Czaszka 49 Napisano 28 Maja 2014 Udostępnij Napisano 28 Maja 2014 Witam, mam problem z którym nie mogę sobie poradzić, a mianowicie posiadam laptopa HP z windowsem 8.1 i jak tylko go włącze cały czas słyszę chrobotoanie dysku. Gdy wejdę do menadżera zadań użycie dysku sięga 100% oraz ciągły zapis i odczyt kilku Mb/s, znacząco spadł przez to komfort użytkowania bo wszystko muli jak cholera... Na lapku zainstalowany jest oryginalny KIS 2014 jak także był sprawdzany kilkoma scanerami online, o zgrozo nawet combofix nic nie wykazał... Dodam jescze że na windowsie jestem zalogowany w trybie offline, także synchronizacja chyba jest wyłączona, chyba że się mylę. Konfig: I5 3230M 4GB RAM 500HDD Win 8.1 Cytuj Link to post Share on other sites
aleksia 20 Napisano 28 Maja 2014 Udostępnij Napisano 28 Maja 2014 Prawdopodobnie masz jakiś syf zapychający użycie dysku. Nie znam się na tym na tyle żeby dać Ci instrukcję działania, ale prawdopodobnie będą potrzebne skany, logi z OCT, HDTune (albo innego tego typu) oraz przeczyszczenie za pomocą adw. Które konkretnie? Ktoś na pewno ogarnie. Był gdzieś na forum podobny problem ze zużyciem dysku w 100%. Poszukam i wrzucę. Cytuj Link to post Share on other sites
worm 17835 Napisano 28 Maja 2014 Udostępnij Napisano 28 Maja 2014 Może jakieś aktualizacje lub inne podobne ustrojstwo pracuje. Zerknij na procesy w tym momencie i zobacz co tam to powoduje. Cytuj Link to post Share on other sites
xprzemcio 102 Napisano 28 Maja 2014 Udostępnij Napisano 28 Maja 2014 Uruchom: perfmon.exe /res i zobacz co Ci je dysk. Cytuj Link to post Share on other sites
saddam 505 Napisano 28 Maja 2014 Udostępnij Napisano 28 Maja 2014 Uruchom: perfmon.exe /res i zobacz co Ci je dysk. Dobra robota mój padawanie Cytuj Link to post Share on other sites
Czaszka 49 Napisano 28 Maja 2014 Autor Udostępnij Napisano 28 Maja 2014 (edytowane) Monitor zasobów: http://i62.tinypic.com/302qc1u.jpg Myślałem nad inwestycją w m6s ale laptop naprawdę sporadycznie używany. Edytowane 28 Maja 2014 przez Czaszka Cytuj Link to post Share on other sites
testerrr 47 Napisano 28 Maja 2014 Udostępnij Napisano 28 Maja 2014 Wrzuć SMART dysku z programu GSmartControl. Od tego powinno się zacząć. Zawsze w podejrzeniu problemów z dyskiem sprawdzamy z automatu jego smart. Gdy okażę się, że z dyskiem dzieje się coś niedobrego, można szybciej przystąpić do kopii najważniejszych danych. Combofixa nie powinno się używać prewencyjnie, to bardzo agresywne narzędzie i potrafi narobić wiecej szkody niż pożytku, jeżeli nie będzie się go używać precyzyjnie, zwłaszcza na systemach 64 bitowych. Jeśli w GSmartControl nie będzie czerwonych pól - zrób logi w FRST. Cytuj Link to post Share on other sites
Czaszka 49 Napisano 29 Maja 2014 Autor Udostępnij Napisano 29 Maja 2014 (edytowane) Nie mam czerwonych pól ale rażą po oczach wartośći 187 i 188 http://i58.tinypic.com/ehg4t5.png Sprawdzałem na stacjonarce i wartości te są jednocyfrowe... Logi FRST: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-05-2014 02Ran by Lidia (administrator) on LAPTOP on 29-05-2014 11:36:16Running from C:\Users\Lidia\DesktopPlatform: Windows 8.1 (X64) OS Language: English(UK)Internet Explorer Version 11Boot Mode: NormalThe only official download link for FRST:Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/Download link from any site other than Bleeping Computer is unpermitted or outdated.See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/==================== Processes (Whitelisted) =================(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE(Microsoft Corporation) C:\Windows\System32\wlanext.exe(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe(Microsoft Corporation) C:\Windows\System32\dasHost.exe(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe(Intel Corporation) C:\Windows\System32\igfxtray.exe(Intel Corporation) C:\Windows\System32\igfxsrvc.exe(Intel Corporation) C:\Windows\System32\hkcmd.exe(Intel Corporation) C:\Windows\System32\igfxpers.exe(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avpui.exe(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe(Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\ielowutil.exe(Microsoft Corporation) C:\Windows\FileManager\PhotosApp.exe(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe==================== Registry (Whitelisted) ==================HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7165000 2014-03-13] (Realtek Semiconductor)HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [93296 2012-07-13] (CyberLink Corp.)HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-10-08] (Hewlett-Packard Development Company, L.P.)HKLM-x32\...\Run: [sDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.)Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]HKU\S-1-5-21-1652270780-612573717-2498243368-1001\...\Run: [Power2GoExpress8] => NAHKU\S-1-5-21-1652270780-612573717-2498243368-1001\...\Run: [skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [20922016 2014-02-10] (Skype Technologies S.A.)==================== Internet (Whitelisted) ====================HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://g.uk.msn.com/HPNOT13/2HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/HPNOT13/2HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/HPNOT13/2HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://g.uk.msn.com/HPNOT13/2SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJSSearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJSSearchScopes: HKLM - {35C3A9A4-80D2-4247-B523-CDF95AD4453C} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/710-29550-11896-25/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJSSearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJSSearchScopes: HKLM-x32 - {35C3A9A4-80D2-4247-B523-CDF95AD4453C} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/710-29550-11896-25/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJSSearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJSSearchScopes: HKCU - {35C3A9A4-80D2-4247-B523-CDF95AD4453C} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/710-29550-11896-25/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No FileDPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cabHandler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)Tcpip\Parameters: [DhcpNameServer] 192.168.1.254FireFox:========FF ProfilePath: C:\Users\Lidia\AppData\Roaming\Mozilla\Firefox\Profiles\yoqup2bl.defaultFF Homepage: hxxp://www.onet.pl/FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll (Adobe Systems, Inc.)FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation)FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)FF Extension: Adblock Plus - C:\Users\Lidia\AppData\Roaming\Mozilla\Firefox\Profiles\yoqup2bl.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-01-10]FF HKLM-x32\...\Firefox\Extensions: [url_advisor@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.comFF Extension: 卡巴斯基網址顧問 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\url_advisor@kaspersky.com [2014-05-26]FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.comFF Extension: 虛擬鍵盤 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\virtual_keyboard@kaspersky.com [2014-05-26]FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.comFF Extension: 惡意網站攔截器 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\content_blocker@kaspersky.com [2014-05-26]FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.comFF Extension: Chặn quảng cáo - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\anti_banner@kaspersky.com [2014-05-26]FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.comFF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\FFExt\online_banking@kaspersky.com [2014-05-26]==================== Services (Whitelisted) =================R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\avp.exe [214512 2014-01-24] (Kaspersky Lab ZAO)R2 HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [1039160 2013-10-08] (Hewlett-Packard Development Company, L.P.)R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-22] (Intel Corporation)S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel® Corporation)R2 Intel® ME Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-03-24] (Intel Corporation)R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2014-03-24] (Intel Corporation)R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [239176 2013-02-20] (Realtek Semiconductor)R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.)R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.)R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.)S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-03-13] (Microsoft Corporation)S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [348392 2014-03-13] (Microsoft Corporation)S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-13] (Microsoft Corporation)==================== Drivers (Whitelisted) ====================S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows ® Win 7 DDK provider)R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink)S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation)R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2014-01-24] (Kaspersky Lab ZAO)S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29792 2014-01-24] (Kaspersky Lab)U5 klflt; C:\Windows\System32\Drivers\klflt.sys [115296 2014-05-26] (Kaspersky Lab ZAO)R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [625760 2014-05-26] (Kaspersky Lab ZAO)R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [30304 2014-01-24] (Kaspersky Lab ZAO)S3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [29280 2014-05-26] (Kaspersky Lab ZAO)S3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [29280 2014-01-24] (Kaspersky Lab ZAO)R1 klpd; C:\Windows\system32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO)R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [65120 2014-05-26] (Kaspersky Lab ZAO)R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [178272 2014-01-24] (Kaspersky Lab ZAO)S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2014-03-24] (Intel Corporation)R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)S3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [448072 2013-02-02] (RTS Corporation)R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [3068120 2014-03-24] (Realtek Semiconductor Corporation )S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation)R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-08-28] (Synaptics Incorporated)S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-11-14] (Microsoft Corporation)S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124760 2014-03-13] (Microsoft Corporation)R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.)S3 AIDA64Driver; \??\C:\Users\Lidia\AppData\Local\Temp\AIDA64Driver.sys [X]S3 SmbDrv; \SystemRoot\System32\drivers\Smb_driver_AMDASF.sys [X]==================== NetSvcs (Whitelisted) ======================================= One Month Created Files and Folders ========2014-05-29 11:36 - 2014-05-29 11:36 - 00017420 _____ () C:\Users\Lidia\Desktop\FRST.txt2014-05-29 11:36 - 2014-05-29 11:36 - 00000000 ____D () C:\FRST2014-05-29 11:35 - 2014-05-29 11:35 - 02066944 _____ (Farbar) C:\Users\Lidia\Desktop\FRST64.exe2014-05-29 11:21 - 2014-05-29 11:27 - 00000000 ____D () C:\Users\Lidia\Desktop\gsmartcontrol-0.8.7-win322014-05-29 11:21 - 2014-05-29 11:27 - 00000000 ____D () C:\Users\Lidia\AppData\Roaming\gsmartcontrol2014-05-26 08:59 - 2014-05-26 08:59 - 00002313 _____ () C:\Users\Lidia\Desktop\Safe Money.lnk2014-05-26 08:59 - 2014-05-26 08:59 - 00001308 _____ () C:\Users\Lidia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security.lnk2014-05-26 08:59 - 2014-05-26 08:59 - 00001107 _____ () C:\Users\Public\Desktop\Kaspersky Internet Security.lnk2014-05-26 08:58 - 2013-05-06 09:13 - 00110176 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\klfphc.dll2014-05-26 08:57 - 2014-05-28 17:29 - 00000000 ____D () C:\ProgramData\Kaspersky Lab2014-05-26 08:57 - 2014-05-26 09:14 - 00625760 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klif.sys2014-05-26 08:57 - 2014-05-26 09:14 - 00115296 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klflt.sys2014-05-26 08:57 - 2014-05-26 08:57 - 00000000 ____D () C:\Program Files (x86)\Kaspersky Lab2014-05-25 23:22 - 2014-05-25 23:22 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox2014-05-16 19:30 - 2014-05-16 19:30 - 17938608 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe2014-05-16 19:08 - 2014-05-08 08:14 - 23134208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll2014-05-16 19:08 - 2014-05-08 06:52 - 17073152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll2014-05-16 19:08 - 2014-05-08 05:57 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll2014-05-16 19:08 - 2014-05-08 05:04 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll2014-05-16 19:08 - 2014-04-19 12:15 - 21186352 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll2014-05-16 19:08 - 2014-04-19 07:49 - 18644072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll==================== One Month Modified Files and Folders =======2014-05-29 11:36 - 2014-05-29 11:36 - 00017420 _____ () C:\Users\Lidia\Desktop\FRST.txt2014-05-29 11:36 - 2014-05-29 11:36 - 00000000 ____D () C:\FRST2014-05-29 11:35 - 2014-05-29 11:35 - 02066944 _____ (Farbar) C:\Users\Lidia\Desktop\FRST64.exe2014-05-29 11:33 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness2014-05-29 11:29 - 2014-01-10 22:12 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job2014-05-29 11:28 - 2014-03-14 00:21 - 01836192 _____ () C:\WINDOWS\WindowsUpdate.log2014-05-29 11:27 - 2014-05-29 11:21 - 00000000 ____D () C:\Users\Lidia\Desktop\gsmartcontrol-0.8.7-win322014-05-29 11:27 - 2014-05-29 11:21 - 00000000 ____D () C:\Users\Lidia\AppData\Roaming\gsmartcontrol2014-05-29 11:27 - 2014-04-07 23:15 - 00067584 ___SH () C:\Users\Lidia\Desktop\Thumbs.db2014-05-29 11:27 - 2014-01-24 21:35 - 00063488 ___SH () C:\Users\Lidia\Downloads\Thumbs.db2014-05-29 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru2014-05-28 19:27 - 2014-01-10 16:04 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1652270780-612573717-2498243368-10012014-05-28 19:20 - 2014-01-12 19:37 - 00007633 _____ () C:\Users\Lidia\AppData\Local\Resmon.ResmonCfg2014-05-28 17:31 - 2014-01-10 15:56 - 00003918 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{9BF09A17-B37E-47A4-83EC-79DC96893CC4}2014-05-28 17:29 - 2014-05-26 08:57 - 00000000 ____D () C:\ProgramData\Kaspersky Lab2014-05-28 17:28 - 2014-04-07 17:10 - 00000000 ____D () C:\Users\Lidia\AppData\Roaming\Skype2014-05-26 09:14 - 2014-05-26 08:57 - 00625760 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klif.sys2014-05-26 09:14 - 2014-05-26 08:57 - 00115296 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klflt.sys2014-05-26 09:14 - 2014-01-24 04:30 - 00065120 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klwfp.sys2014-05-26 09:14 - 2014-01-24 04:30 - 00029280 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klkbdflt.sys2014-05-26 08:59 - 2014-05-26 08:59 - 00002313 _____ () C:\Users\Lidia\Desktop\Safe Money.lnk2014-05-26 08:59 - 2014-05-26 08:59 - 00001308 _____ () C:\Users\Lidia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security.lnk2014-05-26 08:59 - 2014-05-26 08:59 - 00001107 _____ () C:\Users\Public\Desktop\Kaspersky Internet Security.lnk2014-05-26 08:58 - 2014-01-10 20:12 - 01023246 _____ () C:\WINDOWS\system32\perfh015.dat2014-05-26 08:58 - 2014-01-10 20:12 - 00225254 _____ () C:\WINDOWS\system32\perfc015.dat2014-05-26 08:58 - 2013-11-14 13:45 - 02200854 _____ () C:\WINDOWS\system32\PerfStringBackup.INI2014-05-26 08:58 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM2014-05-26 08:57 - 2014-05-26 08:57 - 00000000 ____D () C:\Program Files (x86)\Kaspersky Lab2014-05-26 08:57 - 2012-07-26 09:12 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP2014-05-26 08:51 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT2014-05-26 08:50 - 2013-11-14 05:34 - 00015546 _____ () C:\WINDOWS\PFRO.log2014-05-26 08:50 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI2014-05-26 08:47 - 2012-07-26 06:37 - 00000000 ____D () C:\Users\Default.migrated2014-05-26 08:37 - 2014-03-14 00:08 - 00000000 ____D () C:\Users\Lidia2014-05-26 08:36 - 2014-01-10 15:55 - 00000000 ____D () C:\Users\Lidia\AppData\Local\Packages2014-05-26 00:59 - 2014-01-10 15:57 - 00000000 ___RD () C:\Users\Lidia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup2014-05-26 00:59 - 2014-01-10 15:57 - 00000000 ___RD () C:\Users\Lidia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools2014-05-26 00:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData2014-05-26 00:52 - 2014-01-10 20:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service2014-05-25 23:22 - 2014-05-25 23:22 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox2014-05-25 23:22 - 2013-09-28 19:09 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat2014-05-25 23:22 - 2013-09-28 19:06 - 00000000 ____D () C:\Program Files (x86)\CyberLink2014-05-25 23:22 - 2013-06-19 20:10 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information2014-05-16 19:30 - 2014-05-16 19:30 - 17938608 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe2014-05-16 19:30 - 2014-01-10 22:12 - 00003818 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater2014-05-16 19:13 - 2014-03-06 20:19 - 00000000 ____D () C:\WINDOWS\system32\MRT2014-05-16 19:10 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates2014-05-10 13:20 - 2014-03-13 23:58 - 00000000 ____D () C:\Windows.old2014-05-08 08:14 - 2014-05-16 19:08 - 23134208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll2014-05-08 06:52 - 2014-05-16 19:08 - 17073152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll2014-05-08 05:57 - 2014-05-16 19:08 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll2014-05-08 05:04 - 2014-05-16 19:08 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll2014-05-04 17:12 - 2014-03-06 20:19 - 93223848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe2014-05-01 21:30 - 2013-08-22 16:38 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe2014-05-01 21:30 - 2013-08-22 16:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cplSome content of TEMP:====================C:\Users\Lidia\AppData\Local\Temp\COMAP.EXEC:\Users\Lidia\AppData\Local\Temp\Extract.exe==================== Bamital & volsnap Check =================C:\Windows\System32\winlogon.exe => MD5 is legitC:\Windows\System32\wininit.exe => MD5 is legitC:\Windows\explorer.exe => MD5 is legitC:\Windows\SysWOW64\explorer.exe => MD5 is legitC:\Windows\System32\svchost.exe => MD5 is legitC:\Windows\SysWOW64\svchost.exe => MD5 is legitC:\Windows\System32\services.exe => MD5 is legitC:\Windows\System32\User32.dll => MD5 is legitC:\Windows\SysWOW64\User32.dll => MD5 is legitC:\Windows\System32\userinit.exe => MD5 is legitC:\Windows\SysWOW64\userinit.exe => MD5 is legitC:\Windows\System32\rpcss.dll => MD5 is legitC:\Windows\System32\Drivers\volsnap.sys => MD5 is legitLastRegBack: 2014-05-10 13:15==================== End Of Log ============================ oraz Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-05-2014 02Ran by Lidia at 2014-05-29 11:37:00Running from C:\Users\Lidia\DesktopBoot Mode: Normal============================================================================== Security Center ========================AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886}AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B}AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD}==================== Installed Programs ======================7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.6.636 - Adobe Systems, Inc.)AIDA64 Extreme Edition v2.70 (HKLM-x32\...\AIDA64 Extreme Edition_is1) (Version: 2.70 - FinalWire Ltd.)Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.)Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.)CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.5.3606 - CyberLink Corp.)CyberLink Media Suite 10 (x32 Version: 10.0.5.3606 - CyberLink Corp.) HiddenCyberlink PhotoDirector (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.2.4128 - CyberLink Corp.)Cyberlink PhotoDirector (x32 Version: 3.0.2.4128 - CyberLink Corp.) HiddenCyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.4.3202 - CyberLink Corp.)CyberLink Power2Go 8 (x32 Version: 8.0.4.3202 - CyberLink Corp.) HiddenCyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.3.2606 - CyberLink Corp.)CyberLink PowerDirector 10 (x32 Version: 10.0.3.2606 - CyberLink Corp.) HiddenCyberLink PowerDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.8.5108 - CyberLink Corp.)CyberLink PowerDVD (x32 Version: 10.0.8.5108 - CyberLink Corp.) HiddenD3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) HiddenEnergy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company)HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software)HP 3D DriveGuard (HKLM\...\{54CE68A8-4F2D-4328-B1F7-D6C720405F7F}) (Version: 4.2.9.1 - Hewlett-Packard Company)HP CoolSense (HKLM-x32\...\{59F8C5AA-91BD-423D-BF05-09A80F39898F}) (Version: 2.10.62 - Hewlett-Packard Company)HP Customer Experience Enhancements (x32 Version: 6.0.1.8 - Hewlett-Packard) HiddenHP Documentation (HKLM-x32\...\{F2481209-98FE-4943-8903-90D19E1B7062}) (Version: 1.2.0.0 - Hewlett-Packard)HP Postscript Converter (Version: 4.0.4100 - Hewlett-Packard) HiddenHP Quick Start (HKLM-x32\...\{574F0207-8E98-46CD-8F79-318348C98C46}) (Version: 1.0.4660.30220 - Hewlett-Packard)HP Recovery Manager (x32 Version: 9.00 - Hewlett-Packard) HiddenHP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.6317.4309 - Hewlett-Packard)HP System Event Utility (HKLM-x32\...\{C78E8F51-3EAD-4F0C-83F0-EF371075E0B4}) (Version: 1.0.10 - Hewlett-Packard Company)HP Utility Center (HKLM\...\{73237EBB-B26F-4628-8754-4EFE563D72E9}) (Version: 2.1.5 - Hewlett-Packard Company)HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.13.1706 - Intel Corporation)Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3412 - Intel Corporation)Intel® Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.1.1000 - Intel Corporation)Intel® Rapid Storage Technology (Version: 12.8.1.1000 - Intel Corporation) HiddenIntel® SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.63463 - Intel Corporation)Intel® Trusted Connect Service Client (Version: 1.28.487.1 - Intel Corporation) HiddenKaspersky Internet Security (HKLM-x32\...\InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090}) (Version: 14.0.0.4651 - Kaspersky Lab)Kaspersky Internet Security (x32 Version: 14.0.0.4651 - Kaspersky Lab) HiddenMicrosoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) HiddenMicrosoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.1.10111.0 - Microsoft Corporation)Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) HiddenMozilla Firefox 29.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 pl)) (Version: 29.0.1 - Mozilla)Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)MPC-HC 1.7.1 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.1.0 - MPC-HC Team)MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) HiddenMSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) HiddenMSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) HiddenPhoto Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) HiddenPhoto Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) HiddenRealtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.20.815.2013 - Realtek)Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6870 - Realtek Semiconductor Corp.)Realtek PCIE Card Reader (HKLM-x32\...\{BCDA54F6-C4B6-4519-A09E-FA064A6B4098}) (Version: 1.1.9200.007 - Realtek Semiconductor Corp.)REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.00.13.1216 - REALTEK Semiconductor Corp.)Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.)swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) HiddenSynaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.6.13 - Synaptics Incorporated)Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) HiddenWindows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) HiddenWindows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) HiddenWindows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) HiddenWindows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) HiddenWindows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) HiddenWindows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) HiddenWindows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) HiddenWindows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) HiddenWinRAR 5.01 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)Żyjące legendy: Lodowa róża. Edycja kolekcjonerska (HKLM-x32\...\Żyjące legendy: Lodowa róża. Edycja kolekcjonerska) (Version: 1.0.0.0 - Alawar Entertainment Inc.)==================== Restore Points =========================27-03-2014 20:04:19 Windows Update02-04-2014 11:19:39 Windows Update16-05-2014 18:09:06 Windows Update25-05-2014 22:16:17 Skonfigurowane YouCam==================== Hosts content: ==========================2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts==================== Scheduled Tasks (whitelisted) =============Task: {035792A1-D4EF-4A78-BF9A-AA9628C281A3} - System32\Tasks\Microsoft\Windows\Setup\SetupCleanupTaskTask: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTaskTask: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsListTask: {14F88E8E-1900-4925-B94B-5E23103A0915} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2013-03-12] (CyberLink Corp.)Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTaskTask: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulateTask: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalanceTask: {50EB952F-B209-4699-AD8E-012124ED4D13} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-08-05] (CyberLink)Task: {5DA41B97-12FB-4E3F-8B78-C36006B484AA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exeTask: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play CleanupTask: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance TaskTask: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTaskTask: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryStateTask: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance TaskTask: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTaskTask: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance WorkTask: {B4605D0F-DE1C-4A25-B224-17DA4D9F180B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exeTask: {B67AABE7-CD47-4201-B039-E03B17687B1E} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exeTask: {BAC61FCA-19D8-4E51-AC51-4D42D45A540B} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-16] (Adobe Systems Incorporated)Task: {C7879CF6-8CB6-4CF6-84D1-F404B3AAD771} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-05-04] (Microsoft Corporation)Task: {CA59ADE3-13E1-4290-AA59-D5D24B191845} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exeTask: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTaskTask: {D0177D2F-7035-4BFE-86B8-247769400677} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exeTask: {D07AE53B-1939-4704-B055-787A8539FF2D} - System32\Tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [2012-11-05] (Hewlett-Packard Development Company, L.P.)Task: {D1B29306-35EE-4A0F-8EEC-7C8DEB7C51B4} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-08-28] (Synaptics Incorporated)Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensingTask: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon SynchronizationTask: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRETask: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe==================== Loaded Modules (whitelisted) =============2014-01-25 03:22 - 2014-01-25 03:22 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll2014-03-21 21:51 - 2012-08-23 11:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll2014-03-21 21:51 - 2013-05-16 11:55 - 00113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl2014-03-21 21:51 - 2013-05-16 11:55 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl2014-03-21 21:51 - 2013-05-16 11:55 - 00161112 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl2014-03-21 21:51 - 2012-04-03 18:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll2014-03-24 20:51 - 2014-03-24 20:51 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\ACE.dll2014-03-24 20:44 - 2013-08-05 08:49 - 00627672 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll2013-08-05 16:48 - 2013-08-05 16:48 - 00016856 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll2013-06-17 12:35 - 2013-06-17 12:35 - 00478400 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\dblite.dll2013-05-08 14:52 - 2013-05-08 14:52 - 01270464 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\kpcengine.2.3.dll2014-05-25 23:22 - 2014-05-25 23:22 - 03839088 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll==================== Alternate Data Streams (whitelisted) =========AlternateDataStreams: C:\Users\Lidia\SkyDrive:ms-properties==================== Safe Mode (whitelisted) ======================================= EXE Association (whitelisted) ================================= Disabled items from MSCONFIG ================================== Faulty Device Manager Devices ================================= Event log errors: =========================Application errors:==================Error: (05/29/2014 11:27:09 AM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: NT AUTHORITY)Description: There was an error with the Windows Location Provider databaseError: (05/28/2014 07:21:54 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Laptop)Description: Aktywacja aplikacji FileManager_cw5n1h2txyewy!Microsoft.Windows.PhotoManager nie powiodła się. Błąd: -2144927142. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.Error: (05/28/2014 07:21:37 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: Laptop)Description: Aplikacja FileManager_6.3.9600.16384_neutral_neutral_cw5n1h2txyewy+Microsoft.Windows.PhotoManager nie została uruchomiona w wyznaczonym czasie.Error: (05/26/2014 08:36:27 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Laptop)Description: Aktywacja aplikacji CyberLinkCorp.hs.YouCamforHP_06qsbagp91rvg!App nie powiodła się. Błąd: -2147009284. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa.Error: (05/26/2014 00:57:33 AM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT AUTHORITY)Description: Nie można ponownie uaktywnić filtru zdarzeń z zapytaniem „select * from __InstanceModificationEvent where targetinstance isa '__ArbitratorConfiguration'” w przestrzeni nazw „//./root” z powodu błędu 0x80041033. Do czasu rozwiązania tego problemu nie będzie można dostarczać zdarzeń za pośrednictwem tego filtru.Error: (05/26/2014 00:57:33 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT AUTHORITY)Description: Dostawca zdarzeń $Core próbował zarejestrować zapytanie „select * from __TimerEvent”, w przypadku którego klasa docelowa „__TimerEvent” w przestrzeni nazw //./root nie istnieje. Zapytanie zostanie zignorowane.Error: (05/26/2014 00:57:33 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT AUTHORITY)Description: Dostawca zdarzeń $Core próbował zarejestrować zapytanie „select * from __SystemEvent”, w przypadku którego klasa docelowa „__SystemEvent” w przestrzeni nazw //./root nie istnieje. Zapytanie zostanie zignorowane.Error: (05/26/2014 00:57:33 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT AUTHORITY)Description: Dostawca zdarzeń $Core próbował zarejestrować zapytanie „select * from __NamespaceOperationEvent”, w przypadku którego klasa docelowa „__NamespaceOperationEvent” w przestrzeni nazw //./root nie istnieje. Zapytanie zostanie zignorowane.Error: (05/26/2014 00:57:33 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT AUTHORITY)Description: Dostawca zdarzeń $Core próbował zarejestrować zapytanie „select * from __ClassOperationEvent”, w przypadku którego klasa docelowa „__ClassOperationEvent” w przestrzeni nazw //./root nie istnieje. Zapytanie zostanie zignorowane.Error: (05/26/2014 00:57:33 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT AUTHORITY)Description: Dostawca zdarzeń $Core próbował zarejestrować zapytanie „select * from __InstanceOperationEvent”, w przypadku którego klasa docelowa „__InstanceOperationEvent” w przestrzeni nazw //./root nie istnieje. Zapytanie zostanie zignorowane.System errors:=============Error: (05/29/2014 11:21:52 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)Description: machine-defaultLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailableError: (05/28/2014 07:21:54 PM) (Source: DCOM) (EventID: 10010) (User: Laptop)Description: Microsoft.Windows.PhotoManagerError: (05/28/2014 10:15:47 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)Description: machine-defaultLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailableError: (05/27/2014 00:58:30 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)Description: machine-defaultLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailableError: (05/26/2014 07:57:46 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)Description: machine-defaultLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}NT AUTHORITYLOCAL SERVICES-1-5-19LocalHost (Using LRPC)UnavailableUnavailableError: (05/26/2014 09:15:29 AM) (Source: Service Control Manager) (EventID: 7023) (User: )Description: Usługa Interactive Services Detection zakończyła działanie; wystąpił następujący błąd:%%1Error: (05/26/2014 09:15:25 AM) (Source: Service Control Manager) (EventID: 7006) (User: )Description: Wywołanie ScRegSetValueExW dla FailureActions nie powiodło się i wystąpił następujący błąd:%%5.Error: (05/26/2014 08:50:19 AM) (Source: Service Control Manager) (EventID: 7043) (User: )Description: Usługa Windows Update nie została poprawnie zamknięta po odebraniu kodu sterującego przed zamknięciem.Error: (05/26/2014 00:57:26 AM) (Source: Service Control Manager) (EventID: 7023) (User: )Description: Usługa Windows Modules Installer zakończyła działanie; wystąpił następujący błąd:%%32Error: (05/26/2014 00:56:30 AM) (Source: Service Control Manager) (EventID: 7000) (User: )Description: Nie można uruchomić usługi Spybot-S&D 2 Scanner Service z powodu następującego błędu:%%1053Microsoft Office Sessions:=========================Error: (05/29/2014 11:27:09 AM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: NT AUTHORITY)Description: -2147024883Error: (05/28/2014 07:21:54 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Laptop)Description: FileManager_cw5n1h2txyewy!Microsoft.Windows.PhotoManager-2144927142Error: (05/28/2014 07:21:37 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: Laptop)Description: FileManager_6.3.9600.16384_neutral_neutral_cw5n1h2txyewy+Microsoft.Windows.PhotoManagerError: (05/26/2014 08:36:27 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Laptop)Description: CyberLinkCorp.hs.YouCamforHP_06qsbagp91rvg!App-2147009284Error: (05/26/2014 00:57:33 AM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT AUTHORITY)Description: //./rootselect * from __InstanceModificationEvent where targetinstance isa '__ArbitratorConfiguration'0x80041033Error: (05/26/2014 00:57:33 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT AUTHORITY)Description: $Coreselect * from __TimerEvent__TimerEvent//./rootError: (05/26/2014 00:57:33 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT AUTHORITY)Description: $Coreselect * from __SystemEvent__SystemEvent//./rootError: (05/26/2014 00:57:33 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT AUTHORITY)Description: $Coreselect * from __NamespaceOperationEvent__NamespaceOperationEvent//./rootError: (05/26/2014 00:57:33 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT AUTHORITY)Description: $Coreselect * from __ClassOperationEvent__ClassOperationEvent//./rootError: (05/26/2014 00:57:33 AM) (Source: Microsoft-Windows-WMI) (EventID: 24) (User: NT AUTHORITY)Description: $Coreselect * from __InstanceOperationEvent__InstanceOperationEvent//./root==================== Memory info ===========================Percentage of memory in use: 51%Total physical RAM: 3988.27 MBAvailable physical RAM: 1953.72 MBTotal Pagefile: 4692.27 MBAvailable Pagefile: 2029.84 MBTotal Virtual: 131072 MBAvailable Virtual: 131071.77 MB==================== Drives ================================Drive c: (Windows) (Fixed) (Total:441.25 GB) (Free:392.88 GB) NTFS ==>[system with boot components (obtained from reading drive)]Drive d: (RECOVERY) (Fixed) (Total:23.3 GB) (Free:2.31 GB) NTFS ==>[system with boot components (obtained from reading drive)]==================== MBR & Partition Table ==========================================================================Disk: 0 (Size: 466 GB) (Disk ID: DFA2BBC7)Partition: GPT Partition Type.==================== End Of Log ============================ Edytowane 29 Maja 2014 przez Czaszka Cytuj Link to post Share on other sites
testerrr 47 Napisano 30 Maja 2014 Udostępnij Napisano 30 Maja 2014 (edytowane) Cześć. Co do Smart to nawet Tobie rzucił się w oczy parametr 188 BC. W większości przypadków jest on spowodowany problemami z zasilaniem, co w przypadku laptopów nie zdarza się często, wręcz przeciwnie. Wyjmij dysk i przeczyść alkoholem izopropylowym (albo innym lotnym) styki. Obserwuj czy ten parametr rośnie. Co do systemu - to jest masa błędów, które mogą wynikać właśnie z ww. powodow. Usuń koniecznie S&D, to program przestarzały, zupełnie nie radzący sobie w dzisiejszych realiach. Drobna kosmetyka, bez związku z problemami: Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]S3 AIDA64Driver; \??\C:\Users\Lidia\AppData\Local\Temp\AIDA64Driver.sys [X]S3 SmbDrv; \SystemRoot\System32\drivers\Smb_driver_AMDASF.sys [X] Zapisz to w pliku fixlist.txt i wrzuć go do tego samego folderu, w ktorym masz FRST, a nastepnie uruchom FRST i opcja FIX. Kolejna rzecz to: uruchom cmd jako administrator i wpisz sfc /scannow Jezeli zostana wykryte naruszenia integralności to po weryfikacji użyj komendy findstr /c:"[sR]" %windir%\logs\cbs\cbs.log >%userprofile%\Desktop\sfcdetails.txt nastepnie spakuj plik, ktory Ci sie utworzy na pulpicie sfcdetails.txt i wrzuć tu na forum. W sumie należałoby powiedzieć, że takie odcięcia zasilania dla dysku nie są zdrowe, dbaj o kopie zapasowe swoich najwazniejszych plików. Edytowane 30 Maja 2014 przez testerrr Cytuj Link to post Share on other sites
Czaszka 49 Napisano 31 Maja 2014 Autor Udostępnij Napisano 31 Maja 2014 W/w metoda nie wykazała niespójnosći, co do kopii na laptopie nie trzymam nic wartego archiwizowania, jak dysk padnie przeboleje. Dalej pozostaje kwestia dlaczego dysk jest w ciągłym użyciu. Cytuj Link to post Share on other sites
testerrr 47 Napisano 31 Maja 2014 Udostępnij Napisano 31 Maja 2014 (edytowane) A czy w trybie awaryjnym jest podobnie? Czy tam ten problem w ogole nie wystepuje? To istotne. Edytowane 31 Maja 2014 przez testerrr Cytuj Link to post Share on other sites
Recommended Posts
Dołącz do dyskusji
Możesz dodać zawartość już teraz a zarejestrować się później. Jeśli posiadasz już konto, zaloguj się aby dodać zawartość za jego pomocą.