Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-07-2017
Ran by rovna (14-07-2017 18:33:32)
Running from C:\Users\rovna\Desktop
Windows 10 Home Version 1703 (X64) (2017-05-31 11:52:38)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3492656462-2757566959-2174110191-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3492656462-2757566959-2174110191-503 - Limited - Disabled)
Guest (S-1-5-21-3492656462-2757566959-2174110191-501 - Limited - Disabled)
rovna (S-1-5-21-3492656462-2757566959-2174110191-1001 - Administrator - Enabled) => C:\Users\rovna

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

64 Bit HP CIO Components Installer (HKLM\...\{345F3F90-0505-4EDF-B7A9-5E3AC1AC6CE4}) (Version: 15.2.1 - Hewlett-Packard) Hidden
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 17.009.20058 - Adobe Systems Incorporated)
Adobe Flash Player 26 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 26.0.0.131 - Adobe Systems Incorporated)
Advanced Archive Password Recovery (HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\Advanced Archive Password Recovery) (Version: 4.53 - ElcomSoft Co. Ltd.)
Anytime USB Charge Utility (HKLM\...\{A794229E-401E-44D4-A8B5-B21E975676DE}) (Version: 3.0.0.0 - FUJITSU LIMITED) Hidden
Anytime USB Charge Utility (HKLM-x32\...\InstallShield_{A794229E-401E-44D4-A8B5-B21E975676DE}) (Version: 3.0.0.0 - FUJITSU LIMITED)
AutoCAD 2010 - česky (HKLM\...\{5783F2D7-8001-0405-0102-0060B0CE6BBA}) (Version: 18.0.55.0 - Autodesk) Hidden
AutoCAD 2010 - česky (HKLM\...\AutoCAD 2010 - česky) (Version: 18.0.55.0 - Autodesk)
Autodesk 360 (HKLM\...\{52B28CAD-F49D-47BA-9FFE-29C2E85F0D0B}) (Version: 4.0.27.1 - Autodesk)
Autodesk App Manager (HKLM-x32\...\{C070121A-C8C5-4D52-9A7D-D240631BD433}) (Version: 1.1.0 - Autodesk)
Autodesk Content Service (HKLM-x32\...\{62F029AB-85F2-0000-866A-9FC0DD99DDBC}) (Version: 3.1.3.0 - Autodesk) Hidden
Autodesk Content Service (HKLM-x32\...\Autodesk Content Service) (Version: 3.1.3.0 - Autodesk)
Autodesk Content Service Language Pack (HKLM-x32\...\{62F029AB-85F2-0001-866A-9FC0DD99DDBC}) (Version: 3.1.3.0 - Autodesk) Hidden
Autodesk Featured Apps (HKLM-x32\...\{F732FEDA-7713-4428-934B-EF83B8DD65D0}) (Version: 1.1.0 - Autodesk)
Autodesk Material Library 2014 (HKLM-x32\...\{644F9B19-A462-499C-BF4D-300ABC2A28B1}) (Version: 4.0.19.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2014 (HKLM-x32\...\{51BF3210-B825-4092-8E0D-66D689916E02}) (Version: 4.0.19.0 - Autodesk)
Autodesk ReCap (HKLM\...\{31ABA3F2-0000-1033-0102-111D43815377}) (Version: 1.0.43.13 - Autodesk) Hidden
Autodesk ReCap (HKLM\...\Autodesk ReCap) (Version: 1.0.43.13 - Autodesk)
Autodesk ReCap Language Pack-English (HKLM\...\{31ABA3F2-0010-1033-0102-111D43815377}) (Version: 1.0.43.13 - Autodesk) Hidden
Avast Internet Security (HKLM-x32\...\Avast Antivirus) (Version: 17.5.2302 - AVAST Software)
Bentley DGN IFilter (HKLM\...\{2E873893-A883-4C06-8308-7B491D58F3D6}) (Version: 1.0.1.11 - Bentley Systems, Incorporated)
Bentley DGN Index Service (HKLM-x32\...\{A753B088-3FCE-4F1C-BF92-8E6931DE261E}) (Version: 08.11.09030 - Bentley Systems, Incorporated)
Bentley DGN Preview Handler (HKLM-x32\...\{264B522D-1B7F-4AAF-A32B-55A6BF5679F2}) (Version: 8.11.8004 - Bentley Systems, Incorporated)
Bentley DGN Thumbnail Provider (HKLM\...\{74A8C1AF-75E5-4653-95AF-222725B7D877}) (Version: 8.11.7.411 - Bentley Systems, Incorporated)
Bentley DgnDb i-model Importer 1.5 x64 (HKLM\...\{A4F99FF8-18AF-45B4-AFB4-9266863B6CEE}) (Version: 01.05.02007.0 - Bentley Systems, Incorporated)
Bentley V8i (SELECTseries 3) - Autodesk® RealDWG™ 2014 (HKLM-x32\...\{23E55F00-CE7A-4860-AF2A-69F3A5F8E54A}) (Version: 08.11.09.578 - Bentley Systems, Incorporated)
Betcoin Poker (HKLM-x32\...\DEAECD1E-0CEF-494d-A7DE-20EC7A6E3F61) (Version: 16.6 - IGSoft)
BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.70.1080 - AB Team, d.o.o.)
CCleaner (HKLM\...\CCleaner) (Version: 5.27 - Piriform)
Cybereason RansomFree 2.2.6.0 (HKLM-x32\...\{95891F83-28D6-4A73-95AD-F8CC86608DE0}) (Version: 2.2.6.0 - Cybereason Inc.)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.2.0.0115 - Disc Soft Ltd)
DeskUpdate (HKLM-x32\...\DeskUpdate_is1) (Version: 4.15.0144 - Fujitsu Technology Solutions)
DHTML Editing Component (HKLM-x32\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0002 - Microsoft Corporation)
Electrum (HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\Electrum) (Version: 2.6.4 - Electrum Technologies GmbH)
FARO LS 1.1.501.0 (64bit) (HKLM-x32\...\{8A470330-70B2-49AD-86AF-79885EF9898A}) (Version: 5.1.0.30630 - FARO Scanner Production)
Fujitsu BIOS Driver (HKLM\...\{7292FFCF-FA9A-4585-AB80-A71961F931AF}) (Version: 1.2.0.0 - FUJITSU LIMITED) Hidden
Fujitsu BIOS Driver (HKLM-x32\...\InstallShield_{7292FFCF-FA9A-4585-AB80-A71961F931AF}) (Version: 1.2.0.0 - FUJITSU LIMITED)
Fujitsu MobilityCenter Extension Utility (HKLM\...\{EC314CDF-3521-482B-A21C-65AC95664814}) (Version: 4.01.00.000 - FUJITSU LIMITED) Hidden
Fujitsu MobilityCenter Extension Utility (HKLM-x32\...\InstallShield_{EC314CDF-3521-482B-A21C-65AC95664814}) (Version: 4.01.00.000 - FUJITSU LIMITED)
Fujitsu System Extension Utility (HKLM\...\{E8A5B78F-4456-4511-AB3D-E7BFFB974A7A}) (Version: 3.6.3.0 - FUJITSU LIMITED) Hidden
Fujitsu System Extension Utility (HKLM-x32\...\InstallShield_{E8A5B78F-4456-4511-AB3D-E7BFFB974A7A}) (Version: 3.6.3.0 - FUJITSU LIMITED)
Function Manager (HKLM\...\{FFAA234C-E621-4787-A02D-5CD0852000D4}) (Version: 1.2.0.0 - FUJITSU LIMITED) Hidden
Function Manager (HKLM-x32\...\InstallShield_{FFAA234C-E621-4787-A02D-5CD0852000D4}) (Version: 1.2.0.0 - FUJITSU LIMITED)
GeoWin-DTM 2010-2017-64bit (HKLM\...\GeoWin-DTM 2010-2017-64bit_is1) (Version:  - Pavel Blažíček)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.115 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden
Groma v.8 (HKLM-x32\...\Groma v.8) (Version:  - )
HDR Preview (HKLM\...\{9F7815C9-A323-4215-905C-73137D21BCC0}) (Version: 1.0.0.2 - Bentley Systems, Incorporated)
i-model ODBC Driver for Windows 7 (HKLM-x32\...\{775616F7-2D4C-4D73-8773-A66C0BCECB38}) (Version: 01.01.00019 - Bentley Systems, Incorporated)
i-model ODBC Driver for Windows 7 (x64) (HKLM\...\{454AD0FD-21D2-4E73-99E9-A40CAC75A636}) (Version: 01.01.00019 - Bentley Systems, Incorporated)
Intel(R) Chipset Device Software (HKLM-x32\...\{c6cff78a-cccb-49d5-be68-ae0ec5f0d48a}) (Version: 10.1.1.8 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1158 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4278 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.2.1088 - Intel Corporation)
Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
Jazykový balíček aplikace AutoCAD 2010 - čeština (HKLM\...\{5783F2D7-8001-0405-1102-0060B0CE6BBA}) (Version: 18.0.55.0 - Autodesk) Hidden
LIFEBOOK Application Panel (HKLM\...\{6226477E-444F-4DFE-BA19-9F4F7D4565BC}) (Version: 8.5.11.0 - FUJITSU LIMITED) Hidden
LIFEBOOK Application Panel (HKLM-x32\...\InstallShield_{6226477E-444F-4DFE-BA19-9F4F7D4565BC}) (Version: 8.5.11.0 - FUJITSU LIMITED)
MetaTrader 4 (HKLM-x32\...\MetaTrader 4) (Version: 4.00 - MetaQuotes Software Corp.)
Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110405-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.6361.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\OneDriveSetup.exe) (Version: 17.3.6917.0607 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
MicroStation V8i (SELECTseries 3) 08.11.09.578 (HKLM-x32\...\{B234DC00-1003-47E7-8111-230AA9E6BF10}) (Version: 08.11.09.578 - Bentley Systems, Incorporated)
Miranda NG (HKLM-x32\...\Miranda NG_is1) (Version: 0.95.4 - Miranda NG Team)
Mozilla Firefox 54.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 54.0.1 (x86 en-US)) (Version: 54.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 54.0.1.6388 - Mozilla)
Plugfree NETWORK (HKLM\...\{39665EA9-2CE3-4E85-801C-C5C3DAF1F46C}) (Version: 7.2.001 - FUJITSU LIMITED) Hidden
Plugfree NETWORK (HKLM\...\{7BA64D21-EE46-4a9a-8145-52B0175C3F86}) (Version: 7.2.0.1 - FUJITSU LIMITED)
Pointing Device Utility (HKLM\...\{DDC49774-40B9-47AE-9C63-5569C08C4082}) (Version: 2.3.1.0 - FUJITSU LIMITED) Hidden
Pointing Device Utility (HKLM-x32\...\InstallShield_{DDC49774-40B9-47AE-9C63-5569C08C4082}) (Version: 2.3.1.0 - FUJITSU LIMITED)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 10.0.1.1 - Qualcomm Atheros)
Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros)
reaConverter 7 Standard (HKLM-x32\...\{659727C6-7267-4076-803B-351A467F6CAF}_is1) (Version: 7.2.19.0 - reaConverter LLC)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10125.31214 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7571 - Realtek Semiconductor Corp.)
Sada Compatibility Pack pro systém Office 2007 (HKLM-x32\...\{90120000-0020-0405-0000-0000000FF1CE}) (Version: 12.0.6514.5001 - Microsoft Corporation)
SafeZone Stable 3.55.2393.609 (HKLM-x32\...\SafeZone 3.55.2393.609) (Version: 3.55.2393.609 - Avast Software) Hidden
SketchUp Import for AutoCAD 2014 (HKLM-x32\...\{644E9589-F73A-49A4-AC61-A953B9DE5669}) (Version: 1.1.0 - Autodesk)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.13.20 - Synaptics Incorporated)
TextPad 8 (HKLM\...\{861AB1C1-1967-4C4A-BF86-C255E2D2B8FD}) (Version: 8.0.2 - Helios)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.52a - Ghisler Software GmbH)
Visualization Content (HKLM-x32\...\{0D41BCFC-B16D-479F-8347-4F68F6CD34CE}) (Version: 8.11.9.454 - Bentley Systems, Incorporated)
Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation)
Windows Driver Package - FUJITSU LIMITED (FUJ02B1) System  (05/22/2015 1.23) (HKLM\...\2923A2E94A8F5283309C9BA8EAD86769B92AFD99) (Version: 05/22/2015 1.23 - FUJITSU LIMITED)
Windows Driver Package - FUJITSU LIMITED (FUJ02E3) System  (05/22/2015 1.30.3.0) (HKLM\...\A1B419AE27B7A71A04669DF9C4FE00AED8CE0EDA) (Version: 05/22/2015 1.30.3.0 - FUJITSU LIMITED)
WinRAR 5.50 beta 5 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.5 - win.rar GmbH)
Wireless Radio Switch Driver (HKLM\...\{13031CDF-00D2-4FCE-AB13-8430D8733574}) (Version: 2.0.0.0 - FUJITSU LIMITED) Hidden
Wireless Radio Switch Driver (HKLM-x32\...\InstallShield_{13031CDF-00D2-4FCE-AB13-8430D8733574}) (Version: 2.0.0.0 - FUJITSU LIMITED)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001_Classes\CLSID\{5A9E21A2-851A-4BEB-B16F-DBBE7D648AF9}\InprocServer32 -> C:\Program Files\TextPad 8\System\ShellExt64.dll ()
CustomCLSID: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\AutoCAD 2010\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\AutoCAD 2010\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\AutoCAD 2010\acadficn.dll (Autodesk, Inc.)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  -> No File
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  -> No File
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  -> No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-06-26] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-06-26] (AVAST Software)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll [2013-02-08] (Autodesk, Inc.)
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  -> No File
ContextMenuHandlers01: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2013-02-08] (Autodesk)
ContextMenuHandlers01: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-06-26] (AVAST Software)
ContextMenuHandlers01: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers01: [ReaConverter7_std] -> {0C83C06D-41F5-4666-B1C2-0923EA75EB10} => C:\Program Files (x86)\reaConverter 7 Standard\new_context64.dll [2016-05-04] ()
ContextMenuHandlers01: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR_\rarext.dll [2017-07-11] (Alexander Roshal)
ContextMenuHandlers01: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} =>  -> No File
ContextMenuHandlers02: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers03: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-06-26] (AVAST Software)
ContextMenuHandlers03: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers04: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> No File
ContextMenuHandlers04: [ReaConverter7_std] -> {0C83C06D-41F5-4666-B1C2-0923EA75EB10} => C:\Program Files (x86)\reaConverter 7 Standard\new_context64.dll [2016-05-04] ()
ContextMenuHandlers05: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers05: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-02-09] (Intel Corporation)
ContextMenuHandlers06: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-06-26] (AVAST Software)
ContextMenuHandlers06: [ReaConverter7_std] -> {0C83C06D-41F5-4666-B1C2-0923EA75EB10} => C:\Program Files (x86)\reaConverter 7 Standard\new_context64.dll [2016-05-04] ()
ContextMenuHandlers06: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR_\rarext.dll [2017-07-11] (Alexander Roshal)
ContextMenuHandlers06: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} =>  -> No File
ContextMenuHandlers1_S-1-5-21-3492656462-2757566959-2174110191-1001: [TextPad8] -> {5A9E21A2-851A-4BEB-B16F-DBBE7D648AF9} => C:\Program Files\TextPad 8\System\ShellExt64.dll [2016-02-28] ()

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {02014BF9-4C9B-412E-919B-C3FF813B1727} - System32\Tasks\Fujitsu\StatusPanelSwitch\EnableLANAdapter => C:\Program Files\Fujitsu\StatusPanelSwitch\DeviceEngine\LANCtrl.exe [2015-07-24] (FUJITSU LIMITED)
Task: {06D0D2B8-0DFF-4125-BCFA-E080514A64D0} - System32\Tasks\Cybereason RansomFree Keepalive => C:\Program Files (x86)\Cybereason\RansomFree\CybereasonRansomFree.exe [2017-04-12] (Cybereason)
Task: {14BA94FF-0EF1-4EC2-B087-C33F4CB515B6} - System32\Tasks\Fujitsu\ApplicationPanel\DisableBtnHndStartQuickTouchOnWakeupAtLogon => C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [2015-07-06] (FUJITSU LIMITED)
Task: {1ACB6BDA-0182-4882-9159-35F7781331AE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-22] (Google Inc.)
Task: {1DC6BE14-D942-49BF-8A4D-01BE59B2829C} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-06-26] (AVAST Software)
Task: {216F9C73-D6D0-4C13-8EA2-F2975C0678EE} - System32\Tasks\Fujitsu\StatusPanelSwitch\PressHoldButton => C:\Program Files\Fujitsu\StatusPanelSwitch\PressHoldButton.exe [2015-07-24] (FUJITSU LIMITED)
Task: {29A62C84-B8F8-4F2E-B760-051C40DCF69E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated)
Task: {2E89F308-3CAC-4C7A-A53F-8E5A638E9D22} - System32\Tasks\Fujitsu\ApplicationPanel\BtnHndStartQuickTouchOnWakeupNow => C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [2015-07-06] (FUJITSU LIMITED)
Task: {32BCE632-203C-45D0-8F39-10B801EF83C5} - System32\Tasks\Fujitsu\StatusPanelSwitch\NotifyOfCradleStatusChange => C:\Program Files\Fujitsu\StatusPanelSwitch\StatusPanelSwitch.exe [2015-07-24] (FUJITSU LIMITED)
Task: {36B8C42E-22B2-41F6-82E0-342D43FB1F41} - System32\Tasks\Fujitsu\ApplicationPanel\BtnHndStartBtnHndHKB => C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [2015-07-06] (FUJITSU LIMITED)
Task: {3FFFB86A-386B-4D9E-8339-2C4386ED2E49} - System32\Tasks\Fujitsu\StatusPanelSwitch\StopSuspendPrevention => C:\Program Files\Fujitsu\StatusPanelSwitch\DeviceEngine\StopSuspendPrevention.exe [2015-07-24] (FUJITSU LIMITED)
Task: {56C45711-DC76-4FFF-8CD7-552C19F034FE} - System32\Tasks\Fujitsu\ApplicationPanel\BtnHndCheckOnWakeupBySwitch => C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [2015-07-06] (FUJITSU LIMITED)
Task: {5BFD5A50-598A-4173-8234-0CBCE549ABD4} - System32\Tasks\Fujitsu\StatusPanelSwitch\QuickNoteTaking => C:\Program Files\Fujitsu\StatusPanelSwitch\ScreenCapture.exe [2015-07-24] (FUJITSU LIMITED)
Task: {60702246-542F-4063-839E-F40926CEABB3} - System32\Tasks\Fujitsu\StatusPanelSwitch\DisableLANAdapter => C:\Program Files\Fujitsu\StatusPanelSwitch\DeviceEngine\LANCtrl.exe [2015-07-24] (FUJITSU LIMITED)
Task: {6B024706-9EE9-49A1-A494-497BFA859364} - System32\Tasks\Fujitsu\StatusPanelSwitch\ShowDialogToRestartSuspendPrevention => C:\Program Files\Fujitsu\StatusPanelSwitch\StatusPanelSwitch.exe [2015-07-24] (FUJITSU LIMITED)
Task: {7EE17BC0-15A2-4A28-B033-F1203A5DCE78} - System32\Tasks\Fujitsu\ApplicationPanel\BtnHndStartQuickTouchOnWakeupAtLogon => C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [2015-07-06] (FUJITSU LIMITED)
Task: {870FCC06-DE96-456D-AA15-CF9A9E4E8700} - System32\Tasks\Fujitsu\StatusPanelSwitch\ResetDeviceCurrentStatus => C:\Program Files\Fujitsu\StatusPanelSwitch\SetDeviceCurrentStatus.exe [2015-07-24] (Fujitsu Limited)
Task: {913571CF-F7C7-4B6A-ACA8-8C049E12430A} - System32\Tasks\Fujitsu\StatusPanelSwitch\StopPopupPrevention => C:\Program Files\Fujitsu\StatusPanelSwitch\DeviceEngine\StopPopupPrevention.exe [2015-07-24] (FUJITSU LIMITED)
Task: {9889C16C-28A5-43C8-A4B0-6FF729203530} - System32\Tasks\Fujitsu\ApplicationPanel\BtnHndCheckOnWakeup => C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [2015-07-06] (FUJITSU LIMITED)
Task: {A81A0AA1-8E43-4949-808B-8BBDA6EF9925} - System32\Tasks\SafeZone scheduled Autoupdate 1457102494 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-06-13] (Avast Software)
Task: {B7AA0E60-6BFA-4804-AA4D-C04C1DE82581} - System32\Tasks\Fujitsu\PointingDeviceUtility\ToggleIPD => C:\Program Files\Fujitsu\PointingDeviceUtility\FJPDAutoSet.exe [2015-07-07] (FUJITSU LIMITED)
Task: {BAF16037-16F8-422A-A85D-0474E4DF00CE} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2017-07-12] (Microsoft Corporation)
Task: {BE9F8B1B-4084-4E3E-B574-DD058C9EBEF0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-22] (Google Inc.)
Task: {C66AA0AC-DFA4-4169-9359-F9FF2BC730F8} - System32\Tasks\Fujitsu\PointingDeviceUtility\SetDriverIfFuj02b1DisableOnLogon => C:\Program Files\Fujitsu\PointingDeviceUtility\FJPDAutoSet.exe [2015-07-07] (FUJITSU LIMITED)
Task: {D04A4511-6FFF-4184-AEBB-C9D822328786} - System32\Tasks\Fujitsu\ApplicationPanel\BtnHndSetWakeupSetting => C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [2015-07-06] (FUJITSU LIMITED)
Task: {D0E7BBA9-9E0B-478D-8B61-26DD37486A1F} - System32\Tasks\Cybereason RansomFree Autostart => C:\Program Files (x86)\Cybereason\RansomFree\CybereasonRansomFree.exe [2017-04-12] (Cybereason)
Task: {E8F324EB-549C-447D-920E-A10B41FCD4D3} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-07-12] (AVAST Software)
Task: {F1B2B4F5-30D0-4879-B6F0-3F970DAFB655} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-02-08] (Piriform Ltd)
Task: {F60ED190-CE48-4991-A856-B567701FFE12} - System32\Tasks\Fujitsu\ApplicationPanel\BtnHndOnS0 => C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [2015-07-06] (FUJITSU LIMITED)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2015-05-19 18:11 - 2015-05-19 18:11 - 00007680 _____ () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
2017-03-18 22:58 - 2017-03-18 22:58 - 00138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-02-09 02:13 - 2017-02-09 02:13 - 00401864 _____ () C:\WINDOWS\system32\igfxTray.exe
2017-03-18 22:59 - 2017-03-20 06:45 - 01731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-06-21 00:58 - 2017-06-21 01:00 - 00074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-06-21 00:58 - 2017-06-21 01:00 - 00203264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-06-21 00:58 - 2017-06-21 01:00 - 43454464 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-06-21 00:58 - 2017-06-21 01:00 - 02437120 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\skypert.dll
2016-06-21 11:55 - 2016-06-20 21:01 - 00094208 _____ () C:\Program Files\Miranda NG\libs\zlib.mir
2016-06-21 11:55 - 2016-06-20 21:01 - 00158720 _____ () C:\Program Files\Miranda NG\libs\mir_core.mir
2016-01-24 15:47 - 2016-06-20 21:02 - 00062464 _____ () C:\Program Files\Miranda NG\Plugins\CrashDumper.dll
2016-01-24 15:47 - 2016-06-20 21:01 - 00074240 _____ () C:\Program Files\Miranda NG\Plugins\Dbx_mmap.dll
2016-01-24 15:47 - 2016-06-20 21:01 - 00047104 _____ () C:\Program Files\Miranda NG\Plugins\Import.dll
2016-01-24 15:47 - 2016-06-20 21:03 - 00034816 _____ () C:\Program Files\Miranda NG\Core\stdcrypt.dll
2016-01-24 15:47 - 2016-06-20 21:03 - 00016896 _____ () C:\Program Files\Miranda NG\Core\stdssl.dll
2016-01-24 15:47 - 2016-06-20 21:02 - 00708608 _____ () C:\Program Files\Miranda NG\Plugins\AdvaImg.dll
2016-01-24 15:47 - 2016-06-20 21:02 - 00515584 _____ () C:\Program Files\Miranda NG\Plugins\Clist_modern.dll
2016-01-24 15:47 - 2016-06-20 21:01 - 00204800 _____ () C:\Program Files\Miranda NG\Plugins\AIM.dll
2016-01-24 15:47 - 2016-06-20 21:01 - 00070144 _____ () C:\Program Files\Miranda NG\Plugins\AVS.dll
2016-01-24 15:47 - 2016-06-20 21:02 - 00380416 _____ () C:\Program Files\Miranda NG\Plugins\Facebook.dll
2016-06-21 11:55 - 2016-06-20 21:01 - 00064000 _____ () C:\Program Files\Miranda NG\libs\libjson.mir
2016-01-24 15:47 - 2016-06-20 21:01 - 00427520 _____ () C:\Program Files\Miranda NG\Plugins\ICQ.dll
2016-01-24 15:47 - 2016-06-20 21:01 - 00336384 _____ () C:\Program Files\Miranda NG\Plugins\IRC.dll
2016-01-24 15:47 - 2016-06-20 21:02 - 00078848 _____ () C:\Program Files\Miranda NG\Plugins\PluginUpdater.dll
2016-01-24 15:47 - 2016-06-20 21:01 - 00611328 _____ () C:\Program Files\Miranda NG\Plugins\TabSRMM.dll
2016-01-24 15:47 - 2016-06-20 21:02 - 00048128 _____ () C:\Program Files\Miranda NG\Plugins\TopToolBar.dll
2016-01-24 15:47 - 2016-06-20 21:03 - 00041472 _____ () C:\Program Files\Miranda NG\Core\stduserinfo.dll
2016-01-24 15:47 - 2016-06-20 21:03 - 00010240 _____ () C:\Program Files\Miranda NG\Core\stdemail.dll
2016-01-24 15:47 - 2016-06-20 21:03 - 00016896 _____ () C:\Program Files\Miranda NG\Core\stdauth.dll
2016-01-24 15:47 - 2016-06-20 21:03 - 00061952 _____ () C:\Program Files\Miranda NG\Core\stdfile.dll
2016-01-24 15:47 - 2016-06-20 21:03 - 00014848 _____ () C:\Program Files\Miranda NG\Core\stdhelp.dll
2016-01-24 15:47 - 2016-06-20 21:03 - 00015360 _____ () C:\Program Files\Miranda NG\Core\stduihist.dll
2016-01-24 15:47 - 2016-06-20 21:03 - 00016896 _____ () C:\Program Files\Miranda NG\Core\stdidle.dll
2016-01-24 15:47 - 2016-06-20 21:03 - 00009728 _____ () C:\Program Files\Miranda NG\Core\stdautoaway.dll
2016-01-24 15:47 - 2016-06-20 21:03 - 00010752 _____ () C:\Program Files\Miranda NG\Core\stduseronline.dll
2016-01-24 15:47 - 2016-06-20 21:03 - 00024064 _____ () C:\Program Files\Miranda NG\Core\stdaway.dll
2017-06-29 07:49 - 2017-06-23 05:21 - 03807064 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.115\libglesv2.dll
2017-06-29 07:49 - 2017-06-23 05:21 - 00100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.115\libegl.dll
2017-06-26 15:28 - 2017-06-26 15:28 - 00170224 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2017-07-14 13:14 - 2017-07-14 13:14 - 01038952 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll
2017-06-26 15:28 - 2017-06-26 15:28 - 67109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2017-06-26 15:28 - 2017-06-26 15:28 - 00192664 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll
2017-06-26 15:28 - 2017-06-26 15:28 - 00224256 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll
2017-06-26 15:28 - 2017-06-26 15:28 - 00292920 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2017-06-27 19:59 - 2017-06-27 19:59 - 02962096 _____ () C:\Program Files\AVAST Software\Avast\aswDataScan.dll
2017-06-26 15:28 - 2017-06-26 15:28 - 00689272 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2015-07-11 08:37 - 2015-07-11 08:37 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\Software\Classes\.scr: AutoCADScriptFile => 

==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\123simsen.com -> www.123simsen.com

There are 7914 more sites.


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-07-10 13:04 - 2017-06-26 18:28 - 00453135 ____R C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1	www.007guard.com
127.0.0.1	007guard.com
127.0.0.1	008i.com
127.0.0.1	www.008k.com
127.0.0.1	008k.com
127.0.0.1	www.00hq.com
127.0.0.1	00hq.com
127.0.0.1	010402.com
127.0.0.1	www.032439.com
127.0.0.1	032439.com
127.0.0.1	www.0scan.com
127.0.0.1	0scan.com
127.0.0.1	1000gratisproben.com
127.0.0.1	www.1000gratisproben.com
127.0.0.1	1001namen.com
127.0.0.1	www.1001namen.com
127.0.0.1	100888290cs.com
127.0.0.1	www.100888290cs.com
127.0.0.1	www.100sexlinks.com
127.0.0.1	100sexlinks.com
127.0.0.1	10sek.com
127.0.0.1	www.10sek.com
127.0.0.1	www.1-2005-search.com
127.0.0.1	1-2005-search.com
127.0.0.1	123fporn.info
127.0.0.1	www.123fporn.info
127.0.0.1	123haustiereundmehr.com
127.0.0.1	www.123haustiereundmehr.com
127.0.0.1	123moviedownload.com
127.0.0.1	www.123moviedownload.com

There are 15549 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\rovna\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\fujitsubackground.jpg
DNS Servers: 10.0.0.10 - 10.0.0.11
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk"
HKLM\...\StartupApproved\Run32: => "YouCam Service6"
HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3492656462-2757566959-2174110191-1001\...\StartupApproved\Run: => "CCleaner Monitoring"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{31EE3431-0ACF-4906-A815-DCFE02189927}] => (Allow) C:\Program Files (x86)\Common Files\Bentley Shared\Dgn  Index Service\DgnIndexServer.exe
FirewallRules: [UDP Query User{97E01F68-E04A-4B83-9DFE-C9D4050B0AF6}C:\program files\miranda ng\miranda64.exe] => (Allow) C:\program files\miranda ng\miranda64.exe
FirewallRules: [TCP Query User{143B9A6F-12FE-4C61-B072-E39DFBA0DFE4}C:\program files\miranda ng\miranda64.exe] => (Allow) C:\program files\miranda ng\miranda64.exe
FirewallRules: [{4E976748-4F1D-468F-B598-8BEDD5B9DF99}] => (Allow) LPort=50248
FirewallRules: [{6E4AED8A-9F05-4E10-AF90-0307D42CCEFE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{7D0057FE-C055-4CE9-98EF-0952DD659E9F}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{739AF8AD-10A1-466C-B319-181917F72F14}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.607\SZBrowser.exe
FirewallRules: [{7B493258-C8F0-4DEE-9E2F-BE87EE03FEA8}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe
FirewallRules: [{85CECBD8-F296-4E3D-82AE-8EA8E6B290CF}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

28-06-2017 16:07:10 Naplánovaný kontrolní bod
07-07-2017 17:26:21 Naplánovaný kontrolní bod
12-07-2017 12:43:34 Odebráno: WinZip 21.0

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (07/14/2017 11:21:35 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (07/13/2017 03:47:36 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-KO2QG7N6)
Description: Aplikaci Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (07/12/2017 12:40:17 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program winzip21_downwz.exe verze 1.0.477.1 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 960

Čas spuštění: 01d2faf9dee0875f

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Users\rovna\AppData\Local\Temp\144603bc\winzip21_downwz.exe

ID hlášení: c4aa4580-b76b-4d35-8016-88d6bc5261b7

Úplný název balíčku s chybou: 

ID aplikace související s balíčkem s chybou:

Error: (07/11/2017 10:06:13 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (07/07/2017 05:15:46 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-KO2QG7N6)
Description: Aplikaci Microsoft.Windows.Photos_8wekyb3d8bbwe!App se nepovedlo aktivovat, protože došlo k chybě: -2147417836. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (07/07/2017 11:29:44 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (07/05/2017 06:16:18 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (07/04/2017 01:47:32 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (07/04/2017 12:22:49 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP-KO2QG7N6)
Description: Aplikaci Microsoft.ZuneMusic_8wekyb3d8bbwe!Microsoft.ZuneMusic se nepovedlo aktivovat, protože došlo k chybě: -2144927142. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (07/03/2017 07:50:57 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.


System errors:
=============
Error: (07/14/2017 06:28:57 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba CldFlt neuspěla při spuštění v důsledku následující chyby: 
Požadavek není podporován.

Error: (07/14/2017 06:28:09 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {A463FCB9-6B1C-4E0D-A80B-A2CA7999E25D} se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/14/2017 06:28:09 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {A463FCB9-6B1C-4E0D-A80B-A2CA7999E25D} se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/14/2017 06:28:09 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {A463FCB9-6B1C-4E0D-A80B-A2CA7999E25D} se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/14/2017 06:28:09 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {A463FCB9-6B1C-4E0D-A80B-A2CA7999E25D} se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/14/2017 06:28:08 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-KO2QG7N6)
Description: Server {0002DF02-0000-0000-C000-000000000046} se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/14/2017 06:28:08 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-KO2QG7N6)
Description: Server {0002DF02-0000-0000-C000-000000000046} se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/14/2017 06:27:07 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 a APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (07/14/2017 01:06:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba CldFlt neuspěla při spuštění v důsledku následující chyby: 
Požadavek není podporován.

Error: (07/14/2017 01:05:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Windows Search neuspěla při spuštění v důsledku následující chyby: 
Služba nebyla zahájena, protože se nepodařilo přihlásit.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i3-4005U CPU @ 1.70GHz
Percentage of memory in use: 62%
Total physical RAM: 4003.7 MB
Available physical RAM: 1515.08 MB
Total Virtual: 4963.7 MB
Available Virtual: 2288.46 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:234.35 GB) (Free:119.74 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt ============================