Additional scan result of Farbar Recovery Scan Tool (x86) Version: 29-01-2017
Ran by pc (02-02-2017 22:00:34)
Running from C:\Users\pc\Desktop
Microsoft® Windows Vista™ Business  Service Pack 2 (X86) (2016-01-29 17:28:16)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-49216705-2605585009-2739692627-500 - Administrator - Disabled)
Guest (S-1-5-21-49216705-2605585009-2739692627-501 - Limited - Disabled)
pc (S-1-5-21-49216705-2605585009-2739692627-1000 - Administrator - Enabled) => C:\Users\pc

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 15.13 (HKLM\...\7-Zip) (Version: 15.13 - Igor Pavlov)
Adobe Reader XI (11.0.08) - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated)
Apple Mobile Device Support (HKLM\...\{A75CA58D-DB9C-4D14-9428-E0C7B0F623DC}) (Version: 9.0.0.26 - Apple Inc.)
Apple Software Update (HKLM\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
BS.Player FREE (HKLM\...\BSPlayerf) (Version: 2.70.1080 - AB Team, d.o.o.)
CCleaner (HKLM\...\CCleaner) (Version: 5.14 - Piriform)
Codec Pack - All In 1 6.0.3.0 (HKLM\...\Cool's_Codec_pack_4.12) (Version:  - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.2.0.0116 - Disc Soft Ltd)
ffdshow v1.3.4532 [2014-07-17] (HKLM\...\ffdshow_is1) (Version: 1.3.4532.0 - )
Google Chrome (HKLM\...\Google Chrome) (Version: 49.0.2623.112 - Google Inc.)
Google Update Helper (Version: 1.3.32.7 - Google Inc.) Hidden
iTunes (HKLM\...\{868B9974-4F23-494D-B6BC-4FAB92B2755D}) (Version: 12.1.3.6 - Apple Inc.)
Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY (HKLM\...\Microsoft .NET Framework 3.5 Language Pack SP1 - csy) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version:  - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile CSY Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile CSY Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Podpora aplikací Apple (32bitová) (HKLM\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.)
S.T.A.L.K.E.R. - Call of Pripyat [v1.6.01] (HKLM\...\{406FB8A4-F539-48A9-809C-F94706F9C9F6}_is1) (Version: 1.6.01 - CENEGA)
SpeedFan (remove only) (HKLM\...\SpeedFan) (Version:  - )
Star Wars - Battlefront II version 1.1 (HKLM\...\{AD783ABD-AC3A-4441-9E00-EF51C68089F3}_is1) (Version: 1.1 - )
TL-WN721N/TL-WN722N Driver (HKLM\...\{38A1E3ED-D913-41D2-9953-A93D5ACE3ADF}) (Version: 1.0.0 - TP-LINK)
Winamp (remove only) (HKLM\...\Winamp) (Version:  - )

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0CAB7B68-718C-40E0-B83B-89DDF7007DC8} - System32\Tasks\Microsoft\Windows\PLA\System\ConvertLogEntries => Rundll32.exe %windir%\system32\pla.dll,PlaConvertLogEntries
Task: {1D1C3428-9DAD-44F2-8336-8E820E68B392} - System32\Tasks\{E21E7D6A-12C1-42E9-80F7-ACE89C88C2BC} => pcalua.exe -a C:\Users\pc\Desktop\CanoScan_N650U_N656U_CSUv571a.exe -d C:\Users\pc\Desktop
Task: {45F2F772-E6D5-4200-B00B-6B096A36BF58} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-01-29] (Google Inc.)
Task: {8A4AEB9C-4A3D-414C-B18A-47DC38104B57} - System32\Tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask => C:\Windows\system32\RAServer.exe [2008-01-21] (Společnost Microsoft)
Task: {95FABEB8-99AF-4635-8572-69F70A89BCB5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-01-15] (Piriform Ltd)
Task: {A64DCF1A-1782-4E4D-AA58-3B13938B51C1} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\MpCmdRun.exe
Task: {EED9431A-26E0-4B12-BC43-7F0041A73D79} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-01-29] (Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-03-20 17:12 - 2015-03-20 17:12 - 00073544 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-03-20 17:12 - 2015-03-20 17:12 - 01044776 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2010-01-30 01:41 - 2010-01-30 01:41 - 04254560 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2016-01-15 21:44 - 2016-01-15 21:44 - 00047616 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2016-09-06 21:40 - 2016-09-06 11:00 - 05197312 _____ () C:\Users\pc\AppData\Local\Google\Chrome\User Data\SwiftShader\3.3.0.1\libglesv2.dll
2016-09-06 21:40 - 2016-09-06 11:00 - 00147456 _____ () C:\Users\pc\AppData\Local\Google\Chrome\User Data\SwiftShader\3.3.0.1\libegl.dll
2016-05-24 20:55 - 2013-12-19 08:50 - 29163520 _____ () C:\INSTALL\ychat_ghey_portable_edition\X-Chat 2.8.6-2 Portable for Windows-HiGH\X-Chat 2.exe

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2006-11-02 11:23 - 2006-09-18 22:41 - 00000761 ____A C:\Windows\system32\Drivers\etc\hosts

127.0.0.1       localhost
::1             localhost

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-49216705-2605585009-2739692627-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\img20.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 1) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
MSCONFIG\startupreg: WinampAgent => C:\Program Files\Winamp\winampa.exe

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [WinCollab-Out-UDP] => %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-In-UDP] => %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-Out-TCP] => %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-In-TCP] => %ProgramFiles%\Windows Collaboration\WinCollab.exe
FirewallRules: [WinCollab-DFSR-Out-TCP] => %SystemRoot%\system32\dfsr.exe
FirewallRules: [WinCollab-DFSR-In-TCP] => %SystemRoot%\system32\dfsr.exe
FirewallRules: [SLSVC-In-TCP-NoScope] => %SystemRoot%\system32\slsvc.exe
FirewallRules: [SLSVC-In-TCP] => %SystemRoot%\system32\slsvc.exe
FirewallRules: [{7F4191E2-941B-45D7-8F31-AFD8B7F06756}] => LPort=80
FirewallRules: [{2D8FDE95-3D8A-4359-A038-9623BD699E22}] => LPort=80
FirewallRules: [{D66571EB-40A5-43A1-AAC9-E2EF68D4CBA4}] => LPort=80
FirewallRules: [{A427EBC9-C77E-4266-90BB-FF4F556A1583}] => C:\Program Files\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{76418332-DA62-42D3-A562-B70AA5A10897}C:\install\utorrent-portable-2.0.2.cz\utorrent\utorrent.exe] => C:\install\utorrent-portable-2.0.2.cz\utorrent\utorrent.exe
FirewallRules: [UDP Query User{DE0532D0-DEA6-4308-887D-6EE134FF0C49}C:\install\utorrent-portable-2.0.2.cz\utorrent\utorrent.exe] => C:\install\utorrent-portable-2.0.2.cz\utorrent\utorrent.exe
FirewallRules: [{F101C9E5-1331-470A-88F4-9938F785EB5B}] => C:\games\S.T.A.L.K.E.R. - Call of Pripyat\bin\xrEngine.exe
FirewallRules: [{4337844E-20E1-4F08-9C62-2C7C4E04ED6F}] => C:\games\S.T.A.L.K.E.R. - Call of Pripyat\bin\xrEngine.exe
FirewallRules: [{11B7F849-C0AD-4BCC-A724-CAF3D6E75A15}] => C:\games\S.T.A.L.K.E.R. - Call of Pripyat\bin\dedicated\xrEngine.exe
FirewallRules: [{EA19FEB8-6D67-4ED6-977B-1C059E976A4E}] => C:\games\S.T.A.L.K.E.R. - Call of Pripyat\bin\dedicated\xrEngine.exe
FirewallRules: [TCP Query User{79232BD6-EA25-4BC7-9122-22453BF55178}C:\install\ychat_ghey_portable_edition\x-chat 2.8.6-2 portable for windows-high\x-chat 2.exe] => C:\install\ychat_ghey_portable_edition\x-chat 2.8.6-2 portable for windows-high\x-chat 2.exe
FirewallRules: [UDP Query User{1038D8A5-BA6F-43E9-985D-930FE63B0D11}C:\install\ychat_ghey_portable_edition\x-chat 2.8.6-2 portable for windows-high\x-chat 2.exe] => C:\install\ychat_ghey_portable_edition\x-chat 2.8.6-2 portable for windows-high\x-chat 2.exe
FirewallRules: [{5A3FEE29-3DD8-4DF8-BDA8-991E17EDEEB9}] => C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{F2FAA85A-51B9-4C1F-B66E-EAF45D97212A}] => C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{2B133E06-47C6-4B38-93E5-0E242F86730B}] => C:\Program Files\iTunes\iTunes.exe

==================== Restore Points =========================

