Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10-11-2019
Ran by David (11-11-2019 21:11:06)
Running from C:\Users\David\Desktop
Windows 10 Pro Version 1903 18362.418 (X64) (2019-08-15 04:08:34)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1178174967-152315223-1449852044-500 - Administrator - Disabled)
David (S-1-5-21-1178174967-152315223-1449852044-1002 - Administrator - Enabled) => C:\Users\David
DefaultAccount (S-1-5-21-1178174967-152315223-1449852044-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-1178174967-152315223-1449852044-1001 - Limited - Disabled) => C:\Users\defaultuser0.DESKTOP-0RMN9LC
Guest (S-1-5-21-1178174967-152315223-1449852044-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1178174967-152315223-1449852044-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.021.20049 - Adobe Systems Incorporated)
Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.14 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
ANT Drivers Installer x64 (HKLM\...\{13411D72-7171-440B-978A-ECAA06920C4C}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
AutoCAD 2013 – Čeština (Czech) (HKLM\...\{5783F2D7-B001-0405-2102-0060B0CE6BBA}) (Version: 19.0.55.0 - Autodesk) Hidden
AutoCAD 2013 - English (HKLM\...\{5783F2D7-B001-0000-0102-0060B0CE6BBA}) (Version: 19.0.204.0 - Autodesk) Hidden
AutoCAD 2013 - English (HKLM\...\{5783F2D7-B001-0409-2102-0060B0CE6BBA}) (Version: 19.0.55.0 - Autodesk) Hidden
AutoCAD 2013 - English (HKLM\...\AutoCAD 2013 - English) (Version: 19.0.55.0 - Autodesk)
AutoCAD 2013 - English SP2 (HKLM\...\AutoCAD 2013 - English SP2) (Version: 1 - Autodesk)
AutoCAD 2013 Language Pack – Čeština (Czech) (HKLM\...\{5783F2D7-B001-0405-1102-0060B0CE6BBA}) (Version: 19.0.55.0 - Autodesk) Hidden
AutoCAD 2013 Language Pack – Čeština (Czech) (HKLM\...\AutoCAD 2013 Language Pack – Čeština (Czech)) (Version: 19.0.55.0 - Autodesk)
AutoCAD 2013 Language Pack - English (HKLM\...\{5783F2D7-B001-0409-1102-0060B0CE6BBA}) (Version: 19.0.55.0 - Autodesk) Hidden
Autodesk CAD Manager Tools (HKLM\...\{5783F2D7-0111-0409-0110-0060B0CE6BBA}) (Version: 16.0.0.65 - Autodesk)
Autodesk Content Service (HKLM-x32\...\{62F029AB-85F2-0000-866A-9FC0DD99DDBC}) (Version: 3.0.84.0 - Autodesk) Hidden
Autodesk Content Service (HKLM-x32\...\Autodesk Content Service) (Version: 3.0.84.0 - Autodesk)
Autodesk Content Service Language Pack (HKLM-x32\...\{62F029AB-85F2-0001-866A-9FC0DD99DDBC}) (Version: 3.0.84.0 - Autodesk) Hidden
Autodesk Material Library 2013 (HKLM-x32\...\{117EBEEB-5DB0-43C8-9FD6-DD583DB152DD}) (Version: 3.0.13 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2013 (HKLM-x32\...\{606E12B9-641F-4644-A22A-FF38AE980AFD}) (Version: 3.0.13 - Autodesk)
Autodesk Network License Manager (HKLM\...\{4BE91685-1632-47FC-B563-A8A542C6664C}) (Version: 1.0.0 - Autodesk)
Autodesk Sync (HKLM\...\{EE5F74BC-5CD5-4EF2-86BA-81E6CF46A18F}) (Version: 3.5.102.0 - Autodesk, Inc.)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 77.1.1830.90 - Autoři prohlížeče Avast Secure Browser)
Avast Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.4.136.333 - AVAST Software) Hidden
BabyWare (HKLM-x32\...\BabyWare_V5.2.5_BabyWare) (Version: V5.2.5 - Paradox Security Systems)
Backup and Sync from Google (HKLM\...\{04F8741C-2F6C-4324-BBAB-0CEB1E59FE67}) (Version: 3.46.7395.1225 - Google, Inc.)
Balíček ovladače systému Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Balíček ovladače systému Windows - Leaf Imaging Ltd. Image  (12/03/2014 1.2.0.0) (HKLM\...\B758007C752D28F7C3542875CEEBDADCAE5941AE) (Version: 12/03/2014 1.2.0.0 - Leaf Imaging Ltd.)
Balíček ovladače systému Windows - Phase One / Mamiya V-Grip USB Driver (12/03/2014 1.2.0.0) (HKLM\...\3F504CC0B024052107934E093CC26DA720256A7A) (Version: 12/03/2014 1.2.0.0 - Phase One / Mamiya)
Balíček ovladače systému Windows - Phase One A/S (WinUSB) USBDevice  (12/03/2014 1.13.0.0) (HKLM\...\7C6570ABBEB2F08EFBC23ED7925AE72DA6167BD8) (Version: 12/03/2014 1.13.0.0 - Phase One A/S)
Balíček ovladače systému Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB  (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Canon IJ Network Scan Utility (HKLM-x32\...\Canon_IJ_Network_Scan_UTILITY) (Version:  - )
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.1.1 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.1.11.1 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 4.2.0 - Canon Inc.)
Canon MP Navigator EX 3.0 (HKLM-x32\...\MP Navigator EX 3.0) (Version:  - )
Canon MP560 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP560_series) (Version:  - Canon Inc.)
CanoScan LiDE 220 Scanner Driver (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_CNQ4811) (Version: 1.02 - Canon Inc.)
Capture One 10.0 (HKLM\...\CaptureOne10_is1) (Version: 10.0.2.8 - Phase One A/S)
CCleaner (HKLM\...\CCleaner) (Version: 5.49 - Piriform)
Colasoft MAC Scanner 2.2 Free (HKLM-x32\...\Colasoft MAC Scanner 2.2 Free_is1) (Version: 2.0 - Colasoft LLC.)
Conexant ISST Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 9.0.231.0 - Conexant)
Easy Photo Scan (HKLM-x32\...\{2A85E1E9-3F89-4972-A3B2-A209D8DEECE1}) (Version: 1.00.0008 - Seiko Epson Corporation)
Elevated Installer (HKLM-x32\...\{4E108B93-9865-45BF-A565-865AE20AC7FC}) (Version: 6.18.0.0 - Garmin Ltd or its subsidiaries) Hidden
EPSON CopyFactory (HKLM-x32\...\{52B4C42B-A110-4236-95C8-AA4B137C16AC}) (Version: 4.9.0.0 - Seiko Epson Corporation)
Epson Event Manager (HKLM-x32\...\{4B22C430-7EA8-4534-8358-376FD900B953}) (Version: 3.10.0042 - Seiko Epson Corporation)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
Epson Software Updater (HKLM-x32\...\{FD036A57-F81D-4865-AAF0-811558EA76AE}) (Version: 4.5.1 - Seiko Epson Corporation)
FARO LS 1.1.406.58 (HKLM-x32\...\{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}) (Version: 4.6.58.2 - FARO Scanner Production)
Garmin Express (HKLM-x32\...\{D646C2CC-7782-4B95-B1C8-D9503409A40A}) (Version: 6.18.0.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express (HKLM-x32\...\{ffecb7df-db17-4a27-9f6b-d61ba2d7bcff}) (Version: 6.18.0.0 - Garmin Ltd or its subsidiaries)
Glary Utilities 5.106 (HKLM-x32\...\Glary Utilities 5) (Version: 5.106.0.130 - Glarysoft Ltd)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 78.0.3904.87 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.341 - Google LLC) Hidden
GoPro Quik (HKLM\...\{AA5F7FCE-311C-46D8-B93A-ABF4DDCAB832}) (Version: 0.1.945 - GoPro, Inc.) Hidden
GoPro Quik (HKLM-x32\...\{a23df978-67ca-4fe3-a740-a7b5ae7ec82f}) (Version: 2.7.0.945 - GoPro, Inc.)
GoPro Studio (HKLM-x32\...\{BE06FF1A-83A0-42F2-913E-6E405393145C}) (Version: 5.12.5383 - GoPro, Inc.)
HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version:  - )
hppLaserJetService (HKLM-x32\...\{D371F551-0DB9-4CEC-844B-4C90CE91EA0B}) (Version: 001.001.0.0 - Hewlett-Packard) Hidden
hppP1100P1560P1600SeriesLaserJetService (HKLM-x32\...\{0E448256-D515-4C3E-A5BE-0A7B76CED5D4}) (Version: 001.001.0.0 - Hewlett-Packard) Hidden
hppusgP1100P1560P1600Series (HKLM-x32\...\{853F464A-B2B8-404E-BA3E-B98FF6862C41}) (Version: 1.0.0.1 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.)
Imagenomic Portraiture 2.3.3 Plug-in (build 2330) (HKLM\...\ImagenomicPortraiturePlugin) (Version:  - )
iNELS3 Designer & Manager (HKU\S-1-5-21-1178174967-152315223-1449852044-1002\...\iNELS3 Designer & Manager) (Version:  - )
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 25.20.100.6472 - Intel Corporation)
Java 8 Update 144 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180144F0}) (Version: 8.0.1440.1 - Oracle Corporation)
Java 8 Update 191 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180191F0}) (Version: 8.0.1910.12 - Oracle Corporation)
Keenai Desktop (HKU\S-1-5-21-1178174967-152315223-1449852044-1002\...\Keenai Desktop) (Version: 7.4.7.1331 - Ricoh Innovations Corporation, Inc.)
MarketResearch (HKLM-x32\...\{175F0111-2968-4935-8F70-33108C6A4DE3}) (Version: 130.0.374.000 - Hewlett-Packard) Hidden
McAfee True Key (HKLM\...\TrueKey) (Version: 5.3.138.1 - McAfee, LLC)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1178174967-152315223-1449852044-1002\...\OneDriveSetup.exe) (Version: 19.174.0902.0013 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox 63.0.3 (x64 cs) (HKLM\...\Mozilla Firefox 63.0.3 (x64 cs)) (Version: 63.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 63.0.3 - Mozilla)
Mozilla Thunderbird 60.5.0 (x86 cs) (HKLM-x32\...\Mozilla Thunderbird 60.5.0 (x86 cs)) (Version: 60.5.0 - Mozilla)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
pdfFactory Pro (HKLM\...\pdfFactory Pro) (Version: 4.81 - FinePrint Software, LLC)
PuTTY release 0.70 (64-bit) (HKLM\...\{45B3032F-22CC-40CD-9E97-4DA7095FA5A2}) (Version: 0.70.0.0 - Simon Tatham)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.19.70 - Synaptics Incorporated)
Synology Assistant (remove only) (HKLM-x32\...\Synology Assistant) (Version: 6.2-23733 - Synology)
TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.83369 - TeamViewer)
Ubiquiti UniFi (remove only) (HKLM-x32\...\Ubiquiti UniFi) (Version:  - )
Ulož.to FileManager verze 2.60 (HKLM-x32\...\{7DE5EA5D-C933-4549-9A44-5BC671F23BBF}_is1) (Version: 2.60 - Uloz.to cloud a.s.)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{16AD6161-2E47-4BF1-AA77-0946EFE93E08}) (Version: 2.61.0.0 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.4 - VideoLAN)
Wacom Tablet (HKLM\...\Wacom Tablet Driver) (Version: 6.3.34-3 - Wacom Technology Corp.)
WinRAR 5.70 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH)
WinSCP 5.11.2 (HKLM-x32\...\winscp3_is1) (Version: 5.11.2 - Martin Prikryl)

Packages:
=========
Canon Inkjet Print Utility -> C:\Program Files\WindowsApps\34791E63.CanonInkjetPrintUtility_2.8.0.1_neutral__6e5tt8cgb93ep [2019-05-23] (Canon Inc.)
HP DesignJet Print Experience -> C:\Program Files\WindowsApps\AD2F1837.HPDesignjetExperience_1.0.0.12_neutral__v10z8vjag6ke6 [2019-08-15] (HP Inc.)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_105.1.618.0_x64__v10z8vjag6ke6 [2019-10-21] (HP Inc.)
HP System Information -> C:\Program Files\WindowsApps\AD2F1837.HPSystemInformation_7.0.15.0_x64__v10z8vjag6ke6 [2019-09-24] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-14] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.10022.0_x64__8wekyb3d8bbwe [2019-10-21] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-14] (Microsoft Corporation) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe [2019-09-24] (Microsoft Corporation) [MS Ad]
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.Twitter_6.1.4.1000_neutral__wgeqdkkx372wm [2018-09-08] (Twitter Inc.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1178174967-152315223-1449852044-1002_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2013\acad.exe (Autodesk, Inc -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1178174967-152315223-1449852044-1002_Classes\CLSID\{BD0DEB94-63DB-4392-9420-6EEE05094B1F}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2013\acad.exe (Autodesk, Inc -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1178174967-152315223-1449852044-1002_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2013\en-US\acadficn.dll (Autodesk, Inc -> Autodesk, Inc.)
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2210608 2006-10-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-10-10] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-10-10] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-10-10] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-23] (AVAST Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll [2012-02-06] (Autodesk, Inc -> Autodesk, Inc.)
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2012-02-06] (Autodesk, Inc -> Autodesk)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-23] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2019-10-10] (Google LLC -> Google)
ContextMenuHandlers1: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll [2018-03-02] (Glarysoft LTD -> Glarysoft Ltd)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll [2018-03-02] (Glarysoft LTD -> Glarysoft Ltd)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-23] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2019-10-10] (Google LLC -> Google)
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\ki130871.inf_amd64_382f7c369d4bf777\igfxDTCM.dll [2019-01-30] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-23] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll [2018-03-02] (Glarysoft LTD -> Glarysoft Ltd)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Google Keep – poznámky a seznamy.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=hmjkmjkepdijhoojdojkdfohbdgmmhki

==================== Loaded Modules (Whitelisted) =============

2017-04-18 04:45 - 2017-04-18 04:45 - 000808960 _____ () [File not signed] C:\Program Files (x86)\Garmin\Express\CefSharp.BrowserSubprocess.Core.dll
2017-04-18 04:45 - 2017-04-18 04:45 - 001227264 _____ () [File not signed] C:\Program Files (x86)\Garmin\Express\CefSharp.Core.dll
2019-09-18 15:28 - 2019-09-18 15:28 - 000073216 _____ () [File not signed] C:\Program Files (x86)\Garmin\Express\FixBootSector.dll
2017-05-08 09:35 - 2017-05-08 09:35 - 000325632 _____ () [File not signed] C:\Program Files (x86)\Garmin\Express\GpsImgWrapper.dll
2017-04-09 22:49 - 2017-04-09 22:49 - 067109376 _____ () [File not signed] C:\Program Files (x86)\Garmin\Express\libcef.dll
2017-04-09 22:49 - 2017-04-09 22:49 - 000079360 _____ () [File not signed] C:\Program Files (x86)\Garmin\Express\libegl.dll
2017-04-09 22:49 - 2017-04-09 22:49 - 002246144 _____ () [File not signed] C:\Program Files (x86)\Garmin\Express\libglesv2.dll
2018-10-08 21:53 - 2018-10-08 21:53 - 000044032 _____ () [File not signed] C:\Program Files (x86)\Keenai Desktop\EyeFiCard.dll
2018-01-01 18:58 - 2017-01-31 11:11 - 052451328 _____ () [File not signed] C:\Program Files\Phase One\Capture One 10\WIC\WIC64\ImgCoreDll.dll
2018-01-01 18:58 - 2017-01-31 11:11 - 000914432 _____ () [File not signed] C:\Program Files\Phase One\Capture One 10\WIC\WIC64\OpenCoreDll.dll
2018-01-01 18:58 - 2017-01-31 11:14 - 000301568 _____ () [File not signed] C:\Program Files\Phase One\Capture One 10\WIC\WIC64\P1.WIC.NativeComWrapper.dll
2019-10-21 18:07 - 2019-10-21 18:07 - 000114176 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\_ctypes.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000173056 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\_elementtree.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 001803776 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\_hashlib.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000032256 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\_multiprocessing.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000046080 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\_psutil_windows.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000047616 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\_socket.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 002235904 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\_ssl.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000026112 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\_yappi.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000080896 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\bz2.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000016384 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\common.time34.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000007680 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\hashobjs_ext.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000301568 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\PIL._imaging.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000169472 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\pyexpat.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 001084416 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\pysqlite2._sqlite.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000548864 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\pythoncom27.dll
2019-10-21 18:07 - 2019-10-21 18:07 - 000137728 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\pywintypes27.dll
2019-10-21 18:07 - 2019-10-21 18:07 - 000010752 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\select.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000020992 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\thumbnails_ext.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000689664 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\unicodedata.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000119808 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\usb_ext.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000128512 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\win32api.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000438784 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\win32com.shell.shell.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000011776 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\win32crypt.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000023040 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\win32event.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000149504 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\win32file.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000223232 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\win32gui.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000048128 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\win32inet.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000029696 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\win32pdh.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000027648 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\win32pipe.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000044032 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\win32process.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000020480 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\win32profile.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000136192 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\win32security.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000026624 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\win32ts.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000034816 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\windows.conditional.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000038400 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\windows.connectivity.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000071680 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\windows.device_monitor.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000109056 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\windows.volumes.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000020480 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\windows.winwrap.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 001325056 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\wx._controls_.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 001489408 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\wx._core_.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 001007104 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\wx._gdi_.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000103424 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\wx._html2.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 000916992 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\wx._misc_.pyd
2019-10-21 18:07 - 2019-10-21 18:07 - 001039872 ____N () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\wx._windows_.pyd
2019-09-18 15:28 - 2019-09-18 15:28 - 001976832 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\Garmin\Express\XercesLib.dll
2017-07-13 18:20 - 2012-06-14 16:18 - 000359936 _____ (CANON INC.) [File not signed] C:\WINDOWS\System32\CNMN6PPM.DLL
2019-09-14 07:01 - 2018-07-03 10:14 - 001348608 _____ (Conexant Systems, Inc.) [File not signed] C:\Program Files\Conexant\SA3\HP-NB-AIO\CxHDAudioAPI.dll
2019-09-18 15:30 - 2019-09-18 15:30 - 000234496 _____ (Dynastream Innovations Inc.) [File not signed] C:\Program Files (x86)\Garmin\Express\ANT_WrappedLib.dll
2019-09-18 15:28 - 2019-09-18 15:28 - 002711552 _____ (Garmin International) [File not signed] C:\Program Files (x86)\Garmin\Express\legacyio.dll
2017-05-08 09:35 - 2017-05-08 09:35 - 000343552 _____ (Garmin International, Inc.) [File not signed] C:\Program Files (x86)\Garmin\Express\IMG_GPSMAP.dll
2019-09-18 15:28 - 2019-09-18 15:28 - 000425472 _____ (Garmin) [File not signed] C:\Program Files (x86)\Garmin\Express\XMLdll.dll
2009-06-25 08:27 - 2009-06-25 08:27 - 000541184 _____ (Marvell Semiconductor, Inc.) [File not signed] C:\WINDOWS\System32\mvtcpmon.dll
2009-06-25 08:25 - 2009-06-25 08:25 - 000144896 _____ (OpenSLP) [File not signed] C:\WINDOWS\System32\slp64.dll
2018-01-01 18:58 - 2017-01-31 11:13 - 009253376 _____ (PhaseOne) [File not signed] C:\Program Files\Phase One\Capture One 10\WIC\WIC64\P1.ModelCore.dll
2019-10-21 18:07 - 2019-10-21 18:07 - 003042816 ____N (Python Software Foundation) [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\python27.dll
2019-09-18 15:29 - 2019-09-18 15:29 - 000090112 _____ (Silicon Laboratories, Inc.) [File not signed] C:\Program Files (x86)\Garmin\Express\DSI_SiUSBXp_3_1.DLL
2018-10-08 21:53 - 2018-10-08 21:53 - 000839444 _____ (SQLite Development Team) [File not signed] C:\Program Files (x86)\Keenai Desktop\sqlite3.dll
2017-04-09 22:49 - 2017-04-09 22:49 - 000434176 _____ (The Chromium Authors) [File not signed] C:\Program Files (x86)\Garmin\Express\chrome_elf.dll
2018-10-08 21:53 - 2018-10-08 21:53 - 001389056 _____ (winsparkle.org) [File not signed] C:\Program Files (x86)\Keenai Desktop\WinSparkle.dll
2019-10-21 18:07 - 2019-10-21 18:07 - 000202240 ____N (wxWidgets development team) [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\wxbase30u_net_vc90_x64.dll
2019-10-21 18:07 - 2019-10-21 18:07 - 002831872 ____N (wxWidgets development team) [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\wxbase30u_vc90_x64.dll
2019-10-21 18:07 - 2019-10-21 18:07 - 001654784 ____N (wxWidgets development team) [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\wxmsw30u_adv_vc90_x64.dll
2019-10-21 18:07 - 2019-10-21 18:07 - 006542336 ____N (wxWidgets development team) [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\wxmsw30u_core_vc90_x64.dll
2019-10-21 18:07 - 2019-10-21 18:07 - 000773632 ____N (wxWidgets development team) [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\wxmsw30u_html_vc90_x64.dll
2019-10-21 18:07 - 2019-10-21 18:07 - 000137216 ____N (wxWidgets development team) [File not signed] C:\Users\David\AppData\Local\Temp\_MEI119042\wxmsw30u_webview_vc90_x64.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\WINDOWS\system32\Drivers\iaStorB.sys:com.dropbox.attributes [168]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\iaStorS.sys:com.dropbox.attributes [168]
AlternateDataStreams: C:\ProgramData\TEMP:8927A071 [462]
AlternateDataStreams: C:\ProgramData\TEMP:A1EDB939 [114]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKU\S-1-5-21-1178174967-152315223-1449852044-1002\Software\Classes\.scr: AutoCADScriptFile => 

==================== Internet Explorer trusted/restricted ==========

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE trusted site: HKU\.DEFAULT\...\webcompanion.com -> hxxp://webcompanion.com
IE trusted site: HKU\S-1-5-21-1178174967-152315223-1449852044-1002\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-1178174967-152315223-1449852044-1002\...\webcompanion.com -> hxxp://webcompanion.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-07-16 12:47 - 2019-01-06 11:48 - 000000836 _____ C:\WINDOWS\system32\drivers\etc\hosts

2018-07-26 18:45 - 2018-07-26 18:46 - 000000375 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\PuTTY\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-1178174967-152315223-1449852044-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-1178174967-152315223-1449852044-1002\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
DNS Servers: 192.168.1.1 - 10.3.254.179
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{C4918F75-9B84-4489-93C0-E037DA44F765}] => (Allow) C:\Program Files (x86)\Keenai Desktop\Keenai.Desktop.exe (Ricoh Innovations Corporation,Inc.) [File not signed]
FirewallRules: [{B0063990-DD69-4BF8-9E11-A63C331A214A}] => (Allow) LPort=50248
FirewallRules: [{890B9005-8E0A-4294-A089-0D2E22AF36BF}] => (Allow) C:\Program Files\GoPro\GoPro Desktop App\GoProLauncher.exe (GoPro Media, Inc. -> )
FirewallRules: [{B50AEA88-3A67-4517-AA93-9FFDA15FFE01}] => (Allow) C:\Program Files\GoPro\GoPro Desktop App\GoProIDService.exe (GoPro Media, Inc. -> )
FirewallRules: [{365C3CFE-18B6-41E3-8740-900515B5272E}] => (Allow) C:\Program Files\GoPro\GoPro Desktop App\GoProMsgBus.exe (GoPro Media, Inc. -> )
FirewallRules: [{65FEF515-4E6F-41A6-B7C0-1DE7A560DA83}] => (Allow) C:\Program Files\GoPro\GoPro Desktop App\GoPro Quik.exe (GoPro Media, Inc. -> )
FirewallRules: [{7AA816F4-61D9-42A3-BE4A-326145428068}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{98AFFDA1-8499-4546-AAB0-0A4647CEE8CA}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{4DECD65E-83EA-4D93-8733-F8E1480B6A16}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{35C265F3-C185-44BB-B019-259F203FAD87}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{F8227184-2164-42AD-AC58-251D9756B8CD}] => (Allow) C:\Users\David\AppData\Roaming\uTorrent\uTorrent.exe No File
FirewallRules: [{55320F2E-C3E4-4F49-9513-CB758817B4C3}] => (Allow) C:\Users\David\AppData\Roaming\uTorrent\uTorrent.exe No File
FirewallRules: [UDP Query User{3D960D09-9826-4000-B7C5-2A5576D12C80}C:\program files (x86)\paradox security systems\babyware\babyware.exe] => (Allow) C:\program files (x86)\paradox security systems\babyware\babyware.exe (Paradox Security Systems) [File not signed]
FirewallRules: [TCP Query User{EC5C27EB-AAFC-469A-9E4B-1B32C6F60730}C:\program files (x86)\paradox security systems\babyware\babyware.exe] => (Allow) C:\program files (x86)\paradox security systems\babyware\babyware.exe (Paradox Security Systems) [File not signed]
FirewallRules: [UDP Query User{EDFBC310-2F8B-4BD7-BBEE-C9895ED8EF73}C:\program files (x86)\inels3 designer & manager\idm3.exe] => (Allow) C:\program files (x86)\inels3 designer & manager\idm3.exe (EKLOep by Ing. Jan Srsen) [File not signed]
FirewallRules: [TCP Query User{B102788C-9088-481A-ADE7-BE97AF07F6FE}C:\program files (x86)\inels3 designer & manager\idm3.exe] => (Allow) C:\program files (x86)\inels3 designer & manager\idm3.exe (EKLOep by Ing. Jan Srsen) [File not signed]
FirewallRules: [UDP Query User{02B5B2EF-34F2-4DD8-B607-F8D032DD1C12}C:\program files (x86)\synology\assistant\dsassistant.exe] => (Allow) C:\program files (x86)\synology\assistant\dsassistant.exe (Synology Inc. -> ) [File not signed]
FirewallRules: [TCP Query User{D1A37FF6-1309-4F78-9978-A372EF5D0DAB}C:\program files (x86)\synology\assistant\dsassistant.exe] => (Allow) C:\program files (x86)\synology\assistant\dsassistant.exe (Synology Inc. -> ) [File not signed]
FirewallRules: [UDP Query User{64759FAA-B8CF-47C1-948F-A6B6526D41FA}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [TCP Query User{AEA6586B-209C-42F5-AD30-AFAA6BD8A48D}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [UDP Query User{2DB5DCCD-4A79-4149-96CE-65DB5C7314F6}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [TCP Query User{E161585A-4624-41A6-B695-C3EFFBD6A046}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [{1C5B36E3-AB73-4233-835F-51E26F0F546C}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe (AVAST Software s.r.o. -> AVAST Software)
FirewallRules: [{FAFD6A42-C3FE-40EE-9172-334BD8C4729B}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

02-11-2019 00:12:02 Windows Update
05-11-2019 00:16:06 Windows Update

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/11/2019 09:06:43 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (16396,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (11/11/2019 08:58:32 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005.  ID procesu (desítkově): 17656. ID zprávy: [0x2509].

Error: (11/11/2019 08:37:08 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (13664,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (11/11/2019 08:27:12 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1023) (User: NT AUTHORITY)
Description: Systém Windows nemůže načíst knihovnu DLL rozšiřitelných čítačů C:\WINDOWS\system32\sysmain.dll (kód chyby Win32 126).

Error: (11/11/2019 08:27:11 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1020) (User: NT AUTHORITY)
Description: Velikost požadované vyrovnávací paměti je větší než velikost vyrovnávací paměti předané do funkce Collect knihovny DLL rozšiřitelných čítačů C:\Windows\System32\perfts.dll pro službu LSM. Velikost dané vyrovnávací paměti: 7944; požadovaná velikost: 47760.

Error: (11/05/2019 08:49:31 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (13576,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (11/05/2019 08:41:38 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (3996,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (11/05/2019 08:36:19 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: SkypeApp.exe, verze: 8.53.0.85, časové razítko: 0x5d966ef7
Název chybujícího modulu: twinapi.appcore.dll, verze: 10.0.18362.1, časové razítko: 0x42f071ca
Kód výjimky: 0xc000027b
Posun chyby: 0x00000000000d5cc8
ID chybujícího procesu: 0x36b4
Čas spuštění chybující aplikace: 0x01d590f38f057eb9
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.85.0_x64__kzf8qxf38zg5c\SkypeApp.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\twinapi.appcore.dll
ID zprávy: 530855d9-f219-40bb-9795-dc5a14c608ac
Úplný název chybujícího balíčku: Microsoft.SkypeApp_14.53.85.0_x64__kzf8qxf38zg5c
ID aplikace související s chybujícím balíčkem: App


System errors:
=============
Error: (11/11/2019 08:25:49 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Místní adaptér Bluetooth selhal. Důvod selhaní nebylo možno určit a adaptér nebude používán. Ovladač vysílače byl vyjmut z paměti.

Error: (11/05/2019 08:36:02 AM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Místní adaptér Bluetooth selhal. Důvod selhaní nebylo možno určit a adaptér nebude používán. Ovladač vysílače byl vyjmut z paměti.

Error: (11/04/2019 11:14:59 PM) (Source: NetBT) (EventID: 4311) (User: )
Description: Inicializace se nezdařila, protože ovladač zařízení nemohl být vytvořen.
K identifikaci rozhraní, jehož inicializace se nezdařila, lze použít
řetězec C8D3FFCFD348. Je reprezentován adresou MAC tohoto rozhraní nebo globálně 
 jedinečným identifikátorem (GUID), pokud nemohlo rozhraní NetBT 
získat adresu MAC podle identifikátoru GUID. Pokud nebyla k dispozici adresa MAC
ani identifikátor GUID, je řetězec reprezentován názvem zařízení clusteru.

Error: (11/04/2019 11:14:59 PM) (Source: NetBT) (EventID: 4311) (User: )
Description: Inicializace se nezdařila, protože ovladač zařízení nemohl být vytvořen.
K identifikaci rozhraní, jehož inicializace se nezdařila, lze použít
řetězec C8D3FFCFD348. Je reprezentován adresou MAC tohoto rozhraní nebo globálně 
 jedinečným identifikátorem (GUID), pokud nemohlo rozhraní NetBT 
získat adresu MAC podle identifikátoru GUID. Pokud nebyla k dispozici adresa MAC
ani identifikátor GUID, je řetězec reprezentován názvem zařízení clusteru.

Error: (11/03/2019 11:39:45 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Místní adaptér Bluetooth selhal. Důvod selhaní nebylo možno určit a adaptér nebude používán. Ovladač vysílače byl vyjmut z paměti.

Error: (11/03/2019 08:05:22 AM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Místní adaptér Bluetooth selhal. Důvod selhaní nebylo možno určit a adaptér nebude používán. Ovladač vysílače byl vyjmut z paměti.

Error: (11/02/2019 06:29:16 AM) (Source: NetBT) (EventID: 4311) (User: )
Description: Inicializace se nezdařila, protože ovladač zařízení nemohl být vytvořen.
K identifikaci rozhraní, jehož inicializace se nezdařila, lze použít
řetězec C8D3FFCFD348. Je reprezentován adresou MAC tohoto rozhraní nebo globálně 
 jedinečným identifikátorem (GUID), pokud nemohlo rozhraní NetBT 
získat adresu MAC podle identifikátoru GUID. Pokud nebyla k dispozici adresa MAC
ani identifikátor GUID, je řetězec reprezentován názvem zařízení clusteru.

Error: (11/02/2019 06:29:16 AM) (Source: NetBT) (EventID: 4311) (User: )
Description: Inicializace se nezdařila, protože ovladač zařízení nemohl být vytvořen.
K identifikaci rozhraní, jehož inicializace se nezdařila, lze použít
řetězec C8D3FFCFD348. Je reprezentován adresou MAC tohoto rozhraní nebo globálně 
 jedinečným identifikátorem (GUID), pokud nemohlo rozhraní NetBT 
získat adresu MAC podle identifikátoru GUID. Pokud nebyla k dispozici adresa MAC
ani identifikátor GUID, je řetězec reprezentován názvem zařízení clusteru.


CodeIntegrity:
===================================

Date: 2019-11-11 20:27:29.524
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-11-11 20:26:09.748
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-11-11 20:26:09.722
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-11-11 20:26:09.690
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-11-11 20:26:09.657
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-11-11 20:26:09.616
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-11-11 20:26:00.759
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-11-04 16:12:59.806
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

==================== Memory info =========================== 

BIOS: HP N78 Ver. 01.14 08/08/2016
Motherboard: HP 8101
Processor: Intel(R) Core(TM) i7-6500U CPU @ 2.50GHz
Percentage of memory in use: 60%
Total physical RAM: 8088.6 MB
Available physical RAM: 3233.22 MB
Total Virtual: 13464.6 MB
Available Virtual: 7070.9 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:237.92 GB) (Free:35.38 GB) NTFS
Drive e: () (Removable) (Total:28.63 GB) (Free:28.29 GB) FAT32

\\?\Volume{c13e5680-3217-42e5-8424-aea5dc4bc97a}\ (Recovery) (Fixed) (Total:0.44 GB) (Free:0.42 GB) NTFS
\\?\Volume{87b1341b-ccc6-4223-8d56-0982b0b8f43f}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 9AD33993)

Partition: GPT.

==========================================================
Disk: 1 (Protective MBR) (Size: 28.6 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================