﻿Additional scan result of Farbar Recovery Scan Tool (x86) Version: 20-12-2014
Ran by Ondra at 2014-12-20 13:54:06
Running from C:\Users\Ondra\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 15 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 15.0.0.246 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 15.0.0.246 - Adobe Systems Incorporated)
Adobe Reader X (10.1.12) - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AA1000000001}) (Version: 10.1.12 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0405-0000-0000000FF1CE}_HOMESTUDENTR_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version:  - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0405-0000-0000000FF1CE}_HOMESTUDENTR_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version:  - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0405-0000-0000000FF1CE}_HOMESTUDENTR_{E68DD413-B834-4923-8181-0A03B7555187}) (Version:  - Microsoft)
Broadcom 802.11 Wireless LAN Adapter (HKLM\...\Broadcom 802.11 Wireless LAN Adapter) (Version: 5.60.18.12 - Broadcom Corporation)
Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.)
ESU for Microsoft Vista SP1 (HKLM\...\{01F81577-D786-49D7-BAAF-B8A8B44CE251}) (Version: 1.00.3.1 - Hewlett-Packard)
Java 7 Update 67 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Marvell Miniport Driver (HKLM\...\Marvell Miniport Driver) (Version: 10.70.5.3 - Marvell)
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB2698023) (HKLM\...\M2698023) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB2833941) (HKLM\...\M2833941) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version:  - )
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - csy) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Mozilla Firefox 34.0 (x86 cs) (HKLM\...\Mozilla Firefox 34.0 (x86 cs)) (Version: 34.0 - Mozilla)
Skype™ 6.16 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version:  - )
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Winamp Detector Plug-in (HKU\S-1-5-21-2319226969-1122203107-1309984348-1004\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc)
Windows Media Player Firefox Plugin (HKLM\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-2319226969-1122203107-1309984348-1004_Classes\CLSID\{42FE718B-A148-41D6-885B-01A0AFAE8723}\InprocServer32 -> No File Path

==================== Restore Points  =========================

31-08-2014 01:51:35 Naplánovaný kontrolní bod
04-09-2014 15:46:28 Naplánovaný kontrolní bod
10-09-2014 22:33:03 Windows Update
24-09-2014 22:29:37 Windows Update
02-10-2014 15:44:22 Naplánovaný kontrolní bod
15-10-2014 22:22:30 Windows Update
28-10-2014 11:29:05 Naplánovaný kontrolní bod
12-11-2014 23:28:00 Windows Update
20-11-2014 17:14:12 Instalace balíčku ovladače zařízení: Broadcom Síťové adaptéry
20-11-2014 17:18:18 Windows Update
21-11-2014 21:56:50 Instalace balíčku ovladače zařízení: Marvell Síťové adaptéry
21-11-2014 22:00:00 Instalace balíčku ovladače zařízení: Marvell Síťové adaptéry
10-12-2014 23:06:15 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2006-11-02 11:23 - 2006-09-18 22:41 - 00000761 ____A C:\windows\system32\Drivers\etc\hosts
127.0.0.1       localhost
::1             localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {1D41A78B-563C-448C-966C-47D8B38D062D} - System32\Tasks\{5D9B7BCE-4E7B-418E-8AC5-840EF00A16DE} => pcalua.exe -a C:\Users\Ondra\setpoint424bt_v270v470_x64.exe -d C:\Users\Ondra
Task: {4D007C48-F851-429B-92EB-7EC18EB53027} - System32\Tasks\{0A90839D-AE9E-47E6-BDE6-655A7658A6D7} => pcalua.exe -a E:\Msetup.exe -d E:\
Task: {55FE373D-6CC0-4594-B22D-73937E92A14F} - System32\Tasks\{D0DD65E1-CE34-480A-8EFA-1C76252AEBD9} => pcalua.exe -a C:\Users\Ondra\Desktop\Nero-8.3.6.0_csy_trial.exe -d C:\Users\Ondra\Desktop
Task: {5D114178-969C-4BD0-9DC8-865CC1DA5E22} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {6195D386-B6B6-44C8-B633-59C9153442C9} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-07-29] (AVAST Software)
Task: {6A67377A-A60B-423F-8AE2-333FCF540159} - System32\Tasks\{110EF7E7-811D-4DFB-92EF-162DA3FD9A38} => pcalua.exe -a C:\Users\Ondra\qip-2005-cestina.exe -d C:\Users\Ondra
Task: {89ED2D91-D152-4AF7-ADEB-DE3895EF6D65} - System32\Tasks\{F61CD3DA-9C84-4BDF-A637-35BDF235CD81} => pcalua.exe -a "E:\AchiCAD 10 CZ + CRACK\Setup.exe" -d "E:\AchiCAD 10 CZ + CRACK"
Task: {8A4AEB9C-4A3D-414C-B18A-47DC38104B57} - System32\Tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask => C:\windows\system32\RAServer.exe [2008-01-21] (Společnost Microsoft)
Task: {A6D7E3EF-9B9D-4C28-BC4E-FA47742815FC} - System32\Tasks\{27D7F026-1F85-413B-9EF1-E9E9A17D7F8F} => pcalua.exe -a "E:\AchiCAD 10 CZ + CRACK\ArchiCAD 10\archive.exe" -d "E:\AchiCAD 10 CZ + CRACK\ArchiCAD 10"
Task: {A97003A1-B8A2-42C4-A337-71CD79A33CAF} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-07-23] (Piriform Ltd)
Task: {B9AD3038-357F-407F-AC39-8D332BBB15DD} - System32\Tasks\HP Health Check => c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2008-04-15] (Hewlett-Packard)
Task: {BE027EBE-6806-4FE6-81C7-773FAF3C5DC4} - System32\Tasks\{05162777-A2FF-4004-A7B0-25809E4C8B6D} => pcalua.exe -a C:\Users\Ondra\Desktop\sp44780.exe -d C:\Users\Ondra\Desktop
Task: {D4615AF3-E9D6-4334-8CE1-C6C28C8777ED} - System32\Tasks\Adobe Flash Player Updater => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-09] (Adobe Systems Incorporated)
Task: {E5D41EB0-9F2B-4B10-B1FF-E95482534B36} - System32\Tasks\{6B63BE65-FBE7-444E-8E2B-440FE4733EDD} => C:\Program Files\Skype\\Phone\Skype.exe [2014-05-08] (Skype Technologies S.A.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Loaded Modules (whitelisted) =============

2013-10-07 14:45 - 2014-07-29 20:21 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll
2014-12-20 12:02 - 2014-12-20 12:02 - 02908160 _____ () C:\Program Files\AVAST Software\Avast\defs\14122000\algo.dll
2008-09-13 21:04 - 2007-09-20 17:34 - 00129024 _____ () C:\Program Files\WinRAR\rarext.dll
2008-09-13 21:04 - 2007-10-02 14:41 - 00319488 _____ () C:\Program Files\WinRAR\rarlng.dll
2008-05-21 10:38 - 2008-05-21 10:38 - 00159744 _____ () C:\Windows\system32\atitmmxx.dll
2014-03-29 12:05 - 2014-07-29 20:21 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2008-04-11 16:49 - 2008-04-11 17:04 - 00685360 _____ () C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\Ondra\Desktop\Zpátky-do-ringu.HDrip.cz.tit....avi:TOC.WMV

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MSCONFIG\startupreg: Windows Defender => %ProgramFiles%\Windows Defender\MSASCui.exe -hide

========================= Accounts: ==========================

Administrator (S-1-5-21-2319226969-1122203107-1309984348-500 - Administrator - Disabled)
Guest (S-1-5-21-2319226969-1122203107-1309984348-501 - Limited - Disabled)
Ondra (S-1-5-21-2319226969-1122203107-1309984348-1004 - Administrator - Enabled) => C:\Users\Ondra

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (12/20/2014 00:01:45 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/19/2014 03:12:45 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/18/2014 04:07:16 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/17/2014 06:20:54 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/17/2014 06:21:28 AM) (Source: EventSystem) (EventID: 4621) (User: )
Description: 80070005EventSystem.EventSubscription{CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}

Error: (12/17/2014 04:59:26 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/16/2014 09:02:56 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/16/2014 03:58:17 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/15/2014 05:47:54 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (12/14/2014 07:39:43 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


System errors:
=============
Error: (09/26/2009 00:13:04 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (13:09:36, 26.9.2009) bylo neočekávané.

Error: (09/26/2009 10:56:44 AM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1001) (User: NT AUTHORITY)
Description: 0x80070032

Error: (09/26/2009 10:56:01 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Parallel port driver%%1058

Error: (09/26/2009 10:55:51 AM) (Source: HTTP) (EventID: 15016) (User: )
Description: \Device\Http\ReqQueueKerberos

Error: (09/25/2009 11:24:14 PM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1001) (User: NT AUTHORITY)
Description: 0x80070032

Error: (09/25/2009 11:23:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Parallel port driver%%1058

Error: (09/25/2009 11:23:24 PM) (Source: HTTP) (EventID: 15016) (User: )
Description: \Device\Http\ReqQueueKerberos

Error: (09/25/2009 03:11:36 PM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1001) (User: NT AUTHORITY)
Description: 0x80070032

Error: (09/25/2009 03:11:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Parallel port driver%%1058

Error: (09/25/2009 03:10:54 PM) (Source: HTTP) (EventID: 15016) (User: )
Description: \Device\Http\ReqQueueKerberos


Microsoft Office Sessions:
=========================

CodeIntegrity Errors:
===================================
  Date: 2014-10-07 16:16:49.289
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\verifier.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-19 22:50:13.289
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\logitech\SetPoint\lgscroll.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-19 22:50:12.228
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\Hewlett-Packard\IAM\Bin\ItClient.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-19 22:50:11.176
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\logitech\SetPoint\lgscroll.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-19 22:50:10.139
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\Hewlett-Packard\IAM\Bin\ItClient.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-19 22:50:08.609
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\logitech\SetPoint\lgscroll.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-19 22:50:07.447
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\Hewlett-Packard\IAM\Bin\ItClient.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-19 22:50:06.387
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\logitech\SetPoint\lgscroll.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-19 22:50:05.315
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\Hewlett-Packard\IAM\Bin\ItClient.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-03-19 22:50:04.217
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\logitech\SetPoint\lgscroll.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info =========================== 

Processor: AMD Turion(tm)X2 Ultra DualCore Mobile ZM-82
Percentage of memory in use: 64%
Total physical RAM: 1788.08 MB
Available physical RAM: 641.59 MB
Total Pagefile: 3822.21 MB
Available Pagefile: 2160.14 MB
Total Virtual: 2047.88 MB
Available Virtual: 1891.38 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:222.88 GB) (Free:80.98 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (HP_RECOVERY) (Fixed) (Total:9 GB) (Free:1.79 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive f: (HP_TOOLS) (Fixed) (Total:1 GB) (Free:0.99 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 232.9 GB) (Disk ID: 80D2F3EE)
Partition 1: (Active) - (Size=222.9 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1 GB) - (Type=0C)
Partition 3: (Not Active) - (Size=9 GB) - (Type=07 NTFS)

==================== End Of Log ============================