﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version:10-01-2015 01
Ran by Pavla (2016-01-16 23:37:07)
Running from C:\Users\Pavla\Downloads
Windows 8.1 (X64) (2013-12-25 16:03:23)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2757677241-3423558724-1332677612-500 - Administrator - Disabled)
Guest (S-1-5-21-2757677241-3423558724-1332677612-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2757677241-3423558724-1332677612-1003 - Limited - Enabled)
Pavla (S-1-5-21-2757677241-3423558724-1332677612-1001 - Administrator - Enabled) => C:\Users\Pavla

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Panda Free Antivirus (Enabled - Out of date) {AAF74A68-8713-CDF1-004F-30003398BE9E}
AV: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Out of date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Panda Free Antivirus (Enabled - Out of date) {1196AB8C-A129-C27F-3AFF-0B72481FF423}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: avast! Antivirus (Enabled - Out of date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
FW: Panda Firewall (Enabled) {92CCCB4D-CD7C-CCA9-2B10-9935CD4BF9E5}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.267 - Adobe Systems Incorporated)
Adobe Flash Player 20 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 20.0.0.267 - Adobe Systems Incorporated)
Adobe Photoshop CS2 (HKLM-x32\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0409-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.)
Advertising Center (x32 Version: 0.0.0.1 - Nero AG) Hidden
Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 4.8.1245.73583 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (x32 Version: 4.8.1245.73583 - Alcor Micro Corp.) Hidden
Aloha TriPeaks (x32 Version: 2.2.0.98 - WildTangent) Hidden
ArcSoft Panorama Maker 6 (HKLM-x32\...\{DABFD34E-BE68-4BC6-9254-5D7A7FF76B99}) (Version: 6.0.8.85 - ArcSoft)
Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Atheros)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 11.1.2245 - AVAST Software)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Bookmark Checker (HKLM-x32\...\{88E96402-3BBD-02D9-0A36-6FB806AEE04E}) (Version:  - )
CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform)
CleEaarNIuCeeBrowse (HKLM-x32\...\{604B50C8-59DF-C3D0-EC52-CD17D7D40A30}) (Version:  - )
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Diablo III (HKLM-x32\...\Diablo III) (Version:  - Blizzard Entertainment)
Dropbox (HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\Dropbox) (Version: 2.6.24 - Dropbox, Inc.)
DTS Sound (HKLM-x32\...\{2DFA9084-CEB3-4A48-B9F7-9038FEF1B8F4}) (Version: 1.01.2700 - DTS, Inc.)
Duke Nukem 1+2 (HKLM-x32\...\GOGPACKDUKENUKEM12_is1) (Version: 2.0.0.5 - GOG.com)
Empress of the Deep - The Darkest Secret (x32 Version: 2.2.0.98 - WildTangent) Hidden
Emulator Starter (HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\32bce9526e87661e) (Version: 1.0.0.141 - Free Game Empire)
File Association Helper (HKLM\...\{572D0504-2C67-4016-801F-D70879A3026A}) (Version: 1.1.6.53763 - WinZip Computing International, LLC)
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fotolab Fotosvet (HKLM-x32\...\Fotolab Fotosvet) (Version: 5.1.7 - CEWE Stiftung u Co. KGaA)
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.111 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.17 - Google Inc.) Hidden
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
IDT Audio Driver (HKLM\...\{588A747E-CFF6-46B3-9207-CD754F9473AF}) (Version: 6.10.6491.0 - IDT)
Infinite HD™ App (HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\Octoshape Streaming Services) (Version:  - Octoshape ApS)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.14.1724 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3282 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation)
Island Tribe (x32 Version: 2.2.0.98 - WildTangent) Hidden
Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.510 - Oracle)
Java 7 Update 55 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417055FF}) (Version: 7.0.550 - Oracle)
Jewel Quest Solitaire 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
KMSnano 24 (HKLM\...\KMSnano 24_is1) (Version: KMSnano 24 - )
Magic Academy (x32 Version: 2.2.0.98 - WildTangent) Hidden
Malwarebytes Anti-Malware verze 2.1.4.1018 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.4.1018 - Malwarebytes Corporation)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Microsoft Office 365 Home Premium - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 15.0.4551.1512 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\OneDriveSetup.exe) (Version: 17.3.5930.0814 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Preview Redistributable (x64) - 12.0.20617 (HKLM-x32\...\{448652c1-f5f3-4230-98c6-68c10c88b1fb}) (Version: 12.0.20617.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Preview Redistributable (x86) - 12.0.20617 (HKLM-x32\...\{1f407217-9aec-4146-8504-e64ac959c534}) (Version: 12.0.20617.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 38.0.5 (x86 cs) (HKLM-x32\...\Mozilla Firefox 38.0.5 (x86 cs)) (Version: 38.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 38.0.5 - Mozilla)
MV2Player (remove only) (HKLM-x32\...\MV2Player) (Version:  - )
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nero 9 Essentials (HKLM-x32\...\{fd6b1fd5-14bd-4103-b432-823a59d3ad38}) (Version:  - Nero AG)
Nikon Message Center 2 (HKLM-x32\...\{B014EE44-9197-4513-9613-71E6EB1B514E}) (Version: 2.1.0 - Nikon)
Nikon Movie Editor (HKLM-x32\...\{5CAD3393-EEC0-44CE-9F93-BCAA365B77FB}) (Version: 2.8.3 - Nikon)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4551.1512 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4551.1512 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4551.1512 - Microsoft Corporation) Hidden
Opera Stable 34.0.2036.47 (HKLM-x32\...\Opera 34.0.2036.47) (Version: 34.0.2036.47 - Opera Software)
Panda Devices Agent (x32 Version: 1.03.05 - Panda Security) Hidden
Panda Devices Agent (x32 Version: 1.06.00 - Panda Security) Hidden
Panda Free Antivirus (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 16.00.01.0000 - Panda Security)
PDF Architect (HKLM-x32\...\{064A929A-4DE8-40CF-A901-BD40C14E4D25}) (Version: 1.1.83.9982 - pdfforge GmbH)
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.2 - pdfforge)
Peggle Nights (x32 Version: 2.2.0.98 - WildTangent) Hidden
Picture Control Utility x64 (HKLM\...\{11953C65-BB4E-4CA4-B0F0-2600A4B20040}) (Version: 1.4.16 - Nikon)
Pinnacle VideoSpin (HKLM-x32\...\{FEB15887-0932-4D2D-BB85-6AC03FBF1AA8}) (Version: 2.0.0.669 - Pinnacle Systems)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden
Poster Forge 1.01 (HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\Poster Forge) (Version:  - )
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.300 - Qualcomm Atheros)
Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.21 - Qualcomm Atheros Inc.)
RollerCoaster Tycoon Deluxe (HKLM-x32\...\GOGPACKRTC_is1) (Version: 2.1.0.18 - GOG.com)
RonyaSoft Poster Designer (Poster Forge) 2.01 (HKLM-x32\...\RonyaSoft Poster Designer (Poster Forge)) (Version: 2.01 - RonyaSoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{7F6C4883-A18C-459A-82C1-A2F9403F2DA6}) (Version:  - Microsoft)
Shape Collage (HKLM-x32\...\ShapeCollage) (Version:  - Shape Collage Inc.)
Spotify (HKLM-x32\...\Spotify) (Version: 0.8.5.1333.g822e0de8 - Spotify AB)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
StepMania (remove only) (HKLM-x32\...\StepMania) (Version:  - )
StepMania 4 alpha 4 (remove only) (HKLM-x32\...\StepMania 4) (Version:  - )
StepMania v5.0 beta 3 (remove only) (HKLM-x32\...\StepMania 5) (Version:  - StepMania Team)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.10.51 - Synaptics Incorporated)
TOSHIBA Addendum (HKLM-x32\...\{CE0374A6-B204-4336-8293-63FBB1DADBF4}) (Version: 1.00 - TOSHIBA)
TOSHIBA Desktop Assist (HKLM\...\{95CCACF0-010D-45F0-82BF-858643D8BC02}) (Version: 1.02.01.6407 - Toshiba Corporation)
TOSHIBA Display Utility (HKLM\...\{84FA4D2D-4273-4C66-BD3D-ADD3FE48DFA2}) (Version: 1.1.5.0 - Toshiba Corporation)
TOSHIBA eco Utility (HKLM\...\{5944B9D4-3C2A-48DE-931E-26B31714A2F7}) (Version: 2.2.0.6404 - Toshiba Corporation)
TOSHIBA Function Key (HKLM\...\{16562A90-71BC-41A0-B890-D91B0C267120}) (Version: 1.1.0001.6403 - Toshiba Corporation)
TOSHIBA Manuals (HKLM-x32\...\{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}) (Version: 10.10 - TOSHIBA)
TOSHIBA Password Utility (HKLM-x32\...\InstallShield_{78931270-BC9E-441A-A52B-73ECD4ACFAB5}) (Version: 3.00.344 - Toshiba Corporation)
TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 1.9.09.6400 - Toshiba Corporation)
TOSHIBA Recovery Media Creator (HKLM-x32\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 3.1.02.55065006 - Toshiba Corporation)
TOSHIBA Service Station (HKLM\...\{FBFCEEA5-96EA-4C8E-9262-43CBBEBAE413}) (Version: 2.6.8 - Toshiba Corporation)
TOSHIBA System Driver (HKLM-x32\...\{1E6A96A1-2BAB-43EF-8087-30437593C66C}) (Version: 1.00.0030 - Toshiba Corporation)
TOSHIBA System Settings (HKLM-x32\...\{05A55927-DB9B-4E26-BA44-828EBFF829F0}) (Version: 1.1.2.32001 - Toshiba Corporation)
Toshiba TEMPRO (HKLM-x32\...\{F76F5214-83A8-4030-80C9-1EF57391D72A}) (Version: 4.5.0 - Toshiba Europe GmbH)
TOSHIBA VIDEO PLAYER (HKLM\...\{FF07604E-C860-40E9-A230-E37FA41F103A}) (Version: 5.3.27.102 - Toshiba Corporation)
Update for Skype for Business 2015 (KB2889853) 32-Bit Edition (HKLM-x32\...\{90150000-012B-0405-0000-0000000FF1CE}_Office15.PROPLUSR_{6B99320D-817F-42CE-B45E-5C9AD42678E3}) (Version:  - Microsoft)
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
ViewNX 2 (HKLM\...\{635BE602-BB9C-4C59-8CC5-93F9366E8A21}) (Version: 2.8.3 - Nikon)
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden
VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.3.0 - WildTangent)
WildTangent Games App (Toshiba Games) (x32 Version: 4.0.9.7 - WildTangent) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation)
WinRAR 5.01 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
WinZip 18.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240DF}) (Version: 18.0.10661 - WinZip Computing, S.L. )
Wondershare PDF Editor(Build 3.6.0) (HKLM-x32\...\{75BAE677-F65A-45A4-9931-363FE0CF5E58}_is1) (Version: 3.6.0.9 - Wondershare Software Co.,Ltd.)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Pavla\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Pavla\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Pavla\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Pavla\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Pavla\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00FED0AB-35BB-4C34-A2FD-3C50138ACC3D} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-11-22] (Microsoft Corporation)
Task: {03B86559-CFE3-4CFF-BD81-626D2B998890} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-01-16] (Microsoft Corporation)
Task: {04247C40-9704-4AC5-9C23-BB9AAFA0419D} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-01-16] (AVAST Software)
Task: {06F71154-2FBC-4556-95EA-81756BF89CAD} - \{C44A2BD7-F33A-4493-8EDB-CB81E10C805A} -> No File <==== ATTENTION
Task: {0F7D36A7-7803-4998-AFC6-0E727D655B0C} - \User_Feed_Synchronization-{E67238D3-111A-45B7-A392-F0CB32C13224} -> No File <==== ATTENTION
Task: {1D3B0BA9-28AE-4D9B-A840-9B2AC6961E1C} - System32\Tasks\Toshiba\CommonNotifier => C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe [2013-07-19] (Toshiba Europe GmbH)
Task: {2029CB31-70A6-4F01-A362-A9ADE62E7218} - \Trigger KMS Activation -> No File <==== ATTENTION
Task: {3AC0DA81-3416-4F15-9B0C-2F137074FCC5} - \{9633469B-4741-477B-AAFF-C21F3C3C5CFA} -> No File <==== ATTENTION
Task: {40D77A27-B61E-4668-A92F-5B5CE8B46399} - \Microsoft OneDrive Auto Update Task-S-1-5-21-2757677241-3423558724-1332677612-1001 -> No File <==== ATTENTION
Task: {4E1CFE6A-7A3D-4108-A29C-0F0439F5B1B8} - \Optimize Start Menu Cache Files-S-1-5-21-2757677241-3423558724-1332677612-500 -> No File <==== ATTENTION
Task: {4F1F0CFA-B68E-40E0-90F7-6FF025588C4B} - \AutoKMS -> No File <==== ATTENTION
Task: {55BF380D-50E6-46F5-A2C2-3E57192AEB6E} - \Resolution+ Setting Task -> No File <==== ATTENTION
Task: {58D7E1D0-DEFE-45B4-9024-FC890410D0EA} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_20_0_0_267_pepper.exe [2016-01-16] (Adobe Systems Incorporated)
Task: {5AF2DFBC-BBD9-4C91-A748-0E05CB0DC594} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.)
Task: {5EE7D71E-3299-4D75-8454-06D949F35094} - System32\Tasks\TOSHIBA\Service Station => C:\Program Files\TOSHIBA\Toshiba Service Station\ToshibaServiceStation.exe [2013-07-31] (TOSHIBA Corporation)
Task: {66322F08-C9AA-4ED7-B335-254A83BED29B} - \CCleanerSkipUAC -> No File <==== ATTENTION
Task: {6A556D7B-3BE4-47DA-B37E-ED83B65BE260} - System32\Tasks\Opera scheduled Autoupdate 1441650727 => C:\Program Files (x86)\Opera\launcher.exe [2016-01-08] (Opera Software)
Task: {75D5E061-2080-4ACE-90C7-E842E4B99451} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-22] (Microsoft Corporation)
Task: {78ED34BF-F63A-4FAE-A97A-3CF6ECC3DB2E} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe
Task: {7BA3158B-C99B-4C1A-97A3-978B9313C1F3} - \Synaptics TouchPad Enhancements -> No File <==== ATTENTION
Task: {90CAA75C-F4B8-4691-9001-5AE645EC8264} - \Windows Defrag -> No File <==== ATTENTION
Task: {AC328EAF-C1D7-4260-9986-FC93BE66C888} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-22] (Microsoft Corporation)
Task: {B3C618EB-E36F-4F17-BFB8-8400960AC180} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-01-16] (AVAST Software)
Task: {B7A5D034-D3C1-450B-AEDB-20D2602AEDD8} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
Task: {BA48FCCD-F364-42BF-B684-E7B4DCC4D3D1} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
Task: {C1312C56-17DC-427B-8BDF-1782C4AA7E74} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-10-31] (Microsoft Corporation)
Task: {C7168BAD-3E83-4406-A43A-13F8E3CA061B} - \Upload Defender Job -> No File <==== ATTENTION
Task: {C7E35841-A588-4C65-8098-DE1E88130F95} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-07] (Google Inc.)
Task: {D40BD2BF-AB93-40A7-B82B-7DEE009626DB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-16] (Adobe Systems Incorporated)
Task: {EB1CE69E-C59F-4D76-A4FB-026D9FEA735C} - System32\Tasks\avastBCLRestart_chrome.exe => Chrome.exe 
Task: {F287AC9D-7823-4E6C-9E39-75448171E391} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.)
Task: {F771D8CA-7DA7-4DB2-99AD-45EF798B0526} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-07] (Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_20_0_0_267_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Chrome Cleanup Tool logs upload retry.job => C:\Users\Pavla\AppData\Local\Temp\E8A7.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d1508d9a4a428c.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2013-12-26 07:16 - 2013-08-23 14:45 - 00377512 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2rui.dll
2013-09-19 18:33 - 2013-08-12 18:52 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2012-07-19 03:38 - 2012-07-19 03:38 - 00020904 _____ () C:\Program Files\TOSHIBA\Hotkey\SmoothView.dll
2016-01-16 22:20 - 2016-01-16 22:20 - 00103888 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2016-01-16 22:20 - 2016-01-16 22:20 - 00125512 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-01-16 22:20 - 2016-01-16 22:20 - 02990080 _____ () C:\Program Files\AVAST Software\Avast\defs\15110499\algo.dll
2016-01-16 22:20 - 2016-01-16 22:20 - 00469008 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2016-01-16 22:33 - 2016-01-16 22:33 - 02818048 _____ () C:\Program Files\AVAST Software\Avast\defs\16011603\algo.dll
2013-04-12 18:23 - 2013-04-12 18:23 - 00612664 _____ () C:\Program Files (x86)\Panda Security\Panda Security Protection\SQLite3.dll
2015-09-08 19:33 - 2014-05-13 11:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2015-09-08 19:33 - 2014-05-13 11:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2015-09-08 19:33 - 2014-05-13 11:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2015-09-08 19:33 - 2012-08-23 09:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2015-09-08 19:33 - 2012-04-03 16:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2014-02-23 18:20 - 2013-07-24 09:24 - 00137728 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2016-01-16 22:20 - 2016-01-16 22:20 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2016-01-16 18:44 - 2016-01-12 17:35 - 01590088 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.111\libglesv2.dll
2016-01-16 18:44 - 2016-01-12 17:35 - 00087880 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.111\libegl.dll
2013-11-14 19:15 - 2013-09-04 01:52 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2016-01-16 17:44 - 2016-01-08 07:26 - 61565560 _____ () C:\Program Files (x86)\Opera\34.0.2036.47\opera.dll
2016-01-16 17:44 - 2016-01-08 07:26 - 01983096 _____ () C:\Program Files (x86)\Opera\34.0.2036.47\libglesv2.dll
2016-01-16 17:44 - 2016-01-08 07:26 - 00081528 _____ () C:\Program Files (x86)\Opera\34.0.2036.47\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service"

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com

There are 7866 more sites.

IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\...\123simsen.com -> www.123simsen.com

There are 7866 more sites.


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 14:25 - 2015-09-08 20:04 - 00450771 ____R C:\Windows\system32\Drivers\etc\hosts

127.0.0.1	www.007guard.com
127.0.0.1	007guard.com
127.0.0.1	008i.com
127.0.0.1	www.008k.com
127.0.0.1	008k.com
127.0.0.1	www.00hq.com
127.0.0.1	00hq.com
127.0.0.1	010402.com
127.0.0.1	www.032439.com
127.0.0.1	032439.com
127.0.0.1	www.0scan.com
127.0.0.1	0scan.com
127.0.0.1	1000gratisproben.com
127.0.0.1	www.1000gratisproben.com
127.0.0.1	1001namen.com
127.0.0.1	www.1001namen.com
127.0.0.1	100888290cs.com
127.0.0.1	www.100888290cs.com
127.0.0.1	www.100sexlinks.com
127.0.0.1	100sexlinks.com
127.0.0.1	10sek.com
127.0.0.1	www.10sek.com
127.0.0.1	www.1-2005-search.com
127.0.0.1	1-2005-search.com
127.0.0.1	123fporn.info
127.0.0.1	www.123fporn.info
127.0.0.1	123haustiereundmehr.com
127.0.0.1	www.123haustiereundmehr.com
127.0.0.1	123moviedownload.com
127.0.0.1	www.123moviedownload.com

There are 15463 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2757677241-3423558724-1332677612-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Pavla\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\dscn2525.jpg
DNS Servers: 217.170.96.24 - 217.170.96.2
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{4DB0514A-BCD3-4301-AAEA-107C2D63B399}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{9E2B8E66-DA75-47D5-8F43-CD949972E95B}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{525BB892-8E10-49CA-8CEC-F59CAF8394BC}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{28C68800-6C90-4C16-BF60-E7513E6E13D9}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{508B9B03-1E37-4302-83E9-59F099C55D66}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [{701CBB07-40C8-40E1-8B2D-A896D4AB91BB}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{94B40D01-F1B9-40A5-ABF8-925A6C2B67FA}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{9D70DC01-24EA-43C3-8244-1FBCE3C23F90}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{37AA5A39-77A2-488A-B2E5-40C26268A14A}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{046E9879-9DF0-49BE-AA3B-A6A11ADBF43E}] => (Allow) C:\Program Files\KMSnano\qemu-system-i386.exe
FirewallRules: [{14864A44-520E-4750-BF2B-E7CD0EEA1356}] => (Allow) C:\Program Files\KMSnano\qemu-system-i386.exe
FirewallRules: [TCP Query User{E4FB2B5F-004F-4C06-B0E9-4494E05F39FB}C:\program files (x86)\stepmania 4\program\stepmania.exe] => (Block) C:\program files (x86)\stepmania 4\program\stepmania.exe
FirewallRules: [UDP Query User{1020EA9E-1844-40D4-8CCE-7A3D3C6540AD}C:\program files (x86)\stepmania 4\program\stepmania.exe] => (Block) C:\program files (x86)\stepmania 4\program\stepmania.exe
FirewallRules: [{FAF864A6-D078-4867-BD3B-C84A5C2F4517}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{1B1E9D33-ED5B-4AFD-A667-C86B3122DA60}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{C97BAE22-BD67-4AED-A3A7-99E48E0219A5}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
FirewallRules: [{BD54B5A2-0B69-4A85-AEC2-EA7CEE456220}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
FirewallRules: [{19E9D4F0-7E04-40B4-816B-060A433EA61E}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
FirewallRules: [{E8622146-BCBE-4ABE-BC4F-194C2470ACBD}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
FirewallRules: [{3F56A7FE-0CB9-465F-9E22-F22A3A25B8F9}] => (Allow) C:\Users\Pavla\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{3570807E-0699-405A-AC8A-12E2899FF8D7}] => (Allow) C:\Users\Pavla\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{93E94B24-0A27-4C6D-9B4E-433B35102E46}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{B1D42ECB-2766-47C6-BD88-91EF3AACFD49}] => (Allow) LPort=2869
FirewallRules: [{B222E807-AE56-4851-8C5A-AC1F40D38A83}] => (Allow) LPort=1900
FirewallRules: [{C336A08E-975A-4F54-9A73-0E6BE9A9DD9F}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{50F2A713-DF35-43A1-A351-44D7D7C2B4AB}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{C071577F-67D9-485C-A191-CDBE2C772EDE}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{B250B3FD-AFDA-4F09-B632-71530FD00E8E}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{C6452778-4F4C-46CD-A152-763AE5FD6C45}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{C091E8A4-2781-4DED-9F50-A3FD33FF3811}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe
FirewallRules: [{EACEFA12-AB58-465C-82CF-CC33AB664A0D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe
FirewallRules: [TCP Query User{67DA7855-3485-4584-ADE8-F0BC95F28192}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{C47D1B82-36EF-462A-98C4-4A1840E00757}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [{75A72660-E05F-4393-BF55-ACC54EF23294}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{1508D907-E7EE-4622-988E-AD6B74716E98}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{EAD61066-70D0-4DD9-8B34-02A4AD984331}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe
FirewallRules: [{17EB9731-BFE2-4C62-8BB7-6E3EF2BEB2C0}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe
FirewallRules: [{A13C3E12-3990-4E29-890E-EBCE1EC7C63E}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe
FirewallRules: [{05B2832E-8903-473A-BDDC-27C45DBCE3F9}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe
FirewallRules: [{1500E8E9-C5C8-4137-BFE1-17647D9441D7}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe
FirewallRules: [{E13F86CB-1627-4826-8CB7-866862A234D3}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe
FirewallRules: [{9737136E-3F22-4135-BF62-A1F5D8C9CBCC}] => (Allow) C:\Program Files (x86)\pandasecuritytb\dtuser.exe
FirewallRules: [{B70F7B15-A394-4732-AF0C-74F3F10F9C7E}] => (Allow) C:\Program Files (x86)\pandasecuritytb\dtuser.exe
FirewallRules: [{8730E477-1311-4B58-B53D-F12881F7B7D7}] => (Allow) C:\Program Files (x86)\pandasecuritytb\ToolbarCleaner.exe
FirewallRules: [{3B3635E8-CDFB-430F-A6B9-6FA4150964E1}] => (Allow) C:\Program Files (x86)\pandasecuritytb\ToolbarCleaner.exe
FirewallRules: [{21D11906-3568-4E5F-B995-45BC62E2485C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service

==================== Restore Points =========================

07-10-2015 20:36:36 Windows Update
13-10-2015 21:10:25 Windows Update
24-10-2015 16:12:51 Naplánovaný kontrolní bod
22-11-2015 19:39:17 Windows Update
02-12-2015 17:16:48 Windows Update
08-01-2016 17:20:15 PROPLUSR
12-01-2016 20:07:28 PROPLUSR
16-01-2016 18:29:04 avast! antivirus system restore point

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (01/16/2016 11:15:45 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Generování kontextu aktivace pro C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest1 se nezdařilo. Chyba v souboru manifestu nebo zásad C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest2 na řádku C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest3.
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_623f33d3ecbe86e8.manifest.
Součást 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.18006_none_a9ec6aab013aafee.manifest.

Error: (01/16/2016 11:15:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: PSUAService.exe, verze: 4.0.0.636, časové razítko: 0x55b79a07
Název chybujícího modulu: ntdll.dll, verze: 6.3.9600.18007, časové razítko: 0x55c4bc8e
Kód výjimky: 0xc000070a
Posun chyby: 0x000f5036
ID chybujícího procesu: 0x928
Čas spuštění chybující aplikace: 0xPSUAService.exe0
Cesta k chybující aplikaci: PSUAService.exe1
Cesta k chybujícímu modulu: PSUAService.exe2
ID zprávy: PSUAService.exe3
Úplný název chybujícího balíčku: PSUAService.exe4
ID aplikace související s chybujícím balíčkem: PSUAService.exe5

Error: (01/16/2016 10:25:43 PM) (Source: Service1) (EventID: 0) (User: )
Description: Službu nelze spustit. System.Runtime.InteropServices.COMException (0x80010002): Filtr zpráv volání zrušil. (Výjimka na základě hodnoty HRESULT: 0x80010002 (RPC_E_CALL_CANCELED))
   v System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32 errorCode, IntPtr errorInfo)
   v System.Management.ManagementScope.InitializeGuts(Object o)
   v System.Management.ManagementScope.Initialize()
   v System.Management.ManagementEventWatcher.Initialize()
   v System.Management.ManagementEventWatcher.Start()
   v dts_apo_service.Service1.StartRegistryWatcher()
   v dts_apo_service.Service1.OnStart(String[] args)
   v System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (01/16/2016 07:44:08 PM) (Source: MsiInstaller) (EventID: 11719) (User: WIWI)
Description: Aplikace: Kaspersky Anti-Virus -- Chyba 1719.Nelze získat přístup k instalační službě systému Windows. Obraťte se na technickou podporu a ověřte, zda je správně zaregistrovaná a povolená.

Error: (01/16/2016 07:43:05 PM) (Source: MsiInstaller) (EventID: 11719) (User: WIWI)
Description: Application: Kaspersky Anti-Virus -- Error 1719. Windows Installer service could not be accessed. Contact Technical Support to verify that it is properly registered and enabled.

Error: (01/16/2016 07:40:08 PM) (Source: MsiInstaller) (EventID: 11719) (User: WIWI)
Description: Application: Kaspersky Anti-Virus -- Error 1719. Windows Installer service could not be accessed. Contact Technical Support to verify that it is properly registered and enabled.

Error: (01/16/2016 06:13:05 PM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: Index nebyl inicializován.

Podrobnosti:
	Zadaný objekt nebyl nalezen. Zadejte název existujícího objektu.  (HRESULT : 0x80040d06) (0x80040d06)

Error: (01/16/2016 06:13:05 PM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Aplikace nebyla inicializována.

Kontext: aplikace Windows

Podrobnosti:
	Zadaný objekt nebyl nalezen. Zadejte název existujícího objektu.  (HRESULT : 0x80040d06) (0x80040d06)

Error: (01/16/2016 06:13:05 PM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Objekt indexovacího modulu nebyl inicializován.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
	Zadaný objekt nebyl nalezen. Zadejte název existujícího objektu.  (HRESULT : 0x80040d06) (0x80040d06)

Error: (01/16/2016 06:13:05 PM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Modul plug-in v <Search.TripoliIndexer> nebyl inicializován.

Kontext: aplikace Windows, katalog SystemIndex

Podrobnosti:
	Zadaný objekt nebyl nalezen. Zadejte název existujícího objektu.  (HRESULT : 0x80040d06) (0x80040d06)


System errors:
=============
Error: (01/16/2016 11:15:06 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Panda Product Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/16/2016 11:13:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba panda_url_filtering Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/16/2016 10:27:33 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Služba Microsoft Office přestala během spouštění reagovat.

Error: (01/16/2016 10:27:03 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba MBAMService přestala během spouštění reagovat.

Error: (01/16/2016 10:25:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Spybot-S&D 2 Scanner Service neuspěla při spuštění v důsledku následující chyby: 
%%1053

Error: (01/16/2016 10:25:38 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Spybot-S&D 2 Scanner Service bylo dosaženo časového limitu (30000 ms).

Error: (01/16/2016 10:25:01 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba MBAMScheduler neuspěla při spuštění v důsledku následující chyby: 
%%1053

Error: (01/16/2016 10:25:01 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby MBAMScheduler bylo dosaženo časového limitu (30000 ms).

Error: (01/16/2016 10:22:49 PM) (Source: DCOM) (EventID: 10005) (User: WIWI)
Description: 1084WSearchNení k dispozici{9E175B68-F52A-11D8-B9A5-505054503030}

Error: (01/16/2016 10:22:48 PM) (Source: DCOM) (EventID: 10005) (User: WIWI)
Description: 1084ShellHWDetectionNení k dispozici{DD522ACC-F821-461A-A407-50B198B896DC}


CodeIntegrity:
===================================
  Date: 2014-10-19 22:25:44.263
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-10-19 22:25:44.118
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-10-19 22:25:43.982
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-10-19 22:25:43.838
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-10-19 22:25:43.660
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-10-19 22:25:43.525
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-10-19 22:25:43.393
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-10-19 22:25:43.260
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-10-19 22:25:43.115
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-10-19 22:25:42.984
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info =========================== 

Processor: Intel(R) Pentium(R) CPU 2020M @ 2.40GHz
Percentage of memory in use: 62%
Total physical RAM: 3971.27 MB
Available physical RAM: 1475.19 MB
Total Virtual: 5443.27 MB
Available Virtual: 2581.64 MB

==================== Drives ================================

Drive c: (TI31216600A) (Fixed) (Total:454.95 GB) (Free:131.41 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt ============================