Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-12-2016
Ran by Ekospol (28-12-2016 16:26:57)
Running from C:\Users\Ekospol\Documents\b3
Windows 7 Professional Service Pack 1 (X64) (2014-10-08 01:56:35)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2861624394-871130569-1612233255-500 - Administrator - Disabled)
Ekospol (S-1-5-21-2861624394-871130569-1612233255-1001 - Administrator - Enabled) => C:\Users\Ekospol
Guest (S-1-5-21-2861624394-871130569-1612233255-501 - Limited - Enabled) => C:\Users\Guest

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

64 Bit HP CIO Components Installer (Version: 13.2.1 - Hewlett-Packard) Hidden
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.020.20042 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Photoshop CS (HKLM-x32\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
AdWords Editor (HKLM-x32\...\{102B7CC0-AC52-11E6-9189-480FCF5D6515}) (Version: 11.7.0.0 - Google)
Analytics Edge Basic Add-in version 3.4.1 (HKLM\...\{2D693401-FDAE-49FA-945E-EE920A6679DF}_is1) (Version: 3.4.1 - Analytics Edge)
Avast Internet Security (HKLM-x32\...\Avast) (Version: 11.2.2262 - AVAST Software)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CyberGhost 6 (HKLM\...\CyberGhost 6_is1) (Version:  - CyberGhost S.R.L.)
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.3.3207 - CyberLink Corp.)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.2.3212 - CyberLink Corp.)
DirectX for Managed Code Update (Summer 2004) (x32 Version: 9.02.2904 - Microsoft) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 55.0.2883.87 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden
HP Client Security Manager (HKLM\...\HPProtectTools) (Version: 8.3.3.1786 - Hewlett-Packard Company)
HP Device Access Manager (HKLM\...\{DBE16A07-DDFF-4453-807A-212EF93916E0}) (Version: 8.3.2.0 - Hewlett-Packard Company)
HP Drive Encryption (HKLM\...\HPDriveEncryption) (Version: 8.6.7.27 - Hewlett-Packard Company)
HP File Sanitizer (HKLM-x32\...\{6349342F-9CEF-4A70-995A-2CF3704C2603}) (Version: 8.4.20.1 - Hewlett-Packard Company)
HP LaserJet 400 M401 (HKLM-x32\...\{8989F6D9-550C-4178-A8CB-75B82A06621F}) (Version: 5.0.13198.1083 - Hewlett-Packard)
HP Officejet 7500 E910 Nápověda (HKLM-x32\...\{24DC9885-E759-4BD2-8A20-D4AC509A7FDE}) (Version: 140.0.93.93 - Hewlett Packard)
HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 13.00.0000 - Hewlett-Packard)
hpbDSService (x32 Version: 002.002.07399 - Hewlett-Packard) Hidden
hpbM401DSService (x32 Version: 001.001.05874 - Hewlett-Packard) Hidden
hppLaserJetService (x32 Version: 009.027.00856 - Hewlett-Packard) Hidden
hppM401LaserJetService (x32 Version: 001.019.00639 - Hewlett-Packard) Hidden
I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
Intel(R) Chipset Device Software (x32 Version: 10.0.14 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1168 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3383 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 3.0.0.19 - Intel Corporation)
Java 7 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217060FF}) (Version: 7.0.600 - Oracle)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
jEdit 5.3.0 (HKLM\...\jEdit_is1) (Version: 5.3.0 - Contributors)
KeePass Password Safe 2.28 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.28 - Dominik Reichl)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft ASP.NET MVC 2 (HKLM-x32\...\{DD8FF2F3-0D97-4CF3-AF78-FA0E1B242244}) (Version: 2.0.60926.0 - Microsoft Corporation)
Microsoft Office 2013 pro podnikatele - cs-cz (HKLM\...\HomeBusinessRetail - cs-cz) (Version: 15.0.4885.1001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 50.1.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 50.1.0 (x86 cs)) (Version: 50.1.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.1.0.6186 - Mozilla)
MySQL Connector/ODBC 5.3 (HKLM\...\{17E48BE8-F0F8-42B6-82D3-7A5840694D79}) (Version: 5.3.6 - Oracle Corporation)
MySQL Documents 5.6 (HKLM-x32\...\{277FCB89-B03D-4A74-B9E6-97A4B07F691E}) (Version: 5.6.24 - Oracle Corporation)
MySQL For Excel 1.3.4 (HKLM-x32\...\{A0352E65-6E78-48B3-B6D6-B3208E663249}) (Version: 1.3.4 - Oracle)
MySQL Installer for Windows - Community (HKLM-x32\...\{81CADE1F-E0AE-4CEA-AB62-F7F110204D51}) (Version: 1.4.10.0 - Oracle Corporation)
NetBeans IDE 8.0.1 (HKLM-x32\...\nbi-nb-base-8.0.1.0.201408251540) (Version: 8.0.1 - NetBeans.org)
Odinstalace tiskárny EPSON L1300 Series (HKLM\...\EPSON L1300 Series) (Version:  - SEIKO EPSON Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4885.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4885.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4885.1001 - Microsoft Corporation) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.85.423.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7224 - Realtek Semiconductor Corp.)
SafeZone Stable 1.48.2066.101 (x32 Version: 1.48.2066.101 - Avast Software) Hidden
Skype™ 7.30 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.30.105 - Skype Technologies S.A.)
TAP-Windows 9.21.2 (HKLM\...\TAP-Windows) (Version: 9.21.2 - )
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.66695 - TeamViewer)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.52a - Ghisler Software GmbH)
Web Content Extractor 7.2 (HKLM-x32\...\Web Content Extractor_is1) (Version:  - Newprosoft)
WinSCP 5.7.5 (HKLM-x32\...\winscp3_is1) (Version: 5.7.5 - Martin Prikryl)
Wise Auto Shutdown 1.54 (HKLM-x32\...\Wise Auto Shutdown_is1) (Version: 1.54 - WiseCleaner.com, Inc.)
Základní software zařízení HP Officejet 7500 E910 (HKLM\...\{B1ECE042-5C2B-471D-B382-E85960971306}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2861624394-871130569-1612233255-1001_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Ekospol\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2861624394-871130569-1612233255-1001_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Ekospol\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2861624394-871130569-1612233255-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Ekospol\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2861624394-871130569-1612233255-1001_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Ekospol\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2861624394-871130569-1612233255-1001_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Ekospol\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2861624394-871130569-1612233255-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Ekospol\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {027E326D-A219-495E-A7CB-BBC83E152704} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-11-01] (Microsoft Corporation)
Task: {0E1E1347-8E37-4CDB-8897-953AD3F8FD39} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\MpCmdRun.exe
Task: {3B723886-0134-4739-AFA3-9BC9C96C2A08} - System32\Tasks\EPSON L1300 Series Update {DE41C75C-65A8-4BA4-BA9F-9234500E0AC8} => C:\windows\system32\spool\DRIVERS\x64\3\E_YTSLVE.EXE [2013-02-28] (SEIKO EPSON CORPORATION)
Task: {544F50CC-7CF8-4FF7-A818-4FAFE8D5C3D8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {633B69FE-D5B4-402A-8194-72A940451E60} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-06-06] (AVAST Software)
Task: {7FD9EB1B-667D-4242-AAFD-E226CE5C5FD1} - System32\Tasks\MySQL\Installer\ManifestUpdate => C:\Program Files (x86)\MySQL\MySQL Installer for Windows\MySQLInstallerConsole.exe [2015-08-14] (Oracle Corporation)
Task: {985C5EF9-23BA-4B8C-BD5E-AE00A45E1F2E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2861624394-871130569-1612233255-1001UA => C:\Users\Ekospol\AppData\Local\Google\Update\GoogleUpdate.exe [2016-03-07] (Google Inc.)
Task: {A37C82FC-282A-47D2-9C1A-BD8FCF0E31A4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {AB3F5781-50DA-40DD-992C-08CF2E923F44} - System32\Tasks\Galerentannly Server => C:\Program Files (x86)\Qoshgerkegh\plujiing.exe
Task: {C0E6BFC2-E29D-40E1-B3D9-CD4A7FF9AFA0} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-11-01] (Microsoft Corporation)
Task: {C13F74BE-E19C-4B32-9399-A446C26B4943} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-05-19] (AVAST Software)
Task: {DB135BB4-646A-4FCD-9147-29DFE5FB319A} - System32\Tasks\SafeZone scheduled Autoupdate 1450422716 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-04-15] (Avast Software)
Task: {DBA571A9-3BE9-4489-A398-163F305F9417} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2861624394-871130569-1612233255-1001Core => C:\Users\Ekospol\AppData\Local\Google\Update\GoogleUpdate.exe [2016-03-07] (Google Inc.)
Task: {E668584B-B5BA-47D8-9B0A-42F149151323} - System32\Tasks\EPSON L1300 Series Invitation {DE41C75C-65A8-4BA4-BA9F-9234500E0AC8} => C:\windows\system32\spool\DRIVERS\x64\3\E_YTSLVE.EXE [2013-02-28] (SEIKO EPSON CORPORATION)
Task: {E7F62DAE-085C-4B0E-B771-CAF295AB7430} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-21] (Adobe Systems Incorporated)
Task: {FD37BF45-290B-424F-B4EE-9FB365A99DEA} - System32\Tasks\935z56777t378 => Rundll32.exe "C:\ProgramData\935z56777t378\935z56777t378.dll",drvGetDefaultCommConfig <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\windows\Tasks\EPSON L1300 Series Invitation {DE41C75C-65A8-4BA4-BA9F-9234500E0AC8}.job => C:\windows\system32\spool\DRIVERS\x64\3\E_YTSLVE.EXE
Task: C:\windows\Tasks\EPSON L1300 Series Update {DE41C75C-65A8-4BA4-BA9F-9234500E0AC8}.job => C:\windows\system32\spool\DRIVERS\x64\3\E_YTSLVE.EXE:/EXE:{DE41C75C-65A8-4BA4-BA9F-9234500E0AC8} /F:Update SYSTEMĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Ekospol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\9501e18d7c2ab92e\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 2"

==================== Loaded Modules (Whitelisted) ==============

2016-12-06 14:27 - 2014-03-22 12:36 - 02976256 _____ () C:\ProgramData\935z56777t378\935z56777t378.dll
2014-11-07 11:17 - 2016-05-24 08:51 - 00116416 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2016-12-28 12:49 - 2016-12-28 12:49 - 00252416 _____ () C:\windows\TEMP\g6105.tmp.exe
2016-08-23 07:54 - 2016-11-28 10:03 - 00216112 _____ () C:\Program Files\CyberGhost 6\MobileConcepts45.dll
2016-10-27 15:50 - 2016-11-28 10:02 - 00026160 _____ () C:\Program Files\CyberGhost 6\BugSplatDotNet.dll
2016-08-23 07:54 - 2016-11-28 10:02 - 00119856 _____ () C:\Program Files\CyberGhost 6\CyberGhost.RESTCommunicator.dll
2016-05-19 11:37 - 2016-05-19 11:37 - 00123344 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2016-05-19 11:37 - 2016-05-19 11:37 - 00135816 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-12-28 11:11 - 2016-12-28 11:11 - 03131344 _____ () C:\Program Files\AVAST Software\Avast\defs\16122800\algo.dll
2016-05-19 11:37 - 2016-05-19 11:37 - 00309912 _____ () C:\Program Files\AVAST Software\Avast\browser_pass.dll
2016-05-19 11:37 - 2016-05-19 11:37 - 00479680 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2014-08-08 06:44 - 2013-08-05 08:49 - 00627672 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
2013-08-05 23:48 - 2013-08-05 23:48 - 00016856 _____ () c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
2015-12-17 11:50 - 2015-12-17 11:50 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-02-20 02:51 - 2014-02-20 02:51 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2014-11-03 10:09 - 2016-09-20 03:29 - 00325824 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll
2016-11-18 05:36 - 2016-11-15 11:19 - 01041600 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\ADDINS\UmOutlookAddin.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Public\DRM:احتضان [48]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2861624394-871130569-1612233255-1001\...\blank -> blank

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2016-12-06 16:00 - 00000826 ____N C:\windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2861624394-871130569-1612233255-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ekospol\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{A961AD24-9550-4D8A-A671-407D833BC001}] => c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe
FirewallRules: [{772A923A-076B-42E4-B5AE-68B97770DE60}] => c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
FirewallRules: [{CD9392EF-17B0-4894-AE1F-00EDB82B85D8}] => c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
FirewallRules: [{63102A6C-BB55-4F84-8DFD-505C682DE8AA}] => c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe
FirewallRules: [{8EFF6A3A-BBBC-4F60-A7FA-97033F479F88}] => c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe
FirewallRules: [{C4C1BD65-A00E-4E2A-A0D4-A6D516CE6D9A}] => c:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe
FirewallRules: [{8D1C58D6-A4D7-4868-BAA5-A923FB7206BE}] => C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{BC79006A-0C45-473A-A68C-E29ACD3AF2F8}] => C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{CFDA5AD4-E709-43B7-B2D8-AFA3244C6EE5}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{4331893A-8E53-4B99-846C-53954F1164D4}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{CA64620F-1802-41D4-A77B-EF3A5B486C05}] => C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [TCP Query User{CEE8D583-BDED-4DC6-B3C3-35202B73645D}C:\program files\totalcmd\totalcmd64.exe] => C:\program files\totalcmd\totalcmd64.exe
FirewallRules: [UDP Query User{A7249C15-9D76-4915-A548-139FD545BA5B}C:\program files\totalcmd\totalcmd64.exe] => C:\program files\totalcmd\totalcmd64.exe
FirewallRules: [{7ED96687-BC8F-4D6F-877C-5FE0BFA5913D}] => C:\Program Files\HP\HP Officejet 7500 E910\bin\FaxApplications.exe
FirewallRules: [{284D1E88-E983-4A6A-959D-E9B08C0E98A8}] => C:\Program Files\HP\HP Officejet 7500 E910\bin\DigitalWizards.exe
FirewallRules: [{516ECFF8-FB32-4D9E-AC0C-3B870E5C7B09}] => C:\Program Files\HP\HP Officejet 7500 E910\bin\SendAFax.exe
FirewallRules: [{AD8F4CEF-B3A6-47CD-98E4-FB04F6808EE8}] => C:\Program Files\HP\HP Officejet 7500 E910\Bin\DeviceSetup.exe
FirewallRules: [{5481D143-8ACE-45D1-AF92-7F5EF6482DA9}] => C:\Program Files\HP\HP Officejet 7500 E910\Bin\HPNetworkCommunicator.exe
FirewallRules: [{4A6F74C6-991C-4DD6-B38A-7911B7E39658}] => C:\Program Files\HP\HP Officejet 7500 E910\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{0ED20643-7393-410A-A2D1-FCB18A3D0B09}] => C:\Users\Ekospol\AppData\Local\Temp\nsj76CD.tmp\CnetInstaller-10773391.exe
FirewallRules: [{948BD711-2FF8-4F17-8AFF-5D7D6FC238F5}] => C:\Users\Ekospol\AppData\Local\Temp\nsj76CD.tmp\CnetInstaller-10773391.exe
FirewallRules: [{897C3CAF-E546-494C-B099-B0CD21C676D2}] => C:\Users\Ekospol\AppData\Local\Temp\nseD5AE.tmp\CnetInstaller-10773391.exe
FirewallRules: [{807D1C76-D62B-4718-A5C6-86BB726AD06F}] => C:\Users\Ekospol\AppData\Local\Temp\nseD5AE.tmp\CnetInstaller-10773391.exe
FirewallRules: [{DE3E1227-E68B-4E74-B4DB-3A458C70788E}] => C:\Program Files (x86)\Xi\NetXfer\NetTransport.exe
FirewallRules: [{16C20392-0E10-48C4-B4F4-B4EAE29C9E49}] => C:\Program Files (x86)\Xi\NetXfer\NetTransport.exe
FirewallRules: [TCP Query User{E8EFFF81-A059-4194-A5ED-0A3785C3AEB5}C:\program files (x86)\brackets\node.exe] => C:\program files (x86)\brackets\node.exe
FirewallRules: [UDP Query User{49003182-FF62-485F-BF4B-17CAA63F2863}C:\program files (x86)\brackets\node.exe] => C:\program files (x86)\brackets\node.exe
FirewallRules: [TCP Query User{F146CB93-8CCF-4016-A0AF-8D49EB1C0973}C:\users\ekospol\appdata\local\programs\knime_2.11.0\knime.exe] => C:\users\ekospol\appdata\local\programs\knime_2.11.0\knime.exe
FirewallRules: [UDP Query User{B19EF403-F7B1-4CEB-9919-725074F704C3}C:\users\ekospol\appdata\local\programs\knime_2.11.0\knime.exe] => C:\users\ekospol\appdata\local\programs\knime_2.11.0\knime.exe
FirewallRules: [TCP Query User{4E960018-5664-496B-9134-67ADC9787AD8}C:\program files (x86)\cobian backup 11\cbremotemanager.exe] => C:\program files (x86)\cobian backup 11\cbremotemanager.exe
FirewallRules: [UDP Query User{AC550656-5832-4CDD-A345-7E6713D9DF4D}C:\program files (x86)\cobian backup 11\cbremotemanager.exe] => C:\program files (x86)\cobian backup 11\cbremotemanager.exe
FirewallRules: [TCP Query User{7279BD53-09E9-49FC-B6C6-A0D12A2BF3A3}C:\program files\cloveretl designer community\jdk1.7.0_51_64\bin\javaw.exe] => C:\program files\cloveretl designer community\jdk1.7.0_51_64\bin\javaw.exe
FirewallRules: [UDP Query User{9CBF1E0B-087C-41A3-B3A4-B9CF574B3248}C:\program files\cloveretl designer community\jdk1.7.0_51_64\bin\javaw.exe] => C:\program files\cloveretl designer community\jdk1.7.0_51_64\bin\javaw.exe
FirewallRules: [TCP Query User{63EAED5F-6427-4ADF-A2C5-9AEE97CE0773}C:\program files (x86)\web2mine\easy web extract\ezwebextract.exe] => C:\program files (x86)\web2mine\easy web extract\ezwebextract.exe
FirewallRules: [UDP Query User{05512A3D-F4DA-4947-B14A-6AB64332A3D2}C:\program files (x86)\web2mine\easy web extract\ezwebextract.exe] => C:\program files (x86)\web2mine\easy web extract\ezwebextract.exe
FirewallRules: [TCP Query User{EE774BBD-EAC0-4996-98E8-555E43D00EA7}C:\users\ekospol\downloads\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-win32-x86.exe] => C:\users\ekospol\downloads\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-win32-x86.exe
FirewallRules: [UDP Query User{9C37D644-2930-4ACF-9723-E4C824857AB5}C:\users\ekospol\downloads\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-win32-x86.exe] => C:\users\ekospol\downloads\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-win32-x86.exe
FirewallRules: [TCP Query User{B4BF1FB2-A4D2-4F0F-ADC8-FCFB26B6E9E3}C:\program files\adobe\adobe edge animate cc 2015\edgeanimate.exe] => C:\program files\adobe\adobe edge animate cc 2015\edgeanimate.exe
FirewallRules: [UDP Query User{E1E71FB9-54AC-4402-997C-3F75C82AF073}C:\program files\adobe\adobe edge animate cc 2015\edgeanimate.exe] => C:\program files\adobe\adobe edge animate cc 2015\edgeanimate.exe
FirewallRules: [TCP Query User{44971EFB-A632-4075-8D53-1A69B243FB66}G:\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe] => G:\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe
FirewallRules: [UDP Query User{96A645F3-A00D-4084-99AB-A52EA1CD68D7}G:\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe] => G:\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe
FirewallRules: [TCP Query User{EBD3C430-1E01-4322-AB49-3A48001D5E2B}G:\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe] => G:\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe
FirewallRules: [UDP Query User{3E65689C-8EFD-4692-A1C3-978E76B784FA}G:\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe] => G:\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe
FirewallRules: [TCP Query User{CD5C4C37-B1F5-4E3A-BEEE-F97140BF3BEA}G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe] => G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe
FirewallRules: [UDP Query User{DBC0642F-CAC2-47B1-AFFC-8186CE9D0C74}G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe] => G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe
FirewallRules: [TCP Query User{369759A4-C38E-44A0-8812-E31183B47341}G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe] => G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe
FirewallRules: [UDP Query User{6179EF60-34B6-4EBD-A608-129D649B6EF0}G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe] => G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe
FirewallRules: [TCP Query User{8E532B5A-E455-449B-B9FF-C0ACF15CE70E}C:\program files\totalcmd\totalcmd.exe] => C:\program files\totalcmd\totalcmd.exe
FirewallRules: [UDP Query User{D5F869D0-1888-40B6-9E8A-6BCD4A01DB2F}C:\program files\totalcmd\totalcmd.exe] => C:\program files\totalcmd\totalcmd.exe
FirewallRules: [{91413164-7E60-4613-BEE3-346532AB8912}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{8E31C85F-BC5D-4E1E-8DCE-5C9E133FC3AA}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{F9A2641E-92D3-48B0-B7B3-F6E6754AC9BD}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{3A4E76C3-0191-438D-B187-7215B9E92E95}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{6747085C-9FED-4B61-A690-446FF8A50CDA}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{2BEFBC0F-63D3-4D6D-9AAE-9D6924B4AE0B}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{9B20F709-BDDC-4F15-9D5C-CB7B7989AAD0}] => C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{C5BD35E6-7999-4990-881C-A34871618936}] => C:\windows\system32\rundll32.exe
FirewallRules: [{6453C762-9FB9-4182-BE9B-D6ECF94984EA}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{4DB05EDD-3FC5-47F8-B75E-721FD3BCF923}] => C:\Windows\System32\rundll32.exe
FirewallRules: [{214E1453-A030-4B80-9CEA-7E9AB65F1062}] => C:\Windows\System32\rundll32.exe

==================== Restore Points =========================

19-12-2016 13:06:19 Windows Update
20-12-2016 09:11:38 Checkpoint by HitmanPro
20-12-2016 09:12:46 Checkpoint by HitmanPro
23-12-2016 10:55:29 JRT Pre-Junkware Removal
25-12-2016 04:26:56 Windows Update
28-12-2016 09:30:56 Windows Update
28-12-2016 10:25:57 Operace obnovení

==================== Faulty Device Manager Devices =============

Name: Intel(R) Management Engine Interface 
Description: Intel(R) Management Engine Interface 
Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel
Service: MEIx64
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (12/27/2016 11:22:45 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Portable_PS_8.exe, verze: 0.1.0.0, časové razítko: 0x43d67530
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc000041d
Posun chyby: 0x774fbc61
ID chybujícího procesu: 0x1904
Čas spuštění chybující aplikace: 0x01d2602b29a0958d
Cesta k chybující aplikaci: I:\sw\PortablePhotoshop8\Portable_PS_8.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 680fbf52-cc1e-11e6-8d0a-a0d3c1441637

Error: (12/27/2016 09:46:34 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Portable_PS_8.exe, verze: 0.1.0.0, časové razítko: 0x43d67530
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc000041d
Posun chyby: 0x774fbc61
ID chybujícího procesu: 0x1cb0
Čas spuštění chybující aplikace: 0x01d2601db9deae21
Cesta k chybující aplikaci: I:\sw\PortablePhotoshop8\Portable_PS_8.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: f7ca272f-cc10-11e6-8d0a-a0d3c1441637

Error: (12/27/2016 09:46:28 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Portable_PS_8.exe, verze: 0.1.0.0, časové razítko: 0x43d67530
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc000041d
Posun chyby: 0x774fbc61
ID chybujícího procesu: 0x130c
Čas spuštění chybující aplikace: 0x01d2601db4dd3911
Cesta k chybující aplikaci: I:\sw\PortablePhotoshop8\Portable_PS_8.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: f4528820-cc10-11e6-8d0a-a0d3c1441637

Error: (12/23/2016 03:55:58 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program notepad.exe verze 6.1.7601.18917 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Centrum akcí.

ID procesu: ffc

Čas spuštění: 01d25d2ca16e9614

Čas ukončení: 10

Cesta k aplikaci: C:\windows\notepad.exe

ID hlášení: e656b19f-c91f-11e6-8d0a-a0d3c1441637

Error: (12/22/2016 08:09:09 AM) (Source: Microsoft Office 15) (EventID: 2001) (User: )
Description: Microsoft Outlook: Rejected Safe Mode action : Naposledy se nepodařilo spustit Outlook. Problém byste mohli odstranit pomocí nouzového režimu, některé funkce ale v tomto režimu nemusí být dostupné.

Chcete použít spuštění v nouzovém režimu?.
Rejected Safe Mode action : Microsoft Outlook.

Error: (12/21/2016 08:36:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Portable_PS_8.exe, verze: 0.1.0.0, časové razítko: 0x43d67530
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc000041d
Posun chyby: 0x76e1bc61
ID chybujícího procesu: 0x938
Čas spuštění chybující aplikace: 0x01d25b5cec70ce39
Cesta k chybující aplikaci: I:\sw\PortablePhotoshop8\Portable_PS_8.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 2b797b6b-c750-11e6-9b72-a0d3c1441637

Error: (12/20/2016 01:43:14 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Portable_PS_8.exe, verze: 0.1.0.0, časové razítko: 0x43d67530
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc000041d
Posun chyby: 0x772fbc61
ID chybujícího procesu: 0x1fac
Čas spuštění chybující aplikace: 0x01d25abe9ef57d50
Cesta k chybující aplikaci: I:\sw\PortablePhotoshop8\Portable_PS_8.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: dec45fd9-c6b1-11e6-9fef-a0d3c1441637

Error: (12/20/2016 09:14:07 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny RegSetValueExW(0x00000428,SYSTEM\CurrentControlSet\Services\VSS\Diag\VssvcPublisher,0,REG_BINARY,00000000030EEAB0.72) došlo k neočekávané chybě. hr= 0x80070005, Přístup byl odepřen.
.

Error: (12/20/2016 09:14:07 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny RegSetValueExW(0x00000794,(null),0,REG_BINARY,000000000CCAE260.72) došlo k neočekávané chybě. hr= 0x80070005, Přístup byl odepřen.
.


Operace:
   Událost BackupShutdown

Kontext:
   Kontext spuštění: Writer
   ID třídy modulu pro zápis: {a6ad56c2-b509-4e6c-bb19-49d8f43532f0}
   Název modulu pro zápis: WMI Writer
   ID instance modulu pro zápis: {0dee3757-04c7-439b-8945-e001b44eb2ac}

Error: (12/20/2016 09:14:07 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny RegSetValueExW(0x00000794,(null),0,REG_BINARY,000000000CCAE260.72) došlo k neočekávané chybě. hr= 0x80070005, Přístup byl odepřen.
.


Operace:
   Událost BackupShutdown

Kontext:
   Kontext spuštění: Writer
   ID třídy modulu pro zápis: {a6ad56c2-b509-4e6c-bb19-49d8f43532f0}
   Název modulu pro zápis: WMI Writer
   ID instance modulu pro zápis: {0dee3757-04c7-439b-8945-e001b44eb2ac}


System errors:
=============
Error: (12/28/2016 12:50:31 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID 
{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}
 a APPID 
{344ED43D-D086-4961-86A6-1106F4ACAD9B}
 uživateli NT AUTHORITY\SYSTEM SID (S-1-5-18) z adresy LocalHost (pomocí LRPC). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (12/28/2016 12:49:44 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba HP Device Access Manager Usage Service neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (12/28/2016 12:49:44 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby HP Device Access Manager Usage Service bylo dosaženo časového limitu (30000 ms).

Error: (12/28/2016 12:46:59 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Rozpoznávací modul sběrnice PnP-X IP závisí na službě Hostitel poskytovatele rozpoznávání funkce, která neuspěla při spuštění v důsledku následující chyby: 
Nepodařilo se zahájit  závislou službu nebo skupinu.

Error: (12/28/2016 12:45:24 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby: 
Nepodařilo se zahájit  závislou službu nebo skupinu.

Error: (12/28/2016 12:45:24 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby: 
Nepodařilo se zahájit  závislou službu nebo skupinu.

Error: (12/28/2016 12:45:24 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby: 
Nepodařilo se zahájit  závislou službu nebo skupinu.

Error: (12/28/2016 12:45:24 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby: 
Nepodařilo se zahájit  závislou službu nebo skupinu.

Error: (12/28/2016 12:45:24 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby: 
Nepodařilo se zahájit  závislou službu nebo skupinu.

Error: (12/28/2016 12:45:24 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba seznamu sítí závisí na službě Sledování umístění v síti (NLA), která neuspěla při spuštění v důsledku následující chyby: 
Nepodařilo se zahájit  závislou službu nebo skupinu.


CodeIntegrity:
===================================
  Date: 2016-12-12 11:53:53.706
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:53.296
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:53.256
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:53.246
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:52.786
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:52.756
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:52.366
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:52.346
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:52.276
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:52.266
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_a384c5aabe759ea5\wermgr.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i3-4150 CPU @ 3.50GHz
Percentage of memory in use: 71%
Total physical RAM: 4024.17 MB
Available physical RAM: 1142.7 MB
Total Virtual: 8046.52 MB
Available Virtual: 4472.63 MB

==================== Drives ================================

Drive c: (Windows ) (Fixed) (Total:452.47 GB) (Free:311.53 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (HP_RECOVERY) (Fixed) (Total:12.19 GB) (Free:12.08 GB) NTFS
Drive e: (HP_TOOLS) (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32
Drive z: (marketing) (Network) (Total:2598.94 GB) (Free:590.73 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 0334FB2B)
Partition 1: (Active) - (Size=1 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=452.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=12.2 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=100 MB) - (Type=0C)

==================== End of Addition.txt ============================