﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-05-2015
Ran by Lucie at 2015-05-22 15:47:19
Running from C:\Users\Lucie\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1277503925-3455442646-631812523-500 - Administrator - Disabled)
Guest (S-1-5-21-1277503925-3455442646-631812523-501 - Limited - Disabled)
Lucie (S-1-5-21-1277503925-3455442646-631812523-1001 - Administrator - Enabled) => C:\Users\Lucie

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 16.0.0.273 - Adobe Systems Incorporated)
Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.11) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version:  - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version:  - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version:  - Microsoft)
Artlantis Studio 5.1.2.4 (64 bit) (HKLM\...\Artlantis Studio 5 (64 bit)) (Version: 5.1.2.4 - Abvent R&D)
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version:  - )
Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version:  - )
Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version:  - )
FBReader for Windows (HKLM-x32\...\FBReader for Windows) (Version:  - )
Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.65 - Google Inc.)
Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden
JPG To PDF 2.2.1 (HKLM-x32\...\JPG To PDF_is1) (Version:  - JPG To PDF Developer Team)
Malwarebytes Anti-Malware verze 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft_VC90_CRT_x86 (HKLM-x32\...\{DF2035BE-5820-4965-BD97-7FAF8D4A7879}) (Version: 1.0.0 - Microsoft Corporation)
PDF24 Creator 6.9.0 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
PhotoFiltre 7 (HKU\S-1-5-21-1277503925-3455442646-631812523-1001\...\PhotoFiltre 7) (Version:  - )
Qualcomm Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Qualcomm Atheros)
RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden
Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 1.12.0016 - Realtek)
Seznam Software (HKU\S-1-5-21-1277503925-3455442646-631812523-1001\...\SeznamInstall) (Version:  - Seznam.cz)
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1168 - SUPERAntiSpyware.com)
Unity Web Player (HKU\S-1-5-21-1277503925-3455442646-631812523-1001\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
UsbFix (HKLM-x32\...\Usbfix) (Version: 7.181 - El Desaparecido - www.usbfix.net - www.sosvirus.net)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3502.0922 - Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Restore Points =========================


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {092AC56C-4A7C-414C-932A-84F7D6EC0798} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-19] (Adobe Systems Incorporated)
Task: {0D32957E-044C-44F7-8688-893A4B3281F4} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation)
Task: {127C344E-5AEA-489F-B740-C8CA01A08CE6} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-07] (Microsoft Corporation)
Task: {1DF36B8A-FE77-437C-A8D9-765DF6B96150} - System32\Tasks\{6D9E0510-8A58-412D-8BE3-4C98210EAE22} => pcalua.exe -a "C:\Users\Lucie\Downloads\S-k-i-J-o - v-26-0 - DEMO - iv-4-4-1 - (ZWCAD).exe" -d C:\Users\Lucie\Downloads
Task: {2CD5A829-6B0E-4F47-B99D-96CBAC7A9FC0} - System32\Tasks\{D6BEF771-71AE-414C-B0F9-FBFC0A579D28} => Firefox.exe http://ui.skype.com/ui/0/5.5.0.115/cs/abandoninstall?page=tsDownload&amp;installinfo=google-toolbar:notoffered;ienotdefaultbrowser2,google-chrome:offered-notinstalled
Task: {302B886E-11BD-46A8-98E5-CDC4B487BC49} - System32\Tasks\HPCeeScheduleForC02-316B$ => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard)
Task: {3201F857-A66D-439F-A140-E00FA663C72A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {32685F9A-6083-4B65-8513-2E45F9559C00} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {33D9A113-44D6-4B53-B10F-6E3C10D256F6} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1277503925-3455442646-631812523-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2011-11-29] (RealNetworks, Inc.)
Task: {3A80DE05-D940-457B-84CC-8BA9D49296DA} - System32\Tasks\{E6E2626A-6527-48D4-AB1D-D0682EA4546E} => pcalua.exe -a "C:\Program Files (x86)\O2\O2CZ\Uninstall.exe" -d "C:\Program Files (x86)\O2\O2CZ"
Task: {45F0F2B2-B190-483B-81D7-44ADF404B95C} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-08-06] (AVAST Software)
Task: {5B70C559-640E-4897-AFDF-6705D4EE3847} - System32\Tasks\{C2BDFF51-6896-4F10-87ED-FC52578C7CFB} => pcalua.exe -a "C:\Program Files (x86)\Canon\Easy-PhotoPrint\uninst.exe" -c uninst.ini
Task: {68CA495C-822D-4F08-B5C9-C6E724D4BD36} - System32\Tasks\RealCreateProcessScheduledTask1381773286S-1-5-21-1277503925-3455442646-631812523-1001 => C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe
Task: {7B67A756-9FFE-4409-9545-E9DB3C072E72} - System32\Tasks\{53B8E719-BAC5-4BC1-8D2D-6F9511DD371D} => pcalua.exe -a "C:\ProgramData\Citrix\Citrix Receiver\TrolleyExpress.exe" -c /uninstall /cleanup
Task: {8001B0A5-152E-4A2D-99D0-E9E87EB3FD74} - System32\Tasks\{80FCCF00-3F72-4149-BC6E-AA3B7230E543} => pcalua.exe -a "C:\Program Files (x86)\CADServis\SkiJo\Data\uninstall-zwcad.exe"
Task: {8514E68E-7F7D-42A7-94B3-B2B2CDB201DD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-10] (Google Inc.)
Task: {863C217C-FCED-4B15-94E0-DBF4E5252689} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP SoftPaq Installer => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF_Tasks.exe [2013-11-04] (Hewlett-Packard Company)
Task: {90735322-57EB-4BB5-9A70-A73B938BF1AC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-09-10] (Google Inc.)
Task: {96C1FB45-8C27-4358-997D-3CA240547164} - System32\Tasks\HPCeeScheduleForLucie => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard)
Task: {9B659A3C-28A7-4D0B-A346-280207404F9B} - System32\Tasks\RealCreateProcessScheduledTask1591033901S-1-5-21-1277503925-3455442646-631812523-1001 => C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe
Task: {AF22FD1C-F306-4728-9214-4682ACD03389} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1277503925-3455442646-631812523-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2011-11-29] (RealNetworks, Inc.)
Task: {C5208D7E-8352-4ADE-9160-923B11C9155A} - System32\Tasks\{3DCE7FF1-E9F9-4751-925F-64B8092E6A4E} => pcalua.exe -a C:\Users\Lucie\Downloads\internet_video_converter_1.52_std_en_setup_unicode(1).exe -d "C:\Program Files (x86)\Mozilla Firefox"
Task: {C836DC2E-687A-466B-AD2D-251F16C3B58D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {D7CC77F5-3FA0-400E-8E2A-BB5B5698AACF} - System32\Tasks\{8E1361E8-49E3-415F-BE38-797E3EC4186B} => pcalua.exe -a C:\Users\Lucie\AppData\Roaming\Seznam.cz\szninstall.exe -c -X
Task: {DF70B053-045A-4681-89D7-F2A28A6486E2} - System32\Tasks\{6AD83B86-FC73-490D-94E3-E44D5E551ABA} => Chrome.exe http://ui.skype.com/ui/0/7.4.85.102/cs/abandoninstall?page=tsProgressBar
Task: {DFACC6AE-24FC-4BFE-8AD9-6082BC10C4F9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {EFFC29E7-4A93-43A9-833F-CD25CF990D64} - System32\Tasks\RealCreateProcessScheduledTask1065365491S-1-5-21-1277503925-3455442646-631812523-1001 => C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\HPCeeScheduleForC02-316B$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\windows\Tasks\HPCeeScheduleForLucie.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Loaded Modules (Whitelisted) ==============

2015-02-06 11:39 - 2013-04-15 13:32 - 00060416 _____ () C:\Users\Lucie\AppData\Roaming\Seznam.cz\bin\6814libfoxloader-x64.dll
2011-01-31 20:54 - 2011-01-31 20:54 - 00107008 _____ () c:\Program Files\Hewlett-Packard\Pre-Boot Security for HP ProtectTools\BIOSDomainPlugin.dll
2011-02-09 21:04 - 2011-02-09 21:04 - 02905600 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EpeHpFve64.dll
2010-12-07 07:17 - 2010-12-07 07:17 - 00204112 _____ () C:\windows\system32\PassThroughOTP.dll
2010-09-06 22:18 - 2010-09-06 22:18 - 01412608 _____ () C:\windows\system32\LIBEAY32.dll
2011-02-09 20:27 - 2011-02-09 20:27 - 00141824 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHostInterface64.dll
2011-03-26 05:28 - 2011-03-26 05:28 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2011-02-09 20:51 - 2011-02-09 20:51 - 00200704 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe
2015-02-06 11:39 - 2013-04-12 10:13 - 00457208 _____ () C:\Users\Lucie\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
2015-02-06 11:39 - 2013-04-29 12:53 - 00045560 _____ () C:\Users\Lucie\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
2011-01-27 03:14 - 2011-01-27 03:14 - 00036408 _____ () C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Remote.dll
2011-02-09 20:28 - 2011-02-09 20:28 - 01318912 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe
2011-01-27 03:13 - 2011-01-27 03:13 - 00080440 _____ () C:\Program Files\Hewlett-Packard\HP Power Assistant\HardwareAccess.dll
2011-01-27 03:13 - 2011-01-27 03:13 - 00047160 _____ () C:\Program Files\Hewlett-Packard\HP Power Assistant\Graphs.dll
2011-05-10 22:12 - 2011-01-27 02:34 - 01083392 _____ () C:\Program Files\Hewlett-Packard\HP Power Assistant\System.Data.SQLite.dll
2010-06-24 12:21 - 2010-06-24 12:21 - 01102336 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\System.Data.SQLite.dll
2014-08-06 15:27 - 2014-08-06 15:27 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll
2015-05-22 10:13 - 2015-05-22 10:13 - 02931200 _____ () C:\Program Files\AVAST Software\Avast\defs\15052200\algo.dll
2015-02-06 11:39 - 2013-03-29 13:37 - 00059384 _____ () C:\Users\Lucie\AppData\Roaming\Seznam.cz\bin\6810libfoxloader.dll
2015-02-06 11:39 - 2013-03-25 16:39 - 00894968 _____ () C:\Users\Lucie\AppData\Roaming\Seznam.cz\bin\lightspeed.dll
2014-08-06 15:27 - 2014-08-06 15:27 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2011-02-09 20:48 - 2011-02-09 20:48 - 02637824 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcEncryptionProviderPlugin.dll
2011-02-09 20:27 - 2011-02-09 20:27 - 00126976 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHostInterface.dll
2011-02-09 20:51 - 2011-02-09 20:51 - 02650112 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EpeHpDpHostPlugin.dll
2011-02-09 20:29 - 2011-02-09 20:29 - 02035712 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeCoreEncryptionPlugin.dll
2011-02-09 20:30 - 2011-02-09 20:30 - 01929216 _____ () C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeProductDetectionPlugin.dll
2010-06-24 12:19 - 2010-06-24 12:19 - 00514570 _____ () c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\sqlite3.dll
2014-10-16 04:22 - 2014-10-16 04:22 - 00169472 _____ () C:\windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\9b1cac8d98bd69d3e56a26ff2f96f266\IsdiInterop.ni.dll
2011-05-31 20:22 - 2011-01-13 03:56 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:D1B5B4F1

==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1277503925-3455442646-631812523-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Lucie\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 147.229.191.143 - 147.229.190.143

==================== MSCONFIG/TASK MANAGER Error getting ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{EFE78C0F-A8D4-4891-95B5-64FF6E45F2C9}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{CF9D2880-1FAF-4F7A-8886-DBA9099F11EA}] => (Allow) LPort=2869
FirewallRules: [{ED3E14D5-9B42-4116-8537-B6C9D959F6E3}] => (Allow) LPort=1900
FirewallRules: [{71306EFD-C4F8-4D3C-906C-222E2817F1B2}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{2DA68E01-056B-4888-8734-FCC97CC8973E}] => (Allow) C:\Program Files (x86)\ICQ7.6\ICQ.exe
FirewallRules: [{F54D64B7-7053-4057-ADFF-3DC5CF7AF672}] => (Allow) C:\Program Files (x86)\ICQ7.6\ICQ.exe
FirewallRules: [{94CA14D6-0F60-460B-A1A0-AB7C0A0ABE88}] => (Allow) C:\Program Files (x86)\ICQ7.6\ICQ.exe
FirewallRules: [{CDAFF712-0298-499D-BFED-50D0C90D3A7C}] => (Allow) C:\Program Files (x86)\ICQ7.6\ICQ.exe
FirewallRules: [TCP Query User{B57CC56F-F73C-4F95-8CA6-F6A4A64BF1D3}C:\program files (x86)\icq7.6\icq.exe] => (Block) C:\program files (x86)\icq7.6\icq.exe
FirewallRules: [UDP Query User{D034DC78-E5FC-4F09-9000-304EB4177AE6}C:\program files (x86)\icq7.6\icq.exe] => (Block) C:\program files (x86)\icq7.6\icq.exe
FirewallRules: [TCP Query User{346733B2-4EAB-4C07-A9B5-E8F6B1E8F1CB}C:\program files (x86)\firefly studios\stronghold crusader\stronghold crusader.exe] => (Allow) C:\program files (x86)\firefly studios\stronghold crusader\stronghold crusader.exe
FirewallRules: [UDP Query User{4BA146B8-9101-4127-9258-D484148E9613}C:\program files (x86)\firefly studios\stronghold crusader\stronghold crusader.exe] => (Allow) C:\program files (x86)\firefly studios\stronghold crusader\stronghold crusader.exe
FirewallRules: [TCP Query User{338F6ED8-FC7B-47F4-927E-5AC8E2A1779A}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe
FirewallRules: [UDP Query User{5852B37B-6DD2-4A1C-9A26-094FFAE1DA93}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe
FirewallRules: [TCP Query User{20EF710E-211C-443E-93BF-6DEB0E9D6B2B}C:\program files (x86)\firefly studios\stronghold 3\bin\win32_release\stronghold3.exe] => (Allow) C:\program files (x86)\firefly studios\stronghold 3\bin\win32_release\stronghold3.exe
FirewallRules: [UDP Query User{AA05E993-77F1-4862-85B8-CEAB85CB7912}C:\program files (x86)\firefly studios\stronghold 3\bin\win32_release\stronghold3.exe] => (Allow) C:\program files (x86)\firefly studios\stronghold 3\bin\win32_release\stronghold3.exe
FirewallRules: [TCP Query User{EA845485-8DF2-412D-9C0B-A86B5EB67B7A}C:\program files (x86)\firefly studios\stronghold 3\bin\win32_release\stronghold3.exe] => (Allow) C:\program files (x86)\firefly studios\stronghold 3\bin\win32_release\stronghold3.exe
FirewallRules: [UDP Query User{468DDCAA-839B-4FB3-BFDF-3E201C464C5E}C:\program files (x86)\firefly studios\stronghold 3\bin\win32_release\stronghold3.exe] => (Allow) C:\program files (x86)\firefly studios\stronghold 3\bin\win32_release\stronghold3.exe
FirewallRules: [{482EC2E9-24F9-4495-8C6C-02794AA1CEC1}] => (Allow) C:\Program Files (x86)\ZWCAD 2012 Csy\ZWCAD.EXE
FirewallRules: [{78AF3FFC-23D6-4A0D-9EC2-79C022FBA64F}] => (Allow) C:\Program Files (x86)\ZWCAD 2012 Csy\ZWCAD.EXE
FirewallRules: [{F2434100-08C9-49AD-BED0-47048241922C}] => (Allow) C:\Program Files (x86)\ZWCAD 2012 Csy\zwlm_ts.exe
FirewallRules: [{330E834F-BF31-4BDC-918E-128D9C4A4E61}] => (Allow) C:\Program Files (x86)\ZWCAD 2012 Csy\zwlm_ts.exe
FirewallRules: [{EF13B028-ABC5-4190-9C6D-02DEB32481A9}] => (Allow) C:\Program Files (x86)\ZWCAD 2012 Csy\CrashReportManagement.exe
FirewallRules: [{90F5808D-E39E-42E0-A4ED-5D15AABC0EB6}] => (Allow) C:\Program Files (x86)\ZWCAD 2012 Csy\CrashReportManagement.exe
FirewallRules: [{D5DE026B-FF6A-4602-B9ED-450F3EF1303E}] => (Allow) C:\Program Files (x86)\ZWCAD 2012 Csy\ZWErrorDialog.exe
FirewallRules: [{AE94D4E7-1480-48C6-8A50-A9CC2113AADA}] => (Allow) C:\Program Files (x86)\ZWCAD 2012 Csy\ZWErrorDialog.exe
FirewallRules: [{4B39E837-8B7D-4789-A270-8F25660ECCD0}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 16\ArchiCAD.exe
FirewallRules: [{209C5305-C949-47CA-AF03-4B7828AA1234}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 16\ArchiCAD.exe
FirewallRules: [{A6A7BEED-1E1A-4EBB-8EF4-5CE1F80C14FC}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 16\GSQuickTimeServer\GSQTServer.exe
FirewallRules: [{3F003436-2897-4F64-83F7-2DDC1C16A48B}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 16\GSQuickTimeServer\GSQTServer.exe
FirewallRules: [{59D6E0DD-8496-4F03-BE0B-F13289CDD8AB}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [TCP Query User{E101D9E7-C8D7-4F09-87BF-6CE526D7DEE3}C:\program files\graphisoft\archicad 16\licensefilegenerator.exe] => (Block) C:\program files\graphisoft\archicad 16\licensefilegenerator.exe
FirewallRules: [UDP Query User{42D136EC-2B2A-4D2D-A678-2416616BE3A8}C:\program files\graphisoft\archicad 16\licensefilegenerator.exe] => (Block) C:\program files\graphisoft\archicad 16\licensefilegenerator.exe
FirewallRules: [TCP Query User{9FCA5B2B-631E-46AF-9038-5484BF511845}C:\program files\graphisoft\archicad 16\licensefilegenerator.exe] => (Allow) C:\program files\graphisoft\archicad 16\licensefilegenerator.exe
FirewallRules: [UDP Query User{07981316-6640-4FD4-A9EF-904F9EF415BF}C:\program files\graphisoft\archicad 16\licensefilegenerator.exe] => (Allow) C:\program files\graphisoft\archicad 16\licensefilegenerator.exe
FirewallRules: [{E344AE9B-682D-4240-82E9-9F6A9D8C1747}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 16\ArchiCAD.exe
FirewallRules: [{716B995C-EC58-4D7C-9DC4-5DB258C03C9A}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 16\ArchiCAD.exe
FirewallRules: [{4DC7B8AE-00CF-460C-BED3-991BF7760F82}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 16\GSQuickTimeServer\GSQTServer.exe
FirewallRules: [{DBE2CB89-AB83-455C-AB9A-6898419DA355}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 16\GSQuickTimeServer\GSQTServer.exe
FirewallRules: [TCP Query User{94114501-8E9A-4488-9B7C-8E4E4587BFA1}C:\program files (x86)\hasbro interactive\rollercoaster tycoon\rct.exe] => (Allow) C:\program files (x86)\hasbro interactive\rollercoaster tycoon\rct.exe
FirewallRules: [UDP Query User{C768115B-6F47-4FE5-A1BC-CE9FE3DCD5EA}C:\program files (x86)\hasbro interactive\rollercoaster tycoon\rct.exe] => (Allow) C:\program files (x86)\hasbro interactive\rollercoaster tycoon\rct.exe
FirewallRules: [{9D8158F0-85A1-4155-A38A-633F1AEEB7E2}] => (Allow) C:\windows\system32\hasplms.exe
FirewallRules: [TCP Query User{10421703-FD48-45F0-91C2-B2C5D0BCB202}C:\program files\artlantis studio 5\artlantis license manager.exe] => (Allow) C:\program files\artlantis studio 5\artlantis license manager.exe
FirewallRules: [UDP Query User{4782979A-379B-4C70-A555-99FD1525E336}C:\program files\artlantis studio 5\artlantis license manager.exe] => (Allow) C:\program files\artlantis studio 5\artlantis license manager.exe
FirewallRules: [TCP Query User{F993DCD4-F2E0-4FA8-8CE6-0777F206BDD8}C:\program files\artlantis studio 5\artlantis studio.exe] => (Allow) C:\program files\artlantis studio 5\artlantis studio.exe
FirewallRules: [UDP Query User{D343EEEF-C74F-4347-AF33-D0F712D3A033}C:\program files\artlantis studio 5\artlantis studio.exe] => (Allow) C:\program files\artlantis studio 5\artlantis studio.exe
FirewallRules: [{40B93B86-0857-476B-B577-49161ADB4D3D}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{75611838-6E5D-4A3C-B3CC-E576CA0E17B2}] => (Allow) C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe
FirewallRules: [{CD5F5A15-B542-4E3B-A377-1822A8F7903A}] => (Allow) C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe

==================== Faulty Device Manager Devices =============

Name: Hamachi Network Interface
Description: Hamachi Network Interface
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: LogMeIn, Inc.
Service: hamachi
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (05/21/2015 07:17:45 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program chrome.exe verze 42.0.2311.152 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 1684

Čas spuštění: 01d0937f4dfe371f

Čas ukončení: 603

Cesta k aplikaci: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

ID hlášení:

Error: (05/21/2015 06:28:31 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: HPDayStarterService.exe, verze: 2.0.0.12, časové razítko: 0x4d42d67a
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000
ID chybujícího procesu: 0xc50
Čas spuštění chybující aplikace: 0xHPDayStarterService.exe0
Cesta k chybující aplikaci: HPDayStarterService.exe1
Cesta k chybujícímu modulu: HPDayStarterService.exe2
ID zprávy: HPDayStarterService.exe3

Error: (05/20/2015 03:30:27 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_fa381d5f175bfb52.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_fa381d5f175bfb52.manifest2 na řádku C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_fa381d5f175bfb52.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_fa381d5f175bfb52.manifest.
Součást 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_41e554362bd82458.manifest.

Error: (05/19/2015 02:28:24 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program TrolleyExpress.exe verze 14.1.200.13 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 12bc

Čas spuštění: 01d0922ea2cdff55

Čas ukončení: 1

Cesta k aplikaci: C:\ProgramData\Citrix\Citrix Receiver\TrolleyExpress.exe

ID hlášení:

Error: (05/17/2015 08:52:59 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_iphlpsvc, verze: 6.1.7600.16385, časové razítko: 0x4a5bc3c1
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x000000007737000a
ID chybujícího procesu: 0x2fc
Čas spuštění chybující aplikace: 0xsvchost.exe_iphlpsvc0
Cesta k chybující aplikaci: svchost.exe_iphlpsvc1
Cesta k chybujícímu modulu: svchost.exe_iphlpsvc2
ID zprávy: svchost.exe_iphlpsvc3

Error: (05/16/2015 09:11:46 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Generování kontextu aktivace pro C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_fa381d5f175bfb52.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_fa381d5f175bfb52.manifest2 na řádku C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_fa381d5f175bfb52.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: C:\windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_fa381d5f175bfb52.manifest.
Součást 2: C:\windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18807_none_41e554362bd82458.manifest.

Error: (05/12/2015 10:00:46 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: wmpnetwk.exe, verze: 12.0.7601.17514, časové razítko: 0x4ce7ae7f
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000770b000a
ID chybujícího procesu: 0xc04
Čas spuštění chybující aplikace: 0xwmpnetwk.exe0
Cesta k chybující aplikaci: wmpnetwk.exe1
Cesta k chybujícímu modulu: wmpnetwk.exe2
ID zprávy: wmpnetwk.exe3

Error: (05/11/2015 07:00:21 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: pdf24-Creator.exe, verze: 6.9.0.0, časové razítko: 0x54620c6a
Název chybujícího modulu: ntdll.dll, verze: 6.1.7601.18798, časové razítko: 0x5507b3e0
Kód výjimky: 0xc0000374
Posun chyby: 0x000cea0b
ID chybujícího procesu: 0x1a98
Čas spuštění chybující aplikace: 0xpdf24-Creator.exe0
Cesta k chybující aplikaci: pdf24-Creator.exe1
Cesta k chybujícímu modulu: pdf24-Creator.exe2
ID zprávy: pdf24-Creator.exe3

Error: (05/10/2015 04:02:06 PM) (Source: PandoraService.exe) (EventID: 0) (User: )
Description: Socket Error # 11001
Host not found.

Error: (05/05/2015 09:26:10 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: KMPlayer.exe, verze: 3.0.0.1442, časové razítko: 0x4e7fd3a3
Název chybujícího modulu: KMPlayer.exe, verze: 3.0.0.1442, časové razítko: 0x4e7fd3a3
Kód výjimky: 0xc0000005
Posun chyby: 0x0003ff84
ID chybujícího procesu: 0x1410
Čas spuštění chybující aplikace: 0xKMPlayer.exe0
Cesta k chybující aplikaci: KMPlayer.exe1
Cesta k chybujícímu modulu: KMPlayer.exe2
ID zprávy: KMPlayer.exe3


System errors:
=============
Error: (05/22/2015 02:49:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Request Digital neuspěla při spuštění v důsledku následující chyby: 
%%2

Error: (05/22/2015 02:47:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba zařazování tisku neuspěla při spuštění v důsledku následující chyby: 
%%1069

Error: (05/22/2015 02:47:32 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Služba Spooler se nemohla přihlásit jako NT AUTHORITY\SYSTEM s aktuálně konfigurovaným heslem z důvodu následující chyby:
%%50

Chcete-li zajistit správnou konfiguraci služby, použijte modul snap-in Služby konzoly Microsoft Management Console (MMC).

Error: (05/22/2015 02:47:30 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správce služeb se pokusil o opravnou akci (Restartovat službu) po nečekaném ukončení služby Windows Search, ale tato akce selhala kvůli následující chybě: 
%%1056

Error: (05/22/2015 02:47:30 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\windows\system32\athihvs.dll

Error: (05/22/2015 02:47:30 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\windows\system32\athihvs.dll

Error: (05/22/2015 02:47:19 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\windows\system32\athihvs.dll

Error: (05/22/2015 02:47:00 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Live ID Sign-in Assistant byla nečekaně ukončena. Stalo se to 2 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (05/22/2015 02:47:00 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 2 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (05/22/2015 02:47:00 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Windows Presentation Foundation Font Cache 3.0.0.0 byla neočekávaně ukončena. Tento stav nastal již 2krát.


Microsoft Office:
=========================
Error: (07/25/2014 08:46:58 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6700.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 6 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (07/25/2014 08:46:39 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6700.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 5 seconds with 0 seconds of active time.  This session ended with a crash.

Error: (04/30/2013 07:55:58 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 10947 seconds with 4980 seconds of active time.  This session ended with a crash.

Error: (01/12/2012 09:51:52 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 196 seconds with 180 seconds of active time.  This session ended with a crash.


==================== Memory info =========================== 

Processor: Intel(R) Pentium(R) CPU B940 @ 2.00GHz
Percentage of memory in use: 63%
Total physical RAM: 3006.37 MB
Available physical RAM: 1111.45 MB
Total Pagefile: 6010.94 MB
Available Pagefile: 3763.44 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:275.84 GB) (Free:62.82 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_RECOVERY) (Fixed) (Total:16.95 GB) (Free:2.56 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive f: (HP_TOOLS) (Fixed) (Total:4.98 GB) (Free:2.12 GB) FAT32
Drive j: (KINGSTON) (Removable) (Total:29.29 GB) (Free:27.87 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 9FD8FEA1)
Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=275.8 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=17 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=5 GB) - (Type=0C)

========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 29.3 GB) (Disk ID: BBDC0748)
Partition 1: (Active) - (Size=29.3 GB) - (Type=0C)

==================== End of log ============================