﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-02-2015
Ran by Zuzana at 2015-02-01 11:57:03
Running from C:\Users\Zuzana\Desktop
Boot Mode: Safe Mode (minimal)
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

KMSpico v9.2.3 (HKLM\...\KMSpico_is1) (Version: 9.2.3 - )
Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

31-01-2015 20:46:57 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {81054D83-0C15-4894-87B1-3BB91CDBFB8D} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-12-31] (Microsoft Corporation)
Task: {A2E6AF92-A27E-48C6-9213-2231E259B7DF} - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance No Task File <==== ATTENTION
Task: {B52678AC-2956-4ED2-B81A-721734D69791} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [2014-03-02] ()
Task: {CC7E9366-CF26-4DC9-A66C-3EAB252649E1} - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan No Task File <==== ATTENTION
Task: {E288921A-4336-4DEA-A1A6-6F3E6A856E5C} - \Microsoft\Windows\Windows Defender\Windows Defender Verification No Task File <==== ATTENTION
Task: {F67C3C3C-2EE9-498E-A0D8-AA09F8787FB1} - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup No Task File <==== ATTENTION

==================== Loaded Modules (whitelisted) =============

2015-01-31 13:47 - 2015-01-31 13:47 - 76677632 __RSH () C:\ProgramData\nvxasync\nvxasync.exe

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\Zuzana\OneDrive:ms-properties

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="1"

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)


========================= Accounts: ==========================

Administrator (S-1-5-21-3000397284-3468275991-3139848333-500 - Administrator - Disabled)
Guest (S-1-5-21-3000397284-3468275991-3139848333-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3000397284-3468275991-3139848333-1003 - Limited - Enabled)
Zuzana (S-1-5-21-3000397284-3468275991-3139848333-1001 - Administrator - Enabled) => C:\Users\Zuzana

==================== Faulty Device Manager Devices =============

Name: Fingerprint Sensor
Description: Fingerprint Sensor
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (02/01/2015 11:50:24 AM) (Source: Desktop Window Manager) (EventID: 9020) (User: )
Description: The Desktop Window Manager has encountered a fatal error (0x8898008d)

Error: (01/31/2015 08:46:57 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.


Details:
AddCoreCsiFiles : BeginFileEnumeration() failed.

System Error:
There are no more files.
.

Error: (01/31/2015 08:46:56 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.


Details:
AddCoreCsiFiles : BeginFileEnumeration() failed.

System Error:
There are no more files.
.

Error: (01/31/2015 07:59:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: FRSTLauncher.exe, version: 30.9.13.1, time stamp: 0x2a425e19
Faulting module name: KERNELBASE.dll, version: 6.3.9600.17031, time stamp: 0x53088860
Exception code: 0x0eedfade
Fault offset: 0x00014dbd
Faulting process id: 0x140
Faulting application start time: 0xFRSTLauncher.exe0
Faulting application path: FRSTLauncher.exe1
Faulting module path: FRSTLauncher.exe2
Report Id: FRSTLauncher.exe3
Faulting package full name: FRSTLauncher.exe4
Faulting package-relative application ID: FRSTLauncher.exe5

Error: (01/31/2015 07:59:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: FRSTLauncher.exe, version: 30.9.13.1, time stamp: 0x2a425e19
Faulting module name: KERNELBASE.dll, version: 6.3.9600.17031, time stamp: 0x53088860
Exception code: 0x0eedfade
Fault offset: 0x00014dbd
Faulting process id: 0x8d0
Faulting application start time: 0xFRSTLauncher.exe0
Faulting application path: FRSTLauncher.exe1
Faulting module path: FRSTLauncher.exe2
Report Id: FRSTLauncher.exe3
Faulting package full name: FRSTLauncher.exe4
Faulting package-relative application ID: FRSTLauncher.exe5

Error: (01/31/2015 01:43:59 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0x8007000D
Command-line arguments:
RuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=TimerEvent


System errors:
=============
Error: (02/01/2015 11:57:09 AM) (Source: DCOM) (EventID: 10005) (User: SATSUKI)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

Error: (02/01/2015 11:57:09 AM) (Source: DCOM) (EventID: 10005) (User: SATSUKI)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

Error: (02/01/2015 11:57:08 AM) (Source: DCOM) (EventID: 10005) (User: SATSUKI)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

Error: (02/01/2015 11:57:08 AM) (Source: DCOM) (EventID: 10005) (User: SATSUKI)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

Error: (02/01/2015 11:57:06 AM) (Source: DCOM) (EventID: 10005) (User: SATSUKI)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

Error: (02/01/2015 11:57:06 AM) (Source: DCOM) (EventID: 10005) (User: SATSUKI)
Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (02/01/2015 11:57:06 AM) (Source: DCOM) (EventID: 10005) (User: SATSUKI)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

Error: (02/01/2015 11:57:04 AM) (Source: DCOM) (EventID: 10005) (User: SATSUKI)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

Error: (02/01/2015 11:57:04 AM) (Source: DCOM) (EventID: 10005) (User: SATSUKI)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

Error: (02/01/2015 11:57:04 AM) (Source: DCOM) (EventID: 10005) (User: SATSUKI)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}


Microsoft Office Sessions:
=========================
Error: (02/01/2015 11:50:24 AM) (Source: Desktop Window Manager) (EventID: 9020) (User: )
Description: 0x8898008d

Error: (01/31/2015 08:46:57 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: 
Details:
AddCoreCsiFiles : BeginFileEnumeration() failed.

System Error:
There are no more files.

Error: (01/31/2015 08:46:56 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: 
Details:
AddCoreCsiFiles : BeginFileEnumeration() failed.

System Error:
There are no more files.

Error: (01/31/2015 07:59:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: FRSTLauncher.exe30.9.13.12a425e19KERNELBASE.dll6.3.9600.17031530888600eedfade00014dbd14001d03d8804443f34C:\Users\Zuzana\AppData\Local\Microsoft\Windows\INetCache\IE\94MJ63HM\FRSTLauncher.exeC:\Windows\SYSTEM32\KERNELBASE.dll41f7f114-a97b-11e4-8252-e839df0880d0

Error: (01/31/2015 07:59:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: FRSTLauncher.exe30.9.13.12a425e19KERNELBASE.dll6.3.9600.17031530888600eedfade00014dbd8d001d03d87fbb9daf0C:\Users\Zuzana\Desktop\FRSTLauncher.exeC:\Windows\SYSTEM32\KERNELBASE.dll398567d9-a97b-11e4-8252-e839df0880d0

Error: (01/31/2015 01:43:59 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: hr=0x8007000DRuleId=eeba1977-569e-4571-b639-7623d8bfecc0;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=TimerEvent


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i3 CPU M 350 @ 2.27GHz
Percentage of memory in use: 25%
Total physical RAM: 1840.42 MB
Available physical RAM: 1363.38 MB
Total Pagefile: 2992.42 MB
Available Pagefile: 2576.49 MB
Total Virtual: 131072 MB
Available Virtual: 131071.85 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:149.44 GB) (Free:133.89 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:148.65 GB) (Free:63.58 GB) NTFS
Drive f: () (Removable) (Total:3.73 GB) (Free:3.64 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: F005A7FA)
Partition 1: (Active) - (Size=149.4 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=148.7 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 3.7 GB) (Disk ID: 04030201)
Partition 1: (Not Active) - (Size=3.7 GB) - (Type=07 NTFS)

==================== End Of Log ============================