Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-01-2017
Ran by Ekospol (03-01-2017 08:40:39)
Running from C:\Users\Ekospol\Documents\b3
Windows 7 Professional Service Pack 1 (X64) (2014-10-08 01:56:35)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2861624394-871130569-1612233255-500 - Administrator - Disabled)
Ekospol (S-1-5-21-2861624394-871130569-1612233255-1001 - Administrator - Enabled) => C:\Users\Ekospol
Guest (S-1-5-21-2861624394-871130569-1612233255-501 - Limited - Enabled) => C:\Users\Guest

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: Avast Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

64 Bit HP CIO Components Installer (Version: 13.2.1 - Hewlett-Packard) Hidden
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.020.20042 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Photoshop CS (HKLM-x32\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
AdWords Editor (HKLM-x32\...\{102B7CC0-AC52-11E6-9189-480FCF5D6515}) (Version: 11.7.0.0 - Google)
Analytics Edge Basic Add-in version 3.4.1 (HKLM\...\{2D693401-FDAE-49FA-945E-EE920A6679DF}_is1) (Version: 3.4.1 - Analytics Edge)
Avast Internet Security (HKLM-x32\...\Avast) (Version: 12.3.2280 - AVAST Software)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CyberGhost 6 (HKLM\...\CyberGhost 6_is1) (Version:  - CyberGhost S.R.L.)
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.3.3207 - CyberLink Corp.)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.2.3212 - CyberLink Corp.)
DirectX for Managed Code Update (Summer 2004) (x32 Version: 9.02.2904 - Microsoft) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 55.0.2883.87 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden
HP Client Security Manager (HKLM\...\HPProtectTools) (Version: 8.3.3.1786 - Hewlett-Packard Company)
HP Device Access Manager (HKLM\...\{DBE16A07-DDFF-4453-807A-212EF93916E0}) (Version: 8.3.2.0 - Hewlett-Packard Company)
HP Drive Encryption (HKLM\...\HPDriveEncryption) (Version: 8.6.7.27 - Hewlett-Packard Company)
HP File Sanitizer (HKLM-x32\...\{6349342F-9CEF-4A70-995A-2CF3704C2603}) (Version: 8.4.20.1 - Hewlett-Packard Company)
HP LaserJet 400 M401 (HKLM-x32\...\{8989F6D9-550C-4178-A8CB-75B82A06621F}) (Version: 5.0.13198.1083 - Hewlett-Packard)
HP Officejet 7500 E910 Nápověda (HKLM-x32\...\{24DC9885-E759-4BD2-8A20-D4AC509A7FDE}) (Version: 140.0.93.93 - Hewlett Packard)
HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 13.00.0000 - Hewlett-Packard)
hpbDSService (x32 Version: 002.002.07399 - Hewlett-Packard) Hidden
hpbM401DSService (x32 Version: 001.001.05874 - Hewlett-Packard) Hidden
hppLaserJetService (x32 Version: 009.027.00856 - Hewlett-Packard) Hidden
hppM401LaserJetService (x32 Version: 001.019.00639 - Hewlett-Packard) Hidden
I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
Intel(R) Chipset Device Software (x32 Version: 10.0.14 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1168 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3383 - Intel Corporation)
Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 3.0.0.19 - Intel Corporation)
Java 7 Update 60 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217060FF}) (Version: 7.0.600 - Oracle)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
jEdit 5.3.0 (HKLM\...\jEdit_is1) (Version: 5.3.0 - Contributors)
KeePass Password Safe 2.28 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.28 - Dominik Reichl)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft ASP.NET MVC 2 (HKLM-x32\...\{DD8FF2F3-0D97-4CF3-AF78-FA0E1B242244}) (Version: 2.0.60926.0 - Microsoft Corporation)
Microsoft Office 2013 pro podnikatele - cs-cz (HKLM\...\HomeBusinessRetail - cs-cz) (Version: 15.0.4885.1001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 50.1.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 50.1.0 (x86 cs)) (Version: 50.1.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.1.0.6186 - Mozilla)
MySQL Connector/ODBC 5.3 (HKLM\...\{17E48BE8-F0F8-42B6-82D3-7A5840694D79}) (Version: 5.3.6 - Oracle Corporation)
MySQL Documents 5.6 (HKLM-x32\...\{277FCB89-B03D-4A74-B9E6-97A4B07F691E}) (Version: 5.6.24 - Oracle Corporation)
MySQL For Excel 1.3.4 (HKLM-x32\...\{A0352E65-6E78-48B3-B6D6-B3208E663249}) (Version: 1.3.4 - Oracle)
MySQL Installer for Windows - Community (HKLM-x32\...\{81CADE1F-E0AE-4CEA-AB62-F7F110204D51}) (Version: 1.4.10.0 - Oracle Corporation)
NetBeans IDE 8.0.1 (HKLM-x32\...\nbi-nb-base-8.0.1.0.201408251540) (Version: 8.0.1 - NetBeans.org)
Odinstalace tiskárny EPSON L1300 Series (HKLM\...\EPSON L1300 Series) (Version:  - SEIKO EPSON Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4885.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4885.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4885.1001 - Microsoft Corporation) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.85.423.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7224 - Realtek Semiconductor Corp.)
SafeZone Stable 1.51.2220.53 (x32 Version: 1.51.2220.53 - Avast Software) Hidden
Skype™ 7.30 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.30.105 - Skype Technologies S.A.)
TAP-Windows 9.21.2 (HKLM\...\TAP-Windows) (Version: 9.21.2 - )
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.66695 - TeamViewer)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.52a - Ghisler Software GmbH)
Web Content Extractor 7.2 (HKLM-x32\...\Web Content Extractor_is1) (Version:  - Newprosoft)
WinSCP 5.7.5 (HKLM-x32\...\winscp3_is1) (Version: 5.7.5 - Martin Prikryl)
Wise Auto Shutdown 1.54 (HKLM-x32\...\Wise Auto Shutdown_is1) (Version: 1.54 - WiseCleaner.com, Inc.)
Základní software zařízení HP Officejet 7500 E910 (HKLM\...\{B1ECE042-5C2B-471D-B382-E85960971306}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2861624394-871130569-1612233255-1001_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Ekospol\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2861624394-871130569-1612233255-1001_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Ekospol\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2861624394-871130569-1612233255-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Ekospol\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2861624394-871130569-1612233255-1001_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Ekospol\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2861624394-871130569-1612233255-1001_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Ekospol\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2861624394-871130569-1612233255-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Ekospol\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {027E326D-A219-495E-A7CB-BBC83E152704} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-11-01] (Microsoft Corporation)
Task: {0E1E1347-8E37-4CDB-8897-953AD3F8FD39} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\MpCmdRun.exe
Task: {3B723886-0134-4739-AFA3-9BC9C96C2A08} - System32\Tasks\EPSON L1300 Series Update {DE41C75C-65A8-4BA4-BA9F-9234500E0AC8} => C:\windows\system32\spool\DRIVERS\x64\3\E_YTSLVE.EXE [2013-02-28] (SEIKO EPSON CORPORATION)
Task: {544F50CC-7CF8-4FF7-A818-4FAFE8D5C3D8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {633B69FE-D5B4-402A-8194-72A940451E60} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-06-06] (AVAST Software)
Task: {7E7C0B5E-5EAB-4453-9D2E-3B2F8A8073E1} - System32\Tasks\SafeZone scheduled Autoupdate 1450422716 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-08-09] (Avast Software)
Task: {7FD9EB1B-667D-4242-AAFD-E226CE5C5FD1} - System32\Tasks\MySQL\Installer\ManifestUpdate => C:\Program Files (x86)\MySQL\MySQL Installer for Windows\MySQLInstallerConsole.exe [2015-08-14] (Oracle Corporation)
Task: {985C5EF9-23BA-4B8C-BD5E-AE00A45E1F2E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2861624394-871130569-1612233255-1001UA => C:\Users\Ekospol\AppData\Local\Google\Update\GoogleUpdate.exe [2016-03-07] (Google Inc.)
Task: {A37C82FC-282A-47D2-9C1A-BD8FCF0E31A4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {AB3F5781-50DA-40DD-992C-08CF2E923F44} - System32\Tasks\Galerentannly Server => C:\Program Files (x86)\Qoshgerkegh\plujiing.exe
Task: {C0E6BFC2-E29D-40E1-B3D9-CD4A7FF9AFA0} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-11-01] (Microsoft Corporation)
Task: {D3CD3AD5-68E6-48D1-8832-13FBA25C02A3} - System32\Tasks\2349r938o1m109 => Rundll32.exe "C:\ProgramData\2349r938o1m109\2349r938o1m109.dll",romovr <==== ATTENTION
Task: {D6AE5166-F8F7-463D-A577-65017243FFF3} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2017-01-02] (AVAST Software)
Task: {DBA571A9-3BE9-4489-A398-163F305F9417} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2861624394-871130569-1612233255-1001Core => C:\Users\Ekospol\AppData\Local\Google\Update\GoogleUpdate.exe [2016-03-07] (Google Inc.)
Task: {E668584B-B5BA-47D8-9B0A-42F149151323} - System32\Tasks\EPSON L1300 Series Invitation {DE41C75C-65A8-4BA4-BA9F-9234500E0AC8} => C:\windows\system32\spool\DRIVERS\x64\3\E_YTSLVE.EXE [2013-02-28] (SEIKO EPSON CORPORATION)
Task: {E7F62DAE-085C-4B0E-B771-CAF295AB7430} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\windows\Tasks\EPSON L1300 Series Invitation {DE41C75C-65A8-4BA4-BA9F-9234500E0AC8}.job => C:\windows\system32\spool\DRIVERS\x64\3\E_YTSLVE.EXE
Task: C:\windows\Tasks\EPSON L1300 Series Update {DE41C75C-65A8-4BA4-BA9F-9234500E0AC8}.job => C:\windows\system32\spool\DRIVERS\x64\3\E_YTSLVE.EXE :/EXE:{DE41C75C-65A8-4BA4-BA9F-9234500E0AC8} /F:Update  SYSTEM ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Ekospol\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\9501e18d7c2ab92e\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 2"

==================== Loaded Modules (Whitelisted) ==============

2016-12-30 11:03 - 2014-03-22 14:48 - 02854400 _____ () C:\ProgramData\2349r938o1m109\2349r938o1m109.dll
2014-11-07 11:17 - 2016-05-24 08:51 - 00116416 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2009-07-14 00:57 - 2009-07-14 02:40 - 00069120 _____ () C:\windows\system32\BWContextHandler.dll
2016-08-23 07:54 - 2016-11-28 10:03 - 00216112 _____ () C:\Program Files\CyberGhost 6\MobileConcepts45.dll
2016-10-27 15:50 - 2016-11-28 10:02 - 00026160 _____ () C:\Program Files\CyberGhost 6\BugSplatDotNet.dll
2016-08-23 07:54 - 2016-11-28 10:02 - 00119856 _____ () C:\Program Files\CyberGhost 6\CyberGhost.RESTCommunicator.dll
2017-01-03 08:13 - 2017-01-03 08:13 - 00249856 _____ () C:\windows\TEMP\gD52B.tmp.exe
2013-08-09 18:11 - 2013-08-09 18:11 - 00607744 _____ () C:\windows\system32\spool\DRIVERS\x64\3\JobCapsA.dll
2017-01-02 11:44 - 2017-01-02 11:44 - 00169064 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2017-01-03 08:18 - 2017-01-03 08:18 - 03131344 _____ () C:\Program Files\AVAST Software\Avast\defs\17010200\algo.dll
2017-01-02 11:44 - 2017-01-02 11:44 - 00482928 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2017-01-03 08:23 - 2017-01-03 08:23 - 03069952 _____ () C:\Program Files\AVAST Software\Avast\defs\17010203\algo.dll
2014-08-08 06:44 - 2013-08-05 08:49 - 00627672 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
2013-08-05 23:48 - 2013-08-05 23:48 - 00016856 _____ () c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
2017-01-02 11:45 - 2017-01-02 11:45 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-02-20 02:51 - 2014-02-20 02:51 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Public\DRM:احتضان [48]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2861624394-871130569-1612233255-1001\...\blank -> blank

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2016-12-06 16:00 - 00000826 ____N C:\windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2861624394-871130569-1612233255-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Ekospol\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{A961AD24-9550-4D8A-A671-407D833BC001}] => c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe
FirewallRules: [{772A923A-076B-42E4-B5AE-68B97770DE60}] => c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
FirewallRules: [{CD9392EF-17B0-4894-AE1F-00EDB82B85D8}] => c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
FirewallRules: [{63102A6C-BB55-4F84-8DFD-505C682DE8AA}] => c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe
FirewallRules: [{8EFF6A3A-BBBC-4F60-A7FA-97033F479F88}] => c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe
FirewallRules: [{C4C1BD65-A00E-4E2A-A0D4-A6D516CE6D9A}] => c:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe
FirewallRules: [{8D1C58D6-A4D7-4868-BAA5-A923FB7206BE}] => C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{BC79006A-0C45-473A-A68C-E29ACD3AF2F8}] => C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{CFDA5AD4-E709-43B7-B2D8-AFA3244C6EE5}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{4331893A-8E53-4B99-846C-53954F1164D4}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{CA64620F-1802-41D4-A77B-EF3A5B486C05}] => C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [TCP Query User{CEE8D583-BDED-4DC6-B3C3-35202B73645D}C:\program files\totalcmd\totalcmd64.exe] => C:\program files\totalcmd\totalcmd64.exe
FirewallRules: [UDP Query User{A7249C15-9D76-4915-A548-139FD545BA5B}C:\program files\totalcmd\totalcmd64.exe] => C:\program files\totalcmd\totalcmd64.exe
FirewallRules: [{7ED96687-BC8F-4D6F-877C-5FE0BFA5913D}] => C:\Program Files\HP\HP Officejet 7500 E910\bin\FaxApplications.exe
FirewallRules: [{284D1E88-E983-4A6A-959D-E9B08C0E98A8}] => C:\Program Files\HP\HP Officejet 7500 E910\bin\DigitalWizards.exe
FirewallRules: [{516ECFF8-FB32-4D9E-AC0C-3B870E5C7B09}] => C:\Program Files\HP\HP Officejet 7500 E910\bin\SendAFax.exe
FirewallRules: [{AD8F4CEF-B3A6-47CD-98E4-FB04F6808EE8}] => C:\Program Files\HP\HP Officejet 7500 E910\Bin\DeviceSetup.exe
FirewallRules: [{5481D143-8ACE-45D1-AF92-7F5EF6482DA9}] => C:\Program Files\HP\HP Officejet 7500 E910\Bin\HPNetworkCommunicator.exe
FirewallRules: [{4A6F74C6-991C-4DD6-B38A-7911B7E39658}] => C:\Program Files\HP\HP Officejet 7500 E910\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{0ED20643-7393-410A-A2D1-FCB18A3D0B09}] => C:\Users\Ekospol\AppData\Local\Temp\nsj76CD.tmp\CnetInstaller-10773391.exe
FirewallRules: [{948BD711-2FF8-4F17-8AFF-5D7D6FC238F5}] => C:\Users\Ekospol\AppData\Local\Temp\nsj76CD.tmp\CnetInstaller-10773391.exe
FirewallRules: [{897C3CAF-E546-494C-B099-B0CD21C676D2}] => C:\Users\Ekospol\AppData\Local\Temp\nseD5AE.tmp\CnetInstaller-10773391.exe
FirewallRules: [{807D1C76-D62B-4718-A5C6-86BB726AD06F}] => C:\Users\Ekospol\AppData\Local\Temp\nseD5AE.tmp\CnetInstaller-10773391.exe
FirewallRules: [{DE3E1227-E68B-4E74-B4DB-3A458C70788E}] => C:\Program Files (x86)\Xi\NetXfer\NetTransport.exe
FirewallRules: [{16C20392-0E10-48C4-B4F4-B4EAE29C9E49}] => C:\Program Files (x86)\Xi\NetXfer\NetTransport.exe
FirewallRules: [TCP Query User{E8EFFF81-A059-4194-A5ED-0A3785C3AEB5}C:\program files (x86)\brackets\node.exe] => C:\program files (x86)\brackets\node.exe
FirewallRules: [UDP Query User{49003182-FF62-485F-BF4B-17CAA63F2863}C:\program files (x86)\brackets\node.exe] => C:\program files (x86)\brackets\node.exe
FirewallRules: [TCP Query User{F146CB93-8CCF-4016-A0AF-8D49EB1C0973}C:\users\ekospol\appdata\local\programs\knime_2.11.0\knime.exe] => C:\users\ekospol\appdata\local\programs\knime_2.11.0\knime.exe
FirewallRules: [UDP Query User{B19EF403-F7B1-4CEB-9919-725074F704C3}C:\users\ekospol\appdata\local\programs\knime_2.11.0\knime.exe] => C:\users\ekospol\appdata\local\programs\knime_2.11.0\knime.exe
FirewallRules: [TCP Query User{4E960018-5664-496B-9134-67ADC9787AD8}C:\program files (x86)\cobian backup 11\cbremotemanager.exe] => C:\program files (x86)\cobian backup 11\cbremotemanager.exe
FirewallRules: [UDP Query User{AC550656-5832-4CDD-A345-7E6713D9DF4D}C:\program files (x86)\cobian backup 11\cbremotemanager.exe] => C:\program files (x86)\cobian backup 11\cbremotemanager.exe
FirewallRules: [TCP Query User{7279BD53-09E9-49FC-B6C6-A0D12A2BF3A3}C:\program files\cloveretl designer community\jdk1.7.0_51_64\bin\javaw.exe] => C:\program files\cloveretl designer community\jdk1.7.0_51_64\bin\javaw.exe
FirewallRules: [UDP Query User{9CBF1E0B-087C-41A3-B3A4-B9CF574B3248}C:\program files\cloveretl designer community\jdk1.7.0_51_64\bin\javaw.exe] => C:\program files\cloveretl designer community\jdk1.7.0_51_64\bin\javaw.exe
FirewallRules: [TCP Query User{63EAED5F-6427-4ADF-A2C5-9AEE97CE0773}C:\program files (x86)\web2mine\easy web extract\ezwebextract.exe] => C:\program files (x86)\web2mine\easy web extract\ezwebextract.exe
FirewallRules: [UDP Query User{05512A3D-F4DA-4947-B14A-6AB64332A3D2}C:\program files (x86)\web2mine\easy web extract\ezwebextract.exe] => C:\program files (x86)\web2mine\easy web extract\ezwebextract.exe
FirewallRules: [TCP Query User{EE774BBD-EAC0-4996-98E8-555E43D00EA7}C:\users\ekospol\downloads\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-win32-x86.exe] => C:\users\ekospol\downloads\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-win32-x86.exe
FirewallRules: [UDP Query User{9C37D644-2930-4ACF-9723-E4C824857AB5}C:\users\ekospol\downloads\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-win32-x86.exe] => C:\users\ekospol\downloads\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-r99271-v5.2.2\jetlxcmmty-win32-x86.exe
FirewallRules: [TCP Query User{B4BF1FB2-A4D2-4F0F-ADC8-FCFB26B6E9E3}C:\program files\adobe\adobe edge animate cc 2015\edgeanimate.exe] => C:\program files\adobe\adobe edge animate cc 2015\edgeanimate.exe
FirewallRules: [UDP Query User{E1E71FB9-54AC-4402-997C-3F75C82AF073}C:\program files\adobe\adobe edge animate cc 2015\edgeanimate.exe] => C:\program files\adobe\adobe edge animate cc 2015\edgeanimate.exe
FirewallRules: [TCP Query User{44971EFB-A632-4075-8D53-1A69B243FB66}G:\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe] => G:\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe
FirewallRules: [UDP Query User{96A645F3-A00D-4084-99AB-A52EA1CD68D7}G:\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe] => G:\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe
FirewallRules: [TCP Query User{EBD3C430-1E01-4322-AB49-3A48001D5E2B}G:\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe] => G:\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe
FirewallRules: [UDP Query User{3E65689C-8EFD-4692-A1C3-978E76B784FA}G:\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe] => G:\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe
FirewallRules: [TCP Query User{CD5C4C37-B1F5-4E3A-BEEE-F97140BF3BEA}G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe] => G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe
FirewallRules: [UDP Query User{DBC0642F-CAC2-47B1-AFFC-8186CE9D0C74}G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe] => G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x32 8.52 (portable)\totalcmd.exe
FirewallRules: [TCP Query User{369759A4-C38E-44A0-8812-E31183B47341}G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe] => G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe
FirewallRules: [UDP Query User{6179EF60-34B6-4EBD-A608-129D649B6EF0}G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe] => G:\sw\total commander_x32 x64 8.52 (portable)\total commander_x64 8.52 (portable)\totalcmd64.exe
FirewallRules: [TCP Query User{8E532B5A-E455-449B-B9FF-C0ACF15CE70E}C:\program files\totalcmd\totalcmd.exe] => C:\program files\totalcmd\totalcmd.exe
FirewallRules: [UDP Query User{D5F869D0-1888-40B6-9E8A-6BCD4A01DB2F}C:\program files\totalcmd\totalcmd.exe] => C:\program files\totalcmd\totalcmd.exe
FirewallRules: [{91413164-7E60-4613-BEE3-346532AB8912}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{8E31C85F-BC5D-4E1E-8DCE-5C9E133FC3AA}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{F9A2641E-92D3-48B0-B7B3-F6E6754AC9BD}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{3A4E76C3-0191-438D-B187-7215B9E92E95}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{6747085C-9FED-4B61-A690-446FF8A50CDA}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{2BEFBC0F-63D3-4D6D-9AAE-9D6924B4AE0B}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{9B20F709-BDDC-4F15-9D5C-CB7B7989AAD0}] => C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{C5BD35E6-7999-4990-881C-A34871618936}] => C:\windows\system32\rundll32.exe
FirewallRules: [{6453C762-9FB9-4182-BE9B-D6ECF94984EA}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{A14F1525-364D-4FA1-993C-1C9A262CC32C}] => C:\Windows\System32\rundll32.exe
FirewallRules: [{37A4839A-15DE-4A9C-A001-C288E7C4F8D8}] => C:\Windows\System32\rundll32.exe
FirewallRules: [{41D4D3D3-C2D9-4DC8-95B3-F84A8B904D4B}] => C:\Windows\System32\rundll32.exe
FirewallRules: [{4D0737C8-F87C-48AC-81CF-75BAEF35BFDA}] => C:\Windows\System32\rundll32.exe

==================== Restore Points =========================

23-12-2016 10:55:29 JRT Pre-Junkware Removal
25-12-2016 04:26:56 Windows Update
28-12-2016 09:30:56 Windows Update
28-12-2016 10:25:57 Operace obnovení
02-01-2017 11:47:40 Instalace balíčku ovladače zařízení: Avast Síťová služba
03-01-2017 08:19:07 Instalace balíčku ovladače zařízení: Avast Síťová služba

==================== Faulty Device Manager Devices =============

Name: Intel(R) Management Engine Interface 
Description: Intel(R) Management Engine Interface 
Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel
Service: MEIx64
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (01/03/2017 08:37:24 AM) (Source: RpcNs) (EventID: 2) (User: )
Description: Event-ID 2

Error: (01/02/2017 11:47:34 AM) (Source: VSS) (EventID: 12298) (User: )
Description: Chyba služby Stínová kopie svazku: Po dobu vytváření stínové kopie na svazku \\?\Volume{c3edc6c5-4ed8-11e4-b77f-806e6f6e6963}\ nelze uchovat vstupně-výstupní zápisy.
Index svazku v sadě stínové kopie: 0. Podrobnosti o chybě: Otevřeno[0x00000000, Operace byla dokončena úspěšně.
], Zapsáno[0x00000000, Operace byla dokončena úspěšně.
], Uvolněno[0x80042314, Časový limit zprostředkovatele stínové kopie vypršel při přidržení zápisů na svazek, jehož stínová kopie je vytvářena. To je pravděpodobně způsobeno nadměrnou aktivitou aplikace nebo systémové služby na svazku. Opakujte akci později, až dojde ke snížení aktivity na svazku.
], Spuštěno[0x00000000, Operace byla dokončena úspěšně.
].


Operace:
   Spouštění asynchronní operace

Kontext:
   Aktuální stav: DoSnapshotSet

Error: (01/02/2017 11:47:34 AM) (Source: VSS) (EventID: 12310) (User: )
Description: Chyba služby Stínová kopie svazku: Stínovou kopii nelze zapsat – časový limit operace vypršel.
Kontext chyby: DeviceIoControl(\\?\Volume{c3edc6c5-4ed8-11e4-b77f-806e6f6e6963} - 0000000000000134,0x0053c010,000000000033B000,0,000000000033C010,4096,[0]).


Operace:
   Zápis stínových kopií

Kontext:
   Kontext spuštění: System Provider

Error: (01/02/2017 08:57:11 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Portable_PS_8.exe, verze: 0.1.0.0, časové razítko: 0x43d67530
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc000041d
Posun chyby: 0x7772bc61
ID chybujícího procesu: 0x6a8
Čas spuštění chybující aplikace: 0x01d264cdd1775306
Cesta k chybující aplikaci: I:\sw\PortablePhotoshop8\Portable_PS_8.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 10617a93-d0c1-11e6-8f8b-a0d3c1441637

Error: (12/30/2016 12:50:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Portable_PS_8.exe, verze: 0.1.0.0, časové razítko: 0x43d67530
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc000041d
Posun chyby: 0x772ebc61
ID chybujícího procesu: 0x1508
Čas spuštění chybující aplikace: 0x01d26292eafa73e4
Cesta k chybující aplikaci: I:\sw\PortablePhotoshop8\Portable_PS_8.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 29db9b51-ce86-11e6-b40d-a0d3c1441637

Error: (12/29/2016 02:36:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Portable_PS_8.exe, verze: 0.1.0.0, časové razítko: 0x43d67530
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc000041d
Posun chyby: 0x76f5bc61
ID chybujícího procesu: 0x1dd8
Čas spuštění chybující aplikace: 0x01d261d885ab8a70
Cesta k chybující aplikaci: I:\sw\PortablePhotoshop8\Portable_PS_8.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: c5fc9769-cdcb-11e6-9624-a0d3c1441637

Error: (12/29/2016 12:20:55 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Portable_PS_8.exe, verze: 0.1.0.0, časové razítko: 0x43d67530
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc000041d
Posun chyby: 0x76f5bc61
ID chybujícího procesu: 0x1104
Čas spuštění chybující aplikace: 0x01d261c59e7babd4
Cesta k chybující aplikaci: I:\sw\PortablePhotoshop8\Portable_PS_8.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: dc9e8951-cdb8-11e6-9624-a0d3c1441637

Error: (12/29/2016 11:16:02 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Portable_PS_8.exe, verze: 0.1.0.0, časové razítko: 0x43d67530
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc000041d
Posun chyby: 0x76f5bc61
ID chybujícího procesu: 0x478
Čas spuštění chybující aplikace: 0x01d261bc8d583658
Cesta k chybující aplikaci: I:\sw\PortablePhotoshop8\Portable_PS_8.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: cc73a880-cdaf-11e6-9624-a0d3c1441637

Error: (12/29/2016 11:02:02 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Portable_PS_8.exe, verze: 0.1.0.0, časové razítko: 0x43d67530
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc000041d
Posun chyby: 0x76f5bc61
ID chybujícího procesu: 0x1688
Čas spuštění chybující aplikace: 0x01d261ba97e4ee88
Cesta k chybující aplikaci: I:\sw\PortablePhotoshop8\Portable_PS_8.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: d7a4671d-cdad-11e6-9624-a0d3c1441637

Error: (12/29/2016 07:53:00 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Portable_PS_8.exe, verze: 0.1.0.0, časové razítko: 0x43d67530
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc000041d
Posun chyby: 0x7738bc61
ID chybujícího procesu: 0xa68
Čas spuštění chybující aplikace: 0x01d261a03018499b
Cesta k chybující aplikaci: I:\sw\PortablePhotoshop8\Portable_PS_8.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 6f797763-cd93-11e6-8de4-a0d3c1441637


System errors:
=============
Error: (01/03/2017 08:35:28 AM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: Byla vygenerována následující výstraha o závažné chybě: 40. Stav interní chyby: 252

Error: (01/03/2017 08:35:25 AM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: Byla vygenerována následující výstraha o závažné chybě: 40. Stav interní chyby: 252

Error: (01/03/2017 08:33:33 AM) (Source: Schannel) (EventID: 4120) (User: NT AUTHORITY)
Description: Byla vygenerována následující výstraha o závažné chybě: 10. Stav interní chyby: 10

Error: (01/03/2017 08:14:37 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID 
{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}
 a APPID 
{344ED43D-D086-4961-86A6-1106F4ACAD9B}
 uživateli NT AUTHORITY\SYSTEM SID (S-1-5-18) z adresy LocalHost (pomocí LRPC). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (01/02/2017 07:59:39 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID 
{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}
 a APPID 
{344ED43D-D086-4961-86A6-1106F4ACAD9B}
 uživateli NT AUTHORITY\SYSTEM SID (S-1-5-18) z adresy LocalHost (pomocí LRPC). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (01/02/2017 07:59:02 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba HP Device Access Manager Usage Service neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (01/02/2017 07:59:02 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby HP Device Access Manager Usage Service bylo dosaženo časového limitu (30000 ms).

Error: (12/30/2016 11:35:42 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID 
{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}
 a APPID 
{344ED43D-D086-4961-86A6-1106F4ACAD9B}
 uživateli NT AUTHORITY\SYSTEM SID (S-1-5-18) z adresy LocalHost (pomocí LRPC). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (12/30/2016 11:30:39 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID 
{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}
 a APPID 
{344ED43D-D086-4961-86A6-1106F4ACAD9B}
 uživateli NT AUTHORITY\SYSTEM SID (S-1-5-18) z adresy LocalHost (pomocí LRPC). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (12/30/2016 11:30:35 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba HP Device Access Manager Usage Service neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.


CodeIntegrity:
===================================
  Date: 2016-12-12 11:53:53.706
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:53.296
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:53.256
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_96f694b33cfd42bf\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:53.246
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:52.786
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:52.756
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\x86_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_47662a2706182d6f\wermgr.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:52.366
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:52.346
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:52.276
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingfaults_31bf3856ad364e35_10.0.10074.1_none_f3153036f55ab3f5\werfault.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.

  Date: 2016-12-12 11:53:52.266
  Description: Windows is unable to verify the integrity of the file \Device\HarddiskVolume2\$Windows.~BT\Updates\Critical\8e08ca47-f6ba-409d-82de-698e324c0004\amd64_microsoft-windows-errorreportingcore_31bf3856ad364e35_10.0.10074.1_none_a384c5aabe759ea5\wermgr.exe because the signing certificate has been revoked.  Check with the publisher to see if a new signed version of the kernel module is available.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i3-4150 CPU @ 3.50GHz
Percentage of memory in use: 41%
Total physical RAM: 4024.17 MB
Available physical RAM: 2359.99 MB
Total Virtual: 8046.52 MB
Available Virtual: 5796.72 MB

==================== Drives ================================

Drive c: (Windows ) (Fixed) (Total:452.47 GB) (Free:313.09 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (HP_RECOVERY) (Fixed) (Total:12.19 GB) (Free:12.08 GB) NTFS
Drive e: (HP_TOOLS) (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32
Drive z: (marketing) (Network) (Total:2598.94 GB) (Free:586.35 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 0334FB2B)
Partition 1: (Active) - (Size=1 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=452.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=12.2 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=100 MB) - (Type=0C)

==================== End of Addition.txt ============================