Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-10-2016
Ran by PC (23-10-2016 22:49:40)
Running from C:\Users\PC\Desktop
Windows 10 Home Version 1607 (X64) (2016-09-28 05:25:20)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-329123614-2939122966-1240902447-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-329123614-2939122966-1240902447-503 - Limited - Disabled)
Guest (S-1-5-21-329123614-2939122966-1240902447-501 - Limited - Disabled)
PC (S-1-5-21-329123614-2939122966-1240902447-1000 - Administrator - Enabled) => C:\Users\PC

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: ZoneAlarm Free Firewall Firewall (Enabled) {1B8D532F-88B1-B2AD-ED22-AED92687A1D2}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

ABBYY FineReader 8.0 Professional Edition (HKLM-x32\...\{AAF80000-22B9-4CE9-98D6-2CCF359BAC07}) (Version: 8.00.684.4571 - ABBYY Software House)
Adobe Acrobat  9 Pro - Czech, Hungarian, Polish, Slovak (HKLM-x32\...\{AC76BA86-1029-4770-7760-000000000004}{AC76BA86-1029-4770-7760-000000000004}) (Version: 9.5.5 - Adobe Systems)
Adobe Acrobat 9.5.5 - CPSID_83708 (HKLM-x32\...\{AC76BA86-1029-4770-7760-000000000004}_955) (Version:  - Adobe Systems Incorporated)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.7.1.19610 - Adobe Systems Incorporated)
Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)
Adobe Content Viewer (HKLM-x32\...\com.adobe.dmp.contentviewer) (Version: 2.3.0 - Adobe Systems Incorporated)
Adobe Creative Suite 5 Design Standard (HKLM-x32\...\{49DC7D87-B9F9-4782-9386-B7F13BC75E48}) (Version: 5.0 - Adobe Systems Incorporated)
Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.185 - Adobe Systems Incorporated)
Adobe Flash Player 23 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 23.0.0.185 - Adobe Systems Incorporated)
Adobe Folio Builder panel for InDesign CS5 (HKLM-x32\...\{F723C544-6BF7-1014-9AA0-90D2E1B1E3B8}) (Version: 1.1.9.1 - Adobe Systems Incorporated)
Adobe Folio Producer tools for InDesign CS5 (HKLM-x32\...\{548D042A-845E-1014-8AB8-954FDA1C690A}) (Version: 1.8 - Adobe Systems Incorporated)
Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.60.1492, 24.04.2015 - AIMP DevTeam)
Aktualizace NVIDIA 2.11.4.0 (Version: 2.11.4.0 - NVIDIA Corporation) Hidden
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 12.3.2280 - AVAST Software)
BlueStacks Notification Center (HKLM-x32\...\{3410BAF4-A49B-4FC3-A99F-D8EB30B06D35}) (Version: 0.9.32.5220 - BlueStack Systems, Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.18 - Piriform)
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.3.4746 - CDBurnerXP)
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.6.5844 - CDBurnerXP)
CGS17_Setup_x64 (Version: 17.1 - Corel Corporation) Hidden
Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6514.5001 - Microsoft Corporation)
CorelDRAW Graphics Suite X7 - Capture (x64) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Common (x64) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Connect (x64) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Custom Data (x64) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - CZ (x64) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Draw (x64) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Filters (x64) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - FontNav (x64) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - IPM Content (x64) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - IPM T (x64) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - PHOTO-PAINT (x64) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Photozoom Plugin (x64) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Redist (x64) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Setup Files (x64) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - VBA (x64) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - VideoBrowser (x64) (Version: 17.1 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Writing Tools (x64) (Version: 17.1 -  Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 (64-Bit) (HKLM\...\_{5CB73140-806C-42C6-A05A-1AFD0E92DEB5}) (Version: 17.1.0.572 - Corel Corporation)
DS EAN/UPC fontware 1.01 DEMO (HKLM-x32\...\DS EAN/UPC fontware DEMO_is1) (Version:  - Dušan Šťastný)
eMule (HKLM-x32\...\eMule) (Version:  - )
EPSON Printer Software (HKLM\...\EPSON Printer and Utilities) (Version:  - )
EPSON StandardBusinessPrinters Printer Uninstall (HKLM\...\EPSON StandardBusinessPrinters) (Version:  - SEIKO EPSON Corporation)
EPSON Universal Print Driver Printer Uninstall (HKLM\...\EPSON Universal Print Driver) (Version:  - SEIKO EPSON Corporation)
FileZilla Client 3.11.0.2 (HKLM-x32\...\FileZilla Client) (Version: 3.11.0.2 - Tim Kosse)
Font Fitting Room Deluxe (HKLM-x32\...\{17F495F1-82F6-4A7B-88BF-5E6669ED51DB}) (Version: 2.4.4 - ApoliSoft)
Foxit PDF Editor (HKLM-x32\...\Foxit PDF Editor) (Version: 2.2.0.0205 - Foxit Software)
Freeware PDF Unlocker (HKLM-x32\...\{2949F05A-0840-45E9-81AA-DFF630E2679E}) (Version: 1.0.3 - SMTguru)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\_{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation)
Ghostscript GPL 8.64 (Msi Setup) (x32 Version: 8.64 - Corel Corporation) Hidden
Google Drive (HKLM-x32\...\{459CE109-4E46-4340-92BC-054642BC3BC2}) (Version: 1.31.2873.2758 - Google, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.)
Google Update Helper (x32 Version: 1.3.21.169 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
HPRewriter2 (HKLM-x32\...\HPRewriter2) (Version:  - ) <==== ATTENTION
i1Profiler (HKLM-x32\...\i1Profiler_is1) (Version: 1.5.6 - X-Rite)
Intel(R) C++ Redistributables for Windows* on Intel(R) 64 (HKLM-x32\...\{D2437C5C-2D8C-40D2-8059-689AD7239FA3}) (Version: 11.1.048 - Intel Corporation)
Kingsoft Office 2013 (9.1.0.4550) (HKLM-x32\...\Kingsoft Office) (Version: 9.1.0.4550 - Kingsoft Corp.)
LibreOffice 4.4.3.2 (HKLM-x32\...\{A651A592-2F6C-4D66-AEA8-9BFE4B61BCB3}) (Version: 4.4.3.2 - The Document Foundation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110405-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
NotepadPlusPlusApp (HKU\S-1-5-21-329123614-2939122966-1240902447-1000\...\NotepadPlusPlusApp) (Version:  - )
NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 341.96 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 341.96 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 341.96 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.96 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
Opera Stable 40.0.2308.90 (HKLM-x32\...\Opera 40.0.2308.90) (Version: 40.0.2308.90 - Opera Software)
Ovládací panel NVIDIA 341.96 (Version: 341.96 - NVIDIA Corporation) Hidden
Pantone Color Manager 2.1.0 (HKLM-x32\...\Pantone Color Manager_is1) (Version:  - PANTONE)
PDF Editor 4 (HKLM-x32\...\PDF Editor 4) (Version:  - )
PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden
Plustek OpticBook 3600 (HKLM-x32\...\{C043B8C1-E512-46AB-AEE2-009EBDEC0061}) (Version: 4.0.1 - )
Potplayer-64 Bits (HKLM\...\PotPlayer64) (Version:  - Kakao Corp.)
SafeZone Stable 1.51.2220.62 (x32 Version: 1.51.2220.62 - Avast Software) Hidden
SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden
Skype™ 7.29 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.29.102 - Skype Technologies S.A.)
SoulseekQt (HKLM-x32\...\SoulseekQt) (Version:  - )
Spyware Terminator 2015 (HKLM-x32\...\{56736259-613E-4A3B-B428-6235F2E76F44}_is1) (Version: 3.0.1.107 - Crawler Group)
VDownloader 4.2.1970 (HKLM\...\{A7E19604-93AF-4611-8C9F-CE509C2B286E}_is1) (Version:  - Vitzo Limited)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
WinPcap 4.1.1 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.1753 - CACE Technologies)
WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
X-Rite Device Services Manager (HKLM-x32\...\{3A1B2112-3617-4D99-BF54-7AB8F9D18F97}) (Version: 2.3.82 - X-Rite)
ZoneAlarm Firewall (x32 Version: 15.0.123.17051 - Check Point Software Technologies Ltd.) Hidden
ZoneAlarm Free Firewall (HKLM-x32\...\ZoneAlarm Free Firewall) (Version: 15.0.123.17051 - Check Point)
ZoneAlarm Security (x32 Version: 15.0.123.17051 - Check Point Software Technologies Ltd.) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-329123614-2939122966-1240902447-1000_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\PC\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuth.exe (Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {17A2EC5A-817F-4F75-8A6F-F50DF10DA274} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {1D158EF2-A804-4CB9-9CCC-C990E2B10039} - System32\Tasks\X-Rite Device Services Software Updater => C:\Program Files (x86)\X-Rite\Devices\Services\XRD Software Update.exe [2014-06-23] (X-Rite Inc.)
Task: {1FF00279-9582-424E-961C-3FB4FA378AF7} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {2452277A-36C5-4090-A35A-676D21AB127D} - System32\Tasks\{2D5F6C9A-EBE8-4FE5-8879-A368DFFEB9FC} => pcalua.exe -a F:\soft\_adobe\ShortWords700Win\Instal.exe -d F:\soft\_adobe\ShortWords700Win
Task: {2547E784-2072-46ED-888E-CA5F7B675820} - System32\Tasks\WpsUpdateTask_PC => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsupdate.exe [2016-03-21] (Zhuhai Kingsoft Office Software Co.,Ltd)
Task: {34C171B2-C042-4845-8C88-6155AB6CD193} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {37AD5283-346B-45A2-98F6-08215F6134F6} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {42463403-31DA-480F-9F48-810D2CE61EE1} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {47B1E08D-989F-422E-9DC3-350AB4797FF2} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-17] (Adobe Systems Incorporated)
Task: {483223F6-5418-42DD-9B5C-D4B224407944} - System32\Tasks\WpsNotifyTask_PC => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsnotify.exe [2014-03-30] (Zhuhai Kingsoft Office Software Co.,Ltd)
Task: {5626AF6F-D578-4535-8E46-256A00D6395B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {59F5E2EC-A293-414F-8033-8B0E001C7AB3} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {5A8FBA52-9E4B-476E-9E94-193C780007C7} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {5B617F7C-1A4E-4EF9-86EA-D906F0A4909E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {6352770F-014F-4171-BF74-8D1556DBB654} - System32\Tasks\AdobeAAMUpdater-1.0-PC-PC-PC => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-12-22] (Adobe Systems Incorporated)
Task: {6933F646-AA38-49E3-B265-B6C1D1F0399F} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {6DAA38CF-138F-429E-BBD4-36D5B5028DAE} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {85AEEBA9-FD94-4962-BF52-7543ACDB2978} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {895E8441-E075-4E20-89DC-41A85098A34E} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {8C71E0B6-3866-4337-AC63-80C433ADA47D} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {8F7B64EE-DBDC-4962-8DA8-FC0C1D478ED9} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {901EDF74-98DD-423B-9C69-E011B9166386} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-09-22] (AVAST Software)
Task: {928674CB-FDD0-432E-9965-1535B6D96BE2} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {972954FA-A31C-4057-8C5F-8AB084C1A841} - System32\Tasks\Opera scheduled Autoupdate 1455398885 => C:\Program Files (x86)\Opera\launcher.exe [2016-10-17] (Opera Software)
Task: {97A2198F-07FD-4662-BB65-197C3BDFEF13} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {A0283845-B392-453E-90F4-41EFC8A95D13} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {A90CC129-9FF0-4CD0-A931-02B913E5523B} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {AEB98B54-C875-4C02-9C12-E6AF2A978E05} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.)
Task: {B64E1B3E-9E91-4D4D-9E16-40182FE7046B} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {BD4C394C-F5EA-4AA5-A768-4DA744769123} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {BDE89258-7432-4AC0-B99D-F5947447A182} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated)
Task: {BF9518C6-8D67-484E-8940-47D01B9C1438} - System32\Tasks\{3A1B2112-3617-4D99-BF54-7AB8F9D18F97} => C:\Users\PC\AppData\Local\Temp\is-2KMAC.tmp\XRD Manager.exe <==== ATTENTION
Task: {C944802A-47FE-4D48-BE70-9F85464DB434} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {CCEF8308-5A90-4CBD-954A-DDB80AC95002} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {CD338D18-FBE9-4CBB-8344-CB38A98C09A4} - \Microsoft\Windows\Setup\GWXTriggers\Logon-URT -> No File <==== ATTENTION
Task: {CE4D5E16-BBB0-4050-AB81-4489D0E8B2A7} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {D42E1758-A85A-40D0-ACE9-C54C2D533807} - System32\Tasks\PantoneLIVE Update Check => C:\Program Files (x86)\Pantone Color Manager\PantoneColorManager.exe [2013-04-08] (X-Rite)
Task: {D50AB786-5D88-4FBE-AD9E-5EB533C0081C} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {DB3336DF-DF70-4464-A709-1693F125EFC4} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe
Task: {DCB4DB36-3FDE-4E84-B0F9-0ECA8CFE1CD4} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {DDD5A176-0DD7-4A9B-8C5A-B4B5BA13E51A} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_23_0_0_185_pepper.exe [2016-10-17] (Adobe Systems Incorporated)
Task: {DE188795-C8B8-404E-9EB5-FFDB957DB78E} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {DEC49099-CC8C-4619-BF59-0D5BFE16B48A} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {DF79EA42-22B3-4871-9B4D-CC57101CE791} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {E2537022-7BC0-4A63-A37A-1C79EEB9B257} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-06-01] (Piriform Ltd)
Task: {E81209C2-1349-46BD-BCE7-A4F346BA3300} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe
Task: {EB974207-0DD6-4998-A95A-E66046B9BC9F} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {EBFA2610-23BC-4902-937B-1CBCE9AF99B4} - System32\Tasks\SafeZone scheduled Autoupdate 1458813227 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-09-06] (Avast Software)
Task: {F1673B3F-B784-424E-9D68-7AFFF298DA85} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {F184F0BF-0B82-411E-9B00-0E37A2FA95B7} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_23_0_0_185_pepper.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\WpsNotifyTask_PC.job => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsnotify.exe
Task: C:\WINDOWS\Tasks\WpsUpdateTask_PC.job => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsupdate.exe
Task: C:\WINDOWS\Tasks\X-Rite Device Services Software Updater.job => C:\Program Files (x86)\X-Rite\Devices\Services\XRD Software Update.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\PC\Desktop\Sроuštěč арlikасí Сhrоmе.lnk -> C:\Users\PC\AppData\Roaming\HPRewriter2\RewRun3.exe (No File) <===== Cyrillic
Shortcut: C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\Sроuštěč арlikасí Сhrоmе.lnk -> C:\Users\PC\AppData\Roaming\HPRewriter2\RewRun3.exe (No File) <===== Cyrillic
Shortcut: C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Drаwing Dеsk.lnk -> C:\Users\PC\AppData\Roaming\HPRewriter2\RewRun3.exe (No File) <===== Cyrillic
Shortcut: C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Intеrnеt Ехрlоrеr.lnk -> C:\Users\PC\AppData\Roaming\HPRewriter2\RewRun3.exe (No File) <===== Cyrillic
Shortcut: C:\Users\PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Gооglе Сhrоmе (2).lnk -> C:\Users\PC\AppData\Roaming\HPRewriter2\RewRun3.exe (No File) <===== Cyrillic
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gооglе Сhrоmе.lnk -> C:\Users\PC\AppData\Roaming\HPRewriter2\RewRun3.exe (No File) <===== Cyrillic
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ореrа 40.lnk -> C:\Users\PC\AppData\Roaming\HPRewriter2\RewRun3.exe (No File) <===== Cyrillic
Shortcut: C:\Users\Public\Desktop\Gооglе Сhrоmе.lnk -> C:\Users\PC\AppData\Roaming\HPRewriter2\RewRun3.exe (No File) <===== Cyrillic
Shortcut: C:\Users\Public\Desktop\Ореrа 40.lnk -> C:\Users\PC\AppData\Roaming\HPRewriter2\RewRun3.exe (No File) <===== Cyrillic

ShortcutWithArgument: C:\Users\PC\AppData\Local\Google\Chrome\User Data\Spouštěč aplikací Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --show-app-list
ShortcutWithArgument: C:\Users\PC\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Ореrа 35.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) -> 4 0 <===== Cyrillic

==================== Loaded Modules (Whitelisted) ==============

2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-09-30 14:48 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-28 07:12 - 2016-05-30 19:36 - 00133568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-09-28 12:17 - 2016-06-14 22:03 - 00367552 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2016-09-28 12:17 - 2016-06-14 22:03 - 00288192 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-09-28 12:17 - 2016-06-14 22:03 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll
2016-09-28 12:17 - 2016-06-14 22:03 - 03611584 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2016-09-30 14:48 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-09-28 07:29 - 2016-09-28 07:29 - 00959168 _____ () C:\Users\PC\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 00130048 _____ () C:\WINDOWS\SYSTEM32\CHARTV.dll
2015-06-02 17:18 - 2015-06-02 17:18 - 00043480 _____ () C:\Program Files\FileZilla FTP Client\fzshellext_64.dll
2016-09-28 12:17 - 2016-06-14 22:03 - 02665920 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll
2016-09-28 12:17 - 2016-06-14 22:03 - 01988544 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll
2016-09-28 12:17 - 2016-06-14 22:03 - 01840576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll
2016-09-28 12:17 - 2016-06-14 22:03 - 00207296 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll
2016-09-28 12:17 - 2016-06-14 22:03 - 00034240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll
2016-09-28 12:17 - 2016-06-14 22:03 - 00920000 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll
2016-09-28 08:07 - 2016-09-28 08:07 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-10-12 10:42 - 2016-10-05 11:35 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-10-12 10:42 - 2016-10-05 11:21 - 09760256 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-10-12 10:42 - 2016-10-05 11:13 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-10-12 10:42 - 2016-10-05 11:13 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2016-10-12 10:42 - 2016-10-05 11:13 - 02424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-10-12 10:42 - 2016-10-05 11:14 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-10-20 10:39 - 2016-10-20 10:39 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.197.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2016-10-20 10:39 - 2016-10-20 10:39 - 00178176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.197.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2016-10-20 10:39 - 2016-10-20 10:39 - 35253760 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.197.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2016-03-04 16:55 - 2014-06-18 16:06 - 02519552 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\i1ProfilerTray.exe
2016-09-22 13:54 - 2016-09-22 13:54 - 00169064 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-10-23 21:35 - 2016-10-23 21:35 - 03121496 _____ () C:\Program Files\AVAST Software\Avast\defs\16102300\algo.dll
2016-09-22 13:54 - 2016-09-22 13:54 - 00482928 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2014-06-23 18:06 - 2014-06-23 18:06 - 01588224 _____ () C:\Program Files (x86)\X-Rite\Devices\rm200\GoldenEye.dll
2014-06-23 18:06 - 2014-06-23 18:06 - 02633728 _____ () C:\Program Files (x86)\X-Rite\Devices\colormunki\colormunki.dll
2016-09-28 12:17 - 2016-06-14 22:03 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2016-10-23 22:38 - 2016-10-23 22:38 - 00098816 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\win32api.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00110080 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\pywintypes27.dll
2016-10-23 22:38 - 2016-10-23 22:38 - 00364544 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\pythoncom27.dll
2016-10-23 22:38 - 2016-10-23 22:38 - 00320512 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\win32com.shell.shell.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00776704 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\_hashlib.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 01176576 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\wx._core_.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00806400 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\wx._gdi_.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00816128 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\wx._windows_.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 01067008 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\wx._controls_.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00733184 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\wx._misc_.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00682496 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\pysqlite2._sqlite.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00088064 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\_ctypes.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00119808 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\win32file.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00108544 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\win32security.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00007168 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\hashobjs_ext.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00017920 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\thumbnails_ext.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00088064 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\usb_ext.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00012800 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\common.time34.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00018432 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\win32event.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00167936 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\win32gui.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00046080 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\_socket.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 01208320 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\_ssl.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00128512 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\_elementtree.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00127488 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\pyexpat.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00038912 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\win32inet.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00036864 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\_psutil_windows.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00525208 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\windows._lib_cacheinvalidation.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00011264 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\win32crypt.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00077312 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\wx._html2.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00027136 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\_multiprocessing.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00020480 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\_yappi.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00035840 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\win32process.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00686080 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\unicodedata.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00078848 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\wx._animate.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00123392 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\wx._wizard.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00024064 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\win32pipe.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00010240 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\select.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00025600 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\win32pdh.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00017408 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\win32profile.pyd
2016-10-23 22:38 - 2016-10-23 22:38 - 00022528 ____R () C:\Users\PC\AppData\Local\Temp\_MEI68002\win32ts.pyd
2015-05-14 22:37 - 2007-05-30 16:48 - 00167936 ____N () C:\Program Files (x86)\Common Files\iMpacct\ControlFunc.dll
2015-05-14 22:37 - 2006-05-15 15:24 - 00122938 ____N () C:\Program Files (x86)\Common Files\iMpacct\CommonFunc.dll
2015-05-14 22:37 - 2006-11-30 10:58 - 00061440 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\TWAINAPP.DLL
2015-05-14 22:37 - 2009-09-09 16:33 - 00307200 _____ () C:\Program Files (x86)\Plustek\OpticBook 3600\ScanAPI.dll
2015-05-14 22:37 - 2005-09-21 14:37 - 00077824 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\File Utility.dll
2015-05-14 22:37 - 2005-09-21 14:38 - 00077824 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\Scan Utility.dll
2015-05-14 22:37 - 2005-09-21 14:37 - 00081920 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\Email Utility.dll
2015-05-14 22:37 - 2005-09-21 14:38 - 00081920 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\Web Utility.dll
2015-05-14 22:37 - 2005-09-21 14:37 - 00073728 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\Copy Utility.dll
2015-05-14 22:37 - 2005-09-21 14:36 - 00061440 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\PrnDriver.dll
2015-05-14 22:37 - 2005-09-21 14:37 - 00069632 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\Fax Utility.dll
2015-05-14 22:37 - 2005-09-21 14:38 - 00065536 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\OCR Utility.dll
2015-05-14 22:37 - 2008-09-18 12:23 - 00024576 _____ () C:\Program Files (x86)\Plustek\OpticBook 3600\FineReader.dll
2015-05-14 22:37 - 2005-11-21 17:10 - 00483328 _____ () C:\Program Files (x86)\Plustek\OpticBook 3600\bmp2tiff.dll
2015-05-14 22:37 - 2007-06-04 17:57 - 00036864 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\MaxReader.dll
2015-05-14 22:37 - 2004-01-07 13:47 - 00045056 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\FzOCR.dll
2015-05-14 22:37 - 2004-01-07 13:47 - 00045056 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\PenPower.dll
2015-05-14 22:37 - 2005-09-21 14:37 - 00065536 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\BCR Utility.dll
2015-05-14 22:37 - 2005-09-21 14:38 - 00090112 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\Wallpaper.dll
2015-05-14 22:37 - 2005-09-21 14:38 - 00069632 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\Negative Utility.dll
2015-05-14 22:37 - 2005-09-21 14:38 - 00069632 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\Positive Utility.dll
2015-05-14 22:37 - 2005-09-21 14:38 - 00045056 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\Power Save.dll
2015-05-14 22:37 - 2005-09-21 14:37 - 00045056 ____N () C:\Program Files (x86)\Plustek\OpticBook 3600\Button Config.dll
2016-09-22 13:54 - 2016-09-22 13:54 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2016-03-04 16:55 - 2014-07-10 02:41 - 44580864 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\Prism.dll
2016-03-04 16:55 - 2014-07-11 11:02 - 07982592 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\QtGui4.dll
2016-03-04 16:55 - 2014-07-11 11:02 - 02147328 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\QtCore4.dll
2016-03-04 16:55 - 2014-07-11 11:01 - 03449344 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\CxF2_VC90MD_2.1.dll
2016-03-04 16:55 - 2014-07-11 11:02 - 00898560 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\libxml2.dll
2016-03-04 16:55 - 2014-07-11 11:02 - 00073728 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\zlib1.dll
2016-10-21 10:40 - 2016-10-21 10:40 - 62461720 _____ () C:\Program Files (x86)\Opera\40.0.2308.90\opera.dll
2016-09-28 07:29 - 2016-09-28 07:29 - 00679624 _____ () C:\Users\PC\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\ClientTelemetry.dll
2016-10-21 10:40 - 2016-10-21 10:39 - 01812760 _____ () C:\Program Files (x86)\Opera\40.0.2308.90\libglesv2.dll
2016-10-21 10:40 - 2016-10-21 10:39 - 00095000 _____ () C:\Program Files (x86)\Opera\40.0.2308.90\libegl.dll
2010-03-26 21:04 - 2010-03-26 21:04 - 00040896 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5\boost_threads.dll
2010-03-26 21:03 - 2010-03-26 21:03 - 00072128 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5\boost_filesystem.dll
2010-03-26 21:03 - 2010-03-26 21:03 - 00654784 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5\boost_regex.dll
2010-03-26 21:04 - 2010-03-26 21:04 - 00018368 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5\boost_system.dll
2010-03-26 21:02 - 2010-03-26 21:02 - 00061888 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5\ASLSupport.dll
2008-12-13 09:47 - 2008-12-13 09:47 - 00026112 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5\tbbmalloc.dll
2010-02-04 03:00 - 2010-02-04 03:00 - 00378848 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5\Plug-ins\Filters\Sangam Readers\Reader For PageMaker.smrd
2010-03-26 21:07 - 2010-03-26 21:07 - 00121792 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5\PMFileReader.dll
2010-03-26 21:02 - 2010-03-26 21:02 - 00046016 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5\ALDVM32CJK.dll
2010-03-26 21:02 - 2010-03-26 21:02 - 00051136 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5\ALDFS32CJK.dll
2010-03-26 21:09 - 2010-03-26 21:09 - 00095680 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5\unihan.dll
2010-02-22 04:50 - 2010-02-22 04:50 - 00060416 _____ () C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\zlib1.dll
2012-01-09 05:04 - 2012-01-09 05:04 - 00410942 _____ () C:\Program Files (x86)\Adobe\Adobe InDesign CS5\Utilities\adb.exe

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-329123614-2939122966-1240902447-1000\Control Panel\Desktop\\Wallpaper -> E:\_kuba\_obrázky\gerda wegener 9x.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is disabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

MSCONFIG\startupreg: Acrobat Assistant 8.0 => "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
MSCONFIG\startupreg: Adobe Acrobat Speed Launcher => "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: AdobeBridge => 
MSCONFIG\startupreg: VDownloader => "C:\Program Files\VDownloader\VDownloader4.exe" /silent
HKLM\...\StartupApproved\Run: => "VDownloader"
HKU\S-1-5-21-329123614-2939122966-1240902447-1000\...\StartupApproved\Run: => "OneDrive"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [{D66BA0D3-AE10-4A13-B150-42DA34DEA2F5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{25BE55A6-8B24-423E-AE19-A9E97054EDB7}] => (Allow) C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
FirewallRules: [{BA104479-E577-45C9-A688-44145A15B300}] => (Allow) C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe
FirewallRules: [{24D6E899-E7FF-4442-9D9B-F6CC965104ED}] => (Allow) C:\Program Files (x86)\Spyware Terminator\SpywareTerminator.exe
FirewallRules: [{15D01FAD-4C4B-4105-9F10-B363CACDCA2F}] => (Allow) C:\Program Files (x86)\Spyware Terminator\SpywareTerminator.exe
FirewallRules: [{FB37CB32-D4C4-4BBC-9E36-03813EA094E5}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{DC6993F8-2230-4785-8D5A-964DFBBE3CB1}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{432242F5-1500-4095-88D5-9D267BE7206B}] => (Allow) LPort=5454
FirewallRules: [UDP Query User{7EE816B3-B020-49DF-B80D-658955EB6C56}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe
FirewallRules: [TCP Query User{AF2F6EC3-083B-4169-A414-F353E1448750}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe
FirewallRules: [{445B28B1-5F04-4EA2-9593-20E3FB2AB038}] => (Allow) C:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe
FirewallRules: [{BEA9B28D-6A3F-40C0-A2F7-DA472348740C}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{EBA8EB32-6836-41EC-9FE7-4A7123084193}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{6A263FBF-81C8-47F4-BBBA-88A180E28C1D}] => (Block) c:\Program Files\Corel\CorelDRAW Graphics Suite X7\Programs64\CorelDrw.exe
FirewallRules: [{8B903D55-54F8-40E3-AE38-704A3E9C5DCB}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{ACDF325B-272A-40A3-9435-EC6ACC9AFBD5}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{5DEB1323-0BAE-4B08-BBD8-91E8E48F481C}] => (Allow) C:\Program Files (x86)\Pantone Color Manager\PantoneColorManager.exe
FirewallRules: [{0CE5DD2E-8AE0-49F6-A0F8-08CDBB22227F}] => (Allow) C:\Program Files (x86)\Pantone Color Manager\PantoneColorManager.exe
FirewallRules: [{8DC0ACA8-8375-4733-8E26-192CBB6C2410}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{1B48C4B6-35AB-4771-A054-F97FC7B7DE3D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{10460BF4-2FA6-4E3F-8854-5242A78803B9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{44EB7209-D166-4B60-BC36-53EA673FEA8C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{139E0E71-AD4D-4F38-94F9-F435B13A7861}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{E92C3301-EEDF-4A34-A046-F234540569C9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{89FBC7A7-FB1D-4D6F-8843-B9EC0B01A2BC}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
FirewallRules: [{675CB176-9C25-4D90-93DC-280EB3A44E32}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
FirewallRules: [{C789B79E-2158-41F8-AFC0-13D86C768A26}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
FirewallRules: [{C92FEBEB-1066-4DE5-BF83-E0F853226F56}] => (Allow) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
FirewallRules: [{64F5721F-F38C-4A90-98A7-59BB2CC6F29C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (10/23/2016 10:39:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: IEXPLORE.EXE, verze: 11.0.14393.0, časové razítko: 0x57899082
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.14393.321, časové razítko: 0x57f4c291
Kód výjimky: 0x0eedfade
Posun chyby: 0x000da6f2
ID chybujícího procesu: 0x1c58
Čas spuštění chybující aplikace: 0x01d22d6d8382dfb6
Cesta k chybující aplikaci: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: 7377104c-fcbb-41be-b576-f7f5bfde4a2a
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (10/20/2016 04:27:09 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AvastSvc.exe, verze: 12.3.3154.0, časové razítko: 0x57b5c39d
Název chybujícího modulu: ntdll.dll, verze: 10.0.14393.206, časové razítko: 0x57dacde1
Kód výjimky: 0xc0000374
Posun chyby: 0x000d9841
ID chybujícího procesu: 0x1ef8
Čas spuštění chybující aplikace: 0x01d22ad5a4473f3f
Cesta k chybující aplikaci: C:\Program Files\AVAST Software\Avast\AvastSvc.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 02c17aeb-d630-4898-a014-5cbfdf548090
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (10/20/2016 03:25:35 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Generování kontextu aktivace pro C:\Program Files (x86)\Adobe\Acrobat 9.0\Designer 8.2\FormDesigner.exe se nezdařilo. Chyba v souboru manifestu nebo zásad  na řádku .
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.0_none_2d0f50fcbdb171b8.manifest.
Součást 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.0_none_74bc87d3d22d9abe.manifest.

Error: (10/20/2016 06:51:13 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Microsoft.Photos.exe verze 1.0.1607.22006 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 36f0

Čas spuštění: 01d22a6456793001

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe

ID hlášení: ce2f89d0-9680-11e6-9066-001fd0967481

Úplný název balíčku s chybou: Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe

ID aplikace související s balíčkem s chybou: App

Error: (10/20/2016 06:50:48 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: PC-PC)
Description: Balíček Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe+App se ukončil, protože jeho pozastavování trvalo moc dlouho.

Error: (10/19/2016 09:36:14 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PC-PC)
Description: Aplikaci Microsoft.Windows.Photos_8wekyb3d8bbwe!App se nepovedlo aktivovat, protože došlo k chybě: -2147023170. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (10/18/2016 09:22:43 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Microsoft.Photos.exe verze 1.0.1607.22006 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: e18

Čas spuštění: 01d228fb2f256977

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe

ID hlášení: a5fd46f2-9503-11e6-9066-001fd0967481

Úplný název balíčku s chybou: Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe

ID aplikace související s balíčkem s chybou: App

Error: (10/18/2016 09:22:27 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: PC-PC)
Description: Balíček Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe+App se ukončil, protože jeho pozastavování trvalo moc dlouho.

Error: (10/17/2016 10:05:37 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Microsoft.Photos.exe verze 1.0.1607.22006 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 232c

Čas spuštění: 01d228320c78abe3

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe

ID hlášení: 78df8203-9440-11e6-9066-001fd0967481

Úplný název balíčku s chybou: Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe

ID aplikace související s balíčkem s chybou: App

Error: (10/17/2016 10:05:35 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PC-PC)
Description: Aplikaci Microsoft.Windows.Photos_8wekyb3d8bbwe!App se nepovedlo aktivovat, protože došlo k chybě: -2147023170. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.


System errors:
=============
Error: (10/23/2016 10:37:56 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 a APPID 
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/23/2016 10:37:49 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba NetTcpActivator závisí na službě NetTcpPortSharing, která neuspěla při spuštění v důsledku následující chyby: 
Zvolenou službu nelze spustit, protože není povolena nebo s ní není spojeno žádné povolené zařízení.

Error: (10/23/2016 10:37:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba HPWriter Service neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedený soubor.

Error: (10/20/2016 04:27:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Avast Antivirus byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.

Error: (10/20/2016 03:26:08 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba HPWriter Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (10/16/2016 11:03:57 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správce služeb se pokusil o opravnou akci (Spustit nakonfigurovaný program pro obnovení) po nečekaném ukončení služby Avast Antivirus, ale tato akce selhala kvůli následující chybě: 
Systém nemůže nalézt uvedený soubor.

Error: (10/16/2016 11:03:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Avast Antivirus byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Spustit nakonfigurovaný program pro obnovení.

Error: (10/13/2016 09:32:22 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Avast Antivirus byla nečekaně ukončena. Stalo se to 2 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.

Error: (10/13/2016 09:31:35 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{3185A766-B338-11E4-A71E-12E3F512A338}
 a APPID 
{7006698D-2974-4091-A424-85DD0B909E23}
 uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/12/2016 11:13:21 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Avast Antivirus byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.


CodeIntegrity:
===================================
  Date: 2016-10-13 13:14:52.052
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-13 13:14:51.990
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-13 13:14:51.835
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-13 13:14:51.812
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-13 13:14:50.503
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-13 13:14:50.087
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-13 13:13:33.824
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-13 13:13:33.779
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-13 13:13:33.637
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

  Date: 2016-10-13 13:13:33.614
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.


==================== Memory info =========================== 

Processor: Pentium(R) Dual-Core CPU E5400 @ 2.70GHz
Percentage of memory in use: 57%
Total physical RAM: 6142.46 MB
Available physical RAM: 2613.75 MB
Total Virtual: 14846.46 MB
Available Virtual: 10673.41 MB

==================== Drives ================================

Drive c: (SYSTEM) (Fixed) (Total:111.25 GB) (Free:49.84 GB) NTFS
Drive e: (PRACE) (Fixed) (Total:244.14 GB) (Free:6.29 GB) NTFS
Drive f: (FILMY) (Fixed) (Total:454.49 GB) (Free:7.77 GB) NTFS
Drive g: () (Fixed) (Total:279.46 GB) (Free:131.44 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 150ABFC0)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=111.3 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: B6ABC81C)
Partition 1: (Not Active) - (Size=244.1 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=454.5 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 279.5 GB) (Disk ID: 0B0F0B0F)
Partition 1: (Not Active) - (Size=279.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================