﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-05-2015 01
Ran by Ondra at 2015-05-24 16:52:24
Running from C:\Users\Ondra\Desktop\BestForPC
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-894572539-2785791942-146017988-500 - Administrator - Disabled)
Guest (S-1-5-21-894572539-2785791942-146017988-501 - Limited - Disabled)
Ondra (S-1-5-21-894572539-2785791942-146017988-1000 - Administrator - Enabled) => C:\Users\Ondra

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Disabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A}
AS: Microsoft Security Essentials (Disabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-894572539-2785791942-146017988-1000\...\uTorrent) (Version: 3.4.3.40097 - BitTorrent Inc.)
Adblock Plus for IE (32-bit and 64-bit) (HKLM\...\{26D488C3-89E9-455C-B96A-1ADF65A26C54}) (Version: 1.4 - Eyeo GmbH)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated)
Adobe Flash Player 16 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 16.0.0.296 - Adobe Systems Incorporated)
AIDA64 Extreme v5.00 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 5.00 - FinalWire Ltd.)
AMD Catalyst Install Manager (HKLM\...\{3FAEEEBE-48F4-84C1-2B49-96AE73E67E3E}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Any DWG to PDF Converter 2015 (HKLM-x32\...\Any DWG to PDF Converter_is1) (Version:  - AnyDWG Software, Inc.)
Any PDF to DWG Converter 2015 (HKLM-x32\...\Any PDF to DWG Converter_is1) (Version:  - AnyDWG Software, Inc.)
Aplikace Intel® PROSet/Wireless (HKLM-x32\...\{deff5bea-aa8c-46fb-b17d-1cc69b242494}) (Version: 15.8.0 - Intel Corporation)
ArchiCAD 18 CZE (HKLM\...\001FFF2FFF18FF00FF1101F01F02F000-R1) (Version: 18.0 - GRAPHISOFT)
Canon MG5100 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5100_series) (Version:  - )
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version:  - Valve)
CPUID CPU-Z 1.71.1 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
Crossfire Europe (HKLM-x32\...\Crossfire Europe) (Version: 1.172 - SG Europe)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.40.2.0131 - DT Soft Ltd)
Dell Custom Help (Version: 15.08.0000.0172 - Intel Corporation) Hidden
Dell System Detect (HKU\S-1-5-21-894572539-2785791942-146017988-1000\...\73f463568823ebbe) (Version: 5.12.0.3 - Dell)
Dell Touchpad (HKLM\...\Elantech) (Version: 11.3.16.1 - ELAN Microelectronic Corp.)
DivX Setup (HKLM-x32\...\DivX Setup) (Version: 2.7.0.31 - DivX, LLC)
Explorer Suite IV (HKLM\...\Explorer Suite_is1) (Version:  - )
Far Cry (Patch 1.3) (x32 Version: 1.00.0000 - Název společnosti:) Hidden
Far Cry (Patch 1.31) (x32 Version: 1.00.0000 - Název společnosti:) Hidden
Far Cry (Patch 1.33) (x32 Version: 1.00.0000 - Název společnosti:) Hidden
Fraps (remove only) (HKLM-x32\...\Fraps) (Version:  - )
Free Alarm Clock 3.1.0 (HKLM-x32\...\{8ED5A2F1-338F-4608-8AF7-BCD1ADC1E1F7}_is1) (Version: 3.1 - Comfort Software Group)
globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ATTENTION
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.)
GRID Autosport High Resolution Textures (HKLM-x32\...\R1JJREF1dG9zcG9ydA==_is1) (Version: 1 - )
HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.9.232 - SurfRight B.V.)
HydraVision (x32 Version: 4.2.252.0 - Advanced Micro Devices, Inc.) Hidden
Imperator Gaming Keyboard (HKLM-x32\...\{12A8DEA6-1DA3-403F-BD28-D61C3908117F}}_is1) (Version:  - )
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.2.1000 - Intel Corporation)
Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.710 - Oracle)
Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version:  - Valve)
Malwarebytes Anti-Malware verze 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation)
Microsoft SharePoint Administration Toolkit (HKLM-x32\...\{95120000-1123-0409-0000-0000000FF1CE}) (Version: 12.0.4518.1124 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 36.0.4 (x86 cs) (HKLM-x32\...\Mozilla Firefox 36.0.4 (x86 cs)) (Version: 36.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 34.0.5 - Mozilla)
Need For Speed Underground (HKLM-x32\...\{A99968BE-C155-474C-0089-33239DEE1CE2}) (Version:  - )
Opera Stable 29.0.1795.60 (HKLM-x32\...\Opera 29.0.1795.60) (Version: 29.0.1795.60 - Opera Software ASA)
OSCAR Editor (x32 Version: 12.03.0004 - A4TECH) Hidden
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.0.2 - pdfforge)
Raptr (HKLM-x32\...\Raptr) (Version:  - )
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.2.8400.39034 - Realtek Semiconductor Corp.)
Reverse Page (HKLM\...\Reverse Page) (Version: 2015.02.01.172417 - Reverse Page) <==== ATTENTION
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Seznam Software (HKU\S-1-5-21-894572539-2785791942-146017988-1000\...\SeznamInstall) (Version:  - Seznam.cz)
Skype™ 7.2 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.2.103 - Skype Technologies S.A.)
Sounddrain Downloader (HKLM-x32\...\Sounddrain Downloader) (Version: 0.5.0 - Hotger)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Thrustmaster Force Feedback Driver (HKLM-x32\...\{8F5A0981-5CDC-41D0-BCA2-AD3B777FC358}) (Version: 2.FFD.2009 - Thrustmaster)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
WinRAR 5.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)
X7 Oscar Editor (HKLM-x32\...\InstallShield_{3C2379D2-337A-4FFA-9017-BDFB80EC0931}) (Version: 12.03.0004 - A4TECH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-894572539-2785791942-146017988-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation)

==================== Restore Points =========================

24-05-2015 10:11:46 zoek.exe restore point

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2015-05-24 11:13 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0C3C634E-6CF7-4383-8BCE-840119AF1AD1} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-01-27] (Adobe Systems Incorporated)
Task: {0F917C48-87A3-4598-B1A6-E29BCE1E9CB9} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation)
Task: {101A032E-5524-49C3-A7C5-6AF0E1DF11F4} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-07] (Microsoft Corporation)
Task: {261215F3-138B-4B86-BCB8-E43C6E4620CE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-11] (Google Inc.)
Task: {5B6E782A-6F1F-45CF-8E36-5DA6FC6150FF} - System32\Tasks\{8AA9F5C5-A8AA-4E14-83A4-BE00693BB6B8} => pcalua.exe -a "C:\Program Files (x86)\Mafia 1 – Plna Verze Hry – CZ – kopie\Setup.exe" -d "C:\Program Files (x86)\Mafia 1 – Plna Verze Hry – CZ – kopie"
Task: {5F9FE9B0-BA28-459F-812A-4C3FF097F656} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-21] (Microsoft Corporation)
Task: {679339B7-48F0-4253-87D5-87A68DB11800} - System32\Tasks\Opera scheduled Autoupdate 1418232759 => C:\Program Files (x86)\Opera\launcher.exe [2015-05-18] (Opera Software)
Task: {740D31AA-22A1-4E19-9D68-0B574D63D7F4} - \globalUpdateUpdateTaskMachineUA No Task File <==== ATTENTION
Task: {7CD44FB6-ED50-4C3B-AABF-FD0D297784CB} - System32\Tasks\{DEC0A65B-D5D4-4322-A8FE-FB5B1C98E5FD} => pcalua.exe -a "C:\Program Files (x86)\Mafia 1 – Plna Verze Hry – CZ\Setup.exe" -d "C:\Program Files (x86)\Mafia 1 – Plna Verze Hry – CZ"
Task: {7D2DE677-8CC7-4E9C-A77B-1ABC2ACB32AB} - System32\Tasks\{258A2E01-EED5-4AAB-B714-9B7186C498BE} => pcalua.exe -a "C:\Program Files (x86)\World Racing 2\WR2_Setup.exe" -d "C:\Program Files (x86)\World Racing 2"
Task: {8B65409A-AA70-4C06-8045-B5C7B56A4033} - System32\Tasks\{9D552255-04AF-461F-8894-A0E28AAFFB2E} => pcalua.exe -a "C:\Program Files (x86)\wr\World Racing 2\WR2_Setup.exe" -d "C:\Program Files (x86)\wr\World Racing 2"
Task: {A448D7E1-F415-477D-8755-EA9F2916EA81} - System32\Tasks\Opera scheduled Autoupdate 1420980645 => C:\Program Files (x86)\Opera\launcher.exe [2015-05-18] (Opera Software)
Task: {B02A7B9A-7876-496C-A2F3-D2C86B4D1474} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-11] (Google Inc.)
Task: {B21E3294-556D-4FA5-9D15-4440A3EB01A5} - \globalUpdateUpdateTaskMachineCore No Task File <==== ATTENTION
Task: {B73C42D0-32BE-4CC0-A639-D33BB06A3492} - System32\Tasks\{E1402E4D-33CD-45B2-90CB-FE41630CA44C} => Chrome.exe http://ui.skype.com/ui/0/7.0.85.102/cs/go/help.faq.installer?LastError=1603
Task: {EC2CAB76-1BFC-4BC2-AA5D-6E2910893600} - System32\Tasks\{7233B75A-6921-4CF7-A922-EE78FECBCF30} => pcalua.exe -a C:\Users\Ondra\AppData\Roaming\mystartsearch\UninstallManager.exe -c  -ptid=amt
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (Whitelisted) ==============

2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2015-05-20 13:47 - 2015-05-20 13:45 - 00479352 _____ () C:\Program Files (x86)\Opera\29.0.1795.60\opera_crashreporter.exe
2013-09-05 01:14 - 2013-09-05 01:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2014-04-17 23:13 - 2014-04-17 23:13 - 00080384 _____ () C:\Program Files (x86)\ATI Technologies\HydraVision\HydraCsy.dll
2015-05-20 13:46 - 2015-05-20 13:45 - 01576568 _____ () C:\Program Files (x86)\Opera\29.0.1795.60\libglesv2.dll
2015-05-20 13:46 - 2015-05-20 13:45 - 00081016 _____ () C:\Program Files (x86)\Opera\29.0.1795.60\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-894572539-2785791942-146017988-1000\...\dell.com -> dell.com


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-894572539-2785791942-146017988-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4

==================== MSCONFIG/TASK MANAGER Error getting ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: AMD External Events Utility => 2
MSCONFIG\Services: AMPPALR3 => 2
MSCONFIG\Services: BTHSSecurityMgr => 2
MSCONFIG\Services: fdPHost => 3
MSCONFIG\Services: FDResPub => 3
MSCONFIG\Services: HitmanProScheduler => 2
MSCONFIG\Services: IAStorDataMgrSvc => 2
MSCONFIG\Services: IconMan_R => 2
MSCONFIG\Services: LanmanServer => 2
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: MyWiFiDHCPDNS => 3
MSCONFIG\Services: RemoteRegistry => 3
MSCONFIG\Services: SkypeUpdate => 2
MSCONFIG\Services: Steam Client Service => 3
MSCONFIG\Services: WMPNetworkSvc => 3
MSCONFIG\Services: ZeroConfigService => 2
MSCONFIG\startupreg: BCSSync => "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
MSCONFIG\startupreg: cz.seznam.software.autoupdate => "C:\Users\Ondra\AppData\Roaming\Seznam.cz\szninstall.exe" -c
MSCONFIG\startupreg: cz.seznam.software.szndesktop => "C:\Users\Ondra\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe"  -q
MSCONFIG\startupreg: DellSystemDetect => C:\Users\Ondra\AppData\Local\Apps\2.0\PZJJZDJ7.6D2\LOEYCXGR.4RX\dell..tion_e30b47f5d4a30e9e_0005.000c_1df9a4898fae00de\DellSystemDetect.exe
MSCONFIG\startupreg: DivXMediaServer => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
MSCONFIG\startupreg: DivXUpdate => "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
MSCONFIG\startupreg: ETDCtrl => %ProgramFiles%\Elantech\ETDCtrl.exe
MSCONFIG\startupreg: HydraVisionDesktopManager => "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe"
MSCONFIG\startupreg: IAStorIcon => "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
MSCONFIG\startupreg: Imperator => C:\Program Files (x86)\Genius\Imperator\IMhid.exe
MSCONFIG\startupreg: IntelPROSet => "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PROSet/Wireless
MSCONFIG\startupreg: Raptr => C:\PROGRA~2\Raptr\raptrstub.exe --startup
MSCONFIG\startupreg: seznam-listicka-distribuce => "C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe" -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: USB3MON => "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{20049A5D-80C0-4A4A-921E-ABBD6BAF5915}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{02D8FE2B-D0E9-4E5F-8D48-3E30C2570B20}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{98F1AC27-0513-48DA-ACDB-A8DB7188802D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{7C2D19A0-8F57-4E13-BCAE-74ADE905FC02}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{882101B5-41F1-472E-9806-90FD461B0944}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{F7AE6FD2-5E86-495B-A283-20C639A04AF2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{FA518465-77A0-4E76-B755-5D9DDBE51CD2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{B4074FF8-3E75-44C2-BF71-5C7FC41F216B}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 18\ArchiCAD.exe
FirewallRules: [{AE08DC4D-3053-4241-8AFA-BAD4BC0F5BEF}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 18\ArchiCAD.exe
FirewallRules: [{ED8CDCEE-EAF2-40B5-B97D-D005BE1854BD}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 18\CineRender\CineRender 64bit.exe
FirewallRules: [{42B38776-3016-4EE6-97AA-D93A6C3C8FB1}] => (Allow) C:\Program Files\GRAPHISOFT\ArchiCAD 18\CineRender\CineRender 64bit.exe
FirewallRules: [{BF778AB6-D6C6-412B-92E7-B6B2B2CD82CB}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{BB668950-D2A9-4F0A-8D7B-A29E7D0ED909}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{C2E63631-66A5-4A2E-93C7-A28B50291546}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [TCP Query User{04E32743-8C94-483B-B597-58652CADB26D}C:\users\ondra\desktop\tdu 2\testdrive2.exe] => (Allow) C:\users\ondra\desktop\tdu 2\testdrive2.exe
FirewallRules: [UDP Query User{932B34B8-0999-4CC9-9980-E5FAB40C582C}C:\users\ondra\desktop\tdu 2\testdrive2.exe] => (Allow) C:\users\ondra\desktop\tdu 2\testdrive2.exe
FirewallRules: [{44235073-8ADD-48CD-B08B-8B76A682A585}] => (Allow) C:\Users\Ondra\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{C89FEE49-9C81-4C92-A661-F348D62EA17D}] => (Allow) C:\Users\Ondra\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{0D1BCFBA-8A44-417F-B421-9205521CCDC0}C:\users\ondra\downloads\utorrent.exe] => (Allow) C:\users\ondra\downloads\utorrent.exe
FirewallRules: [UDP Query User{6CAC6E7B-D8D2-4EAF-B4D3-2961B39547CB}C:\users\ondra\downloads\utorrent.exe] => (Allow) C:\users\ondra\downloads\utorrent.exe
FirewallRules: [{8F3C9D10-E3A5-495E-955D-5DB48D431547}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{5C6C0E72-DEC1-4E54-9364-DB96B937148D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{EFD78CDA-558C-4380-A3CF-52D196511E94}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [TCP Query User{629680AD-5BC1-4556-8EF4-023765BD7C4F}C:\program files\graphisoft\archicad 18\archicad.exe] => (Allow) C:\program files\graphisoft\archicad 18\archicad.exe
FirewallRules: [UDP Query User{8F8D8FFB-C69E-467C-AB97-97ED2CC3E9EC}C:\program files\graphisoft\archicad 18\archicad.exe] => (Allow) C:\program files\graphisoft\archicad 18\archicad.exe
FirewallRules: [TCP Query User{4765588A-8763-43C0-8226-4CA04508C994}C:\program files\graphisoft\archicad 18\cinerender\cinerender 64bit.exe] => (Allow) C:\program files\graphisoft\archicad 18\cinerender\cinerender 64bit.exe
FirewallRules: [UDP Query User{6D816A3F-1135-4385-A502-D0C5109519EC}C:\program files\graphisoft\archicad 18\cinerender\cinerender 64bit.exe] => (Allow) C:\program files\graphisoft\archicad 18\cinerender\cinerender 64bit.exe
FirewallRules: [TCP Query User{CF868740-8678-464C-9A6A-E134BDB3B592}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [UDP Query User{D093DA4B-F380-46B9-9A44-D4768689151F}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [{797EB160-17C8-4378-A908-F4FF1200DD68}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{189C1A16-3A1A-4632-8B89-AD00E044BC87}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{97B29B36-F82B-4B54-992A-F7B6FB0A3121}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{ED2990D3-501B-4AF5-9D6F-2C6378F8962B}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{DD47CADD-55B8-43E7-9A72-30D2775646CC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{E7BCD1A1-F071-499F-975C-6D2D099259AE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{594A972F-477D-46BA-86FE-1475CB3183CF}C:\users\ondra\appdata\roaming\torntv.com\torntv downloader.exe] => (Block) C:\users\ondra\appdata\roaming\torntv.com\torntv downloader.exe
FirewallRules: [UDP Query User{55280396-1631-42B7-9F49-23322C9843A4}C:\users\ondra\appdata\roaming\torntv.com\torntv downloader.exe] => (Block) C:\users\ondra\appdata\roaming\torntv.com\torntv downloader.exe
FirewallRules: [TCP Query User{E312AD24-3F5A-46BC-AD21-9B6C5A6D33AC}C:\program files (x86)\far cry\bin32\farcry.exe] => (Allow) C:\program files (x86)\far cry\bin32\farcry.exe
FirewallRules: [UDP Query User{A4189200-0436-4A42-BCA0-ECF9A6B9544C}C:\program files (x86)\far cry\bin32\farcry.exe] => (Allow) C:\program files (x86)\far cry\bin32\farcry.exe
FirewallRules: [TCP Query User{CF1D99D1-08F4-4EC1-AB46-F8ECFD2EDCA4}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{244D38A9-00C4-4575-BEB7-EE4020044EF7}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [TCP Query User{E0D802B2-BD53-42CE-884F-A8093B3A2650}C:\program files (x86)\torchlight ii\torchlight2.exe] => (Allow) C:\program files (x86)\torchlight ii\torchlight2.exe
FirewallRules: [UDP Query User{C170B1B3-4B0C-4E07-B1B7-811571A7D4E3}C:\program files (x86)\torchlight ii\torchlight2.exe] => (Allow) C:\program files (x86)\torchlight ii\torchlight2.exe
FirewallRules: [{65207D93-5D64-4147-85F6-E3A34FC49F91}] => (Allow) C:\Program Files (x86)\Santhia\Santhia.exe
FirewallRules: [{B65D6103-7931-43B5-A2A6-5178A4BF0061}] => (Allow) C:\Program Files (x86)\Santhia\Santhia.exe
FirewallRules: [{9C4EF7F4-6B3E-49DC-817D-5D0259970CB8}] => (Allow) C:\Program Files (x86)\Santhia\Santhia.exe
FirewallRules: [{72A7EFD5-7DE9-4926-94B3-8BA62DA52183}] => (Allow) C:\Program Files (x86)\Santhia\Santhia.exe
FirewallRules: [{75DB30EF-CF43-471F-9E2D-5D83C8B03800}] => (Allow) C:\Program Files (x86)\Santhia\Santhia.exe
FirewallRules: [{340D0DA9-070D-4359-A508-606B6765FB4E}] => (Allow) C:\Program Files (x86)\Santhia\Santhia.exe

==================== Faulty Device Manager Devices =============

Name: Intel(R) Centrino(R) Wireless-N 2230
Description: Intel(R) Centrino(R) Wireless-N 2230
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel Corporation
Service: NETwNs64
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Zařízení Bluetooth (síť PAN)
Description: Zařízení Bluetooth (síť PAN)
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: BthPan
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Teredo Tunneling Pseudo-Interface
Description: Adaptér tunelového režimu Microsoft Teredo
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (05/24/2015 03:57:43 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/24/2015 01:14:43 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/24/2015 10:30:29 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/24/2015 10:04:28 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/24/2015 09:12:13 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Rmvtrjan.exe, verze: 6.9.1.2932, časové razítko: 0x543ff13e
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0335c7ce
ID chybujícího procesu: 0xd80
Čas spuštění chybující aplikace: 0xRmvtrjan.exe0
Cesta k chybující aplikaci: Rmvtrjan.exe1
Cesta k chybujícímu modulu: Rmvtrjan.exe2
ID zprávy: Rmvtrjan.exe3

Error: (05/24/2015 09:11:57 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Rmvtrjan.exe, verze: 6.9.1.2932, časové razítko: 0x543ff13e
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0336c7ce
ID chybujícího procesu: 0xb74
Čas spuštění chybující aplikace: 0xRmvtrjan.exe0
Cesta k chybující aplikaci: Rmvtrjan.exe1
Cesta k chybujícímu modulu: Rmvtrjan.exe2
ID zprávy: Rmvtrjan.exe3

Error: (05/24/2015 08:43:51 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/23/2015 00:39:59 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/23/2015 10:50:01 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/22/2015 07:58:57 PM) (Source: Windows Search Service) (EventID: 7042) (User: )
Description: Služba Windows Search byla zastavena, protože došlo k problému s indexovacím modulem The catalog is corrupt.

Podrobnosti:
	Katalog indexu obsahu je poškozený.   0xc0041801 (0xc0041801)


System errors:
=============
Error: (05/24/2015 04:51:33 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Prohledávání počítačů závisí na službě Server, která neuspěla při spuštění v důsledku následující chyby: 
%%1058

Error: (05/24/2015 04:51:33 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Prohledávání počítačů závisí na službě Server, která neuspěla při spuštění v důsledku následující chyby: 
%%1058

Error: (05/24/2015 04:51:33 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Prohledávání počítačů závisí na službě Server, která neuspěla při spuštění v důsledku následující chyby: 
%%1058

Error: (05/24/2015 04:51:33 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Prohledávání počítačů závisí na službě Server, která neuspěla při spuštění v důsledku následující chyby: 
%%1058

Error: (05/24/2015 04:51:33 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Prohledávání počítačů závisí na službě Server, která neuspěla při spuštění v důsledku následující chyby: 
%%1058

Error: (05/24/2015 04:51:33 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Prohledávání počítačů závisí na službě Server, která neuspěla při spuštění v důsledku následující chyby: 
%%1058

Error: (05/24/2015 04:49:07 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Prohledávání počítačů závisí na službě Server, která neuspěla při spuštění v důsledku následující chyby: 
%%1058

Error: (05/24/2015 04:49:07 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Prohledávání počítačů závisí na službě Server, která neuspěla při spuštění v důsledku následující chyby: 
%%1058

Error: (05/24/2015 04:49:07 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Prohledávání počítačů závisí na službě Server, která neuspěla při spuštění v důsledku následující chyby: 
%%1058

Error: (05/24/2015 04:46:59 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Prohledávání počítačů závisí na službě Server, která neuspěla při spuštění v důsledku následující chyby: 
%%1058


Microsoft Office:
=========================
Error: (05/24/2015 03:57:43 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/24/2015 01:14:43 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/24/2015 10:30:29 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/24/2015 10:04:28 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/24/2015 09:12:13 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Rmvtrjan.exe6.9.1.2932543ff13eunknown0.0.0.000000000c00000050335c7ced8001d095f0f1c594a3C:\Program Files (x86)\Trojan Remover\Rmvtrjan.exeunknown32be0b27-01e4-11e5-b312-d4bed94b8e9c

Error: (05/24/2015 09:11:57 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Rmvtrjan.exe6.9.1.2932543ff13eunknown0.0.0.000000000c00000050336c7ceb7401d095f0e7ef4753C:\Program Files (x86)\Trojan Remover\Rmvtrjan.exeunknown29454886-01e4-11e5-b312-d4bed94b8e9c

Error: (05/24/2015 08:43:51 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/23/2015 00:39:59 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/23/2015 10:50:01 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (05/22/2015 07:58:57 PM) (Source: Windows Search Service) (EventID: 7042) (User: )
Description: Podrobnosti:
	Katalog indexu obsahu je poškozený.   0xc0041801 (0xc0041801)
The catalog is corrupt


CodeIntegrity Errors:
===================================
  Date: 2015-05-24 11:13:22.706
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-05-24 11:13:22.674
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-01-23 16:25:08.118
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-01-23 16:25:08.056
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-01-23 14:30:39.255
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-01-23 14:30:39.177
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-01-20 07:41:56.871
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-01-20 07:41:56.700
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-01-19 20:01:23.035
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-01-19 20:01:22.957
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i7-3612QM CPU @ 2.10GHz
Percentage of memory in use: 35%
Total physical RAM: 6046.36 MB
Available physical RAM: 3898.86 MB
Total Pagefile: 15113.56 MB
Available Pagefile: 12714.47 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:931.41 GB) (Free:662.5 GB) NTFS
Drive f: () (Removable) (Total:7.77 GB) (Free:4.9 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 05759F42)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS)
Attempted reading MBR returned 0 bytes.
 Could not read MBR for disk 1.

==================== End of log ============================