Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-12-2019
Ran by info (12-12-2019 13:32:57)
Running from C:\Users\info\Desktop
Windows 10 Home Version 1809 17763.914 (X64) (2019-05-13 07:51:50)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-385703609-2784001884-2048287062-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-385703609-2784001884-2048287062-503 - Limited - Disabled)
Guest (S-1-5-21-385703609-2784001884-2048287062-501 - Limited - Disabled)
info (S-1-5-21-385703609-2784001884-2048287062-1002 - Administrator - Enabled) => C:\Users\info
WDAGUtilityAccount (S-1-5-21-385703609-2784001884-2048287062-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.293 - Adobe)
Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.293 - Adobe)
Advertising Center (HKLM-x32\...\{b2ec4a38-b545-4a00-8214-13fe0e915e6d}) (Version: 0.0.0.1 - Nero AG) Hidden
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
Anti-Twin (Installation 29.11.2018) (HKLM-x32\...\Anti-Twin 2018-11-29 21.03.56) (Version:  - Joerg Rosenthal, Germany)
Avast Driver Updater (HKLM-x32\...\{630C3D8E-2BEE-465F-9E59-BB069ED10761}) (Version: 2.5.6 - AVAST Software) Hidden
Avast Driver Updater (HKLM-x32\...\Avast Driver Updater) (Version: 2.5.6 - AVAST Software)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software)
Booking (HKLM-x32\...\{13D4CD54-EA09-4FDB-B979-8B2BC0F020CA}_is1) (Version: 2.0.701 - Booking)
ffdshow v1.3.4532 [2014-07-17] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4532.0 - )
Git version 2.23.0.windows.1 (HKLM\...\Git_is1) (Version: 2.23.0.windows.1 - The Git Development Community)
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.3.47.5309 - GOM & Company)
GOM Remote (HKLM-x32\...\GOM Remote) (Version: 2.1.1.9 - GOM & Company)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 78.0.3904.108 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.341 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.123 - Google Inc.) Hidden
IrfanView 4.52 (64-bit) (HKLM\...\IrfanView64) (Version: 4.52 - Irfan Skiljan)
JetBrains PyCharm Community Edition 2019.2.5 (HKU\S-1-5-21-385703609-2784001884-2048287062-1002\...\PyCharm Community Edition 2019.2.5) (Version: 192.7142.56 - JetBrains s.r.o.)
LibreOffice 5.4.3.2 (HKLM\...\{5FFD3D4F-8AA0-4C6F-8B3C-AB0D8CD297C9}) (Version: 5.4.3.2 - The Document Foundation)
Microsoft Power BI Desktop (x64) (HKLM\...\{B9DF5033-C293-4139-A765-DDEB0064D02F}) (Version: 2.52.4921.682 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual Studio Code (User) (HKU\S-1-5-21-385703609-2784001884-2048287062-1002\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.40.2 - Microsoft Corporation)
Mozilla Firefox 71.0 (x64 cs) (HKLM\...\Mozilla Firefox 71.0 (x64 cs)) (Version: 71.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 55.0.3 - Mozilla)
Nero 9 Essentials (HKLM-x32\...\{db9f61fb-d773-47a5-8100-fa75becdb119}) (Version:  - Nero AG)
Python 3.7.0 (Anaconda3 5.3.0 64-bit) (HKU\S-1-5-21-385703609-2784001884-2048287062-1002\...\Python 3.7.0 (Anaconda3 5.3.0 64-bit)) (Version: 5.3.0 - Anaconda, Inc.)
Python 3.7.1 (64-bit) (HKU\S-1-5-21-385703609-2784001884-2048287062-1002\...\{8a84877c-26dd-4b77-8117-80eaec80127c}) (Version: 3.7.1150.0 - Python Software Foundation)
Python 3.7.1 Add to Path (64-bit) (HKLM\...\{6846E653-89AC-47BC-8E11-FB9991EC90AA}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Core Interpreter (64-bit) (HKLM\...\{3CDB402E-5970-4DCB-8EE8-D50517AB55AE}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Development Libraries (64-bit) (HKLM\...\{61D00EE1-616D-4782-A8C5-EDD436BE9766}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Documentation (64-bit) (HKLM\...\{C66332A3-9916-4CA0-89B3-88E4F0789207}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Executables (64-bit) (HKLM\...\{C3B089F9-4BA6-45A6-91A2-C5938F8702F8}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 pip Bootstrap (64-bit) (HKLM\...\{ED677B31-8BF6-49FA-9B99-A63CD45D316A}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Standard Library (64-bit) (HKLM\...\{7627B8B4-82DD-4BD2-B33B-465E41693F0D}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Tcl/Tk Support (64-bit) (HKLM\...\{00FB4D96-77D4-4043-950E-8FA816BCAD7D}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Test Suite (64-bit) (HKLM\...\{A1CFED46-5F31-4813-A494-681BBB2B6E23}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Utility Scripts (64-bit) (HKLM\...\{96DEF82E-CD26-4AB5-A7FB-81E1B6D1DE91}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{C3A1C6B1-9096-47A7-AB5C-09114002A996}) (Version: 3.7.6501.0 - Python Software Foundation)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6738 - Realtek Semiconductor Corp.)
Samsung Kies (HKLM-x32\...\{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.1.13105_6 - Samsung Electronics Co., Ltd.) Hidden
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.1.13105_6 - Samsung Electronics Co., Ltd.)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.29.0 - SAMSUNG Electronics Co., Ltd.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.4.3.38 - Synaptics Incorporated)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{B2E25355-C24E-4E7D-8AD3-455D59810838}) (Version: 2.57.0.0 - Microsoft Corporation)
Xerox Phaser 3020 XPS (Windows 8) (HKLM-x32\...\Xerox Phaser 3020 XPS (Windows 8)) (Version: 3.03.13.02:11 - Xerox Corporation)
Xilisoft Download YouTube Video (HKU\S-1-5-21-385703609-2784001884-2048287062-1002\...\Xilisoft Download YouTube Video) (Version: 5.6.7.20170216 - Xilisoft)

Packages:
=========
Any Player -> C:\Program Files\WindowsApps\15191PeakPlayer.50533F9B98293_3.1.1.0_x64__y5c4dfz5b21fm [2019-11-26] (Any DVD &amp; Office App)
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.)
Avast Antivirus Download Center -> C:\Program Files\WindowsApps\51CA791E.AvastAntivirusDownloadCenter_1.20.6.0_x64__s1d0xtrs8dx04 [2019-12-09] (AVAST  Software)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-25] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-25] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.11052.0_x64__8wekyb3d8bbwe [2019-11-08] (Microsoft Studios) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12228.20276.0_x64__8wekyb3d8bbwe [2019-11-26] (Microsoft Corporation) [MS Ad]
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0 [2019-12-06] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-385703609-2784001884-2048287062-1002_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\info\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-385703609-2784001884-2048287062-1002_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\info\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-385703609-2784001884-2048287062-1002_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\info\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileSyncShell64.dll => No File
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-03] (AVAST Software s.r.o. -> AVAST Software)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112640 2014-07-17] () [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\info\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Anaconda3 (64-bit)\Anaconda Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> "/K" C:\Users\info\Anaconda3\Scripts\activate.bat C:\Users\info\Anaconda3

==================== Loaded Modules (Whitelisted) =============

2019-10-09 14:01 - 2019-10-09 14:01 - 000032256 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\A4.Foundation\27b7109aa9707ed6fa9b5e10f8257974\A4.Foundation.ni.dll
2019-10-09 14:01 - 2019-10-09 14:01 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\d6323dd96bd4d125c7d34a2c1a7997bd\AEM.Actions.CCAA.Shared.ni.dll
2019-10-09 14:01 - 2019-10-09 14:01 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\0dc6353bc0a338b869e21c5568c7c828\AEM.Plugin.EEU.Shared.ni.dll
2019-10-09 14:01 - 2019-10-09 14:01 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\e30a79740b716471d8f232b3152d82ca\AEM.Plugin.Hotkeys.Shared.ni.dll
2019-10-09 14:01 - 2019-10-09 14:01 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\cf53052cd44a659e68e11ac67532754c\AEM.Plugin.DPPE.Shared.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\71ec0190218020bbe58afd017ef425a4\AEM.Plugin.WinMessages.Shared.ni.dll
2019-10-09 14:01 - 2019-10-09 14:01 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\1ed1721043fa977239bdd86f73bd876d\AEM.Plugin.REG.Shared.ni.dll
2019-10-09 14:01 - 2019-10-09 14:01 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\11ef7a7d893577a5c983878836c4220b\AEM.Plugin.GD.Shared.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000013824 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\794876d53d0310dd03a1945ba2584762\AEM.Server.Shared.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000263168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server\909a15d417a93c9bda67b0060b4d2068\AEM.Server.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000056320 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Foundation\05ee47ba98052281fd871a400bc6a783\APM.Foundation.ni.dll
2019-10-09 14:05 - 2019-10-09 14:05 - 000122368 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ATICCCom\a7e02c2bb6b8bc74c554a3200c8fcc32\ATICCCom.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000199168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\ed13f3426af939e1d17ab1fd255c76f2\CCC.Implementation.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000124928 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\3c517527b2d405eaa065e94566f6610e\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\608d5d94e002be5dfa658ae2ed2748f4\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2019-10-09 14:05 - 2019-10-09 14:05 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\089933d8603a02f5989150669e0ce959\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2019-10-09 14:04 - 2019-10-09 14:04 - 000104448 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\51deb40eee9ba3846d85e7cb0995b439\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000206336 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4542c692#\260c2f33832888f8b58c69379ff84aed\CLI.Aspect.DeviceCRT.Graphics.Shared.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000130048 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\e83eef1953d5fde3847159954e3a32b8\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\2ff931c618ff39d5e1536824a640bda5\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000073216 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\dd3123a4074c6e1a2fefa8c670df113c\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2019-10-09 14:05 - 2019-10-09 14:05 - 000259584 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\e2e064fb3fd68b8aef3526bdee062e43\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000355840 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\9db597a06ac60bd1e34f054260b91e41\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2019-10-09 14:04 - 2019-10-09 14:04 - 000727552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\0ad2dde1cb33a777ea110df1ac08d91e\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000154112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a0ae52bc#\591d30129f07656857298e7c489d3209\CLI.Aspect.DeviceLCD.Graphics.Shared.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000056320 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\691deba16a7b4410ec187ad3175f0451\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000146944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.abe74207#\095ab2a3c3f9d41464d10ccfdb41d5fe\CLI.Aspect.MultiVPU2.Graphics.Shared.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000451584 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\f75ff6c8521855cec845c7d7f0064085\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ae5e117c#\02c8d164a1e4b465c20f5636cb9de7af\CLI.Aspect.DisplaysColour2.Graphics.Shared.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000018944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c5cb3396#\419856db11e67b208f61a36dc7fddf33\CLI.Aspect.CustomFormatSelection.Graphics.Dashboard.Shared.Private.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000337408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\af787d5005b2e71dab5e50013e5da5c8\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\b938f9caf01b1ea3b2dd975c54cb66ce\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000236032 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.eda8935e#\dfe31d8c97cb5f2895433bf01688d61b\CLI.Aspect.MMVideo.Graphics.Shared.ni.dll
2019-10-09 14:04 - 2019-10-09 14:04 - 000046592 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\16bb0e2f26e648e1c4933cf62385c9fc\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2019-10-09 14:04 - 2019-10-09 14:04 - 000050176 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\17b2c311dd086c1114a933ec042ac949\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2019-10-09 14:04 - 2019-10-09 14:04 - 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\a9fb5d1d33d418b72100590b92a587ce\CLI.Caste.A4.Runtime.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\6187fceb2cd044016ed0d846dab3da85\CLI.Caste.A4.Shared.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\b647780c60396daa8936547f735beddd\CLI.Caste.Fuel.Shared.ni.dll
2019-10-09 14:04 - 2019-10-09 14:04 - 000304640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\6285e9ea80b4b0fa3bc0e030fa2b6fda\CLI.Caste.Fuel.Runtime.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000038400 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\c134a9434188ed5859af77a7a4890038\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2019-10-09 14:04 - 2019-10-09 14:04 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\8ff5802794d0cdc5a60f070961850572\CLI.Caste.HydraVision.Runtime.ni.dll
2019-10-09 14:04 - 2019-10-09 14:04 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\9d5ce44a517f02aa97cc2a6aad736e1c\CLI.Caste.HydraVision.Shared.ni.dll
2019-10-09 14:04 - 2019-10-09 14:04 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\881fb4af11817905d6c9638e7a08e756\CLI.Caste.Platform.Shared.ni.dll
2019-10-09 14:04 - 2019-10-09 14:04 - 000043520 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\01f4185a1b26fcbddb342112e6b5016a\CLI.Caste.Platform.Runtime.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\8069a6fc617878a1736b98a171ed0298\CLI.Component.Runtime.Shared.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000149504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\946d6fa8f83016e6f9c2a276155d78d5\CLI.Component.Runtime.Shared.Private.ni.dll
2019-10-09 14:05 - 2019-10-09 14:05 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\c35134dcb54fb74c81d4b96b2f87b39a\CLI.Component.Runtime.Extension.EEU.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000086016 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\175eb1d70b1505f53e703cb0667a6ef4\CLI.Component.Dashboard.Shared.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\a046508c23e9ae2b79d975aee7ffa427\CLI.Foundation.Private.ni.dll
2019-10-09 14:05 - 2019-10-09 14:05 - 000060928 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\feb940d268e9b5006dd5ba00260ab1df\CLI.Foundation.XManifest.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000090624 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\38039fed67bd36935e6ec974a4a75432\CLI.Foundation.CoreAudioAPI.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\877c06914f8b80b7b1cfcf6a1d7705ad\DEM.Foundation.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000117248 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\3a97a5dd1566c4e44311dbe0f4fa650d\DEM.Graphics.I0601.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000015872 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\5e6e3ad604059c139ae62f349195660c\DEM.Graphics.ni.dll
2019-10-09 14:04 - 2019-10-09 14:04 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\a318a9f0614092ee6b94b185e6918006\Fuel.Foundation.ni.dll
2019-10-09 14:01 - 2019-10-09 14:01 - 000146432 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\bcf1bf2f2d0172d5c9d6a31e7e4b834c\LOG.Foundation.Private.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\6957f50a766f12288aab019a7090137a\LOG.Foundation.Implementation.Private.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\dcc53f6d274b8e464d54291e63b4ea32\MOM.Foundation.ni.dll
2019-10-09 14:06 - 2019-10-09 14:06 - 000391680 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\0215d8329e3ed0e9374967e74739fe26\MOM.Implementation.ni.dll
2019-10-09 14:01 - 2019-10-09 14:01 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\82a4f93ec85a3261260cd0f294ca3ad6\NEWAEM.Foundation.ni.dll
2019-10-09 14:01 - 2019-10-09 14:01 - 000890368 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\3a2a6d10822b67f2c742aa67479f8ef9\ADL.Foundation.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000250368 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Server\a689b3505ed73b57b46e07665eca7198\APM.Server.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000290816 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9b707b25#\1ec3356c15d3ded932d3e622c780ab1b\CLI.Aspect.DeviceProperty.Graphics.Runtime.ni.dll
2019-10-09 14:05 - 2019-10-09 14:05 - 000228352 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\2c44be999465d9f693fdb4fcedf64492\CLI.Component.Runtime.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000014336 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0706\80042b754f691ff39904f0e433ee9898\DEM.Graphics.I0706.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000083456 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\5ec7181b355fa277940025d2b37f3f73\DEM.Graphics.I0709.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\09a29c0423bba727e975a25d67c9ac9c\DEM.Graphics.I0712.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000018944 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\743ad54381b5d2fc4dd2d298ed244f24\DEM.Graphics.I0804.ni.dll
2019-10-09 14:05 - 2019-10-09 14:05 - 000011264 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0805\44cda6b466d2f4abe10687736f47cd0f\DEM.Graphics.I0805.ni.dll
2019-10-09 14:05 - 2019-10-09 14:05 - 000011776 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0812\c663aa09703795cf9d8e2034d3822143\DEM.Graphics.I0812.ni.dll
2019-10-09 14:04 - 2019-10-09 14:04 - 000014336 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0906\62e607c390be9ba70c32917ef49a5e28\DEM.Graphics.I0906.ni.dll
2019-10-09 14:03 - 2019-10-09 14:03 - 000014848 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0912\fcc796fbe7026acc5350173b83fb523e\DEM.Graphics.I0912.ni.dll
2019-10-09 14:04 - 2019-10-09 14:04 - 000036352 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\272eee328c11f0ef48d13fb1b9187fb1\DEM.Graphics.I1010.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 001144320 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\055f12ee067d000a1be935421b091889\Localization.Foundation.Private.ni.dll
2019-10-09 14:04 - 2019-10-09 14:04 - 003187712 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\236da7d720839b29ce0243475f87a72a\CLI.Caste.Graphics.Runtime.ni.dll
2019-10-09 14:02 - 2019-10-09 14:02 - 000332800 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\bfa2a1e06bf89c8f9005c29001e5f3d7\Microsoft.WindowsAPICodePack.ni.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-385703609-2784001884-2048287062-1002\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-385703609-2784001884-2048287062-1002\...\webcompanion.com -> hxxp://webcompanion.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-09-18 18:28 - 2019-01-04 10:17 - 000000000 _____ C:\WINDOWS\system32\drivers\etc\hosts

2017-10-11 11:40 - 2017-10-11 11:40 - 000000375 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-385703609-2784001884-2048287062-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\info\Pictures\PF2015ludvici.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "KiesTrayAgent"
HKU\S-1-5-21-385703609-2784001884-2048287062-1002\...\StartupApproved\Run: => "OneDriveSetup"
HKU\S-1-5-21-385703609-2784001884-2048287062-1002\...\StartupApproved\Run: => "KiesPreload"
HKU\S-1-5-21-385703609-2784001884-2048287062-1002\...\StartupApproved\Run: => "KiesAirMessage"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [UDP Query User{EC717147-1EAA-4BF0-927E-6DE1EADAD39E}C:\program files (x86)\smart view\smart view.exe] => (Allow) C:\program files (x86)\smart view\smart view.exe No File
FirewallRules: [TCP Query User{BF74C556-6C9E-46DF-B11D-AE24A5BB5E0A}C:\program files (x86)\smart view\smart view.exe] => (Allow) C:\program files (x86)\smart view\smart view.exe No File
FirewallRules: [{19F764C6-5756-484F-8296-E53D73AA822B}] => (Allow) C:\Program Files\Microsoft Power BI Desktop\bin\msmdsrv.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F424A0E4-2A5C-4FD7-BB7C-F5E7F7B88887}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{EF6256BF-8D74-492A-8D0F-F6DF8151991C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{44DAD6C7-CFCC-4EA5-9987-19CD56A0B3E5}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{9D9801AA-A353-4DB6-99A1-264E251D9A55}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{D18662F0-D780-45CC-BFBD-1887B33E0E7C}C:\program files (x86)\gretech\gomremote2\gomremote2.exe] => (Block) C:\program files (x86)\gretech\gomremote2\gomremote2.exe (GRETECH -> GOM & Company)
FirewallRules: [UDP Query User{90EFEF2A-0471-4898-8D35-358730245564}C:\program files (x86)\gretech\gomremote2\gomremote2.exe] => (Block) C:\program files (x86)\gretech\gomremote2\gomremote2.exe (GRETECH -> GOM & Company)
FirewallRules: [{D62B9A81-8377-498A-BFFF-C43D83441EB9}] => (Allow) C:\Program Files (x86)\GRETECH\GOMRemote2\GomRemote2.exe (GRETECH -> GOM & Company)
FirewallRules: [{A3AA1663-BF9D-411E-8E5C-7E47B0CEE95A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{DC2B8F2B-42FB-47A0-9B14-70A5A31F1D51}C:\users\info\appdata\local\jetbrains\pycharm community edition 2019.2.5\bin\pycharm64.exe] => (Allow) C:\users\info\appdata\local\jetbrains\pycharm community edition 2019.2.5\bin\pycharm64.exe (JetBrains s.r.o. -> JetBrains s.r.o.)
FirewallRules: [UDP Query User{5B3C60C4-7E5E-4544-93C4-57A3C8D8DAD0}C:\users\info\appdata\local\jetbrains\pycharm community edition 2019.2.5\bin\pycharm64.exe] => (Allow) C:\users\info\appdata\local\jetbrains\pycharm community edition 2019.2.5\bin\pycharm64.exe (JetBrains s.r.o. -> JetBrains s.r.o.)
FirewallRules: [TCP Query User{7C431E90-8C7B-4249-B147-208B4B8EF561}C:\users\info\pycharmprojects\manual-test\venv\scripts\python.exe] => (Allow) C:\users\info\pycharmprojects\manual-test\venv\scripts\python.exe (Python Software Foundation -> Python Software Foundation)
FirewallRules: [UDP Query User{288A4B1A-8C7A-400D-9741-47F8F5333307}C:\users\info\pycharmprojects\manual-test\venv\scripts\python.exe] => (Allow) C:\users\info\pycharmprojects\manual-test\venv\scripts\python.exe (Python Software Foundation -> Python Software Foundation)
FirewallRules: [{7E539324-AD45-4A21-B088-3529F89119D2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{770B89DB-0FE9-4B19-9003-42661E0BDDD8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8513F82B-A35B-4D5C-B0BF-9C363BFD4FDE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1EE8D1F8-4502-4A7D-9BE7-F4C359C4A294}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{D1390E37-E23D-41B7-94E8-8959D9E94532}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{A3A00B1C-A7C5-49A7-80A0-38B17363ABE2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{70FD0A6A-AD41-49C3-9650-D88BEFA3F924}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{ACF9A4C7-0408-49B1-AA73-CCE470657327}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.121.1654.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)

==================== Restore Points =========================

29-11-2019 13:56:16 Naplánovaný kontrolní bod
10-12-2019 10:31:00 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (12/07/2019 11:26:35 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Video.UI.exe verze 10.19101.1071.0 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 1944

Čas spuštění: 01d5ace864c27918

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe

ID hlášení: f2fb88cc-c7a7-4447-a0a9-533110a1f783

Úplný název balíčku s chybou: Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe

ID aplikace relativní podle balíčku s chybou: Microsoft.ZuneVideo

Typ zablokování: Navigation

Error: (12/07/2019 11:25:05 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program explorer.exe verze 10.0.17763.831 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 31ac

Čas spuštění: 01d5ab39ac6c7062

Čas ukončení: 0

Cesta k aplikaci: C:\Windows\explorer.exe

ID hlášení: b5c2d678-1a92-43d5-a06a-bb2a0739b5da

Úplný název balíčku s chybou: 

ID aplikace relativní podle balíčku s chybou: 

Typ zablokování: Unknown

Error: (12/04/2019 06:17:35 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Microsoft.Photos.exe verze 2019.19071.17920.0 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 355c

Čas spuštění: 01d5aac63888acba

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe

ID hlášení: 0f1213fe-0177-4c8e-b32b-edb6ed9cbf33

Úplný název balíčku s chybou: Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe

ID aplikace relativní podle balíčku s chybou: App

Typ zablokování: Quiesce

Error: (11/29/2019 08:23:35 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program firefox.exe verze 70.0.1.7242 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 3374

Čas spuštění: 01d5a4606cbe5ac3

Čas ukončení: 50

Cesta k aplikaci: C:\Program Files\Mozilla Firefox\firefox.exe

ID hlášení: 5fb6db21-453e-4ee9-89c9-5d0353f4c9e7

Úplný název balíčku s chybou: 

ID aplikace relativní podle balíčku s chybou: 

Typ zablokování: Unknown

Error: (11/22/2019 02:58:28 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program explorer.exe verze 10.0.17763.831 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: f9c

Čas spuštění: 01d59f7523156964

Čas ukončení: 0

Cesta k aplikaci: C:\Windows\explorer.exe

ID hlášení: 89904eab-1269-4ede-ab69-9085491cc6ff

Úplný název balíčku s chybou: 

ID aplikace relativní podle balíčku s chybou: 

Typ zablokování: Unknown

Error: (11/15/2019 08:26:52 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: LockApp.exe, verze: 10.0.17763.1, časové razítko: 0x5b9c5715
Název chybujícího modulu: LockApp.exe, verze: 10.0.17763.1, časové razítko: 0x5b9c5715
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000000e94d
ID chybujícího procesu: 0xe48
Čas spuštění chybující aplikace: 0x01d59ac12ba3c269
Cesta k chybující aplikaci: C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
Cesta k chybujícímu modulu: C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
ID zprávy: ecbbd990-a7fe-456e-83b2-0feccd5cd34f
Úplný název chybujícího balíčku: Microsoft.LockApp_10.0.17763.1_neutral__cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: WindowsDefaultLockScreen

Error: (11/14/2019 07:42:42 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Windows\System32\svchost.exe, identifikátor PID: 3188, identifikátor PID ProfSvc: 1568.

Error: (11/14/2019 07:42:42 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Program Files\AVAST Software\Avast\AvastSvc.exe, identifikátor PID: 2828, identifikátor PID ProfSvc: 1568.


System errors:
=============
Error: (12/12/2019 12:32:14 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Optimalizace doručení přestala během spouštění reagovat.

Error: (12/12/2019 12:26:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba RtkAudioService neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedený soubor.

Error: (12/12/2019 12:25:28 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba AppXSvc závisí na službě StateRepository, která neuspěla při spuštění v důsledku následující chyby: 
Operace byla dokončena úspěšně.

Error: (12/12/2019 12:25:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba LanmanServer neuspěla při spuštění v důsledku následující chyby: 
Služba nebyla zahájena, protože se nepodařilo přihlásit.

Error: (12/12/2019 12:25:26 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Služba LanmanServer se nemohla přihlásit jako NT AUTHORITY\SYSTEM s aktuálně konfigurovaným heslem z důvodu následující chyby:
Požadavek není podporován.


Chcete-li zajistit správnou konfiguraci služby, použijte modul snap-in Služby konzoly Microsoft Management Console (MMC).

Error: (12/12/2019 12:25:26 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba SysMain byla ukončena s následující chybou: 
Ověřovací služba není známá.

Error: (12/12/2019 12:25:24 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba iphlpsvc závisí na službě Winmgmt, která neuspěla při spuštění v důsledku následující chyby: 
Služba nebyla zahájena, protože se nepodařilo přihlásit.

Error: (12/12/2019 12:25:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba TrkWks neuspěla při spuštění v důsledku následující chyby: 
Služba nebyla zahájena, protože se nepodařilo přihlásit.


Windows Defender:
===================================
Date: 2019-06-09 08:44:31.872
Description: 
Program Antivirová ochrana v programu Windows Defender zjistil chybu při pokusu o aktualizaci modulu
Nová verze modulu: 1.1.16000.6
Předchozí verze modulu: 1.1.15900.4
Uživatel: NT AUTHORITY\SYSTEM
Kód chyby: 0x80509004
Popis chyby: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře. 

CodeIntegrity:
===================================

Date: 2019-12-10 10:24:30.027
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-12-06 09:32:22.484
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-12-05 09:32:18.156
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-11-26 18:46:04.146
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-11-21 14:12:12.630
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-11-19 14:53:12.697
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-11-11 12:41:55.326
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-11-08 11:56:16.263
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

==================== Memory info =========================== 

BIOS: Insyde Corp. 6.20 10/24/2012
Motherboard: Intel PLCSF8
Processor: Intel(R) Celeron(R) CPU 1000M @ 1.80GHz
Percentage of memory in use: 83%
Total physical RAM: 4047.22 MB
Available physical RAM: 667.95 MB
Total Virtual: 6607.22 MB
Available Virtual: 2732.16 MB

==================== Drives ================================

Drive c: (TI30983100B) (Fixed) (Total:453.56 GB) (Free:51.24 GB) NTFS

\\?\Volume{0d9abfb1-fe8e-11e1-bbb8-9f9c8df06e63}\ (System) (Fixed) (Total:0.44 GB) (Free:0.1 GB) NTFS
\\?\Volume{3455ab47-e342-4333-b3f5-1f80058e82ae}\ () (Fixed) (Total:1 GB) (Free:0.46 GB) NTFS
\\?\Volume{d2d0f7d7-351b-4a29-9672-2f9c2ac97a95}\ () (Fixed) (Total:0.44 GB) (Free:0.42 GB) NTFS
\\?\Volume{a20211a9-32f2-428b-bd3a-2595a8dc59a3}\ () (Fixed) (Total:0.34 GB) (Free:0.3 GB) NTFS
\\?\Volume{44b404fc-b960-4912-8965-87697378f84a}\ (Recovery) (Fixed) (Total:9.6 GB) (Free:0.6 GB) NTFS
\\?\Volume{0d9abfb9-fe8e-11e1-bbb8-9f9c8df06e63}\ () (Fixed) (Total:0.25 GB) (Free:0.2 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================