Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-11-2019
Ran by David (18-11-2019 22:24:31)
Running from C:\Users\David\Desktop
Windows 10 Pro Version 1903 18362.418 (X64) (2019-08-15 04:08:34)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1178174967-152315223-1449852044-500 - Administrator - Disabled)
David (S-1-5-21-1178174967-152315223-1449852044-1002 - Administrator - Enabled) => C:\Users\David
DefaultAccount (S-1-5-21-1178174967-152315223-1449852044-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-1178174967-152315223-1449852044-1001 - Limited - Disabled) => C:\Users\defaultuser0.DESKTOP-0RMN9LC
Guest (S-1-5-21-1178174967-152315223-1449852044-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1178174967-152315223-1449852044-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.021.20056 - Adobe Systems Incorporated)
Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.14 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
ANT Drivers Installer x64 (HKLM\...\{13411D72-7171-440B-978A-ECAA06920C4C}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
AutoCAD 2013 – Čeština (Czech) (HKLM\...\{5783F2D7-B001-0405-2102-0060B0CE6BBA}) (Version: 19.0.55.0 - Autodesk) Hidden
AutoCAD 2013 - English (HKLM\...\{5783F2D7-B001-0000-0102-0060B0CE6BBA}) (Version: 19.0.204.0 - Autodesk) Hidden
AutoCAD 2013 - English (HKLM\...\{5783F2D7-B001-0409-2102-0060B0CE6BBA}) (Version: 19.0.55.0 - Autodesk) Hidden
AutoCAD 2013 - English (HKLM\...\AutoCAD 2013 - English) (Version: 19.0.55.0 - Autodesk)
AutoCAD 2013 - English SP2 (HKLM\...\AutoCAD 2013 - English SP2) (Version: 1 - Autodesk)
AutoCAD 2013 Language Pack – Čeština (Czech) (HKLM\...\{5783F2D7-B001-0405-1102-0060B0CE6BBA}) (Version: 19.0.55.0 - Autodesk) Hidden
AutoCAD 2013 Language Pack – Čeština (Czech) (HKLM\...\AutoCAD 2013 Language Pack – Čeština (Czech)) (Version: 19.0.55.0 - Autodesk)
AutoCAD 2013 Language Pack - English (HKLM\...\{5783F2D7-B001-0409-1102-0060B0CE6BBA}) (Version: 19.0.55.0 - Autodesk) Hidden
Autodesk CAD Manager Tools (HKLM\...\{5783F2D7-0111-0409-0110-0060B0CE6BBA}) (Version: 16.0.0.65 - Autodesk)
Autodesk Content Service (HKLM-x32\...\{62F029AB-85F2-0000-866A-9FC0DD99DDBC}) (Version: 3.0.84.0 - Autodesk) Hidden
Autodesk Content Service (HKLM-x32\...\Autodesk Content Service) (Version: 3.0.84.0 - Autodesk)
Autodesk Content Service Language Pack (HKLM-x32\...\{62F029AB-85F2-0001-866A-9FC0DD99DDBC}) (Version: 3.0.84.0 - Autodesk) Hidden
Autodesk Material Library 2013 (HKLM-x32\...\{117EBEEB-5DB0-43C8-9FD6-DD583DB152DD}) (Version: 3.0.13 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2013 (HKLM-x32\...\{606E12B9-641F-4644-A22A-FF38AE980AFD}) (Version: 3.0.13 - Autodesk)
Autodesk Network License Manager (HKLM\...\{4BE91685-1632-47FC-B563-A8A542C6664C}) (Version: 1.0.0 - Autodesk)
Autodesk Sync (HKLM\...\{EE5F74BC-5CD5-4EF2-86BA-81E6CF46A18F}) (Version: 3.5.102.0 - Autodesk, Inc.)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 77.1.1830.90 - Autoři prohlížeče Avast Secure Browser)
Avast Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.4.136.333 - AVAST Software) Hidden
BabyWare (HKLM-x32\...\BabyWare_V5.2.5_BabyWare) (Version: V5.2.5 - Paradox Security Systems)
Backup and Sync from Google (HKLM\...\{93EBD8BA-7A14-4636-8F1F-E929ADF2C3A9}) (Version: 3.47.7654.0300 - Google, Inc.)
Balíček ovladače systému Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Balíček ovladače systému Windows - Leaf Imaging Ltd. Image  (12/03/2014 1.2.0.0) (HKLM\...\B758007C752D28F7C3542875CEEBDADCAE5941AE) (Version: 12/03/2014 1.2.0.0 - Leaf Imaging Ltd.)
Balíček ovladače systému Windows - Phase One / Mamiya V-Grip USB Driver (12/03/2014 1.2.0.0) (HKLM\...\3F504CC0B024052107934E093CC26DA720256A7A) (Version: 12/03/2014 1.2.0.0 - Phase One / Mamiya)
Balíček ovladače systému Windows - Phase One A/S (WinUSB) USBDevice  (12/03/2014 1.13.0.0) (HKLM\...\7C6570ABBEB2F08EFBC23ED7925AE72DA6167BD8) (Version: 12/03/2014 1.13.0.0 - Phase One A/S)
Balíček ovladače systému Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB  (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Canon IJ Network Scan Utility (HKLM-x32\...\Canon_IJ_Network_Scan_UTILITY) (Version:  - )
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.1.1 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.1.11.1 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 4.2.0 - Canon Inc.)
Canon MP Navigator EX 3.0 (HKLM-x32\...\MP Navigator EX 3.0) (Version:  - )
Canon MP560 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP560_series) (Version:  - Canon Inc.)
CanoScan LiDE 220 Scanner Driver (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_CNQ4811) (Version: 1.02 - Canon Inc.)
Capture One 10.0 (HKLM\...\CaptureOne10_is1) (Version: 10.0.2.8 - Phase One A/S)
CCleaner (HKLM\...\CCleaner) (Version: 5.49 - Piriform)
Colasoft MAC Scanner 2.2 Free (HKLM-x32\...\Colasoft MAC Scanner 2.2 Free_is1) (Version: 2.0 - Colasoft LLC.)
Conexant ISST Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 9.0.231.0 - Conexant)
Easy Photo Scan (HKLM-x32\...\{2A85E1E9-3F89-4972-A3B2-A209D8DEECE1}) (Version: 1.00.0008 - Seiko Epson Corporation)
Elevated Installer (HKLM-x32\...\{4E108B93-9865-45BF-A565-865AE20AC7FC}) (Version: 6.18.0.0 - Garmin Ltd or its subsidiaries) Hidden
EPSON CopyFactory (HKLM-x32\...\{52B4C42B-A110-4236-95C8-AA4B137C16AC}) (Version: 4.9.0.0 - Seiko Epson Corporation)
Epson Event Manager (HKLM-x32\...\{4B22C430-7EA8-4534-8358-376FD900B953}) (Version: 3.10.0042 - Seiko Epson Corporation)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
Epson Software Updater (HKLM-x32\...\{FD036A57-F81D-4865-AAF0-811558EA76AE}) (Version: 4.5.1 - Seiko Epson Corporation)
FARO LS 1.1.406.58 (HKLM-x32\...\{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}) (Version: 4.6.58.2 - FARO Scanner Production)
Garmin Express (HKLM-x32\...\{D646C2CC-7782-4B95-B1C8-D9503409A40A}) (Version: 6.18.0.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express (HKLM-x32\...\{ffecb7df-db17-4a27-9f6b-d61ba2d7bcff}) (Version: 6.18.0.0 - Garmin Ltd or its subsidiaries)
Glary Utilities 5.106 (HKLM-x32\...\Glary Utilities 5) (Version: 5.106.0.130 - Glarysoft Ltd)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 78.0.3904.97 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.341 - Google LLC) Hidden
GoPro Quik (HKLM\...\{AA5F7FCE-311C-46D8-B93A-ABF4DDCAB832}) (Version: 0.1.945 - GoPro, Inc.) Hidden
GoPro Quik (HKLM-x32\...\{a23df978-67ca-4fe3-a740-a7b5ae7ec82f}) (Version: 2.7.0.945 - GoPro, Inc.)
GoPro Studio (HKLM-x32\...\{BE06FF1A-83A0-42F2-913E-6E405393145C}) (Version: 5.12.5383 - GoPro, Inc.)
HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version:  - )
hppLaserJetService (HKLM-x32\...\{D371F551-0DB9-4CEC-844B-4C90CE91EA0B}) (Version: 001.001.0.0 - Hewlett-Packard) Hidden
hppP1100P1560P1600SeriesLaserJetService (HKLM-x32\...\{0E448256-D515-4C3E-A5BE-0A7B76CED5D4}) (Version: 001.001.0.0 - Hewlett-Packard) Hidden
hppusgP1100P1560P1600Series (HKLM-x32\...\{853F464A-B2B8-404E-BA3E-B98FF6862C41}) (Version: 1.0.0.1 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.)
Imagenomic Portraiture 2.3.3 Plug-in (build 2330) (HKLM\...\ImagenomicPortraiturePlugin) (Version:  - )
iNELS3 Designer & Manager (HKU\S-1-5-21-1178174967-152315223-1449852044-1002\...\iNELS3 Designer & Manager) (Version:  - )
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 25.20.100.6472 - Intel Corporation)
Keenai Desktop (HKU\S-1-5-21-1178174967-152315223-1449852044-1002\...\Keenai Desktop) (Version: 7.4.7.1331 - Ricoh Innovations Corporation, Inc.)
MarketResearch (HKLM-x32\...\{175F0111-2968-4935-8F70-33108C6A4DE3}) (Version: 130.0.374.000 - Hewlett-Packard) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1178174967-152315223-1449852044-1002\...\OneDriveSetup.exe) (Version: 19.174.0902.0013 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox 63.0.3 (x64 cs) (HKLM\...\Mozilla Firefox 63.0.3 (x64 cs)) (Version: 63.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 63.0.3 - Mozilla)
Mozilla Thunderbird 60.5.0 (x86 cs) (HKLM-x32\...\Mozilla Thunderbird 60.5.0 (x86 cs)) (Version: 60.5.0 - Mozilla)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
pdfFactory Pro (HKLM\...\pdfFactory Pro) (Version: 4.81 - FinePrint Software, LLC)
PuTTY release 0.70 (64-bit) (HKLM\...\{45B3032F-22CC-40CD-9E97-4DA7095FA5A2}) (Version: 0.70.0.0 - Simon Tatham)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.19.70 - Synaptics Incorporated)
Synology Assistant (remove only) (HKLM-x32\...\Synology Assistant) (Version: 6.2-23733 - Synology)
TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.83369 - TeamViewer)
Ubiquiti UniFi (remove only) (HKLM-x32\...\Ubiquiti UniFi) (Version:  - )
Ulož.to FileManager verze 2.60 (HKLM-x32\...\{7DE5EA5D-C933-4549-9A44-5BC671F23BBF}_is1) (Version: 2.60 - Uloz.to cloud a.s.)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{16AD6161-2E47-4BF1-AA77-0946EFE93E08}) (Version: 2.61.0.0 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.4 - VideoLAN)
Wacom Tablet (HKLM\...\Wacom Tablet Driver) (Version: 6.3.34-3 - Wacom Technology Corp.)
WinRAR 5.70 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH)
WinSCP 5.11.2 (HKLM-x32\...\winscp3_is1) (Version: 5.11.2 - Martin Prikryl)

Packages:
=========
Canon Inkjet Print Utility -> C:\Program Files\WindowsApps\34791E63.CanonInkjetPrintUtility_2.8.0.1_neutral__6e5tt8cgb93ep [2019-05-23] (Canon Inc.)
HP DesignJet Print Experience -> C:\Program Files\WindowsApps\AD2F1837.HPDesignjetExperience_1.0.0.12_neutral__v10z8vjag6ke6 [2019-08-15] (HP Inc.)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_105.1.623.0_x64__v10z8vjag6ke6 [2019-11-18] (HP Inc.)
HP System Information -> C:\Program Files\WindowsApps\AD2F1837.HPSystemInformation_7.0.15.0_x64__v10z8vjag6ke6 [2019-09-24] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-20] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.33.13094.0_x64__8wekyb3d8bbwe [2019-11-18] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.11052.0_x64__8wekyb3d8bbwe [2019-11-12] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-14] (Microsoft Corporation) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20368.0_x64__8wekyb3d8bbwe [2019-11-12] (Microsoft Corporation) [MS Ad]
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.Twitter_6.1.4.1000_neutral__wgeqdkkx372wm [2018-09-08] (Twitter Inc.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1178174967-152315223-1449852044-1002_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2013\acad.exe (Autodesk, Inc -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1178174967-152315223-1449852044-1002_Classes\CLSID\{BD0DEB94-63DB-4392-9420-6EEE05094B1F}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2013\acad.exe (Autodesk, Inc -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1178174967-152315223-1449852044-1002_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2013\en-US\acadficn.dll (Autodesk, Inc -> Autodesk, Inc.)
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2210608 2006-10-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-10-24] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-10-24] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-10-24] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-23] (AVAST Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll [2012-02-06] (Autodesk, Inc -> Autodesk, Inc.)
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2012-02-06] (Autodesk, Inc -> Autodesk)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-23] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2019-10-24] (Google LLC -> Google)
ContextMenuHandlers1: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll [2018-03-02] (Glarysoft LTD -> Glarysoft Ltd)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll [2018-03-02] (Glarysoft LTD -> Glarysoft Ltd)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-23] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2019-10-24] (Google LLC -> Google)
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\ki130871.inf_amd64_382f7c369d4bf777\igfxDTCM.dll [2019-01-30] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-09-23] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll [2018-03-02] (Glarysoft LTD -> Glarysoft Ltd)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\David\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Google Keep – poznámky a seznamy.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) ->  --profile-directory=Default --app-id=hmjkmjkepdijhoojdojkdfohbdgmmhki

==================== Loaded Modules (Whitelisted) =============

2017-04-18 04:45 - 2017-04-18 04:45 - 000808960 _____ () [File not signed] C:\Program Files (x86)\Garmin\Express\CefSharp.BrowserSubprocess.Core.dll
2017-04-18 04:45 - 2017-04-18 04:45 - 001227264 _____ () [File not signed] C:\Program Files (x86)\Garmin\Express\CefSharp.Core.dll
2019-09-18 15:28 - 2019-09-18 15:28 - 000073216 _____ () [File not signed] C:\Program Files (x86)\Garmin\Express\FixBootSector.dll
2017-05-08 09:35 - 2017-05-08 09:35 - 000325632 _____ () [File not signed] C:\Program Files (x86)\Garmin\Express\GpsImgWrapper.dll
2017-04-09 22:49 - 2017-04-09 22:49 - 067109376 _____ () [File not signed] C:\Program Files (x86)\Garmin\Express\libcef.dll
2017-04-09 22:49 - 2017-04-09 22:49 - 000079360 _____ () [File not signed] C:\Program Files (x86)\Garmin\Express\libegl.dll
2017-04-09 22:49 - 2017-04-09 22:49 - 002246144 _____ () [File not signed] C:\Program Files (x86)\Garmin\Express\libglesv2.dll
2019-11-18 22:19 - 2019-11-18 22:19 - 000114176 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\_ctypes.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000173056 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\_elementtree.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 001808896 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\_hashlib.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000032256 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\_multiprocessing.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000046080 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\_psutil_windows.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000047616 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\_socket.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 002241024 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\_ssl.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000026112 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\_yappi.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000080896 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\bz2.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000016384 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\common.time34.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000007680 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\hashobjs_ext.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000301568 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\PIL._imaging.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000169472 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\pyexpat.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 001084416 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\pysqlite2._sqlite.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000548864 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\pythoncom27.dll
2019-11-18 22:19 - 2019-11-18 22:19 - 000137728 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\pywintypes27.dll
2019-11-18 22:19 - 2019-11-18 22:19 - 000010752 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\select.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000020992 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\thumbnails_ext.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000689664 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\unicodedata.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000119808 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\usb_ext.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000128512 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\win32api.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000438784 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\win32com.shell.shell.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000011776 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\win32crypt.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000023040 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\win32event.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000149504 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\win32file.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000223232 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\win32gui.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000048128 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\win32inet.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000029696 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\win32pdh.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000027648 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\win32pipe.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000044032 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\win32process.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000020480 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\win32profile.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000136192 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\win32security.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000026624 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\win32ts.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000034816 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\windows.conditional.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000038400 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\windows.connectivity.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000071680 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\windows.device_monitor.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000109056 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\windows.volumes.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000020480 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\windows.winwrap.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 001325056 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\wx._controls_.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 001489408 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\wx._core_.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 001007104 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\wx._gdi_.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000103424 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\wx._html2.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 000916992 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\wx._misc_.pyd
2019-11-18 22:19 - 2019-11-18 22:19 - 001039872 _____ () [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\wx._windows_.pyd
2019-09-18 15:28 - 2019-09-18 15:28 - 001976832 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\Garmin\Express\XercesLib.dll
2017-07-13 18:20 - 2012-06-14 16:18 - 000359936 _____ (CANON INC.) [File not signed] C:\WINDOWS\System32\CNMN6PPM.DLL
2019-09-14 07:01 - 2018-07-03 10:14 - 001348608 _____ (Conexant Systems, Inc.) [File not signed] C:\Program Files\Conexant\SA3\HP-NB-AIO\CxHDAudioAPI.dll
2019-09-18 15:30 - 2019-09-18 15:30 - 000234496 _____ (Dynastream Innovations Inc.) [File not signed] C:\Program Files (x86)\Garmin\Express\ANT_WrappedLib.dll
2019-11-03 08:06 - 2019-11-18 22:21 - 000453120 _____ (ESET) [File not signed] c:\users\david\appdata\local\google\chrome\user data\swreporter\77.223.200\edls_64.dll
2019-09-18 15:28 - 2019-09-18 15:28 - 002711552 _____ (Garmin International) [File not signed] C:\Program Files (x86)\Garmin\Express\legacyio.dll
2017-05-08 09:35 - 2017-05-08 09:35 - 000343552 _____ (Garmin International, Inc.) [File not signed] C:\Program Files (x86)\Garmin\Express\IMG_GPSMAP.dll
2019-09-18 15:28 - 2019-09-18 15:28 - 000425472 _____ (Garmin) [File not signed] C:\Program Files (x86)\Garmin\Express\XMLdll.dll
2009-06-25 08:27 - 2009-06-25 08:27 - 000541184 _____ (Marvell Semiconductor, Inc.) [File not signed] C:\WINDOWS\System32\mvtcpmon.dll
2009-06-25 08:25 - 2009-06-25 08:25 - 000144896 _____ (OpenSLP) [File not signed] C:\WINDOWS\System32\slp64.dll
2019-11-18 22:19 - 2019-11-18 22:19 - 003042816 _____ (Python Software Foundation) [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\python27.dll
2019-09-18 15:29 - 2019-09-18 15:29 - 000090112 _____ (Silicon Laboratories, Inc.) [File not signed] C:\Program Files (x86)\Garmin\Express\DSI_SiUSBXp_3_1.DLL
2018-10-08 21:53 - 2018-10-08 21:53 - 000839444 _____ (SQLite Development Team) [File not signed] C:\Program Files (x86)\Keenai Desktop\sqlite3.dll
2017-04-09 22:49 - 2017-04-09 22:49 - 000434176 _____ (The Chromium Authors) [File not signed] C:\Program Files (x86)\Garmin\Express\chrome_elf.dll
2018-10-08 21:53 - 2018-10-08 21:53 - 001389056 _____ (winsparkle.org) [File not signed] C:\Program Files (x86)\Keenai Desktop\WinSparkle.dll
2019-11-18 22:19 - 2019-11-18 22:19 - 000202240 _____ (wxWidgets development team) [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\wxbase30u_net_vc90_x64.dll
2019-11-18 22:19 - 2019-11-18 22:19 - 002831872 _____ (wxWidgets development team) [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\wxbase30u_vc90_x64.dll
2019-11-18 22:19 - 2019-11-18 22:19 - 001654784 _____ (wxWidgets development team) [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\wxmsw30u_adv_vc90_x64.dll
2019-11-18 22:19 - 2019-11-18 22:19 - 006542336 _____ (wxWidgets development team) [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\wxmsw30u_core_vc90_x64.dll
2019-11-18 22:19 - 2019-11-18 22:19 - 000773632 _____ (wxWidgets development team) [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\wxmsw30u_html_vc90_x64.dll
2019-11-18 22:19 - 2019-11-18 22:19 - 000137216 _____ (wxWidgets development team) [File not signed] C:\Users\David\AppData\Local\Temp\_MEI67202\wxmsw30u_webview_vc90_x64.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\WINDOWS\system32\Drivers\iaStorB.sys:com.dropbox.attributes [168]
AlternateDataStreams: C:\WINDOWS\system32\Drivers\iaStorS.sys:com.dropbox.attributes [168]
AlternateDataStreams: C:\ProgramData\TEMP:8927A071 [462]
AlternateDataStreams: C:\ProgramData\TEMP:A1EDB939 [114]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKU\S-1-5-21-1178174967-152315223-1449852044-1002\Software\Classes\.scr: AutoCADScriptFile => 

==================== Internet Explorer trusted/restricted ==========

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-1178174967-152315223-1449852044-1002\...\localhost -> localhost

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-07-16 12:47 - 2019-11-11 21:25 - 000000840 _____ C:\WINDOWS\system32\drivers\etc\hosts

2018-07-26 18:45 - 2018-07-26 18:46 - 000000375 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\PuTTY\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-1178174967-152315223-1449852044-1002\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
DNS Servers: 192.168.1.1 - 10.3.254.179
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{C4918F75-9B84-4489-93C0-E037DA44F765}] => (Allow) C:\Program Files (x86)\Keenai Desktop\Keenai.Desktop.exe (Ricoh Innovations Corporation,Inc.) [File not signed]
FirewallRules: [{B0063990-DD69-4BF8-9E11-A63C331A214A}] => (Allow) LPort=50248
FirewallRules: [{890B9005-8E0A-4294-A089-0D2E22AF36BF}] => (Allow) C:\Program Files\GoPro\GoPro Desktop App\GoProLauncher.exe (GoPro Media, Inc. -> )
FirewallRules: [{B50AEA88-3A67-4517-AA93-9FFDA15FFE01}] => (Allow) C:\Program Files\GoPro\GoPro Desktop App\GoProIDService.exe (GoPro Media, Inc. -> )
FirewallRules: [{365C3CFE-18B6-41E3-8740-900515B5272E}] => (Allow) C:\Program Files\GoPro\GoPro Desktop App\GoProMsgBus.exe (GoPro Media, Inc. -> )
FirewallRules: [{65FEF515-4E6F-41A6-B7C0-1DE7A560DA83}] => (Allow) C:\Program Files\GoPro\GoPro Desktop App\GoPro Quik.exe (GoPro Media, Inc. -> )
FirewallRules: [{7AA816F4-61D9-42A3-BE4A-326145428068}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{98AFFDA1-8499-4546-AAB0-0A4647CEE8CA}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{4DECD65E-83EA-4D93-8733-F8E1480B6A16}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{35C265F3-C185-44BB-B019-259F203FAD87}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{F8227184-2164-42AD-AC58-251D9756B8CD}] => (Allow) C:\Users\David\AppData\Roaming\uTorrent\uTorrent.exe No File
FirewallRules: [{55320F2E-C3E4-4F49-9513-CB758817B4C3}] => (Allow) C:\Users\David\AppData\Roaming\uTorrent\uTorrent.exe No File
FirewallRules: [UDP Query User{3D960D09-9826-4000-B7C5-2A5576D12C80}C:\program files (x86)\paradox security systems\babyware\babyware.exe] => (Allow) C:\program files (x86)\paradox security systems\babyware\babyware.exe (Paradox Security Systems) [File not signed]
FirewallRules: [TCP Query User{EC5C27EB-AAFC-469A-9E4B-1B32C6F60730}C:\program files (x86)\paradox security systems\babyware\babyware.exe] => (Allow) C:\program files (x86)\paradox security systems\babyware\babyware.exe (Paradox Security Systems) [File not signed]
FirewallRules: [UDP Query User{EDFBC310-2F8B-4BD7-BBEE-C9895ED8EF73}C:\program files (x86)\inels3 designer & manager\idm3.exe] => (Allow) C:\program files (x86)\inels3 designer & manager\idm3.exe (EKLOep by Ing. Jan Srsen) [File not signed]
FirewallRules: [TCP Query User{B102788C-9088-481A-ADE7-BE97AF07F6FE}C:\program files (x86)\inels3 designer & manager\idm3.exe] => (Allow) C:\program files (x86)\inels3 designer & manager\idm3.exe (EKLOep by Ing. Jan Srsen) [File not signed]
FirewallRules: [UDP Query User{02B5B2EF-34F2-4DD8-B607-F8D032DD1C12}C:\program files (x86)\synology\assistant\dsassistant.exe] => (Allow) C:\program files (x86)\synology\assistant\dsassistant.exe (Synology Inc. -> ) [File not signed]
FirewallRules: [TCP Query User{D1A37FF6-1309-4F78-9978-A372EF5D0DAB}C:\program files (x86)\synology\assistant\dsassistant.exe] => (Allow) C:\program files (x86)\synology\assistant\dsassistant.exe (Synology Inc. -> ) [File not signed]
FirewallRules: [UDP Query User{64759FAA-B8CF-47C1-948F-A6B6526D41FA}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [TCP Query User{AEA6586B-209C-42F5-AD30-AFAA6BD8A48D}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [UDP Query User{2DB5DCCD-4A79-4149-96CE-65DB5C7314F6}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [TCP Query User{E161585A-4624-41A6-B695-C3EFFBD6A046}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [{1C5B36E3-AB73-4233-835F-51E26F0F546C}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe (AVAST Software s.r.o. -> AVAST Software)
FirewallRules: [{6E3C6864-11C5-4C1F-9446-D0D6EEF4C079}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

02-11-2019 00:12:02 Windows Update
05-11-2019 00:16:06 Windows Update
12-11-2019 00:12:06 Windows Update
18-11-2019 22:16:06 Removed Java 8 Update 144

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/18/2019 10:19:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_FrameServer, verze: 10.0.18362.1, časové razítko: 0x32d6c210
Název chybujícího modulu: combase.dll, verze: 10.0.18362.356, časové razítko: 0x7b512025
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000bd478
ID chybujícího procesu: 0x760
Čas spuštění chybující aplikace: 0x01d59e55bd7317de
Cesta k chybující aplikaci: C:\WINDOWS\System32\svchost.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\combase.dll
ID zprávy: d362fa51-0a71-4569-9cf3-966bd9d14d6b
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (11/18/2019 10:18:42 PM) (Source: Autodesk Content Service) (EventID: 0) (User: )
Description: Service cannot be started. Connect.Exceptions.IndexingServiceException: IndexingServiceErrCodes:129:UnexpectedDatabase
   at Connect.MetaStore.MetaStorage.Initialize()
   at Connect.IVault.IVault.OnStart(String[] args)
   at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (11/17/2019 10:47:13 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (3404,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (11/17/2019 10:41:26 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1023) (User: NT AUTHORITY)
Description: Systém Windows nemůže načíst knihovnu DLL rozšiřitelných čítačů C:\WINDOWS\system32\sysmain.dll (kód chyby Win32 126).

Error: (11/17/2019 10:41:26 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1020) (User: NT AUTHORITY)
Description: Velikost požadované vyrovnávací paměti je větší než velikost vyrovnávací paměti předané do funkce Collect knihovny DLL rozšiřitelných čítačů C:\Windows\System32\perfts.dll pro službu LSM. Velikost dané vyrovnávací paměti: 10272; požadovaná velikost: 38376.

Error: (11/14/2019 06:43:27 AM) (Source: Autodesk Content Service) (EventID: 0) (User: )
Description: Service cannot be started. Connect.Exceptions.IndexingServiceException: IndexingServiceErrCodes:129:UnexpectedDatabase
   at Connect.MetaStore.MetaStorage.Initialize()
   at Connect.IVault.IVault.OnStart(String[] args)
   at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (11/14/2019 06:40:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: GfxDownloadWrapper.exe, verze: 8.15.100.6472, časové razítko: 0x5c0eb879
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.18362.418, časové razítko: 0xfba22159
Kód výjimky: 0xe0434352
Posun chyby: 0x000000000003a839
ID chybujícího procesu: 0xf00
Čas spuštění chybující aplikace: 0x01d59aadf49e78fc
Cesta k chybující aplikaci: C:\WINDOWS\System32\DriverStore\FileRepository\ki130871.inf_amd64_382f7c369d4bf777\GfxDownloadWrapper.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: 19896890-92e1-41a7-8475-2f86e45dd522
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (11/14/2019 06:40:03 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: GfxDownloadWrapper.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.IO.DirectoryNotFoundException
   na System.IO.__Error.WinIOError(Int32, System.String)
   na System.IO.FileStream.Init(System.String, System.IO.FileMode, System.IO.FileAccess, Int32, Boolean, System.IO.FileShare, Int32, System.IO.FileOptions, SECURITY_ATTRIBUTES, System.String, Boolean, Boolean, Boolean)
   na System.IO.FileStream..ctor(System.String, System.IO.FileMode, System.IO.FileAccess, System.IO.FileShare, Int32, System.IO.FileOptions, System.String, Boolean, Boolean, Boolean)
   na System.IO.StreamWriter.CreateFile(System.String, Boolean, Boolean)
   na System.IO.StreamWriter..ctor(System.String, Boolean, System.Text.Encoding, Int32, Boolean)
   na System.IO.StreamWriter..ctor(System.String, Boolean, System.Text.Encoding)
   na GfxGameSettingsDownload.Program.Main(System.String[])


System errors:
=============
Error: (11/18/2019 10:19:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba HP LaserJet Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (11/18/2019 10:18:35 PM) (Source: Microsoft-Windows-Directory-Services-SAM) (EventID: 16953) (User: NT AUTHORITY)
Description: Nepodařilo se zavést knihovnu DLL oznámení o heslech "C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter" kvůli chybě 126. Ověřte, zda cesta ke knihovně DLL oznámení definovaná v registru (HKLM\System\CurrentControlSet\Control\Lsa\Notification Packages) odkazuje na správnou absolutní cestu (<jednotka>:\<cesta>\<název_souboru>.<přípona>). Pokud je cesta ke knihovně DLL správná, ověřte, zda jsou ve stejném adresáři umístěny všechny podpůrné soubory a zda má systémový účet přístup pro čtení k cestě knihovny DLL i všem podpůrným souborům. O další podporu můžete požádat poskytovatele knihovny DLL oznámení. Podrobnější informace najdete na adrese http://go.microsoft.com/fwlink/?LinkId=245898.

Error: (11/18/2019 10:09:32 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Místní adaptér Bluetooth selhal. Důvod selhaní nebylo možno určit a adaptér nebude používán. Ovladač vysílače byl vyjmut z paměti.

Error: (11/18/2019 02:55:38 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Místní adaptér Bluetooth selhal. Důvod selhaní nebylo možno určit a adaptér nebude používán. Ovladač vysílače byl vyjmut z paměti.

Error: (11/18/2019 12:02:33 AM) (Source: TPM) (EventID: 15) (User: )
Description: V hardwaru čipu TPM (Trusted Platform Module) došlo k neobnovitelné chybě ovladače zařízení, která brání používání služeb TPM (například šifrování dat). Budete-li potřebovat další pomoc, obraťte se na výrobce počítače.

Error: (11/17/2019 10:41:04 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Místní adaptér Bluetooth selhal. Důvod selhaní nebylo možno určit a adaptér nebude používán. Ovladač vysílače byl vyjmut z paměti.

Error: (11/15/2019 12:29:48 AM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Místní adaptér Bluetooth selhal. Důvod selhaní nebylo možno určit a adaptér nebude používán. Ovladač vysílače byl vyjmut z paměti.

Error: (11/14/2019 06:43:37 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba HP LaserJet Service byla neočekávaně ukončena. Tento stav nastal již 1krát.


CodeIntegrity:
===================================

Date: 2019-11-18 22:20:41.735
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-11-18 22:20:41.723
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-11-18 22:20:41.704
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-11-18 22:19:52.024
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

Date: 2019-11-18 22:19:52.003
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

Date: 2019-11-18 22:19:51.988
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

Date: 2019-11-18 22:19:51.969
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

Date: 2019-11-18 22:19:51.948
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

==================== Memory info =========================== 

BIOS: HP N78 Ver. 01.14 08/08/2016
Motherboard: HP 8101
Processor: Intel(R) Core(TM) i7-6500U CPU @ 2.50GHz
Percentage of memory in use: 53%
Total physical RAM: 8088.6 MB
Available physical RAM: 3756.3 MB
Total Virtual: 13464.6 MB
Available Virtual: 9029.85 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:237.92 GB) (Free:34.62 GB) NTFS

\\?\Volume{c13e5680-3217-42e5-8424-aea5dc4bc97a}\ (Recovery) (Fixed) (Total:0.44 GB) (Free:0.42 GB) NTFS
\\?\Volume{87b1341b-ccc6-4223-8d56-0982b0b8f43f}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 9AD33993)

Partition: GPT.

==================== End of Addition.txt =======================