﻿Additional scan result of Farbar Recovery Scan Tool (x86) Version:05-03-2016 01
Ran by Mária Straková (2016-03-13 20:16:04)
Running from C:\Users\Mária Straková\Downloads
Microsoft Windows 7 Ultimate  Service Pack 1 (X86) (2012-05-15 23:41:27)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3530179683-1253237436-2490057557-500 - Administrator - Disabled)
Guest (S-1-5-21-3530179683-1253237436-2490057557-501 - Limited - Disabled)
Mária Straková (S-1-5-21-3530179683-1253237436-2490057557-1000 - Administrator - Enabled) => C:\Users\Mária Straková

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Enabled - Up to date) {768124D7-F5F7-6D2F-DDC2-94DFA4017C95}
AS: Microsoft Security Essentials (Enabled - Up to date) {CDE0C533-D3CD-62A1-E772-AFADDF863628}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

ACDSee Photo Manager 12 (HKLM\...\{A5CBD7C5-CF16-443F-A4F2-3503C9DE311B}) (Version: 12.0.342 - ACD Systems International Inc.)
Adobe Flash Player 21 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 21.0.0.182 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.11) - Slovak (HKLM\...\{AC76BA86-7AD7-1051-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated)
Aktualizácia Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-041B-0000-0000000FF1CE}_ENTERPRISE_{9A8C39B0-D27F-4F81-BE74-2FECF164707E}) (Version:  - Microsoft)
Aktualizácia Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-041B-0000-0000000FF1CE}_ENTERPRISE_{CE23B3DC-18CC-46FC-A309-81D6670F8D3D}) (Version:  - Microsoft)
Aktualizácia Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-041B-0000-0000000FF1CE}_ENTERPRISE_{D6DBF512-87C0-4F6A-8FB9-AC3A389D9DE5}) (Version:  - Microsoft)
ATK Hotkey (HKLM\...\{7C05592D-424B-46CB-B505-E0013E8E75C9}) (Version: 1.0.0052 - ASUS)
CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform)
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.2302 - Intel Corporation)
Intel(R) TV Wizard (HKLM\...\TVWiz) (Version:  - Intel Corporation)
K-Lite Codec Pack 8.0.0 (Standard) (HKLM\...\KLiteCodecPack_is1) (Version: 8.0.0 - )
Landi 11 (HKLM\...\Landi 11) (Version:  - )
Landi 15 (HKLM\...\Landi 15) (Version:  - )
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office Enterprise 2007 (HKLM\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.9.218.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Nero Burning ROM 10 (HKLM\...\{7A5D731D-B4B3-490E-B339-75685712BAAB}) (Version: 10.2.11000.12.100 - Nero AG)
Nero Burning ROM 10 (HKLM\...\{FE83F463-7E61-4B18-9FA0-B94B90A0B6B9}) (Version: 10.5.10300 - Nero AG)
Samsung ML-1640 Series (HKLM\...\Samsung ML-1640 Series) (Version:  - Samsung Electronics CO.,LTD)
Seznam Software (HKU\S-1-5-21-3530179683-1253237436-2490057557-1000\...\SeznamInstall) (Version:  - Seznam.cz)
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Winamp (HKLM\...\Winamp) (Version: 5.623  - Nullsoft, Inc)
WinRAR 4.00 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {11719FA7-0D3E-479D-8E1D-00650C599968} - System32\Tasks\REGSERVO => C:\Program Files\REGSERVO\REGSERVO.exe <==== ATTENTION
Task: {248F3E23-2058-4930-9F40-38391B6E6174} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-02-20] (Piriform Ltd)
Task: {63F9B026-D89A-478C-8871-3B49221EAADB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated)
Task: {D0388601-FDEC-4DDF-B006-48C88A018BCC} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-11] (Adobe Systems Incorporated)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\REGSERVO.job => C:\Program Files\REGSERVO\REGSERVO.exe-t C:\Program Files\REGSERVO\REGSERVO.exe <==== ATTENTION

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2016-03-13 17:11 - 2015-05-26 12:37 - 00078504 _____ () C:\Users\Mária Straková\AppData\Roaming\Seznam.cz\bin\10623libfoxloader.dll
2012-05-15 16:26 - 2011-03-02 11:40 - 00140288 _____ () C:\Program Files\WinRAR\rarext.dll
2012-05-15 18:04 - 2008-01-10 13:17 - 00022723 _____ () C:\Windows\System32\ssp2ml3.dll
2012-05-15 18:16 - 2008-09-03 08:52 - 00536576 _____ () C:\Windows\Samsung\PanelMgr\SSMMgr.exe
2016-03-13 17:11 - 2015-05-26 12:38 - 00457384 _____ () C:\Users\Mária Straková\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
2016-03-13 17:11 - 2015-05-26 12:38 - 00862888 _____ () C:\Users\Mária Straková\AppData\Roaming\Seznam.cz\bin\lightspeed.dll
2016-03-13 17:11 - 2015-11-19 22:17 - 00845824 _____ () C:\Users\Mária Straková\AppData\Roaming\Seznam.cz\bin\libchinst.dll
2016-03-13 17:11 - 2015-05-26 12:39 - 01778376 _____ () C:\Users\Mária Straková\AppData\Roaming\Seznam.cz\bin\libfoxcub.dll
2010-09-27 20:24 - 2010-09-27 20:24 - 00028672 ____N () c:\Program Files\landi 15\msghoo32.ocx
2010-09-27 20:24 - 2010-09-27 20:24 - 00221184 ____N () c:\program files\landi 15\lame_enc.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3530179683-1253237436-2490057557-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Mária Straková\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{9495D8D9-C80B-49C3-A043-D65A2DD42481}C:\program files\winamp\winamp.exe] => (Block) C:\program files\winamp\winamp.exe
FirewallRules: [UDP Query User{7BCE80C9-F8AF-4A58-9AC8-A871AD37FC9F}C:\program files\winamp\winamp.exe] => (Block) C:\program files\winamp\winamp.exe
FirewallRules: [{B1895B92-63D5-44D2-9630-93E5D24F5DB1}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe

==================== Restore Points =========================

13-03-2016 11:50:27 WinThruster Sun, Mar 13, 16  11:50
13-03-2016 16:53:05 Removed Nero Toolbar.

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (03/13/2016 07:54:39 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/13/2016 04:56:17 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/13/2016 04:47:24 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01b language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (03/13/2016 12:01:44 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/13/2016 11:50:26 AM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface.  hr = 0x80070005, Prístup je odmietnutý.
.
This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
   Gathering Writer Data

Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {7eb9329b-23a9-4cd4-8748-a488083cf722}

Error: (03/13/2016 11:27:12 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/13/2016 11:17:17 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/13/2016 11:02:25 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/13/2016 06:19:27 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/12/2016 06:56:26 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


System errors:
=============
Error: (03/13/2016 07:54:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby SSPORT zlyhalo kvôli nasledujúcej chybe: 
%%2

Error: (03/13/2016 07:54:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby DgiVecp zlyhalo kvôli nasledujúcej chybe: 
%%20

Error: (03/13/2016 05:30:20 PM) (Source: Tcpip) (EventID: 4199) (User: )
Description: The system detected an address conflict for IP address 192.168.1.12 with the system
having network hardware address AC-72-89-1E-9A-79. Network operations on this system may
be disrupted as a result.

Error: (03/13/2016 04:55:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby SSPORT zlyhalo kvôli nasledujúcej chybe: 
%%2

Error: (03/13/2016 04:55:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby DgiVecp zlyhalo kvôli nasledujúcej chybe: 
%%20

Error: (03/13/2016 04:52:21 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Google Update Service (gupdate) sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (03/13/2016 12:21:04 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Google Update Service (gupdate) sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (03/13/2016 12:01:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby SSPORT zlyhalo kvôli nasledujúcej chybe: 
%%2

Error: (03/13/2016 12:01:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby DgiVecp zlyhalo kvôli nasledujúcej chybe: 
%%20

Error: (03/13/2016 11:51:45 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Google Update Service (gupdate) sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM)2 Duo CPU T5870 @ 2.00GHz
Percentage of memory in use: 34%
Total physical RAM: 3037.09 MB
Available physical RAM: 1985.09 MB
Total Virtual: 6072.49 MB
Available Virtual: 4744.8 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:49.9 GB) (Free:15.59 GB) NTFS
Drive d: () (Fixed) (Total:100 GB) (Free:99.69 GB) NTFS
Drive e: () (Fixed) (Total:148.09 GB) (Free:143.54 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: EF35337F)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=49.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=100 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=148.1 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================