﻿Additional scan result of Farbar Recovery Scan Tool (x86) Version:05-03-2016 01
Ran by Doma (2016-03-10 05:00:31)
Running from C:\Users\Doma\Desktop
Microsoft Windows 10 Home Version 1511 (X86) (2016-02-23 00:54:24)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-742756408-4011740690-1701761418-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-742756408-4011740690-1701761418-503 - Limited - Disabled)
Doma (S-1-5-21-742756408-4011740690-1701761418-1001 - Administrator - Enabled) => C:\Users\Doma
Guest (S-1-5-21-742756408-4011740690-1701761418-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-742756408-4011740690-1701761418-1002 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG Internet Security (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Internet Security (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE}
FW: AVG Internet Security (Enabled) {757AB44A-78C2-7D1A-E37F-CA42A037B368}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 15.14 (HKLM\...\7-Zip) (Version: 15.14 - Igor Pavlov)
ABBYY FineReader 11 (HKLM\...\{F1100000-0008-0000-0001-074957833700}) (Version: 11.0.289 - ABBYY)
Adobe Acrobat Reader DC - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated)
AVG (Version: 16.41.7442 - AVG Technologies) Hidden
AVG 2016 (Version: 16.0.4540 - AVG Technologies) Hidden
AVG Protection (HKLM\...\AVG) (Version: 2016.41.7442 - AVG Technologies)
CCleaner (HKLM\...\CCleaner) (Version: 5.15 - Piriform)
FMW 1 (Version: 1.62.2 - AVG Technologies) Hidden
Freemake Video Converter verze 4.1.9 (HKLM\...\Freemake Video Converter_is1) (Version: 4.1.9 - Ellora Assets Corporation)
Google Chrome (HKLM\...\Google Chrome) (Version: 49.0.2623.75 - Google Inc.)
Google Update Helper (Version: 1.3.29.5 - Google Inc.) Hidden
HP Deskjet 3050 J610 series Nápověda (HKLM\...\{F7632A9B-661E-4FD9-B1A4-3B86BC99847F}) (Version: 140.0.63.63 - Hewlett Packard)
HP Photo Creations (HKLM\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Support Assistant (HKLM\...\{79C54A05-F146-4EA0-8A70-D4EFE6181E52}) (Version: 8.1.40.3 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM\...\{579A990C-3855-4838-AF23-354CE2264BC0}) (Version: 12.0.30.473 - HP)
HP Update (HKLM\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
Microsoft Office Professional Plus 2016 - cs-cz (HKLM\...\ProplusRetail - cs-cz) (Version: 16.0.6568.2036 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 - en-us (HKLM\...\ProplusRetail - en-us) (Version: 16.0.6568.2036 - Microsoft Corporation)
Microsoft Project Professional 2016 - cs-cz (HKLM\...\ProjectProRetail - cs-cz) (Version: 16.0.6568.2036 - Microsoft Corporation)
Microsoft Project Professional 2016 - en-us (HKLM\...\ProjectProRetail - en-us) (Version: 16.0.6568.2036 - Microsoft Corporation)
Microsoft Visio Professional 2016 - cs-cz (HKLM\...\VisioProRetail - cs-cz) (Version: 16.0.6568.2036 - Microsoft Corporation)
Microsoft Visio Professional 2016 - en-us (HKLM\...\VisioProRetail - en-us) (Version: 16.0.6568.2036 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Office 16 Click-to-Run Extensibility Component (Version: 16.0.6528.1017 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.6528.1017 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (Version: 16.0.6528.1017 - Microsoft Corporation) Hidden
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.3.0 - pdfforge GmbH)
Studie vylepšování produktu HP Deskjet 3050 J610 series (HKLM\...\{122A3C25-5EA0-412C-B37D-E8938689F9BC}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
XnView 2.35 (HKLM\...\XnView_is1) (Version: 2.35 - Gougelet Pierre-e)
Základní software zařízení HP Deskjet 3050 J610 series (HKLM\...\{1B3C9E55-CEE8-43AE-ADED-08D888C714E5}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {17735547-8F94-4EE4-AFA6-951EAE77E438} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {19FC7168-80FF-4A89-8E2D-262D4FB67B6B} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {1B666DBB-6050-470A-9CE2-61D30F731548} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {24FABDD8-F391-4816-B3DE-88F7E5081B85} - System32\Tasks\{51829060-78F6-4E16-BF4D-096B2129F44E} => pcalua.exe -a C:\totalcmd\TOTALCMD.EXE -d C:\totalcmd
Task: {2C9B264B-F3F6-4D6D-A548-FCDEE9F4250C} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {3766FF1F-7DFE-421C-81EC-C7D7648BF88A} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {37F12C43-05F3-48B2-BA7D-F43C3BC7EC2D} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {3A4EB882-49C4-42E6-B7CC-B598A39801DD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-02-24] (Google Inc.)
Task: {46E624EE-2881-4400-9386-74CB0259D4E5} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {48370D33-8724-4843-BBCD-170E500191BE} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe
Task: {55546722-BC2A-4F02-872F-62F37F94D61C} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {55BF6ADB-1D08-4485-9F0C-44EE21F71427} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {605A933F-E5F1-4B2B-9425-5A864A6B7BA3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2015-11-13] (Hewlett-Packard)
Task: {635EEC4C-5D3E-4FCD-95C5-D0B4A11FF973} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {6F40AB25-0E6B-46C2-B69B-CEAE3E877A2B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated)
Task: {729B0A24-AEFC-4029-A6B3-E8F09745AAE3} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-02-23] (Microsoft Corporation)
Task: {7C51C9AF-6D66-4A6C-91C9-25AE4071E4BA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2016-03-07] (Microsoft Corporation)
Task: {7F498CF3-E22E-4C1E-8A45-3721638D92B4} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {867B7ADD-0626-45F4-ADA3-AB2136478E81} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {94DE3290-C1D2-4DF8-8ADA-9E42F2542F8B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2016-03-07] (Microsoft Corporation)
Task: {955685BA-7F4A-491A-8906-484A3A9FBAEF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-09-28] (Hewlett-Packard Company)
Task: {9B65BE41-638D-42C9-BF1F-7243834BF76A} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-02-28] (Microsoft Corporation)
Task: {A037B457-2DCC-445E-87CD-F63E59EC3B1C} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {A8FE2F59-3EBD-463F-B97E-FBC2C1FB993F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-02-24] (Google Inc.)
Task: {A91A66CE-3A7E-42E2-AE02-74A2F0EB3FC4} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {A9D4A7D5-EA28-42C4-8162-2582F504CD90} - System32\Tasks\HPCustParticipation HP Deskjet 3050 J610 series => C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.)
Task: {AAE371E9-846D-423D-A855-BCB975D0317A} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-02-28] (Microsoft Corporation)
Task: {C9097CC4-9266-49D0-8916-F4EF82FCC754} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-09-28] (Hewlett-Packard Company)
Task: {CA271EB6-94FC-4616-BF15-C37BD80293AB} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {CE24C673-637F-4902-8707-9846E2425083} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-02-12] (Piriform Ltd)
Task: {D2D3E1FA-FEFE-41C0-A5A4-7A105BCB07F7} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {D30B84AE-D2C5-48E9-B323-0FA5D4D99DD1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher => C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-01-20] (Hewlett-Packard)
Task: {E2791A08-8ADA-4E4D-A4F1-CDB5D4CF5C3E} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {E644EF4D-1F90-4157-BF4E-162783F508AB} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {EB0CE3B9-F3B5-4712-9930-5F24E9464176} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F533069E-C3D1-4573-88B4-B0545477526F} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {FC0B9BF6-8D72-4B7C-B995-C11E0812C7B0} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {FD29FC6F-0C8E-40EB-8450-A6000F484E64} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-10-30 06:44 - 2015-10-30 06:44 - 00022528 _____ () C:\WINDOWS\SYSTEM32\efsext.dll
2015-10-30 06:44 - 2015-10-30 06:44 - 00149504 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-03-06 22:40 - 2016-02-28 02:05 - 00144584 _____ () C:\Program Files\Common Files\Microsoft Shared\ClickToRun\ApiClient.dll
2016-03-02 14:09 - 2016-02-23 11:34 - 01859960 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 14:09 - 2016-02-23 11:34 - 01859960 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-02-23 02:41 - 2016-02-23 02:42 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-02-23 02:41 - 2016-02-23 02:42 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-02-23 02:41 - 2016-02-23 02:42 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2016-02-23 22:32 - 2015-12-07 05:11 - 00070656 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-03-02 14:09 - 2016-02-23 08:48 - 00316416 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-02-23 22:33 - 2016-01-05 02:23 - 05340672 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-02-23 22:32 - 2016-01-05 02:19 - 00471552 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-02-23 22:33 - 2016-01-16 06:06 - 02366464 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-02-23 22:33 - 2016-01-16 06:09 - 02656768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-02-23 22:47 - 2016-02-23 22:46 - 40500224 _____ () C:\Program Files\AVG\UiDll\2171\libcef.dll
2016-03-06 21:37 - 2016-03-03 09:34 - 00073216 _____ () C:\Program Files\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
2016-03-03 20:45 - 2016-03-03 20:45 - 00016896 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe
2016-03-03 20:45 - 2016-03-03 20:45 - 13351936 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x86__8wekyb3d8bbwe\Microsoft.Photos.dll
2016-03-03 20:45 - 2016-03-03 20:45 - 00180224 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x86__8wekyb3d8bbwe\StoreRatingPromotion.dll
2016-03-06 22:49 - 2016-03-02 05:47 - 01675928 _____ () C:\Program Files\Google\Chrome\Application\49.0.2623.75\libglesv2.dll
2016-03-06 22:49 - 2016-03-02 05:47 - 00086168 _____ () C:\Program Files\Google\Chrome\Application\49.0.2623.75\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____N C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-742756408-4011740690-1701761418-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Doma\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\oko_tapeta.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run: => "HP Software Update"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{926DE262-EFF8-46C8-8529-CA5A41BFD484}] => (Allow) C:\Program Files\AVG\Av\avgnsx.exe
FirewallRules: [{71FB6722-6983-4433-914E-CE3DF6007F6D}] => (Allow) C:\Program Files\AVG\Av\avgnsx.exe
FirewallRules: [{6CDCC154-E2CF-4F27-A953-7449EE3387E3}] => (Allow) C:\Program Files\AVG\Av\avgdiagex.exe
FirewallRules: [{C66E5C01-DA23-41CC-8DCD-07A1FFAEE693}] => (Allow) C:\Program Files\AVG\Av\avgdiagex.exe
FirewallRules: [{14054C9F-61CF-4F53-A45B-BF725FFE3065}] => (Allow) C:\Program Files\AVG\Av\avgmfapx.exe
FirewallRules: [{7EE1B5C1-422D-4879-B428-E4B4E76CC7FC}] => (Allow) C:\Program Files\AVG\Av\avgmfapx.exe
FirewallRules: [{10CC7CF5-3EF0-437A-9991-065F20C6378C}] => (Allow) C:\Program Files\AVG\Av\avgemcx.exe
FirewallRules: [{CB782EF7-B1E0-43C2-BB8C-C3A3FD76ABED}] => (Allow) C:\Program Files\AVG\Av\avgemcx.exe
FirewallRules: [{D036A52C-65ED-415E-857E-1E3844032FF3}] => (Allow) C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\DeviceSetup.exe
FirewallRules: [{5694EF14-43B3-4894-A4AF-B350396CAC54}] => (Allow) C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HPNetworkCommunicator.exe
FirewallRules: [{29A703E6-1668-4409-A96C-FEF3B6248BF3}] => (Allow) C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{12B9F60E-3A83-4BB1-9B28-E13CC884CD18}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
FirewallRules: [{A575A432-B394-4697-9A2E-083177396E7A}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{2E5B8AC6-1948-48BB-84DA-246380FDC72D}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{F07C6B03-B188-4966-9054-4DCA21CA0A42}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{F6680B14-AA36-490A-B7A4-20DD1151DFF0}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{F03973F7-E4C2-422F-BFA6-DFD22D2FF78A}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe

==================== Restore Points =========================

23-02-2016 01:51:01 Instalační služba modulů systému Windows
24-02-2016 01:52:16 Nainstalováno: Microsoft Office Professional Edition 2003
28-02-2016 12:01:58 Installed HP Support Solutions Framework
01-03-2016 12:07:23 Instalační služba modulů systému Windows
06-03-2016 21:40:22 Installed PDF Architect 4 View Module
07-03-2016 01:35:42 Chrome Cleanup Tool

==================== Faulty Device Manager Devices =============

Name: Sériový port sběrnice PCI
Description: Sériový port sběrnice PCI
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (03/10/2016 02:34:18 AM) (Source: MsiInstaller) (EventID: 1024) (User: DOMA-PC)
Description: Aktualizaci {AC76BA86-7AD7-0000-2550-AC0F0A4E5C00} produktu Adobe Acrobat Reader DC - Czech nebylo možné nainstalovat. Kód chyby: 1625. Instalační služba systému Windows může vytvořit soubor protokolu s informacemi, které usnadní řešení potíží při instalaci softwaru. Další informace naleznete na webu na adrese http://go.microsoft.com/fwlink/?LinkId=23127

Error: (03/08/2016 03:29:36 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll4

Error: (03/08/2016 02:54:05 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DOMA-PC)
Description: Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2147024891. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (03/08/2016 01:55:21 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DOMA-PC)
Description: Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2147024891. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (03/08/2016 04:48:22 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DOMA-PC)
Description: Aplikaci microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 se nepovedlo aktivovat, protože došlo k chybě: -2147024891. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (03/07/2016 01:52:13 AM) (Source: ESENT) (EventID: 454) (User: )
Description: CCleaner (8132) testing: Při pokusu o obnovení nebo zotavení databáze došlo k neočekávané chybě -1216.

Error: (03/07/2016 01:52:13 AM) (Source: ESENT) (EventID: 494) (User: )
Description: CCleaner (8132) testing: Obnovení databáze selhalo a došlo k chybě -1216, protože se zjistily odkazy na databázi C:\Users\Doma\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat, která už není dostupná. Databáze se před odebráním (nebo případným přesunutím nebo přejmenováním) nepřevedla do stavu čistého vypnutí. Databázový stroj nepovolí dokončení obnovení pro tuto instanci, dokud se znovu nevytvoří instance chybějící databáze. Pokud už databáze skutečně není dostupná a už se nevyžaduje, získáte pokyny týkající se odstranění této chyby ve znalostní bázi Microsoft Knowledge Base nebo po kliknutí na odkaz Další informace na konci této zprávy.

Error: (03/07/2016 01:52:13 AM) (Source: ESENT) (EventID: 490) (User: )
Description: CCleaner (8132) testing: Pokus o otevření souboru C:\Users\Doma\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat pro čtení nebo zápis selhal. Došlo k systémové chybě 32 (0x00000020): Proces nemá přístup k souboru, neboť jej právě využívá jiný proces. . Operace otevření souboru selže a dojde k chybě -1032 (0xfffffbf8).

Error: (03/07/2016 01:52:03 AM) (Source: ESENT) (EventID: 454) (User: )
Description: CCleaner (8132) testing: Při pokusu o obnovení nebo zotavení databáze došlo k neočekávané chybě -1216.

Error: (03/07/2016 01:52:03 AM) (Source: ESENT) (EventID: 454) (User: )
Description: taskhostw (312) WebCacheLocal: Při pokusu o obnovení nebo zotavení databáze došlo k neočekávané chybě -1032.


System errors:
=============
Error: (03/09/2016 04:45:27 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Windows Search neuspěla při spuštění v důsledku následující chyby: 
%%3

Error: (03/09/2016 04:45:14 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Přístup k uživatelským datům_541ae byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (03/09/2016 04:45:14 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Úložiště uživatelských dat_541ae byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (03/09/2016 04:45:14 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Data kontaktů_541ae byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (03/09/2016 04:45:14 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_541ae byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (03/09/2016 04:44:57 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (03/09/2016 04:44:57 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba HP Support Solutions Framework Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (03/09/2016 04:44:57 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Microsoft Office Click-to-Run Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (03/09/2016 04:44:57 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (03/09/2016 04:44:56 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba AVG Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.


CodeIntegrity:
===================================
  Date: 2016-03-07 00:05:11.761
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-06 23:46:47.561
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-06 23:35:55.709
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-06 22:51:38.134
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Office\OFFICE11\MCPS.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-03-06 22:51:38.107
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Office\OFFICE11\MCPS.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-03-06 22:51:37.106
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Office\OFFICE11\MCPS.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-03-06 22:51:37.097
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Office\OFFICE11\MCPS.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-03-06 22:51:37.006
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Office\OFFICE11\MCPS.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-03-06 22:50:20.745
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Office\OFFICE11\MCPS.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-03-06 22:50:20.728
  Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Office\OFFICE11\MCPS.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM)2 Duo CPU E7400 @ 2.80GHz
Percentage of memory in use: 50%
Total physical RAM: 3547.61 MB
Available physical RAM: 1763.93 MB
Total Virtual: 7131.61 MB
Available Virtual: 5106.04 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:232.83 GB) (Free:171.07 GB) NTFS ==>[drive with boot components (obtained from BCD)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.8 GB) (Disk ID: 081DFE1D)
Partition 1: (Active) - (Size=232.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================