﻿Additional scan result of Farbar Recovery Scan Tool (x86) Version:25-08-2015 02
Ran by MaryBird (2015-08-26 10:17:19)
Running from C:\Users\MaryBird\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-4045566379-854158647-96610640-500 - Administrator - Disabled)
Guest (S-1-5-21-4045566379-854158647-96610640-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-4045566379-854158647-96610640-1002 - Limited - Enabled)
MaryBird (S-1-5-21-4045566379-854158647-96610640-1001 - Administrator - Enabled) => C:\Users\MaryBird

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 18 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated)
Adobe Flash Player 18 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.12) - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated)
Avast Internet Security (HKLM\...\Avast) (Version: 10.3.2225 - AVAST Software)
Belkin Desktop PCI Card Driver (HKLM\...\{50D47CE8-9C16-42D1-A8D8-B143B22E232A}) (Version: 1.12.0005 - Belkin)
CameraHelperMsi (Version: 13.51.815.0 - Logitech) Hidden
erLT (Version: 1.20.138.34 - Logitech, Inc.) Hidden
FORM studio (HKLM\...\FSCZ_is1) (Version:  - KASTNER software s.r.o.)
Google Earth (HKLM\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google)
Google Chrome (HKLM\...\Google Chrome) (Version: 44.0.2403.157 - Google Inc.)
Google Update Helper (Version: 1.3.28.1 - Google Inc.) Hidden
Intel(R) Graphics Media Accelerator Driver (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2869 - Intel Corporation)
Klasifikace 5.0 (HKLM\...\{310AE5BF-073B-47BF-95B2-F413AC47EEAB}_is1) (Version:  - JPH Software)
Logitech Webcam Software (HKLM\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.51 - Logitech Inc.)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile CSY Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile CSY Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Office Professional 2010 (HKLM\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Word Viewer 2003 (HKLM\...\{90850409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
Opera Stable 31.0.1889.174 (HKLM\...\Opera 31.0.1889.174) (Version: 31.0.1889.174 - Opera Software)
PhotoScape (HKLM\...\PhotoScape) (Version:  - )
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7373 - Realtek Semiconductor Corp.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Skype™ 7.7 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.7.103 - Skype Technologies S.A.)
SlimDrivers (HKLM\...\{5AD12E7A-D739-4451-9BD1-3610EC56D8F5}) (Version: 2.2.45206 - SlimWare Utilities, Inc.)
Spotify (HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\Spotify) (Version: 1.0.12.161.g64b0797c - Spotify AB)
Surfing Protection (HKLM\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit)
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: 8.51 - Ghisler Software GmbH)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Restore Points =========================

24-08-2015 21:50:54 Windows Update
25-08-2015 09:22:45 Windows Update
26-08-2015 08:41:38 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {21C3BDEF-415C-4023-9AA9-176FE25F65C7} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-12] (Adobe Systems Incorporated)
Task: {3889144F-AF07-4D7A-AE4E-EC77892495A5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-06-27] (Google Inc.)
Task: {3C705958-3D3B-4715-A0E5-816CF4E9E7F9} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-08-03] (AVAST Software)
Task: {644DAB25-4C99-469E-B3FA-8DDFC326CD44} - System32\Tasks\Opera scheduled Autoupdate 1438797863 => C:\Program Files\Opera\launcher.exe [2015-08-17] (Opera Software)
Task: {8F74FBBB-64B1-41BF-90D5-120839F6B4B1} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated)
Task: {92FA57AA-2AB9-4A7B-AB46-99DB0D213216} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-06-27] (Google Inc.)
Task: {B9F8302A-31F4-4A7F-BB57-A56EF33CDB8F} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_18_0_0_232_pepper.exe [2015-08-12] (Adobe Systems Incorporated)
Task: {CE1AB31A-BB9B-4313-93CE-28E182A2FE31} - System32\Tasks\SlimDrivers Startup => C:\Program Files\SlimDrivers\SlimDrivers.exe [2015-02-27] (SlimWare Utilities, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\system32\Macromed\Flash\FlashUtil32_18_0_0_232_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\SlimDrivers Startup.job => C:\Program Files\SlimDrivers\SlimDrivers.exe

==================== Loaded Modules (Whitelisted) ==============

2015-08-03 12:18 - 2015-08-03 12:18 - 00102864 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-08-03 12:18 - 2015-08-03 12:18 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-08-25 19:57 - 2015-08-25 19:57 - 02961408 _____ () C:\Program Files\AVAST Software\Avast\defs\15082501\algo.dll
2015-07-18 12:51 - 2013-04-15 11:49 - 00176128 _____ () C:\Windows\System32\HP1006LM.DLL
2015-07-18 12:51 - 2013-04-15 11:49 - 00059904 _____ () C:\Windows\system32\spool\PRTPROCS\W32X86\HP1006PP.dll
2015-06-27 12:18 - 2015-06-27 12:18 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2012-09-13 00:38 - 2012-09-13 00:38 - 02144104 _____ () C:\Program Files\Logitech\LWS\Webcam Software\QtCore4.dll
2012-09-13 00:38 - 2012-09-13 00:38 - 07955304 _____ () C:\Program Files\Logitech\LWS\Webcam Software\QtGui4.dll
2012-09-13 00:38 - 2012-09-13 00:38 - 00341352 _____ () C:\Program Files\Logitech\LWS\Webcam Software\QtXml4.dll
2012-09-13 00:38 - 2012-09-13 00:38 - 00028008 _____ () C:\Program Files\Logitech\LWS\Webcam Software\imageformats\QGif4.dll
2012-09-13 00:38 - 2012-09-13 00:38 - 00127336 _____ () C:\Program Files\Logitech\LWS\Webcam Software\imageformats\QJpeg4.dll
2015-08-21 20:08 - 2015-08-18 07:23 - 01405768 _____ () C:\Program Files\Google\Chrome\Application\44.0.2403.157\libglesv2.dll
2015-08-21 20:08 - 2015-08-18 07:23 - 00081224 _____ () C:\Program Files\Google\Chrome\Application\44.0.2403.157\libegl.dll
2015-06-27 12:02 - 2015-08-26 09:16 - 45066296 _____ () C:\Users\MaryBird\AppData\Roaming\Spotify\libcef.dll
2015-06-27 12:02 - 2015-08-26 09:16 - 01649208 _____ () C:\Users\MaryBird\AppData\Roaming\Spotify\libglesv2.dll
2015-06-27 12:02 - 2015-08-26 09:16 - 00080952 _____ () C:\Users\MaryBird\AppData\Roaming\Spotify\libegl.dll
2015-08-21 20:08 - 2015-08-18 07:23 - 16393032 _____ () C:\Program Files\Google\Chrome\Application\44.0.2403.157\PepperFlash\pepflashplayer.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-4045566379-854158647-96610640-1001\...\100sexlinks.com -> 100sexlinks.com

There are 4788 more restricted sites.

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-4045566379-854158647-96610640-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\MaryBird\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 77.48.254.254 - 77.48.100.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{B1FDF2CD-393D-4691-837C-EFE6FE4CE5A9}C:\users\marybird\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marybird\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{3F027C89-DBAC-41E3-8329-A336C1CE068B}C:\users\marybird\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marybird\appdata\roaming\spotify\spotify.exe
FirewallRules: [{637AB8A6-0C0B-409F-AB7A-119C4DBC0486}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{EF368F7D-9EFC-4BD6-9C7B-FB2CB4D262AA}C:\users\marybird\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\marybird\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{1270B04F-E4D2-4B56-BDBE-517A6D86D17F}C:\users\marybird\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\marybird\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{89959082-0A96-466F-A866-1A384FBAF843}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{030032D0-8652-472D-A407-D4F36C1D0459}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{2C64EE0F-EC79-4AAE-8492-2616B38D0467}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (08/26/2015 08:47:38 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: System.Data.Entity, Version=3.5.0.0, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil . Error code = 0x80070020

Error: (08/25/2015 10:06:41 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program RSIT.exe verze 0.0.0.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 4c4

Čas spuštění: 01d0df0b041854a4

Čas ukončení: 4

Cesta k aplikaci: C:\Users\MaryBird\Downloads\RSIT.exe

ID hlášení:

Error: (08/25/2015 09:25:01 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: ehexthost, Version=6.1.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil . Error code = 0x80070020

Error: (08/24/2015 09:31:04 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: PresentationFramework, Version=3.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil . Error code = 0x80070020

Error: (08/24/2015 09:24:57 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač

Error: (08/24/2015 09:24:57 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač

Error: (08/24/2015 09:22:45 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 257) (User: )
Description: Služba Šifrování neinicializovala databázi katalogu. Chyba součásti ESENT: -528.

Error: (08/24/2015 09:22:45 AM) (Source: ESENT) (EventID: 455) (User: )
Description: Catalog Database (1348) Catalog Database: Při otevírání souboru protokolu C:\Windows\system32\CatRoot2\edb.log došlo k chybě -1811 (0xfffff8ed).

Error: (08/24/2015 12:05:00 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač

Error: (08/24/2015 12:05:00 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač


System errors:
=============
Error: (08/26/2015 09:12:34 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Windows Media Player Network Sharing neuspěla při spuštění v důsledku následující chyby: 
%%1069

Error: (08/26/2015 09:12:34 AM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Služba WMPNetworkSvc se nemohla přihlásit jako NT AUTHORITY\NetworkService s aktuálně konfigurovaným heslem z důvodu následující chyby:
%%50

Chcete-li zajistit správnou konfiguraci služby, použijte modul snap-in Služby konzoly Microsoft Management Console (MMC).

Error: (08/26/2015 09:12:34 AM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správce služeb se pokusil o opravnou akci (Restartovat službu) po nečekaném ukončení služby Windows Search, ale tato akce selhala kvůli následující chybě: 
%%1056

Error: (08/26/2015 09:12:05 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Presentation Foundation Font Cache 3.0.0.0 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (08/26/2015 09:12:04 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Windows Media Player Network Sharing byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (08/26/2015 09:12:04 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (08/26/2015 09:12:03 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Microsoft .NET Framework NGEN v4.0.30319_X86 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.

Error: (08/26/2015 09:12:03 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (08/26/2015 09:12:02 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba zařazování tisku byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 60000 milisekund: Restartovat službu.

Error: (08/26/2015 09:12:02 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Instalační služba modulů systému Windows byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.


Microsoft Office:
=========================
Error: (08/26/2015 08:47:38 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: System.Data.Entity, Version=3.5.0.0, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil . Error code = 0x80070020 
System.Data.Entity, Version=3.5.0.0, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil

Error: (08/25/2015 10:06:41 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: RSIT.exe0.0.0.04c401d0df0b041854a44C:\Users\MaryBird\Downloads\RSIT.exe

Error: (08/25/2015 09:25:01 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: ehexthost, Version=6.1.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil . Error code = 0x80070020 
ehexthost, Version=6.1.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil

Error: (08/24/2015 09:31:04 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: PresentationFramework, Version=3.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil . Error code = 0x80070020 
PresentationFramework, Version=3.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil

Error: (08/24/2015 09:24:57 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač

Error: (08/24/2015 09:24:57 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač

Error: (08/24/2015 09:22:45 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 257) (User: )
Description: -528

Error: (08/24/2015 09:22:45 AM) (Source: ESENT) (EventID: 455) (User: )
Description: Catalog Database1348Catalog Database: C:\Windows\system32\CatRoot2\edb.log-1811 (0xfffff8ed)

Error: (08/24/2015 12:05:00 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač

Error: (08/24/2015 12:05:00 AM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: )
Description: Neplatný popisovač


==================== Memory info =========================== 

Processor: Pentium(R) Dual-Core CPU E5200 @ 2.50GHz
Percentage of memory in use: 65%
Total physical RAM: 3036.49 MB
Available physical RAM: 1059.74 MB
Total Virtual: 6071.29 MB
Available Virtual: 3074.22 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:97.56 GB) (Free:31.23 GB) NTFS
Drive d: () (Fixed) (Total:498.51 GB) (Free:347.1 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596.2 GB) (Disk ID: 8C1A8C1A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=97.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=498.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================