﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version:25-04-2016
Ran by Milada (2016-04-26 19:51:13)
Running from C:\Users\Milada\Desktop
Windows 10 Home Version 1511 (X64) (2016-04-26 00:08:27)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3119076894-133528186-93484028-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3119076894-133528186-93484028-503 - Limited - Disabled)
Guest (S-1-5-21-3119076894-133528186-93484028-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3119076894-133528186-93484028-1005 - Limited - Enabled)
Milada (S-1-5-21-3119076894-133528186-93484028-1001 - Administrator - Enabled) => C:\Users\Milada

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Panda Free Antivirus (Disabled - Up to date) {AAF74A68-8713-CDF1-004F-30003398BE9E}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Panda Free Antivirus (Disabled - Up to date) {1196AB8C-A129-C27F-3AFF-0B72481FF423}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Panda Firewall (Disabled) {92CCCB4D-CD7C-CCA9-2B10-9935CD4BF9E5}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.15 - Adobe Systems)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version:  - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version:  - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version:  - Microsoft)
Aplikace Intel® PROSet/Wireless (HKLM-x32\...\{313c06de-4aa7-4a1f-930a-f10f80380426}) (Version: 17.14.0 - Intel Corporation)
Audacity 2.0.6 (HKLM-x32\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
Balíček ovladače systému Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass  (08/28/2014 11.0.0000.00000) (HKLM\...\092555911492C6959D2596D612F52DCA71881CA2) (Version: 08/28/2014 11.0.0000.00000 - Google, Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.17 - Piriform)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.8000.17 - Dolby Laboratories Inc)
Doplněk Microsoft Save as PDF or XPS pro aplikace sady Microsoft Office 2007 (HKLM-x32\...\{90120000-00B2-0405-0000-0000000FF1CE}) (Version: 12.0.4518.1025 - Microsoft Corporation)
Energy Manager (HKLM-x32\...\InstallShield_{AC768037-7079-4658-AC24-2897650E0ABE}) (Version: 1.0.0.24 - Lenovo)
Energy Manager (x32 Version: 1.0.0.24 - Lenovo) Hidden
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Free Video Flip and Rotate version 2.1.2.821 (HKLM-x32\...\Free Video Flip and Rotate_is1) (Version: 2.1.2.821 - DVDVideoSoft Ltd.)
Genesys USB Mass Storage Device (HKLM-x32\...\{959B7F35-2819-40C5-A0CD-3C53B5FCC935}) (Version: 4.3.0.0 - Genesys Logic)
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.112 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
HP LaserJet Professional M1130-M1210 MFP Series (HKLM\...\HP LaserJet Professional M1130-M1210 MFP Series) (Version:  - )
Inkscape 0.48.5 (HKLM-x32\...\Inkscape) (Version: 0.48.5 - )
Intel Anti-Theft Discovery App (HKLM-x32\...\{CA1D163C-C52C-4F77-8134-41A146D9BB02}) (Version: 1.1.3.1 - Intel Corporation)
Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33057) (Version: 3.6.1.33057.10 - Intel)
Intel Experience Center - Configuration (x32 Version: 1.9.0.8 - Intel) Hidden
Intel(R) Experience Center Desktop Software (HKLM-x32\...\{85de612b-ee05-476a-87cc-52e5740de420}) (Version: 1.9.0.8 - Intel)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.3.1520 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4264 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{302600C1-6BDF-4FD1-1306-148929CC1385}) (Version: 3.1.1306.0354 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.5.0.1066 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation)
Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation)
Intel(R) WiDi (HKLM\...\{90621A56-901E-417D-A8CB-E8E3A6793C29}) (Version: 4.1.19.0 - Intel Corporation)
Java 8 Update 91 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418091F0}) (Version: 8.0.910.14 - Oracle Corporation)
Kodi (HKU\S-1-5-21-3119076894-133528186-93484028-1001\...\Kodi) (Version:  - XBMC-Foundation)
Lame Front-End 1.8 (HKLM-x32\...\{0908334B-6065-48A1-BD91-EC7A03DF77CE}_is1) (Version: 1.8 - Jacek Pazera)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version:  - )
Lamer (HKLM-x32\...\Lamer) (Version:  - )
Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10234 - Realtek Semiconductor Corp.)
Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.1219 - CyberLink Corp.)
Lenovo OneKey Recovery (Version: 8.0.0.1219 - CyberLink Corp.) Hidden
Lenovo YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.1.3423 - CyberLink Corp.)
Lenovo YouCam (x32 Version: 4.1.3423 - CyberLink Corp.) Hidden
MATLAB R2014a (HKLM\...\Matlab R2014a) (Version: 8.3 - The MathWorks, Inc.)
Mi PC Suite (HKU\S-1-5-21-3119076894-133528186-93484028-1001\...\MiPhoneManager) (Version:  - Xiaomi Inc.)
Microsoft Mathematics Add-in (32-bit) (HKLM-x32\...\{E2C98732-F973-4985-A9C5-DC06178E16EE}) (Version: 2.0.040811.01 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
MPC-HC 1.7.10 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.10 - MPC-HC Team)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.6 - F.J. Wechselberger)
Panda Devices Agent (x32 Version: 1.03.07 - Panda Security) Hidden
Panda Devices Agent (x32 Version: 1.06.00 - Panda Security) Hidden
Panda Free Antivirus (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 16.0.2 - Panda Security)
Panda Free Antivirus (Version: 8.04.00.0000 - Panda Security) Hidden
Panda Security URL Filtering (HKLM-x32\...\Panda Security URL Filtering) (Version: 2.0.2.0 - Panda Security)
PDF Architect 3 (HKLM-x32\...\PDF Architect 3) (Version: 3.0.45.22485 - pdfforge GmbH)
PDF Architect 3 Create Module (x32 Version: 3.0.13.22993 - pdfforge GmbH) Hidden
PDF Architect 3 Edit Module (x32 Version: 3.0.13.22993 - pdfforge GmbH) Hidden
PDF Architect 3 View Module (x32 Version: 3.0.13.22993 - pdfforge GmbH) Hidden
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.1.1 - pdfforge)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.15.410.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7525 - Realtek Semiconductor Corp.)
Scan To (HKLM\...\{E8A34AC8-0137-4515-A94B-0A0946DDC251}) (Version: 1.0.1 - HP)
SDFormatter (HKLM-x32\...\{179324FF-7B16-4BA8-9836-055CAAEE4F08}) (Version: 4.0.0 - SD Association)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.109 - Skype Technologies S.A.)
SopCast 3.9.6 (HKLM-x32\...\SopCast) (Version: 3.9.6 - www.sopcast.com)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.9.5 - Synaptics Incorporated)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH)
Universal Adb Driver (HKLM-x32\...\{D9C4202E-6D51-4B06-A8F1-22316E654BCA}) (Version: 1.0.0 - ClockworkMod)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.9 - Lenovo)
UserGuide (x32 Version: 1.0.0.9 - Lenovo) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.0 - VideoLAN)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
Windows Driver Package - Lenovo (ACPIVPC) System  (02/17/2013 9.52.0.776) (HKLM\...\35DD26BE48DAF4A9F35F969F3CB1E3E1435E661E) (Version: 02/17/2013 9.52.0.776 - Lenovo)
Windows Driver Package - Lenovo (WUDFRd) LenovoVhid  (06/19/2012 10.13.29.733) (HKLM\...\8A223E56FB1ED4F697B54E5BF96F1EB63B512684) (Version: 06/19/2012 10.13.29.733 - Lenovo)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 5.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3119076894-133528186-93484028-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Milada\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\FileCoAuth.exe (Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {031951A2-59E6-4BEA-8632-9AA4DA1CDE2F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {086BB961-A31F-465D-ABF9-3BF20A0BAC3C} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {0B3749A4-19FF-4787-9BF6-3886DC8FC649} - \Synaptics TouchPad Enhancements -> No File <==== ATTENTION
Task: {2444D456-5878-48DB-BE46-18AD70213958} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation)
Task: {25D6CB7A-9A16-40C2-88AE-0669FEAE194F} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {35F5CE21-C4EF-4E4F-B770-765042A571A1} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {4060C895-700C-49D9-B943-318919F18572} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {50699E73-E836-40F4-9D1A-2EB32412D64B} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-04-13] (Microsoft Corporation)
Task: {5198A4FB-B728-4F39-BAE9-2BF786DDDCB3} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {5523C2F6-2837-408C-BB64-FB1AD0066BA7} - \Dolby Selector -> No File <==== ATTENTION
Task: {5EDE70A4-D2CD-4058-A79B-D2F84CBA32EC} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {62B016C2-370F-4FC6-990D-A2DB49AE8DDC} - \User_Feed_Synchronization-{A5518650-EE8B-45BF-995B-183111385F6C} -> No File <==== ATTENTION
Task: {6D7C6823-7B80-4F29-8937-20B845E8F500} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation)
Task: {78BCB571-D158-4341-9692-9574BC83CE32} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {805EABE2-A2E7-4CEC-B765-FB6AC8162AA5} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {87DD1688-2F1B-4285-8FD9-3A143E483652} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {8A8F2DCB-408D-42C2-9979-92409091EBEE} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {93E9D1B2-40D9-4819-A348-9E01FC1241B3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {A388BAA2-EC76-4F6A-92E7-AB0C34AD97B1} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-04-15] (Piriform Ltd)
Task: {A6AB2422-425E-47B1-9A89-438BEF6E1571} - \ASP -> No File <==== ATTENTION
Task: {C371495C-73D4-4DF5-AB7F-E560FD22B322} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {D021AF42-2B52-444C-BE6E-782FA9E51BE6} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {E6EB6A82-2FD3-4963-B797-C65835294D98} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {F82E3EAB-A8CC-4F22-9F39-ADCFBBA5892E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2015-01-10 16:37 - 2012-09-29 14:25 - 00409088 _____ () C:\WINDOWS\System32\HPM1210LM.DLL
2015-01-10 16:36 - 2012-09-29 14:25 - 00074240 _____ () C:\WINDOWS\system32\spool\PRTPROCS\x64\HPM1210PP.dll
2016-04-26 00:28 - 2016-04-26 00:28 - 02654872 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-26 00:28 - 2016-04-26 00:28 - 02654872 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-04-26 18:35 - 2016-04-26 18:35 - 00959176 _____ () C:\Users\Milada\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64\ClientTelemetry.dll
2015-12-19 02:08 - 2015-12-19 02:08 - 00402344 _____ () C:\WINDOWS\system32\igfxTray.exe
2016-04-26 00:29 - 2016-04-26 00:29 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-04-26 00:29 - 2016-04-26 00:29 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-04-26 00:29 - 2016-04-26 00:29 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-04-26 00:29 - 2016-04-26 00:29 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-04-26 00:29 - 2016-04-26 00:29 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-04-26 00:29 - 2016-04-26 00:29 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2014-10-09 19:58 - 2013-02-28 01:26 - 00040960 _____ () C:\Windows\SysWOW64\UMonit64.exe
2015-11-13 17:19 - 2015-11-13 17:19 - 00146224 ____N () C:\Users\Milada\AppData\Local\MiPhoneManager\main\MiPhoneHelper.exe
2015-10-30 20:37 - 2015-10-30 20:37 - 00044032 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.10.22012.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2015-10-30 09:18 - 2015-10-30 09:18 - 00218456 _____ () c:\windows\system32\WerEtw.dll
2013-04-12 19:23 - 2013-04-12 19:23 - 00612664 _____ () C:\Program Files (x86)\Panda Security\Panda Security Protection\SQLite3.dll
2015-11-13 17:19 - 2015-11-13 17:19 - 00127280 ____N () C:\Users\Milada\AppData\Local\MiPhoneManager\main\MiPlugin4NSIS.dll
2015-11-13 17:19 - 2015-11-13 17:19 - 00066352 ____N () C:\Users\Milada\AppData\Local\MiPhoneManager\main\MiFramework.dll
2015-11-13 17:19 - 2015-11-13 17:19 - 00018736 ____N () C:\Users\Milada\AppData\Local\MiPhoneManager\main\MiTrace.dll
2015-11-13 17:19 - 2015-11-13 17:19 - 00099600 ____N () C:\Users\Milada\AppData\Local\MiPhoneManager\main\zlib1.dll
2016-04-26 18:34 - 2016-04-26 18:34 - 00679624 _____ () C:\Users\Milada\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\ClientTelemetry.dll
2012-09-23 20:44 - 2012-09-23 20:44 - 00010240 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\locale\cs_cz\acrotray.cze
2014-10-09 19:43 - 2013-05-09 14:23 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-10-30 20:37 - 2015-10-30 20:37 - 00151040 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.10.22012.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2015-10-30 20:37 - 2015-10-30 20:37 - 18818048 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.10.22012.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2016-04-12 17:35 - 2016-04-06 12:04 - 01675928 _____ () C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\libglesv2.dll
2016-04-12 17:35 - 2016-04-06 12:04 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.112\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service"

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2016-01-16 23:55 - 00000852 ____A C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1 nlsk.neulion.com

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3119076894-133528186-93484028-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\Web\Wallpaper\Lenovo\LenovoWallPaper.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3119076894-133528186-93484028-1001\...\StartupApproved\Run: => "Skype"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{4477972D-19F7-4432-A7B4-A0C9857BAA41}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{5CAB289C-F2EB-4339-9664-D20912098BE1}] => (Allow) C:\Programy\Winamp\Install\Winamp\winamp.exe
FirewallRules: [{FCB303B9-45DC-43CC-9E67-4E8423680A71}] => (Allow) C:\Programy\Winamp\Install\Winamp\winamp.exe
FirewallRules: [{387623CE-911A-40A3-BB4B-3801447DD38A}] => (Allow) LPort=1900
FirewallRules: [{727BEE92-273C-4BCA-878B-557CD38AF8D7}] => (Allow) LPort=2869
FirewallRules: [{7FF8661B-B1CB-46BC-9C1A-AADB28BD275E}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [UDP Query User{2402A3CB-A6A6-4911-BFCC-3514C475AA79}C:\programy\kodi\install\kodi\kodi.exe] => (Allow) C:\programy\kodi\install\kodi\kodi.exe
FirewallRules: [TCP Query User{D21643F8-977B-4BD0-9C26-5B4B10DFDFBB}C:\programy\kodi\install\kodi\kodi.exe] => (Allow) C:\programy\kodi\install\kodi\kodi.exe
FirewallRules: [{D0334419-6333-46F0-A85B-D86BCBDE4E68}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{90F08968-9A6F-4D08-90B2-D5A698E43708}] => (Allow) C:\Users\Milada\AppData\Local\MiPhoneManager\main\MiPCSuite.exe
FirewallRules: [UDP Query User{B9303C1A-B539-4D63-A924-27C0168431BB}C:\users\milada\appdata\roaming\xiaomi\miphonemanager\plugin\xunlei\download\minithunderplatform.exe] => (Allow) C:\users\milada\appdata\roaming\xiaomi\miphonemanager\plugin\xunlei\download\minithunderplatform.exe
FirewallRules: [TCP Query User{3EAFA050-4784-4D64-9EAD-8BB4CCF35A0C}C:\users\milada\appdata\roaming\xiaomi\miphonemanager\plugin\xunlei\download\minithunderplatform.exe] => (Allow) C:\users\milada\appdata\roaming\xiaomi\miphonemanager\plugin\xunlei\download\minithunderplatform.exe
FirewallRules: [UDP Query User{DCA3CAC3-8FA5-436E-8400-3B0C35E33234}C:\programy\sopcast\install\sopcast\sopcast.exe] => (Allow) C:\programy\sopcast\install\sopcast\sopcast.exe
FirewallRules: [TCP Query User{EA01DE45-197A-4D08-B57F-54E8A0821836}C:\programy\sopcast\install\sopcast\sopcast.exe] => (Allow) C:\programy\sopcast\install\sopcast\sopcast.exe
FirewallRules: [UDP Query User{3200293B-22EA-4388-89E5-8189218DFD47}C:\programy\my_explorer\install\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\programy\my_explorer\install\myphoneexplorer\myphoneexplorer.exe
FirewallRules: [TCP Query User{5C86A532-BE2C-4FAB-B8AF-BE4B067CE8AF}C:\programy\my_explorer\install\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\programy\my_explorer\install\myphoneexplorer\myphoneexplorer.exe
FirewallRules: [UDP Query User{B6C5B2FF-6015-4734-BC53-C257A899E935}C:\programy\total_commander\totalcmd\totalcmd64.exe] => (Allow) C:\programy\total_commander\totalcmd\totalcmd64.exe
FirewallRules: [TCP Query User{335EBC3D-B79B-4FC9-8DBC-B95E4C168C01}C:\programy\total_commander\totalcmd\totalcmd64.exe] => (Allow) C:\programy\total_commander\totalcmd\totalcmd64.exe

==================== Restore Points =========================

26-04-2016 19:01:38 Instalační služba modulů systému Windows
26-04-2016 19:03:20 Windows Update
26-04-2016 19:04:20 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices =============

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/26/2016 07:48:12 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: PSUAMain.exe, verze: 4.0.0.646, časové razítko: 0x56291049
Název chybujícího modulu: CC3290MT.DLL, verze: 9.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x000193ee
ID chybujícího procesu: 0x1b40
Čas spuštění chybující aplikace: 0xPSUAMain.exe0
Cesta k chybující aplikaci: PSUAMain.exe1
Cesta k chybujícímu modulu: PSUAMain.exe2
ID zprávy: PSUAMain.exe3
Úplný název chybujícího balíčku: PSUAMain.exe4
ID aplikace související s chybujícím balíčkem: PSUAMain.exe5

Error: (04/26/2016 07:30:35 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: igfxHK.exe, verze: 6.15.10.4331, časové razítko: 0x564cc83e
Název chybujícího modulu: igfxHK.exe, verze: 6.15.10.4331, časové razítko: 0x564cc83e
Kód výjimky: 0xc0000409
Posun chyby: 0x0000000000015953
ID chybujícího procesu: 0x7a0
Čas spuštění chybující aplikace: 0xigfxHK.exe0
Cesta k chybující aplikaci: igfxHK.exe1
Cesta k chybujícímu modulu: igfxHK.exe2
ID zprávy: igfxHK.exe3
Úplný název chybujícího balíčku: igfxHK.exe4
ID aplikace související s chybujícím balíčkem: igfxHK.exe5

Error: (04/26/2016 07:25:35 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: igfxHK.exe, verze: 6.15.10.4331, časové razítko: 0x564cc83e
Název chybujícího modulu: igfxHK.exe, verze: 6.15.10.4331, časové razítko: 0x564cc83e
Kód výjimky: 0xc0000409
Posun chyby: 0x0000000000015953
ID chybujícího procesu: 0xd48
Čas spuštění chybující aplikace: 0xigfxHK.exe0
Cesta k chybující aplikaci: igfxHK.exe1
Cesta k chybujícímu modulu: igfxHK.exe2
ID zprávy: igfxHK.exe3
Úplný název chybujícího balíčku: igfxHK.exe4
ID aplikace související s chybujícím balíčkem: igfxHK.exe5

Error: (04/26/2016 07:23:05 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: igfxHK.exe, verze: 6.15.10.4331, časové razítko: 0x564cc83e
Název chybujícího modulu: igfxHK.exe, verze: 6.15.10.4331, časové razítko: 0x564cc83e
Kód výjimky: 0xc0000409
Posun chyby: 0x0000000000015953
ID chybujícího procesu: 0x1284
Čas spuštění chybující aplikace: 0xigfxHK.exe0
Cesta k chybující aplikaci: igfxHK.exe1
Cesta k chybujícímu modulu: igfxHK.exe2
ID zprávy: igfxHK.exe3
Úplný název chybujícího balíčku: igfxHK.exe4
ID aplikace související s chybujícím balíčkem: igfxHK.exe5

Error: (04/26/2016 07:06:49 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Protokol Microsoft LLDP (Link-Layer Discovery Protocol).

System Error:
Přístup byl odepřen.
.

Error: (04/26/2016 07:04:47 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Protokol Microsoft LLDP (Link-Layer Discovery Protocol).

System Error:
Přístup byl odepřen.
.

Error: (04/26/2016 07:02:15 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Protokol Microsoft LLDP (Link-Layer Discovery Protocol).

System Error:
Přístup byl odepřen.
.

Error: (04/26/2016 07:00:17 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SNEJDAROVI)
Description: Aplikaci Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App se nepovedlo aktivovat, protože došlo k chybě: -2147024770. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (04/26/2016 06:56:33 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SNEJDAROVI)
Description: Aplikaci Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App se nepovedlo aktivovat, protože došlo k chybě: -2147024770. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (04/26/2016 06:50:23 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SNEJDAROVI)
Description: Aplikaci Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App se nepovedlo aktivovat, protože došlo k chybě: -2147024770. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.


System errors:
=============
Error: (04/26/2016 07:28:30 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby SystemEventsBroker bylo dosaženo časového limitu (30000 ms).

Error: (04/26/2016 07:26:10 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníAktivace{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (pomocí LRPC)Není k dispoziciNení k dispozici

Error: (04/26/2016 07:25:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Přístup k uživatelským datům_4a723 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (04/26/2016 07:25:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Úložiště uživatelských dat_4a723 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (04/26/2016 07:25:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Data kontaktů_4a723 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (04/26/2016 07:25:13 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Hostitel synchronizace_4a723 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restartovat službu.

Error: (04/26/2016 07:25:08 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníAktivace{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (pomocí LRPC)Není k dispoziciNení k dispozici

Error: (04/26/2016 07:23:50 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x800f0841): Kumulativní aktualizace pro Windows 10 Version 1511 pro systémy x64 (KB3147458).

Error: (04/26/2016 07:19:24 PM) (Source: Service Control Manager) (EventID: 10005) (User: NT AUTHORITY)
Description: 

Error: (04/26/2016 07:19:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba %1 neuspěla při spuštění v důsledku následující chyby: 
%2


CodeIntegrity:
===================================
  Date: 2016-04-26 19:32:04.663
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-04-26 19:25:44.684
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-04-26 19:07:52.086
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-04-26 19:07:00.218
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-04-26 00:04:59.715
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-04-26 00:02:13.298
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-04-25 23:40:53.742
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i3-4010U CPU @ 1.70GHz
Percentage of memory in use: 55%
Total physical RAM: 3816.27 MB
Available physical RAM: 1698.29 MB
Total Virtual: 5224.27 MB
Available Virtual: 2866.56 MB

==================== Drives ================================

Drive c: (Windows8_OS) (Fixed) (Total:425.11 GB) (Free:299.62 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:20.96 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: F8BC6303)

Partition: GPT.

==================== End of Addition.txt ============================