Fix result of Farbar Recovery Scan Tool (x64) Version: 22-12-2023
Ran by Scithey (24-12-2023 12:56:44) Run:1
Running from E:\
Loaded Profiles: Scithey
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [748624 2023-10-04] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender Security Center: Restriction <==== ATTENTION
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {B6EDE9B0-3018-47CE-B370-05CC7A1C8759} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe -auto (No File)
Task: {183475BA-90A3-4B06-ADA4-A1384F772641} - System32\Tasks\CareCenter\MTPW_Reg_HKLMRun => C:\Program Files\MiniTool Partition Wizard 12\updatechecker.exe (No File)
Task: {C82F6E26-7343-4D13-86F6-BFB1D972AA8F} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (No File)
Task: {D2503B4A-BE0E-4346-9FCC-62AC52A804A8} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe /s (No File)
Task: {A6C48F66-0001-4230-B256-AD70158C4BF2} - System32\Tasks\RTSS => C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe /s (No File)
Task: {9667B589-1DDF-425C-B1DD-19AC2E2658E2} - System32\Tasks\TaskbarX DESKTOP-TQ5KMS6Scithey => "C:\Users\Scithey\Downloads\taskbarX\TaskbarX.exe" -tbs=1 -color=0;0;0;50 -tpop=100 -tsop=100 -as=cubiceaseinout -obas=cubiceaseinout -tbr=0 -asp=300 -ptbo=0 -stbo=0 -lr=200 -oblr=400 -sr=0 -sr2=0 -sr3=0 -ftotc=1 -rzbt=1 (No File)
R2 TermService; C:\Program Files\RDP Wrapper\rdpwrap.dll [116736 2023-12-16] (Stas'M Corp.) [File not signed] <==== ATTENTION (no ServiceDLL)
ontextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll -> No File
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll -> No File
AlternateDataStreams: C:\ProgramData:gs5sys [2560]
AlternateDataStreams: C:\Users\All Users:gs5sys [2560]
AlternateDataStreams: C:\Users\Scithey:gs5sys [2560]
AlternateDataStreams: C:\Users\Scithey:Heroes & Generals [38]
AlternateDataStreams: C:\ProgramData\Data aplikac�:gs5sys [2560]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini:B1DA6C571C [3442]
AlternateDataStreams: C:\Users\Public\Documents\desktop.ini:gs5sys [3584]
AlternateDataStreams: C:\Users\Scithey\Data aplikac�:gs5sys [2560]
AlternateDataStreams: C:\Users\Scithey\Local Settings:gs5sys [2048]
AlternateDataStreams: C:\Users\Scithey\Soubory cookie:gs5sys [2816]
AlternateDataStreams: C:\Users\Scithey\�ablony:gs5sys [2048]
AlternateDataStreams: C:\Users\Scithey\Desktop\desktop.ini:gs5sys [3074]
AlternateDataStreams: C:\Users\Scithey\AppData\Local:gs5sys [2048]
AlternateDataStreams: C:\Users\Scithey\AppData\Roaming:gs5sys [2560]
AlternateDataStreams: C:\Users\Scithey\AppData\Local\Data aplikac�:gs5sys [2048]
AlternateDataStreams: C:\Users\Scithey\AppData\Local\History:gs5sys [2560]
AlternateDataStreams: C:\Users\Scithey\AppData\Local\Temp:$DATA? [16]
AlternateDataStreams: C:\Users\Scithey\Documents\desktop.ini:gs5sys [2048]

EmptyTemp:
End

*****************

Processes closed successfully.
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched" => removed successfully
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender Security Center => removed successfully

"C:\WINDOWS\system32\GroupPolicy\Machine" folder move:

C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B6EDE9B0-3018-47CE-B370-05CC7A1C8759}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B6EDE9B0-3018-47CE-B370-05CC7A1C8759}" => removed successfully
C:\WINDOWS\System32\Tasks\ACC => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ACC" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{183475BA-90A3-4B06-ADA4-A1384F772641}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{183475BA-90A3-4B06-ADA4-A1384F772641}" => removed successfully
C:\WINDOWS\System32\Tasks\CareCenter\MTPW_Reg_HKLMRun => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CareCenter\MTPW_Reg_HKLMRun" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C82F6E26-7343-4D13-86F6-BFB1D972AA8F}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C82F6E26-7343-4D13-86F6-BFB1D972AA8F}" => removed successfully
C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D2503B4A-BE0E-4346-9FCC-62AC52A804A8}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D2503B4A-BE0E-4346-9FCC-62AC52A804A8}" => removed successfully
C:\WINDOWS\System32\Tasks\MSIAfterburner => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MSIAfterburner" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A6C48F66-0001-4230-B256-AD70158C4BF2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A6C48F66-0001-4230-B256-AD70158C4BF2}" => removed successfully
C:\WINDOWS\System32\Tasks\RTSS => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RTSS" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9667B589-1DDF-425C-B1DD-19AC2E2658E2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9667B589-1DDF-425C-B1DD-19AC2E2658E2}" => removed successfully
C:\WINDOWS\System32\Tasks\TaskbarX DESKTOP-TQ5KMS6Scithey => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\TaskbarX DESKTOP-TQ5KMS6Scithey" => removed successfully
TermService => Unable to stop service.
HKLM\System\CurrentControlSet\Services\TermService => removed successfully
TermService => service removed successfully
ontextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll -> No File => Error: No automatic fix found for this entry.
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\MBAMShlExt => removed successfully
HKLM\Software\Classes\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3} => removed successfully
C:\ProgramData => ":gs5sys" ADS removed successfully
"C:\Users\All Users" => ":gs5sys" ADS not found.
C:\Users\Scithey => ":gs5sys" ADS removed successfully
C:\Users\Scithey => ":Heroes & Generals" ADS removed successfully
"C:\ProgramData\Data aplikac�" => ":gs5sys" ADS not found.
C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini => ":B1DA6C571C" ADS removed successfully
C:\Users\Public\Documents\desktop.ini => ":gs5sys" ADS removed successfully
"C:\Users\Scithey\Data aplikac�" => ":gs5sys" ADS not found.
C:\Users\Scithey\Local Settings => ":gs5sys" ADS removed successfully
C:\Users\Scithey\Soubory cookie => ":gs5sys" ADS removed successfully
"C:\Users\Scithey\�ablony" => ":gs5sys" ADS not found.
C:\Users\Scithey\Desktop\desktop.ini => ":gs5sys" ADS removed successfully
"C:\Users\Scithey\AppData\Local" => ":gs5sys" ADS not found.
C:\Users\Scithey\AppData\Roaming => ":gs5sys" ADS removed successfully
"C:\Users\Scithey\AppData\Local\Data aplikac�" => ":gs5sys" ADS not found.
C:\Users\Scithey\AppData\Local\History => ":gs5sys" ADS removed successfully
C:\Users\Scithey\AppData\Local\Temp => ":$DATA?" ADS could not remove.
C:\Users\Scithey\Documents\desktop.ini => ":gs5sys" ADS removed successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 884951168 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 1363655491 B
Windows/system/drivers => 22796046 B
Edge => 0 B
Chrome => 12427845 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 105604813 B
systemprofile32 => 105604813 B
LocalService => 105615813 B
NetworkService => 106037223 B
Scithey => 822898743 B

RecycleBin => 0 B
EmptyTemp: => 3.3 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 12:57:16 ====