Additional scan result of Farbar Recovery Scan Tool (x86) Version: 04.03.2018
Ran by Marek (06-03-2018 09:05:37)
Running from C:\Users\Marek\Desktop
Microsoft Windows 10 Pro Version 1709 16299.248 (X86) (2018-01-29 07:45:58)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1090461368-3718612229-1242190663-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1090461368-3718612229-1242190663-503 - Limited - Disabled)
Guest (S-1-5-21-1090461368-3718612229-1242190663-501 - Limited - Enabled)
Marek (S-1-5-21-1090461368-3718612229-1242190663-1001 - Administrator - Enabled) => C:\Users\Marek
WDAGUtilityAccount (S-1-5-21-1090461368-3718612229-1242190663-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Endpoint Antivirus 5.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET Endpoint Antivirus 5.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Slovak (HKLM\...\{AC76BA86-7AD7-1051-7B44-AC0F074E4100}) (Version: 18.011.20038 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Advanced IP Scanner 2.4 (HKLM\...\{2E644D2D-993F-43B4-B85A-15363CA777C3}) (Version: 2.4.3021 - Famatech)
Aktualizácie NVIDIA 17.12.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 17.12.8 - NVIDIA Corporation) Hidden
Ashampoo Burning Studio FREE (HKLM\...\{91B33C97-91F8-FFB3-581B-BC952C901685}_is1) (Version: 1.14.5 - Ashampoo GmbH & Co. KG)
Autodesk DWG TrueView 2017 - English (HKLM\...\DWG TrueView 2017 - English) (Version: 21.0.52.0 - Autodesk)
Autodesk MapGuide(R) Viewer ActiveX Control Release 6.5 (HKLM\...\{E031338C-839D-4EDD-9537-99B653C39D81}) (Version: 6.5.5.24 - Autodesk, Inc.)
Bullzip PDF Printer 10.3.0.2191 (HKLM\...\Bullzip PDF Printer_is1) (Version: 10.3.0.2191 - Bullzip)
CCleaner (HKLM\...\CCleaner) (Version: 5.40 - Piriform)
CDex - Open Source Digital Audio CD Extractor (HKLM\...\CDex) (Version: 1.79.0.2015 - Georgy Berdyshev)
Cisco WebEx Meetings (HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\ActiveTouchMeetingClient) (Version:  - Cisco WebEx LLC)
Codec Pack - All In 1 6.0.3.0 (HKLM\...\Cool's_Codec_pack_4.12) (Version:  - )
Convert WAV To MP3 1.0 (HKLM\...\Convert WAV To MP3_is1) (Version:  - A Software Plus)
Corel Graphics - Windows Shell Extension (HKLM\...\_{B865FDD4-E96E-4166-BB69-6E8C207E3E29}) (Version: 17.0.0.491 - Corel Corporation)
Corel Graphics - Windows Shell Extension (HKLM\...\{B865FDD4-E96E-4166-BB69-6E8C207E3E29}) (Version: 17.0.491 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Capture (HKLM\...\{5D0275EA-F3CE-450A-A5A3-F852E30CA46F}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Common (HKLM\...\{994F3055-8433-46A7-8E1F-6CC7B68B01F0}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Connect (HKLM\...\{EFB8E269-0619-475B-8C5B-96F98551AA33}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Custom Data (HKLM\...\{84749C5C-FA80-4779-BD96-544165A8CD31}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - CZ (HKLM\...\{40453496-024D-401B-AB4A-F15C3FCDE780}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Draw (HKLM\...\{30FAE453-9F77-4F70-928E-042BEF00D011}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Filters (HKLM\...\{8DADD35F-49CE-4D18-AE6D-135DD150E74F}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - FontNav (HKLM\...\{7F5DE3F2-5865-4D4A-89D1-AAEFE1F96E50}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - IPM Content (HKLM\...\{657EAD32-8E7A-43C0-A794-3BB31B00DC34}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - IPM T (HKLM\...\{D29A4F85-0FB7-4E54-B591-044652C4295F}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - PHOTO-PAINT (HKLM\...\{0A0143FF-ECB5-4960-A2E0-DC3150ABBBE0}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Photozoom Plugin (HKLM\...\{950055ED-DC61-4874-8EDB-E5CDE1D218CD}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Redist (HKLM\...\{F3286FA3-DF68-4948-8D1D-ED3A539077B3}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Setup Files (HKLM\...\{C5D9CECB-A66F-473F-B406-5C8C2DCA4DF0}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - VBA (HKLM\...\{877522BE-A318-4603-9B00-DF319C6FA2B1}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - VideoBrowser (HKLM\...\{4C614BD3-607E-4289-BB51-4D87EC7BBD62}) (Version: 17.0 - Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 - Writing Tools (HKLM\...\{246FE426-2661-4DD6-9603-DF2E6832387C}) (Version: 17.0 -  Corel Corporation) Hidden
CorelDRAW Graphics Suite X7 (HKLM\...\_{C5D9CECB-A66F-473F-B406-5C8C2DCA4DF0}) (Version: 17.0.0.491 - Corel Corporation)
CorelDRAW Graphics Suite X7 (HKLM\...\{08A60D9D-C206-46BF-9602-1F2616878CF7}) (Version: 17.0 - Corel Corporation) Hidden
D.Viewer .NET v3.1 (HKLM\...\{9440B71A-E2E5-46D6-9710-1586DB82907E}) (Version: 1.0.0 - Ditec, a.s.)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd)
DWG TrueView 2017 - English (HKLM\...\{28B89EEF-0028-0409-0000-CF3F3A09B77D}) (Version: 21.0.52.0 - Autodesk) Hidden
ESET Endpoint Antivirus (HKLM\...\{A6E8C117-3B20-4762-A5AF-871871407CE4}) (Version: 5.0.2228.1 - ESET, spol s r. o.)
eTlačivá 4.0.399.0 (HKLM\...\eTlaciva) (Version: 4.0.399.0 - ŠEVT a.s.)
Extended Asian Language font pack for Adobe Acrobat Reader DC (HKLM\...\{AC76BA86-7AD7-2530-0000-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated)
FIXPERIENCE (HKLM\...\{A5E00E2F-F3F7-475B-B9FC-CFAA36698B61}) (Version: 1.144.113.6 - fischerwerke GmbH & Co. KG)
Foxit Advanced PDF Editor 3 (HKLM\...\B521582C-6BE3-491D-BCC8-FFB8301298E9_is1) (Version: 3.0.4.0 - Foxit Corporation)
FRIATRACE (HKLM\...\FRIATRACE) (Version:  - )
GetDataBack for NTFS (HKLM\...\{56582EEA-3AEF-4D84-8B9D-C87A3CD9250F}) (Version: 4.32.000 - Runtime Software)
Google Chrome (HKLM\...\Google Chrome) (Version: 64.0.3282.186 - Spoločnosť Google Inc.)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
iEnhance (HKLM\...\{F5AD9CD6-BFFD-4E7B-B05C-FE4DB2112AB0}) (Version: 7.3.0.31 - AVerDiGi) Hidden
iEnhance (HKLM\...\InstallShield_{F5AD9CD6-BFFD-4E7B-B05C-FE4DB2112AB0}) (Version: 7.3.0.31 - AVerDiGi)
iVMS-4200(v2.5.1.7) (HKLM\...\{7697245D-2E00-4B83-AD27-C051DE314D1F}) (Version: 2.5.1.7 - hikvision)
Java 8 Update 101 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office 2010 pre podnikateľov (HKLM\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\OneDriveSetup.exe) (Version: 17.3.7294.0108 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2012 (HKLM\...\{89ca2a32-2b52-4595-8dfd-6fe4757958d0}) (Version: 11.0.51108 - Microsoft Corporation)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 52.6.0.6597 - Mozilla)
Mozilla Thunderbird 52.6.0 (x86 sk) (HKLM\...\Mozilla Thunderbird 52.6.0 (x86 sk)) (Version: 52.6.0 - Mozilla)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MWSnap 3 (HKLM\...\MWSnap 3) (Version: 3.0.0.74 - Mirek Wojtowicz)
NirSoft Mail PassView (HKLM\...\NirSoft Mail PassView) (Version:  - )
NirSoft ProduKey (HKLM\...\NirSoft ProduKey) (Version:  - )
NVIDIA 3D Vision radič ovládača 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.2.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.2 - NVIDIA Corporation)
NVIDIA Grafický ovládač 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 342.01 - NVIDIA Corporation)
NVIDIA Ovládač 3D Vision 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 342.01 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
OpenOffice 4.1.2 (HKLM\...\{EF194FA4-99F4-4C36-AC30-B2C2DE1C170D}) (Version: 4.12.9782 - Apache Software Foundation)
Ovládací panel NVIDIA 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 342.01 - NVIDIA Corporation) Hidden
Pacote de Idiomas do Microsoft Visual Studio Tools for Applications 2012 x86 Hosting Support - PTB (HKLM\...\{03077B58-6ACF-32CA-B42A-EAA458C295A1}) (Version: 11.0.51108 - Microsoft Corporation) Hidden
PDF Settings CS6 (HKLM\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
pdfsam (HKLM\...\pdfsam) (Version: 2.2.1 - )
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7745 - Realtek Semiconductor Corp.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 4.0.1000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 17.12.8 - NVIDIA Corporation) Hidden
Smart Defrag 5 (HKLM\...\Smart Defrag_is1) (Version: 5.0.2 - IObit)
TeamViewer 12 (HKLM\...\TeamViewer) (Version: 12.0.90922 - TeamViewer)
TechCON OSMA  (7.2) (HKLM\...\{3FBD388D-F226-4471-A932-613EC98C712D}) (Version: 7.00.1115 - Atcon systems s.r.o.)
Total Commander (Remove or Repair) (HKLM\...\Totalcmd) (Version: 8.01 - Ghisler Software GmbH)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Vypínač na dobrou noc verze 2.0 (HKLM\...\Vypínač na dobrou noc_is1) (Version:  - )
Winamp (HKLM\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
Windows 10 Update and Privacy Settings (HKLM\...\{542CC2C2-ABAF-4604-8723-DA296AF74540}) (Version: 1.0.14.0 - Microsoft Corporation)
WinRAR (HKLM\...\WinRAR archiver) (Version:  - )
WinX Video Converter 4.1.1 (HKLM\...\WinX Video Converter_is1) (Version:  - Digiarty Software,Inc.)
XnView 1.92 (HKLM\...\XnView_is1) (Version: 1.92 - Gougelet Pierre-e)
ZOP Systems (HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\ZOP Systems) (Version:  - )
Языковой пакет для поддержки размещения набора средств Microsoft Visual Studio Tools для работы с приложениями 2012 (x86) - RUS (HKLM\...\{68DC347D-C1C0-3DE2-A53E-CCC71DA53E57}) (Version: 11.0.51108 - Microsoft Corporation) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001_Classes\CLSID\{32E26FD9-F435-4A20-A561-35D4B987CFDC}\InprocServer32 -> C:\ProgramData\WebEx\WebEx\12_1524\atucfobj.dll (Cisco WebEx LLC)
CustomCLSID: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001_Classes\CLSID\{3cdb5741-d199-5c1c-8bf7-76391938ed0f}\InprocServer32 -> C:\ProgramData\Ditec\DViewer\npDitec.Zep.DViewerFb.dll (Ditec, a.s.)
CustomCLSID: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2017 - English\en-US\dwgviewrficn.dll (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001_Classes\CLSID\{720DB9AF-D62C-4ED0-A377-429C22312852}\localserver32 -> C:\Program Files\Autodesk\DWG TrueView 2017 - English\dwgviewr.exe (Autodesk, Inc.)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll [2016-02-07] (Autodesk, Inc.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} =>  -> No File
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2016-02-07] (Autodesk)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> No File
ContextMenuHandlers1: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Endpoint Antivirus\shellExt.dll [2013-10-07] (ESET)
ContextMenuHandlers1: [iSkysoftVideoConverterFileOpreation] -> {B5FA2AE6-7A94-4382-8EA9-58C725AAB854} =>  -> No File
ContextMenuHandlers1: [Print602] -> {D5F8CFC7-1A45-4517-A565-E42CDE7880CF} =>  -> No File
ContextMenuHandlers1: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} =>  -> No File
ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2007-09-20] ()
ContextMenuHandlers2: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Endpoint Antivirus\shellExt.dll [2013-10-07] (ESET)
ContextMenuHandlers4: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2007-09-20] ()
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2016-11-14] (NVIDIA Corporation)
ContextMenuHandlers6: [ESET Smart Security - Context Menu Shell Extension] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Endpoint Antivirus\shellExt.dll [2013-10-07] (ESET)
ContextMenuHandlers6: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} =>  -> No File
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2007-09-20] ()

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {092F0DF8-955B-4221-8DDD-79B569429F7A} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {1DCCE241-C6BF-4FE3-92DD-A123D5DBECCA} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {247BD142-0549-4E91-84B0-172C25563718} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe
Task: {278C7C9C-0046-4191-8E04-6797C52B32AB} - System32\Tasks\{B6E3A6BA-558E-422F-8111-58333F138B76} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files\Ashampoo\Ashampoo Burning Studio 6 FREE\unins000.exe"
Task: {2EB7307B-A892-492E-AD91-D1A7F70AADA6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-02-07] (Piriform Ltd)
Task: {3AE9EC60-0615-4A2C-A6F9-EC72C4528694} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {49A8D7E5-0B81-41EC-9B47-F0EF105E0E54} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {4CA4E52B-3734-4921-A82E-74213958DC45} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {4E8BB644-FEA4-4601-8305-983427CDF897} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2018-02-14] (Microsoft Corporation)
Task: {638F5574-9603-49B3-8A66-7746A94C9DA7} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {65867F58-8ED2-441B-B665-B0CDCB7FB738} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {7D05CDA9-641F-4C4C-B8D8-8D75F4262EE8} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {8A79BA0F-6DB4-43A3-8BD1-5AD55678430A} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {93E44DEF-8FFF-427A-BAAA-0C2EC872CC1D} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-02-07] (Piriform Ltd)
Task: {A243422F-0D00-4996-844A-87CD819AC26A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {A5C78824-ED24-4841-841F-B26F4371AB0F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-04-21] (Google Inc.)
Task: {AAA9849C-9746-4E9F-9E9E-08A70ACEDFF2} - System32\Tasks\GoogleUpdateTaskMachineCore1d0921c6995940a => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-04-21] (Google Inc.)
Task: {B11E981C-5E51-43C7-9145-3EFF0155E177} - \WPD\SqmUpload_S-1-5-21-1090461368-3718612229-1242190663-1001 -> No File <==== ATTENTION
Task: {D27AC1C0-C4D7-41FC-AA09-5C614AABB620} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated)
Task: {D556EEB1-863B-47FA-8DBD-32B5820923C7} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {DDADCBDB-D2DF-438F-BA45-6F8E528D73D0} - System32\Tasks\GoogleUpdateTaskMachineCore1d0bfa7909c1577 => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-04-21] (Google Inc.)
Task: {DDD9D8B6-91A4-469D-BF9F-22A4031E508A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-04-21] (Google Inc.)
Task: {F235E0E3-B8DC-4DDC-AE07-9FD995B367D1} - System32\Tasks\Driver Booster SkipUAC (Marek) => C:\Program Files\IObit\Driver Booster\DriverBooster.exe
Task: {F308DCA4-05C8-48B0-A056-DDD2C3057BAB} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0921c6995940a.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2015-04-22 09:18 - 2009-10-01 13:07 - 000011264 _____ () C:\WINDOWS\System32\KOAZ8J_L.DLL
2017-09-29 12:49 - 2017-09-29 12:49 - 000149840 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-07-20 06:09 - 2016-11-14 12:00 - 000123448 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll
2015-04-21 21:20 - 2007-09-20 17:34 - 000129024 _____ () C:\Program Files\WinRAR\rarext.dll
2015-04-21 21:20 - 2007-10-02 14:41 - 000319488 _____ () C:\Program Files\WinRAR\rarlng.dll
2018-02-14 11:48 - 2018-02-10 05:39 - 007817728 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2018-02-14 11:48 - 2018-02-10 05:35 - 001518592 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2018-02-07 18:47 - 2018-02-07 18:47 - 000078544 _____ () C:\Program Files\CCleaner\lang\lang-1051.dll
2018-02-28 06:22 - 2018-02-22 05:12 - 003730264 _____ () C:\Program Files\Google\Chrome\Application\64.0.3282.186\libglesv2.dll
2018-02-28 06:22 - 2018-02-22 05:12 - 000085848 _____ () C:\Program Files\Google\Chrome\Application\64.0.3282.186\libegl.dll
2018-02-27 06:23 - 2018-02-21 07:52 - 054002184 _____ () \\MIRADSERVER\mksqlbin\exe\appsql.exe
2018-02-27 06:23 - 2013-01-02 14:00 - 000937984 _____ () \\MIRADSERVER\mksqlbin\exe\libssh2.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Marek\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [106]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\100sexlinks.com -> 100sexlinks.com

There are 4788 more sites.


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 07:13 - 2015-11-24 12:45 - 000000864 _____ C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1               albert.apple.com

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
DNS Servers: 195.146.128.60 - 195.146.132.58
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: Apple Mobile Device => 2
MSCONFIG\Services: ASCAntivirusSrv => 2
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: BthHFSrv => 3
MSCONFIG\Services: bthserv => 3
MSCONFIG\Services: Disc Soft Lite Bus Service => 3
MSCONFIG\Services: GfExperienceService => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: IMFservice => 2
MSCONFIG\Services: iPod Service => 3
MSCONFIG\Services: LiveUpdateSvc => 2
MSCONFIG\Services: MoboroboDeviceService => 2
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: NvNetworkService => 3
MSCONFIG\Services: NvStreamSvc => 3
MSCONFIG\Services: nvsvc => 2
MSCONFIG\Services: odserv => 3
MSCONFIG\Services: ose => 3
MSCONFIG\Services: SPAMfighter Update Service => 2
MSCONFIG\Services: Stereo Service => 2
MSCONFIG\Services: SwitchBoard => 3
MSCONFIG\Services: TeamViewer => 2
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKLM\...\StartupApproved\Run: => "Adobe Reader Speed Launcher"
HKLM\...\StartupApproved\Run: => "Adobe ARM"
HKLM\...\StartupApproved\Run: => "GrooveMonitor"
HKLM\...\StartupApproved\Run: => "NvBackend"
HKLM\...\StartupApproved\Run: => "sfagent"
HKLM\...\StartupApproved\Run: => "AdobeCS6ServiceManager"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "SwitchBoard"
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run: => "IObit Malware Fighter"
HKLM\...\StartupApproved\Run: => "iSkysoft Helper Compact.exe"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\StartupApproved\StartupFolder: => "SKLAD.lnk"
HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\StartupApproved\StartupFolder: => "chrome.exe.lnk"
HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\StartupApproved\StartupFolder: => "thunderbird.exe.lnk"
HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\StartupApproved\Run: => "Advanced SystemCare Ultimate"
HKU\S-1-5-21-1090461368-3718612229-1242190663-1001\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_76888AFBA486CCF068F690F0F6295975"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{1FD2A4A8-B9C3-4538-82DE-C46A65DB8C7F}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{9877B466-C95F-4F6F-9A96-462BA9F57D37}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{8624D288-8BE8-4831-8696-7CDEDA5DEB33}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe
FirewallRules: [{F2581383-0628-4250-A429-7236C516E078}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe
FirewallRules: [{7CCB8C0C-2894-4248-ADE7-D62CB6A82298}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{DCD7DC89-3785-4A13-BACB-0265D6C62026}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{965A458A-62BF-48E8-8BF8-6410DA885A6B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{27A884F0-D957-4369-B07A-6EF157507E67}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
FirewallRules: [{59404E09-8042-40B2-A15A-C131875F99F6}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{01F7B30C-BBD9-47D1-B867-C41AB0D8C683}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [UDP Query User{AE396039-825F-4D52-BE2B-AA077CD4FD0B}C:\totalcmd\totalcmd.exe] => (Allow) C:\totalcmd\totalcmd.exe
FirewallRules: [TCP Query User{E5F6CAC9-90E4-42B7-BA37-B99B19FD4193}C:\totalcmd\totalcmd.exe] => (Allow) C:\totalcmd\totalcmd.exe
FirewallRules: [{8684A48E-B7A6-4F50-A8B5-87F33C151B69}] => (Allow) C:\Program Files\Winamp\winamp.exe
FirewallRules: [{43EAE886-B33C-491F-BABC-C5CCB4A05B98}] => (Allow) C:\Program Files\Winamp\winamp.exe
FirewallRules: [TCP Query User{6171ED5F-1EA4-4FD7-A7D4-E0C3F3F29614}C:\program files\ivms-4200 station\ivms-4200\ivms-4200 client\ivms-4200.exe] => (Allow) C:\program files\ivms-4200 station\ivms-4200\ivms-4200 client\ivms-4200.exe
FirewallRules: [UDP Query User{3F176E40-D51B-4B4F-AFBC-08E186A39A9A}C:\program files\ivms-4200 station\ivms-4200\ivms-4200 client\ivms-4200.exe] => (Allow) C:\program files\ivms-4200 station\ivms-4200\ivms-4200 client\ivms-4200.exe
FirewallRules: [{0186FF5B-BB23-48CC-A9B7-DF0EED0A03E0}] => (Block) c:\Program Files\Corel\CorelDRAW Graphics Suite X7\Programs\CorelDrw.exe
FirewallRules: [{5EEB575C-E731-403B-B7F3-DC139C4EC0C8}] => (Block) c:\Program Files\Corel\CorelDRAW Graphics Suite X7\Programs\CorelPP.exe
FirewallRules: [TCP Query User{AF027D49-838A-4828-8ECC-AB063DD40226}\\miradserver\mksqlbin\exe\appsql.exe] => (Allow) \\miradserver\mksqlbin\exe\appsql.exe
FirewallRules: [UDP Query User{E272B11D-299C-4CCA-BD28-1A2482244E88}\\miradserver\mksqlbin\exe\appsql.exe] => (Allow) \\miradserver\mksqlbin\exe\appsql.exe
FirewallRules: [{5F070F33-0B60-4C8D-8B3D-9D543345CC1E}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

14-02-2018 11:47:11 Windows Update
23-02-2018 07:50:36 Scheduled Checkpoint
06-03-2018 07:20:06 Scheduled Checkpoint

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (03/06/2018 07:20:08 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

System Error:
Access is denied.
.

Error: (03/06/2018 07:11:17 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine QueryFullProcessImageNameW.  hr = 0x8007001f, A device attached to the system is not functioning.
.


Operation:
   Executing Asynchronous Operation

Context:
   Current State: DoSnapshotSet

Error: (03/06/2018 07:10:42 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

System Error:
Access is denied.
.

Error: (03/05/2018 12:19:31 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: The Open Procedure for service "BITS" in DLL "C:\Windows\System32\bitsperf.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code.

Error: (03/02/2018 08:28:35 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: The Open Procedure for service "BITS" in DLL "C:\Windows\System32\bitsperf.dll" failed. Performance data for this service will not be available. The first four bytes (DWORD) of the Data section contains the error code.

Error: (03/01/2018 07:40:59 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: SystemSettings.exe, verzia: 10.0.16299.192, časová značka: 0xe819fd10
Názov chybujúceho modulu: DeviceFlows.DataModel.dll, verzia: 10.0.16299.15, časová značka: 0x59cda4bb
Kód výnimky: 0xc0000005
Odstup chyby: 0x0002b1dc
Identifikácia chybujúceho procesu: 0x2014
Čas spustenia chybujúcej aplikácie: 0x01d3b1282d5f02e5
Cesta chybujúcej aplikácie: C:\Windows\ImmersiveControlPanel\SystemSettings.exe
Cesta chybujúceho modulu: C:\Windows\System32\DeviceFlows.DataModel.dll
Identifikácia hlásenia: 50812b6a-cbb2-46cd-9b77-c346042b8fcb
Celé meno chybujúceho balíka: windows.immersivecontrolpanel_10.0.1.1000_neutral_neutral_cw5n1h2txyewy
Identifikácia chybujúcej aplikácie vzhľadom na balík: microsoft.windows.immersivecontrolpanel

Error: (02/28/2018 06:31:28 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: nvtray.exe, verzia: 7.17.13.4201, časová značka: 0x582992f6
Názov chybujúceho modulu: nvtray.exe, verzia: 7.17.13.4201, časová značka: 0x582992f6
Kód výnimky: 0x40000015
Odstup chyby: 0x0010339f
Identifikácia chybujúceho procesu: 0x154c
Čas spustenia chybujúcej aplikácie: 0x01d3b054d7643932
Cesta chybujúcej aplikácie: C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
Cesta chybujúceho modulu: C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
Identifikácia hlásenia: 52769885-1daf-42f6-8063-100ea5d0bd04
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (02/27/2018 04:02:48 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program appsql.exe version 0.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 169c

Start Time: 01d3af8ba56d8555

Termination Time: 167

Application Path: \\MIRADSERVER\mksqlbin\exe\appsql.exe

Report Id: 072b94ae-1139-4019-8b69-23520858298b

Faulting package full name: 

Faulting package-relative application ID:


System errors:
=============
Error: (03/06/2018 07:01:32 AM) (Source: DCOM) (EventID: 10010) (User: PC-MAREL)
Description: The server {5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C} did not register with DCOM within the required timeout.

Error: (03/06/2018 06:55:17 AM) (Source: DCOM) (EventID: 10016) (User: PC-MAREL)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user PC-MAREL\Marek SID (S-1-5-21-1090461368-3718612229-1242190663-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (03/06/2018 06:54:33 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (03/06/2018 06:54:33 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (03/06/2018 06:54:33 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (03/06/2018 06:54:33 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (03/05/2018 11:16:31 AM) (Source: DCOM) (EventID: 10016) (User: PC-MAREL)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user PC-MAREL\Marek SID (S-1-5-21-1090461368-3718612229-1242190663-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.

Error: (03/05/2018 11:15:52 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.


==================== Memory info =========================== 

Processor: Genuine Intel(R) CPU 2140 @ 1.60GHz
Percentage of memory in use: 52%
Total physical RAM: 3199.18 MB
Available physical RAM: 1513.34 MB
Total Virtual: 3775.18 MB
Available Virtual: 1345.27 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:320.76 GB) (Free:165.42 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:610.31 GB) (Free:273.74 GB) NTFS

\\?\Volume{1b6b6c4a-0000-0000-0000-b03050000000}\ () (Fixed) (Total:0.44 GB) (Free:0.13 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 1B6B6C4A)
Partition 1: (Active) - (Size=320.8 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=450 MB) - (Type=27)
Partition 3: (Not Active) - (Size=610.3 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================