 _____ () C:\WINDOWS\system32\config\OAlerts.evt
    2014-11-06 15:40 - 2014-11-06 15:21 - 00000000 ____D () C:\Documents and Settings\Gacek227\Ustawienia lokalne\Dane aplikacji\CSO
    2014-11-06 15:33 - 2014-05-17 17:22 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Package Cache
    2014-11-06 15:21 - 2014-11-06 15:21 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Nexon
    2014-11-04 20:50 - 2014-11-04 20:50 - 00000000 ____D () C:\Program Files\LogMeIn Hamachi
    2014-11-04 20:50 - 2014-11-04 20:50 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\LogMeIn Hamachi
    2014-10-30 19:49 - 2014-05-29 21:41 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help
    2014-10-29 16:32 - 2014-05-10 13:53 - 00000000 ___RD () C:\Documents and Settings\Gacek227\Moje dokumenty\Moja muzyka
    2014-10-26 22:11 - 2014-05-10 15:45 - 00000000 ____D () C:\Documents and Settings\Gacek227\Dane aplikacji\TS3Client
    2014-10-26 21:28 - 2014-05-18 13:35 - 00000000 ____D () C:\Documents and Settings\Gacek227\Dane aplikacji\GG
    2014-10-26 17:55 - 2002-09-29 01:00 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl

    Some content of TEMP:
    ====================
    C:\Documents and Settings\Gacek227\Ustawienia lokalne\Temp\Quarantine.exe
    C:\Documents and Settings\Gacek227\Ustawienia lokalne\Temp\sqlite3.dll


    ==================== Bamital & volsnap Check =================

    (There is no automatic fix for files that do not pass verification.)

    C:\WINDOWS\explorer.exe => File is digitally signed
    C:\WINDOWS\system32\winlogon.exe => File is digitally signed
    C:\WINDOWS\system32\svchost.exe => File is digitally signed
    C:\WINDOWS\system32\services.exe => File is digitally signed
    C:\WINDOWS\system32\User32.dll => File is digitally signed
    C:\WINDOWS\system32\userinit.exe => File is digitally signed
    C:\WINDOWS\system32\rpcss.dll => File is digitally signed
    C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

    ==================== End Of Log ============================


    Addition.txt
    Spoiler:
    Code:
    Additional scan result of Farbar Recovery Scan Tool (x86) Version:31-08-2014
    
    Ran by Gacek227 at 2014-11-14 20:41:25
    Running from C:\Documents and Settings\Gacek227\Moje dokumenty\Pobrane
    Boot Mode: Normal
    ==========================================================


    ==================== Security Center ========================

    (If an entry is included in the fixlist, it will be removed.)

    AV: avast! Antivirus (Disabled - Up to date) {7591DB91-41F0-48A3-B128-1A293FD8233D}

    ==================== Installed Programs ======================

    (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

    µTorrent (HKCU\...\uTorrent) (Version: 3.4.2.34944 - BitTorrent Inc.)
    Adobe Flash Player 15 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 15.0.0.223 - Adobe Systems Incorporated)
    Adobe Reader XI (11.0.08) - Polish (HKLM\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated)
    Age of Empires II: HD Edition (HKLM\...\Steam App 221380) (Version:  - Hidden Path Entertainment, Ensemble Studios)
    Aktualizacje NVIDIA 15.3.33 (Version: 15.3.33 - NVIDIA Corporation) Hidden
    Auslogics DiskDefrag (HKLM\...\{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1) (Version: 4.5.4.0 - Auslogics Labs Pty Ltd)
    avast! Free Antivirus (HKLM\...\Avast) (Version: 9.0.2021 - AVAST Software)
    Baldur's Gate (HKLM\...\BG1_is1) (Version:  - )
    CCleaner (HKLM\...\CCleaner) (Version: 4.18 - Piriform)
    Counter-Strike (HKLM\...\Steam App 10) (Version:  - Valve)
    Counter-Strike Nexon: Zombies (HKLM\...\Steam App 273110) (Version:  - Nexon)
    Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version:  - Valve)
    Dota 2 (HKLM\...\Steam App 570) (Version:  - Valve)
    EVEREST Ultimate Edition v5.50 (HKLM\...\EVEREST Ultimate Edition_is1) (Version: 5.50 - Lavalys, Inc.)
    GG (HKCU\...\GG) (Version: 12 - GG Network S.A.)
    Java Auto Updater (Version: 2.1.65.20 - Oracle, Inc.) Hidden
    League of Legends (HKLM\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
    League of Legends (Version: 3.0.1 - Riot Games) Hidden
    LogMeIn Hamachi (HKLM\...\LogMeIn Hamachi) (Version: 2.2.0.266 - LogMeIn, Inc.)
    LogMeIn Hamachi (Version: 2.2.0.266 - LogMeIn, Inc.) Hidden
    Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation)
    Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - PLK (HKLM\...\{2AFF2951-86B1-3C53-B34D-B440F11E7D0A}) (Version: 2.2.30729 - Microsoft Corporation)
    Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation)
    Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - PLK (HKLM\...\{5A0DDC27-88E5-3CAD-BC3D-28FFD05CA6B9}) (Version: 3.2.30729 - Microsoft Corporation)
    Microsoft .NET Framework 3.5 Language Pack SP1 - plk (Version: 3.5.30729 - Microsoft Corporation) Hidden
    Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version:  - Microsoft Corporation)
    Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden
    Microsoft Office Proof (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
    Microsoft Office Proof (French) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
    Microsoft Office Proof (Spanish) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
    Microsoft Office Proofing (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
    Microsoft Office Shared MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
    Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
    Microsoft Office Word 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
    Microsoft Office Word MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
    Microsoft Software Update for Web Folders  (English) 14 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
    Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
    Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden
    Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden
    Microsoft Word 2010 (HKLM\...\Office14.WORD) (Version: 14.0.4763.1000 - Microsoft Corporation)
    Mount & Blade: Warband (HKLM\...\Steam App 48700) (Version:  - TaleWorlds Entertainment)
    Mozilla Firefox 33.1 (x86 pl) (HKLM\...\Mozilla Firefox 33.1 (x86 pl)) (Version: 33.1 - Mozilla)
    NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation)
    NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) Hidden
    NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden
    NVIDIA nView 141.24 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 141.24 - NVIDIA Corporation)
    NVIDIA Oprogramowanie systemu PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
    NVIDIA PhysX (Version: 9.13.1220 - NVIDIA Corporation) Hidden
    NVIDIA Sterownik graficzny 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation)
    NVIDIA Update Core (Version: 15.3.33 - NVIDIA Corporation) Hidden
    OpenFM (HKCU\...\OpenFM) (Version: 2 - GG Network S.A.)
    Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - plk) (Version:  - Microsoft Corporation)
    Pando Media Booster (HKLM\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.)
    Panel sterowania NVIDIA 340.52 (Version: 340.52 - NVIDIA Corporation) Hidden
    Path of Exile (HKLM\...\Steam App 238960) (Version:  - Grinding Gear Games)
    PAYDAY 2 (HKLM\...\Steam App 218620) (Version:  - OVERKILL - a Starbreeze Studio.)
    Realtek AC'97 Audio (HKLM\...\{FB08F381-6533-4108-B7DD-039E11FBC27E}) (Version: 5.36 - Realtek Semiconductor Corp.)
    Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 5.10.0.6662 - Realtek Semiconductor Corp.)
    Skype™ 6.14 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version:  - )
    Sophos Anti-Rootkit 1.5.20 (HKLM\...\Sophos-AntiRootkit) (Version: 1.5.20 - Sophos Plc)
    Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
    Steam (HKLM\...\Steam) (Version:  - Valve Corporation)
    The Elder Scrolls V: Skyrim (HKLM\...\Steam App 72850) (Version:  - Bethesda Game Studios)
    WebFldrs XP (HKLM\...\{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}) (Version:  - )
    XML Paper Specification Shared Components Language Pack 1.0 (Version:  - Microsoft Corporation) Hidden

    ==================== Custom CLSID (selected items): ==========================

    (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

    CustomCLSID: HKU\S-1-5-21-1229272821-117609710-839522115-1003_Classes\CLSID\{31261F21-2B16-45EE-BEAB-07C4CFA18B65}\InprocServer32 -> C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
    CustomCLSID: HKU\S-1-5-21-1229272821-117609710-839522115-1003_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Documents and Settings\Gacek227\Dane aplikacji\GG\ggdrive\ggdrive-menu.dll (GG Network S.A.)

    ==================== Restore Points  =========================

    18-10-2014 17:41:17 Punkt kontrolny systemu
    24-10-2014 05:32:35 Punkt kontrolny systemu
    25-10-2014 09:27:26 Punkt kontrolny systemu
    26-10-2014 17:38:47 Punkt kontrolny systemu
    31-10-2014 16:46:05 Punkt kontrolny systemu
    01-11-2014 23:40:23 Punkt kontrolny systemu
    04-11-2014 22:25:40 Punkt kontrolny systemu
    06-11-2014 14:20:22 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005
    07-11-2014 14:53:29 Punkt kontrolny systemu
    07-11-2014 19:10:00 Zainstalowany program DirectX
    07-11-2014 21:41:41 Aktualizuj do niepodpisanego sterownika
    08-11-2014 21:52:07 Punkt kontrolny systemu
    08-11-2014 23:09:15 Zainstalowany program DirectX
    10-11-2014 21:33:37 Punkt kontrolny systemu
    11-11-2014 21:57:38 Punkt kontrolny systemu
    12-11-2014 22:12:06 Punkt kontrolny systemu
    14-11-2014 06:45:18 Punkt kontrolny systemu
    14-11-2014 17:40:16 Operacja przywracania

    ==================== Hosts content: ==========================

    (If needed Hosts: directive could be included in the fixlist to reset Hosts.)

    2002-09-29 01:00 - 2002-09-29 01:00 - 00000742 ____A C:\WINDOWS\system32\Drivers\etc\hosts
    127.0.0.1       localhost

    ==================== Scheduled Tasks (whitelisted) =============


    (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

    Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe
    Task: C:\WINDOWS\Tasks\Check for updates (Spybot - Search & Destroy).job => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe
    Task: C:\WINDOWS\Tasks\Refresh immunization (Spybot - Search & Destroy).job => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe
    Task: C:\WINDOWS\Tasks\Scan the system (Spybot - Search & Destroy).job => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe

    ==================== Loaded Modules (whitelisted) =============

    2014-05-10 15:11 - 2014-07-26 19:24 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll
    2014-11-14 20:17 - 2014-11-14 20:17 - 02903040 _____ () C:\Program Files\AVAST Software\Avast\defs\14111400\algo.dll
    2014-05-10 15:07 - 2014-07-02 21:43 - 00681760 _____ () C:\Program Files\NVIDIA Corporation\nview\nvshell.dll
    2004-08-04 01:44 - 2008-04-14 21:50 - 00014336 _____ () C:\WINDOWS\system32\msdmo.dll
    2014-05-10 15:11 - 2014-07-26 19:24 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
    2014-11-14 17:57 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl
    2014-11-14 17:57 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl
    2014-11-14 17:57 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl
    2014-11-14 17:57 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files\Spybot - Search & Destroy 2\sqlite3.dll
    2014-11-14 17:57 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files\Spybot - Search & Destroy 2\av\BDSmartDB.dll

    ==================== Alternate Data Streams (whitelisted) =========

    (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


    ==================== Safe Mode (whitelisted) ===================

    (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

    ==================== EXE Association (whitelisted) =============

    (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


    ==================== MSCONFIG/TASK MANAGER disabled items =========

    (Currently there is no automatic fix for this section.)


    ==================== Faulty Device Manager Devices =============


    ==================== Event log errors: =========================

    Application errors:
    ==================
    Error: (11/09/2014 07:30:14 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Aplikacja powodująca błąd csgo.exe, wersja 0.0.0.0, moduł powodujący błąd libcef.dll, wersja 1.1025.1248.0, adres błędu 0x0002ff70.
    Przetwarzanie zdarzenia określonego nośnika dla [csgo.exe!ws!]

    Error: (11/08/2014 02:21:21 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Aplikacja powodująca błąd setup.exe, wersja 0.0.0.0, moduł powodujący błąd , wersja 0.0.0.0, adres błędu 0x00000000.
    Przetwarzanie zdarzenia określonego nośnika dla [setup.exe!ws!]

    Error: (11/04/2014 05:34:33 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Aplikacja powodująca błąd csgo.exe, wersja 0.0.0.0, moduł powodujący błąd libcef.dll, wersja 1.1025.1248.0, adres błędu 0x0002ff70.
    Przetwarzanie zdarzenia określonego nośnika dla [csgo.exe!ws!]

    Error: (10/21/2014 06:53:34 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Aplikacja powodująca błąd plugin-container.exe, wersja 32.0.3.5379, moduł powodujący błąd mozalloc.dll, wersja 32.0.3.5379, adres błędu 0x0000141b.
    Przetwarzanie zdarzenia określonego nośnika dla [plugin-container.exe!ws!]

    Error: (10/15/2014 05:19:06 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Aplikacja powodująca błąd bgmain2.exe, wersja 1.3.0.1, moduł powodujący błąd bgmain2.exe, wersja 1.3.0.1, adres błędu 0x001578d6.
    Przetwarzanie zdarzenia określonego nośnika dla [bgmain2.exe!ws!]

    Error: (10/15/2014 03:49:11 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Aplikacja powodująca błąd bgmain2.exe, wersja 1.3.0.1, moduł powodujący błąd bgmain2.exe, wersja 1.3.0.1, adres błędu 0x00166fa3.
    Przetwarzanie zdarzenia określonego nośnika dla [bgmain2.exe!ws!]

    Error: (10/14/2014 03:36:41 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Aplikacja powodująca błąd bgmain2.exe, wersja 1.3.0.1, moduł powodujący błąd bgmain2.exe, wersja 1.3.0.1, adres błędu 0x001578d6.
    Przetwarzanie zdarzenia określonego nośnika dla [bgmain2.exe!ws!]

    Error: (10/14/2014 03:03:50 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Aplikacja powodująca błąd bgmain2.exe, wersja 1.3.0.1, moduł powodujący błąd ntdll.dll, wersja 5.1.2600.5512, adres błędu 0x00010efe.
    Przetwarzanie zdarzenia określonego nośnika dla [bgmain2.exe!ws!]

    Error: (10/12/2014 09:40:01 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Aplikacja powodująca błąd csgo.exe, wersja 0.0.0.0, moduł powodujący błąd libcef.dll, wersja 1.1025.1248.0, adres błędu 0x0002ff70.
    Przetwarzanie zdarzenia określonego nośnika dla [csgo.exe!ws!]


    System errors:
    =============
    Error: (11/14/2014 08:38:53 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: Nie można uruchomić usługi Spybot-S&D 2 Security Center Service z powodu następującego błędu:
    %%1053

    Error: (11/14/2014 08:38:53 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
    Description: Limit czasu (30000 milisekund) podczas oczekiwania na połączenie się z usługą Spybot-S&D 2 Security Center Service.

    Error: (11/14/2014 08:37:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
    Description: Usługa LogMeIn Hamachi Tunneling Engine niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.

    Error: (11/14/2014 08:37:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
    Description: Usługa Usługa bramy warstwy aplikacji niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.

    Error: (11/14/2014 08:37:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: Usługa Spybot-S&D 2 Updating Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.

    Error: (11/14/2014 08:37:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: Usługa Spybot-S&D 2 Scanner Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.

    Error: (11/14/2014 08:37:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
    Description: Usługa NVIDIA Network Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.

    Error: (11/14/2014 08:37:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
    Description: Usługa Java Quick Starter niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.

    Error: (11/14/2014 08:37:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: Usługa Bufor wydruku niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.

    Error: (11/14/2014 08:37:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
    Description: Usługa NVIDIA Driver Helper Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.


    Microsoft Office Sessions:
    =========================
    Error: (11/09/2014 07:30:14 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: csgo.exe0.0.0.0libcef.dll1.1025.1248.00002ff70

    Error: (11/08/2014 02:21:21 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: setup.exe0.0.0.00.0.0.000000000

    Error: (11/04/2014 05:34:33 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: csgo.exe0.0.0.0libcef.dll1.1025.1248.00002ff70

    Error: (10/21/2014 06:53:34 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: plugin-container.exe32.0.3.5379mozalloc.dll32.0.3.53790000141b

    Error: (10/15/2014 05:19:06 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: bgmain2.exe1.3.0.1bgmain2.exe1.3.0.1001578d6

    Error: (10/15/2014 03:49:11 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: bgmain2.exe1.3.0.1bgmain2.exe1.3.0.100166fa3

    Error: (10/14/2014 03:36:41 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: bgmain2.exe1.3.0.1bgmain2.exe1.3.0.1001578d6

    Error: (10/14/2014 03:03:50 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: bgmain2.exe1.3.0.1ntdll.dll5.1.2600.551200010efe

    Error: (10/12/2014 09:40:01 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: csgo.exe0.0.0.0libcef.dll1.1025.1248.00002ff70


    ==================== Memory info ===========================

    Processor:  Intel(R) Pentium(R) 4 CPU 3.00GHz
    Percentage of memory in use: 15%
    Total physical RAM: 3327.48 MB
    Available physical RAM: 2804.41 MB
    Total Pagefile: 5211.45 MB
    Available Pagefile: 4790.49 MB
    Total Virtual: 2047.88 MB
    Available Virtual: 1959.68 MB

    ==================== Drives ================================

    Drive c: () (Fixed) (Total:39.06 GB) (Free:21.52 GB) NTFS ==>[Drive with boot components (Windows XP)]
    Drive d: () (Fixed) (Total:150.85 GB) (Free:71.15 GB) NTFS

    ==================== MBR & Partition Table ==================

    ========================================================
    Disk: 0 (Size: 189.9 GB) (Disk ID: D7CED7CE)
    Partition 1: (Active) - (Size=39.1 GB) - (Type=07 NTFS)
    Partition 2: (Not Active) - (Size=150.8 GB) - (Type=OF Extended)

    ==================== End Of Log ============================
  • #6
    kokapetyl
    Level 43  
    swiercm wrote:
    Zamieść zrzut ekranu z CristalDiskInfo:

    Nie jakąś część, ale całość.
    Rozciągnij ten obraz aby było wszystko widoczne.
  • #8
    kokapetyl
    Level 43  
    Dysk nie powoduje tych problemów.
    Czy zastosowałeś się do wskazań dotyczących przeczyszczenia systemu ?
    Jeśli to nie pomaga, to dostałeś kolejne wytyczne.
  • #9
    Gacek227
    Level 9  
    MBAM skanowałem zanim napisałem ten temat, ADWCleanerem przeskanowałem i CCleanerem również czyściłem (to akurat robię codziennie :P)
  • #10
    Kolobos
    IT specialist
    Odinstaluj:
    Spybot - Search & Destroy
    LogMeIn Hamachi

    Fixlist.txt dla FRST:
    SearchScopes: HKLM - DefaultScope value is missing.
    S3 EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys [X]
    S3 MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [X]
    S3 MEMSWEEP2; \??\C:\WINDOWS\system32\E.tmp [X]
    2014-11-14 20:14 - 2014-11-14 20:37 - 00000000 ____D () C:\AdwCleaner
    EmptyTemp:

    Jezeli komunikat nadal bedzie sie wyswietlal to zakoncz
    (Skype Technologies) C:\Program Files\Skype\Updater\Updater.exe przed zamknieciem i sprawdz czy cos sie zmienilo.
  • #12
    Kolobos
    IT specialist
    Daj nowy log z FRST, ze skanowania lub samemu zamykaj procesy (po jednym) przed zamknieciem i uruchamiaj ponownie az trafisz na ten, ktorego dotyczy komunikat.
  • #13
    Gacek227
    Level 9  
    Po zamykaniu procesów okazało się, że to wina sterowników do karty graficznej :P Dzięki za pomoc :)