﻿Additional scan result of Farbar Recovery Scan Tool (x86) Version:31-08-2015
Ran by Marketa (2015-09-02 17:53:49)
Running from D:\Users\Marketa\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

ADMIN (S-1-5-21-3439579005-2339205203-1695108522-1004 - Administrator - Enabled) => C:\Users\ADMIN
Administrator (S-1-5-21-3439579005-2339205203-1695108522-500 - Administrator - Disabled)
Guest (S-1-5-21-3439579005-2339205203-1695108522-501 - Limited - Enabled) => C:\Users\Guest
HomeGroupUser$ (S-1-5-21-3439579005-2339205203-1695108522-1002 - Limited - Enabled)
Marketa (S-1-5-21-3439579005-2339205203-1695108522-1000 - Administrator - Enabled) => C:\Users\Marketa

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A}
AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 9.20 (HKLM\...\7-Zip) (Version:  - )
Adobe AIR (HKLM\...\Adobe AIR) (Version: 17.0.0.144 - Adobe Systems Incorporated)
Adobe Flash Player 18 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 18.0.0.232 - Adobe Systems Incorporated)
Adobe Photoshop 7.0 CE (HKLM\...\Adobe Photoshop 7.0 CE) (Version: 7.0 CE - Adobe Systems, Inc.)
Adobe Photoshop Lightroom 4 (HKLM\...\{80A17ED7-059E-40FF-B5D6-F37C737CA693}) (Version: 4.0.1 - Adobe)
Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 5.100.82.130 - Broadcom Corporation)
Cisco EAP-FAST Module (Version: 2.2.14 - Cisco Systems, Inc.) Hidden
Cisco LEAP Module (Version: 1.0.19 - Cisco Systems, Inc.) Hidden
Cisco PEAP Module (Version: 1.1.6 - Cisco Systems, Inc.) Hidden
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
Fotogalerie (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Foxit Reader (HKLM\...\Foxit Reader_is1) (Version: 5.4.2.901 - Foxit Corporation)
GIMP 2.8.2 (HKLM\...\GIMP-2_is1) (Version: 2.8.2 - The GIMP Team)
Google Chrome (HKLM\...\Google Chrome) (Version: 44.0.2403.157 - Google Inc.)
Google Update Helper (Version: 1.3.28.13 - Google Inc.) Hidden
GoPro App (Version: 5.6.509 - GoPro, Inc.) Hidden
GoPro Studio 2.5.6 (HKLM\...\{8850d4d9-a0fc-453f-ba03-ec084375d0c2}) (Version: 2.5.6.509 - GoPro, Inc.)
Integrated Camera (HKLM\...\{ADE16A9D-FBDC-4ECC-B6BD-9C31E51D0332}) (Version: 5.12.423.3 - Vimicro)
Intel(R) Control Center (HKLM\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.4.1441 - Intel Corporation)
Intel(R) OpenCL CPU Runtime (HKLM\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version:  - Intel Corporation)
Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2656 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{520C4DD4-2BC7-409B-BA48-E1A4F832662D}) (Version: 2.1.0.0140 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.4.225 - Intel Corporation)
Intel® Trusted Connect Service Client (HKLM\...\{51A66ED3-200E-4147-8D1E-E8D30936FD26}) (Version: 1.23.605.1 - Intel Corporation)
Junk Mail filter update (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Lenovo Auto Scroll Utility (HKLM\...\LenovoAutoScrollUtility) (Version: 1.11 - )
Lenovo Patch Utility (Version: 1.4.0.4 - Lenovo Group Limited) Hidden
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.04.05 - )
Lenovo Solution Center (HKLM\...\{1F862697-5A69-41FA-8D1B-3CCB968DCD7D}) (Version: 2.8.004.00 - Lenovo Group Limited)
Metric Collection SDK (Version: 1.1.0005.00 - Lenovo Group Limited) Hidden
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3439579005-2339205203-1695108522-1000\...\OneDriveSetup.exe) (Version: 17.3.5930.0814 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
Movie Maker (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Power Manager (HKLM\...\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}) (Version: 6.32 - )
Realtek Ethernet Controller Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.50.1123.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7601.28116 - Realtek Semiconductor Corp.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Setup (HKLM\...\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}) (Version:  - )
Skype™ 7.8 (HKLM\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.8.102 - Skype Technologies S.A.)
Software Intel® PROSet/Wireless WiFi (HKLM\...\{E97F409F-9E1C-42A0-B72D-765A78DF3696}) (Version: 15.01.0000.0830 - Intel Corporation)
Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
Subtitle Edit 3.4.0 (HKLM\...\SubtitleEdit_is1) (Version: 3.4.0.3 - Nikse)
Text-To-Speech-Runtime (HKLM\...\{7B3F0113-E63C-4D6D-AF19-111A3165CCA2}) (Version: 1.0.0.0 - Magix Development GmbH)
ThinkPad UltraNav Driver (HKLM\...\SynTPDeinstKey) (Version: 16.1.4.17 - )
ThinkPad Wireless LAN Adapter Software (HKLM\...\{9D3D2C60-A55F-4fed-B2B9-17311226DF01}) (Version: 1.00.0031.1 - REALTEK Semiconductor Corp.)
ThinkVantage Access Connections (HKLM\...\{8E537894-A559-4D60-B3CB-F4485E3D24E3}) (Version: 6.21 - Lenovo)
ThinkVantage Access Connections (HKLM\...\{9C551D9B-5D36-46A2-9414-F658D934B129}) (Version: 5.93 - Lenovo)
ThinkVantage Active Protection System (HKLM\...\{46A84694-59EC-48F0-964C-7E76E9F8A2ED}) (Version: 1.77.0.5 - Lenovo)
ThinkVantage Communications Utility (HKLM\...\{88C6A6D9-324C-46E8-BA87-563D14021442}_is1) (Version: 2.10.0.0 - Lenovo)
VFW_Codec32 (Version: 0.1.160.0 - GoPro, Inc.) Hidden
Vimicro USB2.0 PC Camera(VC0323) (HKLM\...\{1B9B7BA2-0C7A-4759-BACD-FADADE9E6694}) (Version: 1.45.060824 - Vimicro Corporation)
VLC media player 2.0.3 (HKLM\...\VLC media player) (Version: 2.0.3 - VideoLAN)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Windows Phone app for desktop (HKLM\...\{CE9BDD0F-BAF3-474D-B6D8-15B84BDAB229}) (Version: 1.1.2726.0 - Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{00b7e0ab-817a-44ad-a04b-d1148d524136}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Marketa\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{5999E1EE-711E-48D2-9884-851A709F543D}\localserver32 -> C:\Users\Marketa\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Marketa\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Marketa\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{7B37E4E2-C62F-4914-9620-8FB5062718CC}\localserver32 -> C:\Users\Marketa\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{7c6e29bc-8b8b-4c3d-859e-af6cd158be0f}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Marketa\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{88d969c0-f192-11d4-a65f-0040963251e5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{88d969c1-f192-11d4-a65f-0040963251e5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{88d969c2-f192-11d4-a65f-0040963251e5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{88d969c3-f192-11d4-a65f-0040963251e5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{88d969c4-f192-11d4-a65f-0040963251e5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{88d969c5-f192-11d4-a65f-0040963251e5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{88d969c6-f192-11d4-a65f-0040963251e5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{88d969c8-f192-11d4-a65f-0040963251e5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{88d969c9-f192-11d4-a65f-0040963251e5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{88d969ca-f192-11d4-a65f-0040963251e5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{88d969d6-f192-11d4-a65f-0040963251e5}\InprocServer32 -> C:\Windows\system32\msxml4.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Marketa\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{A3CA1CF4-5F3E-4AC0-91B9-0D3716E1EAC3}\localserver32 -> C:\Users\Marketa\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Marketa\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{AB807329-7324-431B-8B36-DBD581F56E0B}\localserver32 -> C:\Users\Marketa\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Marketa\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Marketa\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Marketa\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Marketa\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\FileSyncApi.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3439579005-2339205203-1695108522-1000_Classes\CLSID\{FB994D36-B312-46CE-A40B-CF63980641F9}\InprocServer32 -> C:\Users\Marketa\AppData\Local\Google\Update\1.3.21.111\psuser.dll No File

==================== Restore Points =========================

02-09-2015 15:30:57 Windows Update
02-09-2015 16:01:09 Removed Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
02-09-2015 16:03:09 Removed Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-08-13 16:53 - 2015-08-13 17:48 - 00450771 ____R C:\Windows\system32\Drivers\etc\hosts
127.0.0.1	www.007guard.com
127.0.0.1	007guard.com
127.0.0.1	008i.com
127.0.0.1	www.008k.com
127.0.0.1	008k.com
127.0.0.1	www.00hq.com
127.0.0.1	00hq.com
127.0.0.1	010402.com
127.0.0.1	www.032439.com
127.0.0.1	032439.com
127.0.0.1	www.0scan.com
127.0.0.1	0scan.com
127.0.0.1	1000gratisproben.com
127.0.0.1	www.1000gratisproben.com
127.0.0.1	1001namen.com
127.0.0.1	www.1001namen.com
127.0.0.1	100888290cs.com
127.0.0.1	www.100888290cs.com
127.0.0.1	www.100sexlinks.com
127.0.0.1	100sexlinks.com
127.0.0.1	10sek.com
127.0.0.1	www.10sek.com
127.0.0.1	www.1-2005-search.com
127.0.0.1	1-2005-search.com
127.0.0.1	123fporn.info
127.0.0.1	www.123fporn.info
127.0.0.1	123haustiereundmehr.com
127.0.0.1	www.123haustiereundmehr.com
127.0.0.1	123moviedownload.com

There are 1000 more lines.


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0093CDBF-8C0D-46A9-9B8D-2D7CFBD77201} - System32\Tasks\{E69AB499-3931-462C-94E1-8F82D28A4B5B} => pcalua.exe -a C:\Users\Marketa\AppData\Roaming\mystartsearch\UninstallManager.exe -c  -ptid=cmi
Task: {0DE8C7B0-0AA1-4932-85A6-BBE43E062BCB} - System32\Tasks\{4C05F839-2B47-4F29-9A92-78180D9AFC5F} => pcalua.exe -a "D:\Users\Marketa\Downloads\Adobe-Photoshop-7.0-CZ-+-klic\Adobe Photoshop 7.0 CZ + Serial (ready!)\_ISDel.exe" -d "D:\Users\Marketa\Downloads\Adobe-Photoshop-7.0-CZ-+-klic\Adobe Photoshop 7.0 CZ + Serial (ready!)"
Task: {118601A4-7DF5-42A2-A734-CBB2D8FADC21} - System32\Tasks\APSnotifierPP1 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {16D940CC-AE03-4E57-8BA3-31B628382E19} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2015-03-09] (Lenovo)
Task: {178FDC24-89D0-46CE-BB7F-EDA70061F33E} - System32\Tasks\{4469749C-0BAA-436B-826E-2BA4365E54E8} => pcalua.exe -a D:\Users\Marketa\Downloads\64bit_Vista_Win7_Win8_R270.exe -d D:\Users\Marketa\Downloads
Task: {1D9B4A7D-98B6-469E-91E3-684D938A86E4} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
Task: {2450052E-A925-47CB-BBB2-6EA493084310} - System32\Tasks\PMTask => C:\Program Files\ThinkPad\Utilities\PWMIDTSV.EXE [2012-05-16] (Lenovo Group Limited)
Task: {27923077-AD77-4C39-8B54-C51E66CE16FF} - System32\Tasks\Lenovo\LSC\LSCTaskService => c:\program files\Lenovo\lenovo solution center\App\LSCTaskService.exe [2015-03-09] (Lenovo)
Task: {2DD3A6F3-15DC-4D42-9BD8-954FC43A96C7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-10] (Google Inc.)
Task: {4D8BAF18-7781-4CB8-B196-D44DE3FA78F4} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-03-09] ()
Task: {500F1CF5-79E3-47E2-A8E6-9FC9A5B416AF} - System32\Tasks\LuckyTab => C:\Program Files\LuckyTab\LuckyTab.exe [2015-02-07] (http://lucky-tab.com/) <==== ATTENTION
Task: {57FCC09E-6AC2-405D-9C4E-721C64756C5D} - System32\Tasks\5bb39839-2498-4eaa-838f-b0a760f3181e-5_user => C:\Program Files\GoHD\5bb39839-2498-4eaa-838f-b0a760f3181e-5.exe <==== ATTENTION
Task: {7A6CC876-9125-451A-A747-89DC6350AFA2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-10] (Google Inc.)
Task: {7AE5BDD7-5D14-4262-8269-83F622AEB145} - System32\Tasks\{91F06CEA-1D7D-405D-8FB8-F11162B39726} => pcalua.exe -a D:\Users\Marketa\Downloads\Pinnacle-Studio-Plus_12.1.exe -d D:\Users\Marketa\Downloads
Task: {808042CC-9EDA-48DE-BCE4-A9D6D37444D2} - System32\Tasks\891dcc30-c117-4420-adc0-97a8b763a1db-1-6 => C:\Program Files\CinemaPlus-3.2cV12.08\891dcc30-c117-4420-adc0-97a8b763a1db-1-6.exe <==== ATTENTION
Task: {877CDD53-98D5-4AD8-A2D4-761DE15357E2} - System32\Tasks\ASP => C:\Program Files\RCP\systweakasp.exe [2015-02-19] (Systweak Inc                                                )
Task: {87D818D6-6DE1-449F-914B-7869F298380F} - System32\Tasks\SmartWeb Upgrade Trigger Task => C:\Users\Marketa\AppData\Local\SmartWeb\SmartWebHelper.exe <==== ATTENTION
Task: {8F8EF7DE-C1A6-4F75-B439-5F0A29B6E6E8} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2015-03-09] (Lenovo)
Task: {9139DE39-F0D7-4C50-9A64-000A8DFFB2C7} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-03-09] ()
Task: {9B83B0F5-C5F5-4C50-B851-CE3E340EADAF} - System32\Tasks\{E5396928-363D-4A48-A0CA-45D663DCB9E1} => pcalua.exe -a D:\Users\Marketa\Downloads\CanyonWebCam\cnr-wcam_345-7670H_drv_xpwv3264w73264_111103.exe -d D:\Users\Marketa\Downloads\CanyonWebCam
Task: {9CC2D2F0-55E3-47B5-932A-A9288BF79093} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser
Task: {9D6C0203-23C8-40D3-AC8C-F2CE03942247} - System32\Tasks\APSnotifierPP3 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {A2132153-F752-44AA-B47C-134DF9310D3D} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2014-02-13] (Lenovo)
Task: {A4A4515E-CFA7-47D6-86AF-40F813653B16} - System32\Tasks\APSnotifierPP2 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {A5FFAE88-6093-449C-AD57-AB715B91D93C} - System32\Tasks\temp_ebfcfff9-7822-4bc7-b7b7-6c86ee886f55-10_user => C:\Program Files\Shop and Save Up\ebfcfff9-7822-4bc7-b7b7-6c86ee886f55-10.exe <==== ATTENTION
Task: {A69531DD-0D33-4457-9511-873EB3CEFC6A} - System32\Tasks\ff57ecdf-89e4-4c3f-881a-33047fd86661-5 => C:\Program Files\CinemaPlus-3.2cV09.08\ff57ecdf-89e4-4c3f-881a-33047fd86661-5.exe <==== ATTENTION
Task: {B4CDD571-FC21-4899-A55E-786736DA2CF9} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.)
Task: {BBC19CB9-A734-4B14-BAD9-B7B562F4525C} - System32\Tasks\ff57ecdf-89e4-4c3f-881a-33047fd86661-5_user => C:\Program Files\CinemaPlus-3.2cV09.08\ff57ecdf-89e4-4c3f-881a-33047fd86661-5.exe <==== ATTENTION
Task: {BD783686-6C02-4785-9888-7F5BF8E59FC4} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-12] (Adobe Systems Incorporated)
Task: {C2C9B57C-CD68-49B3-B9B5-2F2B1F8B5A2D} - \RunAsStdUser Task -> No File <==== ATTENTION
Task: {CF1FDD79-28F3-4C00-8059-A5F51F963537} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.)
Task: {D3D882FF-C74E-45F8-B64C-0D3C3BF882B6} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files\Lenovo\System Update\tvsuShim.exe
Task: {DE45FD85-5E74-4472-8DB4-03DEB44B87AD} - System32\Tasks\891dcc30-c117-4420-adc0-97a8b763a1db-5 => C:\Program Files\CinemaPlus-3.2cV12.08\891dcc30-c117-4420-adc0-97a8b763a1db-5.exe <==== ATTENTION
Task: {DE7E4CD2-1DE5-48B4-BC49-8E046C5E0CC7} - System32\Tasks\LaunchSignup => C:\Program Files\MyPC Backup\Signup Wizard.exe <==== ATTENTION
Task: {E07F9144-2B72-4906-B519-BE7ABC9DD1E9} - System32\Tasks\891dcc30-c117-4420-adc0-97a8b763a1db-5_user => C:\Program Files\CinemaPlus-3.2cV12.08\891dcc30-c117-4420-adc0-97a8b763a1db-5.exe <==== ATTENTION
Task: {EE02753D-3421-46D9-9103-39AF438D898E} - System32\Tasks\5bb39839-2498-4eaa-838f-b0a760f3181e-5 => C:\Program Files\GoHD\5bb39839-2498-4eaa-838f-b0a760f3181e-5.exe <==== ATTENTION
Task: {EF37C896-6E40-4DFC-ABBF-96173A35D687} - System32\Tasks\LaunchPreSignup => C:\Program Files\OLBPre\OLBPre.exe [2015-04-14] () <==== ATTENTION
Task: {EFB2FE9D-8988-450A-BA38-0E4465E647A9} - System32\Tasks\JZXIRNMDN => C:\ProgramData\6a114262338742f2a094b22ca1350edb\6a114262338742f2a094b22ca1350edb.exe <==== ATTENTION
Task: {F92F41D7-925C-425D-8E5E-6A9E319E867D} - System32\Tasks\891dcc30-c117-4420-adc0-97a8b763a1db-1-7 => C:\Program Files\CinemaPlus-3.2cV12.08\891dcc30-c117-4420-adc0-97a8b763a1db-1-7.exe <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\5bb39839-2498-4eaa-838f-b0a760f3181e-5.job => C:\Program Files\GoHD\5bb39839-2498-4eaa-838f-b0a760f3181e-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\5bb39839-2498-4eaa-838f-b0a760f3181e-5_user.job => C:\Program Files\GoHD\5bb39839-2498-4eaa-838f-b0a760f3181e-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\891dcc30-c117-4420-adc0-97a8b763a1db-1-6.job => C:\Program Files\CinemaPlus-3.2cV12.08\891dcc30-c117-4420-adc0-97a8b763a1db-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\891dcc30-c117-4420-adc0-97a8b763a1db-1-7.job => C:\Program Files\CinemaPlus-3.2cV12.08\891dcc30-c117-4420-adc0-97a8b763a1db-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\891dcc30-c117-4420-adc0-97a8b763a1db-5.job => C:\Program Files\CinemaPlus-3.2cV12.08\891dcc30-c117-4420-adc0-97a8b763a1db-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\891dcc30-c117-4420-adc0-97a8b763a1db-5_user.job => C:\Program Files\CinemaPlus-3.2cV12.08\891dcc30-c117-4420-adc0-97a8b763a1db-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP2.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\APSnotifierPP3.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\ff57ecdf-89e4-4c3f-881a-33047fd86661-5.job => C:\Program Files\CinemaPlus-3.2cV09.08\ff57ecdf-89e4-4c3f-881a-33047fd86661-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\ff57ecdf-89e4-4c3f-881a-33047fd86661-5_user.job => C:\Program Files\CinemaPlus-3.2cV09.08\ff57ecdf-89e4-4c3f-881a-33047fd86661-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\temp_ebfcfff9-7822-4bc7-b7b7-6c86ee886f55-10_user.job => C:\Program Files\Shop and Save Up\ebfcfff9-7822-4bc7-b7b7-6c86ee886f55-10.exe <==== ATTENTION

==================== Loaded Modules (Whitelisted) ==============

2015-09-01 19:07 - 2015-08-30 11:19 - 00283504 _____ () C:\Windows\system32\Siybbud.dll
2015-08-10 12:33 - 2015-08-10 12:33 - 00161792 _____ () C:\Program Files\8A264F81-1439220725-11CB-9639-E89C0F4F1489\hnsp540A.tmp
2015-08-10 12:33 - 2015-08-10 12:33 - 00209920 _____ () C:\Program Files\8A264F81-1439220725-11CB-9639-E89C0F4F1489\jnsp2E40.tmp
2012-09-03 16:18 - 2012-03-06 10:49 - 00128280 _____ () C:\Program Files\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
2012-09-03 16:22 - 2011-08-01 23:58 - 02201088 _____ () C:\Program Files\Lenovo\Communications Utility\cxcore210.dll
2012-09-03 16:22 - 2011-08-01 23:58 - 02085888 _____ () C:\Program Files\Lenovo\Communications Utility\cv210.dll
2012-09-03 12:32 - 2012-01-11 06:12 - 00663552 _____ () C:\Windows\system32\vmprp331.ax
2015-08-13 10:09 - 2014-05-13 07:04 - 00109400 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2015-08-13 10:09 - 2014-05-13 07:04 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl
2015-08-13 10:09 - 2014-05-13 07:04 - 00167768 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2015-08-13 10:09 - 2012-08-23 05:38 - 00574840 _____ () C:\Program Files\Spybot - Search & Destroy 2\sqlite3.dll
2015-08-13 10:09 - 2012-04-03 12:06 - 00565640 _____ () C:\Program Files\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2014-03-14 12:47 - 2014-03-14 12:47 - 00092504 _____ () C:\Program Files\Lenovo\Access Connections\AcWrpc.dll
2012-09-03 16:18 - 2012-03-06 10:27 - 01198872 _____ () C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2013-09-04 20:14 - 2013-09-04 20:14 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2015-09-02 11:52 - 2015-09-02 11:52 - 00352768 _____ () C:\Program Files\SFK\SFKEX.dll
2015-09-01 18:30 - 2015-09-01 11:49 - 03312784 _____ () C:\Users\Marketa\AppData\Local\DailyPcClean Support\updpcc_en_009010077.exe
2012-09-03 12:36 - 2012-02-17 03:21 - 00094208 ____N () C:\Windows\System32\IccLibDll.dll
2012-09-03 13:15 - 2012-05-16 01:32 - 00083968 ____N () C:\Program Files\ThinkPad\Utilities\US\PWMRT32V.DLL
2015-07-02 18:31 - 2015-07-02 18:31 - 02287616 _____ () C:\Program Files\GoPro\Tools\Importer\gopro-lib-win-analytics.dll
2015-08-14 17:27 - 2015-08-11 19:00 - 00077824 ____H () C:\Program Files\baidu\pps.exe
2015-08-22 05:29 - 2015-08-18 02:23 - 01405768 _____ () C:\Program Files\Google\Chrome\Application\44.0.2403.157\libglesv2.dll
2015-08-22 05:29 - 2015-08-18 02:23 - 00081224 _____ () C:\Program Files\Google\Chrome\Application\44.0.2403.157\libegl.dll
2015-08-17 18:52 - 2015-08-17 18:52 - 00109568 _____ () C:\Program Files\SFK\SFKEX.exe
2015-09-02 16:14 - 2015-09-02 16:14 - 01343488 _____ () C:\Program Files\8A264F81-1439220725-11CB-9639-E89C0F4F1489\knsu2B8D.tmp
2015-08-22 05:29 - 2015-08-18 02:23 - 16393032 _____ () C:\Program Files\Google\Chrome\Application\44.0.2403.157\PepperFlash\pepflashplayer.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:4ABA35EE

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com

There are 7866 more restricted sites.

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3439579005-2339205203-1695108522-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Marketa\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 201.17.0.80 - 201.17.0.120
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{FEE91611-382A-45B3-BE54-E0C9ED9DE5BB}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{9509A749-C9BF-4E02-95B0-737DB5CEAA4A}] => (Allow) C:\Users\Marketa\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
FirewallRules: [{24A507E4-DCDC-49BC-88AC-EC52B4C89AA3}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [{6CEA28CC-872B-4955-AF03-35E2E39521BA}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\RM.exe
FirewallRules: [{A957143A-C598-4CB6-B18E-ADE5F0BBEBBC}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\RM.exe
FirewallRules: [{53FC636C-7718-445C-9D3F-C21F75D6AC1D}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\Studio.exe
FirewallRules: [{EFA333FF-9CD5-416F-A72B-D8512D1EB662}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\Studio.exe
FirewallRules: [{3CACD599-6E44-4641-BC19-A8D1A66EB1F0}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\umi.exe
FirewallRules: [{04654301-C744-4FD0-AB25-6B13252295F5}] => (Allow) C:\Program Files\Pinnacle\Studio 12\Programs\umi.exe
FirewallRules: [{95E9034B-3335-4E40-A482-FFED566C984E}] => (Allow) C:\Program Files\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{DB5C3E70-1F5B-4CB6-B64C-5310335B964E}] => (Allow) LPort=2869
FirewallRules: [{BF6FACEC-00F3-4834-B805-EF498BE8A6FF}] => (Allow) LPort=1900
FirewallRules: [{96D4E1CA-C306-45ED-986D-477ACDECB18A}] => (Allow) C:\Program Files\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{345D89A0-330C-4904-9F84-A919D79BAC65}] => (Allow) C:\Program Files\RelevantKnowledge\rlvknlg.exe
FirewallRules: [{2B05A02F-F781-43A0-A1DE-0EA3F481A7A3}] => (Allow) C:\Program Files\RelevantKnowledge\rlvknlg.exe
FirewallRules: [{524A3994-0E2E-464C-8633-1D3EBD573F35}] => (Allow) C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe
FirewallRules: [{D9D41C18-41AB-468D-B9C2-12A0F84E288C}] => (Allow) C:\Program Files\Sony Ericsson\Update Engine\Sony Ericsson Update Engine.exe
FirewallRules: [{2E8B75CC-BCD5-4876-87B6-F162F4451C55}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{903B4766-A6AD-42CC-9F64-64D747237B2E}] => (Allow) C:\Program Files\Lightworks\ntcardvt.exe
FirewallRules: [{F54106CF-031A-400C-8747-2E95A68F1C05}] => (Allow) C:\Program Files\Lightworks\ntcardvt.exe
FirewallRules: [{093C63A4-40C5-4143-804B-1B377C3DE5D4}] => (Allow) C:\Users\Marketa\AppData\Local\Temp\nsfBD3D.tmp\CnetInstaller-201150.exe
FirewallRules: [{ABE27639-7EFA-47C6-B8B7-A8A4ACC5906F}] => (Allow) C:\Users\Marketa\AppData\Local\Temp\nsfBD3D.tmp\CnetInstaller-201150.exe
FirewallRules: [{58C77722-D6C7-4DC5-8F6E-547190D75788}] => (Allow) C:\Users\Marketa\AppData\Local\Temp\nsk8888.tmp\CnetInstaller-201150.exe
FirewallRules: [{1B6FF09B-0A15-41A6-BB69-086972B9C42F}] => (Allow) C:\Users\Marketa\AppData\Local\Temp\nsk8888.tmp\CnetInstaller-201150.exe
FirewallRules: [{D7E8065E-EC5D-444E-9B0B-17B8ECF2F861}] => (Allow) D:\Users\Marketa\Downloads\Canon_Eos_Utility_V2.6_downloader.exe
FirewallRules: [{81C52B13-1E4A-4FD8-AC98-6B12AA08F317}] => (Allow) D:\Users\Marketa\Downloads\Canon_Eos_Utility_V2.6_downloader.exe
FirewallRules: [{9188DB2B-5968-4B38-8C0F-63877701E56B}] => (Allow) C:\Program Files\SimpleFiles\SimpleFiles.exe
FirewallRules: [{5C42B904-D340-4C92-9533-86E03EF4D3AD}] => (Allow) C:\Program Files\SimpleFiles\SimpleFiles.exe
FirewallRules: [{7CA10A0D-6A47-4862-A841-2BCCA80031EE}] => (Allow) C:\Program Files\SimpleFiles\downloader.exe
FirewallRules: [{6DD3ED1D-AD58-428C-BBE0-BCEF8605DC7D}] => (Allow) C:\Program Files\SimpleFiles\downloader.exe
FirewallRules: [TCP Query User{B0A2D249-0148-471E-BE4E-50252B65E179}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{84CA2620-611B-4424-9FD9-0DA3F4E3F0F6}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [TCP Query User{E90F6B28-8342-41E7-96E0-8FF616B94509}C:\users\marketa\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marketa\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{52ACA2CB-9238-4DB8-9532-B292D7FE9CDA}C:\users\marketa\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marketa\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{E0F0138B-7604-46AE-81DD-0ABE3705D696}C:\users\marketa\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\marketa\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{DB0676B8-D1ED-4347-8B54-AAEFB3397A91}C:\users\marketa\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\marketa\appdata\roaming\spotify\spotify.exe
FirewallRules: [{BC102B60-BD1B-4449-A83E-ABA1DF17E545}] => (Allow) C:\Program Files\Lenovo\System Update\uncserver.exe
FirewallRules: [{4A00F747-DBFD-41E0-AC93-88C48553E0F7}] => (Allow) C:\Program Files\Lenovo\System Update\uncserver.exe
FirewallRules: [{B39DF432-8E30-4723-B706-7F42BE96E2D6}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service

==================== Faulty Device Manager Devices =============

Name: Teredo Tunneling Pseudo-Interface
Description: Adaptér tunelového režimu Microsoft Teredo
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: wsafd_1_10_0_19
Description: wsafd_1_10_0_19
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: wsafd_1_10_0_19
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (09/02/2015 05:41:57 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program FRST.exe verze 31.8.2015.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 994

Čas spuštění: 01d0e5be955392c8

Čas ukončení: 0

Cesta k aplikaci: D:\Users\Marketa\Downloads\FRST.exe

ID hlášení:

Error: (09/02/2015 04:00:50 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program TUTOBUN.tmp verze 51.52.0.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 6d4

Čas spuštění: 01d0e5b18ddcc73a

Čas ukončení: 4

Cesta k aplikaci: C:\Users\Marketa\AppData\Local\Temp\is-FS7C9.tmp\TUTOBUN.tmp

ID hlášení:

Error: (09/02/2015 09:43:00 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: GoPro Importer.exe, verze: 2.5.6.509, časové razítko: 0x5595c2b8
Název chybujícího modulu: KERNELBASE.dll, verze: 6.1.7601.18847, časové razítko: 0x554d7b00
Kód výjimky: 0xe0434352
Posun chyby: 0x0000812f
ID chybujícího procesu: 0x14d8
Čas spuštění chybující aplikace: 0xGoPro Importer.exe0
Cesta k chybující aplikaci: GoPro Importer.exe1
Cesta k chybujícímu modulu: GoPro Importer.exe2
ID zprávy: GoPro Importer.exe3

Error: (09/02/2015 09:42:54 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: GoPro Importer.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.ArgumentException
Zásobník:
   na System.Windows.Media.CompositionTarget.SetRootVisual(System.Windows.Media.Visual)
   na System.Windows.Media.CompositionTarget.set_RootVisual(System.Windows.Media.Visual)
   na System.Windows.Interop.HwndTarget.set_RootVisual(System.Windows.Media.Visual)
   na System.Windows.Interop.HwndSource.set_RootVisualInternal(System.Windows.Media.Visual)
   na System.Windows.Interop.HwndSource.set_RootVisual(System.Windows.Media.Visual)
   na System.Windows.Controls.Primitives.Popup.SetRootVisualToPopupRoot()
   na System.Windows.Controls.Primitives.Popup.CreateWindow(Boolean)
   na System.Windows.Controls.Primitives.Popup.OnIsOpenChanged(System.Windows.DependencyObject, System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.DependencyObject.OnPropertyChanged(System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.FrameworkElement.OnPropertyChanged(System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.DependencyObject.NotifyPropertyChange(System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.DependencyObject.UpdateEffectiveValue(System.Windows.EntryIndex, System.Windows.DependencyProperty, System.Windows.PropertyMetadata, System.Windows.EffectiveValueEntry, System.Windows.EffectiveValueEntry ByRef, Boolean, Boolean, System.Windows.OperationType)
   na System.Windows.DependencyObject.SetValueCommon(System.Windows.DependencyProperty, System.Object, System.Windows.PropertyMetadata, Boolean, Boolean, System.Windows.OperationType, Boolean)
   na System.Windows.DependencyObject.SetValue(System.Windows.DependencyProperty, System.Object)
   na System.Windows.Data.BindingOperations.SetBinding(System.Windows.DependencyObject, System.Windows.DependencyProperty, System.Windows.Data.BindingBase)
   na System.Windows.Controls.Primitives.Popup.CreateRootPopup(System.Windows.Controls.Primitives.Popup, System.Windows.UIElement)
   na System.Windows.Controls.ToolTip.HookupParentPopup()
   na System.Windows.Controls.ToolTip.OnIsOpenChanged(System.Windows.DependencyObject, System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.DependencyObject.OnPropertyChanged(System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.FrameworkElement.OnPropertyChanged(System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.DependencyObject.NotifyPropertyChange(System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.DependencyObject.UpdateEffectiveValue(System.Windows.EntryIndex, System.Windows.DependencyProperty, System.Windows.PropertyMetadata, System.Windows.EffectiveValueEntry, System.Windows.EffectiveValueEntry ByRef, Boolean, Boolean, System.Windows.OperationType)
   na System.Windows.DependencyObject.SetValueCommon(System.Windows.DependencyProperty, System.Object, System.Windows.PropertyMetadata, Boolean, Boolean, System.Windows.OperationType, Boolean)
   na System.Windows.DependencyObject.SetValue(System.Windows.DependencyProperty, System.Object)
   na Hardcodet.Wpf.TaskbarNotification.TaskbarIcon.OnToolTipChange(Boolean)
   na Hardcodet.Wpf.TaskbarNotification.Interop.WindowMessageSink.ProcessWindowMessage(UInt32, IntPtr, IntPtr)
   na Hardcodet.Wpf.TaskbarNotification.Interop.WindowMessageSink.OnWindowMessageReceived(IntPtr, UInt32, IntPtr, IntPtr)
   na MS.Win32.UnsafeNativeMethods.IntGetMessageW(System.Windows.Interop.MSG ByRef, System.Runtime.InteropServices.HandleRef, Int32, Int32)
   na MS.Win32.UnsafeNativeMethods.GetMessageW(System.Windows.Interop.MSG ByRef, System.Runtime.InteropServices.HandleRef, Int32, Int32)
   na System.Windows.Threading.Dispatcher.GetMessage(System.Windows.Interop.MSG ByRef, IntPtr, Int32, Int32)
   na System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
   na System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
   na System.Windows.Threading.Dispatcher.Run()
   na System.Windows.Application.RunDispatcher(System.Object)
   na System.Windows.Application.RunInternal(System.Windows.Window)
   na System.Windows.Application.Run(System.Windows.Window)
   na GoProImporter.App.Main(System.String[])

Error: (09/01/2015 08:01:07 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program TUTOBUN.tmp verze 51.52.0.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 2588

Čas spuštění: 01d0e50a0267d232

Čas ukončení: 6

Cesta k aplikaci: C:\Users\Marketa\AppData\Local\Temp\is-UKKGC.tmp\TUTOBUN.tmp

ID hlášení:

Error: (09/01/2015 07:52:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: upgmsd_br_005010077.exe, verze: 1.0.0.1, časové razítko: 0x55e56163
Název chybujícího modulu: upgmsd_br_005010077.exe, verze: 1.0.0.1, časové razítko: 0x55e56163
Kód výjimky: 0xc0000005
Posun chyby: 0x0000c7d0
ID chybujícího procesu: 0x15a8
Čas spuštění chybující aplikace: 0xupgmsd_br_005010077.exe0
Cesta k chybující aplikaci: upgmsd_br_005010077.exe1
Cesta k chybujícímu modulu: upgmsd_br_005010077.exe2
ID zprávy: upgmsd_br_005010077.exe3

Error: (09/01/2015 07:22:20 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program TUTOBUN.tmp verze 51.52.0.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: b34

Čas spuštění: 01d0e5046dfb285e

Čas ukončení: 6

Cesta k aplikaci: C:\Users\Marketa\AppData\Local\Temp\is-HPUAU.tmp\TUTOBUN.tmp

ID hlášení:

Error: (09/01/2015 06:47:32 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program _iu14D2O.tmp verze 51.52.0.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 1ed8

Čas spuštění: 01d0e4ff334fdb20

Čas ukončení: 8

Cesta k aplikaci: C:\Users\Marketa\AppData\Local\Temp\_iu14D2O.tmp

ID hlášení:

Error: (09/01/2015 06:47:04 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program _iu14D2N.tmp verze 51.52.0.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 1b28

Čas spuštění: 01d0e4ff2f624a62

Čas ukončení: 7

Cesta k aplikaci: C:\Users\Marketa\AppData\Local\Temp\_iu14D2N.tmp

ID hlášení:

Error: (09/01/2015 06:32:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: upgmsd_br_005010077.exe, verze: 1.0.0.1, časové razítko: 0x55e56163
Název chybujícího modulu: upgmsd_br_005010077.exe, verze: 1.0.0.1, časové razítko: 0x55e56163
Kód výjimky: 0xc0000005
Posun chyby: 0x0000c7d0
ID chybujícího procesu: 0x1ac0
Čas spuštění chybující aplikace: 0xupgmsd_br_005010077.exe0
Cesta k chybující aplikaci: upgmsd_br_005010077.exe1
Cesta k chybujícímu modulu: upgmsd_br_005010077.exe2
ID zprávy: upgmsd_br_005010077.exe3


System errors:
=============
Error: (09/02/2015 03:32:21 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80240020): Upgrade na Windows 10 Home.

Error: (09/02/2015 03:27:31 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro FailureCommand s touto chybou: 
%%5

Error: (09/02/2015 03:27:28 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Volání ScRegSetValueExW skončilo neúspěšné pro Start s touto chybou: 
%%5

Error: (09/02/2015 03:17:55 PM) (Source: Microsoft-Windows-WHEA-Logger) (EventID: 18) (User: NT AUTHORITY)
Description: Došlo k závažné chybě hardwaru.

Ohlášeno součástí: Jádro procesoru
Zdroj chyby: 3
Typ chyby: 9
ID procesoru: 0

Další informace jsou obsaženy v podrobném zobrazení tohoto záznamu.

Error: (09/02/2015 03:17:55 PM) (Source: Microsoft-Windows-WHEA-Logger) (EventID: 18) (User: NT AUTHORITY)
Description: Došlo k závažné chybě hardwaru.

Ohlášeno součástí: Jádro procesoru
Zdroj chyby: 3
Typ chyby: 9
ID procesoru: 0

Další informace jsou obsaženy v podrobném zobrazení tohoto záznamu.

Error: (09/02/2015 03:17:53 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo: 
cdrom
wsafd_1_10_0_19

Error: (09/02/2015 03:17:37 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Percentage Sign Hierarchical Topology neuspěla při spuštění v důsledku následující chyby: 
%%2

Error: (09/02/2015 03:17:12 PM) (Source: BugCheck) (EventID: 1001) (User: )
Description: 0xdeaddead (0x0f010012, 0x01a700ac, 0x12bc0000, 0x00000000)C:\Windows\MEMORY.DMP090215-19593-01

Error: (09/02/2015 03:17:10 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (15:15:50, ‎2.‎9.‎2015) bylo neočekávané.

Error: (09/02/2015 02:02:06 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby Power Manager DBC Service bylo dosaženo časového limitu (60000 ms).


Microsoft Office:
=========================
Error: (09/02/2015 05:41:57 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: FRST.exe31.8.2015.099401d0e5be955392c80D:\Users\Marketa\Downloads\FRST.exe

Error: (09/02/2015 04:00:50 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: TUTOBUN.tmp51.52.0.06d401d0e5b18ddcc73a4C:\Users\Marketa\AppData\Local\Temp\is-FS7C9.tmp\TUTOBUN.tmp

Error: (09/02/2015 09:43:00 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: GoPro Importer.exe2.5.6.5095595c2b8KERNELBASE.dll6.1.7601.18847554d7b00e04343520000812f14d801d0e50956b44403C:\Program Files\GoPro\Tools\Importer\GoPro Importer.exeC:\Windows\system32\KERNELBASE.dll24332687-5170-11e5-8186-685d435c055c

Error: (09/02/2015 09:42:54 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: GoPro Importer.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.ArgumentException
Zásobník:
   na System.Windows.Media.CompositionTarget.SetRootVisual(System.Windows.Media.Visual)
   na System.Windows.Media.CompositionTarget.set_RootVisual(System.Windows.Media.Visual)
   na System.Windows.Interop.HwndTarget.set_RootVisual(System.Windows.Media.Visual)
   na System.Windows.Interop.HwndSource.set_RootVisualInternal(System.Windows.Media.Visual)
   na System.Windows.Interop.HwndSource.set_RootVisual(System.Windows.Media.Visual)
   na System.Windows.Controls.Primitives.Popup.SetRootVisualToPopupRoot()
   na System.Windows.Controls.Primitives.Popup.CreateWindow(Boolean)
   na System.Windows.Controls.Primitives.Popup.OnIsOpenChanged(System.Windows.DependencyObject, System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.DependencyObject.OnPropertyChanged(System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.FrameworkElement.OnPropertyChanged(System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.DependencyObject.NotifyPropertyChange(System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.DependencyObject.UpdateEffectiveValue(System.Windows.EntryIndex, System.Windows.DependencyProperty, System.Windows.PropertyMetadata, System.Windows.EffectiveValueEntry, System.Windows.EffectiveValueEntry ByRef, Boolean, Boolean, System.Windows.OperationType)
   na System.Windows.DependencyObject.SetValueCommon(System.Windows.DependencyProperty, System.Object, System.Windows.PropertyMetadata, Boolean, Boolean, System.Windows.OperationType, Boolean)
   na System.Windows.DependencyObject.SetValue(System.Windows.DependencyProperty, System.Object)
   na System.Windows.Data.BindingOperations.SetBinding(System.Windows.DependencyObject, System.Windows.DependencyProperty, System.Windows.Data.BindingBase)
   na System.Windows.Controls.Primitives.Popup.CreateRootPopup(System.Windows.Controls.Primitives.Popup, System.Windows.UIElement)
   na System.Windows.Controls.ToolTip.HookupParentPopup()
   na System.Windows.Controls.ToolTip.OnIsOpenChanged(System.Windows.DependencyObject, System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.DependencyObject.OnPropertyChanged(System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.FrameworkElement.OnPropertyChanged(System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.DependencyObject.NotifyPropertyChange(System.Windows.DependencyPropertyChangedEventArgs)
   na System.Windows.DependencyObject.UpdateEffectiveValue(System.Windows.EntryIndex, System.Windows.DependencyProperty, System.Windows.PropertyMetadata, System.Windows.EffectiveValueEntry, System.Windows.EffectiveValueEntry ByRef, Boolean, Boolean, System.Windows.OperationType)
   na System.Windows.DependencyObject.SetValueCommon(System.Windows.DependencyProperty, System.Object, System.Windows.PropertyMetadata, Boolean, Boolean, System.Windows.OperationType, Boolean)
   na System.Windows.DependencyObject.SetValue(System.Windows.DependencyProperty, System.Object)
   na Hardcodet.Wpf.TaskbarNotification.TaskbarIcon.OnToolTipChange(Boolean)
   na Hardcodet.Wpf.TaskbarNotification.Interop.WindowMessageSink.ProcessWindowMessage(UInt32, IntPtr, IntPtr)
   na Hardcodet.Wpf.TaskbarNotification.Interop.WindowMessageSink.OnWindowMessageReceived(IntPtr, UInt32, IntPtr, IntPtr)
   na MS.Win32.UnsafeNativeMethods.IntGetMessageW(System.Windows.Interop.MSG ByRef, System.Runtime.InteropServices.HandleRef, Int32, Int32)
   na MS.Win32.UnsafeNativeMethods.GetMessageW(System.Windows.Interop.MSG ByRef, System.Runtime.InteropServices.HandleRef, Int32, Int32)
   na System.Windows.Threading.Dispatcher.GetMessage(System.Windows.Interop.MSG ByRef, IntPtr, Int32, Int32)
   na System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
   na System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
   na System.Windows.Threading.Dispatcher.Run()
   na System.Windows.Application.RunDispatcher(System.Object)
   na System.Windows.Application.RunInternal(System.Windows.Window)
   na System.Windows.Application.Run(System.Windows.Window)
   na GoProImporter.App.Main(System.String[])

Error: (09/01/2015 08:01:07 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: TUTOBUN.tmp51.52.0.0258801d0e50a0267d2326C:\Users\Marketa\AppData\Local\Temp\is-UKKGC.tmp\TUTOBUN.tmp

Error: (09/01/2015 07:52:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: upgmsd_br_005010077.exe1.0.0.155e56163upgmsd_br_005010077.exe1.0.0.155e56163c00000050000c7d015a801d0e508ed98bda1C:\Users\Marketa\AppData\Local\gmsd_br_005010077\upgmsd_br_005010077.exeC:\Users\Marketa\AppData\Local\gmsd_br_005010077\upgmsd_br_005010077.exe2c84411a-50fc-11e5-91fb-685d435c055c

Error: (09/01/2015 07:22:20 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: TUTOBUN.tmp51.52.0.0b3401d0e5046dfb285e6C:\Users\Marketa\AppData\Local\Temp\is-HPUAU.tmp\TUTOBUN.tmp

Error: (09/01/2015 06:47:32 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: _iu14D2O.tmp51.52.0.01ed801d0e4ff334fdb208C:\Users\Marketa\AppData\Local\Temp\_iu14D2O.tmp

Error: (09/01/2015 06:47:04 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: _iu14D2N.tmp51.52.0.01b2801d0e4ff2f624a627C:\Users\Marketa\AppData\Local\Temp\_iu14D2N.tmp

Error: (09/01/2015 06:32:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: upgmsd_br_005010077.exe1.0.0.155e56163upgmsd_br_005010077.exe1.0.0.155e56163c00000050000c7d01ac001d0e4fdc5205750C:\Users\Marketa\AppData\Local\gmsd_br_005010077\upgmsd_br_005010077.exeC:\Users\Marketa\AppData\Local\gmsd_br_005010077\upgmsd_br_005010077.exe035e859b-50f1-11e5-819a-685d435c055c


CodeIntegrity:
===================================
  Date: 2014-06-28 03:57:41.968
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-06-28 03:57:41.674
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-06-28 03:55:40.126
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-06-28 03:55:39.940
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-06-28 03:54:33.655
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-06-28 03:54:33.452
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-06-28 03:52:37.816
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-06-28 03:52:37.632
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-06-28 03:52:20.166
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-06-28 03:52:19.932
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsound.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info =========================== 

Processor: Intel(R) Pentium(R) CPU B970 @ 2.30GHz
Percentage of memory in use: 79%
Total physical RAM: 3053.8 MB
Available physical RAM: 633.45 MB
Total Virtual: 6105.92 MB
Available Virtual: 2255.15 MB

==================== Drives ================================

Drive c: (SYSTEM) (Fixed) (Total:172.69 GB) (Free:107 GB) NTFS
Drive d: (DATA) (Fixed) (Total:292.97 GB) (Free:16 GB) NTFS
Drive e: () (Removable) (Total:14.91 GB) (Free:14.76 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 74466F1C)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=172.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=293 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 14.9 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt ============================