﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-05-2015 01
Ran by Natusska at 2015-05-08 19:19:32
Running from C:\Users\Natusska\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-231258328-2270525889-393745479-500 - Administrator - Disabled)
Guest (S-1-5-21-231258328-2270525889-393745479-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-231258328-2270525889-393745479-1004 - Limited - Enabled)
Natusska (S-1-5-21-231258328-2270525889-393745479-1000 - Administrator - Enabled) => C:\Users\Natusska

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Avast Internet Security (HKLM-x32\...\Avast) (Version: 10.2.2215 - AVAST Software)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Broadcom Card Reader Driver Installer (HKLM\...\{4710662C-8204-4334-A977-B1AC9E547819}) (Version: 15.0.7.3 - Broadcom Corporation)
Broadcom NetLink Controller (HKLM\...\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}) (Version: 15.0.7.1 - Broadcom Corporation)
Broken Sword 1 - Shadow of the Templars: Director's Cut (HKLM-x32\...\Steam App 57640) (Version:  - Revolution Software Ltd)
CCleaner (HKLM\...\CCleaner) (Version: 4.17 - Piriform)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
Dropbox (HKU\S-1-5-21-231258328-2270525889-393745479-1000\...\Dropbox) (Version: 2.6.24 - Dropbox, Inc.)
ETDWare PS/2-X64 10.6.9.9_WHQL (HKLM\...\Elantech) (Version: 10.6.9.9 - ELAN Microelectronic Corp.)
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.2.1410 - Intel Corporation)
Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version:  - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2712 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.1.0.1006 - Intel Corporation)
Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation)
K-Lite Codec Pack 10.0.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.0.5 - )
Launch Manager (HKLM-x32\...\LManager) (Version: 5.1.15 - Packard Bell)
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office XP Professional s aplikací FrontPage (HKLM-x32\...\{90280405-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Mozilla Firefox 37.0.2 (x86 cs) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 cs)) (Version: 37.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
PhotoScape (HKLM-x32\...\PhotoScape) (Version:  - )
Qualcomm Atheros WiFi Driver Installation (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 3.0 - Qualcomm Atheros)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6543 - Realtek Semiconductor Corp.)
Sada Compatibility Pack pro systém Office 2007 (HKLM-x32\...\{90120000-0020-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Slovník Verdict Free (HKU\S-1-5-21-231258328-2270525889-393745479-1000\...\Verdict Free) (Version:  - )
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TuneUp Utilities 2012 (HKLM-x32\...\TuneUp Utilities 2012) (Version: 12.0.2160.12 - TuneUp Software)
TuneUp Utilities 2012 (x32 Version: 12.0.2160.12 - TuneUp Software) Hidden
TuneUp Utilities Language Pack (en-GB) (x32 Version: 12.0.2160.12 - TuneUp Software) Hidden
Video Web Camera (HKLM-x32\...\InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193}) (Version: 1.5.2108.00 - CyberLink Corp.)
Video Web Camera (x32 Version: 1.5.2108.00 - CyberLink Corp.) Hidden
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-231258328-2270525889-393745479-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Natusska\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-231258328-2270525889-393745479-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Natusska\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-231258328-2270525889-393745479-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Natusska\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-231258328-2270525889-393745479-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Natusska\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-231258328-2270525889-393745479-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Natusska\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)

==================== Restore Points  =========================

15-04-2015 21:51:35 Windows Update
19-04-2015 21:58:51 Windows Update
20-04-2015 13:38:13 avast! antivirus system restore point
20-04-2015 13:40:05 Instalace balíčku ovladače zařízení: Avast Síťová služba
24-04-2015 08:59:47 Windows Update
29-04-2015 21:13:45 Windows Update
04-05-2015 17:46:54 Windows Update
08-05-2015 18:46:34 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2014-01-13 16:06 - 00450639 ____R C:\Windows\system32\Drivers\etc\hosts
127.0.0.1	www.007guard.com
127.0.0.1	007guard.com
127.0.0.1	008i.com
127.0.0.1	www.008k.com
127.0.0.1	008k.com
127.0.0.1	www.00hq.com
127.0.0.1	00hq.com
127.0.0.1	010402.com
127.0.0.1	www.032439.com
127.0.0.1	032439.com
127.0.0.1	www.0scan.com
127.0.0.1	0scan.com
127.0.0.1	1000gratisproben.com
127.0.0.1	www.1000gratisproben.com
127.0.0.1	1001namen.com
127.0.0.1	www.1001namen.com
127.0.0.1	100888290cs.com
127.0.0.1	www.100888290cs.com
127.0.0.1	www.100sexlinks.com
127.0.0.1	100sexlinks.com
127.0.0.1	10sek.com
127.0.0.1	www.10sek.com
127.0.0.1	www.1-2005-search.com
127.0.0.1	1-2005-search.com
127.0.0.1	123fporn.info
127.0.0.1	www.123fporn.info
127.0.0.1	123haustiereundmehr.com
127.0.0.1	www.123haustiereundmehr.com
127.0.0.1	123moviedownload.com

There are 1000 more lines.


==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {0E075B65-45D2-413D-9F18-3007A80365B8} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2013-09-20] (Safer-Networking Ltd.)
Task: {12104720-F875-4672-8A1B-9458E20F8753} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {162A9135-A4A9-47E6-840B-CE85B833A171} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-04-20] (Avast Software s.r.o.)
Task: {4637177E-7070-42F9-92D9-37801A91E819} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2013-09-20] (Safer-Networking Ltd.)
Task: {48CCBC50-62F1-43F5-89D1-20F8C262C151} - System32\Tasks\{497A3407-F186-4C10-AC5A-EF194F2564F7} => C:\Program Files (x86)\EA GAMES\The Sims 2\TSBin\Sims2.exe
Task: {5125B7E1-B16C-4920-A2F5-3D1F67E758DA} - System32\Tasks\{802FC08E-59D4-41CB-B9E2-89FF882D431A} => pcalua.exe -a "C:\Users\Natusska\Desktop\POSEL-BOHŮ\POSEL BOHŮ\Bubliny-install.exe" -d "C:\Users\Natusska\Desktop\POSEL-BOHŮ\POSEL BOHŮ"
Task: {58A37669-93BC-4006-90CF-BCB2DE267D6B} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2013-09-20] (Safer-Networking Ltd.)
Task: {67599246-7B9A-428C-9D4A-9AD2F6C0C6B9} - System32\Tasks\Adobe online update program => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-11-20] (Adobe Systems Incorporated)
Task: {7BAA317F-4D8A-4E4E-AD49-CB7C41FBFDA2} - System32\Tasks\{A68B62CD-AD9C-412C-9538-20ED36DA3786} => C:\Program Files (x86)\EA GAMES\The Sims 2\TSBin\Sims2.exe
Task: {920DA038-F51A-4A3C-9B00-2AA49350AFE0} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-25] (Microsoft Corporation)
Task: {92896A20-4E99-4B1C-97D1-BF3091496D84} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2012 => C:\Program Files (x86)\TuneUp Utilities 2012\OneClick.exe [2011-12-14] (TuneUp Software)
Task: {AB1A9E84-56FA-4597-95FC-08026CD4A7B2} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-08-21] (Piriform Ltd)
Task: {AB5042CB-6F75-4AD2-B1D1-54F803C543AC} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {BC0EC70E-BF34-41A3-BB4F-CE21BCAA4019} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-16] (Adobe Systems Incorporated)
Task: {C5894141-C842-407C-B044-CE0E31A74E2B} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {E1BB2544-DD7F-493E-AE2F-B0F1513A57B3} - System32\Tasks\{F681FC2A-E363-40D9-B1A5-BA954FA125D0} => C:\Program Files (x86)\EA GAMES\The Sims 2\TSBin\Sims2.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Loaded Modules (whitelisted) ==============

2013-10-19 10:22 - 2012-03-27 02:33 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2015-04-20 13:39 - 2015-04-20 13:39 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-04-20 13:39 - 2015-04-20 13:39 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-05-06 10:05 - 2015-05-06 10:05 - 02926592 _____ () C:\Program Files\AVAST Software\Avast\defs\15050600\algo.dll
2015-05-08 18:41 - 2015-05-08 18:41 - 02926592 _____ () C:\Program Files\AVAST Software\Avast\defs\15050800\algo.dll
2014-01-13 15:57 - 2012-08-23 11:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2014-01-13 15:57 - 2013-05-16 11:55 - 00113496 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2014-01-13 15:57 - 2013-05-16 11:55 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2014-01-13 15:57 - 2013-05-16 11:55 - 00161112 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2014-01-13 15:57 - 2012-04-03 18:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2015-04-20 13:39 - 2015-04-20 13:39 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-10-16 19:42 - 2014-10-16 19:42 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\1eeea3ab8d69ec722bdcb28b8eb8dd75\IsdiInterop.ni.dll
2013-10-19 10:18 - 2012-02-01 16:25 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
2013-10-19 10:36 - 2012-02-08 03:39 - 01198872 ____R () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, the associated entry will be removed from the registry.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com

There are 7864 more restricted sites.

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-231258328-2270525889-393745479-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Natusska\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun

==================== FirewallRules (whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

FirewallRules: [TCP Query User{F7722C10-CE84-43DF-9A34-061109AAAC74}C:\users\natusska\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\natusska\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{52777D71-2996-47F9-B7E5-67E83990B11C}C:\users\natusska\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\natusska\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{2E8E9786-DCF1-4877-938A-F5DA74A4534F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe
FirewallRules: [{CDBF8366-561C-42ED-8362-19D9023B541F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe
FirewallRules: [{1C5D8F7F-B533-4868-A763-40F5D783E531}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{6AAF63F7-1A41-4350-8DCB-4D2B0F4D5F1E}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{0AF6A743-B2DB-461A-9586-EA78B96DF63D}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
FirewallRules: [{5D1C20F0-BCBC-43BC-B9F7-90A2DA3BD0AF}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
FirewallRules: [{5387D63E-F6DE-483F-BC72-AC0F835762DB}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe
FirewallRules: [{EBE38BBE-82CA-48F5-8D32-0951AA9BA579}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe
FirewallRules: [{A1ECFAFF-0069-4362-899F-20D91C588DCE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe
FirewallRules: [{807112A5-3F54-481E-9695-3A7C1735F46F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe
FirewallRules: [{AD34E00E-8A0F-43C6-8E74-8B7544E1FF58}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe
FirewallRules: [{9ACB2B8C-B2EE-4D1E-93A7-6182DCA9974E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe
FirewallRules: [{73B0FCB5-6B49-4DE3-90A1-ED80DC32CEE9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2816\Agent.exe
FirewallRules: [{B6EA3357-8D1F-487A-8368-C1086D1406F5}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2816\Agent.exe
FirewallRules: [TCP Query User{62C6AC66-7FC1-49EF-9777-9374DBFBFDF6}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{6AC8C937-D7D6-4547-90F2-8C5FC0C16B32}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [{6826D3BD-6463-4347-8624-8661EC94EED1}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{94572A8E-F474-4E6E-B06A-9761865AA70F}] => (Allow) C:\Users\Natusska\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{0708711E-6930-4A41-AFE7-FA8C63F22264}] => (Allow) C:\Users\Natusska\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{9DDD8ECE-5883-4E54-BC0D-BB2871761DED}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{8EFA06B5-1C10-4743-B1E2-17E9D3D14A6F}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{D3C10705-C260-4459-B491-62FE368F194E}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{5C4C0584-DD2A-447E-B9CD-CD1B63125B5E}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [{B0FDA290-5440-4221-B23C-464A3AFA8A9D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{25C70874-BEE3-4BE2-A461-4F49B89B29D7}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{F8C8B239-7F90-41E5-9760-5D66BD41B0D0}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{13122390-8122-4E73-B6C6-51FAB598D2C4}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{8CB453A5-859B-4AA0-B904-74291D3B5D40}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Broken Sword Shadow of the Templars\bs1dc.exe
FirewallRules: [{B99E0390-EDE1-47C6-8DEA-CE1AC42E2B19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Broken Sword Shadow of the Templars\bs1dc.exe
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot-S&D 2 Tray Icon
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (03/25/2015 09:25:09 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: SDTray.exe, verze: 2.1.21.129, časové razítko: 0x51f0ed9e
Název chybujícího modulu: rasadhlp.dll_unloaded, verze: 0.0.0.0, časové razítko: 0x4a5bdad6
Kód výjimky: 0xc0000005
Posun chyby: 0x740011b0
ID chybujícího procesu: 0xa2c
Čas spuštění chybující aplikace: 0xSDTray.exe0
Cesta k chybující aplikaci: SDTray.exe1
Cesta k chybujícímu modulu: SDTray.exe2
ID zprávy: SDTray.exe3

Error: (02/24/2015 11:32:45 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: plugin-container.exe, verze: 35.0.1.5500, časové razítko: 0x54c1f9f3
Název chybujícího modulu: mozalloc.dll, verze: 35.0.1.5500, časové razítko: 0x54c1f224
Kód výjimky: 0x80000003
Posun chyby: 0x00001425
ID chybujícího procesu: 0x790
Čas spuštění chybující aplikace: 0xplugin-container.exe0
Cesta k chybující aplikaci: plugin-container.exe1
Cesta k chybujícímu modulu: plugin-container.exe2
ID zprávy: plugin-container.exe3

Error: (01/29/2015 10:42:41 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: EXCEL.EXE, verze: 10.0.6871.0, časové razítko: 0x4daf71c5
Název chybujícího modulu: EXCEL.EXE, verze: 10.0.6871.0, časové razítko: 0x4daf71c5
Kód výjimky: 0xc0000005
Posun chyby: 0x004c4072
ID chybujícího procesu: 0xcd8
Čas spuštění chybující aplikace: 0xEXCEL.EXE0
Cesta k chybující aplikaci: EXCEL.EXE1
Cesta k chybujícímu modulu: EXCEL.EXE2
ID zprávy: EXCEL.EXE3

Error: (01/27/2015 11:16:17 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: plugin-container.exe, verze: 35.0.0.5486, časové razítko: 0x54af7153
Název chybujícího modulu: mozalloc.dll, verze: 35.0.0.5486, časové razítko: 0x54af69d4
Kód výjimky: 0x80000003
Posun chyby: 0x00001425
ID chybujícího procesu: 0x7e8
Čas spuštění chybující aplikace: 0xplugin-container.exe0
Cesta k chybující aplikaci: plugin-container.exe1
Cesta k chybujícímu modulu: plugin-container.exe2
ID zprávy: plugin-container.exe3

Error: (01/27/2015 11:16:13 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program firefox.exe verze 35.0.0.5486 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: e20

Čas spuštění: 01d03a10c8d09fd6

Čas ukončení: 11343

Cesta k aplikaci: C:\Program Files (x86)\Mozilla Firefox\firefox.exe

ID hlášení: 0b502068-a605-11e4-b0ba-b888e3b5b0e2

Error: (01/20/2015 00:34:56 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\Windows\system32\svchost.exe -k netsvcs; Popis = Windows Update; Chyba = 0x81000101).

Error: (01/18/2015 02:25:52 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program firefox.exe verze 35.0.0.5486 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: b60

Čas spuštění: 01d03306659f422e

Čas ukončení: 15591

Cesta k aplikaci: C:\Program Files (x86)\Mozilla Firefox\firefox.exe

ID hlášení:

Error: (01/18/2015 02:25:26 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Hearthstone.exe verze 2.0.0.7234 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 7d8

Čas spuštění: 01d033169c84fe6c

Čas ukončení: 959

Cesta k aplikaci: C:\Program Files (x86)\Hearthstone\Hearthstone.exe

ID hlášení: c90f490a-9f0c-11e4-b42f-b888e3b5b0e2

Error: (01/15/2015 00:32:10 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: plugin-container.exe, verze: 35.0.0.5486, časové razítko: 0x54af7153
Název chybujícího modulu: mozalloc.dll, verze: 35.0.0.5486, časové razítko: 0x54af69d4
Kód výjimky: 0x80000003
Posun chyby: 0x00001425
ID chybujícího procesu: 0x1344
Čas spuštění chybující aplikace: 0xplugin-container.exe0
Cesta k chybující aplikaci: plugin-container.exe1
Cesta k chybujícímu modulu: plugin-container.exe2
ID zprávy: plugin-container.exe3

Error: (01/15/2015 00:32:08 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program firefox.exe verze 35.0.0.5486 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 34c

Čas spuštění: 01d030ac08f4b314

Čas ukončení: 3447

Cesta k aplikaci: C:\Program Files (x86)\Mozilla Firefox\firefox.exe

ID hlášení:


System errors:
=============
Error: (05/08/2015 06:57:37 PM) (Source: BROWSER) (EventID: 8032) (User: )
Description: Službě Browser se při přenosu \Device\NetBT_Tcpip_{F36D269F-1391-4A19-ADAD-264894095D78} příliš často nezdařilo načíst záložní seznam.
Záložní prohledávač bude ukončen.

Error: (05/08/2015 06:40:20 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Util qualitink neuspěla při spuštění v důsledku následující chyby: 
%%2

Error: (05/08/2015 06:40:20 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Update qualitink neuspěla při spuštění v důsledku následující chyby: 
%%2

Error: (05/06/2015 04:32:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Util qualitink neuspěla při spuštění v důsledku následující chyby: 
%%2

Error: (05/06/2015 04:32:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Update qualitink neuspěla při spuštění v důsledku následující chyby: 
%%2

Error: (05/06/2015 10:20:35 AM) (Source: BROWSER) (EventID: 8032) (User: )
Description: Službě Browser se při přenosu \Device\NetBT_Tcpip_{F36D269F-1391-4A19-ADAD-264894095D78} příliš často nezdařilo načíst záložní seznam.
Záložní prohledávač bude ukončen.

Error: (05/06/2015 10:04:44 AM) (Source: WMPNetworkSvc) (EventID: 14332) (User: )
Description: WMPNetworkSvc0x80004005

Error: (05/06/2015 10:03:40 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Util qualitink neuspěla při spuštění v důsledku následující chyby: 
%%2

Error: (05/06/2015 10:03:40 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Update qualitink neuspěla při spuštění v důsledku následující chyby: 
%%2

Error: (05/05/2015 09:43:31 PM) (Source: BROWSER) (EventID: 8032) (User: )
Description: Službě Browser se při přenosu \Device\NetBT_Tcpip_{F36D269F-1391-4A19-ADAD-264894095D78} příliš často nezdařilo načíst záložní seznam.
Záložní prohledávač bude ukončen.


Microsoft Office Sessions:
=========================
Error: (03/25/2015 09:25:09 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: SDTray.exe2.1.21.12951f0ed9erasadhlp.dll_unloaded0.0.0.04a5bdad6c0000005740011b0a2c01d067315411260fC:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exerasadhlp.dlla613835e-d324-11e4-9ed4-b888e3b5b0e2

Error: (02/24/2015 11:32:45 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe35.0.1.550054c1f9f3mozalloc.dll35.0.1.550054c1f224800000030000142579001d05014ad9e77bdC:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll165f45df-bc08-11e4-94bd-b888e3b5b0e2

Error: (01/29/2015 10:42:41 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: EXCEL.EXE10.0.6871.04daf71c5EXCEL.EXE10.0.6871.04daf71c5c0000005004c4072cd801d03b9f7b0acfddC:\PROGRA~2\MICROS~1\Office10\EXCEL.EXEC:\PROGRA~2\MICROS~1\Office10\EXCEL.EXEc8e817a6-a792-11e4-affa-b888e3b5b0e2

Error: (01/27/2015 11:16:17 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe35.0.0.548654af7153mozalloc.dll35.0.0.548654af69d480000003000014257e801d03a11a5fa33a3C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll25d8b34c-a605-11e4-b0ba-b888e3b5b0e2

Error: (01/27/2015 11:16:13 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: firefox.exe35.0.0.5486e2001d03a10c8d09fd611343C:\Program Files (x86)\Mozilla Firefox\firefox.exe0b502068-a605-11e4-b0ba-b888e3b5b0e2

Error: (01/20/2015 00:34:56 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: C:\Windows\system32\svchost.exe -k netsvcsWindows Update0x81000101

Error: (01/18/2015 02:25:52 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: firefox.exe35.0.0.5486b6001d03306659f422e15591C:\Program Files (x86)\Mozilla Firefox\firefox.exe

Error: (01/18/2015 02:25:26 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Hearthstone.exe2.0.0.72347d801d033169c84fe6c959C:\Program Files (x86)\Hearthstone\Hearthstone.exec90f490a-9f0c-11e4-b42f-b888e3b5b0e2

Error: (01/15/2015 00:32:10 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe35.0.0.548654af7153mozalloc.dll35.0.0.548654af69d48000000300001425134401d030ad0a64b5fcC:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dllc28d9a64-9ca1-11e4-a14c-b888e3b5b0e2

Error: (01/15/2015 00:32:08 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: firefox.exe35.0.0.548634c01d030ac08f4b3143447C:\Program Files (x86)\Mozilla Firefox\firefox.exe


CodeIntegrity Errors:
===================================
  Date: 2015-03-01 11:04:01.572
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\Natusska\AppData\Local\Temp\EverestDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-03-01 11:04:01.500
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\Natusska\AppData\Local\Temp\EverestDriver.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-03-01 11:04:00.212
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64 because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-03-01 11:04:00.144
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Lavalys\EVEREST Home Edition\kerneld.amd64 because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info =========================== 

Processor: Intel(R) Pentium(R) CPU B960 @ 2.20GHz
Percentage of memory in use: 54%
Total physical RAM: 3912.36 MB
Available physical RAM: 1783.63 MB
Total Pagefile: 7822.91 MB
Available Pagefile: 5284.95 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:233.24 GB) (Free:151.87 GB) NTFS
Drive d: (Nový svazek) (Fixed) (Total:232.42 GB) (Free:111.49 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: BC5E5834)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=233.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=232.4 GB) - (Type=07 NTFS)

==================== End Of Log ============================