﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version:28-07-2015
Ran by Roman (2015-07-30 20:37:33)
Running from C:\Users\Roman\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-415432937-2120113999-3847976345-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-415432937-2120113999-3847976345-503 - Limited - Disabled)
Guest (S-1-5-21-415432937-2120113999-3847976345-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-415432937-2120113999-3847976345-1002 - Limited - Enabled)
Roman (S-1-5-21-415432937-2120113999-3847976345-1000 - Administrator - Enabled) => C:\Users\Roman

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.)
Acer 3G Connection Manager (HKLM-x32\...\{96F5085A-FAB3-40DA-BF1A-EABC37EA031C}) (Version: 3.00.3002 - Acer Incorporated)
Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 1.0.1324 - CyberLink Corp.)
Acer Crystal Eye Webcam (x32 Version: 1.0.1324 - CyberLink Corp.) Hidden
Acer PowerSmart Manager (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.01.3000 - Acer Incorporated)
Acer System Information (HKLM-x32\...\{72199E33-4F2A-4B7F-8E25-95DDDD50A678}) (Version: 1.0.0 - Acer)
Acer USB Charge Manager (HKLM-x32\...\{F53A49E6-9FB1-4A5A-B1D9-82BA116196B7}) (Version: 1.00.3000 - Acer Incorporated)
Adobe Reader XI (11.0.10) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Advanced SystemCare 8 (HKLM-x32\...\Advanced SystemCare 8_is1) (Version: 8.1.0 - IObit)
Aktualizace NVIDIA 16.13.69 (Version: 16.13.69 - NVIDIA Corporation) Hidden
Application Insights Tools for Visual Studio 2013 (x32 Version: 2.4 - Microsoft Corporation) Hidden
Application Insights Tools for Visual Studio Express 2013 for Web (x32 Version: 2.4 - Microsoft Corporation) Hidden
ASUSTOR Control Center verze 1.2.1.9230 (HKLM-x32\...\{10F84A36-C641-4033-9B7C-D6A96F7D827C}_is1) (Version: 1.2.1.9230 - ASUSTOR)
Audacity 2.0.6 (HKLM-x32\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
AzureTools.Notifications.VwdExpress (x32 Version: 2.1.10731.1602 - Microsoft Corporation) Hidden
Behaviors SDK (Windows Phone) for Visual Studio 2013 (x32 Version: 12.0.50716.0 - Microsoft Corporation) Hidden
Behaviors SDK (Windows) for Visual Studio 2013 (x32 Version: 12.0.50429.0 - Microsoft Corporation) Hidden
Build Tools - amd64 (Version: 12.0.31101 - Microsoft Corporation) Hidden
Build Tools - x86 (x32 Version: 12.0.31101 - Microsoft Corporation) Hidden
Build Tools Language Resources - amd64 (Version: 12.0.31101 - Microsoft Corporation) Hidden
Build Tools Language Resources - x86 (x32 Version: 12.0.31101 - Microsoft Corporation) Hidden
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.6.0 - Conexant)
Desinstalar finalizador (x32 Version: 2.5.30319.1603 - Microsoft Corporation) Hidden
Désinstaller le finaliseur (x32 Version: 2.5.30319.1603 - Microsoft Corporation) Hidden
Driver Booster 2.3 (HKLM-x32\...\Driver Booster_is1) (Version: 2.3 - IObit)
ELAN Touchpad 11.15.0.14_X64 (HKLM\...\Elantech) (Version: 11.15.0.14 - ELAN Microelectronic Corp.)
FormatFactory 3.6.0.0 (HKLM-x32\...\FormatFactory) (Version: 3.6.0.0 - Format Factory)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.125 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden
Instalar finalizador (x32 Version: 2.5.30319.1603 - Microsoft Corporation) Hidden
Installer le finaliseur (x32 Version: 2.5.30319.1603 - Microsoft Corporation) Hidden
Intel(R) Driver Update Utility 2.0 (x32 Version: 2.0.0.29 - Intel) Hidden
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.4229 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.1.2.1004 - Intel Corporation)
Intel® Driver Update Utility (HKLM-x32\...\{8409c4f7-2340-4933-a304-5d37db4fb48b}) (Version: 2.0.0.29 - Intel)
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 4.2.6.2 - IObit)
Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
Kaspersky Anti-Virus (HKLM-x32\...\InstallWIX_{8ED07EBD-22AD-415A-B71E-C1AD86862C2E}) (Version: 15.0.1.415 - Kaspersky Lab)
Kaspersky Anti-Virus (x32 Version: 15.0.1.415 - Kaspersky Lab) Hidden
Kit SDK de vérification de Visual Studio 2012 - fra (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden
Launch Manager (HKLM-x32\...\LManager) (Version: 5.1.4 - Acer Inc.)
LocalESPC (x32 Version: 8.59.29989 - Microsoft Corporation) Hidden
Memory Profiler (x32 Version: 12.0.31101 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK - CSY Lang Pack (HKLM-x32\...\{921A7733-44B1-4433-9562-4ECDDF0B7A37}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{964A79BD-5901-39B4-9288-E1E8F0EDD0CF}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (ENU) (HKLM-x32\...\{7CCDA034-B4FF-4855-B8A4-E080AE3DC129}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft Office Language Pack 2013  - Czech/čeština (HKLM-x32\...\Office15.OMUI.cs-cz) (Version: 15.0.4454.1004 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUSR) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Rise Of Nations (HKLM-x32\...\RiseOfNations 1.0) (Version:  - Microsoft)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20513.0 - Microsoft Corporation)
Microsoft Silverlight 5 SDK (HKLM-x32\...\{E1FBB3D4-ADB0-4949-B101-855DA061C735}) (Version: 5.0.61118.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Transact-SQL ScriptDom  (HKLM\...\{54C5041B-0E91-4E92-8417-AAA12493C790}) (Version: 11.1.3000.0 - Microsoft Corporation)
Microsoft SQL Server 2014 Management Objects  (x64) (HKLM\...\{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2012 (HKLM-x32\...\{070C38AC-05CE-43DF-9A20-141332F6AB2B}) (Version: 11.1.3366.16 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{8C06D6DB-A391-4686-B050-99CC522A7843}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft Web Deploy 3.5 (HKLM\...\{69A998C5-00A9-42CA-AB4E-C31CFFCD9251}) (Version: 3.1237.1763 - Microsoft Corporation)
Microsoft Web Platform Installer 5.0 (HKLM\...\{4D84C195-86F0-4B34-8FDE-4A17EB41306A}) (Version: 5.0.50430.0 - Microsoft Corporation)
Module linguistique des composants partagés Microsoft Azure pour Visual Studio 2013 (FRA) - v1.3 (x32 Version: 1.3.21014.1603 - Microsoft Corporation) Hidden
Module linguistique Microsoft Azure Tools pour Microsoft Visual Studio 2013 Core (FRA) (x32 Version: 2.5.30319.1603 - Microsoft Corporation) Hidden
Monitor technologie Intel(R) Turbo Boost 2.0 (HKLM\...\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.1.23.0 - Intel)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
NVIDIA GeForce Experience 2.1.4.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.4.1 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 344.75 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 344.75 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
Oracle VM VirtualBox 4.3.20 (HKLM\...\{DD8F7A7A-852F-4648-8A73-B8FC1DF5F082}) (Version: 4.3.20 - Oracle Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Ovládací panel NVIDIA 353.54 (Version: 353.54 - NVIDIA Corporation) Hidden
ownCloud (HKLM-x32\...\ownCloud) (Version: 1.7.1.4382 - ownCloud)
Paquete de idioma de componentes compartidos de Microsoft Azure para Visual Studio 2013 (ESN) - v1.3 (x32 Version: 1.3.21014.1603 - Microsoft Corporation) Hidden
PowreShellIntegration.Notifications (x32 Version: 2.5.21003.1603 - Microsoft Corporation) Hidden
Prerequisites for SSDT  (HKLM-x32\...\{21373064-AD95-48DB-A32E-0D9E08EF7355}) (Version: 12.0.2000.8 - Microsoft Corporation)
Prerequisites for SSDT  (HKLM-x32\...\{35C1D9D6-87C0-46A3-B1B4-EDBCC063221C}) (Version: 11.1.3000.0 - Microsoft Corporation)
Python Tools Redirection Template (x32 Version: 1.1 - Microsoft Corporation) Hidden
Python Tools Redirection Template (x32 Version: 1.3 - Microsoft Corporation) Hidden
REALTEK Wireless LAN Driver (HKLM-x32\...\{9D3D8C60-A55F-4123-B2B9-173F09590E16}) (Version: 1.00.10.0909 - REALTEK Semiconductor Corp.)
Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.26.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.26.0 - Renesas Electronics Corporation) Hidden
SDK de comprobación de Visual Studio 2012 - esn (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden
SHIELD Streaming (Version: 3.1.2000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 16.13.69 - NVIDIA Corporation) Hidden
Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit)
Team Explorer for Microsoft Visual Studio 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.38475 - TeamViewer)
TypeScript Power Tool (x32 Version: 1.0.5.0 - Microsoft Corporation) Hidden
TypeScript Tools for Microsoft Visual Studio 2013 (x32 Version: 1.0.5.0 - Microsoft Corporation) Hidden
Update for  (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Visual Studio 2013 Update 4 (KB2829760) (HKLM-x32\...\{53d408db-eb91-43fb-9d8f-167681c19763}) (Version: 12.0.31101 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
VS Update core components (x32 Version: 12.0.31101 - Microsoft Corporation) Hidden
WCF RIA Services V1.0 SP2 (HKLM-x32\...\{5D8DD6A8-C4D7-4554-93F9-F1CC28C72600}) (Version: 4.1.62812.0 - Microsoft Corporation)
Windows Azure Storage Emulator - v3.4 (HKLM-x32\...\Windows Azure Storage Emulator - v3.4) (Version: 3.4.6848.0 - Microsoft Corporation)
WinRAR 5.11 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
Wolfram Extras 10.0 (5157423) (HKLM\...\A-WIN-Extras 10.0.1 5157423_is1) (Version: 10.0.1 - Wolfram Research, Inc.)
Wolfram Mathematica 10 (M-WIN-L 10.0.1 5157734) (HKLM\...\M-WIN-L 10.0.1 5157734_is1) (Version: 10.0.1 - Wolfram Research, Inc.)
Zoner Photo Studio 17 (HKLM\...\ZonerPhotoStudio17_CZ_is1) (Version: 17.0.1.12 - ZONER software)
Пакет Visual Studio 2012 Verification SDK - rus (x32 Version: 12.0.30501 - Microsoft Corporation) Hidden
ファイナライザーのアンインストール (x32 Version: 2.5.30319.1603 - Microsoft Corporation) Hidden
ファイナライザーのインストール (x32 Version: 2.5.30319.1603 - Microsoft Corporation) Hidden
종료자 설치 (x32 Version: 2.5.30319.1603 - Microsoft Corporation) Hidden
종료자 제거 (x32 Version: 2.5.30319.1603 - Microsoft Corporation) Hidden
卸载终结器 (x32 Version: 2.5.30319.1603 - Microsoft Corporation) Hidden
安装终结器 (x32 Version: 2.5.30319.1603 - Microsoft Corporation) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-415432937-2120113999-3847976345-1000_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-415432937-2120113999-3847976345-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Roman\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-415432937-2120113999-3847976345-1000_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Roman\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-415432937-2120113999-3847976345-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Roman\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-415432937-2120113999-3847976345-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Roman\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-415432937-2120113999-3847976345-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Roman\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-415432937-2120113999-3847976345-1000_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Roman\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-415432937-2120113999-3847976345-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Roman\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-415432937-2120113999-3847976345-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Roman\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-415432937-2120113999-3847976345-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Roman\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-415432937-2120113999-3847976345-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Roman\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64\FileSyncApi64.dll (Microsoft Corporation)

==================== Restore Points =========================

30-07-2015 17:38:13 Removed MSXML4 Parser

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00EEBA9C-F9EF-4272-B793-C830FBADD359} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\Windows\system32\dstokenclean.exe [2015-07-10] (Microsoft Corporation)
Task: {01A2EABF-8715-4391-9F77-48D81AE12EA2} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {0CCA7916-2916-4F12-BD32-1E3BE31E1269} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\Windows\System32\dsregcmd.exe [2015-07-10] (Microsoft Corporation)
Task: {0F5A7941-3F08-4415-BA4C-B30AB81A1B17} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {1641F54C-1E57-4902-AB65-EE2B65E5629D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {19865544-CE08-40BE-8B8C-87C47681433D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sihboot => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {1D3D099E-EE1E-4907-8BA2-BA8F12D11AA6} - System32\Tasks\Microsoft\Windows\Location\Notifications => C:\Windows\System32\LocationNotificationWindows.exe [2015-07-10] (Microsoft Corporation)
Task: {25D46418-D616-4A05-BAC2-9B3C3955FB34} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe
Task: {2625B1E6-9074-46B5-9061-240456D2181D} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe
Task: {2C97A00A-1C5C-4318-B5CC-8A1A126B77F9} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask
Task: {3045A1AC-FC48-4EF9-A31B-01130664CBA0} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig No Task File <==== ATTENTION
Task: {306A67E5-6BE2-4270-AA57-9C8EF612BA97} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {3358E4D9-B8EF-416E-AC43-BAFF71978D73} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-05] (Google Inc.)
Task: {34FFAF32-D9FA-45B2-BCE5-B070321EB252} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-15] (Adobe Systems Incorporated)
Task: {3794AE6C-4277-4C87-83EC-6F884CB83D75} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {3D724F59-33E1-4AAA-B72B-B03D5A0B01EF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {3F6E048D-6404-433B-8F5F-CFF4D89BF89E} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Rundll32.exe generaltel.dll,RunTelemetryW
Task: {41160EA0-208B-4C3E-B4DB-805BBABC6B93} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\Windows\system32\dmclient.exe [2015-07-10] (Microsoft Corporation)
Task: {4454A8D0-2E4E-4A02-BF67-48DF6A7BFAB4} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask
Task: {44FF7113-8B66-456B-ABA4-3CCB4114820C} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe
Task: {4BFE62BF-6809-45B5-AEA2-2B5E530E0666} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd No Task File <==== ATTENTION
Task: {4F25BF13-03A9-4CD7-8F56-69EEC231A7E5} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe
Task: {502B2547-9D0C-4A4A-A1F0-C5CD40BBB3F4} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {509DBD91-6C45-493E-A179-B4EBED950C25} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe [2015-03-30] (IObit)
Task: {527ADB5A-6B0A-4574-9F13-F428E7ED3CBE} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe
Task: {53D438D3-B911-410D-A4E2-C239F60B782E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d No Task File <==== ATTENTION
Task: {554AEE5E-B164-40F8-A40C-BA7D92EEDC1B} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d No Task File <==== ATTENTION
Task: {57AAE5FF-356E-4A34-9447-3AB97B4A32F3} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe
Task: {57B70223-F3AF-44D3-9ABA-27AEDE0710CC} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe
Task: {5E5515C1-7D87-4904-B9CE-FD29EB2ADB72} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync
Task: {611C823C-437B-46E7-9683-5312DFFCFD7B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {62EBBF33-6D9B-4151-8025-78A8052064AF} - \Microsoft\Windows\Setup\gwx\launchtrayprocess No Task File <==== ATTENTION
Task: {66DDDB45-8119-4194-9548-40562F50A4C1} - System32\Tasks\Microsoft\Windows\SetupSQMTask => C:\WINDOWS\SYSTEM32\OOBE\SETUPSQM.EXE [2015-07-10] (Microsoft Corporation)
Task: {6D259604-896B-4F0F-BD6E-9EF4BDCC5238} - System32\Tasks\ASC8_SkipUac_Roman => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe [2015-01-27] (IObit)
Task: {711EE2F9-A611-4773-AF8E-D4B278A6718D} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask
Task: {71F004F8-1CDC-45A2-B05F-85609FB0F83E} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe
Task: {73551810-E5F4-433E-9494-0D00B55C855E} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask
Task: {744C9FEA-08B7-43E1-A729-0F94647D655C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {78B77FA3-9D97-441D-97B6-68CEA40B4F74} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe generaltel.dll,RunTelemetry -maintenance
Task: {79264776-EDF0-4EC1-8A62-D805DCF4EFFD} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent No Task File <==== ATTENTION
Task: {7A003965-A297-4DC6-B15B-852D798391E0} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => C:\Windows\system32\MusNotification.exe [2015-07-30] (Microsoft Corporation)
Task: {7BC470CE-F508-4DF8-BDB3-CCEF15EA1DF9} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B No Task File <==== ATTENTION
Task: {7EB7AC2C-C390-4C54-919F-D334E5F6C324} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {848DCC36-520C-4946-BF68-C7EFFEFA2F84} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot => C:\windows\system32\MusNotification.exe [2015-07-30] (Microsoft Corporation)
Task: {8DF84CB3-D8E0-4307-A35B-CA74E21786DB} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [2015-07-30] (Microsoft Corporation)
Task: {8EAB2244-9197-4F79-AACD-D8F144C56335} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d No Task File <==== ATTENTION
Task: {8EE15158-6C44-43E5-9C1A-378F60EE645C} - System32\Tasks\Driver Booster Scan => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2015-04-07] (IObit)
Task: {8F800863-72C9-4D31-A907-A3273AC6B1D0} - System32\Tasks\{8AFC0E46-886A-47C4-A205-94523FB9A8BD} => pcalua.exe -a "F:\do noťasu\Microsoft-Office-2013-Professional-Plus+cz-language-pack+crack\Microsoft Office 2013 Professional Plus+cz_l_pack+crack\Autorun.exe" -d "F:\do noťasu\Microsoft-Office-2013-Professional-Plus+cz-language-pack+crack\Microsoft Office 2013 Professional Plus+cz_l_pack+crack"
Task: {90E47454-E200-4B3D-8254-EEDFF8AC4CED} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2014-12-06] ()
Task: {A12EB097-E5C1-4FBB-BC37-C3F788C3FFA2} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {A364E297-00AD-490D-900E-22AC34598C71} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {A5B6CD85-1B57-49B9-BA80-5D5D65F02826} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager
Task: {A85B9245-6113-4962-A851-B8FB60F4FD0F} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe
Task: {ABB96CBF-061F-4081-A7DE-BC06CBF298DF} - System32\Tasks\Uninstaller_SkipUac_Roman => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2015-01-20] (IObit)
Task: {AC29E64E-3271-47BA-B8F1-914523CF379B} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Automatic App Update
Task: {AF9F6AD1-9323-4081-9BBB-EC51A7B319F8} - System32\Tasks\Microsoft\Windows\RetailDemo\CleanupOfflineContent
Task: {B2337D02-47B0-4A0A-9D86-CFB1FDFFC0F2} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe
Task: {B50608EE-5C93-4D5B-A9AB-5B10F5DD16F7} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe
Task: {B5DF7E09-C278-4662-BF7D-8223AFF3EDDE} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe
Task: {B60C917D-73F5-4C24-A474-5EFA67FA58BE} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe
Task: {B9B36D41-C776-424E-9A13-5387E17A2CEB} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask => C:\Windows\System32\WiFiTask.exe [2015-07-10] (Microsoft Corporation)
Task: {C1AD7971-5155-461F-B60A-F535CE211672} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe
Task: {C2162702-FFEB-48C0-AA5F-2DA3A8887D61} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation
Task: {C56AFFD3-06B8-4A16-AF7E-F7A6EB3FAE9E} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr
Task: {C5EE2EA2-5312-4D1F-B9D0-41B18DF31B78} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sih => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {C7A236B2-12E1-46DC-9501-3B1B0209CC09} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\Windows\System32\WindowsActionDialog.exe [2015-07-10] (Microsoft Corporation)
Task: {CE23A3CE-FE74-4F1A-8D0C-455D778E6AF7} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {D087A9B9-2FC7-4E04-A4DD-695ED2C2CD3B} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d No Task File <==== ATTENTION
Task: {D2401052-A382-42DE-9C79-D1CF3563F654} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation
Task: {D9CEC22A-9AF0-4494-AAEF-E1D4EA16F9F0} - \Microsoft\Windows\File Classification Infrastructure\Property Definition Sync No Task File <==== ATTENTION
Task: {DAF2BAE3-1C5B-4CB5-9F62-0911C031A15A} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics => C:\Windows\system32\disksnapshot.exe [2015-07-10] (Microsoft Corporation)
Task: {DC5AF446-688F-400B-B348-E1974A851D30} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe
Task: {DE32B7C5-C8DB-41A9-957F-904EA07BBFCB} - System32\Tasks\Driver Booster SkipUAC (Roman) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2015-04-07] (IObit)
Task: {E55474FA-8FFC-4B61-9217-3B67EF4BF297} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent No Task File <==== ATTENTION
Task: {E7863029-451B-470C-949D-34AFA242B609} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d No Task File <==== ATTENTION
Task: {EA3F661E-B31C-44A9-B40C-E3D5D56149D4} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display => C:\windows\system32\MusNotification.exe [2015-07-30] (Microsoft Corporation)
Task: {F57FC5B8-1D73-49DC-AE10-00A3BE495173} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {F9363486-A70F-4271-88A0-EB76C13C8CF1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-05] (Google Inc.)
Task: {FA09C685-40B0-4049-BE18-323012CDA115} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (Whitelisted) ==============

2015-07-30 11:54 - 2015-07-30 11:54 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll
2015-07-30 11:54 - 2015-07-30 11:54 - 00403968 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll
2015-07-30 12:36 - 2015-07-13 19:37 - 00116552 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-07-30 11:54 - 2015-07-30 11:54 - 02498808 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-07-30 11:54 - 2015-07-30 11:54 - 02498808 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2014-12-17 13:44 - 2014-12-17 13:44 - 00059904 _____ () C:\Program Files (x86)\ownCloud\shellext\OCUtil_x64.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-07-30 11:54 - 2015-07-30 11:54 - 06576640 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-07-10 13:00 - 2015-07-10 18:05 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-07-30 11:54 - 2015-07-30 11:54 - 01806848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-07-30 11:54 - 2015-07-30 11:54 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 13:00 - 2015-07-10 18:05 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2015-06-01 21:00 - 2015-06-01 21:00 - 00102912 _____ () C:\Windows\System32\IccLibDll_x64.dll
2015-07-10 18:08 - 2015-07-10 18:08 - 00007168 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.618.18170.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2015-07-10 18:08 - 2015-07-10 18:08 - 13490688 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.618.18170.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2014-12-06 14:36 - 2013-10-13 17:26 - 00673792 _____ () C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\PROGRAM64\RenderSystem_Direct3D9.dll
2014-12-06 14:36 - 2013-10-13 17:26 - 05438976 _____ () C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\PROGRAM64\OgreMain.dll
2014-12-06 14:36 - 2014-09-09 14:29 - 00778240 _____ () C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\PROGRAM64\SpiderMonkey.dll
2015-07-30 20:23 - 2015-07-30 20:23 - 00096096 _____ () C:\Users\Roman\Downloads\SerialNumberDetectionTool.exe
2015-02-07 14:46 - 2013-10-25 13:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\sqlite3.dll
2015-07-30 19:34 - 2015-07-25 10:46 - 01405768 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.125\libglesv2.dll
2015-07-30 19:34 - 2015-07-25 10:46 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\44.0.2403.125\libegl.dll
2015-02-07 14:46 - 2013-01-15 19:47 - 00893248 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\webres.dll
2014-12-06 14:36 - 2014-09-09 14:30 - 00603648 _____ () C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\SpiderMonkey.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager => ""="Service"

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\sharepoint.com -> hxxps://campuscvut.sharepoint.com

IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\100sexlinks.com -> 100sexlinks.com

There are 4788 more restricted sites.

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-415432937-2120113999-3847976345-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Roman\AppData\Local\Microsoft\Windows\Themes\GTGraphic (2)\DesktopBackground\sojourn.jpg
DNS Servers: 192.168.1.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: AdvancedSystemCareService8 => 2
MSCONFIG\Services: IpOverUsbSvc => 2
MSCONFIG\Services: LiveUpdateSvc => 2
MSCONFIG\Services: TeamViewer => 2
MSCONFIG\Services: WinDefend => 2
MSCONFIG\Services: WMPNetworkSvc => 3
MSCONFIG\startupfolder: C:^Users^Roman^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Monitor technologie Intel(R) Turbo Boost 2.0.lnk => C:\Windows\pss\Monitor technologie Intel(R) Turbo Boost 2.0.lnk.Startup
MSCONFIG\startupreg: Advanced SystemCare 8 => "C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto
MSCONFIG\startupreg: GoogleChromeAutoLaunch_18A1594E0F7F3FF02E74E666D5F77580 => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
MSCONFIG\startupreg: HotKeysCmds => "C:\Windows\system32\hkcmd.exe"
MSCONFIG\startupreg: IgfxTray => "C:\Windows\system32\igfxtray.exe"
MSCONFIG\startupreg: ownCloud => C:\Program Files (x86)\ownCloud\owncloud.exe
MSCONFIG\startupreg: Persistence => "C:\Windows\system32\igfxpers.exe"
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: Zoner Photo Studio Autoupdate => "C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE"
HKU\S-1-5-21-415432937-2120113999-3847976345-1000\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [UDP Query User{635F93D4-3734-4752-84B0-57E267BEFA8A}D:\program files (x86)\whorecraft 2\episode1\binaries\win32\udk.exe] => (Allow) D:\program files (x86)\whorecraft 2\episode1\binaries\win32\udk.exe
FirewallRules: [TCP Query User{558C1BA0-F779-4177-9D67-D192F378906E}D:\program files (x86)\whorecraft 2\episode1\binaries\win32\udk.exe] => (Allow) D:\program files (x86)\whorecraft 2\episode1\binaries\win32\udk.exe
FirewallRules: [UDP Query User{6A02F6C0-CFED-4344-84D5-1462BA410D7B}C:\program files (x86)\freetime\formatfactory\formatfactory.exe] => (Allow) C:\program files (x86)\freetime\formatfactory\formatfactory.exe
FirewallRules: [TCP Query User{2E107790-0B0C-45AB-9CC9-C33BBD577584}C:\program files (x86)\freetime\formatfactory\formatfactory.exe] => (Allow) C:\program files (x86)\freetime\formatfactory\formatfactory.exe
FirewallRules: [{D4D16303-D3B6-4253-B1E6-21088D4B6109}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{A5B3C013-5576-4A1B-A32B-89BD990E9AC7}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{E3075443-6732-471D-B1E1-4FB6D9832F3D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{A12ADEA2-B9AF-494D-8CBD-B6037DF0D7BF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [UDP Query User{880AFB05-8063-455C-8F44-5AACAC6F5F57}C:\programdata\asustor\addon\nascentral.exe] => (Allow) C:\programdata\asustor\addon\nascentral.exe
FirewallRules: [TCP Query User{AD29CE65-22B9-4DE3-A7ED-693D18A7D1D2}C:\programdata\asustor\addon\nascentral.exe] => (Allow) C:\programdata\asustor\addon\nascentral.exe
FirewallRules: [UDP Query User{DE4A84D1-5491-4A2C-8F77-BF1DD93703BE}C:\programdata\asustor\addon\nascentral.exe] => (Allow) C:\programdata\asustor\addon\nascentral.exe
FirewallRules: [TCP Query User{ABEAB70D-0B17-45C0-B500-9236FDCB44FB}C:\programdata\asustor\addon\nascentral.exe] => (Allow) C:\programdata\asustor\addon\nascentral.exe
FirewallRules: [{CB449707-12EF-4319-AD6A-834B7F23DED6}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{CE93EF1B-49EE-4149-97DC-4A18B96FC058}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{10163E24-764A-4B1B-A3C6-8E1CABF31915}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{4503468B-4C85-4FB8-A10E-62B105AC12F5}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{4255CD57-9D4A-472D-8BF1-C0940CE7B8C7}] => (Allow) C:\Users\Roman\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{87183D3A-7883-48CA-8DA8-55E2575EDE0A}] => (Allow) C:\Users\Roman\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{78338AEB-1CF7-4835-973E-F061570AC9EE}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\10.0\math.exe
FirewallRules: [{4CAEF895-622F-4950-9273-A8B6F7373F63}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\10.0\math.exe
FirewallRules: [{DDD9BA31-8627-4FAC-A081-B6D22377EAE1}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\10.0\MathKernel.exe
FirewallRules: [{865EA338-2909-422B-99DE-C15E27FD99C8}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\10.0\MathKernel.exe
FirewallRules: [{3A5F0565-4754-449E-9ED9-76845A573439}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\10.0\Mathematica.exe
FirewallRules: [{5A95D5B2-5F25-4F47-B553-4092CC04FE33}] => (Allow) C:\Program Files\Wolfram Research\Mathematica\10.0\Mathematica.exe
FirewallRules: [{2FAF4841-B8BE-406E-885D-44A9AF069801}] => (Allow) C:\Program Files\Zoner\Photo Studio 17\Program32\MediaServer.exe
FirewallRules: [UDP Query User{4F5046DD-468A-4A81-8508-2515BC3C5DE0}C:\users\roman\downloads\microsoft office 2013 professional plus\microsoft toolkit 2.4.5.exe] => (Allow) C:\users\roman\downloads\microsoft office 2013 professional plus\microsoft toolkit 2.4.5.exe
FirewallRules: [TCP Query User{0EC828D8-DD36-44F2-AF0B-8D67A5AD711C}C:\users\roman\downloads\microsoft office 2013 professional plus\microsoft toolkit 2.4.5.exe] => (Allow) C:\users\roman\downloads\microsoft office 2013 professional plus\microsoft toolkit 2.4.5.exe
FirewallRules: [{E608FBAA-E995-48E7-8A9C-206FD15B15D8}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{B3203CB2-F647-41EF-B24D-9253E323965E}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{4822C734-DABE-4B60-B8C2-2B5116FE99F5}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{57EB383E-5B92-4866-AEF7-1A0A60247E0E}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{F91C8B7D-1794-4A62-AA96-8118AEBA8013}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{F39FEFA9-08E0-46BE-9E75-D0EE1A62D382}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{1AAC9E3F-D420-458E-9D80-089A5686C800}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{8C5C7DEB-4EB1-4DA5-B3C4-2CABD26149C9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{978C3A57-1684-456F-AF11-8CB4247860BB}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{AB9D16A7-6BFB-4DCB-A278-1BA2F78FB218}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [UDP Query User{A03D46C9-8D00-438C-B5E6-23B7431A9F44}C:\users\roman\downloads\kav15.0.1.415en.exe] => (Allow) C:\users\roman\downloads\kav15.0.1.415en.exe
FirewallRules: [TCP Query User{634C8BDF-AA41-4F5F-9471-AF8B174D7739}C:\users\roman\downloads\kav15.0.1.415en.exe] => (Allow) C:\users\roman\downloads\kav15.0.1.415en.exe
FirewallRules: [{AE2A00CB-1B28-49D1-AB29-B7D14B4C15D4}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (07/30/2015 08:31:33 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: Roman-PC)
Description: Balíček Microsoft.Windows.Photos_15.618.18170.0_x64__8wekyb3d8bbwe+App se ukončil, protože jeho pozastavování trvalo moc dlouho.

Error: (07/30/2015 08:31:33 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Microsoft.Photos.exe verze 15.618.18170.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: eec

Čas spuštění: 01d0caf486a3e723

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.618.18170.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe

ID hlášení: 31c4734f-36e9-11e5-9bc4-dc0ea10fb743

Úplný název balíčku s chybou: Microsoft.Windows.Photos_15.618.18170.0_x64__8wekyb3d8bbwe

ID aplikace související s balíčkem s chybou: App

Error: (07/30/2015 07:38:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Roman-PC)
Description: Aplikaci Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (07/30/2015 07:38:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: rundll32.exe_shell32.dll, verze: 10.0.10240.16384, časové razítko: 0x559f39d6
Název chybujícího modulu: SynTPCpl.dll, verze: 15.2.9.0, časové razítko: 0x4d2fc2a8
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000001fdb
ID chybujícího procesu: 0xf74
Čas spuštění chybující aplikace: 0xrundll32.exe_shell32.dll0
Cesta k chybující aplikaci: rundll32.exe_shell32.dll1
Cesta k chybujícímu modulu: rundll32.exe_shell32.dll2
ID zprávy: rundll32.exe_shell32.dll3
Úplný název chybujícího balíčku: rundll32.exe_shell32.dll4
ID aplikace související s chybujícím balíčkem: rundll32.exe_shell32.dll5

Error: (07/30/2015 06:59:34 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: Systém Windows nemůže získat přístup k souboru C:\Windows\System32\CX64AP46.dll z jednoho z těchto důvodů:
došlo k problému s připojením k síti, s diskem, na kterém je soubor uložen, nebo
s ovladači ukládání nainstalovanými v tomto počítači; nebo disk chybí.
Systém Windows kvůli této chybě ukončil program Windows Audio Device Graph Isolation.

Program: Windows Audio Device Graph Isolation
Soubor: C:\Windows\System32\CX64AP46.dll

Hodnota chyby je uvedena v části Další údaje.
Akce uživatele
1. Otevřete soubor znovu.
Může se jednat o dočasný problém, který se při novém spuštění programu nebude opakovat.
2.
Pokud k souboru stále nelze získat přístup a:
	- Nachází se v síti,
měl by správce sítě ověřit, zda nedošlo k problému se sítí a zda lze server kontaktovat.
	- Je na vyměnitelném disku (například disketě nebo disku CD-ROM), ověřte, zda je disk správně vložen do počítače.
3. Zkontrolujte a opravte systém souborů pomocí nástroje CHKDSK. Ten lze spustit tak, že kliknete na tlačítko Start a příkaz Spustit, zadáte příkaz CMD a kliknete na tlačítko OK. Do příkazového řádku zadejte příkaz CHKDSK /F a stiskněte klávesu ENTER.
4. Pokud potíže potrvají, obnovte soubor ze záložní kopie.
5. Zjistěte, zda lze otevřít jiné soubory na stejném disku. Pokud ne, může být disk poškozen. Jedná-li se o pevný disk, obraťte se na správce nebo na dodavatele počítačového hardwaru
se žádostí o pomoc.

Další údaje
Hodnota chyby: C0000428
Typ disku: 3

Error: (07/30/2015 06:59:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AUDIODG.EXE, verze: 10.0.10240.16384, časové razítko: 0x559f3a8d
Název chybujícího modulu: msvcrt.dll, verze: 7.0.10240.16384, časové razítko: 0x559f3b84
Kód výjimky: 0xc0000006
Posun chyby: 0x0000000000073dea
ID chybujícího procesu: 0xc28
Čas spuštění chybující aplikace: 0xAUDIODG.EXE0
Cesta k chybující aplikaci: AUDIODG.EXE1
Cesta k chybujícímu modulu: AUDIODG.EXE2
ID zprávy: AUDIODG.EXE3
Úplný název chybujícího balíčku: AUDIODG.EXE4
ID aplikace související s chybujícím balíčkem: AUDIODG.EXE5

Error: (07/30/2015 06:59:33 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: Systém Windows nemůže získat přístup k souboru C:\Windows\System32\CX64AP46.dll z jednoho z těchto důvodů:
došlo k problému s připojením k síti, s diskem, na kterém je soubor uložen, nebo
s ovladači ukládání nainstalovanými v tomto počítači; nebo disk chybí.
Systém Windows kvůli této chybě ukončil program Windows Audio Device Graph Isolation.

Program: Windows Audio Device Graph Isolation
Soubor: C:\Windows\System32\CX64AP46.dll

Hodnota chyby je uvedena v části Další údaje.
Akce uživatele
1. Otevřete soubor znovu.
Může se jednat o dočasný problém, který se při novém spuštění programu nebude opakovat.
2.
Pokud k souboru stále nelze získat přístup a:
	- Nachází se v síti,
měl by správce sítě ověřit, zda nedošlo k problému se sítí a zda lze server kontaktovat.
	- Je na vyměnitelném disku (například disketě nebo disku CD-ROM), ověřte, zda je disk správně vložen do počítače.
3. Zkontrolujte a opravte systém souborů pomocí nástroje CHKDSK. Ten lze spustit tak, že kliknete na tlačítko Start a příkaz Spustit, zadáte příkaz CMD a kliknete na tlačítko OK. Do příkazového řádku zadejte příkaz CHKDSK /F a stiskněte klávesu ENTER.
4. Pokud potíže potrvají, obnovte soubor ze záložní kopie.
5. Zjistěte, zda lze otevřít jiné soubory na stejném disku. Pokud ne, může být disk poškozen. Jedná-li se o pevný disk, obraťte se na správce nebo na dodavatele počítačového hardwaru
se žádostí o pomoc.

Další údaje
Hodnota chyby: C0000428
Typ disku: 3

Error: (07/30/2015 06:59:33 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AUDIODG.EXE, verze: 10.0.10240.16384, časové razítko: 0x559f3a8d
Název chybujícího modulu: msvcrt.dll, verze: 7.0.10240.16384, časové razítko: 0x559f3b84
Kód výjimky: 0xc0000006
Posun chyby: 0x0000000000073dea
ID chybujícího procesu: 0x7c8
Čas spuštění chybující aplikace: 0xAUDIODG.EXE0
Cesta k chybující aplikaci: AUDIODG.EXE1
Cesta k chybujícímu modulu: AUDIODG.EXE2
ID zprávy: AUDIODG.EXE3
Úplný název chybujícího balíčku: AUDIODG.EXE4
ID aplikace související s chybujícím balíčkem: AUDIODG.EXE5

Error: (07/30/2015 06:57:05 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: Systém Windows nemůže získat přístup k souboru C:\Windows\System32\CX64AP46.dll z jednoho z těchto důvodů:
došlo k problému s připojením k síti, s diskem, na kterém je soubor uložen, nebo
s ovladači ukládání nainstalovanými v tomto počítači; nebo disk chybí.
Systém Windows kvůli této chybě ukončil program Windows Audio Device Graph Isolation.

Program: Windows Audio Device Graph Isolation
Soubor: C:\Windows\System32\CX64AP46.dll

Hodnota chyby je uvedena v části Další údaje.
Akce uživatele
1. Otevřete soubor znovu.
Může se jednat o dočasný problém, který se při novém spuštění programu nebude opakovat.
2.
Pokud k souboru stále nelze získat přístup a:
	- Nachází se v síti,
měl by správce sítě ověřit, zda nedošlo k problému se sítí a zda lze server kontaktovat.
	- Je na vyměnitelném disku (například disketě nebo disku CD-ROM), ověřte, zda je disk správně vložen do počítače.
3. Zkontrolujte a opravte systém souborů pomocí nástroje CHKDSK. Ten lze spustit tak, že kliknete na tlačítko Start a příkaz Spustit, zadáte příkaz CMD a kliknete na tlačítko OK. Do příkazového řádku zadejte příkaz CHKDSK /F a stiskněte klávesu ENTER.
4. Pokud potíže potrvají, obnovte soubor ze záložní kopie.
5. Zjistěte, zda lze otevřít jiné soubory na stejném disku. Pokud ne, může být disk poškozen. Jedná-li se o pevný disk, obraťte se na správce nebo na dodavatele počítačového hardwaru
se žádostí o pomoc.

Další údaje
Hodnota chyby: C0000428
Typ disku: 3

Error: (07/30/2015 06:57:05 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AUDIODG.EXE, verze: 10.0.10240.16384, časové razítko: 0x559f3a8d
Název chybujícího modulu: msvcrt.dll, verze: 7.0.10240.16384, časové razítko: 0x559f3b84
Kód výjimky: 0xc0000006
Posun chyby: 0x0000000000073dea
ID chybujícího procesu: 0x64c
Čas spuštění chybující aplikace: 0xAUDIODG.EXE0
Cesta k chybující aplikaci: AUDIODG.EXE1
Cesta k chybujícímu modulu: AUDIODG.EXE2
ID zprávy: AUDIODG.EXE3
Úplný název chybujícího balíčku: AUDIODG.EXE4
ID aplikace související s chybujícím balíčkem: AUDIODG.EXE5


System errors:
=============
Error: (07/30/2015 07:38:30 PM) (Source: DCOM) (EventID: 10010) (User: Roman-PC)
Description: CortanaUI.AppXd4tad4d57t4wtdbnnmb8v2xtzym8c1n8.mca

Error: (07/30/2015 07:38:28 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_Session1 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (07/30/2015 07:06:20 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {B91D5831-B1BD-4608-8198-D72E155020F7}

Error: (07/30/2015 07:03:56 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Adaptér naslouchání Net.Msmq neuspěla při spuštění v důsledku následující chyby: 
%%1053

Error: (07/30/2015 07:03:56 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Adaptér naslouchání Net.Msmq bylo dosaženo časového limitu (30000 ms).

Error: (07/30/2015 07:03:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Adaptér naslouchání Net.Pipe neuspěla při spuštění v důsledku následující chyby: 
%%1053

Error: (07/30/2015 07:03:52 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Adaptér naslouchání Net.Pipe bylo dosaženo časového limitu (30000 ms).

Error: (07/30/2015 07:03:27 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Windows Phone IP over USB Transport (IpOverUsbSvc) bylo dosaženo časového limitu (30000 ms).

Error: (07/30/2015 07:02:59 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Adaptér naslouchání Net.Tcp závisí na službě Služba sdílení portů Net.Tcp, která neuspěla při spuštění v důsledku následující chyby: 
%%1058

Error: (07/30/2015 07:02:56 PM) (Source: NETLOGON) (EventID: 3095) (User: )
Description: Tento počítač je nakonfigurován jako člen pracovní skupiny, nikoliv jako
člen domény. Přihlašovací služba Netlogon nepotřebuje být spuštěna v této
konfiguraci.


Microsoft Office:
=========================
Error: (07/30/2015 08:31:33 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: Roman-PC)
Description: Microsoft.Windows.Photos_15.618.18170.0_x64__8wekyb3d8bbwe+App

Error: (07/30/2015 08:31:33 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Microsoft.Photos.exe15.618.18170.0eec01d0caf486a3e7234294967295C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.618.18170.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe31c4734f-36e9-11e5-9bc4-dc0ea10fb743Microsoft.Windows.Photos_15.618.18170.0_x64__8wekyb3d8bbweApp

Error: (07/30/2015 07:38:30 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Roman-PC)
Description: Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI-2144927141

Error: (07/30/2015 07:38:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: rundll32.exe_shell32.dll10.0.10240.16384559f39d6SynTPCpl.dll15.2.9.04d2fc2a8c00000050000000000001fdbf7401d0caee6fdf7f5cC:\WINDOWS\System32\rundll32.exeC:\Program Files\Synaptics\SynTP\SynTPCpl.dll32d85cf6-1f5d-445c-b695-3fdd8f494339

Error: (07/30/2015 06:59:34 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: C:\Windows\System32\CX64AP46.dllWindows Audio Device Graph IsolationC00004283

Error: (07/30/2015 06:59:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: AUDIODG.EXE10.0.10240.16384559f3a8dmsvcrt.dll7.0.10240.16384559f3b84c00000060000000000073deac2801d0cae91c083eb7C:\WINDOWS\system32\AUDIODG.EXEC:\WINDOWS\system32\msvcrt.dll0ab7f47d-ee4a-43cd-a953-02449ce95b75

Error: (07/30/2015 06:59:33 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: C:\Windows\System32\CX64AP46.dllWindows Audio Device Graph IsolationC00004283

Error: (07/30/2015 06:59:33 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: AUDIODG.EXE10.0.10240.16384559f3a8dmsvcrt.dll7.0.10240.16384559f3b84c00000060000000000073dea7c801d0cae91baba878C:\WINDOWS\system32\AUDIODG.EXEC:\WINDOWS\system32\msvcrt.dll05fa3e3e-d152-423d-ac24-a7e597269fea

Error: (07/30/2015 06:57:05 PM) (Source: Application Error) (EventID: 1005) (User: )
Description: C:\Windows\System32\CX64AP46.dllWindows Audio Device Graph IsolationC00004283

Error: (07/30/2015 06:57:05 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: AUDIODG.EXE10.0.10240.16384559f3a8dmsvcrt.dll7.0.10240.16384559f3b84c00000060000000000073dea64c01d0cae8c34211feC:\WINDOWS\system32\AUDIODG.EXEC:\WINDOWS\system32\msvcrt.dll8ee69eda-769d-4909-b39b-5b96b27d70c1


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-2430M CPU @ 2.40GHz
Percentage of memory in use: 60%
Total physical RAM: 3947.86 MB
Available physical RAM: 1563.95 MB
Total Virtual: 7915.86 MB
Available Virtual: 5275.94 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:389.75 GB) (Free:288.19 GB) NTFS
Drive d: () (Fixed) (Total:540.89 GB) (Free:384 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 314E203F)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=389.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=798 MB) - (Type=27)
Partition 4: (Not Active) - (Size=540.9 GB) - (Type=07 NTFS)

==================== End of log ============================