Additional scan result of Farbar Recovery Scan Tool (x86) Version: 06.10.2018
Ran by Shark_a (10-10-2018 12:21:32)
Running from C:\Users\Shark_a\Downloads
Microsoft Windows 7 Home Premium  Service Pack 1 (X86) (2015-10-23 17:16:01)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3201373891-2770881317-2911375207-500 - Administrator - Disabled)
Guest (S-1-5-21-3201373891-2770881317-2911375207-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3201373891-2770881317-2911375207-1002 - Limited - Enabled)
Shark_a (S-1-5-21-3201373891-2770881317-2911375207-1003 - Administrator - Enabled) => C:\Users\Shark_a
Šárka (S-1-5-21-3201373891-2770881317-2911375207-1000 - Limited - Enabled) => C:\Users\Šárka

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 18.011.20058 - Adobe Systems Incorporated)
AMD Catalyst Install Manager (HKLM\...\{9944FA3A-23AB-B1BC-C77A-51B927DE1332}) (Version: 3.0.847.0 - Advanced Micro Devices, Inc.)
Avast Update Helper (HKLM\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.4.136.333 - AVAST Software) Hidden
Broadcom 802.11 Wireless LAN Adapter (HKLM\...\Broadcom 802.11 Wireless LAN Adapter) (Version: 5.100.82.140 - Broadcom Corporation)
BS.Player FREE (HKLM\...\BSPlayerf) (Version: 2.69.1079 - AB Team, d.o.o.)
Codec Pack - All In 1 6.0.3.0 (HKLM\...\Cool's_Codec_pack_4.12) (Version:  - )
Google Chrome (HKLM\...\Google Chrome) (Version: 69.0.3497.100 - Google Inc.)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
LibreOffice 5.1.0.3 (HKLM\...\{2F75F86D-8362-4F49-9536-D87DCBF6ABAE}) (Version: 5.1.0.3 - The Document Foundation)
Microsoft .NET Framework 4.7.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Realtek PCIE Card Reader (HKLM\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7601.84 - Realtek Semiconductor Corp.)
Skype Click to Call (HKLM\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation)
Skype™ 7.40 (HKLM\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.151 - Skype Technologies S.A.)
WinRAR 5.21 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-15] (Alexander Roshal)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2011-04-05] (Intel Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-15] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {15FEF66D-C9C1-4435-9C81-BFF4D1288438} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-10-26] (Google Inc.)
Task: {16A3DA48-D4E1-47AD-A1A9-98C93C23216B} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
Task: {24CE23AF-F82F-40FC-B06C-49790B0C99F6} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {A8D1A594-2526-48B3-B016-ABF5351671D5} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-09-15] (AVAST Software)
Task: {BA15E973-0C42-47A0-A014-08BB3BCF3380} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-10-26] (Google Inc.)
Task: {C7BC432A-55D1-437B-805A-B6107390416F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-03-21] (Adobe Systems Incorporated)
Task: {DB9C3E28-1042-49DF-98EC-DA6833C4A4D7} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files\AVAST Software\Browser\Update\AvastBrowserUpdate.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


ShortcutWithArgument: C:\Users\Shark_a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Hangouts Google.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=knipolnnllmklapflnccelgolnpehhpl

==================== Loaded Modules (Whitelisted) ==============

2011-04-05 03:18 - 2011-04-05 03:18 - 000094208 _____ () C:\Windows\System32\IccLibDll.dll
2018-09-20 17:50 - 2018-09-15 10:48 - 002257240 _____ () C:\Program Files\Google\Chrome\Application\69.0.3497.100\swiftshader\libglesv2.dll
2018-09-20 17:50 - 2018-09-15 10:48 - 000124248 _____ () C:\Program Files\Google\Chrome\Application\69.0.3497.100\swiftshader\libegl.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:04 - 2018-08-12 11:05 - 000000862 _____ C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3201373891-2770881317-2911375207-1003\Control Panel\Desktop\\Wallpaper -> C:\Users\Shark_a\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 213.46.172.36 - 213.46.172.37
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 1) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{C85028C5-C35B-4159-AC3A-D9A4BA1D522D}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{AAB6FBF3-FA2F-426D-807B-09037C8E4CA2}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{D146429A-C07A-4B17-8FFA-5896DEB70BAE}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [{EEB73874-8319-4F9B-9606-59BB09825CA8}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{24E79097-6971-4C45-B06E-F51F0D3D3696}] => (Allow) C:\Users\Šárka\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{510EB1EC-2AE3-4B27-9ECA-82141752F39A}] => (Allow) C:\Users\Šárka\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{5CA2BA0F-8B19-437C-AECB-8943A45AD504}] => (Allow) C:\Users\Šárka\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{4BFE1001-259E-4580-9158-18F59B67AFAE}] => (Allow) C:\Users\Šárka\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{3E2964C0-9793-4A0A-B722-61BA119A1B5B}] => (Allow) C:\Users\Šárka\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B37582A7-9DED-4E66-9DF7-6515C6E6273B}] => (Allow) C:\Users\Šárka\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{27D4B060-DD96-4A1F-8D71-CF6843F1FE90}C:\users\šárka\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\šárka\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{334FC757-B836-4D9A-9F04-4C0D5B853BE7}C:\users\šárka\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\šárka\appdata\roaming\spotify\spotify.exe
FirewallRules: [{FA0CE46A-3CF6-4E75-8C61-0D612AB19E51}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{5E82313D-5D62-4B21-8D54-FCC0A35927F7}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{E037A6C0-66D0-494F-A86A-75BAF16468ED}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{766A77D7-8505-412A-A235-81BF4A668A41}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{91323C61-BD94-4018-8D6A-10E310D39CAF}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

14-09-2018 21:00:38 Windows Update
16-09-2018 06:39:02 Windows Update
24-09-2018 00:46:31 Naplánovaný kontrolní bod
28-09-2018 23:34:55 Instalační služba modulů systému Windows
29-09-2018 00:21:36 Removed Skype™ 7.40
29-09-2018 21:55:48 Windows Update
04-10-2018 19:52:11 Windows Update

==================== Faulty Device Manager Devices =============

Name: Řadič sběrnice SM 
Description: Řadič sběrnice SM 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Adaptér miniportu Microsoft Virtual WiFi
Description: Adaptér miniportu Microsoft Virtual WiFi
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: vwifimp
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Malwarebytes Anti-Exploit
Description: Malwarebytes Anti-Exploit
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: ESProtectionDriver
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: BCM20702A0
Description: BCM20702A0
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (10/10/2018 11:46:41 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe se nezdařilo.
Závislé sestavení Microsoft.VC90.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (10/10/2018 11:46:25 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe se nezdařilo.
Závislé sestavení Microsoft.VC90.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (10/10/2018 11:46:18 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe se nezdařilo.
Závislé sestavení Microsoft.VC90.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (10/10/2018 11:46:14 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe se nezdařilo.
Závislé sestavení Microsoft.VC90.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (10/10/2018 11:45:50 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Generování kontextu aktivace pro C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe se nezdařilo.
Závislé sestavení Microsoft.VC90.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8" nelze najít.
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (10/10/2018 11:38:12 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Nelze číst řetězce čítačů výkonu definované pro ID jazyka 009. První hodnota DWORD v datové oblasti obsahuje kód chyby Win32.

Error: (10/10/2018 11:38:12 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Nelze číst řetězce čítačů výkonu definované pro ID jazyka 005. První hodnota DWORD v datové oblasti obsahuje kód chyby Win32.

Error: (10/10/2018 11:38:12 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Nelze číst řetězce čítačů výkonu definované pro ID jazyka 009. První hodnota DWORD v datové oblasti obsahuje kód chyby Win32.


System errors:
=============
Error: (10/10/2018 11:35:54 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba %1!s! Update (avast) neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedený soubor.

Error: (10/10/2018 11:33:54 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo: 
ESProtectionDriver

Error: (10/10/2018 11:08:21 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba %1!s! Update (avast) neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedený soubor.

Error: (10/10/2018 11:06:21 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Zavedení následujícího ovladače pro spouštění počítače nebo systému se nezdařilo: 
ESProtectionDriver

Error: (10/10/2018 11:06:13 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (6:16:45, ‎10.‎10.‎2018) bylo neočekávané.

Error: (10/10/2018 03:54:16 AM) (Source: Disk) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Harddisk1\DR12.

Error: (10/10/2018 03:51:29 AM) (Source: Microsoft-Windows-BitLocker-Driver) (EventID: 24620) (User: NT AUTHORITY)
Description: Kontrola šifrovaného svazku: Informace o svazku F: nelze přečíst.

Error: (10/10/2018 03:50:39 AM) (Source: Microsoft-Windows-BitLocker-Driver) (EventID: 24620) (User: NT AUTHORITY)
Description: Kontrola šifrovaného svazku: Informace o svazku F: nelze přečíst.


==================== Memory info =========================== 

Processor: Intel(R) Pentium(R) CPU B950 @ 2.10GHz
Percentage of memory in use: 49%
Total physical RAM: 2765.86 MB
Available physical RAM: 1390.97 MB
Total Virtual: 5530.08 MB
Available Virtual: 3904.68 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.76 GB) (Free:224.88 GB) NTFS ==>[drive with boot components (obtained from BCD)]


==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: C69126C0)
Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================