﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Ran by martin (2016-04-10 15:40:57)
Running from C:\Users\martin\Desktop
Windows 7 Professional Service Pack 1 (X64) (2015-11-05 22:56:42)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3857747641-366067632-2098841333-500 - Administrator - Disabled)
Guest (S-1-5-21-3857747641-366067632-2098841333-501 - Limited - Disabled)
martin (S-1-5-21-3857747641-366067632-2098841333-1000 - Administrator - Enabled) => C:\Users\martin

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A}
AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{A7B8A5E9-CA44-44A0-9393-9EA0FFE4C3FB}) (Version: 1.6.17.25401 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (x32 Version: 1.6.17.25401 - Alcor Micro Corp.) Hidden
AMD Catalyst Install Manager (HKLM\...\{7E5DC2C5-115A-322B-976C-219237FAED66}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.70.1080 - AB Team, d.o.o.)
CCProxy 8.0 (HKLM\...\CCProxy_is1) (Version:  - Youngzsoft, Inc.)
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version:  - Valve)
ELAN Touchpad 15.9.5.3_X64_WHQL (HKLM\...\Elantech) (Version: 15.9.5.3 - ELAN Microelectronic Corp.)
FileBot (HKLM\...\{CA3D594A-9D1D-4505-B697-0EB5E6AFDF1F}) (Version: 4.6.1 - Reinhard Pointner)
FileZilla Server (HKLM-x32\...\FileZilla Server) (Version: beta 0.9.54 - FileZilla Project)
Google Cloud Print Service (HKLM-x32\...\{86206CC6-CD3C-427D-9A34-77B34819CDD3}) (Version: 28.0.1493.2 - Google Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.110 - Google Inc.)
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
Growl for Windows (HKLM-x32\...\{2C911352-0BCE-420B-935E-93A24FDE9D53}) (Version: 2.0.9001 - Growl)
iSpy (64 bit) (HKLM\...\{97E659F8-BA8A-45B6-9A4E-1311F0B5BA62}) (Version: 6.4.2.0 - DeveloperInABox)
Java 8 Update 77 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218077F0}) (Version: 8.0.770.3 - Oracle Corporation)
Link Shell Extension (HKLM\...\HardlinkShellExt) (Version: 3.8.6.3 - Hermann Schinagl)
Macrium Reflect Free Edition (HKLM\...\MacriumReflect) (Version: 6.1 - Paramount Software (UK) Ltd.)
Macrium Reflect Free Edition (Version: 6.1.1023 - Paramount Software (UK) Ltd.) Hidden
Malwarebytes Anti-Malware verze 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
MediaInfo 0.7.79 (HKLM\...\MediaInfo) (Version: 0.7.79 - MediaArea.net)
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft Office 365 ProPlus - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 15.0.4805.1003 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{a55ac379-46b0-461a-95b1-fef5c08443f2}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation)
Mozilla Firefox 42.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 42.0 (x86 cs)) (Version: 42.0 - Mozilla)
Mozilla Firefox 45.0.1 (x86 cs) (HKU\S-1-5-21-3857747641-366067632-2098841333-1000\...\Mozilla Firefox 45.0.1 (x86 cs)) (Version: 45.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 42.0 - Mozilla)
NEC Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B}) (Version: 1.0.18.0 - NEC Electronics Corporation)
NEC Electronics USB 3.0 Host Controller Driver (x32 Version: 1.0.18.0 - NEC Electronics Corporation) Hidden
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.6 - Notepad++ Team)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4805.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4805.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4805.1003 - Microsoft Corporation) Hidden
PerformanceTest v8.0 (HKLM\...\PerformanceTest 8_is1) (Version: 8.0.1029.0 - Passmark Software)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Plex Home Theater (HKLM-x32\...\Plex Home Theater) (Version: 1.4.1 - Plex inc)
Plex Media Server (HKLM-x32\...\{0ea202e3-5f78-4471-b853-d8164a911147}) (Version: 0.9.1604 - Plex, Inc.)
Plex Media Server (x32 Version: 0.9.1604 - Plex, Inc.) Hidden
Python 2.7.10 (HKLM-x32\...\{E2B51919-207A-43EB-AE78-733F9C6797C2}) (Version: 2.7.10150 - Python Software Foundation)
Python 3.5.0 (32-bit) (HKU\S-1-5-21-3857747641-366067632-2098841333-1000\...\{1197d2bb-6cf8-488a-b994-d5bf6d7efe7b}) (Version: 3.5.150.0 - Python Software Foundation)
Python 3.5.0 Add to Path (32-bit) (x32 Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Core Interpreter (32-bit) (x32 Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Development Libraries (32-bit) (x32 Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Documentation (32-bit) (x32 Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Executables (32-bit) (x32 Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Launcher (32-bit) (x32 Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 pip Bootstrap (32-bit) (x32 Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Standard Library (32-bit) (x32 Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Tcl/Tk Support (32-bit) (x32 Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Test Suite (32-bit) (x32 Version: 3.5.150.0 - Python Software Foundation) Hidden
Python 3.5.0 Utility Scripts (32-bit) (x32 Version: 3.5.150.0 - Python Software Foundation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6037 - Realtek Semiconductor Corp.)
Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{17528CE4-C333-48FB-A9E4-D841E795CDCE}) (Version: 3.0.23.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 3.0.23.0 - Renesas Electronics Corporation) Hidden
ServerWMC (HKLM-x32\...\{AB894C0C-F503-4269-BEB3-69D4BE79D4B9}) (Version: 1.0.1225.0 - VDSoftware)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version:  - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.56083 - TeamViewer)
TitulkyCom verze 1.003 (HKLM-x32\...\{19ECB379-937F-4778-9B72-7522B66660AB}_is1) (Version: 1.003 - Martevax s.r.o.)
TortoiseSVN 1.9.2.26806 (64 bit) (HKLM\...\{8A5AA5D6-F797-4ED3-AE08-35EF5433409E}) (Version: 1.9.26806 - TortoiseSVN)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.52a - Ghisler Software GmbH)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
VSFilter 2.41.35 (d08a416) Nightly (64-bit) (HKLM\...\vsfilter64_is1) (Version: 2.41.35 - MPC-HC Team)
WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.)
WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
Wireshark 1.12.7 (32-bit) (HKLM-x32\...\Wireshark) (Version: 1.12.7 - The Wireshark developer community, hxxp://www.wireshark.org)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0F91995C-C996-4B71-B65D-713FCA0505C9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-06] (Google Inc.)
Task: {1CDAB2A3-8FA3-4C28-80A1-D16B98ABC038} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2016-03-12] (Microsoft Corporation)
Task: {1CF8F8BA-755E-475C-A0DE-E8826FA66E1B} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2016-03-12] (Microsoft Corporation)
Task: {25385448-9AA6-4EC5-9AC9-97422FC5898E} - System32\Tasks\Macrium-Backup-{17E47608-4CBD-4BA8-B438-6D8C185F1C53} => C:\Programy\Macrium Reflect\Reflect.exe [2016-03-29] (Paramount Software UK Ltd)
Task: {477434B1-3EFD-4766-B6F6-B0EC4E17CE27} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2016-03-12] (Microsoft Corporation)
Task: {488DBE05-3CAF-427C-B408-892B5000C724} - System32\Tasks\{665B56A1-7CA3-4BCF-B6C5-29394DFF55AE} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.exe
Task: {73B37FD8-4E78-4C2C-9312-A3EC6BED3672} - System32\Tasks\Macrium-Backup-{63B3FBB9-5C1D-42AB-AF0D-952944ACE590} => C:\Programy\Macrium Reflect\Reflect.exe [2016-03-29] (Paramount Software UK Ltd)
Task: {827443C1-29E2-457D-A836-15AFBF820604} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-02-09] (Microsoft Corporation)
Task: {8F7D0FBB-A004-4F36-A9D4-28B0EAC1AB8C} - System32\Tasks\CrystalDiskInfo => C:\Users\martin\Desktop\instalacky\nástroje\CrystalDiskInfo\DiskInfoX64.exe [2015-06-14] (Crystal Dew World)
Task: {DD2F1BE7-5F03-423C-B990-35AB74BE3568} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-06] (Google Inc.)
Task: {F7CF9E51-6E3E-41D9-9B7F-7E3B10EC9231} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-02-09] (Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Macrium-Backup-{17E47608-4CBD-4BA8-B438-6D8C185F1C53}.job => C:\Programy\Macrium Reflect\Reflect.exeh-e -w C:\Users\martin\Documents\Reflect\My Backup.xml
Task: C:\Windows\Tasks\Macrium-Backup-{63B3FBB9-5C1D-42AB-AF0D-952944ACE590}.job => C:\Programy\Macrium Reflect\Reflect.exeh-e -w C:\Users\martin\Documents\Reflect\My Backup.xml

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PlexPyStart.lnk -> C:\Programy\PlexPy\PlexPyStart.bat ()

==================== Loaded Modules (Whitelisted) ==============

2016-03-12 12:20 - 2015-10-13 05:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2015-09-22 21:32 - 2015-09-22 21:32 - 00093568 _____ () C:\Programy\TortoiseSVN\bin\libsasl.dll
2004-09-30 20:15 - 2004-09-30 20:15 - 00192000 _____ () C:\Program Files\LinkShellExtension\RockallDLL.dll
2015-04-15 22:13 - 2015-04-15 22:13 - 00222720 _____ () C:\Programy\Notepad++\NppShell_06.dll
2015-09-22 20:52 - 2015-09-22 20:52 - 00073088 _____ () C:\Programy\TortoiseSVN\bin\libsasl32.dll
2004-09-30 19:09 - 2004-09-30 19:09 - 00155648 _____ () C:\Program Files\LinkShellExtension\32\RockallDLL.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\martin\Desktop\instalacky:com.dropbox.attributes [168]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3857747641-366067632-2098841333-1000\...\sharepoint.com -> hxxps://vse-files.sharepoint.com

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3857747641-366067632-2098841333-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\martin\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.2.3
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: FileZilla Server Interface => "C:\Programy\FileZilla Server\FileZilla Server Interface.exe"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [TCP Query User{6096B6AB-736A-4C42-AB90-27D51F48BFE5}C:\programy\ispy\ispy.exe] => (Allow) C:\programy\ispy\ispy.exe
FirewallRules: [UDP Query User{30DD5B33-759B-48F1-8B90-F08E8B35F53A}C:\programy\ispy\ispy.exe] => (Allow) C:\programy\ispy\ispy.exe
FirewallRules: [TCP Query User{7F03DE1C-F1E8-4BC4-B581-D5A9F77ACA20}C:\programy\ispy\ispy.exe] => (Allow) C:\programy\ispy\ispy.exe
FirewallRules: [UDP Query User{A49FCE41-F884-4ECB-9E17-93B02E848049}C:\programy\ispy\ispy.exe] => (Allow) C:\programy\ispy\ispy.exe
FirewallRules: [{7B80EFE6-8109-4901-8C8A-43689B534146}] => (Allow) C:\Programy\Firefox\firefox.exe
FirewallRules: [{BD058C0D-9420-41AC-934C-0858FA82324E}] => (Allow) C:\Programy\Firefox\firefox.exe
FirewallRules: [TCP Query User{C62FA5BA-9268-4E77-B38F-E428FAADFC8A}C:\programy\hfs - http file server\hfs.exe] => (Allow) C:\programy\hfs - http file server\hfs.exe
FirewallRules: [UDP Query User{71BCF03F-52B0-47F4-B3A3-DF85136DFD75}C:\programy\hfs - http file server\hfs.exe] => (Allow) C:\programy\hfs - http file server\hfs.exe
FirewallRules: [{AF466054-9DF5-4110-B6FF-E2CD2EA10F26}] => (Allow) C:\Hry\Steam\Steam.exe
FirewallRules: [{59E2E99E-FA6E-4201-88CC-ED24DA8E83C9}] => (Allow) C:\Hry\Steam\Steam.exe
FirewallRules: [{C5AFCA4E-5129-4FC8-A74F-D1DFC4487438}] => (Allow) C:\Hry\Steam\bin\steamwebhelper.exe
FirewallRules: [{4A9EDF96-B07C-4A70-A94B-713ECA7F540A}] => (Allow) C:\Hry\Steam\bin\steamwebhelper.exe
FirewallRules: [{4174205B-9FCE-44ED-BF1E-B93DCB766706}] => (Allow) F:\DATA\Hry\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{624B152E-F49E-4885-9563-D5A918C58AE7}] => (Allow) F:\DATA\Hry\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [TCP Query User{08CC16A6-1031-44EC-8901-1FE7585BCA30}C:\programy\growl\growl.exe] => (Allow) C:\programy\growl\growl.exe
FirewallRules: [UDP Query User{BC8DD014-9DA2-43BB-9973-D130992DB686}C:\programy\growl\growl.exe] => (Allow) C:\programy\growl\growl.exe
FirewallRules: [TCP Query User{FFA49A0D-E92A-4AFE-A8C5-9184458E26FF}C:\programy\python_2.7.10\python.exe] => (Allow) C:\programy\python_2.7.10\python.exe
FirewallRules: [UDP Query User{876399A0-0BCB-427F-A55A-DA086A6A4325}C:\programy\python_2.7.10\python.exe] => (Allow) C:\programy\python_2.7.10\python.exe
FirewallRules: [TCP Query User{24DE0A6B-E875-426F-B74C-BD6FD9AE4F60}C:\programy\ccproxy\ccproxy.exe] => (Allow) C:\programy\ccproxy\ccproxy.exe
FirewallRules: [UDP Query User{AE4270B8-2B99-4928-BF43-5A864304409A}C:\programy\ccproxy\ccproxy.exe] => (Allow) C:\programy\ccproxy\ccproxy.exe
FirewallRules: [TCP Query User{DA3497E3-F598-43E2-910B-5D1F1109644F}C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [UDP Query User{57796004-5157-41F6-8F32-D9E9629F05AD}C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [TCP Query User{9DFC0095-6AC2-4504-BD24-8D06A7909B31}C:\program files (x86)\serverwmc\serverwmc.exe] => (Allow) C:\program files (x86)\serverwmc\serverwmc.exe
FirewallRules: [UDP Query User{96A0804E-008C-436A-81DB-4DCA8F28805D}C:\program files (x86)\serverwmc\serverwmc.exe] => (Allow) C:\program files (x86)\serverwmc\serverwmc.exe
FirewallRules: [{A3268359-7B67-442E-A355-571C9D60F15C}] => (Allow) LPort=9180
FirewallRules: [TCP Query User{EE97AA54-2E0B-4D7E-9D72-465305705734}C:\programy\plex home theater\plex home theater.exe] => (Allow) C:\programy\plex home theater\plex home theater.exe
FirewallRules: [UDP Query User{5306A092-6E7D-4F85-AEC5-7473637A6180}C:\programy\plex home theater\plex home theater.exe] => (Allow) C:\programy\plex home theater\plex home theater.exe
FirewallRules: [{5594736D-754C-463F-AAA7-FCC84694D7A5}] => (Allow) C:\Programy\TeamViewer\TeamViewer.exe
FirewallRules: [{541AA507-DA87-4AFC-A133-2C921E08ED0F}] => (Allow) C:\Programy\TeamViewer\TeamViewer.exe
FirewallRules: [{D66A5AFE-014E-47A3-B556-E0B01530ABF7}] => (Allow) C:\Programy\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{EDBC748D-B116-4771-AF01-55993B1B625B}] => (Allow) C:\Programy\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{AE7243F2-0B1A-4192-9E2C-F295773FA85D}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [{D09290C7-4612-4DCD-8ABD-D3375BB2A630}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{1E7675A2-1F39-459E-9A16-F3565CB9CA20}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{DBC30740-8005-4DF8-9F06-A18B461DA232}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{ECB66646-6C81-4617-A92A-520E47CEFECC}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [TCP Query User{A1EAB4EC-537E-445F-BB1B-C1A05E13915D}C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe
FirewallRules: [UDP Query User{58C99C7A-A34B-4DA0-B40F-8FE602E8452C}C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_73\bin\javaw.exe
FirewallRules: [TCP Query User{DC192B58-0676-4F40-ADF5-FBE6F19ADC05}C:\users\public\media\teamviewer.exe] => (Allow) C:\users\public\media\teamviewer.exe
FirewallRules: [UDP Query User{FA678BCE-BD9A-4E97-B92D-30F4EF2AA355}C:\users\public\media\teamviewer.exe] => (Allow) C:\users\public\media\teamviewer.exe
FirewallRules: [{8C2199E2-AA1C-4319-9903-44D8B89D2D4E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{9EAF3726-7F8B-4C86-9E62-0D122F16D710}] => (Allow) C:\Programy\PlexServer\Plex Media Server.exe
FirewallRules: [{F8EB7248-93D7-4D56-9265-382D2437BD72}] => (Allow) C:\Programy\PlexServer\PlexScriptHost.exe
FirewallRules: [{C5061437-9843-48B8-8F94-7DBCDE071DD9}] => (Allow) C:\Programy\PlexServer\PlexDlnaServer.exe

==================== Restore Points =========================

03-04-2016 06:45:36 Naplánovaný kontrolní bod
07-04-2016 19:42:04 Plex Media Server
07-04-2016 19:46:35 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506
10-04-2016 10:22:33 Windows Update
10-04-2016 11:29:44 Windows Update

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (04/10/2016 11:49:10 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (04/10/2016 11:13:36 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (04/10/2016 11:10:22 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (04/10/2016 09:21:07 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (04/10/2016 09:08:34 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: FileZilla Server.exe, verze: 0.9.54.0, časové razítko: 0x565c20e8
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000
ID chybujícího procesu: 0x714
Čas spuštění chybující aplikace: 0xFileZilla Server.exe0
Cesta k chybující aplikaci: FileZilla Server.exe1
Cesta k chybujícímu modulu: FileZilla Server.exe2
ID zprávy: FileZilla Server.exe3

Error: (03/17/2016 09:01:00 PM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: Sledování výkonu objektu indexování nebylo inicializováno, protože nejsou načteny čítače nebo nebyl otevřen sdílený objekt paměti. Tato skutečnost má vliv pouze na dostupnost čítačů výkonu. Restartujte počítač.

Kontext: aplikace , katalog SystemIndex

Error: (03/15/2016 10:31:28 PM) (Source: Winlogon) (EventID: 4005) (User: )
Description: Proces přihlášení do systému Windows byl neočekávaně ukončen.

Error: (03/12/2016 12:59:27 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - Failed to compile PresentationCFFRasterizer, Version=3.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil because of the following error: Systém nemůže nalézt uvedený soubor. (Exception from HRESULT: 0x80070002).

Error: (03/12/2016 12:40:55 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Generování kontextu aktivace pro UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"1 se nezdařilo. Chyba v souboru manifestu nebo zásady UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"2 na řádku UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"3.
Identita komponenty nalezená v manifestu nesouhlasí s identitou požadované komponenty.
Odkaz je UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0".
Definice je UccApi,processorArchitecture="x86",type="win32",version="15.0.0.0".
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (03/12/2016 12:40:55 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Generování kontextu aktivace pro UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"1 se nezdařilo. Chyba v souboru manifestu nebo zásady UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"2 na řádku UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0"3.
Identita komponenty nalezená v manifestu nesouhlasí s identitou požadované komponenty.
Odkaz je UccApi,processorArchitecture="AMD64",type="win32",version="15.0.0.0".
Definice je UccApi,processorArchitecture="x86",type="win32",version="15.0.0.0".
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.


System errors:
=============
Error: (04/10/2016 11:07:36 AM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Služba Instalační služba modulů systému Windows se po přijetí pokynu pro vypnutí neukončila správně.

Error: (04/10/2016 09:18:07 AM) (Source: Disk) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \...\DR2.

Error: (04/10/2016 09:16:14 AM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správce služeb se pokusil o opravnou akci (Restartovat službu) po nečekaném ukončení služby Windows Search, ale tato akce selhala kvůli následující chybě: 
%%1056

Error: (04/10/2016 09:15:44 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Microsoft Office ClickToRun byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (04/10/2016 09:15:44 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (04/10/2016 09:15:42 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Instalační služba modulů systému Windows byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.

Error: (04/10/2016 09:15:42 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba přijímače aplikace Windows Media Center byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (04/10/2016 09:15:36 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Macrium Reflect Image Mounting Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (04/10/2016 09:15:36 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Elan Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (04/10/2016 09:15:36 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Google Cloud Print Service byla neočekávaně ukončena. Tento stav nastal již 1krát.


CodeIntegrity:
===================================
  Date: 2016-03-15 19:10:40.496
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-15 19:01:19.468
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-15 18:18:55.290
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

  Date: 2015-12-29 21:23:07.541
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

  Date: 2015-12-29 21:02:28.932
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

  Date: 2015-12-13 02:08:10.486
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

  Date: 2015-12-11 18:26:39.344
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

  Date: 2015-12-11 16:30:20.717
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

  Date: 2015-12-11 00:10:17.885
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.

  Date: 2015-12-11 00:06:28.017
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\l3codeca.acm because the set of per-page image hashes could not be found on the system.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i7 CPU Q 720 @ 1.60GHz
Percentage of memory in use: 65%
Total physical RAM: 4020.53 MB
Available physical RAM: 1367.41 MB
Total Virtual: 8039.26 MB
Available Virtual: 5452.88 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:596.07 GB) (Free:528.15 GB) NTFS
Drive f: (1TB2) (Fixed) (Total:1863.01 GB) (Free:676.4 GB) NTFS
Drive g: (2TB2) (Fixed) (Total:1863.01 GB) (Free:416.49 GB) NTFS
Drive h: (3TB4) (Fixed) (Total:3725.9 GB) (Free:1148.35 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596.2 GB) (Disk ID: 76692CA8)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=596.1 GB) - (Type=07 NTFS)
Attempted reading MBR returned 0 bytes.
 Could not read MBR for disk 1.

========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 4C95494B)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

========================================================
Disk: 3 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 7FAD049E)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================