Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-12-2017
Ran by Pišta (14-12-2017 11:07:22)
Running from C:\Users\Pišta\Desktop
Windows 10 Home Version 1703 15063.729 (X64) (2017-07-20 12:28:30)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1908902047-3045844956-75544555-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1908902047-3045844956-75544555-503 - Limited - Disabled)
Guest (S-1-5-21-1908902047-3045844956-75544555-501 - Limited - Disabled)
Marcela (S-1-5-21-1908902047-3045844956-75544555-1003 - Limited - Enabled) => C:\Users\Marcela
Pišta (S-1-5-21-1908902047-3045844956-75544555-1000 - Administrator - Enabled) => C:\Users\Pišta

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 18.009.20050 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 25.0.0.134 - Adobe Systems Incorporated)
Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.9 - Adobe Systems Incorporated)
Adobe Flash Player 28 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 28.0.0.126 - Adobe Systems Incorporated)
Advanced SystemCare 10 (HKLM-x32\...\Advanced SystemCare_is1) (Version: 10.0.3 - IObit)
Apple Mobile Device Support (HKLM\...\{E3C4B99B-BE71-4C27-8E3C-4FAE3C46E1D5}) (Version: 11.0.0.30 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}) (Version: 2.4.8.1 - Apple Inc.)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.8.2318 - AVAST Software)
AXA Studio (HKU\S-1-5-21-1908902047-3045844956-75544555-1000\...\1ec9ff54381d781f) (Version: 1.4.99.20713 - AXA Studio)
BlackArmor Backup (HKLM-x32\...\{9DF6EC22-733E-4EDC-AC88-54CAD4BF4E7B}) (Version: 12.1.9817 - Seagate)
BlackArmor Discovery (HKLM-x32\...\{B52480BF-CCED-4DD4-8DC2-28BB750D703E}) (Version: 1.20.0931.004 - Seagate) Hidden
BlackArmor Discovery (HKLM-x32\...\InstallShield_{B52480BF-CCED-4DD4-8DC2-28BB750D703E}) (Version: 1.20.0931.004 - Seagate)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.38 - Piriform)
CommView for WiFi (HKLM-x32\...\{CDED9EF0-D072-11DF-2EA6-0104A00B0BB3}) (Version: 7.1 - TamoSoft)
ČSOBP Kalkulátory 1.12.0.x (HKLM-x32\...\Kalkulátory_is1) (Version:  - )
Driver Booster 5 (HKLM-x32\...\Driver Booster_is1) (Version: 5.1.0 - IObit)
DriverPack Notifier (HKLM-x32\...\DriverPack Notifier) (Version: 17.7.52+patch.7 - DriverPack Solution)
EaseUS Partition Master 10.5 (HKLM-x32\...\EaseUS Partition Master_is1) (Version:  - EaseUS)
eModel - MetLife (HKU\S-1-5-21-1908902047-3045844956-75544555-1000\...\CQTWN042.D7Z) (Version: 2.2.0.0 - MetLife)
eModel - MetLife (HKU\S-1-5-21-1908902047-3045844956-75544555-1000\...\eModel) (Version: 2.2.0.3 - MetLife)
Epson Connect Printer Setup (HKLM-x32\...\{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}) (Version: 1.3.0 - SEIKO EPSON CORPORATION)
Epson E-Web Print (HKLM-x32\...\{6BF9F374-EC67-4808-A90C-F127DE6D989D}) (Version: 1.23.0000 - SEIKO EPSON CORPORATION)
EPSON Printer Finder (HKLM-x32\...\{B8ECD0D3-AE08-4891-B6C7-32F96B75EB6C}) (Version: 1.0.0 - SEIKO EPSON CORPORATION)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
Epson Software Updater (HKLM-x32\...\{7BAC3F7A-B963-468E-982E-B5608A87408D}) (Version: 4.4.4 - SEIKO EPSON CORPORATION)
EPSON XP-700 Series Printer Uninstall (HKLM\...\EPSON XP-700 Series) (Version:  - SEIKO EPSON Corporation)
FOTOLAB CEWE fotosvet (HKLM-x32\...\FOTOLAB CEWE fotosvet) (Version: 6.2.4 - CEWE Stiftung u Co. KGaA)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.84 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden
iCloud (HKLM\...\{7464D896-C63C-412E-8ED3-3261C9F14E21}) (Version: 7.0.1.210 - Apple Inc.)
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 6.0.3.16 - IObit)
iTunes (HKLM\...\{EB7E0903-21E9-4851-99D3-D7E54B51031C}) (Version: 12.7.0.166 - Apple Inc.)
KA15 (HKLM-x32\...\{22E2FDEF-C7CF-40BC-BE24-932C8578195B}) (Version: 4.8.0 - Allianz pojišťovna, a.s.)
Malwarebytes verze 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes)
Microsoft ASP.NET MVC 2 (HKLM-x32\...\{DD8FF2F3-0D97-4CF3-AF78-FA0E1B242244}) (Version: 2.0.60926.0 - Microsoft Corporation)
Microsoft Office 365 ProPlus - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.8201.2209 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1908902047-3045844956-75544555-1000\...\OneDriveSetup.exe) (Version: 17.3.7073.1013 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 x64 ENU (HKLM\...\{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 57.0.2 (x64 cs) (HKLM\...\Mozilla Firefox 57.0.2 (x64 cs)) (Version: 57.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 57.0.2.6549 - Mozilla)
Mozilla Thunderbird 45.8.0 (x86 cs) (HKLM-x32\...\Mozilla Thunderbird 45.8.0 (x86 cs)) (Version: 45.8.0 - Mozilla)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.8201.2209 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.8201.2209 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.8201.2209 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.8201.2075 - Microsoft Corporation) Hidden
Partners ANAKIN (HKU\S-1-5-21-1908902047-3045844956-75544555-1000\...\e3c25ddba6967815) (Version: 7.0.2.10 - Partners ANAKIN)
PČS SmartClient (HKU\S-1-5-21-1908902047-3045844956-75544555-1000\...\ee485056d1c5a354) (Version: 2.2.7.12 - Pojišťovna České spořitelny)
Podpora aplikací Apple (32bitová) (HKLM-x32\...\{3D1290E6-1F77-46D5-A715-A56679C8D4E3}) (Version: 6.0.2 - Apple Inc.)
Podpora aplikací Apple (64bitová) (HKLM\...\{D0E45DEC-F4B9-4370-A9DF-66837789C2EF}) (Version: 6.0.2 - Apple Inc.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.31233 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8308 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
Revo Uninstaller 2.0.1 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.1 - VS Revo Group, Ltd.)
SafeZone Stable 4.58.2552.909 (HKLM-x32\...\SafeZone 4.58.2552.909) (Version: 4.58.2552.909 - Avast Software) Hidden
SCM (HKLM\...\{D591EF7A-DC7C-40F3-BE17-818305781436}) (Version: 13.016.12025 - Application)
Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.151 - Skype Technologies S.A.)
Smart Defrag 5 (HKLM-x32\...\Smart Defrag_is1) (Version: 5.5.0 - IObit)
SOFTPRO Driver (HKLM\...\{7EE87E94-7412-4723-9D86-ED0951876113}) (Version: 3.1.10 - SOFTPRO GmbH) Hidden
SOFTPRO Driver (HKLM-x32\...\InstallShield_{7EE87E94-7412-4723-9D86-ED0951876113}) (Version: 3.1.10 - SOFTPRO GmbH)
Synology Assistant (remove only) (HKLM-x32\...\Synology Assistant) (Version:  - )
TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.)
Wacom STU Driver (HKLM-x32\...\{28bc24e9-48c1-4d65-bfd8-ee7c5d70c062}) (Version: 5.2.0 - Wacom Co., Ltd.)
Wacom STU Driver (x64) (HKLM\...\{D5FDBD50-C14F-44C5-8BB3-49A3765406C7}) (Version: 5.2.0 - Wacom Co., Ltd.) Hidden
Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation)
WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-21] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-21] (AVAST Software)
ContextMenuHandlers1: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2016-09-20] (IObit)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-21] (AVAST Software)
ContextMenuHandlers1: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2016-05-23] (IObit)
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2017-09-18] (Apple Inc.)
ContextMenuHandlers1: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\WINDOWS\System32\IObitSmartDefragExtension.dll [2016-03-25] (IObit)
ContextMenuHandlers1: [SpyEmergency] -> {2E9FFF5C-4375-494d-951F-098BAA42239E} =>  -> No File
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-15] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-02-15] (Alexander Roshal)
ContextMenuHandlers2: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2016-09-20] (IObit)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-21] (AVAST Software)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
ContextMenuHandlers4: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2016-09-20] (IObit)
ContextMenuHandlers4: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2016-05-23] (IObit)
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-21] (AVAST Software)
ContextMenuHandlers6: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2016-05-23] (IObit)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd)
ContextMenuHandlers6: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\WINDOWS\System32\IObitSmartDefragExtension.dll [2016-03-25] (IObit)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-15] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-02-15] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {08B08B8F-C0B0-4CF4-A903-7C7FDF8BB9EE} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {091C4838-9B00-4699-B5B4-D47E06D3CD40} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {09C8E1BC-F0AE-4F92-B703-5DB4FE46423E} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {104CC79C-6BDB-471A-A4EB-8B3BA433CDE8} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [2016-09-09] (Apple Inc.)
Task: {104F1222-7A00-45F9-B016-D03ED3534A86} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {11E13D87-A99D-4941-B235-E8BAE9A5AE08} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {1A07CD87-BE92-49FF-B683-160271800E5B} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {22D3175C-8C91-4BA1-9B07-1CA08656633C} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {287B55C8-BCCE-4392-9357-FAFC61FF1A42} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {29EBF8CC-F63D-4BF6-A253-FA0E0B07E332} - System32\Tasks\DriverToolkit Autorun => C:\Program Files (x86)\DriverToolkit\DriverToolkit.exe [2015-07-01] (Megaify Software Co., Ltd.)
Task: {2E96FBF9-2119-4CDD-86C8-4C0F8CB60353} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-12-07] (Microsoft Corporation)
Task: {37F188F6-1AF5-4ADE-946B-5F1FC7C58DEE} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2017-12-07] (Microsoft Corporation)
Task: {3D336AB0-717D-4813-8772-723ADF4B2D78} - System32\Tasks\SafeZone scheduled Autoupdate 1452594575 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-08-04] (Avast Software)
Task: {4000FE41-664E-4390-8860-8CA143999843} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-11-23] (Microsoft Corporation)
Task: {466EE505-AE8E-425D-A43B-033FE53C8D2B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-06-29] (Google Inc.)
Task: {4797982A-0950-41D0-AE82-0888177FFA5D} - System32\Tasks\Uninstaller_SkipUac_Pišta => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2016-10-10] (IObit)
Task: {4950DAA0-09AF-4394-AC13-1DB0D55E0F0E} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {51D75AEF-0ADC-4200-9D4D-0027A6090404} - C:\Windows\System32\Tasks\DRPNPS => Command(1): mshta.exe -> "http://update.drp.su/nps/online/bin/tools/run.hta" "17.7.81 Online" "1513235655435" "e750e9cd-1698-4146-bd08-f7535cb91386"
Task: {51D75AEF-0ADC-4200-9D4D-0027A6090404} - C:\Windows\System32\Tasks\DRPNPS => Command(2): SCHTASKS -> /Delete /TN DRPNPS /F
Task: {54D46E32-6937-43E1-9A06-8F452A27098B} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-11-21] (AVAST Software)
Task: {5502A12D-2400-457B-B6C0-D3972ED56904} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {55EE5969-7449-4FA5-AD5B-03002228FE36} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {5B65D566-DF2F-4502-B0C4-793308EC0205} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {5D134D2C-2F15-4ACD-BB1B-885483D0BC09} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {5D3BCDE9-C4C2-4978-A587-7753103399E9} - System32\Tasks\SmartDefrag_Update => C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe [2017-02-17] (IObit)
Task: {5E6DBA6D-F331-444D-B0D1-87CAD73A6541} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-19] ()
Task: {684FAC3E-4A90-4333-8C65-5A8F0AEA5C65} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {69867E4C-4FB1-411A-BE74-0628FF72DBEA} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2017-12-01] (Piriform Ltd)
Task: {6BC3636D-6920-493E-B381-AAD36E2CA59D} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {6CAC4929-90DD-4CD8-A63C-0E3314A1848D} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\5.1.0\Scheduler.exe [2017-10-24] (IObit)
Task: {733AC494-3649-41C5-B83D-7A4E3AFD685C} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {750F69A8-2489-419C-818A-72042CD4C8F4} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {7BB09E4A-FFB7-4CD3-A564-2C73C77ACBF3} - System32\Tasks\DriverPack Notifier => C:\Program Files (x86)\DriverPack Notifier\DriverPackNotifier.exe [2015-12-18] ()
Task: {82EBB043-7647-4CA9-9521-B1B8491D32E6} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {83BECE2D-3EB8-438A-BD38-254F9996D4CA} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {84D7E4F9-AE68-42C5-A58C-ABF3594FD53F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-09-27] (Adobe Systems Incorporated)
Task: {85A99EC7-F188-4BD3-8C9A-15513814FE9E} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2017-12-11] (AVAST Software)
Task: {861F5AB0-0FD5-454C-A3A7-7AF025615A77} - System32\Tasks\SmartDefrag_AutoAnalyze => C:\Program Files (x86)\IObit\Smart Defrag\AutoDefrag.exe [2016-06-06] (IObit)
Task: {880E8834-CA79-48FD-AD75-D52642EE38CC} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe
Task: {8C287723-C707-4AF4-BFF6-3C1BDE07E05B} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {8F5D5B83-546D-4968-AAF4-094928986955} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {92EF1E99-0DB3-4B55-95CF-446269746FAB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-06-29] (Google Inc.)
Task: {9632291A-39FC-4EB7-8002-18CCD349BBBD} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-07-24] (Apple Inc.)
Task: {98C93315-7A1D-4967-9786-4FE3102D9FD7} - System32\Tasks\IObitSelfCheckTask => C:\Program Files (x86)\IObit\Smart Defrag\IObitSelfCheck.exe [2016-10-18] (IObit)
Task: {9BCB25E0-DCDC-4968-BAE1-D7486CCFC5BA} - System32\Tasks\{E0CA3772-15FF-4BAF-8303-535ADA5C3463} => C:\Windows\system32\pcalua.exe -a E:\DirectX\DXSETUP.exe -d E:\DirectX
Task: {9F2C0127-79D5-4EB6-ACCF-BD38EB8DB7FC} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {A1A45E19-D81B-4863-BB1C-BE579220F808} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-19] ()
Task: {A22CA316-E820-4E59-92C0-4388BE0322AC} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {AD97E878-1C2C-41A0-B5FD-25FAF44FA96B} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {AE41FEBB-6AF3-4604-8E64-609A51D33726} - System32\Tasks\CommView for WiFi Update => C:\Program Files (x86)\CommViewWiFi\Updater.exe [2016-01-08] (TamoSoft)
Task: {AE44F0AB-410A-454F-8859-AE71927287E2} - System32\Tasks\SmartDefrag_Startup => C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [2017-02-17] (IObit)
Task: {B9E50F9C-0CD0-4035-B3D6-63BAE12753B7} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {C2010D4E-A34F-4F3B-918A-7FF0E4458D65} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {C672B38A-287B-40CF-9E7F-D39252018717} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {C7970B24-0448-4CF4-8565-C467B9AA93E6} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-12-12] (Adobe Systems Incorporated)
Task: {CA90AD37-CAF4-4723-8516-B37C91765C73} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {D4B561A2-F696-4EBC-A551-214835E0EEA3} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-11-23] (Microsoft Corporation)
Task: {D8FC1EA9-1572-4B20-8119-2E4789DA06B0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-12-07] (Microsoft Corporation)
Task: {DC5F2A09-7143-4B73-BD6E-A562B4AB0D98} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {E1BEDC5C-E7AC-4472-BA99-216C2444C421} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {E654272C-B4C4-4880-96BF-311C00DA7CE2} - System32\Tasks\Driver Booster SkipUAC (Pišta) => C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DriverBooster.exe [2017-11-16] (IObit)
Task: {E9146C60-E27E-4235-A58B-938FAC21FB2D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-12-01] (Piriform Ltd)
Task: {E92F6BDE-64C2-4D3C-8D86-3AA901DCF860} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {ED831404-E7DC-40E9-82D5-6E338FF8BE44} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {F32E46AA-9110-4FE6-868C-A8D990C3FCA6} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\DriverToolkit Autorun.job => C:\Program Files (x86)\DriverToolkit\DriverToolkit.exe
Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Pišta.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


ShortcutWithArgument: C:\Users\Pišta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Edom Onkyo Remote.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=jhcfeodahaajnfoifcmejindamjlbadp

==================== Loaded Modules (Whitelisted) ==============

2016-09-01 17:12 - 2016-09-01 17:12 - 000092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2017-09-01 01:49 - 2017-09-01 01:49 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2017-03-18 21:58 - 2017-03-18 21:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-09-11 13:45 - 2017-09-11 13:45 - 000092472 _____ () C:\Program Files\iTunes\zlib1.dll
2017-09-11 13:45 - 2017-09-11 13:45 - 001356088 _____ () C:\Program Files\iTunes\libxml2.dll
2017-12-07 09:12 - 2017-12-07 09:20 - 000755712 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\WinUAPEntry.exe
2017-03-18 21:59 - 2017-03-20 05:45 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-11-21 08:23 - 2017-11-21 08:23 - 000167096 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2017-11-21 08:23 - 2017-11-21 08:23 - 000059040 _____ () C:\Program Files\AVAST Software\Avast\module_lifetime.dll
2017-07-07 07:03 - 2017-07-07 07:04 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2017-11-21 08:23 - 2017-11-21 08:23 - 000237808 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll
2017-11-21 08:23 - 2017-11-21 08:23 - 000244584 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll
2017-11-21 08:23 - 2017-11-21 08:23 - 000235816 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2017-09-01 01:49 - 2017-09-01 01:49 - 001042232 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2017-09-01 01:49 - 2017-09-01 01:49 - 000189752 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxslt.dll
2016-09-01 17:13 - 2016-09-01 17:13 - 000080184 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2017-03-07 11:37 - 2016-06-21 19:30 - 000442144 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madExcept_.bpl
2017-03-07 11:37 - 2016-06-21 19:29 - 000210720 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl
2017-03-07 11:37 - 2016-06-21 19:29 - 000059680 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl
2017-03-07 11:35 - 2015-12-28 13:50 - 000899872 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\webres.dll
2017-03-07 11:35 - 2016-09-26 13:59 - 000631072 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\ProductStatistics.dll
2017-12-07 09:10 - 2017-12-07 09:10 - 001009840 _____ () C:\Program Files (x86)\Microsoft Office\Root\Office16\ADDINS\UmOutlookAddin.dll
2017-12-07 09:12 - 2017-12-07 09:21 - 000147456 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\WP8MSVCCommon.dll
2017-12-07 09:12 - 2017-12-07 09:21 - 000384000 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\WP8MSVCBridge.dll
2017-12-07 09:12 - 2017-12-07 09:20 - 000013824 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\WinPhoneBridge_osmeta.dll
2017-12-07 09:12 - 2017-12-07 09:20 - 000796160 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\System_osmeta.dll
2017-12-07 09:12 - 2017-12-07 09:20 - 000039424 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\pthreadVC_osmeta.dll
2017-12-07 09:12 - 2017-12-07 09:20 - 000114688 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\system_malloc_osmeta.dll
2017-12-07 09:11 - 2017-12-07 09:20 - 000680448 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\CrossPortability_osmeta.dll
2017-12-07 09:11 - 2017-12-07 09:20 - 060634941 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\osmeta.dll
2017-12-07 09:12 - 2017-12-07 09:20 - 000015374 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\unwind_osmeta.dll
2017-12-07 09:11 - 2017-12-07 09:20 - 000081408 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\exif_osmeta.dll
2017-12-07 09:12 - 2017-12-07 09:21 - 000095744 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\z_osmeta.dll
2017-12-07 09:12 - 2017-12-07 09:20 - 000092160 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\WRTBridge_osmeta.dll
2017-12-07 09:11 - 2017-12-07 09:20 - 000863744 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\c++_osmeta.dll
2017-12-07 09:12 - 2017-12-07 09:20 - 000086528 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\WinMediaFoundation_osmeta.dll
2017-12-07 09:12 - 2017-12-07 09:20 - 000361472 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\SystemResources_osmeta.dll
2017-12-07 09:11 - 2017-12-07 09:20 - 000930304 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\ffmpeg_osmeta.dll
2017-12-07 09:11 - 2017-12-07 09:20 - 000053760 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\EGL_osmeta.dll
2017-12-07 09:11 - 2017-12-07 09:20 - 000839168 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\GLESv2_osmeta.dll
2017-12-07 09:11 - 2017-12-07 09:20 - 204952909 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\App.dll
2017-12-07 09:11 - 2017-12-07 09:20 - 000456192 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\OpenAL_osmeta.dll
2017-12-07 09:11 - 2017-12-07 09:20 - 006611763 _____ () C:\Program Files\WindowsApps\Facebook.Facebook_140.1268.45465.0_x86__8xx8rvfyw5nnt\JavaScriptCore_osmeta.dll
2017-09-19 07:28 - 2017-09-19 07:28 - 000164544 _____ () C:\Program Files (x86)\Microsoft Office\root\Office16\JitV.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:A8971B32 [248]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1908902047-3045844956-75544555-1000\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{EA92DF52-303A-4203-B6E6-8BAC2A026289}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{B1C4B51F-B18D-4E10-8472-5AEC51BE9EAA}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{1CE1ACF3-519A-4121-87AB-6B152F49422C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{097369FE-E254-4C12-BD05-2DCB04CCDDC1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{34424EED-B003-415D-82BB-196BD6E76B6A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{D83C2A70-DA68-43AB-BCAB-3EC7624889DE}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{1D98675F-0B4E-41D9-A18B-805C885E06A5}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe
FirewallRules: [{81DAB5A7-9B0F-4EFA-9C84-598DE2FDD2F1}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe
FirewallRules: [{8A02B085-7955-403E-B07B-CCA739170AB4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{631C76C2-2C51-45E2-8F0E-C370A11B7416}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [UDP Query User{2446733A-F16B-45B5-9E75-AB9D1BCA3740}C:\program files (x86)\seagate\blackarmorbackup\blackarmorbackup.exe] => (Allow) C:\program files (x86)\seagate\blackarmorbackup\blackarmorbackup.exe
FirewallRules: [TCP Query User{7E680D95-FFC7-4E42-9B37-383E6BE08461}C:\program files (x86)\seagate\blackarmorbackup\blackarmorbackup.exe] => (Allow) C:\program files (x86)\seagate\blackarmorbackup\blackarmorbackup.exe
FirewallRules: [{AE7171EC-20CC-4FB0-A780-90FA76A6EEC3}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{3DEDE40B-E9FA-497D-AA18-EDA35A2F710D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [UDP Query User{26530978-50ED-4BCC-BD12-23B44D373179}C:\users\pišta\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\pišta\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{DAF9FE00-BBA3-4F2B-93DE-3A8800E9F614}C:\users\pišta\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\pišta\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{07E88D37-BFEB-445B-A7E3-89255ED7B967}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{3CC99EA0-590E-43D0-A110-F3952EDB4DDA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{DBFA6DCB-CE87-4749-9434-57822F5AB734}C:\program files (x86)\synology\assistant\dsassistant.exe] => (Allow) C:\program files (x86)\synology\assistant\dsassistant.exe
FirewallRules: [UDP Query User{0ADF233E-F595-43F3-BCEE-3BD19D705269}C:\program files (x86)\synology\assistant\dsassistant.exe] => (Allow) C:\program files (x86)\synology\assistant\dsassistant.exe
FirewallRules: [TCP Query User{973596A3-C365-4EBC-A100-1574836C7588}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{63764C40-595A-4BCF-9AEE-FD157AC868FF}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [TCP Query User{27082D9F-B46E-41AE-A929-34DC8E5D0B06}C:\program files (x86)\seagate\blackarmor discovery\blackarmor discovery.exe] => (Allow) C:\program files (x86)\seagate\blackarmor discovery\blackarmor discovery.exe
FirewallRules: [UDP Query User{308A278E-9CCD-475F-A20A-ACAA94FEF3EA}C:\program files (x86)\seagate\blackarmor discovery\blackarmor discovery.exe] => (Allow) C:\program files (x86)\seagate\blackarmor discovery\blackarmor discovery.exe
FirewallRules: [{4AD40C90-98A9-4408-8FA9-ACA61F25DF8A}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{1EA0E408-B295-42FC-BA7B-53EF939445A0}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909\SZBrowser.exe
FirewallRules: [{C6DD6349-8D07-4374-9B0D-ECE020FBED0D}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909_0\SZBrowser.exe
FirewallRules: [{CEA3B563-CB8B-473C-A292-9082A25F9D87}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{C89A8A1A-8834-416D-A7B5-D84B6AFE55A4}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{DB5EF339-954E-48A6-BCEC-5C8F544EB2B7}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{5DF2069F-E226-4FD1-8096-808EA424A070}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DriverBooster.exe
FirewallRules: [{E21284B6-47E2-46D5-8DAB-BF3307897606}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DriverBooster.exe
FirewallRules: [{3CE235B3-24CB-4525-802F-D8AFE5F8481A}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DBDownloader.exe
FirewallRules: [{F2044BF8-2C3B-483A-84C9-DC77C5629C41}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DBDownloader.exe
FirewallRules: [{AEF91750-B2DE-4588-A55C-DCC7F213898A}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\AutoUpdate.exe
FirewallRules: [{A60B97B6-E824-42E5-85C8-DCE1007BCB0D}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\AutoUpdate.exe

==================== Restore Points =========================

14-12-2017 08:04:24 Windows Update

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (12/14/2017 08:13:02 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (12/14/2017 08:01:29 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (12/13/2017 09:17:10 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Pišta-Notebook)
Description: Aplikaci Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI se nepovedlo aktivovat, protože došlo k chybě: -2147023170. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (12/13/2017 09:10:55 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Pišta-Notebook)
Description: Aplikaci Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (12/13/2017 09:09:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: adwcleaner_7.0.5.0.exe, verze: 7.0.5.0, časové razítko: 0x5a2050fd
Název chybujícího modulu: adwcleaner_7.0.5.0.exe, verze: 7.0.5.0, časové razítko: 0x5a2050fd
Kód výjimky: 0xc0000409
Posun chyby: 0x0039ed08
ID chybujícího procesu: 0xaa4
Čas spuštění chybující aplikace: 0x01d3744cfab5e8da
Cesta k chybující aplikaci: C:\Users\Pišta\Desktop\adwcleaner_7.0.5.0.exe
Cesta k chybujícímu modulu: C:\Users\Pišta\Desktop\adwcleaner_7.0.5.0.exe
ID zprávy: f6300231-8287-4d59-a749-ff5d93f25299
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (12/13/2017 08:19:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: adwcleaner_7.0.1.0.exe, verze: 7.0.1.0, časové razítko: 0x5977fba6
Název chybujícího modulu: adwcleaner_7.0.1.0.exe, verze: 7.0.1.0, časové razítko: 0x5977fba6
Kód výjimky: 0xc0000409
Posun chyby: 0x003935c8
ID chybujícího procesu: 0xe8c
Čas spuštění chybující aplikace: 0x01d37446ac999929
Cesta k chybující aplikaci: C:\Users\Pišta\Desktop\adwcleaner_7.0.1.0.exe
Cesta k chybujícímu modulu: C:\Users\Pišta\Desktop\adwcleaner_7.0.1.0.exe
ID zprávy: 4aaa6ce8-3442-458b-b578-3a55e88e9afe
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (12/13/2017 08:10:04 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Generování kontextu aktivace pro C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest se nezdařilo. Chyba v souboru manifestu nebo zásady C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL na řádku 1.
Identita komponenty nalezená v manifestu nesouhlasí s identitou požadované komponenty.
Odkaz je UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definice je UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (12/13/2017 08:08:35 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: adwcleaner_7.0.5.0.exe, verze: 7.0.5.0, časové razítko: 0x5a2050fd
Název chybujícího modulu: adwcleaner_7.0.5.0.exe, verze: 7.0.5.0, časové razítko: 0x5a2050fd
Kód výjimky: 0xc0000409
Posun chyby: 0x0039ed08
ID chybujícího procesu: 0xc4
Čas spuštění chybující aplikace: 0x01d37445384500b0
Cesta k chybující aplikaci: C:\Users\Pišta\Desktop\adwcleaner_7.0.5.0.exe
Cesta k chybujícímu modulu: C:\Users\Pišta\Desktop\adwcleaner_7.0.5.0.exe
ID zprávy: f64fe7fb-d71e-4468-b7aa-26993d1e5300
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (12/13/2017 08:04:23 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program adwcleaner_7.0.5.0.exe verze 7.0.5.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 18a8

Čas spuštění: 01d374451feed189

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Users\Pišta\Desktop\adwcleaner_7.0.5.0.exe

ID hlášení: f835b0ff-ac9f-4f3d-9e37-fefa100847ea

Úplný název balíčku s chybou: 

ID aplikace související s balíčkem s chybou:

Error: (12/13/2017 07:51:24 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: adwcleaner_7.0.5.0.exe, verze: 7.0.5.0, časové razítko: 0x5a2050fd
Název chybujícího modulu: adwcleaner_7.0.5.0.exe, verze: 7.0.5.0, časové razítko: 0x5a2050fd
Kód výjimky: 0xc0000409
Posun chyby: 0x0039ed08
ID chybujícího procesu: 0x16bc
Čas spuštění chybující aplikace: 0x01d37442971c0ef0
Cesta k chybující aplikaci: C:\Users\Pišta\Desktop\adwcleaner_7.0.5.0.exe
Cesta k chybujícímu modulu: C:\Users\Pišta\Desktop\adwcleaner_7.0.5.0.exe
ID zprávy: 1fec4437-6995-4ec3-9812-bce635ea490b
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (12/14/2017 09:05:51 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246013): Aktualizace funkcí na Windows 10, verze 1709.

Error: (12/14/2017 07:54:31 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Uživatelská služba platformy připojených zařízení_66c46 byla ukončena s následující chybou: 
Nespecifikovaná chyba

Error: (12/14/2017 07:53:33 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Adaptér naslouchání Net.Msmq neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (12/14/2017 07:53:33 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby NetMsmqActivator bylo dosaženo časového limitu (30000 ms).

Error: (12/14/2017 07:53:24 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba NetPipeActivator neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (12/14/2017 07:53:24 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby NetPipeActivator bylo dosaženo časového limitu (30000 ms).

Error: (12/14/2017 06:53:37 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba ClickToRunSvc neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (12/14/2017 06:53:37 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby ClickToRunSvc bylo dosaženo časového limitu (30000 ms).

Error: (12/14/2017 06:53:05 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba NetTcpActivator závisí na službě NetTcpPortSharing, která neuspěla při spuštění v důsledku následující chyby: 
Zvolenou službu nelze spustit, protože není povolena nebo s ní není spojeno žádné povolené zařízení.

Error: (12/14/2017 06:52:35 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba CldFlt neuspěla při spuštění v důsledku následující chyby: 
Požadavek není podporován.


CodeIntegrity:
===================================
  Date: 2017-11-14 08:09:14.442
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\IObit\Advanced SystemCare\KB4032188.cab_Temp\BC777654-A0B0-496C-A3BC-64C98E609EAF\amd64_microsoft-xbox-gameoverlay_31bf3856ad364e35_10.0.15063.502_none_d3f48a6c8d820593\gamepanel.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-11-14 08:09:02.204
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\IObit\Advanced SystemCare\KB4032188.cab_Temp\BC777654-A0B0-496C-A3BC-64C98E609EAF\amd64_microsoft-windows-shell-ppishell_31bf3856ad364e35_10.0.15063.447_none_96ccb2f158cf3745\ppishell.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-11-14 08:08:57.327
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\IObit\Advanced SystemCare\KB4032188.cab_Temp\BC777654-A0B0-496C-A3BC-64C98E609EAF\amd64_microsoft-windows-s..ty-aadcloudapplugin_31bf3856ad364e35_10.0.15063.502_none_b7ef468e7102de4b\aadcloudap.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-11-14 08:08:53.260
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\IObit\Advanced SystemCare\KB4032188.cab_Temp\BC777654-A0B0-496C-A3BC-64C98E609EAF\amd64_microsoft-windows-u..usnotificationuxexe_31bf3856ad364e35_10.0.15063.413_none_09482c74780a0b9b\musnotificationux.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-11-14 08:08:14.972
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\IObit\Advanced SystemCare\KB4032188.cab_Temp\BC777654-A0B0-496C-A3BC-64C98E609EAF\amd64_microsoft-windows-a..recognitionadapters_31bf3856ad364e35_10.0.15063.502_none_91e24837c75e85f6\facerecognitionsensoradapter.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-11-14 08:06:51.162
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\IObit\Advanced SystemCare\KB4025339.cab_Temp\50204450-F2DC-4EB6-A6F7-339F0E525C62\amd64_microsoft-xbox-gameoverlay_31bf3856ad364e35_10.0.14393.1378_none_b46351ab81ef527e\gamepanel.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-11-14 08:06:26.294
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\IObit\Advanced SystemCare\KB4025339.cab_Temp\50204450-F2DC-4EB6-A6F7-339F0E525C62\amd64_microsoft-windows-t..lications-clientsku_31bf3856ad364e35_10.0.14393.1198_none_94a048bea0b04eeb\rdpinit.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-11-14 08:06:18.475
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\IObit\Advanced SystemCare\KB4025339.cab_Temp\50204450-F2DC-4EB6-A6F7-339F0E525C62\amd64_microsoft-windows-t..-remoteapplications_31bf3856ad364e35_10.0.14393.1198_none_b7d5626ff6ee4d86\rdpinit.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-11-14 08:06:17.238
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\IObit\Advanced SystemCare\KB4025339.cab_Temp\50204450-F2DC-4EB6-A6F7-339F0E525C62\amd64_microsoft-windows-shell-ppishell_31bf3856ad364e35_10.0.14393.1378_none_7761ba544d2092e0\ppishell.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2017-11-14 08:06:11.808
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files (x86)\IObit\Advanced SystemCare\KB4025339.cab_Temp\50204450-F2DC-4EB6-A6F7-339F0E525C62\amd64_microsoft-windows-sensordataservice_31bf3856ad364e35_10.0.14393.1198_none_73c90f7c84c872af\mediafoundation.defaultperceptionprovider.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM)2 Duo CPU P7350 @ 2.00GHz
Percentage of memory in use: 74%
Total physical RAM: 4095.15 MB
Available physical RAM: 1024.94 MB
Total Virtual: 4671.15 MB
Available Virtual: 1228.15 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:117.23 GB) (Free:11.54 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:0.44 GB) (Free:0.08 GB) NTFS
Drive e: (Pevný disk) (Fixed) (Total:115.19 GB) (Free:60.67 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: B6CBF657)
Partition 1: (Active) - (Size=117.2 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=455 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=115.2 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================