Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-11-2016
Ran by Roman (29-11-2016 22:28:53)
Running from C:\Users\Roman\Desktop
Windows 10 Pro Version 1511 (X64) (2016-05-03 06:55:59)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1285628505-2949731663-139041242-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1285628505-2949731663-139041242-503 - Limited - Disabled)
Guest (S-1-5-21-1285628505-2949731663-139041242-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1285628505-2949731663-139041242-1002 - Limited - Enabled)
Roman (S-1-5-21-1285628505-2949731663-139041242-1001 - Administrator - Enabled) => C:\Users\Roman

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

ABBYY FineReader 11 Corporate Edition (HKLM-x32\...\{F11000CE-0010-0000-0000-074957833700}) (Version: 11.11.194 - ABBYY Production LLC)
ACDSee 5.0 PowerPack (HKLM-x32\...\{5058B085-AA79-41E5-A726-681B4C4B846E}) (Version: 5.0.0 - ACD Systems Ltd)
Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.162 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.1.171 - Adobe Systems, Inc.)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version:  - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version:  - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version:  - Microsoft)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Catalyst Install Manager (HKLM\...\{F37078EA-4B6A-1D6F-6FED-3EDF2117B42C}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Artisteer 4 (HKLM-x32\...\Artisteer 4) (Version: 4.3 - Extensoft)
CCleaner (HKLM\...\CCleaner) (Version: 5.10 - Piriform)
Common Desktop Agent (Version: 1.62.0 - OEM) Hidden
Document Capture Pro (HKLM-x32\...\{B4A3C072-87AF-4937-880D-3D7997111C0D}) (Version: 1.01.0000 - Seiko Epson Corporation)
Emergency 2017 (HKLM-x32\...\Emergency 2017_is1) (Version:  - )
Epson Event Manager (HKLM-x32\...\{148C8BF9-E1B4-445D-AC67-2CABAE63949A}) (Version: 3.01.0009 - Seiko Epson Corporation)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
Epson Uživatelská příručka EPSON Perfection V370 Photo (HKLM-x32\...\EPSON Perfection V370 Photo Useg) (Version:  - )
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
Foxit PhantomPDF Business (HKLM-x32\...\{05594894-9B62-4D66-BC12-4DA14CA22F28}) (Version: 7.3.6.321 - Foxit Software Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.)
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
Grand Theft Auto V (HKLM-x32\...\R3JhbmRUaGVmdEF1dG9W_is1) (Version: 1 - )
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 5.4.0.125 - IObit)
Iomega Home Storage Manager (HKLM-x32\...\{C08E4323-261D-4B2F-8F24-CDB26E2AA081}) (Version: 2.0.1.6 - Iomega Corporation an EMC Company)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Mozilla Thunderbird 45.5.0 (x86 cs) (HKLM-x32\...\Mozilla Thunderbird 45.5.0 (x86 cs)) (Version: 45.5.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Namo WebEditor 2006 (HKLM-x32\...\{980A3C34-1652-472D-84AC-2A4D3D4955BF}) (Version: 7.00.000 - Sejoong Namo Interactive, Inc.)
Nero 7 Ultra Edition (HKLM-x32\...\{91C0B95B-B83A-4828-A775-BBE2DD421029}) (Version: 7.02.9752 - Nero AG)
PowerISO (HKLM-x32\...\PowerISO) (Version: 6.2 - Power Software Ltd)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games)
Sada Windows Automated Installation Kit (HKLM\...\{31E8F586-4EF7-4500-844D-BA8756474FF1}) (Version: 2.0.0.0 - Microsoft Corporation)
Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Version: 1.03.60.00(23.7.2013) - Samsung Electronics Co., Ltd.)
Samsung Easy Wireless Setup (HKLM-x32\...\Easy Wireless Setup) (Version: 3.60.40.3 - Samsung Electronics Co., Ltd.)
Samsung M2020 Series (HKLM-x32\...\Samsung M2020 Series) (Version: 1.07 (7.12.2013) - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.52a - Ghisler Software GmbH)
Train Simulator 2016 (HKLM-x32\...\Train Simulator 2016_is1) (Version:  - )
Unity Web Player (HKU\S-1-5-21-1285628505-2949731663-139041242-1001\...\UnityWebPlayer) (Version: 5.1.3f1 - Unity Technologies ApS)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.0 - VideoLAN)
Zobrazit uživatelskou příručku (HKLM-x32\...\View User Guide) (Version: 3.60.43.0 - )

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1285628505-2949731663-139041242-1001_Classes\CLSID\{F0D5B8DF-FA50-4AC1-B644-6DD3DABA2DC0}\InprocServer32 -> 42494E41525953545245414D0300000003000000CCD7C22A4CA997C2E2E8F05F8743233F7895693FCC0BFDA02E6C8C1E754A (the data entry has 11 more characters).

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {004C6372-D6FB-4287-B214-D7197B007143} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {02AAF38F-28C2-49A6-92A6-35B99CF21D15} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {0D7BC5EF-4831-4FAB-8BF1-7E5C26BEF35D} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => C:\Program Files\Microsoft Security Client\MpCmdRun.exe
Task: {13383BB9-FE2B-444C-8F2F-E2670248839C} - System32\Tasks\Uninstaller_SkipUac_Roman => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2016-06-24] (IObit)
Task: {31596037-C1B2-4993-9035-B7ECB8132890} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {33307737-8BE5-4D0B-98E2-64F44ED6885B} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {345C7376-934D-4321-A660-C7380D883778} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {34773418-416E-4B8B-80B6-A62FF9AEA21A} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {37AF56F0-907A-401F-B703-33A84B678B4B} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {48EEBBDC-130B-4A7F-A19A-93B3C8FDB386} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-11-09] (Microsoft Corporation)
Task: {4A0E05A4-91D1-4037-A4E6-F02737F9B9F2} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {5279EAEF-313F-4F63-86DA-15E4C9A89ED4} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {52AFBB75-FF2C-4A06-AA94-1AAA5A0C90A4} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {56DD563F-CBE6-407C-8DC8-F627BB170666} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {5ECAF597-EA0D-4DF4-98E9-7492DCFB9BE6} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {7106425E-087B-419E-89D8-DC2FF898BA6D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-09-16] (Piriform Ltd)
Task: {7326F1A8-40AA-4C72-85C9-68289B428D56} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {772A672B-408E-48FA-98F4-6BCB43EA1F67} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {7F7CBF94-228E-45C8-8F97-071E0E6C97F9} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {833F0C4E-F44A-4B99-8AA7-6872043A66EB} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {85F0D097-CAF1-4F31-BB43-865BAB6F5DE7} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe
Task: {96692F4F-395D-4995-A448-F5A12933D9CD} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {A4EC318F-E83A-4C10-9052-274E3A73E0A2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {A7453F79-7D9C-46EB-9710-E665D93C3AD0} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {AD81B1C4-67FC-4BEC-9043-F1D7B34AA543} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {AF96481E-B832-4E10-A89E-79FD415BEC4D} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe
Task: {B1CACF51-B31F-4C00-A124-E31B869F654E} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {B5AA1F5D-0964-4CC4-954E-9B87C37DFC3E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {BAE57ADB-99C0-48EB-92A6-0F842C87290B} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {BB350C92-32A2-436F-A3F6-11BF061E9C9D} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {C4B83415-472E-45C8-B7A9-4FC30D22EFC5} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {C85285CE-9D39-47EA-A4BC-6AA6654AA056} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {D14C2E94-C104-4A30-8691-4874387FF445} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {DA99C943-81CA-405D-A7FB-9309986D9947} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-27] (Google Inc.)
Task: {DDAA6661-2468-4B69-9938-1382D5AC7399} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {E4FBAEFB-01B6-4EAF-9D9F-4BD76F98D859} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {EB680C22-EE4D-4025-B1FC-B92D8FA9FF1D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-27] (Google Inc.)
Task: {F0960F13-F2D0-43C4-8F25-36AB5FB26D21} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {F130382A-E162-43DF-94ED-B98EDD8D3687} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {F838B4CF-4C10-495A-B03A-195A6F5E58D5} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Roman.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2015-10-19 20:25 - 2013-05-29 12:56 - 00034304 _____ () C:\WINDOWS\System32\ssj2mlm.dll
2016-11-09 18:03 - 2016-10-25 10:42 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-11-09 18:03 - 2016-10-25 10:42 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-11-10 21:52 - 2016-11-10 21:52 - 01678528 _____ () C:\Users\Roman\AppData\Local\Microsoft\OneDrive\17.3.6674.1021\amd64\ClientTelemetry.dll
2016-02-13 13:53 - 2016-02-13 13:53 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-07-13 17:14 - 2016-07-01 04:48 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-11-09 18:03 - 2016-10-25 05:49 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-11-09 18:03 - 2016-10-25 05:44 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-11-09 18:03 - 2016-10-25 05:45 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-11-09 18:03 - 2016-10-25 05:48 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2012-03-09 09:58 - 2012-03-09 09:58 - 00462712 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
2012-03-09 09:58 - 2012-03-09 09:58 - 00057208 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrvPS.dll
2015-11-04 15:43 - 2015-11-04 15:43 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2016-11-22 05:06 - 2016-11-22 05:06 - 00176640 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_3.12.11142.0_x64__8wekyb3d8bbwe\CellNativeClientUniversal.dll
2016-11-27 07:49 - 2016-11-27 07:49 - 00017408 _____ () C:\Program Files\WindowsApps\64885BlueEdge.OneCalendar_2016.1126.1.0_x64__8kea50m9krsh2\CalendarApp.Gui.Win10.exe
2016-11-27 07:49 - 2016-11-27 07:49 - 15006208 _____ () C:\Program Files\WindowsApps\64885BlueEdge.OneCalendar_2016.1126.1.0_x64__8kea50m9krsh2\CalendarApp.Gui.Win10.dll
2016-11-17 06:15 - 2016-11-17 06:15 - 03766272 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1611.3123.0_x64__8wekyb3d8bbwe\Calculator.exe
2015-08-11 22:25 - 2015-08-08 16:42 - 00622880 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll
2016-11-10 21:52 - 2016-11-10 21:52 - 01244360 _____ () C:\Users\Roman\AppData\Local\Microsoft\OneDrive\17.3.6674.1021\ClientTelemetry.dll
2016-11-10 21:52 - 2016-11-10 21:52 - 00129216 _____ () C:\Users\Roman\AppData\Local\Microsoft\OneDrive\17.3.6674.1021\FileSyncViews.dll
2015-08-11 22:25 - 2015-12-23 17:32 - 00190240 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl
2015-08-11 22:25 - 2015-12-23 17:32 - 00057632 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:66BB1E73 [147]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2016-09-24 08:54 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1285628505-2949731663-139041242-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

MSCONFIG\startupreg: Adobe ARM => 
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => 
MSCONFIG\startupreg: BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} => "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
MSCONFIG\startupreg: Bonus.SSR.FR11 => "c:\program files (x86)\abbyy finereader 11\bonus.screenshotreader.exe" /autorun
MSCONFIG\startupreg: CDAServer => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
MSCONFIG\startupreg: EEventManager => "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
MSCONFIG\startupreg: OneDrive => 

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [UDP Query User{863A18A8-549B-41D7-A697-1CC7792FAFD1}C:\program files (x86)\namo\webeditor 2006\bin\webeditor.exe] => (Allow) C:\program files (x86)\namo\webeditor 2006\bin\webeditor.exe
FirewallRules: [TCP Query User{C374BBDC-451D-4F25-888A-83A16D4DE778}C:\program files (x86)\namo\webeditor 2006\bin\webeditor.exe] => (Allow) C:\program files (x86)\namo\webeditor 2006\bin\webeditor.exe
FirewallRules: [UDP Query User{FD168FF3-E3B6-4D54-9DB6-28E52920227D}C:\tools\wincom\totalcmd64.exe] => (Allow) C:\tools\wincom\totalcmd64.exe
FirewallRules: [TCP Query User{659E2862-A55B-49C9-BEF1-3EFE420165D2}C:\tools\wincom\totalcmd64.exe] => (Allow) C:\tools\wincom\totalcmd64.exe
FirewallRules: [{A377DE29-5E2E-4BE6-B82E-6A136930D5ED}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\CDAS2PC.exe
FirewallRules: [{6D635207-3487-4E68-8160-E50688E7B83E}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\CDAS2PC.exe
FirewallRules: [{1D93CCB5-C086-4E0C-9FEC-463D13FB7231}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\uninstall.exe
FirewallRules: [{A3D7FF67-EB41-42A2-BA8F-4159177F247E}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\uninstall.exe
FirewallRules: [{DEE46F4F-A676-4A63-ADC2-05EE7E17B12C}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDSAlert.exe
FirewallRules: [{54CA7F95-63FF-44EA-AD63-2676E22C456D}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDSAlert.exe
FirewallRules: [{C92EEE23-EAC9-494A-82F9-452948895DB1}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe
FirewallRules: [{9DE68DA4-33FB-4467-A4F4-53BA6BC933F8}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe
FirewallRules: [{846CDDB4-8794-4875-9B53-EB2FDAC3F6AC}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDS.Application.exe
FirewallRules: [{14701041-E5A2-40DE-9151-0C7EC59C12AC}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDS.Application.exe
FirewallRules: [{0563A66F-9B39-4E14-9EE4-83BC5E1D35A3}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{0B73B207-047C-4580-918D-4E355D7AEE50}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{44FA6A5C-0A61-4CEE-986D-B42337D09138}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{310ED379-17B3-4CE4-93F0-2C474B0D0F4C}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [TCP Query User{F74AFAA7-E7C7-4B30-A61B-3CD0EDEF3A51}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe
FirewallRules: [UDP Query User{BB22CE42-1FAE-42CD-AEAF-7AA6ECE908D0}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe
FirewallRules: [TCP Query User{0EC0DECC-5BF9-44AD-9E0A-A658CC3F0AAA}C:\program files (x86)\iomega\home storage manager\iomega discovery.exe] => (Allow) C:\program files (x86)\iomega\home storage manager\iomega discovery.exe
FirewallRules: [UDP Query User{CA1380B6-231A-4B52-8E51-67E074D86419}C:\program files (x86)\iomega\home storage manager\iomega discovery.exe] => (Allow) C:\program files (x86)\iomega\home storage manager\iomega discovery.exe
FirewallRules: [TCP Query User{B144BE45-1B2B-4152-87E7-D6FE14C4AD5C}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe
FirewallRules: [UDP Query User{6B353AC5-C7A0-4CDB-A1B6-DD7FBB3CFE65}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe
FirewallRules: [{4EAE3312-6A05-451F-B422-E3714733A77D}] => (Block) C:\program files (x86)\iomega\home storage manager\iomega discovery.exe
FirewallRules: [{3E790BF0-C804-4BB5-BA1A-1EBD25EAC8F6}] => (Block) C:\program files (x86)\iomega\home storage manager\iomega discovery.exe
FirewallRules: [TCP Query User{F1030D88-1107-4577-93DE-2CCF6E67E516}D:\program files (x86)\grand theft auto v\gta5.exe] => (Allow) D:\program files (x86)\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{256511C9-DFDD-42EF-B008-1CA5788D2E54}D:\program files (x86)\grand theft auto v\gta5.exe] => (Allow) D:\program files (x86)\grand theft auto v\gta5.exe
FirewallRules: [{52EBAB91-615B-4FF4-AEE6-D4F37FAF5183}] => (Block) D:\program files (x86)\grand theft auto v\gta5.exe
FirewallRules: [{FBA667F9-D982-41FB-BF1C-F94D8DE2997E}] => (Block) D:\program files (x86)\grand theft auto v\gta5.exe
FirewallRules: [{F7590B7C-E3D0-4A50-BAC5-0D68D4A583A4}] => (Allow) C:\Program Files (x86)\Artisteer 4\bin\Artisteer.exe
FirewallRules: [{7234EF6C-8BCE-4996-B57A-7FE1CC5F7AAE}] => (Allow) LPort=12001
FirewallRules: [{6CC5BE09-9564-40EA-9B11-6A28FC9E0523}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (11/29/2016 10:10:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: iexplore.exe, verze: 11.0.10586.672, časové razítko: 0x580ef184
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x052c9703
ID chybujícího procesu: 0x1978
Čas spuštění chybující aplikace: 0x01d24a85043260a8
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\iexplore.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 6f264c66-f8ae-4392-b9fa-3b8accaabf5d
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (11/29/2016 10:10:28 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: iexplore.exe, verze: 11.0.10586.672, časové razítko: 0x580ef184
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x05389703
ID chybujícího procesu: 0x1924
Čas spuštění chybující aplikace: 0x01d24a85024c1175
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\iexplore.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: df537b48-15b2-4d79-abd8-298cfe262980
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (11/29/2016 10:10:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: iexplore.exe, verze: 11.0.10586.672, časové razítko: 0x580ef184
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x01009703
ID chybujícího procesu: 0x7b8
Čas spuštění chybující aplikace: 0x01d24a84ff59e189
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\iexplore.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 7871d865-def9-42aa-bf79-7cf1c2f1f9a6
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (11/29/2016 10:10:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: iexplore.exe, verze: 11.0.10586.672, časové razítko: 0x580ef184
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x01139703
ID chybujícího procesu: 0x1804
Čas spuštění chybující aplikace: 0x01d24a84fd52b829
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\iexplore.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: c6bd5a7b-0729-49b1-854f-720389726541
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (11/29/2016 10:10:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: iexplore.exe, verze: 11.0.10586.672, časové razítko: 0x580ef184
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x057f9703
ID chybujícího procesu: 0x1988
Čas spuštění chybující aplikace: 0x01d24a84fbf2af32
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\iexplore.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: ad56fb69-717d-41d4-a755-2b8df7c7b0a8
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (11/29/2016 10:10:15 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: iexplore.exe, verze: 11.0.10586.672, časové razítko: 0x580ef184
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x01149703
ID chybujícího procesu: 0xcc
Čas spuštění chybující aplikace: 0x01d24a84fa8ea306
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\iexplore.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 4c1fdebf-b0c3-4fab-9663-d5af836b663d
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (11/29/2016 10:10:12 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: iexplore.exe, verze: 11.0.10586.672, časové razítko: 0x580ef184
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00df9703
ID chybujícího procesu: 0x162c
Čas spuštění chybující aplikace: 0x01d24a84f8819f4b
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\iexplore.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: cc8877cc-a901-4ff6-87e3-ca653bdb90ac
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (11/29/2016 10:10:10 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: iexplore.exe, verze: 11.0.10586.672, časové razítko: 0x580ef184
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00ef9703
ID chybujícího procesu: 0x1328
Čas spuštění chybující aplikace: 0x01d24a84f71c6b02
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\iexplore.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: e9292cfd-6258-4320-a23e-7c54d2869015
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (11/29/2016 10:10:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: iexplore.exe, verze: 11.0.10586.672, časové razítko: 0x580ef184
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00b59703
ID chybujícího procesu: 0x108c
Čas spuštění chybující aplikace: 0x01d24a84f3381bfd
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\iexplore.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 0de4d027-5715-459d-8221-d09b92970fb5
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (11/29/2016 10:10:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: iexplore.exe, verze: 11.0.10586.672, časové razítko: 0x580ef184
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00f99703
ID chybujícího procesu: 0x17f0
Čas spuštění chybující aplikace: 0x01d24a8407dd1ce0
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\iexplore.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 4d24316e-f563-41ad-9cdd-1650d0632004
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (11/29/2016 10:10:48 PM) (Source: DCOM) (EventID: 10016) (User: Roman-PC)
Description: Nastavení oprávnění výchozí pro počítač neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{C2F03A33-21F5-47FA-B4BB-156362A2F239}
 a APPID 
{316CDED5-E4AE-4B15-9113-7055D84DCC97}
 uživateli Roman-PC\Roman (SID: S-1-5-21-1285628505-2949731663-139041242-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy – SID (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/29/2016 10:10:48 PM) (Source: DCOM) (EventID: 10016) (User: Roman-PC)
Description: Nastavení oprávnění výchozí pro počítač neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{C2F03A33-21F5-47FA-B4BB-156362A2F239}
 a APPID 
{316CDED5-E4AE-4B15-9113-7055D84DCC97}
 uživateli Roman-PC\Roman (SID: S-1-5-21-1285628505-2949731663-139041242-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy – SID (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/29/2016 10:02:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba DigitalWave.Update.Service neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedený soubor.

Error: (11/29/2016 10:02:12 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba NetTcpActivator závisí na službě NetTcpPortSharing, která neuspěla při spuštění v důsledku následující chyby: 
Zvolenou službu nelze spustit, protože není povolena nebo s ní není spojeno žádné povolené zařízení.

Error: (11/29/2016 10:02:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba eusk2par neuspěla při spuštění v důsledku následující chyby: 
Načtení tohoto ovladače je blokováno.

Error: (11/29/2016 10:02:11 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\WINDOWS\SysWow64\Drivers\eusk2par.sys

Error: (11/29/2016 10:01:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Windows Search neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedenou cestu.

Error: (11/29/2016 10:01:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Přístup k uživatelským datům_33156 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (11/29/2016 10:01:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Úložiště uživatelských dat_33156 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (11/29/2016 10:01:16 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Data kontaktů_33156 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.


CodeIntegrity:
===================================
  Date: 2016-11-28 14:54:05.567
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-11-27 16:58:38.932
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-11-26 12:33:17.369
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-11-26 12:33:17.341
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-11-26 12:32:39.470
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-11-26 12:32:39.442
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-11-26 12:32:39.089
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-11-26 12:32:39.061
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-11-26 12:32:38.688
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-11-26 12:32:38.660
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info =========================== 

Processor: AMD Athlon(tm) II X4 640 Processor
Percentage of memory in use: 26%
Total physical RAM: 6142.49 MB
Available physical RAM: 4516.54 MB
Total Virtual: 12286.49 MB
Available Virtual: 10720.02 MB

==================== Drives ================================

Drive c: (Kokos) (Fixed) (Total:488.28 GB) (Free:437.68 GB) NTFS
Drive d: (WD1) (Fixed) (Total:488.28 GB) (Free:394.93 GB) NTFS
Drive e: (WD2) (Fixed) (Total:886.11 GB) (Free:885.9 GB) NTFS
Drive f: () (Removable) (Total:29.81 GB) (Free:21.25 GB) FAT32
Drive p: (Samsung1) (Fixed) (Total:488.28 GB) (Free:236.19 GB) NTFS
Drive q: (Samsung2) (Fixed) (Total:488.28 GB) (Free:192.88 GB) NTFS
Drive r: (Samsung3) (Fixed) (Total:420.7 GB) (Free:280.64 GB) NTFS
Drive y: () (Network) (Total:927.44 GB) (Free:329.22 GB) 
Drive z: () (Network) (Total:927.44 GB) (Free:329.22 GB) 

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 5AC6BD8A)
Partition 1: (Not Active) - (Size=993 KB) - (Type=42)
Partition 2: (Active) - (Size=350 MB) - (Type=42)
Partition 3: (Not Active) - (Size=488.3 GB) - (Type=42)
Partition 4: (Not Active) - (Size=1374.4 GB) - (Type=42)

========================================================
Disk: 1 (Size: 1397.3 GB) (Disk ID: 91ADE49A)
Partition 1: (Not Active) - (Size=488.3 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=488.3 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=420.7 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 29.8 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt ============================