Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20.06.2018
Ran by Libor (01-07-2018 11:28:23)
Running from C:\Users\Libor\Desktop
Windows 10 Home Version 1803 17134.112 (X64) (2018-05-20 16:41:32)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-156262907-2237363827-403031446-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-156262907-2237363827-403031446-503 - Limited - Disabled)
Guest (S-1-5-21-156262907-2237363827-403031446-501 - Limited - Disabled)
Libor (S-1-5-21-156262907-2237363827-403031446-1001 - Administrator - Enabled) => C:\Users\Libor
WDAGUtilityAccount (S-1-5-21-156262907-2237363827-403031446-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

64 Bit HP CIO Components Installer (HKLM\...\{0EBC740B-4363-489B-8C27-98CE0740BA19}) (Version: 18.2.4 - Hewlett-Packard) Hidden
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 18.011.20040 - Adobe Systems Incorporated)
Adobe Flash Player 30 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 30.0.0.113 - Adobe Systems Incorporated)
Adobe Photoshop CS6 version 13.0.1 (HKLM-x32\...\{A724DC44-6241-42D3-BA57-778B178ABC17}_is1) (Version: 13.0.1 - Adobe Systems, Inc.)
Adobe Shockwave Player 12.3 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.3.4.204 - Adobe Systems, Inc.)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version:  - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version:  - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version:  - Microsoft)
Ashampoo Burning Studio 2010 (HKLM-x32\...\Ashampoo Burning Studio 2010_is1) (Version: 9.12 - ashampoo GmbH & Co. KG)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 18.5.2342 - AVAST Software)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 64.0.387.186 - AVAST Software)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.44 - Piriform)
Counter Strike 1.6 v36 Final_cz (HKU\S-1-5-21-156262907-2237363827-403031446-1001\...\Counter Strike 1.6 v36 Final_cz) (Version:  - )
Counter-Strike 1.6 (HKLM-x32\...\Counter-Strike 1.6) (Version:  - )
Counter-Strike 1.6 v42 (HKU\S-1-5-21-156262907-2237363827-403031446-1001\...\Counter-Strike 1.6_is1) (Version:  - Valve)
CSEP 14 1.0 (HKU\S-1-5-21-156262907-2237363827-403031446-1001\...\CSEP 14 1.0) (Version:  - )
CSEP 14 1.1 (HKU\S-1-5-21-156262907-2237363827-403031446-1001\...\CSEP 14 1.1) (Version:  - )
CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1.5510 - CyberLink Corp.)
CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.1.1916 - CyberLink Corp.)
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.1.1902 - CyberLink Corp.)
CyberLink PowerDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.1.4319 - CyberLink Corp.)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
DesetiPrsty5 5.3 (HKLM-x32\...\DesetiPrsty5) (Version:  - )
Energy Star (HKLM\...\{0FA995CC-C849-4755-B14B-5404CC75DC24}) (Version: 1.0.8 - Hewlett-Packard)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON SX125 Series Printer Uninstall (HKLM\...\EPSON SX125 Series) (Version:  - SEIKO EPSON Corporation)
Fotogaléria (HKLM-x32\...\{5B87607E-E781-49C5-9891-80990E45BCA1}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fotogalerie (HKLM-x32\...\{F37D360D-9308-4BB1-8515-DC6B637B9486}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 67.0.3396.99 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden
GPU Monitor (HKLM-x32\...\VLC Player GPU+11.041.44) (Version: 11.041.44 - GPU Usage) <==== ATTENTION
Hewlett-Packard ACLM.NET v1.2.0.0 (HKLM-x32\...\{6F340107-F9AA-47C6-B54C-C3A19F11553F}) (Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 12.00.0000 - Hewlett-Packard)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Java 8 Update 171 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180171F0}) (Version: 8.0.1710.11 - Oracle Corporation)
Java 8 Update 172 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180172F0}) (Version: 8.0.1720.11 - Oracle Corporation)
Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Kodu Game Lab (HKLM-x32\...\{5DB39047-848B-4ADB-86ED-F97E22CCC3C8}) (Version: 1.2.1 - Microsoft Research)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Malwarebytes verze 3.5.1.2522 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.5.1.2522 - Malwarebytes)
McAfee True Key (HKLM\...\TrueKey) (Version: 5.0.150.1 - McAfee)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0405-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-041B-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-156262907-2237363827-403031446-1001\...\OneDriveSetup.exe) (Version: 18.091.0506.0007 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{2C303EE0-A595-3543-A71A-931C7AC40EDE}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Movie Maker (HKLM-x32\...\{0CD05078-D4F3-4006-8726-B01E10A89B28}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{3D2CF65C-B544-4308-B996-700D3E5F6C4C}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{EB3DF0F0-0525-4C5A-A2F8-DEC868A3075D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 61.0 (x64 cs) (HKLM\...\Mozilla Firefox 61.0 (x64 cs)) (Version: 61.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 61.0.0.6746 - Mozilla)
Ovladače videa společnosti Pinnacle (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.030 - Pinnacle Systems)
Planet - SoftLabel (HKLM-x32\...\{99E50E6B-8C7D-4D1D-A7CE-65128D76AD2C}) (Version: 1.1.61 - Abanet)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7004 - Realtek Semiconductor Corp.)
Recovery Manager (HKLM-x32\...\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}) (Version: 5.5.0.5530 - CyberLink Corp.) Hidden
Samsung Universal Print Driver 2 PCL6 (HKLM-x32\...\Samsung Universal Print Driver 2 PCL6) (Version: 2.50.06.00 - Samsung Electronics Co., Ltd.)
Seznam filmů (HKLM-x32\...\{8F70B4F5-3C8D-4085-A492-76536F6F3F22}_is1) (Version: 1511150 - Ondřej Cenek)
Shotcut (HKLM-x32\...\Shotcut) (Version:  - )
Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.151 - Skype Technologies S.A.)
Smaragdová země Solitaire v1.0 (HKLM-x32\...\{Smaragdova zeme Solitaire}_is1) (Version:  - Špidla Data Processing, s.r.o.)
Spotify (HKU\S-1-5-21-156262907-2237363827-403031446-1001\...\Spotify) (Version: 1.0.38.171.g5e1cd7b2 - Spotify AB)
swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamViewer 13 (HKLM-x32\...\TeamViewer) (Version: 13.1.3629 - TeamViewer)
The Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.67.2 - Electronic Arts)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.0 - Ghisler Software GmbH)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9C4F3AF4-21D8-43BD-A69C-517BB96012CF}) (Version: 2.12.0.0 - Microsoft Corporation)
Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation)
Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version:  - )
WinRAR 5.50 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)
World of Tanks (HKU\S-1-5-21-156262907-2237363827-403031446-1001\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version:  - Wargaming.net)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-156262907-2237363827-403031446-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-156262907-2237363827-403031446-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Libor\AppData\Local\Microsoft\SkyDrive\17.0.4041.0512\amd64\FileSyncApi64.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-20] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-20] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-20] (AVAST Software)
ContextMenuHandlers1: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll [2012-07-10] (Cyberlink)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers2: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll [2012-07-10] (Cyberlink)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-20] (AVAST Software)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-09] (Malwarebytes)
ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers4-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2016-05-03] (Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-06-20] (AVAST Software)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-09] (Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {03037E65-4EFF-4704-95A4-5D36D2705B89} - System32\Tasks\{758D477B-A083-4665-939E-53A891E065D0} => "c:\program files (x86)\google\chrome\application\chrome.exe" hxxp://ui.skype.com/ui/0/6.20.0.104/cs/abandoninstall?page=tsProgressBar
Task: {071C6451-A6E3-410F-BAF5-D84629858F5C} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2018-06-14] (Microsoft Corporation)
Task: {091FF7F6-1EBB-48A7-B15E-9BF9A527B322} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe
Task: {0EFDE69C-E2D0-435E-BDCB-68B702BEA82A} - System32\Tasks\Microsoft\Windows\Setup\Notifier => C:\WINDOWS\system32\Notifier.exe
Task: {225C4175-13A6-4066-927E-CF3EFB51F78F} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [2018-02-27] (McAfee, Inc.)
Task: {2A383146-1835-4E95-9DD6-338F9FA5E6E7} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_113_Plugin.exe [2018-06-07] (Adobe Systems Incorporated)
Task: {34BB59FE-76CB-40BF-ACD8-9565B1B4B1D7} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe
Task: {377DABCC-BA76-4EF6-B412-06ED0BA1DECC} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {47354F9C-1A0C-4A0E-9059-015DDC68D1F7} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-06-07] (Adobe Systems Incorporated)
Task: {4BD1CDFD-0F88-424E-9AA4-037C016827AF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2012-08-07] (Hewlett-Packard Company)
Task: {50A0E1D3-AABC-4D9F-BDDF-415D20F873D3} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {53E52291-3664-4177-A37B-020CBA12322F} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {5DEF9740-1928-44F1-A5D1-D025CDDC16A9} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {63B865C4-FC92-4CA4-8E5D-31C6FB7E68B5} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-12] ()
Task: {754FBF9F-9147-4D7B-BCB0-1E4165A85ABB} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {76924ADB-6EDA-49FD-BA0F-0D91D7F5B83E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {8F85114C-F3B0-4044-A214-2372D4CFD65A} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {93C44FFF-617B-4D6F-83EF-2BA53EEEEC79} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {9685BAF5-12BD-480E-A56F-0F8080216A5D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-06-24] (Piriform Ltd)
Task: {9A294CEE-78CF-415E-96CF-3C1D56E04D7F} - System32\Tasks\{707C18FE-7824-4E87-A237-3420BAA85FDC} => C:\WINDOWS\system32\pcalua.exe -a C:\Users\Libor\AppData\Local\Temp\Temp1_superscan4.zip\SuperScan4.exe <==== ATTENTION
Task: {9BCF40CE-76B7-4B9C-9E0C-41D378A632F4} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated)
Task: {A8E888EE-4BD4-4A76-83F4-99E7AFE102C3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {B05F21D6-E07C-40E0-8B7A-A497DDAAB689} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {BF014B82-152A-4CF6-BF0A-D6B368C34841} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {BFAE8A2B-E261-43FF-BC43-7F062FF900B9} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-06-14] (AVAST Software)
Task: {CB91BD80-EEFA-40E4-B864-7DE816ECE789} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {D2F74C47-88E8-4974-ABB0-3CB284BA3978} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {D5749BF2-864B-4D02-BC78-304003509B00} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-06-20] (AVAST Software)
Task: {E531CB91-03AB-4BF4-B1B0-DC2CCB49FFD8} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
Task: {EF147FF9-8B43-4EB5-8177-A6C27A42827E} - System32\Tasks\{CC1040F2-7E69-4167-A232-3806880267AE} => "c:\program files (x86)\google\chrome\application\chrome.exe" hxxp://ui.skype.com/ui/0/6.20.0.104/cs/abandoninstall?page=tsProgressBar
Task: {F2F5568F-129C-445E-9D34-65BFF7B5351E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-06-24] (Piriform Ltd)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


ShortcutWithArgument: C:\Users\Libor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\WeatherBug.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=njkkjobcechefaoknodniidfjapgfoco

==================== Loaded Modules (Whitelisted) ==============

2018-04-12 01:34 - 2018-04-12 01:34 - 000491744 _____ () C:\Windows\System32\InputHost.dll
2006-12-12 08:37 - 2006-12-12 08:37 - 000022016 _____ () C:\WINDOWS\System32\sugo2l6.dll
2015-02-20 18:04 - 2014-04-16 10:22 - 000029184 _____ () C:\WINDOWS\System32\up602l.dll
2018-06-30 22:03 - 2018-05-30 09:22 - 002493648 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
2018-06-30 22:03 - 2018-04-25 13:16 - 002297040 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2015-02-20 18:06 - 2014-11-26 13:07 - 000118576 _____ () C:\WINDOWS\SysWOW64\SecUPDUtilSvc.exe
2018-04-12 01:34 - 2018-04-12 01:34 - 000472064 _____ () C:\Windows\ShellExperiences\TileControl.dll
2018-04-12 01:34 - 2018-04-12 01:34 - 002759168 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll
2018-06-14 13:16 - 2018-06-08 10:56 - 002185216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2018-06-27 11:37 - 2018-06-27 11:38 - 027126784 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
2018-06-27 11:37 - 2018-06-27 11:38 - 000306176 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\SharedUI.dll
2018-06-27 11:37 - 2018-06-27 11:38 - 006735872 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntCommon.dll
2017-09-26 11:29 - 2017-09-26 11:29 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2018-06-27 11:37 - 2018-06-27 11:38 - 009360384 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntPlat.dll
2018-05-23 10:20 - 2018-05-23 10:21 - 000086528 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2018-05-23 10:20 - 2018-05-23 10:21 - 000195072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2018-05-23 10:20 - 2018-05-23 10:21 - 022374400 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2018-05-23 10:20 - 2018-05-23 10:21 - 002610176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\skypert.dll
2018-05-23 10:20 - 2018-05-23 10:21 - 000654848 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll
2018-04-17 10:46 - 2018-04-17 10:47 - 001922232 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.9328.1700.0_x64__8wekyb3d8bbwe\Microsoft.Applications.Telemetry.Windows.dll
2018-06-24 13:26 - 2018-06-24 13:26 - 000084808 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll
2018-06-11 17:12 - 2018-06-11 17:12 - 000478720 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2018-06-11 17:12 - 2018-06-11 17:12 - 067232256 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2017-10-05 09:07 - 2017-10-05 09:09 - 002523136 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\UnityEngineDelegates.dll
2018-05-27 19:48 - 2018-05-27 19:49 - 000010752 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\RenderingPlugin.dll
2018-04-26 14:20 - 2018-04-26 14:21 - 000009216 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\ImagePipelineNative.dll
2018-05-27 19:48 - 2018-05-27 19:49 - 004214784 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\MediaEngineCSWrapper.dll
2018-04-04 16:47 - 2018-04-04 16:50 - 002283008 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\TrackingDLLUWP.dll
2018-05-27 19:48 - 2018-05-27 19:49 - 000035840 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\WinMLWrapper.UWP.dll
2018-06-11 17:12 - 2018-06-11 17:12 - 014851072 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\PhotosApp.Windows.dll
2018-05-27 19:48 - 2018-05-27 19:49 - 004058624 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\MediaEngine.dll
2018-06-11 17:12 - 2018-06-11 17:12 - 003266048 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\AppCore.Windows.dll
2018-05-27 19:48 - 2018-05-27 19:49 - 001393664 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\Microsoft.RichMedia.Ink.Controls.dll
2018-05-27 19:48 - 2018-05-27 19:49 - 004218080 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2018-05-27 19:48 - 2018-05-27 19:49 - 000872448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\RuntimeConfiguration.dll
2018-03-15 07:48 - 2018-03-15 07:48 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-06-20 14:31 - 2018-06-20 14:31 - 000483544 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2018-06-20 14:30 - 2018-06-20 14:30 - 000282840 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2013-08-02 22:53 - 2012-07-18 10:36 - 001198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2018-06-30 18:41 - 000000841 _____ C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1       localhost 

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-156262907-2237363827-403031446-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Libor\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\tapeta programu windows prohlížeč fotografií.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\Run32: => "CLMLServer_For_P2G8"
HKLM\...\StartupApproved\Run32: => "CLVirtualDrive"
HKU\S-1-5-21-156262907-2237363827-403031446-1001\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-156262907-2237363827-403031446-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-156262907-2237363827-403031446-1001\...\StartupApproved\Run: => "OneDrive"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{CCDEE6A1-21A4-4A5B-BD88-5D29FAAD7E2E}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
FirewallRules: [{BBEB5C3A-18F1-4829-890A-E5FBCE624798}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{BF8319F0-F5EB-42B8-A711-A86A4C6EE865}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [UDP Query User{2EA469CB-FF55-4466-BDA7-90A8BFA6BEF2}C:\users\libor\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\libor\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{A0C0138A-E91F-44CF-B714-EA69E00F0ACE}C:\users\libor\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\libor\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{432812C7-144B-4435-9E8C-958A63394702}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE
FirewallRules: [{8BDA8052-2671-45EC-87C1-C32DA9FDCF39}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{E99B9DCA-5D1E-47F5-AD2A-2ABC83AA61DF}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{0DB3FEBF-EAC5-4590-A3D2-023FCD2448E0}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{7B4584A3-38EC-4E78-8A13-5DB9ADD034FE}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{50CB0B55-A643-4610-B747-6660CD08FC7D}C:\users\libor\gsplay\counter-strike\hl.exe] => (Block) C:\users\libor\gsplay\counter-strike\hl.exe
FirewallRules: [UDP Query User{6D0A2DD5-3B98-443C-96E1-F649FB292DBA}C:\users\libor\gsplay\counter-strike\hl.exe] => (Block) C:\users\libor\gsplay\counter-strike\hl.exe
FirewallRules: [TCP Query User{362F08B3-A945-42CD-A8FD-98276E98430D}C:\users\libor\gsplay\csko\hl.exe] => (Allow) C:\users\libor\gsplay\csko\hl.exe
FirewallRules: [UDP Query User{EEC54163-6BE7-46E3-A5BD-FAF3864CB026}C:\users\libor\gsplay\csko\hl.exe] => (Allow) C:\users\libor\gsplay\csko\hl.exe
FirewallRules: [{FA202D17-183F-44C2-8807-4A5BEAC2AB8D}] => (Allow) LPort=2869
FirewallRules: [{C8F5CA02-6334-4BF9-917D-F14B4A675527}] => (Allow) LPort=1900
FirewallRules: [TCP Query User{4DEDD828-23C0-453B-BEAF-DA243C65841F}C:\games\fifa 14\game\fifa14.exe] => (Allow) C:\games\fifa 14\game\fifa14.exe
FirewallRules: [UDP Query User{F11F7579-9567-4A88-918A-02294E86DD2D}C:\games\fifa 14\game\fifa14.exe] => (Allow) C:\games\fifa 14\game\fifa14.exe
FirewallRules: [TCP Query User{1D58B802-349D-45CA-9776-EFE2F8892E6F}C:\users\libor\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\libor\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{68591B11-775B-4A62-AB33-507757A637D9}C:\users\libor\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\libor\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{C96C27C4-6815-42E7-9A08-E98F0EA81F27}C:\users\libor\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\libor\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{AE765246-5E5D-4BCE-BD4E-41EA48BDC628}C:\users\libor\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\libor\appdata\roaming\spotify\spotify.exe
FirewallRules: [{013816C7-E5EB-4D49-8D27-3EF44CAE98ED}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{99C2B2A4-F83F-4591-BB54-BF51FF0C60C7}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{450CB0D7-4A5E-45FD-BDA6-D04C98F4CC8B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{BFF9F3C6-D7BC-4FCF-BCFA-675B0A064542}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Print Driver 2 PCL6\PrinterSelector\SUPDApp.exe
FirewallRules: [TCP Query User{EA84A299-0F75-4124-B2EF-360759637910}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{793038CC-D713-4998-9E6A-654285F48BDE}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [TCP Query User{2BCF4F2E-BE1F-4712-ABF6-8B67487ED4D3}C:\users\libor\counter-strike 1.6\hl.exe] => (Allow) C:\users\libor\counter-strike 1.6\hl.exe
FirewallRules: [UDP Query User{9A8D7867-B3AF-469E-BB1A-3001BAC81E7D}C:\users\libor\counter-strike 1.6\hl.exe] => (Allow) C:\users\libor\counter-strike 1.6\hl.exe
FirewallRules: [TCP Query User{5FF4F7E0-18A7-49E1-B5CD-2BCEE4033DCC}C:\users\libor\counter-strike 1.6\hl.exe] => (Block) C:\users\libor\counter-strike 1.6\hl.exe
FirewallRules: [UDP Query User{DDE74AA0-561E-4A85-BB78-1F169C15D6AE}C:\users\libor\counter-strike 1.6\hl.exe] => (Block) C:\users\libor\counter-strike 1.6\hl.exe
FirewallRules: [TCP Query User{40B01C0B-6EF4-48DD-8A84-42F7A9FEEB7C}C:\users\libor\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\libor\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{EC6A4A5F-6121-4927-8B24-CB235A480285}C:\users\libor\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\libor\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{86870932-351E-4A06-A99A-A4CC2AE30C8B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{A93A14B0-8696-45F7-8792-A8B17717238D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{1F105746-F19A-4524-B1AA-8275C3878E4A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{E0ECA5F2-7674-4F1B-BF12-9E5423F9F9CD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{5450FA0A-F024-4D00-8A80-61DEB39F6F5F}] => (Allow) C:\WINDOWS\SysWOW64\msiexec.exe
FirewallRules: [{8B025C18-934C-4F0D-B5BA-E6C8C6AB71F7}] => (Allow) C:\WINDOWS\gQULpOOqFI.exe
FirewallRules: [{0D308DA5-E29E-43F8-8EB8-4707D22C8268}] => (Allow) C:\Users\Libor\sAsoAcuUzEm.exe
FirewallRules: [{1BF985EA-81F7-4E94-B34E-85B5553917E3}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{EEE6A0C0-20CC-4192-B651-9BDB93E60160}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{0D4464D5-6D7B-40FD-B90B-E2A8E13B289D}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{B2F392BA-C8C7-499D-98AD-EFDFC464A9C0}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{2D003087-F026-4EE7-A260-513AA9F257FC}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{459BF416-7467-4DAE-A9F8-2EE748823D9E}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{CC8D36AB-F4F5-49B4-88B6-F751244A2E54}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{7C19CC53-6CEB-4869-A257-98E265615B60}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{33AF4F1B-1294-4665-809C-4DBCFCE72E0E}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{0C156926-8FD6-493B-9188-A7485BEC5215}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{8C822DA7-CADD-4B86-92C1-91C619DA4766}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{721312E5-1F80-4AB1-83AF-FB70E11381EB}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{2EC04E37-7C7C-4639-82A2-688F31ED93B0}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{510ABF40-BE9D-4EBA-98C2-FC90FDD2B295}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{CA6E3D77-0A2D-409F-BDFF-E01D023ED9E2}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{6519A7D8-84B8-430B-AD63-BBDD38115A8A}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{88583BCB-12E9-4BE0-AA5A-D97E47B3726E}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{C0B7203F-DE8F-468E-A89F-75640E1A6A84}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{B8CBA45C-7146-4680-ACA6-3476F01C69AC}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{1A13F774-56CE-4CBA-9599-518F0B3728C5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{43AE819C-70B2-4AC0-9812-DAA4A33CB227}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{756AEE02-2644-4048-9730-8C9545A8FBDB}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{92E52B50-48E1-4121-94F1-E209CF202C6E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{17633248-F847-4FB4-8FDB-420A21C0BB19}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{F4530CE6-0C0F-4818-99C0-5C56A9D34E90}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{9D6A20AD-71E2-4BC3-A750-98377F0329F0}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{C42873FE-48AC-4B2C-A536-236C579B3D9D}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{E21A61FD-EF0E-4395-9DA1-30B37C2EC194}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{FABD4932-AB30-4D2A-A64E-30DF6546A9D9}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{664DDA1F-C941-422C-8797-67EC09444C8C}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{BE0F5E2E-D96B-49CA-8150-BE17CF4FC650}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{C55122E2-389F-4E4C-9449-E57C3497BE87}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{228181F0-28FD-4ED2-AD8D-2E113092EDF9}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe
FirewallRules: [{AFC59770-320E-4BFE-BC64-1F51D8E24A97}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe

==================== Restore Points =========================

19-06-2018 17:45:15 Naplánovaný kontrolní bod
27-06-2018 11:39:26 Naplánovaný kontrolní bod
29-06-2018 19:32:45 Odebráno: OpenOffice 4.1.4
30-06-2018 19:40:57 JRT Pre-Junkware Removal

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (07/01/2018 11:21:12 AM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. Zadaný účet již existuje.

Error: (07/01/2018 11:12:33 AM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. Zadaný účet již existuje.

Error: (06/30/2018 10:29:21 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Microsoft.Photos.exe verze 2018.18041.15530.0 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 20e4

Čas spuštění: 01d410a565c2c5ae

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe

ID hlášení: bca74974-9a63-4e84-a19f-a377c696e992

Úplný název balíčku s chybou: Microsoft.Windows.Photos_2018.18041.15530.0_x64__8wekyb3d8bbwe

ID aplikace související s balíčkem s chybou: App

Error: (06/30/2018 10:16:00 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. Zadaný účet již existuje.

Error: (06/30/2018 10:03:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: mbamtray.exe, verze: 3.0.0.1496, časové razítko: 0x5b0f37dd
Název chybujícího modulu: Qt5Core.dll, verze: 5.6.3.0, časové razítko: 0x5a61293e
Kód výjimky: 0xc0000005
Posun chyby: 0x0018e4f3
ID chybujícího procesu: 0x1c24
Čas spuštění chybující aplikace: 0x01d410ad6c370516
Cesta k chybující aplikaci: C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
Cesta k chybujícímu modulu: C:\Program Files\Malwarebytes\Anti-Malware\Qt5Core.dll
ID zprávy: 96b2d300-7b4c-4075-94d6-28332c316f8f
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (06/30/2018 09:15:59 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. Zadaný účet již existuje.

Error: (06/30/2018 09:02:25 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. Zadaný účet již existuje.

Error: (06/30/2018 08:49:07 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Avast Update Helper -- Error 1316. Zadaný účet již existuje.


System errors:
=============
Error: (07/01/2018 11:25:47 AM) (Source: DCOM) (EventID: 10016) (User: PC_SLAVNET)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 a APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 uživateli PC_SLAVNET\Libor (SID: S-1-5-21-156262907-2237363827-403031446-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (07/01/2018 11:10:12 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Windows Presentation Foundation Font Cache 3.0.0.0 neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (07/01/2018 11:10:12 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Windows Presentation Foundation Font Cache 3.0.0.0 bylo dosaženo časového limitu (30000 ms).

Error: (07/01/2018 11:09:41 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Windows Presentation Foundation Font Cache 3.0.0.0 neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (07/01/2018 11:09:41 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Windows Presentation Foundation Font Cache 3.0.0.0 bylo dosaženo časového limitu (30000 ms).

Error: (07/01/2018 11:08:52 AM) (Source: Microsoft-Windows-Directory-Services-SAM) (EventID: 16953) (User: NT AUTHORITY)
Description: Nepodařilo se zavést knihovnu DLL oznámení o heslech "C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter" kvůli chybě 126. Ověřte, zda cesta ke knihovně DLL oznámení definovaná v registru (HKLM\System\CurrentControlSet\Control\Lsa\Notification Packages) odkazuje na správnou absolutní cestu (<jednotka>:\<cesta>\<název_souboru>.<přípona>). Pokud je cesta ke knihovně DLL správná, ověřte, zda jsou ve stejném adresáři umístěny všechny podpůrné soubory a zda má systémový účet přístup pro čtení k cestě knihovny DLL i všem podpůrným souborům. O další podporu můžete požádat poskytovatele knihovny DLL oznámení. Podrobnější informace najdete na adrese http://go.microsoft.com/fwlink/?LinkId=245898.

Error: (06/30/2018 10:32:04 PM) (Source: DCOM) (EventID: 10016) (User: PC_SLAVNET)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 a APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 uživateli PC_SLAVNET\Libor (SID: S-1-5-21-156262907-2237363827-403031446-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (06/30/2018 10:13:16 PM) (Source: DCOM) (EventID: 10016) (User: PC_SLAVNET)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 a APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 uživateli PC_SLAVNET\Libor (SID: S-1-5-21-156262907-2237363827-403031446-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.


CodeIntegrity:
===================================

Date: 2018-06-30 22:18:51.504
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

Date: 2018-06-30 22:18:51.292
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.

==================== Memory info =========================== 

Processor: Intel(R) Celeron(R) CPU G1610T @ 2.30GHz
Percentage of memory in use: 47%
Total physical RAM: 3966.66 MB
Available physical RAM: 2092.6 MB
Total Virtual: 4670.66 MB
Available Virtual: 2709.14 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:453.98 GB) (Free:166.32 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (Recovery Image) (Fixed) (Total:9.13 GB) (Free:1.07 GB) NTFS ==>[system with boot components (obtained from drive)]

\\?\Volume{da18f99a-79d9-4c67-935d-b47b4f880667}\ (Windows RE tools) (Fixed) (Total:1 GB) (Free:0.64 GB) NTFS
\\?\Volume{8b51b7ff-9340-4a8e-9eee-cf801fe0b10d}\ () (Fixed) (Total:0.83 GB) (Free:0.45 GB) NTFS
\\?\Volume{a448b003-29e1-4737-ad7e-aa8304e45522}\ () (Fixed) (Total:0.34 GB) (Free:0.31 GB) NTFS
\\?\Volume{69779937-b2b0-4eff-9e83-767826639da6}\ (SYSTEM) (Fixed) (Total:0.35 GB) (Free:0.32 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: E4D91761)

Partition: GPT.

==================== End of Addition.txt ============================