﻿Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-01-2020
Ran by Pc (28-01-2020 17:20:15)
Running from C:\Users\Pc\Desktop
Windows 7 Home Premium Service Pack 1 (X64) (2019-10-10 14:01:04)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1916145272-3837400356-2705405773-500 - Administrator - Disabled)
Guest (S-1-5-21-1916145272-3837400356-2705405773-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1916145272-3837400356-2705405773-1002 - Limited - Enabled)
Pc (S-1-5-21-1916145272-3837400356-2705405773-1000 - Administrator - Enabled) => C:\Users\Pc
_ashbackuppb_ (S-1-5-21-1916145272-3837400356-2705405773-1004 - Administrator - Enabled) => C:\Users\_ashbackuppb_

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
AS: ESET Security (Enabled - Up to date) {333C65BB-8923-0EAA-C47E-C486E687BEFD}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: IObit Malware Fighter (Disabled - Up to date) {0B81F5C2-9C9F-1DB6-0BF9-02BFE6D63BAF}
AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
FW: ESET Firewall (Enabled) {B066057A-E576-007C-D591-56C163D3B33B}
FW: Avast Antivirus (Disabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

64 Bit HP CIO Components Installer (HKLM\...\{0EBC740B-4363-489B-8C27-98CE0740BA19}) (Version: 18.2.4 - Hewlett-Packard) Hidden
64 Bit HP CIO Components Installer (HKLM\...\{C788B026-20BD-4E96-B698-533F1D6C5013}) (Version: 7.2.4 - Hewlett-Packard) Hidden
Adobe Acrobat Reader DC - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-AC0F074E4100}) (Version: 19.021.20061 - Adobe Systems Incorporated)
Adobe Flash Player 32 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 32.0.0.314 - Adobe)
Ashampoo Backup Pro 12 (HKLM\...\{DF972766-050D-65AE-236E-5989116674FD}_is1) (Version: 12.05 - Ashampoo GmbH & Co. KG)
Ashampoo WinOptimizer 17.00.24 (HKLM-x32\...\Ashampoo WinOptimizer_is1) (Version: 17.00.24 - lrepacks.ru)
Aspire 9.5 (HKLM\...\AspireV95) (Version: 9.5 - Vectric)
Assessment and Deployment Kit (HKLM-x32\...\{fc46d1b2-9557-4c1f-baac-04af4d2db7e4}) (Version: 8.59.25584 - Microsoft Corporation)
Audacity 2.1.2 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team)
Avast Internet Security (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software)
Avast SecureLine VPN (HKLM\...\{2CD3C92F-EDC5-4B02-9B0A-9C1D37C58EF5}_is1) (Version: 5.5.522 - AVAST Software)
BurnAware Free 6.2 (HKLM-x32\...\BurnAware Free_is1) (Version:  - Burnaware)
CCleaner (HKLM\...\CCleaner) (Version: 5.63 - Piriform)
CorelDRAW Graphics Suite X3 (HKLM-x32\...\{7C5123A9-30A8-4C44-89CA-A8C87A1FCC91}) (Version: 13.0 - Corel Corporation)
Cut2D Desktop 10.0 (HKLM\...\Cut2D DesktopV100) (Version: 10.0 - Vectric)
Cut2D Desktop 9.0 (HKLM\...\Cut2D DesktopV90) (Version: 9.0 - Vectric)
CZ (HKLM-x32\...\{CCF7074B-BE72-44E1-9CAC-3FFAC582C692}) (Version: 13.0 - Corel Corporation) Hidden
eM Client (HKLM-x32\...\{1450D779-8650-468B-9136-CA836C0A744C}) (Version: 7.2.36908.0 - eM Client Inc.)
ESET Security (HKLM\...\{0A7D63B6-E4B2-4AA4-A5A4-8A9889E91546}) (Version: 13.0.24.0 - ESET, spol. s r.o.)
EvidenciaHnojiv (HKU\S-1-5-21-1916145272-3837400356-2705405773-1000\...\77a08e13803b7bb1) (Version: 2.0.0.84 - ÚKSÚP)
FIRM! (HKLM-x32\...\FIRM!_is1) (Version:  - hxxp://swuzel.sweb.cz/firm)
FontNav (HKLM-x32\...\{4E98F23B-1328-4322-A6EC-2EDC8FC3A4FE}) (Version: 5.0 - Corel Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 79.0.3945.130 - Google LLC)
Google Toolbar for Internet Explorer (HKLM-x32\...\{18455581-E099-4BA8-BC6B-F34B2F06600C}) (Version: 1.0.0 - Google Inc.) Hidden
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.8231.2252 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.421 - Google LLC) Hidden
HD Tune Pro 5.75 (HKLM-x32\...\HD Tune Pro_is1) (Version:  - EFD Software)
HP LaserJet Professional M1530 MFP Series (HKLM-x32\...\{74280B5D-A0AF-46c5-9C85-D9EA078262F1}) (Version:  - Hewlett-Packard)
HP LJ M1530 MFP Series HP Scan (HKLM-x32\...\{C05002F1-06F8-4A15-B6F8-E4DC655C28AA}) (Version: 1.0.302.0 - Hewlett-Packard Co.)
HP Update (HKLM-x32\...\{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}) (Version: 5.002.006.003 - Hewlett-Packard)
HPLaserJetHelp_LearnCenter (HKLM-x32\...\{B2AA0F22-E167-4C4A-BAE2-E0025028E61B}) (Version: 1.02.0000 - Hewlett-Packard)
HPLJUT (HKLM-x32\...\{229D6185-BD7E-494B-A73B-C5215BE0690E}) (Version: 1.00.0012 - HP) Hidden
hppFaxDrvM1530 (HKLM-x32\...\{FD575F8B-6141-455A-8AE5-F2D2E08520FC}) (Version: 003.000.00001 - Hewlett-Packard) Hidden
hppFaxUtilityM1530 (HKLM-x32\...\{C462F75B-9A35-4A84-AE52-E8C9112AAE87}) (Version: 000.002.00001 - Hewlett-Packard) Hidden
hppLaserJetService (HKLM-x32\...\{4006E354-3D24-49BA-A36F-7EB75D50D575}) (Version: 002.015.00599 - Hewlett-Packard) Hidden
hppM1530LaserJetService (HKLM-x32\...\{A1D53426-D6F3-4886-A72B-E1A8C82259E9}) (Version: 001.008.00477 - Hewlett-Packard) Hidden
hppSendFaxM1530 (HKLM-x32\...\{865E1902-B6FE-4AF0-B61D-A82EBC53569E}) (Version: 003.000.00001 - Hewlett-Packard) Hidden
hppTLBXFXM1530 (HKLM-x32\...\{9112FEA9-0F64-453C-BEA5-9A782F87EDAA}) (Version: 001.012.00948 - Hewlett-Packard) Hidden
hpzTLBXFX (HKLM-x32\...\{A3A18593-62BE-4AE1-AF3F-E35179CF042E}) (Version: 006.015.01163 - Hewlett-Packard) Hidden
I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2993 - Intel Corporation)
Internet Download Manager (HKLM-x32\...\Internet Download Manager) (Version:  - Tonec Inc.)
IObit Malware Fighter 7 (HKLM-x32\...\IObit Malware Fighter_is1) (Version: 7.2.0.5748 - IObit)
IObit Software Updater (HKLM-x32\...\IObit Software Updater_is1) (Version: 2.2.0.2729 - IObit)
IObit Uninstaller 9 (HKLM-x32\...\IObitUninstall) (Version: 9.2.0.16 - IObit)
Kits Configuration Installer (HKLM-x32\...\{E14DDED2-919B-FCCB-84AC-5ABB6D182D46}) (Version: 8.59.25584 - Microsoft) Hidden
Microsoft .NET Framework 4.8 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1916145272-3837400356-2705405773-1000\...\OneDriveSetup.exe) (Version: 19.222.1110.0006 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.21.27702 (HKLM-x32\...\{f4220b74-9edd-4ded-bc8b-0342c1e164d8}) (Version: 14.21.27702.2 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.21.27702 (HKLM-x32\...\{49697869-be8e-427d-81a0-c334d1d14950}) (Version: 14.21.27702.2 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.0 (HKLM-x32\...\{3898934B-05AE-41CD-96BE-70DA9BFBCE1F}) (Version: 3.0.11010.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Moje Auto 2016 (HKLM-x32\...\{2C68892B-1C92-44D6-8925-92297EC03383}_is1) (Version: 20.0.0.0 - Vyrobil Jan Trojak)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
NEC Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\{D7BF9739-8A68-4335-BBEE-37752AD9E86B}) (Version: 1.0.17.0 - NEC Electronics Corporation) Hidden
NEC Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B}) (Version: 1.0.17.0 - NEC Electronics Corporation)
Nezmeškaj (HKU\S-1-5-21-1916145272-3837400356-2705405773-1000\...\Nezmeškej) (Version: "3.9.5" - )
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
ProfiCAD 8.4.1 (HKLM-x32\...\ProfiCAD_is1) (Version:  - )
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.88.617.2014 - Realtek)
Smart Defrag 6 (HKLM-x32\...\Smart Defrag_is1) (Version: 6.4.0 - IObit)
Toolkit Documentation (HKLM-x32\...\{AB1F3428-D2C6-895F-1966-BA55647B40D8}) (Version: 8.59.25584 - Microsoft) Hidden
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.50 - Ghisler Software GmbH)
TranscendElite version 3.5.0 (HKLM-x32\...\{9BD0C0A0-1DCE-49BF-841F-668D010F605A}_is1) (Version: 3.5.0 - Transcend Information, Inc.)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update Manager (HKLM-x32\...\{F428D0FB-765D-40EB-BDD8-A1E7F5C597FA}) (Version: 4.60 - Corel Corporation) Hidden
UsbFix Anti-Malware Premium (HKLM-x32\...\Usbfix) (Version: 11.0.2.2 - SOSVirus (SOSVirus.Net))
VBA (HKLM-x32\...\{C94E45B0-6AA6-4FB9-9AAE-22085F631880}) (Version: 6.2 - Corel Corporation) Hidden
Vectric Shell Extensions 1.2 (HKLM-x32\...\VectricThumbnailShellExt) (Version:  - Vectric)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.8 - VideoLAN)
VTransfer (HKLM\...\VTransfer) (Version: 2.0 - Vectric)
Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation)
WinRAR 5.80 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.80.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [			IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2019-05-02] (Tonec Inc. -> Tonec Inc.)
ShellIconOverlayIdentifiers: [                    IMFSafeBox] -> {0BB81440-5F42-4480-A5F7-770A6F439FC8} => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2019-07-30] (IObit Information Technology -> IObit)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-23] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-23] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-12-19] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [IObit Malware Fighter] -> {0BB81440-5F42-4480-A5F7-770A6F439FC8} => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2019-07-30] (IObit Information Technology -> IObit)
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2019-07-30] (IObit Information Technology -> IObit)
ContextMenuHandlers1: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\Windows\System32\IObitSmartDefragExtension.dll [2019-09-12] (IObit Information Technology -> IObit)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-12-19] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-23] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers4: [IObit Malware Fighter] -> {0BB81440-5F42-4480-A5F7-770A6F439FC8} => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2019-07-30] (IObit Information Technology -> IObit)
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2019-07-30] (IObit Information Technology -> IObit)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2019-10-13] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-23] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-12-19] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [IObit Malware Fighter] -> {0BB81440-5F42-4480-A5F7-770A6F439FC8} => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2019-07-30] (IObit Information Technology -> IObit)
ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2019-07-30] (IObit Information Technology -> IObit)
ContextMenuHandlers6: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\Windows\System32\IObitSmartDefragExtension.dll [2019-09-12] (IObit Information Technology -> IObit)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]

==================== Loaded Modules (Whitelisted) =============

2019-10-11 11:41 - 2019-10-11 11:41 - 093837312 _____ () [File not signed] C:\Program Files (x86)\eM Client\libcef\libcef.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000256512 _____ () [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\jsoncpp.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000052224 _____ () [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\lzma.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000111616 _____ () [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\minizip.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000250880 _____ () [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\party.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000581632 _____ () [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\sqlite.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000083456 _____ () [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\zdll.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000080896 _____ () [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\ziputil.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000026112 _____ () [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\zlibutil.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 001071616 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\HTMLEditorControl\d24ad79b5a6c03544d56166a832a1600\HTMLEditorControl.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000588288 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\LinqBridge\c54b233761da629ebaf29404b8d8b68c\LinqBridge.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000167424 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.1d52ed9e#\c554b7d7371d159f8a18256f82726a4a\MailClient.Collections.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000664576 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.1fd7a4e5#\f5db727079cc0033eeb9690abca4be61\MailClient.Storage.Mail.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000030720 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.1fe73d22#\4e60982b993d712a67e6e384ca5d8b58\MailClient.Storage.Rule.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000080384 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.2d2de33e#\e02f36dc6c2cc53a53ce5e6ebebee952\MailClient.HtmlConversion.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 000036864 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.319ca19c#\ccd3583952e4171910eb6859fe81704d\MailClient.Storage.Template.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 000075264 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.348c65cc#\28617c4e93020170cfbea05a7b911ed3\MailClient.Protocols.Pop3.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 000088064 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.348e0a4a#\2002b5a96f95f013b7100fbd8a6611a1\MailClient.Protocols.Smtp.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 001004032 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.3497b425#\1c525d1f75f7951d9ed393378454e5ad\MailClient.Protocols.Imap.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 000031744 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.4824fbfc#\f96dce5bc62ff2b89b90f5b7a3b4d13c\MailClient.Storage.Category.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000162304 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.4e7296db#\61e64e464805429dbfd1b2538343c0d4\MailClient.Authentication.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000053248 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.5331ec95#\0a4dd132216744f2fbfbed0f4c01289a\MailClient.Storage.Attachment.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000399360 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.6df617c9#\c7a7a8949769491aa1808574f1d4f9bd\MailClient.Storage.Schedule.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000051712 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.93969d60#\5a4f6b57fd73ce4667fcf919b8450c0b\MailClient.HtmlOperations.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000091136 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.9a79bc48#\a0023d2a73704f3537da9c7f597c8974\MailClient.Storage.IM.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000027136 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.a758b3a0#\3f8a8af3fa1dfab0778fd2a4d7eb4887\MailClient.Storage.Widget.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 002309632 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Accounts\50a55e28bd8e40c374f5c6b4122c6777\MailClient.Accounts.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000608256 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Avatar\3c265b329d93fc120fd951ab7a5e3c83\MailClient.Avatar.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000119296 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.b2c914c9#\4b4f070f26cd1622e9c49554a7a95b03\MailClient.Storage.Folders.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 000387584 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.bc15bd4c#\a1fe26fa1fa83d5a806b9a0185525594\MailClient.Protocols.Jabber.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 000027136 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.c3eb0b89#\862c2d177af1d544954a128570c5e682\MailClient.Storage.Snippet.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 000517120 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.c7b0cd67#\bde984fa56be53c548d0842a61f5565c\MailClient.Protocols.Gdata.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000048640 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Commands\a04778719b52f8d6e93fa83aff428754\MailClient.Commands.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 004530176 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Common.UI\0c8e7d7b5daf6e92be33ee15bb3da15d\MailClient.Common.UI.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000287744 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Contact\efe438aa06cc4c13d0411a75b1029efa\MailClient.Contact.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 001060864 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.d5b8df6b#\993194cec5037c251f4d2beaf6036f4e\MailClient.Protocols.Exchange.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000117760 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.d7176fba#\2428a3f6292d89bdca1f4c24a4fbecfe\MailClient.ErrorReporter.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 000041472 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.d8481e79#\b0c9e729c18c034bd6d74e2fa6273d01\MailClient.Storage.Certificate.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000313344 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.f2c61d2c#\0a817f936faf990d5444bd3f90827173\MailClient.Storage.Contact.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000020992 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.ff7bbfa2#\2bc002f60f60f8b4b9765d45437222e6\MailClient.Attachment.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000023040 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.IM\648a7161780d100adf6acc2b5080416e\MailClient.IM.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 000265728 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Imap.Base\9a0afb14e8f5d4fc85e9b695ed631e7f\MailClient.Imap.Base.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000043520 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Import\2d49c81c73bd57622d9a7208e5039371\MailClient.Import.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000020480 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Interop\c03aae689dd1ca2149664cf603c0f389\MailClient.Interop.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000467968 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Mail\59f125676b8efa4db77a00e854dc631f\MailClient.Mail.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000830464 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Protocols\e53346900c547a34ce3a31a30d3bb4eb\MailClient.Protocols.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000675840 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Schedule\8d4ef982ec50194285dcdae45e963b88\MailClient.Schedule.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000595968 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Storage\eb2e31f8ab3abb694e5536b0539ffe82\MailClient.Storage.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000112640 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Streams\e2b11fd6b6ac66b074f7bba07ec765d0\MailClient.Streams.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000070656 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Threading\f0de328ff959f4516f638fbfd026229e\MailClient.Threading.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000541696 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.VObject\3a95af7f8523de8c95afbd3eb1701cd1\MailClient.VObject.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000027136 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\MailClient.Widget\f1c43aa56de9fb7965540e11b44bb3a4\MailClient.Widget.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000168448 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Sd25cd4a4#\2a28e52e9d54b5577775a2d345653634\Microsoft.Search.Interop.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000084992 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\SystemCoreTimeZone\8a2a9b730c3ebf0b4fb68e31c112f944\SystemCoreTimeZone.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000227328 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\WinApi\7b80a431abdc832df699fbba8092867c\WinApi.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 001583616 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsAPICodePack\4760947b82cf568378c2a58de1bc5327\WindowsAPICodePack.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000079872 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\Xilium.CefG0f485e28#\f8125f289b3238dccc997326fa150d9d\Xilium.CefGlue.WindowsForms.ni.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 002795520 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\Xilium.CefGlue\374d252b44c26a50c8b4165590933f69\Xilium.CefGlue.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 001761792 _____ (Cursive Systems, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\jabber-net\51c7159854d83320e71100a8b9343196\jabber-net.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 000119808 _____ (Google Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\Google.GDat88526e68#\dcd95ca2e62e9fd154e2e9bff31e0cdb\Google.GData.Contacts.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 000686080 _____ (Google Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\Google.GData.Client\54172f8ac785fae821a46e992882fecb\Google.GData.Client.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 000250368 _____ (Google Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\Google.GDatc9e696b1#\45d615d390bcad8b6d2e26ef2a8a0821\Google.GData.Extensions.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 001837056 _____ (Google Inc) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\Google.Apis\529f94a59b1f0ea777464e04db8d7f95\Google.Apis.ni.dll
2009-09-16 17:44 - 2009-09-16 17:44 - 000153088 _____ (Hewlett Packard) [File not signed] C:\Windows\System32\hptcpmib.dll
2009-09-16 17:45 - 2009-09-16 17:45 - 000331264 _____ (Hewlett Packard) [File not signed] C:\Windows\System32\HpTcpMon.dll
2009-09-16 10:44 - 2009-09-16 10:44 - 000132096 _____ (Hewlett Packard) [File not signed] C:\Windows\System32\hpzjrd01.dll
2010-10-25 13:53 - 2010-10-25 13:53 - 000037376 _____ (Hewlett-Packard Company) [File not signed] C:\Program Files (x86)\HP\HPLaserJetService\HPHTTPProxy.dll
2010-10-25 13:53 - 2010-10-25 13:53 - 000073728 _____ (Hewlett-Packard Company) [File not signed] C:\Program Files (x86)\HP\HPLaserJetService\HPTools.dll
2010-10-25 13:53 - 2010-10-25 13:53 - 001113600 _____ (Hewlett-Packard Company) [File not signed] C:\Program Files (x86)\HP\HPLaserJetService\LEDMXMLObjects.dll
2014-11-17 10:43 - 2014-11-17 10:43 - 000050688 _____ (Hewlett-Packard) [File not signed] c:\windows\system32\hpzinw12.dll
2014-11-17 10:43 - 2014-11-17 10:43 - 000066048 _____ (Hewlett-Packard) [File not signed] c:\windows\system32\hpzipm12.dll
2010-10-25 13:53 - 2010-10-25 13:53 - 000032768 _____ (HP) [File not signed] C:\Program Files (x86)\HP\HPLaserJetService\HPServiceCommunicator.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 001121280 _____ (hxxps://system.data.sqlite.org/) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.SQLite\cef9fcdfa833fa58c09333efb5738ef1\System.Data.SQLite.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 000344064 _____ (Ivan Akcheurov) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\IvanAkcheur7ace2bcd#\ad930c9d43f59ab55673a3f1428273c2\IvanAkcheurov.NTextCat.Lib.ni.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 000334336 _____ (Ivan Akcheurov) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\IvanAkcheurda66b2d7#\04e4a12605d16774d32aa6089ebb74d3\IvanAkcheurov.NClassify.ni.dll
2009-08-18 11:24 - 2009-08-18 11:24 - 000167424 _____ (Microsoft Corporation) [File not signed] C:\Program Files\Common Files\Microsoft Shared\Windows Live\sqmapi.dll
2019-03-27 22:48 - 2019-03-27 22:48 - 000115200 _____ (Microsoft Corporation) [File not signed] C:\Windows\Microsoft.Net\assembly\GAC_32\System.EnterpriseServices\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
2009-09-16 17:45 - 2009-09-16 17:45 - 000317440 _____ (Microsoft Corporation) [File not signed] C:\Windows\System32\HPTcpMUI.dll
2020-01-15 19:31 - 2020-01-15 19:31 - 000249344 _____ (Microsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\SgmlReader\24e8e325253fbe745253c29068c7a2c0\SgmlReader.ni.dll
2009-10-21 11:12 - 2009-10-21 11:12 - 000086016 _____ (NEC Electronics Corporation) [File not signed] C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 001615872 _____ (Newtonsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\Newtonsoft.58a71267#\568901a9ed46be2d40e2607e1a29e44d\Newtonsoft.Json.Net20.ni.dll
2019-10-11 11:39 - 2019-10-11 11:39 - 000840078 _____ (SQLite Development Team) [File not signed] C:\Program Files (x86)\eM Client\SQLite\x86\sqlite3.dll
2019-10-17 18:10 - 2018-06-27 09:58 - 002135040 _____ (The curl library, hxxps://curl.haxx.se/) [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\ash_libcurl.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000353792 _____ (The curl library, hxxps://curl.haxx.se/) [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\libcurl.dll
2019-10-11 11:41 - 2019-10-11 11:41 - 000729600 _____ (The Chromium Authors) [File not signed] C:\Program Files (x86)\eM Client\libcef\chrome_elf.dll
2020-01-15 19:32 - 2020-01-15 19:32 - 003652608 _____ (The Legion of the Bouncy Castle Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_32\BouncyCastle.OpenPgp\98f7c1156f87563653049187bf196aa9\BouncyCastle.OpenPgp.ni.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 001966080 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\LIBEAY32.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000354816 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\SSLEAY32.dll
2019-10-24 18:23 - 2018-09-07 08:07 - 002095104 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\AVAST Software\SecureLine VPN\libcrypto-1_1.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000172544 _____ (wxWidgets development team) [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\wxbase310u_net_vc_ox.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 002276352 _____ (wxWidgets development team) [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\wxbase310u_vc_ox.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000173056 _____ (wxWidgets development team) [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\wxbase310u_xml_vc_ox.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 001538560 _____ (wxWidgets development team) [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\wxmsw310u_adv_vc_ox.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 005491200 _____ (wxWidgets development team) [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\wxmsw310u_core_vc_ox.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000707584 _____ (wxWidgets development team) [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\wxmsw310u_html_vc_ox.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000122880 _____ (wxWidgets development team) [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\wxmsw310u_webview_vc_ox.dll
2019-10-17 18:10 - 2019-03-12 10:49 - 000866304 _____ (wxWidgets development team) [File not signed] C:\Program Files\Ashampoo\Ashampoo Backup Pro 12\bin\wxmsw310u_xrc_vc_ox.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service"

==================== Association (Whitelisted) =================

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKU\S-1-5-21-1916145272-3837400356-2705405773-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.reg\UserChoice => regfile

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> %CommonProgramFiles%\Microsoft Shared\Windows Live;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\
HKU\S-1-5-21-1916145272-3837400356-2705405773-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Pc\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 1) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Avast SecureLine VPN.lnk => C:\Windows\pss\Avast SecureLine VPN.lnk.CommonStartup
MSCONFIG\startupreg: IObit Malware Fighter => "C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" /autostart
MSCONFIG\startupreg: Namedate => 

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{F5EACEFC-EF54-43C5-81FF-99E72B9D220E}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{E3E55AE6-F586-48EA-8AFE-26DA4DD4FA09}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{2D2B61BC-ED8C-4894-B600-B184CE31A726}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

21-01-2020 07:17:15 Windows Update
24-01-2020 07:42:57 Windows Update

==================== Faulty Device Manager Devices ============

Name: Intel(R) Management Engine Interface
Description: Intel(R) Management Engine Interface
Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel
Service: HECIx64
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: avast! SecureLine TAP Adapter v3
Description: avast! SecureLine TAP Adapter v3
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: TAP-Windows Provider V9
Service: aswTap
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: ========================

Application errors:
==================
Error: (01/28/2020 04:30:05 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (01/28/2020 04:30:05 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (01/28/2020 04:25:42 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (01/28/2020 02:52:55 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (01/28/2020 02:52:55 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (01/28/2020 02:47:29 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.

Error: (01/28/2020 02:14:28 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (01/28/2020 02:14:28 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.


System errors:
=============
Error: (01/28/2020 04:25:29 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Advanced SystemCare Service 13 zlyhalo kvôli nasledujúcej chybe: 
Systém nemôže nájsť zadaný súbor.

Error: (01/28/2020 04:25:23 PM) (Source: HECIx64) (EventID: 3) (User: )
Description: Intel(R) Management Engine Interface driver has failed to perform handshake with the Firmware.

Error: (01/28/2020 04:22:59 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Live ID Sign-in Assistant sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 10000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (01/28/2020 04:22:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba HP LaserJet Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (01/28/2020 04:22:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Ashampoo Backup Pro sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (01/28/2020 04:22:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (01/28/2020 02:47:16 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Advanced SystemCare Service 13 zlyhalo kvôli nasledujúcej chybe: 
Systém nemôže nájsť zadaný súbor.

Error: (01/28/2020 02:47:14 PM) (Source: HECIx64) (EventID: 3) (User: )
Description: Intel(R) Management Engine Interface driver has failed to perform handshake with the Firmware.


Windows Defender:
===================================
Date: 2020-01-28 16:32:50.596
Description: 
Windows Defender has encountered an error trying to update the engine.
New Engine Version:1.1.16600.7
Previous Engine Version:1.1.6402.0
Update Source:Signature Update Folder
Error Code:0x8050800c
Error description:Vyskytol sa neočakávaný problém. Nainštalujte všetky dostupné aktualizácie a potom znova skúste spustiť program. Informácie o inštalácii programov nájdete v Pomoci a technickej podpore. 

Date: 2020-01-28 16:27:48.658
Description: 
Windows Defender has encountered an error trying to update the engine.
New Engine Version:1.1.16600.7
Previous Engine Version:1.1.6402.0
Update Source:Signature Update Folder
Error Code:0x8050800c
Error description:Vyskytol sa neočakávaný problém. Nainštalujte všetky dostupné aktualizácie a potom znova skúste spustiť program. Informácie o inštalácii programov nájdete v Pomoci a technickej podpore. 

Date: 2020-01-28 14:54:38.234
Description: 
Windows Defender has encountered an error trying to update the engine.
New Engine Version:1.1.16600.7
Previous Engine Version:1.1.6402.0
Update Source:Signature Update Folder
Error Code:0x8050800c
Error description:Vyskytol sa neočakávaný problém. Nainštalujte všetky dostupné aktualizácie a potom znova skúste spustiť program. Informácie o inštalácii programov nájdete v Pomoci a technickej podpore. 

Date: 2020-01-28 14:49:36.003
Description: 
Windows Defender has encountered an error trying to update the engine.
New Engine Version:1.1.16600.7
Previous Engine Version:1.1.6402.0
Update Source:Signature Update Folder
Error Code:0x8050800c
Error description:Vyskytol sa neočakávaný problém. Nainštalujte všetky dostupné aktualizácie a potom znova skúste spustiť program. Informácie o inštalácii programov nájdete v Pomoci a technickej podpore. 

Date: 2020-01-28 14:16:58.551
Description: 
Windows Defender has encountered an error trying to update the engine.
New Engine Version:1.1.16600.7
Previous Engine Version:1.1.6402.0
Update Source:Signature Update Folder
Error Code:0x8050800c
Error description:Vyskytol sa neočakávaný problém. Nainštalujte všetky dostupné aktualizácie a potom znova skúste spustiť program. Informácie o inštalácii programov nájdete v Pomoci a technickej podpore. 

==================== Memory info =========================== 

BIOS: Award Software International, Inc. F4 08/20/2010
Motherboard: Gigabyte Technology Co., Ltd. H55M-S2
Processor: Intel(R) Core(TM) i3 CPU 550 @ 3.20GHz
Percentage of memory in use: 52%
Total physical RAM: 8055.49 MB
Available physical RAM: 3825.05 MB
Total Virtual: 16109.13 MB
Available Virtual: 11866.79 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:238.37 GB) (Free:96.29 GB) NTFS
Drive e: (2 T ) (Fixed) (Total:1863.01 GB) (Free:1278.78 GB) NTFS
Drive f: (Nový zväzok) (Fixed) (Total:931.51 GB) (Free:334.12 GB) NTFS

\\?\Volume{fb63ca26-eb65-11e9-939b-806e6f6e6963}\ (Vyhradené systémom) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: 66D890B8)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 238.5 GB) (Disk ID: 291AB96B)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=238.4 GB) - (Type=07 NTFS)

==========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 2ED953EB)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================