﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version:04-10-2015
Ran by Jožin (2017-01-15 10:16:52)
Running from C:\Users\Jožin\Downloads
Windows 10 Pro (X64) (2016-01-31 15:37:52)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3695787775-2199685802-2270573759-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3695787775-2199685802-2270573759-503 - Limited - Disabled)
Guest (S-1-5-21-3695787775-2199685802-2270573759-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3695787775-2199685802-2270573759-1004 - Limited - Enabled)
Jožin (S-1-5-21-3695787775-2199685802-2270573759-1001 - Administrator - Enabled) => C:\Users\Jožin

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

A309 DeviceStage 1.0.0.1 (HKLM-x32\...\A309 DeviceStage) (Version: 1.0.0.1 - AVerMedia TECHNOLOGIES, Inc.)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.023.20053 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 2.2.1.260 - Adobe Systems Incorporated)
Adobe Extension Manager CC (HKLM-x32\...\{244FD30F-63F1-49B9-9D98-1150FF4FFCB1}) (Version: 7.3.2 - Adobe Systems Incorporated)
Adobe Flash Player 10 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 10.0.42.34 - Adobe Systems Incorporated)
Adobe Photoshop CC (HKLM-x32\...\{2D99B50E-431D-4AA8-85C1-172A6F8BCF09}) (Version: 14.0 - Adobe Systems Incorporated)
Adobe SVG Viewer 3.0 (HKLM-x32\...\Adobe SVG Viewer) (Version:  3.0 - Adobe Systems, Inc.)
Advertising Center (x32 Version: 0.0.0.1 - Nero AG) Hidden
Aktualizace NVIDIA 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) Hidden
AKVIS Coloriage (HKLM-x32\...\{4833435D-7A4D-4D15-86F4-51C2D15549CF}) (Version: 9.0.1044.9177 - AKVIS)
Apple Mobile Device Support (HKLM\...\{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}) (Version: 10.0.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Audiveris (HKU\S-1-5-21-3695787775-2199685802-2270573759-1001\...\Audiveris) (Version:  - Audiveris Ltd.)
AVerMedia A309 (MiniCard, DVB-T) 1.0.64.61 (HKLM-x32\...\AVerMedia A309 (MiniCard, DVB-T)) (Version: 1.0.64.61 - AVerMedia TECHNOLOGIES, Inc.)
AVerTV (HKLM-x32\...\InstallShield_{E28B1E6F-E0AA-4228-AB89-DB4A0C89D426}) (Version: 6.0.18 - AVerMedia Technologies, Inc.)
AVerTV (x32 Version: 6.0.18 - AVerMedia Technologies, Inc.) Hidden
Avid License Control (HKLM-x32\...\{F187D064-F101-4E95-8D05-4027809AA0F8}) (Version: 3.0.1 - Avid Technology, Inc.)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.24.146 - Avira Operations GmbH & Co. KG)
Avira Connect (HKLM-x32\...\{707e8edf-9482-4417-ae39-c9b5fe605e87}) (Version: 1.2.76.27124 - Avira Operations GmbH & Co. KG)
Avira Connect (x32 Version: 1.2.76.27124 - Avira Operations GmbH & Co. KG) Hidden
Balíček ovladače systému Windows - ENE (enecir) HIDClass  (09/04/2008 2.6.0.0) (HKLM\...\07B260955637F1FF7587ED2AA87459040DD09BF7) (Version: 09/04/2008 2.6.0.0 - ENE)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 3.02 - Piriform)
Citace PRO (HKLM\...\{740C92F3-D2B8-4863-9F0A-000D1FAC9146}) (Version: 3.1.0 - Citace.com)
CyberLink PowerDVD 13 (HKLM-x32\...\InstallShield_{3CFDF154-7E60-4E98-A8DF-C693A4F8E6B6}) (Version: 13.0.3105.58 - CyberLink Corp.)
Degoo (HKLM-x32\...\{B9F05C94-80E4-436D-B880-FF61D9AA2ABB}) (Version: 1.0.1975 - Degoo Backup AB)
DigitalPersona Personal 4.11 (HKLM\...\{F74D69E5-ECFD-45D1-A87A-341208ADD7CC}) (Version: 4.11.3826 - DigitalPersona, Inc.)
Dokan Library 0.5.3 (HKLM-x32\...\DokanLibrary) (Version:  - )
DolbyFiles (x32 Version: 2.0 - Nero AG) Hidden
eFOTO_AlbumMaker (HKLM-x32\...\eFotokniha_eFOTO_AlbumMaker) (Version:  - )
FormatFactory 3.1.1 (HKLM-x32\...\FormatFactory) (Version: 3.1.1 - Free Time)
Google Earth Plug-in (HKLM-x32\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google)
Google Chrome (HKU\S-1-5-21-3695787775-2199685802-2270573759-1001\...\Google Chrome) (Version: 55.0.2883.87 - Google Inc.)
Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden
GPL Ghostscript (HKLM-x32\...\GPL Ghostscript 9.07) (Version: 9.07 - Artifex Software Inc.)
Guild Wars 2 (HKLM\...\Guild Wars 2) (Version:  - NCsoft Corporation, Ltd.)
HP 3D DriveGuard (HKLM\...\{33DBA3CA-4E9D-4087-9911-359E45263D92}) (Version: 4.0.3.1 - Hewlett-Packard)
HP MediaSmart Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.1.2521 - Hewlett-Packard)
HP Support Solutions Framework (HKLM-x32\...\{579A990C-3855-4838-AF23-354CE2264BC0}) (Version: 12.5.32.203 - HP)
IBM SPSS Statistics 20 (HKLM\...\{2AF8017B-E503-408F-AACE-8A335452CAD2}) (Version: 20.0.0.0 - IBM Corp)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6225.0 - IDT)
ImagXpress (x32 Version: 7.0.74.0 - Nero AG) Hidden
Intel(R) Driver Update Utility 2.6 (x32 Version: 2.6.0.32 - Intel) Hidden
Intel® Driver Update Utility (HKLM-x32\...\{3e714701-b89c-4cf2-bf3b-41b2c105ffdc}) (Version: 2.6.0.32 - Intel)
ioCentre (HKLM-x32\...\{A2B4621B-CEB9-4E44-95FD-3500D4DB3727}) (Version: 1.02.000 - KYE)
iTunes (HKLM\...\{554C62C7-E6BB-40F1-892B-F0AE02D3C135}) (Version: 12.5.3.17 - Apple Inc.)
JabRef 3.2 (HKLM\...\0034-7691-1464-4754) (Version: 3.2 - JabRef Community)
Java 8 Update 77 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218077F0}) (Version: 8.0.770.3 - Oracle Corporation)
JMicron JMB38X Flash Media Controller (HKLM-x32\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.00.18.07 - JMicron Technology Corp.)
KONICA MINOLTA PagePro 1350W (HKLM\...\KONICA MINOLTA PagePro 1350W) (Version:  - )
Menu Templates - Starter Kit (x32 Version: 9.0.4.0 - Nero AG) Hidden
Microsoft Expression Blend 3 (HKLM-x32\...\Blend_3.0.1927.0) (Version: 3.0.1927.0 - Microsoft Corporation)
Microsoft Expression Blend 3 SDK (HKLM-x32\...\{0E837AF0-4C92-4077-83F0-D022073F17C0}) (Version: 1.0.1327.0 - Microsoft Corporation)
Microsoft Expression Design 3 (HKLM-x32\...\Design_6.0.1739.0) (Version: 6.0.1739.0 - Microsoft Corporation)
Microsoft Expression Encoder 3 (HKLM-x32\...\Encoder_3.0.1332.0) (Version: 3.0.1332.0 - Microsoft Corporation)
Microsoft Expression Studio 3 (HKLM-x32\...\ExpressionStudio_3.0.1061.0) (Version: 3.0.1061.0 - Microsoft Corporation)
Microsoft Expression Web 3 (HKLM-x32\...\Web_3.0.1762.0) (Version: 3.0.1762.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft Silverlight 3 SDK (HKLM-x32\...\{2012098D-EEE9-4769-8DD3-B038050854D4}) (Version: 3.0.40624.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Movie Templates - Starter Kit (x32 Version: 9.0.4.0 - Nero AG) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.6 - F.J. Wechselberger)
Nero 9 (HKLM-x32\...\{475680cd-eef3-4f52-877c-183c6fdc90a0}) (Version:  - Nero AG)
Neuratron PhotoScore Ultimate Demo (HKLM-x32\...\Neuratron PhotoScore Ultimate Demo) (Version: 7.0.2 - Neuratron Ltd)
NVIDIA GeForce Experience 2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 342.01 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.13.0725 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0725 - NVIDIA Corporation)
OpenVPN 2.3.10-I602  (HKLM\...\OpenVPN) (Version: 2.3.10-I602 - )
OpenVPN 64-bit (HKLM\...\{8EC02EDC-25C6-400C-91BC-2A5E90F13B99}) (Version: 1.3.0 - ÚVT MU)
Ovládací panel NVIDIA 342.01 (Version: 342.01 - NVIDIA Corporation) Hidden
PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Podpora aplikací Apple (32bitová) (HKLM-x32\...\{F2871C89-C8A5-42EE-8D45-0F02506385A6}) (Version: 5.1 - Apple Inc.)
Podpora aplikací Apple (64bitová) (HKLM\...\{9BC93467-75D1-4AA4-BD58-D9C51D88DFAB}) (Version: 5.1 - Apple Inc.)
Potplayer (HKLM-x32\...\PotPlayer) (Version:  - Kakao Corp.)
QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Recovery Toolbox for Word 2.5 (HKLM-x32\...\Recovery Toolbox for Word_is1) (Version:  - Recovery Toolbox, Inc.)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version:  - Microsoft) Hidden
SHIELD Streaming (Version: 2.1.214 - NVIDIA Corporation) Hidden
Sibelius 7 OpenType Fonts (HKLM-x32\...\{623C2BD8-1B28-4F98-B578-E9D139827269}) (Version: 7.1.3 - Avid)
Sibelius 7.5 (HKLM\...\{BBADBAB3-56A4-444B-834E-D8730B574C3E}) (Version: 7.5.1.209 - Avid Technology)
Skype™ 7.26 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.26.101 - Skype Technologies S.A.)
SmartFTP Client (HKLM\...\{BFD92386-7AE7-4402-8165-A84C016A83CA}) (Version: 8.0.2232.0 - SmartSoft Ltd.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Stellar Phoenix Word Repair (HKLM-x32\...\Stellar Phoenix Word Repair_is1) (Version: 5.5.0.0 - Stellar Information Technology Pvt Ltd.)
Super Ovladač (HKLM-x32\...\Super Ovladač_is1) (Version: 10.0 - Driver-Soft Inc.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.12.98 - Synaptics Incorporated)
TAP-Windows 9.21.1 (HKLM\...\TAP-Windows) (Version: 9.21.1 - )
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.65452 - TeamViewer)
Total Commander (Remove or Repair) (HKLM-x32\...\Totalcmd) (Version: 7.50 - C. Ghisler & Co.)
Universal Adb Driver (HKLM-x32\...\{D9C4202E-6D51-4B06-A8F1-22316E654BCA}) (Version: 1.0.0 - ClockworkMod)
Validity Sensors software (HKLM\...\{F65B8208-5221-43D9-AA12-DDEA64EC4AF6}) (Version: 2.8.116 - Validity Sensors, Inc.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.2 - VideoLAN)
WinHTTrack Website Copier 3.48-22 (x64) (HKLM\...\WinHTTrack Website Copier_is1) (Version: 3.48.22 - HTTrack)
WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
WPF Toolkit June 2009 (Version 3.5.40619.1) (HKLM-x32\...\{5EE6E987-1B79-4A93-832B-27472C7D1579}) (Version: 3.5.40619.1 - Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3695787775-2199685802-2270573759-1001_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Jožin\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3695787775-2199685802-2270573759-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Jožin\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3695787775-2199685802-2270573759-1001_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Jožin\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3695787775-2199685802-2270573759-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Jožin\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.)

==================== Restore Points =========================


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {034035B2-2693-4ADC-B324-745D65E5209F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-12-07] (HP Inc.)
Task: {181EF958-CF2C-45C1-BFE2-0048458E3EFC} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterUserDevice
Task: {18568618-1602-4C22-B187-ADD8B1426DE4} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {2300B6D1-D409-499E-92DF-030662B73A6B} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic6
Task: {230A7B43-5BE5-4280-B4EC-5A396DEE4FE0} - \Microsoft\Windows\Setup\GWXTriggers\Logon-URT -> No File <==== ATTENTION
Task: {2787CCE9-474A-4E5A-BAC5-E0538F8E3E2A} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {2B255218-3894-4EA4-8CBC-54A1250E6384} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {317107BF-13F6-48B4-AA5A-BA0B03A02F4B} - System32\Tasks\Microsoft\Windows\ErrorDetails\EnableErrorDetailsUpdate
Task: {32986E8B-6097-4DFC-8DBC-5719CEC9ECF1} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe
Task: {33046BDC-2974-457F-A198-055760713D46} - System32\Tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization
Task: {3627755F-6629-4D94-850A-FBE43D28BEB8} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\CryptoPolicyTask
Task: {37D8E844-5A0D-41F6-9EE6-FDD591B007FF} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe
Task: {3C3B066D-AEC7-41A0-A8B6-5F2ACCACE664} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe [2016-10-25] (Microsoft Corporation)
Task: {3EB76D62-AC9E-40D3-99E8-DBDEF1993EF2} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {4208A7BF-D622-476E-A1A3-F9EB2719ECD4} - System32\Tasks\Microsoft\Windows\Management\Provisioning\Logon => C:\Windows\system32\ProvTool.exe [2016-01-31] (Microsoft Corporation)
Task: {430292F7-BBDB-45E3-BB9B-FE146CB1906E} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {45A1E736-EAAA-4735-ABBA-A9C5CF2BDAEF} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic1
Task: {48C28532-CD61-4441-96D3-35F1FDAC720E} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {4A944005-EAD7-4E3D-A0CB-E36A03948234} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\IntegrityCheck
Task: {4C30DA0C-4EDB-4F07-B7C3-53EBB202B265} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe
Task: {4E3CB8C2-8A0C-4570-A32E-7319C6E8E432} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic24
Task: {5387E0AE-BB24-46B8-A77A-E4CB3C17A7BA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {54139BE4-C811-4E0D-B701-7F2C646F31D0} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe
Task: {5BC3FC1F-296E-4D19-9A86-8D3863C0C6C4} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => C:\Program Files\Microsoft Security Client\MpCmdRun.exe
Task: {5D7F7C2D-F314-4A22-ACED-6B860A8BC4CF} - System32\Tasks\270051v3a62h24 => Rundll32.exe "C:\ProgramData\270051v3a62h24\270051v3a62h24.dll",bgozrak
Task: {5DA3774E-9AB8-4942-981A-834D171B697B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {60ADDB86-D2CB-41AE-A320-7FF277A8F086} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe
Task: {60F71876-9339-432B-8307-42ED365A6EB0} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2016-03-17] (Intel Corporation)
Task: {697E18DD-943C-470A-B9E3-6E5DDCB42D05} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceSettingChange
Task: {698E5BF8-34A4-4C70-B6B1-1B63083D11A6} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {6B696BCF-C866-41CA-B4E4-3D19FB1E9250} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceManagerTask => C:\Windows\system32\SpaceMan.exe [2015-10-30] (Microsoft Corporation)
Task: {70C6CD39-3A7D-49A5-AD6D-2A677870BD84} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {71E53243-3A2D-47EE-9DAB-6D71B2366657} - System32\Tasks\Microsoft\Windows\ErrorDetails\ErrorDetailsUpdate
Task: {76EB8566-CAF9-468D-A7B4-28092721C373} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe
Task: {77281230-484F-4523-910C-5F901683F92D} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe
Task: {7AA86B6F-3D55-49EA-A9C5-7F7A9CBFA669} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe
Task: {7AE1BCAC-061D-4672-BACB-88BC74CE1D7A} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => C:\Windows\system32\compattelrunner.exe [2016-10-05] (Microsoft Corporation)
Task: {860F596C-A1D8-4651-B747-D134041D80AD} - System32\Tasks\Microsoft\Windows\DiskFootprint\StorageSense => Rundll32.exe %windir%\system32\StorageUsage.dll,GetStorageUsageInfo
Task: {88475055-51BE-4A33-8040-91F00EE0EFF7} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS.exe
Task: {8E03D9E7-FF6F-453A-80FD-D04F540EFD53} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {90D79106-3D12-40AF-A9BA-231F2327770C} - System32\Tasks\Microsoft\Windows\DUSM\dusmtask => C:\Windows\System32\dusmtask.exe [2015-10-30] (Microsoft Corporation)
Task: {9268EA3E-8B80-43A4-A653-4AD925A2765A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {92D05057-116F-495E-9C31-841EF2BCD799} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {946CE14B-E57E-48D0-993A-D2CE2C928EE0} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-12-14] (Microsoft Corporation)
Task: {95486B34-A2BA-46E8-BB6E-5FEB9D6E5121} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {97712698-8B3D-4A3F-9A82-4297DA963FAA} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe
Task: {9ED3A0C3-8C6D-46F5-ABEC-07954AA74797} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe
Task: {A483A62A-BEE2-43EF-B43D-C4B6555D6F1E} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceAccountChange
Task: {A7344A7F-847A-4FE9-8AAB-566CFA4C3B70} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe
Task: {B0A9C29C-EF03-4C1E-BB51-66E1FFF8D153} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {B1E2F25C-B7EB-491F-9AFF-7FD9D0F15468} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {C0103F76-FE8A-4D3C-AC96-269561BF2F99} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {C4223E00-9121-49A5-AC5D-DCA044A1A249} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {C4953098-2831-4AA6-BE34-CC3D325CD54E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3695787775-2199685802-2270573759-1001Core => C:\Users\Jožin\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {C5F51143-EB59-4764-A3FF-0654166368AB} - System32\Tasks\Shawosataleent Cloud => C:\Program Files (x86)\Atezet\stnosp.exe
Task: {C72F06E3-F667-4378-B0EE-4F47CCE9D3C4} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe
Task: {C881A742-1A15-4EAC-96B9-9C6EA38AC7FA} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceConnectedToNetwork
Task: {CA4BE44E-107E-4B2D-91AF-FC3B077B02FC} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => C:\Windows\system32\compattelrunner.exe [2016-10-05] (Microsoft Corporation)
Task: {D1E8F569-60AF-4FC6-869E-375FEFA40B9C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {D56D4B00-2BA2-4590-A0B8-5B23CF99EBD1} - System32\Tasks\USER_ESRV_SVC_WILLAMETTE => Wscript.exe //B //NoLogo "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\task.vbs"
Task: {E03596C8-B2A4-4553-B379-B678F0EBCA95} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceScreenOnOff
Task: {EFE804FC-EBE2-4646-A54D-074CC22FB914} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {F042D342-3C72-43A6-A3F3-5EEA012F5E20} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated)
Task: {F120A436-C215-4927-87AA-934387AF5782} - System32\Tasks\Microsoft\Windows\License Manager\TempSignedLicenseExchange
Task: {F2AC6516-04CA-4270-A392-745CED540D2F} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe
Task: {F4AE7D5E-2D4A-4752-86A0-F0570C4B4BE4} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe
Task: {F66D89C6-B5B7-44B1-A8A3-E6DB0B678795} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3695787775-2199685802-2270573759-1001UA => C:\Users\Jožin\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {F9ECA5EA-10AB-4539-8621-5A9369E8C5CB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-05-09] (Hewlett-Packard)
Task: {FAAF5578-5B3E-4D46-960F-197DAD8A320D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Loaded Modules (Whitelisted) ==============

2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2013-08-24 11:18 - 2016-11-14 12:15 - 00135224 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2017-01-10 07:03 - 2014-03-22 19:17 - 02844160 _____ () C:\ProgramData\270051v3a62h24\270051v3a62h24.dll
2016-05-05 11:46 - 2016-08-24 14:48 - 00020240 _____ () C:\WINDOWS\system32\spool\PRTPROCS\x64\TeamViewer_PrintProcessor.dll
2016-09-01 17:12 - 2016-09-01 17:12 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2016-10-05 18:17 - 2016-10-05 18:17 - 01353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2016-02-01 16:25 - 2008-12-10 10:01 - 00405504 _____ () C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe
2012-05-19 01:03 - 2012-05-19 01:03 - 00011776 _____ () C:\Program Files (x86)\Dokan\DokanLibrary\mounter.exe
2016-09-25 22:14 - 2010-03-11 10:33 - 00016384 _____ () C:\Genius\ioCentre\GMouseService.exe
2017-01-12 18:14 - 2017-01-14 23:35 - 00248320 _____ () C:\WINDOWS\TEMP\gB5B2.tmp.exe
2016-11-09 19:48 - 2016-10-25 10:42 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-11-09 19:48 - 2016-10-25 10:42 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2013-10-16 18:02 - 2013-10-16 18:02 - 03358064 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll
2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2016-04-19 11:47 - 2016-04-19 11:47 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-01-31 15:24 - 2016-01-31 15:24 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-07-13 13:52 - 2016-07-01 04:48 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-11-09 19:49 - 2016-10-25 05:49 - 07992832 ____N () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-11-09 19:49 - 2016-10-25 05:44 - 00591360 ____N () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-11-09 19:49 - 2016-10-25 05:45 - 02483200 ____N () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-11-09 19:49 - 2016-10-25 05:48 - 04089856 ____N () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-02-01 16:25 - 2008-06-12 02:34 - 00159744 _____ () C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
2016-09-25 22:14 - 2012-04-23 16:10 - 00061440 _____ () C:\Genius\ioCentre\gTaskBar.exe
2016-09-25 22:14 - 2009-09-03 09:45 - 00161280 _____ () C:\Genius\ioCentre\GenXML.dll
2016-09-25 22:14 - 2012-07-05 14:22 - 00977408 _____ () C:\Genius\ioCentre\gMouseTask.exe
2016-09-25 22:14 - 2009-09-03 10:22 - 00063488 _____ () C:\Genius\ioCentre\gfMedia.dll
2016-09-25 22:14 - 2011-06-09 13:26 - 00052224 _____ () C:\Genius\ioCentre\gfBrowser.dll
2016-09-25 22:14 - 2009-09-03 10:23 - 00020992 _____ () C:\Genius\ioCentre\gfOffice.dll
2016-09-25 22:14 - 2009-09-03 10:24 - 00027648 _____ () C:\Genius\ioCentre\gfSystem.dll
2016-09-25 22:14 - 2009-09-03 10:18 - 00040960 _____ () C:\Genius\ioCentre\gfEmail.dll
2016-09-25 22:14 - 2011-08-04 15:45 - 00266752 _____ () C:\Genius\ioCentre\gDevMgm.dll
2016-09-25 22:14 - 2011-08-04 15:48 - 00758784 _____ () C:\Genius\ioCentre\gKbdTask.exe
2016-09-25 22:14 - 2009-09-03 09:55 - 00069120 _____ () C:\Genius\ioCentre\gAutoScroll.dll
2016-09-25 22:14 - 2009-09-03 09:54 - 00249344 _____ () C:\Genius\ioCentre\gAutoPan.dll
2016-09-25 22:14 - 2009-09-03 10:06 - 00259072 _____ () C:\Genius\ioCentre\gZoom.dll
2016-09-25 22:14 - 2009-09-03 10:25 - 00025088 _____ () C:\Genius\ioCentre\gIoCentreHook.dll
2016-09-25 22:14 - 2009-09-03 10:05 - 00048640 _____ () C:\Genius\ioCentre\gTaskSwitch.dll
2016-09-25 22:14 - 2012-03-13 15:43 - 00268288 _____ () C:\Genius\ioCentre\gDeskMgm.dll
2016-09-25 22:14 - 2009-09-03 10:02 - 00246784 _____ () C:\Genius\ioCentre\gKbStatus.dll
2016-09-25 22:14 - 2009-09-03 09:59 - 00053760 _____ () C:\Genius\ioCentre\gIMMgm.dll
2016-09-25 22:14 - 2009-09-03 10:02 - 00143360 _____ () C:\Genius\ioCentre\gPreset.dll
2016-09-25 22:14 - 2009-09-03 09:58 - 00044544 _____ () C:\Genius\ioCentre\gIMHook.dll
2016-09-25 22:14 - 2009-09-03 10:04 - 00056832 _____ () C:\Genius\ioCentre\gTabSwitch.dll
2017-01-14 23:07 - 2017-01-14 23:07 - 03988944 _____ () C:\Users\Jožin\Downloads\adwcleaner_6.042.exe
2016-02-01 16:25 - 2009-07-03 19:54 - 00053248 _____ () C:\Program Files (x86)\Common Files\AVerMedia\dll\MsgLog.DLL
2016-04-19 11:47 - 2016-04-19 11:47 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-04-19 11:47 - 2016-04-19 11:47 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2017-01-14 14:00 - 2017-01-14 23:35 - 03604992 _____ () C:\WINDOWS\TEMP\g66C7.tmp
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2016-12-15 10:11 - 2016-12-08 08:29 - 01829208 _____ () C:\Users\Jožin\AppData\Local\Google\Chrome\Application\55.0.2883.87\libglesv2.dll
2016-12-15 10:11 - 2016-12-08 08:29 - 00085848 _____ () C:\Users\Jožin\AppData\Local\Google\Chrome\Application\55.0.2883.87\libegl.dll
2013-08-24 11:55 - 2009-09-09 06:50 - 00123536 _____ () C:\Program Files (x86)\totalcmd\wcmzip32.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Program Files\Barvy:Win32App_1
AlternateDataStreams: C:\Program Files\Bonjour:Win32App_1
AlternateDataStreams: C:\Program Files\CCleaner:Win32App_1
AlternateDataStreams: C:\Program Files\DigitalPersona:Win32App_1
AlternateDataStreams: C:\Program Files\Hewlett-Packard:Win32App_1
AlternateDataStreams: C:\Program Files\IDT:Win32App_1
AlternateDataStreams: C:\Program Files\iTunes:Win32App_1
AlternateDataStreams: C:\Program Files\JabRef:Win32App_1
AlternateDataStreams: C:\Program Files\Microsoft Office:Win32App_1
AlternateDataStreams: C:\Program Files\Microsoft Silverlight:Win32App_1
AlternateDataStreams: C:\Program Files\PlayReady:Win32App_1
AlternateDataStreams: C:\Program Files\SmartFTP Client:Win32App_1
AlternateDataStreams: C:\Program Files\Validity Sensors, Inc:Win32App_1
AlternateDataStreams: C:\Program Files\WinHTTrack:Win32App_1
AlternateDataStreams: C:\Program Files\WinRAR:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Adobe:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Apple Software Update:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Audacity:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\AVerMedia:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Bonjour:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\DigitalPersona:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Freemake:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Intel Driver Update Utility:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Lame For Audacity:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\LAV Filters:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Malwarebytes Anti-Malware:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Microsoft Expression:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Microsoft Visual Studio 8:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\MSBuild:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\QuickTime:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Recovery Toolbox for Word:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\Stellar Phoenix Word Repair:Win32App_1
AlternateDataStreams: C:\Program Files (x86)\TeamViewer:Win32App_1
AlternateDataStreams: C:\Program Files\Common Files\DESIGNER:Win32App_1
AlternateDataStreams: C:\Program Files\Common Files\microsoft shared:Win32App_1
AlternateDataStreams: C:\ProgramData\Nero:Win32App_1
AlternateDataStreams: C:\ProgramData\regid.2006-08.com.smartftp:Win32App_1
AlternateDataStreams: C:\ProgramData\Temp:810B9F0D
AlternateDataStreams: C:\ProgramData\Temp:9A78FF1A
AlternateDataStreams: C:\Users\Jožin\AppData\Local\Degoo:Win32App_1

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52} => ""="Firmware"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SpbCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\uefi.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52} => ""="Firmware"

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3695787775-2199685802-2270573759-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Jožin\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta programu Windows Prohlížeč fotografií.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\StartupFolder: => "AVerQuick.lnk"
HKLM\...\StartupApproved\StartupFolder: => "FAH.lnk"
HKLM\...\StartupApproved\StartupFolder: => "Aktualizace oznámení.lnk"
HKLM\...\StartupApproved\StartupFolder: => "WinZip Preloader.lnk"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "BCSSync"
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run: => "NvBackend"
HKLM\...\StartupApproved\Run: => "KONICA MINOLTA PagePro 1350WStatusDisplay"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "AdobeCEPServiceManager"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "APSDaemon"
HKLM\...\StartupApproved\Run32: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "HPCam_Menu"
HKLM\...\StartupApproved\Run32: => "PowerDVD13Agent"
HKLM\...\StartupApproved\Run32: => "QuickTime Task"
HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe"
HKU\S-1-5-21-3695787775-2199685802-2270573759-1001\...\StartupApproved\StartupFolder: => "Degoo .lnk"
HKU\S-1-5-21-3695787775-2199685802-2270573759-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3695787775-2199685802-2270573759-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"
HKU\S-1-5-21-3695787775-2199685802-2270573759-1001\...\StartupApproved\Run: => "MP2 ClientLauncher"
HKU\S-1-5-21-3695787775-2199685802-2270573759-1001\...\StartupApproved\Run: => "MP2 ServiceMonitor"
HKU\S-1-5-21-3695787775-2199685802-2270573759-1001\...\StartupApproved\Run: => "Steam"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [TCP Query User{BB8492A2-4D8D-49A3-BCDB-440017FB7572}C:\program files\openvpn\bin\openvpn.exe] => (Allow) C:\program files\openvpn\bin\openvpn.exe
FirewallRules: [UDP Query User{DBE38945-0C49-4D6E-8D02-C8D6E8F7E65E}C:\program files\openvpn\bin\openvpn.exe] => (Allow) C:\program files\openvpn\bin\openvpn.exe
FirewallRules: [TCP Query User{5E1C37BC-3109-42E3-8984-693DD859D9F3}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe
FirewallRules: [UDP Query User{FCA108DD-6C60-4651-BA9B-D49219412363}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe
FirewallRules: [{B2B5D064-C1EF-4ED3-A328-15C209B32F1E}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{B700AABB-4FDA-4BFC-84C5-BD2636CA8666}C:\program files\openvpn\bin\openvpn.exe] => (Block) C:\program files\openvpn\bin\openvpn.exe
FirewallRules: [UDP Query User{FE34033F-742A-4615-A8B2-B03B2FC42BE7}C:\program files\openvpn\bin\openvpn.exe] => (Block) C:\program files\openvpn\bin\openvpn.exe
FirewallRules: [TCP Query User{22D31F60-075C-4457-A4FC-94E0F7C034D3}C:\program files\ibm\spss\statistics\20\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\20\jre\bin\javaw.exe
FirewallRules: [UDP Query User{7ADB659D-8FDE-4747-8005-8C003219AC11}C:\program files\ibm\spss\statistics\20\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\20\jre\bin\javaw.exe
FirewallRules: [{D0B6479F-9DD1-44AB-A49A-1DC7E69D439E}] => (Block) C:\program files\ibm\spss\statistics\20\jre\bin\javaw.exe
FirewallRules: [{1195A235-A4A9-4DA4-B7DD-4096DC90AD3A}] => (Block) C:\program files\ibm\spss\statistics\20\jre\bin\javaw.exe
FirewallRules: [TCP Query User{F1E00D95-6365-44F5-80CA-6C1F5FFE8700}C:\program files\ibm\spss\statistics\20\stats.exe] => (Allow) C:\program files\ibm\spss\statistics\20\stats.exe
FirewallRules: [UDP Query User{AC4D45EA-7AD6-414C-B15E-C8122BF6BE56}C:\program files\ibm\spss\statistics\20\stats.exe] => (Allow) C:\program files\ibm\spss\statistics\20\stats.exe
FirewallRules: [{0D09BC10-E63B-4732-AE64-534243ECAC3C}] => (Block) C:\program files\ibm\spss\statistics\20\stats.exe
FirewallRules: [{5145DF24-6F85-4D4A-9453-7D57CB3CD79B}] => (Block) C:\program files\ibm\spss\statistics\20\stats.exe
FirewallRules: [TCP Query User{A826C636-BCEF-4B8E-BBB7-EDA553E84386}C:\program files (x86)\cyberlink\powerdvd13\powerdvd13agent.exe] => (Allow) C:\program files (x86)\cyberlink\powerdvd13\powerdvd13agent.exe
FirewallRules: [UDP Query User{D732FF13-F09B-4BC1-A9B9-7E3350480E71}C:\program files (x86)\cyberlink\powerdvd13\powerdvd13agent.exe] => (Allow) C:\program files (x86)\cyberlink\powerdvd13\powerdvd13agent.exe
FirewallRules: [TCP Query User{17CF562C-F25F-44D3-8A1F-05AC4CD52D72}C:\users\jožin\appdata\local\degoo\degoo.exe] => (Allow) C:\users\jožin\appdata\local\degoo\degoo.exe
FirewallRules: [UDP Query User{7FEF35A2-172D-466C-83FF-9490DA9FF7BD}C:\users\jožin\appdata\local\degoo\degoo.exe] => (Allow) C:\users\jožin\appdata\local\degoo\degoo.exe
FirewallRules: [TCP Query User{147B95F1-9E4F-4D5B-9D6A-F1F9FA2CFC64}C:\program files (x86)\totalcmd\totalcmd.exe] => (Allow) C:\program files (x86)\totalcmd\totalcmd.exe
FirewallRules: [UDP Query User{FF9D2CE6-D3BE-4BFE-BC16-3C9BD39C2167}C:\program files (x86)\totalcmd\totalcmd.exe] => (Allow) C:\program files (x86)\totalcmd\totalcmd.exe
FirewallRules: [TCP Query User{D44C6810-6F03-4459-8853-A160E1E52438}D:\tera\tera\tera-launcher.exe] => (Allow) D:\tera\tera\tera-launcher.exe
FirewallRules: [UDP Query User{068F0E76-CA86-4290-B2F0-D31F1F3D6E31}D:\tera\tera\tera-launcher.exe] => (Allow) D:\tera\tera\tera-launcher.exe
FirewallRules: [{80684E8F-8F1D-406A-A60E-33C8075A9778}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{CEA08A0D-B6EB-4B50-8CFF-D666DC413F5E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{1CC0A211-32C8-427D-8B7A-8919A71359D3}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{AF5BA1BE-3A68-4252-A1B0-949B3FDABC6B}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{5FB541EC-A029-474D-B6B7-539FCE4DC08B}] => (Allow) C:\Program Files\SmartFTP Client\SmartFTP.exe
FirewallRules: [{18BB7766-9115-4D03-B22B-E7BAEEC5507C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{0E73A0BF-220E-4287-870D-0DDA3ABE5180}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{E93A9A4E-2D19-4128-9319-91FB22EA8B88}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{427F14C1-70BC-4B18-906D-B59F6FF27E53}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{A3F5F176-8B57-457C-83B3-29128691CAC1}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [TCP Query User{0453916E-52F1-44BA-A0FE-87EECADDD53F}C:\windows\kmsemulator.exe] => (Allow) C:\windows\kmsemulator.exe
FirewallRules: [UDP Query User{CFBFBA23-45FE-488C-9DBD-01B13D8BB86B}C:\windows\kmsemulator.exe] => (Allow) C:\windows\kmsemulator.exe
FirewallRules: [{3D8CECAE-593A-4FA6-9069-5FAEB7518D60}] => (Allow) C:\Users\Jožin\AppData\Local\Google\Chrome\Application\chrome.exe
FirewallRules: [{05182417-78D8-4C70-AEDC-8CDAFE48036E}] => (Allow) C:\WINDOWS\system32\rundll32.exe
FirewallRules: [{C0791FE4-9C56-4773-BFF7-6FA438A7871C}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{F1780E6E-5C5C-4491-AB2C-731419DE4DE0}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{132A40A5-E3E3-4104-9FB8-10114296CAA1}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{9EE2A03B-4F65-46EA-9DF4-986C6583D1CA}] => (Allow) C:\Windows\System32\rundll32.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (01/14/2017 11:42:06 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 8157

Error: (01/14/2017 11:42:06 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 8157

Error: (01/14/2017 11:42:06 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (01/14/2017 11:42:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 7032

Error: (01/14/2017 11:42:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 7032

Error: (01/14/2017 11:42:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (01/14/2017 10:42:43 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: GamePanel.exe, verze: 10.0.10586.713, časové razítko: 0x583406ef
Název chybujícího modulu: ntdll.dll, verze: 10.0.10586.672, časové razítko: 0x580ee321
Kód výjimky: 0xc0000409
Posun chyby: 0x00000000000953f7
ID chybujícího procesu: 0x248c
Čas spuštění chybující aplikace: 0xGamePanel.exe0
Cesta k chybující aplikaci: GamePanel.exe1
Cesta k chybujícímu modulu: GamePanel.exe2
ID zprávy: GamePanel.exe3
Úplný název chybujícího balíčku: GamePanel.exe4
ID aplikace související s chybujícím balíčkem: GamePanel.exe5

Error: (01/14/2017 02:35:28 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: GamePanel.exe, verze: 10.0.10586.713, časové razítko: 0x583406ef
Název chybujícího modulu: ntdll.dll, verze: 10.0.10586.672, časové razítko: 0x580ee321
Kód výjimky: 0xc0000409
Posun chyby: 0x00000000000953f7
ID chybujícího procesu: 0x1654
Čas spuštění chybující aplikace: 0xGamePanel.exe0
Cesta k chybující aplikaci: GamePanel.exe1
Cesta k chybujícímu modulu: GamePanel.exe2
ID zprávy: GamePanel.exe3
Úplný název chybujícího balíčku: GamePanel.exe4
ID aplikace související s chybujícím balíčkem: GamePanel.exe5

Error: (01/14/2017 02:00:07 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Jožin-PC)
Description: Aplikaci Microsoft.Windows.Photos_8wekyb3d8bbwe!App se nepovedlo aktivovat, protože došlo k chybě: -2144927141. Další informace najdete v protokolu Microsoft-Windows-TWinUI/Operational.

Error: (01/13/2017 10:38:48 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 5922


System errors:
=============
Error: (01/14/2017 11:41:47 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba CyberLink PowerDVD 13 Media Server Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/14/2017 11:35:53 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Adaptér naslouchání Net.Msmq neuspěla při spuštění v důsledku následující chyby: 
%%1053

Error: (01/14/2017 11:35:53 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby NetMsmqActivator bylo dosaženo časového limitu (30000 ms).

Error: (01/14/2017 11:35:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Adaptér naslouchání Net.Pipe neuspěla při spuštění v důsledku následující chyby: 
%%1053

Error: (01/14/2017 11:35:47 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby NetPipeActivator bylo dosaženo časového limitu (30000 ms).

Error: (01/14/2017 11:35:31 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Avira.ServiceHost bylo dosaženo časového limitu (30000 ms).

Error: (01/14/2017 11:35:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SystemUsageReportSvc_WILLAMETTE neuspěla při spuštění v důsledku následující chyby: 
%%1053

Error: (01/14/2017 11:35:25 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby SystemUsageReportSvc_WILLAMETTE bylo dosaženo časového limitu (30000 ms).

Error: (01/14/2017 11:34:59 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Nunesstither byla ukončena s následující chybou: 
%%2

Error: (01/14/2017 11:34:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba MLPTDR_Q neuspěla při spuštění v důsledku následující chyby: 
%%193


CodeIntegrity:
===================================
  Date: 2016-12-22 18:28:55.495
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-12-20 23:18:51.064
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-12-15 09:20:39.947
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM)2 Duo CPU T9400 @ 2.53GHz
Percentage of memory in use: 60%
Total physical RAM: 4063.2 MB
Available physical RAM: 1611.48 MB
Total Virtual: 9837.53 MB
Available Virtual: 6732.49 MB

==================== Drives ================================

Drive c: (První) (Fixed) (Total:221.18 GB) (Free:16.34 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: (Druhej) (Fixed) (Total:68.37 GB) (Free:1.37 GB) NTFS
Drive e: (Zbytecnej) (Fixed) (Total:7.71 GB) (Free:1.06 GB) NTFS ==>[system with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 1D4FBA9E)
Partition 1: (Active) - (Size=221.2 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=844 MB) - (Type=27)
Partition 3: (Not Active) - (Size=68.4 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=7.7 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================