ADVERTISEMENT

Addition.txt

Toshiba satellite Win 7 - Same się instalują programy

Proszę o sprawdzenie logów


Download file - link to post

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 21-06-2015
Ran by olo at 2015-06-21 12:05:32
Running from C:\Users\olo\Downloads
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-743246969-2233466203-1540496520-500 - Administrator - Disabled)
Gość (S-1-5-21-743246969-2233466203-1540496520-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-743246969-2233466203-1540496520-1004 - Limited - Enabled)
olo (S-1-5-21-743246969-2233466203-1540496520-1000 - Administrator - Enabled) = & gt; C:\Users\olo

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with " hidden " flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 9.20 (HKLM\...\7-Zip) (Version: - )
Adobe Acrobat Reader DC - Polish (HKLM\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated)
Adobe Flash Player 18 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 18.0.0.160 - Adobe Systems Incorporated)
ATI Catalyst Install Manager (HKLM\...\{47FDEFC7-BFE6-FD75-41D1-28DD572BD2D9}) (Version: 3.0.715.0 - ATI Technologies, Inc.)
ccc-core-static (Version: 2010.0210.2339.42455 - Nazwa firmy) Hidden
DriverEasy 4.9.2 (HKLM\...\DriverEasy_is1) (Version: 4.9.2.0 - Easeware)
EAGLE 7.3.0 (HKLM\...\EAGLE 7.3.0) (Version: 7.3.0 - CadSoft Computer GmbH)
EVEREST Ultimate Edition v5.50 (HKLM\...\EVEREST Ultimate Edition_is1) (Version: 5.50 - Lavalys, Inc.)
HP Support Solutions Framework (HKLM\...\{FC3C2B77-6800-48C6-A15D-9D1031130C16}) (Version: 11.51.0049 - Hewlett-Packard Company)
Malwarebytes Anti-Malware wersja 2.1.6.1022 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Opera Mail 1.0 (HKU\S-1-5-21-743246969-2233466203-1540496520-1000\...\Opera 1.0.1040) (Version: 1.0.1040 - Opera Software ASA)
Opera Stable 30.0.1835.78 (HKLM\...\Opera 30.0.1835.78) (Version: 30.0.1835.78 - Opera Software)
Realtek Ethernet Controller Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.92.115.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7503 - Realtek Semiconductor Corp.)
RICOH R5U8xx Media Driver ver.3.63.02 (HKLM\...\{59F6A514-9813-47A3-948C-8A155460CC2A}) (Version: 3.63.02 - RICOH)
Skins (Version: 2010.0210.2339.42455 - ATI) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 18.1.53.1 - Synaptics Incorporated)
TOSHIBA Hardware Setup (HKLM\...\{BFC85CDC-BD7C-4FDD-9507-8D74B5A79404}) (Version: 2.00.09 - TOSHIBA Corporation)
TOSHIBA Value Added Package (HKLM\...\InstallShield_{FEDD27A0-B306-45EF-BF58-B527406B42C8}) (Version: 1.2.28 - TOSHIBA Corporation)
Unity Web Player (HKU\S-1-5-21-743246969-2233466203-1540496520-1000\...\UnityWebPlayer) (Version: 4.6.6f2 - Unity Technologies ApS)
WinDjView 2.1 (HKLM\...\WinDjView) (Version: 2.1 - Andrew Zhezherun)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-743246969-2233466203-1540496520-1000_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 - & gt; C:\Users\olo\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS)

==================== Restore Points =========================

19-06-2015 20:19:07 Windows Update
19-06-2015 21:14:53 Toshiba Software Installer for Microsoft Windows 7
19-06-2015 21:25:10 Installed TOSHIBA Value Added Package
19-06-2015 21:30:38 Toshiba Software Installer for Microsoft Windows 7
19-06-2015 22:25:23 avast! antivirus system restore point
20-06-2015 09:56:19 Zainstalowane TOSHIBA Hardware Setup
20-06-2015 11:02:22 Zainstalowane RICOH R5U8xx Media Driver ver.3.63.02
20-06-2015 11:40:02 Instalacja pakietu sterownika urządzenia: ATI Technologies Inc. Karty graficzne
20-06-2015 13:10:40 Zainstalowane Realtek Ethernet Controller Driver
20-06-2015 13:41:42 Zainstalowane Realtek High Definition Audio Driver
20-06-2015 14:35:04 Zainstalowane REALTEK RTL8187B Wireless LAN Driver and Utility
20-06-2015 14:50:06 Zainstalowano Paragon Partition Manager™ 12 Professional Demo.
20-06-2015 14:54:18 Usunięto Paragon Partition Manager™ 12 Professional Demo.
20-06-2015 14:58:43 avast! antivirus system restore point
20-06-2015 15:50:46 Driver Booster : Kontroler SMBus procesora komunikacji We/Wy ATI
20-06-2015 20:24:36 Installed HP Support Solutions Framework

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {10C870EC-6BE9-40CC-A155-B3FCE51686EE} - System32\Tasks\Driver Booster SkipUAC (olo) = & gt; C:\Program Files\IObit\Driver Booster\DriverBooster.exe
Task: {5E5016EC-537A-4835-89AA-7A6D18A78737} - System32\Tasks\PFExe = & gt; C:\Users\olo\AppData\Local\PriceFountain\pricefountain.exe
Task: {9925709A-BF87-4884-ADDC-0862464DB0FA} - System32\Tasks\Adobe Flash Player PPAPI Notifier = & gt; C:\Windows\system32\Macromed\Flash\FlashUtil32_18_0_0_160_pepper.exe [2015-06-20] (Adobe Systems Incorporated)
Task: {F2CC7ED8-B7B7-46D2-8923-E8560337BB87} - System32\Tasks\Opera scheduled Autoupdate 1434740418 = & gt; C:\Program Files\Opera\launcher.exe [2015-06-17] (Opera Software)
Task: {F422F76D-9355-4673-9550-F2C76381FB03} - System32\Tasks\Adobe Acrobat Update Task = & gt; C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-03-07] (Adobe Systems Incorporated)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job = & gt; C:\Windows\system32\Macromed\Flash\FlashUtil32_18_0_0_160_pepper.exe

==================== Loaded Modules (Whitelisted) ==============

2015-06-20 20:27 - 2012-09-18 15:26 - 00169472 _____ () C:\Windows\System32\zlhp1020.dll
2015-06-20 20:27 - 2012-09-18 15:26 - 00059904 _____ () C:\Windows\system32\spool\PRTPROCS\W32X86\pphp1020.dll
2009-07-16 15:27 - 2009-07-16 15:27 - 07263544 _____ () C:\Program Files\Toshiba\FlashCards\BlackPng.dll
2009-07-16 15:27 - 2009-07-16 15:27 - 00052536 _____ () C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnZ.dll
2009-03-12 19:08 - 2009-03-12 19:08 - 00049152 _____ () C:\Program Files\Toshiba\PCDiag\NotifyPCD.dll
2009-07-29 15:35 - 2009-07-29 15:35 - 00014648 _____ () C:\Program Files\Toshiba\TBS\NotifyTBS.dll
2015-06-20 11:41 - 2015-06-20 11:41 - 00014848 _____ () C:\Windows\assembly\GAC_MSIL\AxInterop.WBOCXLib\1.0.0.0__90ba9c70f846762e\AxInterop.WBOCXLib.dll
2009-11-24 13:36 - 2009-11-24 13:36 - 00016384 ____R () C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The " AlternateShell " will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-743246969-2233466203-1540496520-1000\Control Panel\Desktop\\Wallpaper - & gt; C:\Users\olo\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.100.2 - 194.204.152.34

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{A9ABBC93-3DC5-48B5-B184-5E0F8606FCCF}] = & gt; (Allow) C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\RtWLan.exe
FirewallRules: [{26BDC26E-E77C-48E9-AF32-03D53FCBC61F}] = & gt; (Allow) C:\Program Files\Realtek\RTL8187B Wireless LAN Utility\RtWLan.exe
FirewallRules: [{AB407001-636A-4FD6-BFAB-81D5C0448486}] = & gt; (Allow) LPort=1542
FirewallRules: [{485B5178-4AF9-42D4-A041-54C15EC4F747}] = & gt; (Allow) LPort=1542
FirewallRules: [{0A941751-F455-4A86-A15F-2B5F52E19809}] = & gt; (Allow) LPort=53

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (06/21/2015 11:56:42 AM) (Source: EventSystem) (EventID: 4621) (User: )
Description: 80070005EventSystem.EventSubscription{CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}SENS Logon Subscription

Error: (06/20/2015 09:46:25 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:

Error: (06/20/2015 09:46:05 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:

Error: (06/20/2015 09:26:18 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Nie można wygenerować kontekstu aktywacji dla " Microsoft.Windows.Common-Controls,language= " & #x2a; " ,processorArchitecture= " amd64 " ,publicKeyToken= " 6595b64144ccf1df " ,type= " win32 " ,version= " 6.0.0.0 " 1 " .
Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language= " & #x2a; " ,processorArchitecture= " amd64 " ,publicKeyToken= " 6595b64144ccf1df " ,type= " win32 " ,version= " 6.0.0.0 " .
Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.

Error: (06/20/2015 09:26:09 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Nie można wygenerować kontekstu aktywacji dla " Microsoft.Windows.Common-Controls,language= " & #x2a; " ,processorArchitecture= " amd64 " ,publicKeyToken= " 6595b64144ccf1df " ,type= " win32 " ,version= " 6.0.0.0 " 1 " .
Nie można odnaleźć zestawu zależnego Microsoft.Windows.Common-Controls,language= " & #x2a; " ,processorArchitecture= " amd64 " ,publicKeyToken= " 6595b64144ccf1df " ,type= " win32 " ,version= " 6.0.0.0 " .
Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.

Error: (06/20/2015 09:13:28 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:

Error: (06/20/2015 09:12:34 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:

Error: (06/20/2015 09:12:20 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:

Error: (06/20/2015 09:11:47 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:

Error: (06/20/2015 09:06:25 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:


System errors:
=============
Error: (06/21/2015 11:56:02 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Usługa udostępniania w sieci programu Windows Media Player niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.

Error: (06/21/2015 11:56:02 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Windows Search niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 30000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.

Error: (06/21/2015 11:56:02 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa TOSHIBA Power Saver niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.

Error: (06/21/2015 11:56:02 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa SynTPEnh Caller Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.

Error: (06/21/2015 11:56:02 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa MBAMService niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.

Error: (06/21/2015 11:56:01 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa MBAMScheduler niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.

Error: (06/21/2015 11:56:01 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa HP Support Solutions Framework Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.

Error: (06/21/2015 11:56:01 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa Adobe Acrobat Update Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.

Error: (06/21/2015 11:56:01 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Usługa Bufor wydruku niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 60000 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie.

Error: (06/21/2015 11:56:01 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Usługa Ati External Event Utility niespodziewanie zakończyła pracę. Wystąpiło to razy: 1.


Microsoft Office:
=========================
Error: (06/21/2015 11:56:42 AM) (Source: EventSystem) (EventID: 4621) (User: )
Description: 80070005EventSystem.EventSubscription{CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}SENS Logon Subscription

Error: (06/20/2015 09:46:25 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:

Error: (06/20/2015 09:46:05 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:

Error: (06/20/2015 09:26:18 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language= " & #x2a; " ,processorArchitecture= " amd64 " ,publicKeyToken= " 6595b64144ccf1df " ,type= " win32 " ,version= " 6.0.0.0 " \\Serwer\c\Program Files\WinDjView\WinDjView.exe

Error: (06/20/2015 09:26:09 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language= " & #x2a; " ,processorArchitecture= " amd64 " ,publicKeyToken= " 6595b64144ccf1df " ,type= " win32 " ,version= " 6.0.0.0 " \\Serwer\c\Program Files\WinDjView\WinDjView.exe

Error: (06/20/2015 09:13:28 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:

Error: (06/20/2015 09:12:34 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:

Error: (06/20/2015 09:12:20 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:

Error: (06/20/2015 09:11:47 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:

Error: (06/20/2015 09:06:25 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:


==================== Memory info ===========================

Processor: AMD Turion(tm) 64 X2 Mobile Technology TL-58
Percentage of memory in use: 32%
Total physical RAM: 3454.05 MB
Available physical RAM: 2316.77 MB
Total Pagefile: 6906.37 MB
Available Pagefile: 5460.07 MB
Total Virtual: 2047.88 MB
Available Virtual: 1916.32 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:87.89 GB) (Free:64.6 GB) NTFS == & gt; [Drive with boot components (obtained from BCD)]
Drive e: (Programs) (Fixed) (Total:97.66 GB) (Free:97.23 GB) NTFS
Drive f: (Data) (Fixed) (Total:112.54 GB) (Free:107.75 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: D2E5BBD6)
Partition 1: (Active) - (Size=87.9 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=97.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=112.5 GB) - (Type=07 NTFS)

==================== End of log ============================