Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20.04.2019 01
Ran by Ondřej (20-04-2019 18:57:49)
Running from C:\Users\Ondřej\Desktop
Windows 10 Home Version 1809 17763.437 (X64) (2019-01-24 13:40:20)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-4146062740-3199932798-2861009757-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4146062740-3199932798-2861009757-503 - Limited - Disabled)
Guest (S-1-5-21-4146062740-3199932798-2861009757-501 - Limited - Disabled)
Honza (S-1-5-21-4146062740-3199932798-2861009757-1002 - Limited - Enabled) => C:\Users\Honza
oholb (S-1-5-21-4146062740-3199932798-2861009757-1001 - Administrator - Enabled) => C:\Users\oholb
Ondřej (S-1-5-21-4146062740-3199932798-2861009757-1004 - Limited - Enabled) => C:\Users\Ondřej
WDAGUtilityAccount (S-1-5-21-4146062740-3199932798-2861009757-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET Security (Enabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Firewall (Enabled) {D426EE12-AE7E-4602-F40F-BBCA8137EB0B}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
ABBYY FineReader 12 Corporate (HKLM-x32\...\{F12000CE-0001-0000-0000-074957833700}) (Version: 12.1.609 - ABBYY Production LLC)
Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 19.010.20100 - Adobe Systems Incorporated)
Adobe Audition 2019 (HKLM-x32\...\AUDT_12_1) (Version: 12.1 - Adobe Systems Incorporated)
Adobe Bridge CC 2019 (HKLM-x32\...\KBRG_9_0_3) (Version: 9.0.3 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.8.1.435 - Adobe Systems Incorporated)
Adobe Illustrator 2019 (HKLM-x32\...\ILST_23_0_3) (Version: 23.0.3 - Adobe Systems Incorporated)
Adobe InDesign 2019 (HKLM-x32\...\IDSN_14_0_2) (Version: 14.0.2 - Adobe Systems Incorporated)
Adobe Lightroom Classic CC (HKLM-x32\...\LTRM_8_2_1) (Version: 8.2.1 - Adobe Systems Incorporated)
Adobe Media Encoder 2019 (HKLM-x32\...\AME_13_1) (Version: 13.1 - Adobe Systems Incorporated)
Adobe Photoshop CC 2019 (HKLM-x32\...\PHSP_20_0_4) (Version: 20.0.4 - Adobe Systems Incorporated)
Adobe Premiere Pro 2019 (HKLM-x32\...\PPRO_13_1) (Version: 13.1 - Adobe Systems Incorporated)
AirDroid 3.6.4.0 (HKLM-x32\...\AirDroid) (Version: 3.6.4.0 - Sand Studio)
ASUS Hello (HKLM-x32\...\{D8CE1923-92A9-4036-817E-9E0D8AA2169B}) (Version: 1.1.10.0 - ASUSTeK COMPUTER INC.)
Atom (HKU\S-1-5-21-4146062740-3199932798-2861009757-1004\...\atom) (Version: 1.36.0 - GitHub Inc.)
AudioWizard (HKLM-x32\...\{57E770A2-2BAF-4CAA-BAA3-BD896E2254D3}) (Version: 1.0.8.17 - ICEpower a/s)
Backup and Sync from Google (HKLM\...\{693CADB0-962B-4AC1-A939-9524B258C997}) (Version: 3.43.2448.9071 - Google, Inc.)
calibre 64bit (HKLM\...\{97B85054-8AF4-4007-BCCF-C2EBAC8E74F9}) (Version: 3.41.3 - Kovid Goyal)
CanoScan LiDE 210 Scanner Driver (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_CNQ4809) (Version:  - Canon Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.56 - Piriform)
Cue Player Premium 3.14.3 (HKLM\...\{88E62607-5ECA-4512-99A6-5398E8B9E229}_is1) (Version:  - Baxel Data Systems)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.10.0.0772 - Disc Soft Ltd)
ESET Security (HKLM\...\{F1544F11-BFCC-43CC-9D0C-169A7E99369E}) (Version: 12.1.34.0 - ESET, spol. s r.o.)
Evernote v. 6.17.6 (HKLM-x32\...\{A957B0DA-2045-11E9-B0CF-005056951CAD}) (Version: 6.17.6.8292 - Evernote Corp.)
FontBase 2.7.0 (HKU\S-1-5-21-4146062740-3199932798-2861009757-1004\...\ffc1e284-e25b-515d-b453-93eb9fe955eb) (Version: 2.7.0 - Dominik Levitsky Studio)
FormApps Signing Extension (HKLM-x32\...\{35C42D1D-32DC-404F-8978-A30B0D64DD26}) (Version: 2.24.0.43 - Software602 a.s.)
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version:  - GOG.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 73.0.3683.103 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.7 - Google LLC) Hidden
Gooka 2 - Záhada Janatrisu (HKLM-x32\...\Gooka) (Version:  - )
Inherit the Earth (HKLM-x32\...\1207659231_is1) (Version: 1.1 - GOG.com)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1727.1 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{86310f5b-bdb9-47b7-9ff9-d633944adc43}) (Version: 20.80.0.0u - Intel Corporation)
Java 8 Update 211 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180211F0}) (Version: 8.0.2110.12 - Oracle Corporation)
Jazz Jackrabbit Collection (HKLM-x32\...\1808582759_is1) (Version: 2.0 CS - GOG.com)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.0.19 - McAfee, Inc.)
Microsoft Office 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.11425.20204 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-4146062740-3199932798-2861009757-1004\...\OneDriveSetup.exe) (Version: 19.043.0304.0007 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.15.26706 (HKLM-x32\...\{95ac1cfa-f4fb-4d1b-8912-7f9d5fbb140d}) (Version: 14.15.26706.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.15.26706 (HKLM-x32\...\{7e9fae12-5bbf-47fb-b944-09c49e75c061}) (Version: 14.15.26706.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Mozilla Firefox 66.0.3 (x64 cs) (HKLM\...\Mozilla Firefox 66.0.3 (x64 cs)) (Version: 66.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 60.5.0 - Mozilla)
Mozilla Thunderbird 60.5.0 (x86 cs) (HKLM-x32\...\Mozilla Thunderbird 60.5.0 (x86 cs)) (Version: 60.5.0 - Mozilla)
NordVPN (HKLM-x32\...\{EF750CE9-E908-457F-8B07-456F39CE757A}) (Version: 6.20.12 - NordVPN) Hidden
NordVPN (HKLM-x32\...\NordVPN 6.20.12) (Version: 6.20.12 - NordVPN)
NordVPN network TAP (HKLM-x32\...\{97DEC5D6-2BE9-45BB-BFC5-274B851B486B}) (Version: 1.0.1 - NordVPN)
NVIDIA Graphics Driver 398.75 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 398.75 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.18.0628 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.18.0628 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.11425.20204 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.11425.20204 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.11425.20204 - Microsoft Corporation) Hidden
Papers, Please (HKLM-x32\...\1207659209_is1) (Version: 1.1.65 - GOG.com)
qBittorrent 4.1.5 (HKLM-x32\...\qBittorrent) (Version: 4.1.5 - The qBittorrent project)
Resonance (HKLM-x32\...\1207659043_is1) (Version: 2.1.0.11 - GOG.com)
Sandboxie 5.28 (64-bit) (HKLM\...\Sandboxie) (Version: 5.28 - Sandboxie Holdings, LLC)
SkyFonts™ (HKLM\...\{E1D048A2-0A35-4DC8-B70E-4818A21E5FC5}) (Version: 5.9.5.3 - Monotype Imaging Inc.)
Stardew Valley česky verze 0.6 (HKLM-x32\...\{50E086FD-BE8D-4271-B791-C7ECD2567FB8}_is1) (Version: 0.6 - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Trigger version 01.28.10 (HKLM-x32\...\{75722308-85D0-4109-BFAF-6B3A7686CDDC}_is1) (Version: 01.28.10 - Ballinger)
Tropico 4 (HKLM-x32\...\1435068351_is1) (Version: 1.06.345 - GOG.com)
Tropico 4: Complete DLC Pack (HKLM-x32\...\1435068458_is1) (Version: 1.06.345 - GOG.com)
Visionaire Studio 5 version v5.0.8 (HKLM-x32\...\Visionaire_is1) (Version: v5.0.8 - Visionaire Team)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.6 - VideoLAN)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [   AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [   AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [   AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2018-12-07] (Google Inc -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2018-12-07] (Google Inc -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2018-12-07] (Google Inc -> Google)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-04-18] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2018-12-07] (Google Inc -> Google)
ContextMenuHandlers1: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\PROGRA~1\mcafee\msc\MCCTXM~1.DLL -> No File
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2019-02-02] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-04-18] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2019-02-02] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2018-12-07] (Google Inc -> Google)
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\cui_dc_comp.inf_amd64_82f69cea8b2d928f\igfxDTCM.dll [2018-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-03-05] (Adobe Systems Incorporated -> )
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-04-18] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\PROGRA~1\mcafee\msc\MCCTXM~1.DLL -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


Shortcut: C:\Users\Ondřej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OldGames.sk\www.oldgames.sk.lnk -> hxxp:

ShortcutWithArgument: C:\Users\Ondřej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Sphero Edu.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) ->  --profile-directory=Default --app-id=hfiocchbmngcelgfdcfbepgoipapddlh

==================== Loaded Modules (Whitelisted) ==============

2019-04-20 18:51 - 2019-04-20 18:51 - 003042304 _____ (Python Software Foundation) [File not signed] C:\Users\ONDEJ~1\AppData\Local\Temp\_MEI190002\python27.dll
2019-04-20 18:51 - 2019-04-20 18:51 - 000113664 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\_ctypes.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000080896 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\bz2.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 001792512 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\_hashlib.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000128512 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\win32api.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000137728 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\pywintypes27.dll
2019-04-20 18:51 - 2019-04-20 18:51 - 000548864 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\pythoncom27.dll
2019-04-20 18:51 - 2019-04-20 18:51 - 000689664 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\unicodedata.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000438784 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\win32com.shell.shell.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 001489408 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\wx._core_.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000202240 _____ (wxWidgets development team) [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\wxbase30u_net_vc90_x64.dll
2019-04-20 18:51 - 2019-04-20 18:51 - 002831872 _____ (wxWidgets development team) [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\wxbase30u_vc90_x64.dll
2019-04-20 18:51 - 2019-04-20 18:51 - 001654784 _____ (wxWidgets development team) [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\wxmsw30u_adv_vc90_x64.dll
2019-04-20 18:51 - 2019-04-20 18:51 - 006542336 _____ (wxWidgets development team) [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\wxmsw30u_core_vc90_x64.dll
2019-04-20 18:51 - 2019-04-20 18:51 - 001007104 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\wx._gdi_.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 001039872 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\wx._windows_.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000773632 _____ (wxWidgets development team) [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\wxmsw30u_html_vc90_x64.dll
2019-04-20 18:51 - 2019-04-20 18:51 - 001325056 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\wx._controls_.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000916992 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\wx._misc_.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 001084416 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\pysqlite2._sqlite.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000149504 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\win32file.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000136192 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\win32security.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000007680 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\hashobjs_ext.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000020992 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\thumbnails_ext.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000118784 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\usb_ext.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000047616 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\_socket.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 002224640 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\_ssl.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000014848 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\common.time34.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000023040 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\win32event.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000034304 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\windows.conditional.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000020480 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\windows.winwrap.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000110080 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\windows.volumes.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000223232 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\win32gui.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000173568 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\_elementtree.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000169472 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\pyexpat.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000048128 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\win32inet.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000103424 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\wx._html2.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000137216 _____ (wxWidgets development team) [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\wxmsw30u_webview_vc90_x64.dll
2019-04-20 18:51 - 2019-04-20 18:51 - 000046080 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\_psutil_windows.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000011776 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\win32crypt.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000301568 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\PIL._imaging.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000032256 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\_multiprocessing.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 005752320 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\cello.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000026112 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\_yappi.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000044032 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\win32process.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000027648 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\win32pipe.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000010752 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\select.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000029696 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\win32pdh.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000038400 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\windows.connectivity.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000073216 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\windows.device_monitor.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000020480 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\win32profile.pyd
2019-04-20 18:51 - 2019-04-20 18:51 - 000026624 _____ () [File not signed] C:\Users\Ondřej\AppData\Local\Temp\_MEI190002\win32ts.pyd
2019-03-09 13:28 - 2019-03-09 13:28 - 005463040 _____ (Steven Mayall) [File not signed] C:\Program Files\WindowsApps\50072StevenMayall.MusicBee_3.2.4.0_x86__kcr266et74avj\win32\MusicBee.exe

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-04-12 01:38 - 2019-02-04 23:30 - 000000842 _____ C:\WINDOWS\system32\drivers\etc\hosts

127.0.0.1 local.skyfonts.com

2019-02-18 17:09 - 2019-02-18 17:09 - 000000375 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path: C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Calibre2\
HKU\S-1-5-21-4146062740-3199932798-2861009757-1004\Control Panel\Desktop\\Wallpaper -> C:\Users\Ondřej\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\asus.jpg
DNS Servers: 192.168.8.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{B63385DA-3F80-41F8-90CD-010083F880CC}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (McAfee, Inc. -> McAfee, Inc.)
FirewallRules: [{2E3B92A0-FA4F-4164-8203-E4A9DC26E6B3}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe (McAfee, Inc. -> McAfee, Inc.)
FirewallRules: [{55DCF23D-B8AF-4816-8E38-833016D7F1DC}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe (McAfee, Inc. -> McAfee, Inc.)
FirewallRules: [{E8C1F7B1-A958-4348-9399-6010DBA74B5F}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel Corporation -> )
FirewallRules: [{E211F572-CD1F-4ABD-97D6-26101966D206}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16010.9126.2116.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe No File
FirewallRules: [{2093EC7E-043D-4DD7-BC32-CB6A826686F3}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{2635E999-DAFB-4359-9EDC-10C877C42773}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{5F9706C4-7C09-458C-8C94-945373E92434}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{FEA0F500-FCD8-423B-89D1-5D9BDA76233F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{37AA090E-804A-4FD5-B7BD-1E41218C56D3}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{79005DB2-ED8B-42B7-AC43-49F217DFCB7D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{A9E1996E-38EB-4D88-8E5F-697C5E6191BE}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8F23857A-052F-45B8-B8CE-54B226331BBB}] => (Allow) D:\SteamLibrary\steamapps\common\Endless Legend\EndlessLegend.exe () [File not signed]
FirewallRules: [{8A781DA3-58B4-4AFD-9E23-E62B5451D378}] => (Allow) D:\SteamLibrary\steamapps\common\Endless Legend\EndlessLegend.exe () [File not signed]
FirewallRules: [{A3C40672-CAB8-45C5-AA04-140663E669DE}] => (Allow) D:\SteamLibrary\steamapps\common\Raven\raven.exe () [File not signed]
FirewallRules: [{2DA56CBF-3885-483A-80C7-5E6AEB9B034E}] => (Allow) D:\SteamLibrary\steamapps\common\Raven\raven.exe () [File not signed]
FirewallRules: [{7D24F9FE-18B6-4339-AEA0-D15089267DF3}] => (Allow) D:\SteamLibrary\steamapps\common\The Curious Expedition\The Curious Expedition.exe (GitHub, Inc.) [File not signed]
FirewallRules: [{0145AAC8-EF3E-400A-861C-63A35F30F954}] => (Allow) D:\SteamLibrary\steamapps\common\The Curious Expedition\The Curious Expedition.exe (GitHub, Inc.) [File not signed]
FirewallRules: [{EE3D1F38-2F0C-4DEF-B88A-25711C387E1A}] => (Allow) D:\SteamLibrary\steamapps\common\Northgard\Northgard.exe () [File not signed]
FirewallRules: [{D24ECDE9-F546-4D52-8517-B9C182EAA24B}] => (Allow) D:\SteamLibrary\steamapps\common\Northgard\Northgard.exe () [File not signed]
FirewallRules: [{512E8D83-DF98-439B-AE81-8C11967FF84B}] => (Allow) D:\SteamLibrary\steamapps\common\Pillars of Eternity II\PillarsOfEternityII.exe (Obsidian Entertainment, Inc. -> )
FirewallRules: [{684F1696-2626-4203-ADF4-B845208E86EB}] => (Allow) D:\SteamLibrary\steamapps\common\Pillars of Eternity II\PillarsOfEternityII.exe (Obsidian Entertainment, Inc. -> )
FirewallRules: [{28477B72-6EEE-46CF-9EB6-7641BA9D285D}] => (Allow) D:\SteamLibrary\steamapps\common\Broken Sword 2\BrokenSword2.exe () [File not signed]
FirewallRules: [{1DE365EF-8A65-4D29-98B4-EF9C1614338A}] => (Allow) D:\SteamLibrary\steamapps\common\Broken Sword 2\BrokenSword2.exe () [File not signed]
FirewallRules: [{A1B75E3E-24B9-42C7-A5F5-14D8AFB49FC5}] => (Allow) D:\SteamLibrary\steamapps\common\Broken Sword 2\Launcher.exe (Revolution Software Limited -> )
FirewallRules: [{30133ADB-5616-4E9B-8AE9-6E107E8BE9F2}] => (Allow) D:\SteamLibrary\steamapps\common\Broken Sword 2\Launcher.exe (Revolution Software Limited -> )
FirewallRules: [{CF6F7A00-E063-419A-875A-311D4030D8C7}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{C36D370E-4504-46CF-8EBD-78F0485145B5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{12DA9765-92C5-4CD2-91D3-47FDA330D3E8}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{83CC6FBB-58D6-4400-98C6-3AFF318C74E0}] => (Allow) D:\SteamLibrary\steamapps\common\Stardew Valley\Stardew Valley.exe (ConcernedApe) [File not signed]
FirewallRules: [{6FB9A49C-32ED-48EA-9AE4-17C0B2445CFD}] => (Allow) D:\SteamLibrary\steamapps\common\Stardew Valley\Stardew Valley.exe (ConcernedApe) [File not signed]
FirewallRules: [{AB310D3B-0789-44DF-B2F4-21BFE27E9418}] => (Allow) D:\SteamLibrary\steamapps\common\The Sims 3\Game\Bin\Sims3Launcher.exe (Electronic Arts -> Electronic Arts, Inc.)
FirewallRules: [{E6E35740-EF9B-49EF-9E31-D2EB075822F2}] => (Allow) D:\SteamLibrary\steamapps\common\The Sims 3\Game\Bin\Sims3Launcher.exe (Electronic Arts -> Electronic Arts, Inc.)
FirewallRules: [{56238D94-AB67-4E79-938F-1F98AFAEDB80}] => (Allow) D:\SteamLibrary\steamapps\common\Frostpunk\Frostpunk.exe (Marek Ziemak -> 11 bit studios S.A.)
FirewallRules: [{60206272-4B96-43AF-B777-C913F37836DE}] => (Allow) D:\SteamLibrary\steamapps\common\Frostpunk\Frostpunk.exe (Marek Ziemak -> 11 bit studios S.A.)
FirewallRules: [{2CB9293F-05BA-44EB-98BD-66E2F188BE8F}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{59C462C5-BFE4-4AC8-9187-9EB6F308DB25}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{CADC3754-5F8F-4626-AE2B-D93B16808DE5}] => (Allow) %systemroot%\system32\alg.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{1174DDCE-C74E-420E-9906-84687082BA47}] => (Allow) D:\SteamLibrary\steamapps\common\Kingdom New Lands\Kingdom.exe () [File not signed]
FirewallRules: [{FDC9DA9B-6A3E-49F3-8E5A-09241698D796}] => (Allow) D:\SteamLibrary\steamapps\common\Kingdom New Lands\Kingdom.exe () [File not signed]
FirewallRules: [{3A1DE270-E720-4D33-B98F-F209FD1C8288}] => (Allow) D:\SteamLibrary\steamapps\common\Caesar 3\SierraLauncher.exe (Vivendi Universal Games) [File not signed]
FirewallRules: [{674DCCA2-C195-439B-8EFE-EDB4A712C9BC}] => (Allow) D:\SteamLibrary\steamapps\common\Caesar 3\SierraLauncher.exe (Vivendi Universal Games) [File not signed]
FirewallRules: [{546A8D28-BF90-47BE-9953-5A90BBA6E9B8}] => (Allow) D:\SteamLibrary\steamapps\common\Graveyard Keeper\Graveyard Keeper.exe () [File not signed]
FirewallRules: [{18919C34-36A9-4ABC-88DB-11E98EF1148A}] => (Allow) D:\SteamLibrary\steamapps\common\Graveyard Keeper\Graveyard Keeper.exe () [File not signed]
FirewallRules: [{7855A373-8128-4CC4-82D2-6AF99CA2F51B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.104.197.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6CB4508E-D767-4DC9-A030-A0DCEEFC3E59}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.104.197.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{41B904EE-9028-4B3B-BD88-831CF95C768A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.104.197.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8AF05BB2-B78E-4C10-B26A-FC46439C6040}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.104.197.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{5CFC4B45-3C55-4C8D-A0B0-57DF91FD35F2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.104.197.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{3341C182-A545-46F5-8200-73F7341D25BD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.104.197.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{63B5EE27-8730-4590-8228-082E278999C9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.104.197.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{36767499-1FB7-4CDE-8B32-DECDF38902CA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.104.197.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{0DE44C88-17DB-4E73-96A7-25C37BA84AF7}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.)

==================== Restore Points =========================

ATTENTION: System Restore is disabled
Check "winmgmt" service or repair WMI.


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (04/20/2019 06:52:16 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: DTAgent.exe, verze: 1.0.0.0, časové razítko: 0x5c541432
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.17763.404, časové razítko: 0x2528b630
Kód výjimky: 0xe0434352
Posun chyby: 0x0000000000039129
ID chybujícího procesu: 0x4c40
Čas spuštění chybující aplikace: 0x01d4f79968b64137
Cesta k chybující aplikaci: C:\Program Files\DAEMON Tools Lite\DTAgent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: 0b9aef52-c20e-4ce0-832a-68b5f20c4cfb
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (04/20/2019 06:52:16 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: DTAgent.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.UnauthorizedAccessException
   na System.IO.__Error.WinIOError(Int32, System.String)
   na System.Threading.EventWaitHandle..ctor(Boolean, System.Threading.EventResetMode, System.String)
   na DTAgent.App.TrayBaseApp+<>c.<.ctor>b__26_0()
   na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
   na System.Threading.ThreadHelper.ThreadStart()

Error: (04/20/2019 06:51:39 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Monotype.SkyFonts.Service.exe, verze: 1.0.6928.29640, časové razítko: 0x5c667414
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.17763.404, časové razítko: 0x2528b630
Kód výjimky: 0xe0434352
Posun chyby: 0x0000000000039129
ID chybujícího procesu: 0x15b4
Čas spuštění chybující aplikace: 0x01d4f7995115cfd1
Cesta k chybující aplikaci: C:\Program Files\Monotype\SkyFonts\Monotype.SkyFonts.Service.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: 618eff36-497c-4430-bc43-3c34efc168e5
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (04/20/2019 06:51:39 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: Monotype.SkyFonts.Service.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.ComponentModel.Win32Exception

Informace o výjimce: System.InvalidOperationException
   na System.ServiceProcess.ServiceController.Start(System.String[])
   na Monotype.SkyFonts.Service.SkyFontsService.c()
   na Monotype.SkyFonts.Service.SkyFontsService.Main(System.String[])

Error: (04/20/2019 06:50:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Monotype.SkyFonts.Service.exe, verze: 1.0.6928.29640, časové razítko: 0x5c667414
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.17763.404, časové razítko: 0x2528b630
Kód výjimky: 0xe0434352
Posun chyby: 0x0000000000039129
ID chybujícího procesu: 0x24b4
Čas spuštění chybující aplikace: 0x01d4f7992bb86e87
Cesta k chybující aplikaci: C:\Program Files\Monotype\SkyFonts\Monotype.SkyFonts.Service.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: 34fb33b0-d689-4de8-b2bf-fbc682b372d0
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (04/20/2019 06:50:35 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: Monotype.SkyFonts.Service.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.ComponentModel.Win32Exception

Informace o výjimce: System.InvalidOperationException
   na System.ServiceProcess.ServiceController.Start(System.String[])
   na Monotype.SkyFonts.Service.SkyFontsService.c()
   na Monotype.SkyFonts.Service.SkyFontsService.Main(System.String[])

Error: (04/20/2019 06:50:27 PM) (Source: AVLogEvent) (EventID: 5002) (User: NT AUTHORITY)
Description: McShield failed to start.
Error Code:a7f40220

Error: (04/20/2019 06:50:26 PM) (Source: ELANFPService) (EventID: 0) (User: )
Description: Event-ID 0


System errors:
=============
Error: (04/20/2019 06:52:36 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1053 při pokusu o spuštění služby mccspsvc s argumenty Není k dispozici za účelem spuštění serveru: 
{8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}

Error: (04/20/2019 06:52:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba McAfee CSP Service neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (04/20/2019 06:52:36 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby McAfee CSP Service bylo dosaženo časového limitu (30000 ms).

Error: (04/20/2019 06:52:36 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1053 při pokusu o spuštění služby mccspsvc s argumenty Není k dispozici za účelem spuštění serveru: 
{8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}

Error: (04/20/2019 06:52:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba McAfee CSP Service neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (04/20/2019 06:52:36 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby McAfee CSP Service bylo dosaženo časového limitu (30000 ms).

Error: (04/20/2019 06:52:36 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1053 při pokusu o spuštění služby mccspsvc s argumenty Není k dispozici za účelem spuštění serveru: 
{8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}

Error: (04/20/2019 06:52:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba McAfee CSP Service neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.


CodeIntegrity:
===================================

Date: 2019-01-24 15:07:38.337
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\mfewfpk.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-01-24 15:07:38.331
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\mfencrk.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-01-24 15:07:38.328
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\mfehidk.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-01-24 15:07:38.315
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\mfeelamk.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-01-24 15:07:38.254
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iaStorAfs.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-01-24 15:07:38.192
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\cfwids.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-01-24 14:52:35.570
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-01-24 14:52:35.567
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\ESET\ESET Security\ecmds.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i7-8565U CPU @ 1.80GHz
Percentage of memory in use: 48%
Total physical RAM: 16235.35 MB
Available physical RAM: 8440.48 MB
Total Virtual: 23915.35 MB
Available Virtual: 15076.15 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:237.42 GB) (Free:83.54 GB) NTFS
Drive d: (DATA) (Fixed) (Total:931.51 GB) (Free:511.34 GB) NTFS
Drive i: (NIKON 1 J5) (Removable) (Total:29.44 GB) (Free:2.97 GB) FAT32
Drive x: () (Network) (Total:2748.21 GB) (Free:831.51 GB) 

\\?\Volume{7e2c34df-0101-4217-8672-16d7654fc472}\ () (Fixed) (Total:0.78 GB) (Free:0.3 GB) NTFS
\\?\Volume{d2653764-92a2-4193-a0de-d23b03643f03}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Partition Table ==================

==================== End of Addition.txt ============================