﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version:29-10-2015
Ran by LL (2015-10-30 23:13:30)
Running from C:\Users\LL\Desktop
Windows 7 Home Premium (X64) (2015-02-28 14:43:26)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1641163862-362238020-70859123-500 - Administrator - Disabled)
Guest (S-1-5-21-1641163862-362238020-70859123-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1641163862-362238020-70859123-1002 - Limited - Enabled)
LL (S-1-5-21-1641163862-362238020-70859123-1001 - Administrator - Enabled) => C:\Users\LL

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.009.20077 - Adobe Systems Incorporated)
Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.226 - Adobe Systems Incorporated)
Adobe Flash Player 19 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 19.0.0.226 - Adobe Systems Incorporated)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.4.2233 - AVAST Software)
CCleaner (HKLM\...\CCleaner) (Version: 5.06 - Piriform)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 46.0.2490.80 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden
Microsoft SQL Server Compact 4.0 x64 CSY (HKLM\...\{0A8A841B-29C4-4947-BF59-241216B4D904}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
OpenOffice 4.1.1 (HKLM-x32\...\{C560D6E7-E40A-435D-8B71-62CBCF1701B2}) (Version: 4.11.9775 - Apache Software Foundation)
Opera Stable 32.0.1948.69 (HKLM-x32\...\Opera 32.0.1948.69) (Version: 32.0.1948.69 - Opera Software)
The KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 3.4.0.59 - KMP Media co., Ltd)
WinRAR 5.21 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
Zoner Photo Studio 16 (HKLM\...\ZonerPhotoStudio16_EN_is1) (Version: 16.0.1.9 - ZONER software)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Restore Points =========================

16-09-2015 09:19:14 Naplánovaný kontrolní bod
23-09-2015 14:51:10 Naplánovaný kontrolní bod
01-10-2015 13:21:59 Naplánovaný kontrolní bod
10-10-2015 15:11:26 Naplánovaný kontrolní bod
18-10-2015 21:00:20 Naplánovaný kontrolní bod
26-10-2015 08:25:29 Naplánovaný kontrolní bod
30-10-2015 22:22:43 avast! antivirus system restore point

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {2188B5D6-73AF-44D8-8AB8-C1CB0036293C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-30] (Google Inc.)
Task: {25321DCD-C905-4A52-AF41-AA76ED161200} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-05-08] (Piriform Ltd)
Task: {33423591-B88E-422F-9B7F-DE4E2464A040} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-30] (Google Inc.)
Task: {3D97497A-2D31-4AA3-84D1-66EA5F4CBDA3} - System32\Tasks\Opera scheduled Autoupdate 1425151088 => C:\Program Files (x86)\Opera\launcher.exe [2015-09-25] (Opera Software)
Task: {52C481A1-2844-4E3E-A2E5-FA12D666D37E} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-10-30] (AVAST Software)
Task: {6254514C-BD77-4046-BA5B-F0A402D83C05} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-17] (Adobe Systems Incorporated)
Task: {B4223264-82AC-471C-9B5F-5BB340265EC1} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated)
Task: {FC8E1C8A-A91D-428F-9783-9A3B6AC2F5AB} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_19_0_0_226_pepper.exe [2015-10-17] (Adobe Systems Incorporated)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_19_0_0_226_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (Whitelisted) ==============

2015-05-08 19:50 - 2015-05-08 19:50 - 00047104 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2015-10-30 22:23 - 2015-10-30 22:23 - 00103376 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-10-30 22:23 - 2015-10-30 22:23 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-10-30 22:24 - 2015-10-30 22:24 - 03014096 _____ () C:\Program Files\AVAST Software\Avast\defs\15103001\algo.dll
2015-10-30 16:30 - 2015-10-20 15:08 - 16493384 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.80\PepperFlash\pepflashplayer.dll
2015-10-30 22:23 - 2015-10-30 22:23 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1641163862-362238020-70859123-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\LL\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: Zoner Photo Studio Autoupdate => "C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXE"
MSCONFIG\startupreg: Zoner Photo Studio Service 16 => "C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXEC:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{B2153E93-932C-4E6F-8A5B-7B2823D417A1}C:\users\ll\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\ll\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{5772FBFD-7641-4C3A-BF11-F001EB7B8B9D}C:\users\ll\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\ll\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{D0ABA274-46F6-4207-8AB7-09A12A5C6E54}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{83429C2C-2978-425A-971B-D2D775D20EB6}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{812B2CB1-2D21-400B-A64D-5B26BFE512F1}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Faulty Device Manager Devices =============

Name: Řadič velkokapacitního paměťového zařízení
Description: Řadič velkokapacitního paměťového zařízení
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (10/21/2015 09:00:37 PM) (Source: MsiInstaller) (EventID: 1024) (User: LL-PC)
Description: Aktualizaci {AC76BA86-7AD7-0000-2550-AC0F094E6700} produktu Adobe Acrobat Reader DC - Czech nebylo možné nainstalovat. Kód chyby: 1625. Instalační služba systému Windows může vytvořit soubor protokolu s informacemi, které usnadní řešení potíží při instalaci softwaru. Další informace naleznete na webu na adrese http://go.microsoft.com/fwlink/?LinkId=23127

Error: (09/18/2015 08:57:18 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 4101) (User: )
Description: Selhalo načtení automatické aktualizace kořenového certifikátu jiného výrobce z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/3679CA35668772304D30A5FB873B0FA77BB70D54.crt>. Došlo k chybě Daná operace se vrátila, protože vypršel časový limit.
.

Error: (07/21/2015 05:00:24 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program GoogleUpdate.exe verze 1.3.28.1 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: 5cc

Čas spuštění: 01d0c3cda9076287

Čas ukončení: 0

Cesta k aplikaci: C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

ID hlášení:

Error: (07/17/2015 05:48:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: plugin-container.exe, verze: 39.0.0.5659, časové razítko: 0x55934d06
Název chybujícího modulu: mozalloc.dll, verze: 39.0.0.5659, časové razítko: 0x55933a83
Kód výjimky: 0x80000003
Posun chyby: 0x00001aa1
ID chybujícího procesu: 0xc4c
Čas spuštění chybující aplikace: 0xplugin-container.exe0
Cesta k chybující aplikaci: plugin-container.exe1
Cesta k chybujícímu modulu: plugin-container.exe2
ID zprávy: plugin-container.exe3

Error: (07/14/2015 07:01:18 PM) (Source: MsiInstaller) (EventID: 1024) (User: LL-PC)
Description: Aktualizaci {AC76BA86-7AD7-0000-2550-AC0F084E7200} produktu Adobe Acrobat Reader DC - Czech nebylo možné nainstalovat. Kód chyby: 1625. Instalační služba systému Windows může vytvořit soubor protokolu s informacemi, které usnadní řešení potíží při instalaci softwaru. Další informace naleznete na webu na adrese http://go.microsoft.com/fwlink/?LinkId=23127

Error: (07/11/2015 02:05:08 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description: 

Error: (07/11/2015 02:01:02 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description: 

Error: (07/11/2015 01:59:39 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description: 

Error: (07/11/2015 01:57:47 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description: 

Error: (07/08/2015 05:49:57 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description: 


System errors:
=============
Error: (10/30/2015 10:57:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba VBoxAsw Support Driver neuspěla při spuštění v důsledku následující chyby: 
%%3

Error: (10/30/2015 10:56:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Windows Media Player Network Sharing byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (10/30/2015 10:56:26 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (10/30/2015 10:56:26 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (10/30/2015 10:56:26 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba zařazování tisku byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 60000 milisekund: Restartovat službu.

Error: (10/30/2015 10:26:20 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba VBoxAsw Support Driver neuspěla při spuštění v důsledku následující chyby: 
%%3

Error: (10/30/2015 08:11:49 PM) (Source: Disk) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Harddisk1\DR1.

Error: (10/30/2015 08:11:48 PM) (Source: Disk) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Harddisk1\DR1.

Error: (10/30/2015 08:11:47 PM) (Source: Disk) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Harddisk1\DR1.

Error: (10/30/2015 06:38:19 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba VBoxAsw Support Driver neuspěla při spuštění v důsledku následující chyby: 
%%3


==================== Memory info =========================== 

Processor: Intel(R) Core(TM)2 Duo CPU T7500 @ 2.20GHz
Percentage of memory in use: 45%
Total physical RAM: 3062.43 MB
Available physical RAM: 1680.59 MB
Total Virtual: 6123.01 MB
Available Virtual: 4691.93 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:111.78 GB) (Free:42.03 GB) NTFS ==>[drive with boot components (obtained from BCD)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 37263725)
Partition 1: (Active) - (Size=111.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================