﻿Additional scan result of Farbar Recovery Scan Tool (x86) Version:08-10-2015
Ran by krtkopower (2015-10-09 21:06:10)
Running from C:\Users\krtkopower\Desktop
Microsoft Windows 7 Enterprise  Service Pack 1 (X86) (2014-12-24 19:11:01)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1404250380-4153645060-118619260-500 - Administrator - Disabled)
Guest (S-1-5-21-1404250380-4153645060-118619260-501 - Limited - Enabled) => C:\Users\Guest
HomeGroupUser$ (S-1-5-21-1404250380-4153645060-118619260-1002 - Limited - Enabled)
krtkopower (S-1-5-21-1404250380-4153645060-118619260-1001 - Administrator - Enabled) => C:\Users\krtkopower

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Panda Free Antivirus (Disabled - Up to date) {AAF74A68-8713-CDF1-004F-30003398BE9E}
AV: Ad-Aware Antivirus (Disabled - Out of date) {B0CC18C6-E527-6EE6-874C-9D19920E5619}
AS: Panda Free Antivirus (Disabled - Up to date) {1196AB8C-A129-C27F-3AFF-0B72481FF423}
AS: Ad-Aware Antivirus (Disabled - Out of date) {0BADF922-C31D-6168-BDFC-A66BE9891CA4}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Ad-Aware Firewall (Disabled) {88F799E3-AF48-6FBE-AC13-342C6CDD1162}
FW: Panda Firewall (Disabled) {92CCCB4D-CD7C-CCA9-2B10-9935CD4BF9E5}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-1404250380-4153645060-118619260-1001\...\uTorrent) (Version: 3.4.5.41202 - BitTorrent Inc.)
3PigsCasino.sk (HKLM\...\{C9BC7A02-0691-4267-B98D-89DAF0790E30}) (Version: 1.0.0 - 3PigsCasino.sk)
Ad-Aware Antivirus (HKLM\...\{FC9BDF23-3AF3-4F4B-B549-E7D5259736F1}_AdAwareUpdater) (Version: 11.8.586.8535 - Lavasoft)
AdAwareInstaller (Version: 11.8.586.8535 - Lavasoft) Hidden
AdAwareUpdater (Version: 11.8.586.8535 - Lavasoft) Hidden
Adobe Flash Player 19 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 19.0.0.185 - Adobe Systems Incorporated)
Adobe Flash Player 19 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 19.0.0.185 - Adobe Systems Incorporated)
Adobe Photoshop CS2 (HKLM\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0409-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.)
AntimalwareEngine (Version: 3.0.98.0 - Lavasoft) Hidden
Apple Application Support (HKLM\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Audacity 2.1.0 (HKLM\...\Audacity_is1) (Version: 2.1.0 - Audacity Team)
CCleaner (HKLM\...\CCleaner) (Version: 5.07 - Piriform)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
Free Audio Editor 2015 9.2.6 (HKLM\...\Free Audio Editor 2015_is1) (Version:  - FAE Distribution, Inc.)
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
GoldWave v5.69 (HKLM\...\GoldWave v5.69) (Version: 5.69 - GoldWave Inc.)
Google Chrome (HKLM\...\Google Chrome) (Version: 45.0.2454.101 - Spoločnosť Google Inc.)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.28.15 - Google Inc.) Hidden
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation)
Intel(R) TV Wizard (HKLM\...\TVWiz) (Version:  - Intel Corporation)
Java 8 Update 45 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
LockHunter 3.1, 32/64 bit (HKLM\...\LockHunter_is1) (Version:  - Crystal Rich Ltd)
MAGIX Music Maker Silver (Version: 17.0.2.10 - MAGIX AG) Hidden
Malwarebytes Anti-Malware verzia 2.1.8.1057 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office FrontPage 2003 (HKLM\...\{90170405-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Text-to-Speech Engine 4.0 (English) (HKLM\...\MSTTS) (Version:  - )
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML4 Parser (HKLM\...\{01501EBA-EC35-4F9F-8889-3BE346E5DA13}) (Version: 1.0.0 - Microsoft Game Studios)
paint.net (HKLM\...\{19BD2C33-16A8-4ED1-B9EA-D9E35B21EC41}) (Version: 4.0.5 - dotPDN LLC)
Panda Devices Agent (Version: 1.03.05 - Panda Security) Hidden
Panda Devices Agent (Version: 1.06.00 - Panda Security) Hidden
Panda Free Antivirus (HKLM\...\Panda Universal Agent Endpoint) (Version: 16.00.01.0000 - Panda Security)
Panda Free Antivirus (Version: 8.03.00.0000 - Panda Security) Hidden
Panda Security Toolbar (HKLM\...\pandasecuritytb) (Version: 4.3.0.4 - Panda Security)
Pivot Animator version 4.1.10 (HKLM\...\Pivot Animator_is1) (Version: 4.1.10 - Motus Software Ltd)
Pixie 1.4.1 (HKLM\...\Pixie_is1) (Version: 1.4.1 - Pixie Developers)
PlayMillion (HKLM\...\PlayMillion) (Version:  - )
Preset Manager 2.0 (HKLM\...\{FCFE3F81-C977-4D31-877B-2778BB2A02DE}) (Version: 2.0.114 - Sony)
QuickTime 7 (HKLM\...\{627FFC10-CE0A-497F-BA2B-208CAC638010}) (Version: 7.77.80.95 - Apple Inc.)
Rise of Nations (HKLM\...\RiseOfNationsExpansion 1.0) (Version: 1.0 - Microsoft)
Total Video Player 1.0 (HKLM\...\Total Video Player_is1) (Version:  - EffectMatrix Inc.)
TurboCAD Professional 15 (HKLM\...\{1E0967E1-79BC-41DD-BA97-F303F49812AE}) (Version: 15.1 - IMSIDesign)
Vegas Pro 11.0 (HKLM\...\{E6F012B0-E930-11E0-A67A-F04DA23A5C58}) (Version: 11.0.370 - Sony)
VideoPad Video Editor (HKLM\...\VideoPad) (Version: 3.60 - NCH Software)
VirtualDJ 8 (HKLM\...\{9ADBBA93-4625-4898-BB0D-BCE7EA9F8B4A}) (Version: 8.0.0 - Atomix Productions)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
WavePad Sound Editor (HKLM\...\WavePad) (Version: 6.21 - NCH Software)
Winamp (HKLM\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
WinRAR 5.11 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{016D58C4-CF57-48A8-89CB-B8D9537DA2CC}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\FoundationPlan.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{03457507-D762-4025-8284-E9D3C8DBBD12}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Ties\SectionToPathTie.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{06221C84-52D5-4A4E-A337-2BF8951D4B59}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\Fillet3D.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{0B91E172-6025-4EBD-A0A2-34552C05F100}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\TextBox.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{0D818D11-C218-4799-AE9D-FCD1811B978A}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\OffsetPolyline.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{0FE45ABF-23AB-4E58-972C-E9F792B57510}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\BoltNut.dll (IMSI)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{12AB86CA-5AD4-4012-A420-BEB83040EE86}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\Bolt3D.dll (IMSI)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{14F2A484-4F52-4DB5-9EC4-E97E92131E58}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\Nut3D.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{15544F60-D775-4962-BEB4-E580346B1591}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Ties\ScetchTie.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{1CC3991A-01EF-4337-AA69-2818FFA4C869}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\DatumRef.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{2017F29F-68F4-11D5-B9BF-00C0DF0625A5}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\SpiralTool.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{2C10CA50-05D0-11D2-8697-0000B46B691D}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Ties\ObjectTie.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{2C6D5BE5-4817-41C9-B28E-77CB857919D1}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Ties\Fillet3D_Tie.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{2F015029-FB7C-11D1-B8AC-000021452DB6}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\InsSmObj.dll ()
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{443E0383-3F0F-4ABF-93B8-885915F56C6F}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\JointPolyline.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{45232FA2-65A2-11D2-8C4A-00403338C504}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\RRectA.dll ()
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{45FF4D1B-FA99-4619-B79C-7E8B01C47091}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\WindowHouse.dll (IMSI)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{49E39851-1FC0-11D2-8698-0000B46B691D}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Ties\SmartHatch.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{4A5C2474-D597-48D4-A14A-3A13BC663BB9}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\DatumTarget.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{5153A083-1A0E-4146-8DBB-50982700BF7E}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\ScheduleIntoBlock.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{554EDBD6-7585-40C5-9713-180E76DAC4FC}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\TCImage.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{5B60CCED-F564-43BA-802B-01183FAA0A84}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\TCImageTool.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{5B7F3A0E-FD2D-40CF-A194-2CB0CF85ABCD}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\CoordText.dll (IMSI)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{5D78E976-118B-459E-B561-28A44C6189BA}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\Conn.dll (IMSI)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{607CAF95-75AC-4C59-9E18-574DC62DB509}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\Fillet3D_Tool.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{642011BD-CFB0-4927-9C00-70BADAA0B5B4}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\TCToler.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A3413AC-9743-42AF-A502-CC3ADCEC9A92}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\Cable.dll (IMSI)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A3A61A2-D373-4B31-8164-263601C79016}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\TCRougness.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A481001-E531-11CF-A115-00A024158DAF}\localserver32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Tcw15.exe (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A481002-E531-11CF-A115-00A024158DAF}\localserver32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Tcw15.exe (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A481003-E531-11CF-A115-00A024158DAF}\localserver32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Tcw15.exe (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A481004-E531-11CF-A115-00A024158DAF}\localserver32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Tcw15.exe (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A481005-E531-11CF-A115-00A024158DAF}\localserver32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Tcw15.exe (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A481100-E531-11CF-A115-00A024158DAF}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\ImsigxPS15.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A481801-E531-11CF-A115-00A024158DAF}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\IMSIGX15.dll (IMSI/Design LLC.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A481802-E531-11CF-A115-00A024158DAF}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\IMSIGX15.dll (IMSI/Design LLC.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A481803-E531-11CF-A115-00A024158DAF}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\IMSIGX15.dll (IMSI/Design LLC.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A481804-E531-11CF-A115-00A024158DAF}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\IMSIGX15.dll (IMSI/Design LLC.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A481805-E531-11CF-A115-00A024158DAF}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\IMSIGX15.dll (IMSI/Design LLC.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A482001-E531-11CF-A115-00A024158DAF}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\gxext15.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A482002-E531-11CF-A115-00A024158DAF}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\gxext15.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6A482003-E531-11CF-A115-00A024158DAF}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\gxext15.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{6E1099B5-A2D4-11D5-BA2B-00C0DF0625A5}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\RevisionCloud.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{71CA2F31-B56D-4CAC-BA97-EDB14712A14A}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\InsertExternalSymbol.dll ()
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{71E21C97-83FB-4242-8997-A52627FFEFF9}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\TCWeldSm.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{75F17666-0783-4450-A649-2B434C1EBB34}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\PickInside.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{7657D07B-63D1-480B-B9E5-839E458E659E}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Ties\DimensionTie.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{7724BB36-B671-11D0-9B3B-444553540000}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\Rrect.dll ()
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{7724BB46-B671-11D0-9B3B-444553540000}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\MfcSplin.dll ()
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{784DEF17-17F1-4335-8B3C-7E4C2D2DF6A2}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\texture.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{8188189D-6F33-48f2-B54B-936205216521}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Ties\DCMMarkTie.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{869A07B5-AA8A-4504-B701-754FBAECC26D}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\MarkerHouse.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{89E2E072-2AF3-414A-B2C5-CD75CB6B44DD}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\ToolTextAlong.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{8FBFFBB2-64D0-4318-BD07-561CC8EE2084}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\AutoDimHouse.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{90E611F0-DE07-11D2-ABC3-0000B46B691D}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Ties\ViewportTie.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{92454481-8DB8-4C5D-9F8F-1897A30E49C6}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\Nut.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{99D040C9-BC79-44E2-BEC1-DE3636FA0320}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\ChainPolyline.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{ABEE7F9B-1215-4878-8F01-F0BAF4F211F7}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\Pipe_Tool.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{BF0BBC85-A311-11D3-A82D-00C0DF246524}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\TcTools\PalTool.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{C1F35EEC-4BD8-4C2C-8BCF-6066EA37B6C3}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\PlaneParameters.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{C347BEE4-90D9-4641-A5BC-8B8982846576}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\SectOnPathTool.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{C47C48C1-0F15-41BA-AE68-23AB59A005F9}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\Welding.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{C5AA19CF-2F1A-42A3-886F-682FDAEF585A}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\Hole.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{C9ACD2AA-AB9F-40DE-AFBE-1350D6BCB291}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\TCTrnTools.dll ()
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{CA182404-11E8-4796-B378-C105225C2931}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\TextAlong.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{CD092BC1-5EC8-4AC9-9F2C-DAAE1FA85B4A}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Ties\CurveTextTie.dll (IMSI)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{D4BEEB62-37D5-4FD3-8EAB-5B972F37EFB3}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\Thread3D.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{D732323E-7207-465d-9924-BCBAFE352435}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Ties\CompoundProfileTie.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{D8ADC55B-2CF1-45BC-8426-2685E150E89B}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\Roundrect.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{E5151088-1C1D-47B9-887A-FCFEA8700C95}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\TCmark.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{E830E884-1B3D-11D4-9BEE-00C0DF246524}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\TcTools\FPBridgeTool.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{E830E887-1B3D-11D4-9BEE-00C0DF246524}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\TcTools\FPBridgeTool.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{E89833D1-0A9B-4EA2-B8E6-372353FFC763}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\GearContour.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{EC2CD23E-C474-476B-AA44-7C4C0D023D97}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\Gear.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{F335199D-8E62-42E3-9F40-8A2459EA5576}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\Screw.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{F5125F6F-A84D-4830-AD78-A13E03B64185}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\BPMngr.dll (IMSI/Design, LLC)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{F6B5662B-3540-4923-937A-3BC8D9CAE568}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\doorhouse.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{F6F41304-02C7-43B1-99DE-FDC3DBFA3C56}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Regens\NorthDirection.dll (International Microcomputer Software, Inc.)
CustomCLSID: HKU\S-1-5-21-1404250380-4153645060-118619260-1001_Classes\CLSID\{F792E5D4-834F-4BE5-9BA1-7397781858D2}\InprocServer32 -> C:\Program Files\IMSIDesign\TCWP15\Program\Draggers\TCFile.dll (International Microcomputer Software, Inc.)

==================== Restore Points =========================

03-10-2015 01:18:09 Installed HipHop 6
03-10-2015 01:28:31 Inštalácia balíka ovládačov zariadenia: DT Soft Ltd Systémové zariadenia
03-10-2015 01:54:17 Removed HipHop 6
03-10-2015 04:57:52 Removed GEAR driver installer.
03-10-2015 05:01:41 Installed DirectX
03-10-2015 05:12:45 Nainstalováno: Microsoft Office FrontPage 2003
07-10-2015 00:09:28 Installed Adobe Photoshop CS2
07-10-2015 01:15:53 Removed Vegas Pro 10.0
07-10-2015 01:34:29 Removed Vegas Pro 10.0
07-10-2015 02:41:05 Installed 3PigsCasino.sk
07-10-2015 03:09:32 Windows Update
07-10-2015 03:40:09 Removed HipHop 6
07-10-2015 03:49:55 AA11
07-10-2015 04:26:10 Windows Update
07-10-2015 06:24:20 Windows Update
07-10-2015 07:25:24 AA11
07-10-2015 07:25:51 Removed Apple Application Support
07-10-2015 07:27:29 Removed Firebird SQL Server - MAGIX Edition
07-10-2015 07:28:34 Removed HipHop 6
07-10-2015 07:34:41 Removed AVG 2012
07-10-2015 07:37:01 Removed AVG 2012
07-10-2015 07:54:33 AA11
07-10-2015 12:36:14 Windows Update
08-10-2015 20:08:08 Windows Update
09-10-2015 19:24:36 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {314E15BD-07C0-4857-A937-048C6AA2E811} - System32\Tasks\Norton Security Scan for krtkopower => C:\PROGRA~1\NORTON~2\Engine\410~1.28\Nss.exe
Task: {3ECDE9C7-C8F3-40E2-97EC-5A974031FACB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-10-07] (Google Inc.)
Task: {ADE4FD4E-D87B-4F45-A87B-17C913BF1974} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-06-01] (Piriform Ltd)
Task: {CF099B61-CF6E-44BA-88B0-CFEFC9BF31E7} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser
Task: {DFC647B3-FB52-47CC-ABB3-F6DDF2926D3E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-09-22] (Adobe Systems Incorporated)
Task: {E7C27117-26C7-4642-A7CC-09D684D28AA1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-10-07] (Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Norton Security Scan for krtkopower.job => C:\PROGRA~1\NORTON~2\Engine\410~1.28\Nss.exe

==================== Loaded Modules (Whitelisted) ==============

2015-08-27 15:54 - 2015-08-27 15:54 - 00659872 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareService.exe
2015-08-27 15:56 - 2015-08-27 15:56 - 00023296 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_system-vc120-mt-1_57.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00047368 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_date_time-vc120-mt-1_57.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00108808 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_filesystem-vc120-mt-1_57.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 10273528 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareServiceKernel.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 02372816 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\RCF.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00634624 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_regex-vc120-mt-1_57.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00089344 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_thread-vc120-mt-1_57.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00032000 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_chrono-vc120-mt-1_57.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00567024 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareActivation.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00375040 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareApplicationUpdater.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00679664 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareGamingMode.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00084712 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareReset.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00102624 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareTime.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00807680 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareDefinitionsUpdater.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00729872 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareDefinitionsUpdaterScheduler.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00897264 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareIgnoreList.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00205552 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareQuarantine.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00842496 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareAntiMalwareEngine.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00169728 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareAntiRootkitEngine.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00902392 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareScannerHistory.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01082088 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareScanner.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00032512 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_timer-vc120-mt-1_57.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00811256 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareScannerScheduler.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00940288 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareRealTimeProtection.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00199416 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareIncompatibles.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00754920 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareAntiSpam.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00713456 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareAntiPhishing.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 02519288 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareParentalControl.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 02701048 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareWebProtection.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01044728 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareEmailProtection.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00048392 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_iostreams-vc120-mt-1_57.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01032960 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareNetworkProtection.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00810728 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwarePromo.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00297704 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareFeedback.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 02280192 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareThreatWorkAlliance.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01017576 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwarePinCode.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00810728 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareNotice.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00815344 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareAvcEngine.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00955664 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareRealTimeProtectionHistory.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00377072 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareStatistics.dll
2013-04-12 19:23 - 2013-04-12 19:23 - 00612664 _____ () C:\Program Files\Panda Security\Panda Security Protection\SQLite3.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 07992032 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareTray.exe
2015-08-27 15:56 - 2015-08-27 15:56 - 00386816 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\boost_locale-vc120-mt-1_57.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 01731304 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\HtmlFramework.dll
2015-08-27 15:56 - 2015-08-27 15:56 - 00867576 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.8.586.8535\AdAwareTrayDefaultSkin.dll
2015-06-01 19:28 - 2015-06-01 19:28 - 00053248 _____ () C:\Program Files\CCleaner\lang\lang-1051.dll
2015-10-07 07:57 - 2015-09-24 04:34 - 01501512 _____ () C:\Program Files\Google\Chrome\Application\45.0.2454.101\libglesv2.dll
2015-10-07 07:57 - 2015-09-24 04:34 - 00081224 _____ () C:\Program Files\Google\Chrome\Application\45.0.2454.101\libegl.dll
2015-08-27 16:36 - 2015-08-27 16:36 - 00115224 _____ () C:\Program Files\pandasecuritytb\pandasecurityDx.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service"

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-1404250380-4153645060-118619260-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-1404250380-4153645060-118619260-1001\...\webcompanion.com -> hxxp://webcompanion.com


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1404250380-4153645060-118619260-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\krtkopower\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupfolder: C:^Users^krtkopower^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Gamma.lnk => C:\Windows\pss\Adobe Gamma.lnk.Startup
MSCONFIG\startupreg: GoogleChromeAutoLaunch_8A90C09CF066923F25429FFA3180B2FD => "C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe" --no-startup-window
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [TCP Query User{2F102B84-60DB-4791-9E60-62BF91451FD9}C:\users\krtkopower\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\krtkopower\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{32819B6D-2BEC-402C-8518-878BE9CC5227}C:\users\krtkopower\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\krtkopower\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{0C00E470-C1F3-4A15-98FB-B846650F7594}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{D16B3204-253F-4646-B57E-795D92D605E7}] => (Allow) C:\Program Files\Microsoft Games\Rise of Nations\thrones.exe
FirewallRules: [{7FD4B2AB-33DE-48CA-B59E-5DF25AE97005}] => (Allow) C:\Program Files\Microsoft Games\Rise of Nations\thrones.exe
FirewallRules: [{144C1F5C-E65B-4EBC-9D4E-4959CAF8BB09}] => (Allow) C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [{62628AB8-E67C-49A3-B1FC-F1A1E5C973A1}] => (Allow) C:\Program Files\Winamp\winamp.exe
FirewallRules: [{182585EF-6EB7-4E90-BF08-BF74BCF2A9D8}] => (Allow) C:\Program Files\Winamp\winamp.exe
FirewallRules: [{CEE50B52-BAA0-4BD1-8DB9-6B720C2B68F7}] => (Allow) C:\Program Files\pandasecuritytb\dtuser.exe
FirewallRules: [{B6DA2055-8E11-418F-B979-E44B150BACC6}] => (Allow) C:\Program Files\pandasecuritytb\dtuser.exe
FirewallRules: [{484501A7-4F70-45C1-9B26-533829BFFA5D}] => (Allow) C:\Program Files\pandasecuritytb\ToolbarCleaner.exe
FirewallRules: [{EA4D2ADF-898F-4014-BEE3-EE47F9344115}] => (Allow) C:\Program Files\pandasecuritytb\ToolbarCleaner.exe
FirewallRules: [{95707747-32DB-42EE-81E8-FF8EE8AC76A6}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Faulty Device Manager Devices =============

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: Periférne zariadenie Bluetooth
Description: Periférne zariadenie Bluetooth
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Periférne zariadenie Bluetooth
Description: Periférne zariadenie Bluetooth
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Periférne zariadenie Bluetooth
Description: Periférne zariadenie Bluetooth
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (10/08/2015 07:58:01 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (10/08/2015 07:58:01 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (10/07/2015 11:32:57 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: UIAutomationClient, Version=3.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35 . Error code = 0x80070020

Error: (10/07/2015 11:32:55 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: UIAutomationClient, Version=3.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil . Error code = 0x80070020

Error: (10/07/2015 11:32:42 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: System.Web.Entity, Version=3.5.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x80070020

Error: (10/07/2015 11:32:40 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: System.Web.Entity, Version=3.5.0.0, Culture=Neutral, PublicKeyToken=b77a5c561934e089, processorArchitecture=msil . Error code = 0x80070020

Error: (10/07/2015 11:31:42 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: UIAutomationClient, Version=3.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35 . Error code = 0x80070020

Error: (10/07/2015 11:31:39 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: UIAutomationClient, Version=3.0.0.0, Culture=neutral, PublicKeyToken=31bf3856ad364e35 . Error code = 0x80070020

Error: (10/07/2015 11:31:10 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: Microsoft.GroupPolicy.AdmTmplEditor, Version=6.1.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=x86 . Error code = 0x80070020

Error: (10/07/2015 07:33:37 AM) (Source: MsiInstaller) (EventID: 10005) (User: krtkopower-PC)
Description: Produkt: Panda Free Antivirus -- Prístup je odmietnutý.


System errors:
=============
Error: (10/09/2015 08:26:16 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Nasledujúce ovládače pre spustenie zavedenia alebo spustenie systému zlyhali pri načítaní: 
ASPI32

Error: (10/09/2015 07:27:52 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba 0x80070643: Program Internet Explorer 11 pre systém Windows 7.

Error: (10/09/2015 01:19:45 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Nasledujúce ovládače pre spustenie zavedenia alebo spustenie systému zlyhali pri načítaní: 
ASPI32

Error: (10/09/2015 01:19:36 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Počas čakania na odpoveď transakcie od služby iphlpsvc bol dosiahnutý časový limit (30000 ms).

Error: (10/09/2015 01:04:43 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Nasledujúce ovládače pre spustenie zavedenia alebo spustenie systému zlyhali pri načítaní: 
ASPI32

Error: (10/08/2015 08:10:47 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba 0x80070643: Program Internet Explorer 11 pre systém Windows 7.

Error: (10/08/2015 04:09:12 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Nasledujúce ovládače pre spustenie zavedenia alebo spustenie systému zlyhali pri načítaní: 
ASPI32

Error: (10/07/2015 12:38:53 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba 0x80070643: Program Internet Explorer 11 pre systém Windows 7.

Error: (10/07/2015 06:57:39 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba IE Search Set sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 60000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (10/07/2015 06:57:36 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Nasledujúce ovládače pre spustenie zavedenia alebo spustenie systému zlyhali pri načítaní: 
ASPI32


==================== Memory info =========================== 

Processor: Intel(R) Core(TM)2 Duo CPU T7250 @ 2.00GHz
Percentage of memory in use: 49%
Total physical RAM: 3573.97 MB
Available physical RAM: 1817.34 MB
Total Virtual: 7146.25 MB
Available Virtual: 5111.27 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:931.41 GB) (Free:632.38 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 47FCEA9C)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================