﻿Additional scan result of Farbar Recovery Scan Tool (x86) Version: 25-02-2015 01
Ran by Lubka at 2015-02-26 19:20:11
Running from C:\Users\Lubka\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKLM\...\uTorrent) (Version: 3.2.3.28705 - BitTorrent Inc.)
Acer OrbiCam (HKLM\...\{4A57592C-FF92-4083-97A9-92783BD5AFB4}) (Version:  - )
Adobe Flash Player 16 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Flash Player 16 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.0 (HKLM\...\Adobe Shockwave Player) (Version: 12.0.2.122 - Adobe Systems, Inc.)
Avast Free Antivirus (HKLM\...\Avast) (Version: 10.0.2208 - AVAST Software)
CCleaner (HKLM\...\CCleaner) (Version: 5.02 - Piriform)
DAEMON Tools Pro (HKLM\...\DAEMON Tools Pro) (Version: 5.2.0.0348 - DT Soft Ltd)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
HDAUDIO Soft Data Fax Modem with SmartCP (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFAOR2C06_118) (Version:  - )
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation)
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.4734.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 35.0.1 (x86 sk) (HKLM\...\Mozilla Firefox 35.0.1 (x86 sk)) (Version: 35.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 31.0 - Mozilla)
Opera Stable 27.0.1689.76 (HKLM\...\Opera 27.0.1689.76) (Version: 27.0.1689.76 - Opera Software ASA)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.)
Santa Claus in Trouble (HKLM\...\Santa Claus in Trouble) (Version:  - )
Skype™ 6.18 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.18.106 - Skype Technologies S.A.)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
The Sims 2 (HKLM\...\{6E7DD182-9FC6-4651-0095-2E666CC6AF35}) (Version:  - )
The Sims™ 2 Mazlíčci (HKLM\...\{4817189D-1785-4627-A33C-39FD90919300}) (Version:  - )
The Sims™ 2 Život v bytě (HKLM\...\{B6F5B704-06D3-4687-90F3-6195304AD755}) (Version:  - Electronic Arts)
VLC media player 2.0.4 (HKLM\...\VLC media player) (Version: 2.0.4 - VideoLAN)
WinRAR 4.20 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

ATTENTION: System Restore is disabled.

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2015-02-24 21:54 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {2EA7699B-78B7-445B-8ADA-726DA009BBE6} - System32\Tasks\Opera scheduled Autoupdate 1423645844 => C:\Program Files\Opera\launcher.exe [2015-02-23] (Opera Software)
Task: {42C30CC7-990E-4C37-A9C0-AE21D836BE84} - System32\Tasks\Gbvv => Rundll32.exe "C:\Windows\system32\dllhst3gw.dll",vnutw
Task: {5B47F47A-1BFA-4DCB-9D45-7BB2CE10B347} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-13] (Adobe Systems Incorporated)
Task: {79ECE534-C066-427C-A3DC-22999B7AD655} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {7BC79576-5D84-4CA0-96D1-A82B258CF2D4} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2013-01-02] ()
Task: {91925470-C262-4B01-B922-7153D73DBD4E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-01-20] (Piriform Ltd)
Task: {DCF90A16-35C4-4994-A6C2-A6B0AF638588} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-02-14] (AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Gbvv.job => C:\Windows\system32\rundll32.exe C:\Windows\system32\dllhst3gw.dll

==================== Loaded Modules (whitelisted) ==============

2015-02-26 15:31 - 2015-02-26 15:31 - 02913792 _____ () C:\Program Files\AVAST Software\Avast\defs\15022600\algo.dll
2010-01-09 20:18 - 2010-01-09 20:18 - 04254560 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2015-02-14 09:02 - 2015-02-14 09:02 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1844385039-4040455644-3526688214-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Lubka\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.9

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: MpsSvc => 2
MSCONFIG\startupreg: BCSSync => "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
MSCONFIG\startupreg: DAEMON Tools Pro Agent => "C:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun

==================== Accounts: =============================

Administrator (S-1-5-21-1844385039-4040455644-3526688214-500 - Administrator - Disabled)
Guest (S-1-5-21-1844385039-4040455644-3526688214-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1844385039-4040455644-3526688214-1002 - Limited - Enabled)
Lubka (S-1-5-21-1844385039-4040455644-3526688214-1000 - Administrator - Enabled) => C:\Users\Lubka

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (02/26/2015 06:53:05 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/26/2015 06:50:13 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_SysMain, verze: 6.1.7600.16385, časové razítko: 0x4a5bc100
Název chybujícího modulu: sysmain.dll, verze: 6.1.7601.17514, časové razítko: 0x4ce7ba10
Kód výjimky: 0xc0000005
Posun chyby: 0x0004b1e4
ID chybujícího procesu: 0x3b0
Čas spuštění chybující aplikace: 0xsvchost.exe_SysMain0
Cesta k chybující aplikaci: svchost.exe_SysMain1
Cesta k chybujícímu modulu: svchost.exe_SysMain2
ID zprávy: svchost.exe_SysMain3

Error: (02/26/2015 05:38:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: rundll32.exe_msvcrt.dll, verze: 6.1.7600.16385, časové razítko: 0x4a5bc637
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x187fedb0
ID chybujícího procesu: 0x4a0
Čas spuštění chybující aplikace: 0xrundll32.exe_msvcrt.dll0
Cesta k chybující aplikaci: rundll32.exe_msvcrt.dll1
Cesta k chybujícímu modulu: rundll32.exe_msvcrt.dll2
ID zprávy: rundll32.exe_msvcrt.dll3

Error: (02/26/2015 04:09:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: rundll32.exe_msvcrt.dll, verze: 6.1.7600.16385, časové razítko: 0x4a5bc637
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0e3a1a00
ID chybujícího procesu: 0xaa0
Čas spuštění chybující aplikace: 0xrundll32.exe_msvcrt.dll0
Cesta k chybující aplikaci: rundll32.exe_msvcrt.dll1
Cesta k chybujícímu modulu: rundll32.exe_msvcrt.dll2
ID zprávy: rundll32.exe_msvcrt.dll3

Error: (02/26/2015 03:31:29 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/25/2015 10:49:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: rundll32.exe_msvcrt.dll, verze: 6.1.7600.16385, časové razítko: 0x4a5bc637
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0b4dd390
ID chybujícího procesu: 0x9e4
Čas spuštění chybující aplikace: 0xrundll32.exe_msvcrt.dll0
Cesta k chybující aplikaci: rundll32.exe_msvcrt.dll1
Cesta k chybujícímu modulu: rundll32.exe_msvcrt.dll2
ID zprávy: rundll32.exe_msvcrt.dll3

Error: (02/25/2015 09:57:52 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/25/2015 03:47:03 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/25/2015 02:15:04 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/24/2015 09:54:44 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


System errors:
=============
Error: (02/26/2015 06:50:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Automatická konfigurace sítě WLAN byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.

Error: (02/26/2015 06:50:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Správce relací správce oken plochy byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.

Error: (02/26/2015 06:50:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Klient služby Sledování distribuovaných odkazů byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.

Error: (02/26/2015 06:50:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Superfetch byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 60000 milisekund: Restartovat službu.

Error: (02/26/2015 06:50:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Program Compatibility Assistant Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 60000 milisekund: Restartovat službu.

Error: (02/26/2015 06:50:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Síťová připojení byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 100 milisekund: Restartovat službu.

Error: (02/26/2015 06:50:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Naslouchací proces domácí skupiny byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 60000 milisekund: Restartovat službu.

Error: (02/26/2015 06:50:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Přístup k zařízením standardu HID byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.

Error: (02/26/2015 06:50:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Offline soubory byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.

Error: (02/26/2015 06:50:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Koncové vytváření služby Windows Audio byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 60000 milisekund: Restartovat službu.


Microsoft Office Sessions:
=========================
Error: (02/26/2015 06:53:05 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/26/2015 06:50:13 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: svchost.exe_SysMain6.1.7600.163854a5bc100sysmain.dll6.1.7601.175144ce7ba10c00000050004b1e43b001d051d0c11ddfd4C:\Windows\System32\svchost.exec:\windows\system32\sysmain.dlle9bf6ea1-bddf-11e4-aba9-0016d45cd007

Error: (02/26/2015 05:38:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: rundll32.exe_msvcrt.dll6.1.7600.163854a5bc637unknown0.0.0.000000000c0000005187fedb04a001d051e21d44f82dC:\Windows\system32\rundll32.exeunknowne57ee03c-bdd5-11e4-aba9-0016d45cd007

Error: (02/26/2015 04:09:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: rundll32.exe_msvcrt.dll6.1.7600.163854a5bc637unknown0.0.0.000000000c00000050e3a1a00aa001d051d59edffc48C:\Windows\system32\rundll32.exeunknown7b0b02d0-bdc9-11e4-aba9-0016d45cd007

Error: (02/26/2015 03:31:29 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/25/2015 10:49:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: rundll32.exe_msvcrt.dll6.1.7600.163854a5bc637unknown0.0.0.000000000c00000050b4dd3909e401d05143f62c1663C:\Windows\system32\rundll32.exeunknown26cfed9e-bd38-11e4-b573-0016d45cd007

Error: (02/25/2015 09:57:52 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/25/2015 03:47:03 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/25/2015 02:15:04 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (02/24/2015 09:54:44 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


==================== Memory info =========================== 

Processor: Intel(R) Celeron(R) M CPU 420 @ 1.60GHz
Percentage of memory in use: 64%
Total physical RAM: 1014.12 MB
Available physical RAM: 361.23 MB
Total Pagefile: 3138.12 MB
Available Pagefile: 2292.84 MB
Total Virtual: 2047.88 MB
Available Virtual: 1901.22 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:29.29 GB) (Free:7.52 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:119.75 GB) (Free:61.34 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149.1 GB) (Disk ID: 1917C1DA)
Partition 1: (Active) - (Size=29.3 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=119.8 GB) - (Type=07 NTFS)

==================== End Of Log ============================