Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-07-2020 01
Ran by Petr (16-07-2020 16:29:22)
Running from D:\Desktop
Windows 10 Pro Version 1909 18363.959 (X64) (2019-09-23 17:16:48)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1378127302-1103651912-2866801594-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1378127302-1103651912-2866801594-503 - Limited - Disabled)
Guest (S-1-5-21-1378127302-1103651912-2866801594-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1378127302-1103651912-2866801594-1002 - Limited - Enabled)
Oracle (S-1-5-21-1378127302-1103651912-2866801594-1019 - Limited - Enabled) => C:\Users\Oracle
Petr (S-1-5-21-1378127302-1103651912-2866801594-1000 - Administrator - Enabled) => C:\Users\Petr
WDAGUtilityAccount (S-1-5-21-1378127302-1103651912-2866801594-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Norton 360 (Enabled - Up to date) {1122B19A-E671-38EC-8EAC-87048FD4528D}
AV: Norton Security (Enabled - Up to date) {A2708B76-6835-6565-CB96-694212954A75}
FW: Norton Security (Enabled) {9A4B0A53-225A-643D-E0C9-C077EC460D0E}
FW: Norton 360 (Enabled) {291930BF-AC1E-39B4-A5F3-2E31710715F6}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

ABBYY FineReader 12 Professional (HKLM-x32\...\{F12000FE-0001-0000-0000-074957833700}) (Version: 12.1.426 - ABBYY Production LLC)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.009.20074 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.403 - Adobe)
calibre (HKLM-x32\...\{B67713B4-83B9-496D-8B26-EBC27F10D562}) (Version: 2.85.1 - Kovid Goyal)
Catalyst Control Center Next Localization BR (HKLM\...\{55A4D3AB-C8DF-26B2-89A8-7E16E1E40700}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization BR (HKLM\...\{E7AA1A02-575C-14C6-FBEF-4BE6D46A5B74}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{62098A5F-E03B-31A3-5F9C-51A7F7D25744}) (Version: 2017.0922.1659.28737 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{A0407E39-2AA4-60B3-885F-3C5347B6909E}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{C3EE628C-7394-FE2C-0C90-C05284EB528D}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{2F544F46-5F6E-97BB-3550-A0242A3C5754}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{4C2FB7FD-89FD-BA5C-585A-3811F326AD34}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{D74218A3-C503-57EF-AC9F-2220082E7ADE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{FC4086D6-E345-5F43-08BB-280FB57DAF49}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{DA433FCF-90A1-19A5-65A7-FDF82DE4826D}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{F8EBE530-A4D5-BF51-F623-3787E6B8A878}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{42FBD43F-DE53-6D4D-5134-E3C93B45CBEF}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{949F125B-A6CC-5A5E-EEE7-4AC50305C1FA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{20D46801-147B-30AD-7C5A-AC4560A79096}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{AC85CF50-9A55-0103-ADBF-365C37603AA4}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{22C39711-2747-D264-319A-1550BEEAAEC6}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{B349892D-B015-033C-4CA8-3635E6B655D7}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{1DBACFDB-5E43-7882-36BD-53526D34BD22}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{BE8D6AB1-3049-2F0C-67FA-00C0A5D321A3}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{365AEAB2-4CF3-7CBB-0DAC-E9E14B688E65}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{EB6C44F1-0F78-FE10-BC63-90BA50AB0CE9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{7ABC6D83-816E-6D48-E65D-B0CEDD294E4E}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{B26D75B8-FAB7-6F8B-767F-BAF975383D91}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{26567561-DFB2-2B63-9BA8-6A490ED37016}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{A91FC4BF-C1EC-ADCA-79D1-F4F0671F1D60}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{0809FEC1-EF86-51E9-8210-DC1B1BDB6745}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{ED75A775-03A7-F214-868D-497748707968}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{07BFBD5C-2F63-6828-1B61-B41A44113F3B}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{5FD706FF-6AD8-E372-A35A-879409982655}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{A4E7CA0C-84EB-5E29-2F04-06C4E4790C2F}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{E6038D3E-5D87-8DF7-6D05-BE7532C3E73E}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{59D2664C-949B-7FA7-9880-ECB993B6616A}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{DFAD9DAC-4768-C8BB-4E0E-5239605A9BEA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{970A40CA-46AB-986C-1798-976ED0EA00FA}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{FFBFBD1F-B160-A119-7C43-8584FA2E5665}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{4707CBFC-8ED4-463E-0FF9-DE86F4A743E9}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{4D1D5407-9B69-6422-629C-8518A26004A4}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{A8379BAB-59A9-C0A3-8BCC-4852EA403692}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{C14A3A5B-8A86-C239-37D7-158211778C54}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{24DF617A-CD23-6E6A-126B-23630D2781CE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{A50C89BC-8D8E-8828-824A-7171F6D583D5}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{0B5633F0-C415-2F08-671E-4C9E2FAACD45}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{83DDDFD8-AD42-72F9-E4F1-5456FDB304C9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.68 - Piriform)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.9.0.0650 - Disc Soft Ltd)
dr.fone (Version 9.5.0) (HKLM-x32\...\{E8F86DA8-B8E4-42C7-AFD4-EBB692AC43FD}_is1) (Version: 9.5.0.15 - Wondershare Technology Co.,Ltd.)
Epic Games Launcher (HKLM-x32\...\{0E63B233-DC24-442C-BD38-0B91D90FEC5B}) (Version: 1.1.167.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
FormApps Signing Extension (HKLM-x32\...\{ACA43D91-8B42-4D42-8C8B-A893BD6AA40D}) (Version: 2.8.2.28 - Software602 a.s.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 83.0.4103.116 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden
GoTo Opener (HKLM-x32\...\{2C183CF0-3077-43D0-B001-F93AC5E68942}) (Version: 1.0.487 - LogMeIn, Inc.)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Photosmart 5510d series Nápověda (HKLM-x32\...\{E59ADA18-03DB-44F5-9EF5-0FA25E4D4384}) (Version: 140.0.2.2 - Hewlett Packard)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
Java 8 Update 221 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180221F0}) (Version: 8.0.2210.11 - Oracle Corporation)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version:  - )
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
LYNX Trading (HKLM\...\5556-0005-2700-0000) (Version: (972.1e) 20180530 17:29:40 - LYNX)
Microsoft .NET Core Runtime - 2.1.17 (x64) (HKLM-x32\...\{01ff5bb0-cdde-446b-a77b-e5ad8b900d81}) (Version: 2.1.17.28619 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 83.0.478.64 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.133.5 - )
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\OneDriveSetup.exe) (Version: 20.084.0426.0007 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.25.28508 (HKLM-x32\...\{6913e92a-b64e-41c9-a5e6-cef39207fe89}) (Version: 14.25.28508.3 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.20.27508 (HKLM-x32\...\{8c3f057e-d6a6-4338-ac6a-f1c795a6577b}) (Version: 14.20.27508.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Norton 360 (HKLM-x32\...\NGC) (Version: 22.20.4.57 - Symantec Corporation)
Norton Security Scan (HKLM-x32\...\NSS) (Version: 4.6.1.150 - Symantec Corporation)
NVIDIA Ovladač HD audia 1.3.38.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.26 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 446.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 446.14 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
Outlook Express Backup V6.5 (HKLM-x32\...\EditPlus Text Editor_is1) (Version: 4.60.2181.23 - GOM & Company)
QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7910 - Realtek Semiconductor Corp.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.4.4445 - TeamViewer)
Toolkit (HKLM-x32\...\Toolkit) (Version: 1.8.4.43 - Seagate)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
UpdateAssistant (HKLM\...\{C4BE7550-ECE1-417D-A787-01266DC1F5A6}) (Version: 1.22.0.0 - Microsoft Corporation) Hidden
Vulkan Run Time Libraries 1.0.51.0 (HKLM\...\VulkanRT1.0.51.0) (Version: 1.0.51.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0-2) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
WhatsApp (HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\WhatsApp) (Version: 0.2.9998 - WhatsApp)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
WinRAR 5.21 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
Základní software zařízení HP Photosmart 5510d series (HKLM\...\{6F2486E1-2778-4AF5-B67B-C1DD85FBA767}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)

Packages:
=========
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.172.400.0_x86__kgqvnymyfvs32 [2020-07-11] (king.com)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-01-18] (Microsoft Corporation)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_115.1.152.0_x64__v10z8vjag6ke6 [2020-05-29] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-09] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-09] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.7082.0_x64__8wekyb3d8bbwe [2020-07-15] (Microsoft Studios) [MS Ad]
MSN Money -> C:\Program Files\WindowsApps\Microsoft.BingFinance_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad]
MSN Sport -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.958.0_x64__56jybvy8sckqj [2020-06-23] (NVIDIA Corp.)
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.Twitter_6.1.4.1000_neutral__wgeqdkkx372wm [2018-09-18] (Twitter Inc.)
WindowsDVDPlayer -> C:\Program Files\WindowsApps\Microsoft.WindowsDVDPlayer_3.6.13291.0_x64__8wekyb3d8bbwe [2016-07-22] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [6671064 2013-12-19] (Microsoft Corporation -> Microsoft Corporation)
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\programy\office\Office14\GROOVEEX.DLL [4171480 2013-12-19] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [  OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers: [  OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers: [  OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers-x32: [  OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers-x32: [  OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation)
ShellIconOverlayIdentifiers-x32: [  OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers1: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers1: [FineReader12ContextMenu] -> {55344AC6-630B-430C-B292-C7BE21F90061} => D:\programy\abbyy\FRIntegration.x64.dll [2014-07-14] (ABBYY Production LLC -> ABBYY Production LLC.)
ContextMenuHandlers1: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.20.4.57\NavShExt.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\programy\winrar\rarext64.dll [2015-02-18] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\programy\winrar\rarext.dll [2015-02-18] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-10-19] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers2: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.20.4.57\NavShExt.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-10-19] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d5216eae94436d77\nvshext.dll [2020-05-18] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.20.4.57\buShell.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers6: [FineReader12ContextMenu] -> {55344AC6-630B-430C-B292-C7BE21F90061} => D:\programy\abbyy\FRIntegration.x64.dll [2014-07-14] (ABBYY Production LLC -> ABBYY Production LLC.)
ContextMenuHandlers6: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.20.4.57\NavShExt.dll [2020-06-03] (Symantec Corporation -> Symantec Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\programy\winrar\rarext64.dll [2015-02-18] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\programy\winrar\rarext.dll [2015-02-18] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-04-03 16:36 - 2017-03-07 13:45 - 000274432 _____ () [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orawsec12.dll
2020-04-03 16:38 - 2017-03-07 22:27 - 000778752 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\OCI.dll
2020-04-03 16:36 - 2017-03-07 23:20 - 001378816 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraasmclnt12.dll
2020-04-03 16:36 - 2017-03-07 23:23 - 000636928 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oracell12.dll
2020-04-03 16:37 - 2017-03-07 22:45 - 006162944 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\OraClient12.Dll
2020-04-03 16:36 - 2017-03-04 04:34 - 000264704 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraclsce12.dll
2020-04-03 16:35 - 2017-03-04 04:35 - 000337408 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraclsra12.dll
2020-04-03 16:37 - 2017-03-07 22:44 - 013490688 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oracommon12.dll
2020-04-03 16:37 - 2016-11-08 11:46 - 002160128 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oracore12.dll
2020-04-03 16:37 - 2017-03-07 22:47 - 021665792 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orageneric12.dll
2020-04-03 16:37 - 2017-03-04 04:34 - 013469184 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orahasgen12.dll
2020-04-03 16:37 - 2017-03-07 22:39 - 000221184 _____ (Oracle Corporation) [File not signed] D:\app\Oracle\product\12.2.0\dbhome_2\BIN\ORAIMR12.Dll
2020-04-03 16:38 - 2016-11-23 22:51 - 005072896 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraldapclnt12.dll
2020-04-03 16:38 - 2016-12-15 16:37 - 005074944 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oran12.dll
2020-04-03 16:38 - 2016-12-15 16:29 - 000123904 _____ (Oracle Corporation) [File not signed] D:\app\Oracle\product\12.2.0\dbhome_2\bin\oranbeq12.dll
2020-04-03 16:38 - 2016-12-15 16:28 - 000008704 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orancds12.dll
2020-04-03 16:38 - 2016-12-15 16:29 - 000105984 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orancrypt12.dll
2020-04-03 16:38 - 2016-12-15 16:29 - 000083456 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orangsmshd12.dll
2020-04-03 16:38 - 2016-12-15 16:29 - 000024064 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oranhost12.dll
2020-04-03 16:38 - 2016-12-15 16:29 - 000104448 _____ (Oracle Corporation) [File not signed] D:\app\Oracle\product\12.2.0\dbhome_2\bin\oranipc12.dll
2020-04-03 16:38 - 2016-12-15 16:29 - 000630272 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oranl12.dll
2020-04-03 16:38 - 2016-12-15 16:29 - 000302080 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oranldap12.dll
2020-04-03 16:38 - 2016-12-17 11:49 - 001134080 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oranls12.dll
2020-04-03 16:38 - 2016-11-23 22:52 - 004709888 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orannzsbb12.dll
2020-04-03 16:38 - 2016-12-15 16:29 - 000353792 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oranro12.dll
2020-04-03 16:38 - 2016-12-15 16:29 - 000175104 _____ (Oracle Corporation) [File not signed] D:\app\Oracle\product\12.2.0\dbhome_2\BIN\oransgr12.dll
2020-04-03 16:38 - 2016-12-15 16:29 - 000249856 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orantcp12.dll
2020-04-03 16:38 - 2016-12-15 16:29 - 000047104 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orantns12.dll
2020-04-03 16:37 - 2017-03-04 04:33 - 001236992 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraocr12.dll
2020-04-03 16:37 - 2017-03-04 04:33 - 001200640 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraocrb12.dll
2020-04-03 16:37 - 2017-03-04 04:33 - 000112640 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraocrutl12.dll
2020-04-03 16:36 - 2017-03-07 13:58 - 000009728 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraodm12.dll
2020-04-03 16:37 - 2017-03-07 21:48 - 000008704 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraofs.dll
2020-04-03 16:36 - 2016-07-28 18:42 - 000252416 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraons.dll
2020-04-03 16:37 - 2017-03-07 22:42 - 000112640 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\OraPlc12.Dll
2020-04-03 16:37 - 2017-03-07 22:43 - 004579328 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraplp12.dll
2020-04-03 16:37 - 2017-03-07 22:43 - 006958080 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orapls12.dll
2020-04-03 16:35 - 2017-03-07 22:07 - 003173376 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orashpksse4212.dll
2020-04-03 16:35 - 2017-03-07 20:49 - 000010240 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraskjcx12.dll
2020-04-03 16:37 - 2016-11-22 10:14 - 000037888 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraslax12.dll
2020-04-03 16:38 - 2016-12-17 11:15 - 000314368 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orasnls12.dll
2020-04-03 16:37 - 2017-03-07 22:23 - 000295424 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orasql12.dll
2020-04-03 16:38 - 2016-12-17 11:15 - 000112640 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraunls12.dll
2020-04-03 16:37 - 2016-11-08 11:46 - 000009728 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orauts.dll
2020-04-03 16:38 - 2017-03-07 14:30 - 000008704 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oravsn12.dll
2020-04-03 16:36 - 2016-11-22 08:18 - 000199168 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orawwg.dll
2020-04-03 16:37 - 2016-11-04 09:51 - 007989248 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraxml12.dll
2020-04-03 16:38 - 2016-11-23 22:51 - 005132800 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\orazt12.dll
2020-04-03 16:38 - 2016-11-23 22:53 - 004939264 _____ (Oracle Corporation) [File not signed] d:\app\oracle\product\12.2.0\dbhome_2\bin\oraztkg12.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\10751420.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\36089711.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\10751420.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\36089711.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\mojebanka.cz -> hxxps://etrading.mojebanka.cz

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2020-07-06 18:51 - 000000147 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> D:\app\Oracle\product\12.2.0\dbhome_2\bin;D:\app\Petr\product\12.2.0\dbhome_1\bin;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\system32\wbem;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Intel\iCLS Client;C:\Program Files\Intel\iCLS Client;C:\WINDOWS\System32\WindowsPowerShell\v1.0;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;D:\programy\calibre;D:\ati\ATI.ACE\Core-Static;C:\Program Files (x86)\AMD\ATI.ACE\Core-Static;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;D:\programy\calibre\;C:\Program Files (x86)\QuickTime\QTSystem\;C:\WINDOWS\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\dotnet\
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Petr\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\lenovowallpaper.jpg
HKU\S-1-5-21-1378127302-1103651912-2866801594-1019\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
DNS Servers: 208.67.222.222 - 208.67.220.220
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

MSCONFIG\startupreg: AceStream => C:\Users\Petr\AppData\Roaming\ACEStream\engine\ace_engine.exe
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: DAEMON Tools Lite => "D:\programy\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: Raptr => C:\Program Files (x86)\Raptr\raptrstub.exe --startup
MSCONFIG\startupreg: Steam => "D:\programy\steam\Steam.exe" -silent
HKLM\...\StartupApproved\Run: => "StartCN"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "Bonus.SSR.FR12"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "PlaysTV"
HKLM\...\StartupApproved\Run32: => "QuickTime Task"
HKLM\...\StartupApproved\Run32: => "Raptr"
HKLM\...\StartupApproved\Run32: => "vmware-tray.exe"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "OscarX7Mouse5Mode"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "iCloudServices"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "iCloudDrive"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "Toolkit"
HKU\S-1-5-21-1378127302-1103651912-2866801594-1000\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{9D273AD2-B119-4641-9D3A-BB3957F7E6AB}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{1B4C2125-F326-4283-A4CA-B44DC96F1427}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{493995FC-9A10-45E3-BBE6-A17EC767B538}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{ED8239DD-5FAD-4C40-8147-FA0828A15EC6}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C88F7E99-B73C-408E-B7A6-E82E39F6CC13}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{13FAB2C8-673C-4A83-8253-53E9E5C3EC98}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D75ACA00-6D97-479B-AA78-1A0F4D0681A5}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D041BBF8-2126-4C45-853B-0AD972B099AD}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A873F155-EE8A-4DDB-952F-533A7D5D9072}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F4327D52-292B-401A-BB7E-5F91F1B10EC0}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C8790AD1-8A9F-4625-803A-3E2961C9B2B3}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{68176118-548D-4B2D-B51F-176570ED0C77}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{6B402BBC-56A8-4686-A5F6-CCEF59939FDC}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{914581FD-C1C1-488A-9055-A7EC052366F0}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{926662A4-B6B3-4843-8C5E-494DB73EB019}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{66E28081-16D0-464C-8A5C-D2C41BD2885A}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{41CB2B48-ECBC-4C84-8360-C10609D375F5}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{2342B824-E68A-47A1-AFAF-D482F2168AE3}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{1A8EC6FC-10E0-486A-8044-23066A7D68BB}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CA0A9F31-2997-43A4-B9D6-9AE888D25A86}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{1D8546E4-9B74-461C-A5FE-A14C62702636}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{47FD5E18-B017-4C6E-BB89-AB1F0982BA4B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{05BC4E4A-9854-4F6F-8997-D10E48EA2E4A}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B8A7C324-E28A-44EF-8B16-8A6A8F2540DB}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{4F77835E-A0F6-440E-AE47-1CC204648EF3}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{1B5B8486-EDB6-4D58-B537-9C53E8CA0B68}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CD27A17B-BE90-4ABD-9E86-82094689A0CC}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{8A01CFAC-BC03-45ED-9D49-7210FD33D30C}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{2063BC94-EDE8-4578-8D8B-4CA26BD356A9}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{1F7F877E-5BFE-4207-BC36-FF01EE80257B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{30DC30E7-2358-45B7-B5F5-387A52822427}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{1EBAC70F-0ACB-4474-8B88-0D98A77EB9E9}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D74959FA-80D9-4BCA-A9C3-CF3DE912108B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D08EBB5E-B825-4C07-A8B1-5CFDDF8BF9F4}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{8A8E5978-63BE-4E7D-B1A5-FDD43954F6F8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{E2A7C011-3089-4734-BF26-54A8A9048A07}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{2E8E2059-DC2E-4DAE-A895-CEE3F2012EFE}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{78D041B9-59EE-4C5E-A132-B09A357B4E30}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D463932E-697C-4532-B2DE-4D63002D7D41}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{67F2B512-55C0-4BDE-9984-0D0169333366}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{17B5A820-19DE-43A7-B259-61C2BF089619}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{AE104427-09B8-4C4C-B4DA-3BE4F4C7D595}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FBB12B90-3B76-4C52-9B49-D2AA5FAD9284}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D1A9C147-60E0-4E26-BB65-F560C0EC34A4}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{6C06BA36-47CD-4669-AEF6-5FBD1CED98CD}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C2663027-A60D-4764-9D50-B47CBF989F30}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{EB31F20F-952C-47D6-B411-9B5012B01552}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{71DFD485-A594-4CAD-8F36-C96089656FE7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{9BE1FFA9-D79A-4919-BD2A-8A3F7F6E8E5A}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{0D967742-5964-4223-B862-31B80D1D3F00}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CE9AB8BD-4D22-4FCD-BF36-224DAA89CB5F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{5A6959A8-25A8-468C-A028-958C1EC7BCAF}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{977FD28E-EF0F-41B5-91B0-226E3435E2D5}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{BAFC50A7-BBFE-40CE-A259-BB6A026784C7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{ABFF4351-61B1-4CE3-8571-0FD1C29CDAC2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{8E66C1C4-B472-44CF-80ED-41D0C1A6F221}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{DFD0E2FB-DFC5-444A-BA74-7060EC36D68B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{8D7C0201-3227-434B-9F44-332E80E8BACD}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CB27A645-6BC1-411F-85A8-8A641E74870B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F2BF5E4E-581A-4E12-94CD-A717A1F3F9DA}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{05B424C3-9511-47DB-B7B4-8CBFB965E4DB}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{1904E795-A285-4748-BAE8-651527DD0722}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C27CB324-AE91-4B9A-93E7-18A15476DFE7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{585685F2-80BD-4F85-9AC8-7C7A04F574D3}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FC2D947D-5EBD-44AC-927F-B51F1C375DC8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F734E325-CF81-4FC8-AD8C-79B78C3764E0}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{78571A5C-3B2C-4D33-B644-EE0991EBC5CF}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F40CF036-52ED-4545-9498-85262D1D31AD}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{BFD19B3D-85C5-4A31-9D94-E0BC8B2718C9}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A079A6B6-F693-40B9-99E1-C4CA3A29E47A}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{91B795B9-7596-4D99-93B0-161066D5CF30}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{92FBBB4C-167C-44C1-94EE-0BA8C4913421}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FD8F37D8-4291-4E8D-8FD2-888B90223F2E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{EC4D093D-F606-448D-8A2E-0E9899D4BACC}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{ABC3F5DB-F143-4C9E-A10F-C10B527D9701}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{1CC698B1-DCA5-4BAF-A702-C6E210C50C60}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FD3D61E1-23C5-4C2E-BF4D-CC827FED69D8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{1A4C0D92-EB73-4B52-8257-496E2940EAE7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{29A0F0FC-7222-42D9-AB2A-5F9034E040EA}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{501A7690-3E72-4072-92FF-F9E70B060590}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{6F5A616B-6DD3-49E7-97B1-43020C8375C8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{90802FA1-F741-4C39-A470-89EA321D2F87}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A222A80E-F267-4902-9884-BDB32314303B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{ACEC03CB-3D58-4453-8374-89ABEE1896E2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{3B943C5E-D25F-4F3A-9B74-214DBC1758F8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{22B1F8DE-0ABC-4820-8964-6056E7F0EF3E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{ED06CF22-F57F-4263-92D7-9A45201C962C}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A995FE81-19DB-4756-BD0C-5707D0265675}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{85326D9B-5BD0-4D6A-BA5F-FDD38EC741E0}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{4295CF6E-6739-439E-B385-3E0A7A711EA2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{064667F9-8399-427E-A041-12371989F03D}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{9DFAA092-C195-4193-B58F-1032DFD33DD4}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{07315072-CF8E-4244-9C6F-F88846AB2B0A}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{DACFE023-06DF-43A1-A3C2-97A3C8287DFC}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B5D91E15-385D-4738-81E0-FB6441EFA20D}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D2CDB85A-4A7D-4FEE-8EA9-486448BB822D}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{949DF42A-E23D-464F-9E6A-1473DE663999}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{8328A553-7763-4A52-B1CB-925F92FA12EA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{DEC50606-9F33-4DD5-8A4C-DDCB51C2FEEC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{9A366004-9CB1-4F19-962B-41F4861D36FD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{36532A98-1CB0-41DF-8194-8579889DD09C}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FBD8C2AA-9461-4F56-977E-F00B27B86526}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CA6E412C-BD5E-455B-90D2-4256770AAC4E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{49D9CA9A-5998-4634-BEE9-6423A000217F}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{9BB0087A-5593-417F-B9A3-6299E91855E6}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{7922FEE4-2CFC-4489-8289-53CF60410474}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{A08BC1AD-0949-491F-B4EF-0835FB0E185E}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{C164A6AC-E7A6-462F-8F14-64F30D2C35EC}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{D64ABB78-DB11-4E74-B147-117D432D184B}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{4620ED39-5468-48F7-AA9B-BE5BD01D489A}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{B9D01C73-34DB-442D-9DBE-9636DE53A415}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{4A28EE07-CB92-4FE5-BC43-4C0B72F82D57}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{134470B3-A6B3-473F-9D1B-52EB377F4194}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{4995BB21-748C-41B4-AAD4-27B0733F5491}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{8132B8B3-5383-4A4F-9A8B-FA0FD54955A3}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{92F189C4-5B6A-495B-BDC6-769D0252DE87}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{8D6D12E0-4F63-42C4-8764-3A7491887A86}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{E11A1731-298B-4A3B-9BA3-0FC05B2DF7A8}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F9ACD8A9-979C-428C-9617-5B757B7E2145}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{53DD3A30-F497-4CBD-B188-3F1133137BB2}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{2D1EEE01-8587-4E91-8C7E-598B3EF0F476}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{F8AD1998-840A-41C8-94D8-6F4D4C380589}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{755A42F3-51FB-4DE0-8318-CA6D618A1158}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{29C20C06-6FD9-42E2-B0BA-19E38CC78584}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{93A477C9-55A6-4218-B17A-AA0B0C06B788}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{FBC56DDA-96AF-4E4F-98F3-C2B6870C6F64}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{09CC288C-6F24-456D-B3E8-7436F37F214A}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{CCBB32ED-9C2B-476D-98F6-64E73500BD04}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{170470C3-7DE0-44DA-B89C-67352FE226FD}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{03E9CD54-2B3B-4467-BA4E-8CB01E9EA902}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{463D5481-2E33-40D3-B343-CF5820707540}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{EB7EE7F4-BBB0-4C3B-974C-AB70306ED2A7}] => (Allow) C:\WINDOWS\System32\WScript.exe
FirewallRules: [{4F995C37-368B-4988-A2A4-157C449E1C1A}] => (Allow) C:\WINDOWS\SysWOW64\wscript.exe
FirewallRules: [{89D7C090-1F8F-41C6-AEB6-68F197AE9C83}] => (Allow) C:\WINDOWS\SysWOW64\wscript.exe
FirewallRules: [UDP Query User{C3358CBB-04E9-435D-8C80-E6942E20555F}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{D9CDC0C2-5BA3-4F8E-B9DD-BFC9B32FDB95}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{B76972DA-9BC8-4EDA-800C-3C9035C5AB2A}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{E84E6805-512E-4B7E-8076-B0E4CCDC3266}] => (Allow) D:\programy\office\Office14\GROOVE.EXE (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{299F4AC2-DA3D-4A19-97AF-6D4969B6A923}] => (Allow) D:\programy\office\Office14\GROOVE.EXE (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A7437225-715E-4114-A407-E6A8249AF3EB}] => (Allow) D:\programy\office\Office14\ONENOTE.EXE (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C6081C57-67C3-4853-9C5B-4F62D9CA88E5}] => (Allow) D:\programy\office\Office14\ONENOTE.EXE (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0E240DA9-D1D5-4061-B333-866D8BC082B8}] => (Allow) D:\programy\office\Office14\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{FFC504F1-D0C2-4D56-AF59-31EC24316237}D:\programy\paradise casino\paradisecasino\casino.exe] => (Allow) D:\programy\paradise casino\paradisecasino\casino.exe () [File not signed]
FirewallRules: [UDP Query User{D311F560-72FF-4971-8261-17B1E5D0FF60}D:\programy\paradise casino\paradisecasino\casino.exe] => (Allow) D:\programy\paradise casino\paradisecasino\casino.exe () [File not signed]
FirewallRules: [{7F755ACD-9BA4-48E8-9A6A-721DA0919DEB}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{6A240BE3-2A63-4426-9D6B-F625CC6C377D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{3D6383AA-A9FD-4409-9780-8A418C9969DD}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{899300F3-2F28-42E0-9823-8DC75458C88D}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [TCP Query User{81958F7D-6D91-4AAB-AC95-FA115FCF5600}D:\programy\paradise casino\paradisecasino\casino.exe] => (Allow) D:\programy\paradise casino\paradisecasino\casino.exe () [File not signed]
FirewallRules: [UDP Query User{A23ADB47-8EB9-4C79-9718-3C4889A9B5E8}D:\programy\paradise casino\paradisecasino\casino.exe] => (Allow) D:\programy\paradise casino\paradisecasino\casino.exe () [File not signed]
FirewallRules: [TCP Query User{C2B448BC-C095-4D24-BBFC-B27713D68F28}D:\users\petr\downloads\odorik.exe] => (Allow) D:\users\petr\downloads\odorik.exe (Odorik.cz) [File not signed]
FirewallRules: [UDP Query User{CF013533-BA7B-456F-99BF-CD80791D0C58}D:\users\petr\downloads\odorik.exe] => (Allow) D:\users\petr\downloads\odorik.exe (Odorik.cz) [File not signed]
FirewallRules: [TCP Query User{1721592C-D2C3-4CEB-B0BE-C65F891FEB33}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{E55EF42C-8BB9-46DC-B224-91238C96C0B9}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{05E8A83D-A6E4-4094-927B-AA38518E6BC2}D:\users\petr\downloads\odorik(1).exe] => (Allow) D:\users\petr\downloads\odorik(1).exe (Odorik.cz) [File not signed]
FirewallRules: [UDP Query User{3BA76610-0E53-410A-9F44-A642E0BA2633}D:\users\petr\downloads\odorik(1).exe] => (Allow) D:\users\petr\downloads\odorik(1).exe (Odorik.cz) [File not signed]
FirewallRules: [{83653658-D3C4-41B1-B471-FADDB61B573B}] => (Allow) C:\Program Files\HP\HP Photosmart 5510d series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{0B5E2C7C-151A-4C9B-8640-F45DF6134686}] => (Allow) C:\Program Files\HP\HP Photosmart 5510d series\Bin\HPNetworkCommunicator.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{9E16F91B-A04A-41A5-B825-51EF87320F5A}] => (Allow) C:\Program Files\HP\HP Photosmart 5510d series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{F7279455-FF5C-415C-944F-E717CEB2A571}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{9C56046F-9038-4E03-90B9-D989C26CA2C5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{78CBD24C-93A2-49C8-8A2E-F83A100E699C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{82B256DD-0EA3-4DE4-868A-32DF796A6DD6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{0071DEA1-561A-4304-90D7-33674CAFCC1D}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:118.24 GB) (Free:50.93 GB) (43%)

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (07/16/2020 04:18:01 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (3592,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/16/2020 04:10:16 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7788,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/16/2020 04:03:10 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6636,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/16/2020 03:56:09 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny RegOpenKeyExW(-2147483646,SYSTEM\CurrentControlSet\Services\VSS\Diag,...) došlo k neočekávané chybě. hr= 0x80070005, Access is denied.
.


Operation:
   Initializing Writer

Context:
   Writer Class Id: {26d02976-b909-43ad-af7e-62a4f625e372}
   Writer Name: Oracle VSS Writer - PETRBASE
   Writer Instance Name: PETRBASE
   Writer Instance ID: {df8b24ba-d0fc-4602-a73b-d3ef72b8992d}

Error: (07/16/2020 03:47:26 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2392,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/16/2020 02:36:51 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (10356,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/16/2020 02:10:56 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6816,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/16/2020 01:20:46 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (11132,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).


System errors:
=============
Error: (07/16/2020 03:55:55 PM) (Source: volmgr) (EventID: 46) (User: )
Description: Inicializace výpisu stavu systému se nezdařila.

Error: (07/16/2020 03:55:17 PM) (Source: DCOM) (EventID: 10010) (User: Petr-PC)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/16/2020 03:55:17 PM) (Source: DCOM) (EventID: 10010) (User: Petr-PC)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/16/2020 03:52:53 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Disc Soft Lite Bus Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/16/2020 03:52:53 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Management and Security Application User Notification Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/16/2020 03:52:53 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Intel(R) Management and Security Application Local Management Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 10000 milisekund: Restart the service.

Error: (07/16/2020 03:52:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Media Player Network Sharing Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restart the service.

Error: (07/16/2020 03:52:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Net.Msmq Listener Adapter byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restart the service.


CodeIntegrity:
===================================

Date: 2020-07-16 15:59:11.679
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-16 15:59:11.671
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-16 15:59:11.663
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-16 15:59:11.654
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-16 15:59:11.645
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-16 15:59:11.637
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-16 15:59:11.628
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-07-16 15:59:11.616
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Norton Security\Engine\22.20.4.57\symamsi.dll that did not meet the Microsoft signing level requirements.

==================== Memory info =========================== 

BIOS: American Megatrends Inc. 0501 09/28/2012
Motherboard: ASUSTeK COMPUTER INC. P8Z77-V LX2
Processor: Intel(R) Core(TM) i5-3570K CPU @ 3.40GHz
Percentage of memory in use: 59%
Total physical RAM: 16336.44 MB
Available physical RAM: 6568.16 MB
Total Virtual: 16336.44 MB
Available Virtual: 4500.48 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:118.24 GB) (Free:50.93 GB) NTFS
Drive d: () (Fixed) (Total:931.51 GB) (Free:236.45 GB) NTFS

\\?\Volume{51991546-62f6-11e2-9ae3-806e6f6e6963}\ (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS
\\?\Volume{e1e29c8c-0000-0000-0000-70951d000000}\ () (Fixed) (Total:0.91 GB) (Free:0.42 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: E1E29CF1)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 119.2 GB) (Disk ID: E1E29C8C)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=118.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=928 MB) - (Type=27)

==================== End of Addition.txt =======================