Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13.01.2018 01 Ran by Administrator2 (13-01-2018 17:06:46) Running from C:\Users\eclipse\Downloads Windows 8.1 Pro N (Update) (X64) (2016-01-03 10:35:05) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= *censored* ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov) ACA & MEP 2016 Object Enabler (HKLM\...\{5783F2D7-F004-0000-5102-0060B0CE6BBA}) (Version: 7.8.41.0 - Autodesk) Hidden Adobe Flash Player 27 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 27.0.0.187 - Adobe Systems Incorporated) Apache Tomcat 8.5 Tomcat8 (remove only) (HKLM\...\Apache Tomcat 8.5 Tomcat8) (Version: 8.5.11 - ) Aplikacja na pulpit firmy Autodesk (HKLM-x32\...\Autodesk Desktop App) (Version: 7.0.5.154 - Autodesk) Atmel Driver Files (HKLM-x32\...\{EC56D7CE-0A98-4282-B8E5-2DA69C562AA9}) (Version: 7.0.14 - Atmel Corporation) Atmel LibUSB0 Driver (x64) (HKLM\...\{C1F86585-CDAC-4ABE-B163-161DDBCC4332}) (Version: 7.0.125 - Atmel) Atmel Segger USB Drivers (501e) (HKLM-x32\...\{156C0C95-4DDE-4F88-97A0-5EEE22269CE3}) (Version: 7.0.417 - Atmel) Atmel WinDriver (HKLM-x32\...\{FAF2A9D1-33C8-48FF-8FD5-20075A53AB9C}) (Version: 7.0.23 - Atmel) Atmel WinUSB (HKLM-x32\...\{22D3C72E-42F9-4B0F-B331-E0AA134ADF76}) (Version: 6.2.32 - Atmel) AutoCAD 2016 (HKLM\...\{5783F2D7-F001-0000-0102-0060B0CE6BBA}) (Version: 20.1.107.0 - Autodesk) Hidden AutoCAD 2016 Language Pack – Polski (Polish) (HKLM\...\{5783F2D7-F001-0415-1102-0060B0CE6BBA}) (Version: 20.1.49.0 - Autodesk) Hidden AutoCAD Mechanical 2016 - English (HKLM\...\{5783F2D7-F005-0000-0102-0060B0CE6BBA}) (Version: 20.0.104.0 - Autodesk) Hidden AutoCAD Mechanical 2016 - Polski (Polish) (HKLM\...\{5783F2D7-F005-0415-2102-0060B0CE6BBA}) (Version: 20.0.46.0 - Autodesk) Hidden AutoCAD Mechanical 2016 Language Pack - Polski (Polish) (HKLM\...\{5783F2D7-F005-0415-1102-0060B0CE6BBA}) (Version: 20.0.46.0 - Autodesk) Hidden AutoCAD Mechanical 2016 Private (HKLM\...\{5783F2D7-F005-0000-3102-0060B0CE6BBA}) (Version: 20.0.46.0 - Autodesk) Hidden Autodesk Advanced Material Library Image Library 2016 (HKLM-x32\...\{94AD53E7-493B-4291-8714-7A3B761D2783}) (Version: 6.3.0.15 - Autodesk) Autodesk AutoCAD 2016 Hotfix 3 (HKLM\...\AutoCAD 2016 Hotfix 4) (Version: - Autodesk) Autodesk AutoCAD 2016 Hotfix 4 (HKLM\...\AutoCAD 2016 Hotfix 5) (Version: 20.1.107.19 - Autodesk) Autodesk AutoCAD 2016 SP 1 (HKLM\...\AutoCAD 2016 SP1) (Version: 20.1.107.0 - Autodesk) Autodesk AutoCAD Mechanical 2016 - Polski (Polish) (HKLM\...\AutoCAD Mechanical 2016 - Polski (Polish)) (Version: 20.0.46.0 - Autodesk) Autodesk AutoCAD Mechanical 2016 SP 1 (HKLM\...\AutoCAD Mechanical 2016 - English SP1) (Version: 20.0.104.0 - Autodesk) Autodesk Configurator 360 addin (HKLM-x32\...\{563941AA-C055-4FAA-8B04-A4E024A61F7E}) (Version: 20.0.10300 - Autodesk) Autodesk Content Service (HKLM\...\{A37CDB58-AAE8-0000-8C13-E0F7BACB0D5F}) (Version: 3.2.0.0 - Autodesk) Hidden Autodesk Content Service (HKLM\...\Autodesk Content Service) (Version: 3.2.0.0 - Autodesk) Autodesk Content Service Language Pack (HKLM\...\{A37CDB58-AAE8-0001-8C13-E0F7BACB0D5F}) (Version: 3.2.0.0 - Autodesk) Hidden Autodesk Design Review 2013 (HKLM-x32\...\{153DB567-6FF3-49AD-AC4F-86F8A3CCFDFB}) (Version: 13.0.0.82 - Autodesk, Inc.) Hidden Autodesk Design Review 2013 (HKLM-x32\...\Autodesk Design Review 2013) (Version: 13.0.0.82 - Autodesk, Inc.) Autodesk DWG TrueView 2016 - English (HKLM\...\DWG TrueView 2016 - English) (Version: 20.1.49.0 - Autodesk) Autodesk Inventor 2016 Revit Interoperability IFC (HKLM\...\{4AC84EF6-2016-4CF7-1111-D0772F249DFE}) (Version: 1.0.0.0 - Autodesk) Hidden Autodesk Inventor Content Center Libraries 2016 (Desktop Content) (HKLM\...\{B46DECD1-2064-4EF1-0000-22D71E81877C}) (Version: 20.0.13800.0000 - Autodesk) Autodesk Inventor Professional 2016 - Polski (Polish) (HKLM\...\Autodesk Inventor Professional 2016) (Version: 20.2.23600.0000 - Autodesk) Autodesk Inventor Professional 2016 (HKLM\...\{7F4DD591-2064-0001-0000-7107D70F3DB4}) (Version: 20.2.23600.0000 - Autodesk) Hidden Autodesk Inventor Professional 2016 Language Pack - Polski (Polish) (HKLM\...\{7F4DD591-2064-0001-1045-7107D70F3DB4}) (Version: 20.1.21000.0000 - Autodesk) Hidden Autodesk Inventor Professional 2016 Language Pack - Polski (Polish) SP1 (HKLM\...\Autodesk Inventor Professional 2016 Language Pack - Polski (Polish) SP1) (Version: 20.1.21000.0000 - Autodesk) Hidden Autodesk Inventor Professional 2016 SP1 (HKLM\...\Autodesk Inventor Professional 2016 SP1) (Version: 20.1.21000.0000 - Autodesk) Autodesk Inventor Professional 2016 SP2 (HKLM\...\Autodesk Inventor Professional 2016 SP2) (Version: 20.2.23600.0000 - Autodesk) Autodesk Material Library 2016 (HKLM-x32\...\{29A7D6EC-63C2-42FD-8143-5812ABD2923F}) (Version: 6.3.0.15 - Autodesk) Autodesk Material Library Base Resolution Image Library 2016 (HKLM-x32\...\{6B4CFC6E-ECB0-47FE-95D3-65C680ED0687}) (Version: 6.3.0.15 - Autodesk) Autodesk Material Library Low Resolution Image Library 2016 (HKLM-x32\...\{FA5DF4D1-CD59-4183-B3D4-779A56498786}) (Version: 6.3.0.15 - Autodesk) Autodesk Revit Interoperability for Inventor 2016 (HKLM\...\{0BB716E0-1600-0210-0000-097DC2F354DF}) (Version: 16.0.421.0 - Autodesk) Hidden Autodesk Revit Interoperability for Inventor 2016 (HKLM\...\Autodesk Revit Interoperability for Inventor 2016) (Version: 16.0.421.0 - Autodesk) Bullzip PDF Printer 10.24.0.2543 (HKLM\...\Bullzip PDF Printer_is1) (Version: 10.24.0.2543 - Bullzip) ConvertHelper 3.2 (HKLM\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF52}}_is1) (Version: - DownloadHelper) DPlot Graph Software version 2.3.5.3 (HKLM-x32\...\DPlot_is1) (Version: 2.3.5.3 - HydeSoft Computing, LLC) DWG TrueView 2016 - English (HKLM\...\{5783F2D7-F028-0409-0100-0060B0CE6BBA}) (Version: 20.1.49.0 - Autodesk) Hidden Eco Materials Adviser for Autodesk Inventor 2016 (64-bit) (HKLM\...\{1A56BE00-916E-432D-A576-EB00D2FF8450}) (Version: 5.6.4.44 - Granta Design Limited) FastStone Image Viewer 5.6.1 (HKLM-x32\...\{3B35D838-2037-4060-92D5-987404647433}_is1) (Version: - FastStone Soft) FBReader for Windows (HKLM-x32\...\FBReader for Windows) (Version: - ) foobar2000 v1.3.10 (HKLM-x32\...\foobar2000) (Version: 1.3.10 - Peter Pawlowski) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 8.2.0.2051 - Foxit Software Inc.) Gajim (HKLM-x32\...\Gajim) (Version: 0.16.5 - ) GIMP 2.8.16 (HKLM\...\GIMP-2_is1) (Version: 2.8.16 - The GIMP Team) Git version 2.14.1 (HKLM\...\Git_is1) (Version: 2.14.1 - The Git Development Community) Grammarly (HKU\S-1-5-21-2429456031-1157426947-1108302719-1010\...\GrammarlyForWindows) (Version: 1.5.32 - Grammarly) HxD Hex Editor version 1.7.7.0 (HKLM-x32\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.4229 - Intel Corporation) Intel® PROSet/Wireless Software (HKLM-x32\...\{88540041-fd0c-4588-9b2f-251e29f7c5a1}) (Version: 18.40.4 - Intel Corporation) IntelliJ IDEA 2017.2.5 (HKLM-x32\...\IntelliJ IDEA 2017.2.5) (Version: 172.4343.14 - JetBrains s.r.o.) Inventor 2016.2.2 Hotfix (INV20220) (HKLM\...\Autodesk Inventor Professional 2016_20220) (Version: 1 - Autodesk) Inventor 2016.2.3 Hotfix (See readme for detail) (INV20230) (HKLM\...\Autodesk Inventor Professional 2016_20230) (Version: 1 - Autodesk) Jack (HKLM-x32\...\Jack) (Version: - ) Java 9 (64-bit) (HKLM\...\{DA69628A-2608-5BA9-8749-1EE90CB29D95}) (Version: 9.0.0.0 - Oracle Corporation) Java SE Development Kit 8 Update 152 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180152}) (Version: 8.0.1520.16 - Oracle Corporation) Java(TM) SE Development Kit 9 (64-bit) (HKLM\...\{41150763-08D2-5FDA-90D8-20618BEA61D0}) (Version: 9.0.0.0 - Oracle Corporation) JavaFX Scene Builder 2.0 (HKLM-x32\...\{B4665EB1-1F7A-44F5-AD07-C20A938E8BC2}) (Version: 2.0 - Oracle) Kadu 4.3 (HKLM-x32\...\Kadu) (Version: 4.3 - Kadu Team) KeePass Password Safe 2.35 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.35 - Dominik Reichl) Kodi (HKU\S-1-5-21-2429456031-1157426947-1108302719-1019\...\Kodi) (Version: - XBMC-Foundation) LibreOffice 5.3.2.2 (HKLM\...\{682C33C0-5D61-48F0-B0A2-1A504F4C5905}) (Version: 5.3.2.2 - The Document Foundation) Maxima (sbcl) 5.38.1 (HKLM-x32\...\Maxima-sbcl-5.38.1_is1) (Version: 5.38.1 - The Maxima Development Team) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (HKLM-x32\...\{2F0ECC80-B9E4-4485-8083-CD32F22ABD92}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) (HKLM-x32\...\{8EEB28EE-5141-411C-9CF0-9952264FE4AF}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (HKLM-x32\...\{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.25420 - Microsoft Corporation) Microsoft SQL Server 2014 Management Objects (HKLM-x32\...\{2774595F-BC2A-4B12-A25B-0C37A37049B0}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 Management Objects (x64) (HKLM\...\{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 Transact-SQL ScriptDom (HKLM\...\{020CDFE0-C127-4047-B571-37C82396B662}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 T-SQL Language Service (HKLM-x32\...\{47D08E7A-92A1-489B-B0BF-415516497BCE}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{091CE6AA-2753-4F6E-AD1C-0E875744EB54}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{718FFB65-F6E4-4D62-861F-ED10ED32C936}) (Version: 12.0.2402.11 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Web Deploy 3.6 (HKLM\...\{94E1227C-08A9-4962-B388-1F05D89AEA75}) (Version: 3.1238.1962 - Microsoft Corporation) mIRC (HKLM-x32\...\mIRC) (Version: 7.46 - mIRC Co. Ltd.) Mozilla Firefox 57.0.4 (x64 pl) (HKLM\...\Mozilla Firefox 57.0.4 (x64 pl)) (Version: 57.0.4 - Mozilla) Nmap 7.12 (HKLM-x32\...\Nmap) (Version: 7.12 - ) Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.3.3 - Notepad++ Team) NVIDIA Graphics Driver 364.72 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 364.72 - NVIDIA Corporation) oMega Commander 2.3.14.4267 (HKLM\...\{19A00CE2-FDE9-41AD-8CAA-E7BF2E3EAEDE}_is1) (Version: - Pylonos.com LLC) PatchCleaner (HKLM-x32\...\{727DA176-50BB-452C-8DB5-96EE0A573ED4}) (Version: 1.4.20 - HomeDev) PotPlayer-64 bit (HKLM\...\PotPlayer64) (Version: - Kakao Corp.) RabbitHole (HKLM-x32\...\{9527FB6C-9E11-4CC9-83A6-41277D8EE423}) (Version: 0.1.1 - Commitant) Roslyn Language Services - x86 (HKLM-x32\...\{6970C7E1-F99D-388D-8903-DF8FCE677FED}) (Version: 14.0.25431 - Microsoft Corporation) Hidden SketchUp Import 2016 (HKLM-x32\...\{C769FB7C-1F55-4B31-9A2A-21CEC50F4F92}) (Version: 2.0.0 - Autodesk) Spotify (HKU\S-1-5-21-2429456031-1157426947-1108302719-1010\...\Spotify) (Version: 1.0.63.617.g5aca9a2a - Spotify AB) Spotify (HKU\S-1-5-21-2429456031-1157426947-1108302719-1019\...\Spotify) (Version: 1.0.70.388.g8e1ed5af - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Team Explorer for Microsoft Visual Studio 2015 Update 3.1 (HKLM-x32\...\{7A95671A-759E-3B83-B763-4289D1D24D73}) (Version: 14.102.25619 - Microsoft) Hidden TreeSize V6.3.6 (64 bit) (HKLM\...\TreeSize_is1) (Version: 6.3.6 - JAM Software) Tribler (HKLM-x32\...\Tribler) (Version: 6.5.2 - The Tribler Team) TypeScript Tools for Microsoft Visual Studio 2015 (HKLM-x32\...\{BA5762C7-D35F-4725-A4BD-525854127018}) (Version: 1.8.36.0 - Microsoft Corporation) Hidden Update 1 for Inventor 2016 SP2 (See readme for detail) (INV20210) (HKLM\...\Autodesk Inventor Professional 2016_20210) (Version: 1 - Autodesk) VC80CRTRedist - 8.0.50727.6195 (HKLM-x32\...\{933B4015-4618-4716-A828-5289FC03165F}) (Version: 1.2.0 - DivX, Inc) Hidden Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{6DA2B636-698A-3294-BF4A-B5E11B238CDD}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{8CCEA24C-51AE-3B71-9092-7D0C44DDA2DF}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{C3A57BB3-9AA6-3F6F-9395-6C062BDD5FC4}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{F6F09DD8-F39B-3A16-ADB9-C9E6B56903F9}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{04B34E21-5BEE-3D2B-8D3D-E3E80D253F64}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{14866AAD-1F23-39AC-A62B-7091ED1ADE64}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{4B90093A-5D9C-3956-8ABB-95848BE6EFAD}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 (HKLM-x32\...\{B42E259C-E4D4-37F1-A1B2-EB9C4FC5A04D}.KB958357) (Version: 9.0.30729.177 - Microsoft Corporation) VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN) VMware Player (HKLM\...\{57AA4E8A-E2C9-4F1C-B3F1-762C36E34472}) (Version: 12.1.0 - VMware, Inc.) WinCDEmu (HKLM-x32\...\WinCDEmu) (Version: 4.1 - Sysprogs) WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.) WinRAR 5.21 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) Wireshark 2.4.3 64-bit (HKLM-x32\...\Wireshark) (Version: 2.4.3 - The Wireshark developer community, hxxps://www.wireshark.org) WPS Office (10.2.0.5965) (HKLM-x32\...\Kingsoft Office) (Version: 10.2.0.5965 - Kingsoft Corp.) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{00F064D8-FEC3-48ac-B07D-39C314D1727B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{073CB204-6B29-46FC-AB98-451F1D068741}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\TestServer.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{0B628DE4-07AD-4284-81CA-5B439F67C5E6}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2016\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{12545889-6D32-4424-9967-1E1D7BD1F809}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{13009989-EFB5-48C9-8BD2-943E0392BD71}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\RxAppCtrl.Ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{149DD748-EA85-45A6-93C5-AC50D0260C98}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2016\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{18A21864-E37B-42b9-9612-2C1E8C450A29}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{21DB88B0-BFBF-11D4-8DE6-0010B541CAA8}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\iDrop.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{2F8377FC-50C1-44EF-AB7A-8FF1BB8EA277}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{3FC94EB5-AEBD-4f3f-A2A4-B6CE57113C01}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\RxAppDocView.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{45122C53-8483-4b62-B15A-EAA9FE5FC3D5}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{4C80573A-9150-11d2-B772-0060B0F159EF}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\RxAppDocView.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{4E6F2E83-E7F0-4333-9772-875EB733C820}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\RxTest.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{5370C727-1451-4700-A960-77630950AF6D}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2016\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{644190AE-BD8F-493F-B63D-C79404AC5E07}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{6FDE7A70-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{6FDE7A71-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{6FDE7A72-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{6FDE7A73-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{6FDE7A74-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{6FDE7A77-351B-11d6-988B-0010B57A8BB7}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\DtCp.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{70239788-4DAE-49B8-9270-5D8614384B49}\InprocServer32 -> C:\Program Files (x86)\WPS_Office\WPS Office\10.2.0.5965\office6\addons\kpdf2wordshellext\kpdf2wordshellext64.dll (Zhuhai Kingsoft Office Software Co.,Ltd) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{72EC5CC5-88F3-45B1-A865-0A327DF58CC8}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{7BA16B3F-1AB3-4BD7-B959-52C4B8504EE9}\InprocServer32 -> AcInetUI.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{81D07C3D-0350-11D3-B7C2-0060B0EC020B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\RxAppCtrl.Ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{8421A29C-54B8-11D1-9837-0060B03C43C8}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\SolidObject.Dll () CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{846217D0-8954-11D2-8DCD-0060B0C32531}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\UCxTextBtn.Ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{846217D1-8954-11D2-8DCD-0060B0C32531}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\UCxTextBtn.Ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{8B0E6BD9-610C-11D1-9842-0060B03C43C8}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\SolidObject.Dll () CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{8C23B656-4E6E-4B45-9920-9617168D39A3}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\TestServer.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{B6B5DC40-96E3-11d2-B774-0060B0F159EF}\localserver32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\Inventor.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{B8E7214B-25CA-4116-84CB-E86FB9625B36}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{BC71DEA1-D6FB-48B8-AB06-D151C81BBCDD}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{BE54741D-E02B-4572-93D6-105AF4EDE777}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{C343ED84-A129-11d3-B799-0060B0F159EF}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\RxApprenticeServer.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{C92F8F8C-8B2C-11d4-B872-0060B0EC020B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{CFEE2BAF-14F9-4D23-853D-B6E2BCC14263}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22}\InprocServer32 -> AcETransmit.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{D7A1987D-4A73-11D1-9A4B-080009DCE505}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ColorButton.Ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{D7A1987E-4A73-11D1-9A4B-080009DCE505}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ColorButton.Ocx (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{DA1F437C-9BD9-11d4-B87C-0060B0EC020B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\DtBridge.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{DB5D476B-3FF4-4E9D-A606-1E2B473BE571}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\AcInetUI.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{DCA7356C-FF94-4b20-AE04-7AA6A8E14117}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{DDA9A20F-5B56-49F5-9465-CE82FC199352}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{DE6B563C-B074-4BF1-A8A0-B3FED8703E99}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{E1C85E9F-60B2-4007-80C3-2C5E09474C3B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\RxInventorUtilities.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2016\pl-PL\acadficn.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{E5B0515D-48D2-4F04-906D-0192ED65A2DD}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\TestServer.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{F13E75B9-6AF6-49CB-80B3-6D2FF6E09932}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{F2D4F4E5-EEA1-46FF-A83B-A270C92DAE4B}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\DTInterop.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{F61064CC-DBFB-47ee-9BC8-CA5A1CBDF0DA}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\InvResc.dll (Autodesk) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{FA62F626-EBD5-4dc5-B970-D9E81E0E20E0}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\ServiceModule.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{FB469644-3F14-4403-ACCA-6B13486FF7BD}\localserver32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\InvTXTStack.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{FD703B01-4362-423E-9BDB-91BDCB16C1C9}\InprocServer32 -> C:\Program Files\Autodesk\Inventor 2016\Bin\DTInterop.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1010_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1}\InprocServer32 -> axdb.dll => No File CustomCLSID: HKU\S-1-5-21-2429456031-1157426947-1108302719-1019_Classes\CLSID\{70239788-4DAE-49B8-9270-5D8614384B49}\InprocServer32 -> C:\Program Files (x86)\WPS_Office\WPS Office\10.2.0.5962\office6\addons\kpdf2wordshellext\kpdf2wordshellext64.dll => No File ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2015-02-06] (Autodesk, Inc.) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2015-02-06] (Autodesk) ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2017-03-08] () ContextMenuHandlers1-x32: [Autodesk.DWF.ContextMenu] -> {6C18531F-CA85-45F7-8278-FF33CF0A5964} => C:\Program Files (x86)\Common Files\Autodesk Shared\DWF Common\DWFShellExtension.dll [2012-01-06] (Autodesk, Inc.) ContextMenuHandlers1-x32: [WinCDEmu] -> {D0E37FD2-F675-426F-B09A-2CF37BA46FD5} => C:\Program Files (x86)\WinCDEmu\x64\WinCDEmuContextMenu.dll [2015-09-28] (Sysprogs OU) ContextMenuHandlers1-x32: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-03-11] (Alexander Roshal) ContextMenuHandlers1-x32-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-03-11] (Alexander Roshal) ContextMenuHandlers2-x32: [VMDiskMenuHandler] -> {271DC252-6FE1-4D59-9053-E4CF50AB99DE} => C:\Program Files (x86)\VMware\VMware Player\vmdkShellExt.dll [2015-11-25] (VMware, Inc.) ContextMenuHandlers2-x32: [VMDiskMenuHandler64] -> {E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC} => C:\Program Files (x86)\VMware\VMware Player\x64\vmdkShellExt64.dll [2015-11-25] (VMware, Inc.) ContextMenuHandlers2-x32: [WinCDEmu] -> {A9901FCD-B4DF-43A1-BD5D-6C9F88679497} => C:\Program Files (x86)\WinCDEmu\x64\WinCDEmuContextMenu.dll [2015-09-28] (Sysprogs OU) ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2015-05-26] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2016-03-22] (NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) ContextMenuHandlers6: [WinCDEmu] -> {A9901FCD-B4DF-43A1-BD5D-6C9F88679497} => C:\Program Files (x86)\WinCDEmu\x64\WinCDEmuContextMenu.dll [2015-09-28] (Sysprogs OU) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-03-11] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-03-11] (Alexander Roshal) ContextMenuHandlers1_S-1-5-21-2429456031-1157426947-1108302719-1010: [kpdf2wordshellext] -> {70239788-4DAE-49B8-9270-5D8614384B49} => C:\Program Files (x86)\WPS_Office\WPS Office\10.2.0.5962\office6\addons\kpdf2wordshellext\kpdf2wordshellext64.dll -> No File ContextMenuHandlers6_S-1-5-21-2429456031-1157426947-1108302719-1010: [InventorMenu] -> {6FDE7A70-351B-11d6-988B-0010B57A8BB7} => -> No File ContextMenuHandlers1_S-1-5-21-2429456031-1157426947-1108302719-1019: [kpdf2wordshellext] -> {70239788-4DAE-49B8-9270-5D8614384B49} => C:\Program Files (x86)\WPS_Office\WPS Office\10.2.0.5962\office6\addons\kpdf2wordshellext\kpdf2wordshellext64.dll -> No File ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {330708BD-263E-4D20-9C4A-F00DB890FC61} - System32\Tasks\e-pity2016a_styczen => C:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe Task: {45CD8336-2A81-4D60-978D-FF72CF553EEC} - System32\Tasks\WpsExternal_Administrator2_20170923175532 => C:\Program Files (x86)\WPS_Office\WPS Office\ksolaunch.exe [2017-09-27] (Zhuhai Kingsoft Office Software Co.,Ltd) Task: {5E89038A-9435-487E-9A6F-E89A7444599A} - System32\Tasks\e-pity2016a_kwiecien => C:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe Task: {62AB588E-2670-48C5-A738-8AFD764D0588} - System32\Tasks\{9A5E1208-CC41-4B44-8BEF-6C3E00C93534} => C:\Windows\system32\pcalua.exe -a C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_209_pepper.exe -c -maintain pepperplugin Task: {78CA4B4A-5B4D-4119-8874-3964AF8E6716} - System32\Tasks\WpsExternal_eclipse_20170923175803 => C:\Program Files (x86)\WPS_Office\WPS Office\ksolaunch.exe [2017-09-27] (Zhuhai Kingsoft Office Software Co.,Ltd) Task: {B2A475A4-AF30-4AAB-9E1E-78B89F18DA19} - System32\Tasks\WpsUpdateTask_eclipse => C:\Program Files (x86)\WPS_Office\WPS Office\10.2.0.5965\wtoolex\wpsupdate.exe [2017-09-27] (Zhuhai Kingsoft Office Software Co.,Ltd) Task: {C75EF59F-A690-469D-834D-3A3AB12D1D0E} - System32\Tasks\JavaUpdateSched => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2017-08-02] (Oracle Corporation) Task: {CC0EBF0C-A626-4F3C-99DE-C1B9AAE94348} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => %windir%\system32\rundll32.exe aepdu.dll,AePduRunUpdate -nolegacy Task: {E8AC6C1C-7067-40B7-8CAF-4D34951A3478} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 14 => C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\VSIXAutoUpdate.exe Task: {F1FA48D1-962E-468B-9CAC-5AC91080072C} - System32\Tasks\WpsUpdateTask_Administrator2 => C:\Program Files (x86)\WPS_Office\WPS Office\10.2.0.5965\wtoolex\wpsupdate.exe [2017-09-27] (Zhuhai Kingsoft Office Software Co.,Ltd) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2016-04-02 17:29 - 2016-03-22 03:25 - 000133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2017-06-22 23:16 - 2015-01-28 11:27 - 000184851 _____ () C:\cygwin64\bin\cygrunsrv.exe 2018-01-09 15:25 - 2017-10-09 17:38 - 000664595 _____ () C:\cygwin64\usr\sbin\sshd.exe 2018-01-09 15:25 - 2017-09-03 08:18 - 000039955 _____ () C:\cygwin64\bin\cygcrypt-0.dll 2018-01-09 15:25 - 2017-10-26 07:38 - 000267283 _____ () C:\cygwin64\bin\cyggssapi_krb5-2.dll 2018-01-09 15:25 - 2017-10-26 07:38 - 000749075 _____ () C:\cygwin64\bin\cygkrb5-3.dll 2017-03-30 13:06 - 2017-03-03 22:45 - 000085011 _____ () C:\cygwin64\bin\cygz.dll 2018-01-09 15:25 - 2017-11-13 23:34 - 000071187 _____ () C:\cygwin64\bin\cyggcc_s-seh-1.dll 2018-01-09 15:25 - 2017-11-13 23:35 - 000012307 _____ () C:\cygwin64\bin\cygssp-0.dll 2018-01-09 15:25 - 2017-10-26 07:38 - 000190995 _____ () C:\cygwin64\bin\cygk5crypto-3.dll 2018-01-09 15:25 - 2017-10-26 07:38 - 000036371 _____ () C:\cygwin64\bin\cygkrb5support-0.dll 2017-06-22 23:16 - 2015-03-19 02:47 - 000012819 _____ () C:\cygwin64\bin\cygcom_err-2.dll 2017-03-08 03:42 - 2017-03-08 03:42 - 000230064 _____ () C:\Program Files\Notepad++\NppShell_06.dll 2017-12-05 22:45 - 2017-12-05 22:45 - 027787776 _____ () C:\Windows\system32\Macromed\Flash\NPSWF64_27_0_0_187.dll 2016-05-03 09:40 - 2017-03-10 11:48 - 000061944 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\QtSolutions_Service-head.dll 2016-05-03 09:40 - 2017-03-10 11:48 - 000110584 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\qjson0.dll 2015-11-25 18:10 - 2015-11-25 18:10 - 001301696 _____ () C:\Program Files (x86)\VMware\VMware Player\libxml2.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) HKU\S-1-5-21-2429456031-1157426947-1108302719-1010\Software\Classes\.scr: AutoCADScriptFile => C:\Windows\system32\notepad.exe "%1" ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 14:25 - 2017-10-27 15:59 - 000000876 _____ C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 testhostname ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2429456031-1157426947-1108302719-1010\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-21-2429456031-1157426947-1108302719-1019\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg DNS Servers: 31.11.202.254 - 37.8.214.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == HKLM\...\StartupApproved\Run: => "HotKeysCmds" HKLM\...\StartupApproved\Run: => "IgfxTray" HKLM\...\StartupApproved\Run: => "Persistence" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "DivXMediaServer" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{BBFCC3AE-1C63-4F5D-A689-6131470C83B7}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{98A32070-61EC-40EA-8CB3-2288FB616D46}] => (Allow) C:\Program Files\Acrylic Wi-Fi Professional\Acrylic.exe FirewallRules: [{2984ECDF-98AA-4770-9F67-D33116A9DEEE}] => (Allow) C:\Program Files\Acrylic Wi-Fi Professional\Acrylic.exe FirewallRules: [TCP Query User{14419631-1935-4115-9E8E-C26C7C13499F}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe FirewallRules: [UDP Query User{8CC929E2-8E5B-445E-B6CF-16114E3EC09D}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe FirewallRules: [{7A50F904-8032-4251-BB11-F0AEFE5F5A18}] => (Allow) C:\Program Files (x86)\WPS_Office\WPS Office\10.2.0.5965\office6\wpscloudsvr.exe FirewallRules: [TCP Query User{91BEF526-9817-42C5-BFA8-73E94F7AB164}C:\users\administrator2\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\administrator2\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{1B43B50C-D154-4690-B53C-B9CFC2F0E534}C:\users\administrator2\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\administrator2\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{1EEF58CA-6882-4B79-9702-B1D43440ACFC}C:\program files (x86)\jetbrains\intellij idea 2016.3.4\bin\idea64.exe] => (Block) C:\program files (x86)\jetbrains\intellij idea 2016.3.4\bin\idea64.exe FirewallRules: [UDP Query User{D255C39F-F942-4730-9850-E28DED22833B}C:\program files (x86)\jetbrains\intellij idea 2016.3.4\bin\idea64.exe] => (Block) C:\program files (x86)\jetbrains\intellij idea 2016.3.4\bin\idea64.exe FirewallRules: [TCP Query User{CFD8968E-0EC2-4C6A-AEB2-A81E73DCAD08}C:\program files\java\jdk1.8.0_101\bin\java.exe] => (Block) C:\program files\java\jdk1.8.0_101\bin\java.exe FirewallRules: [UDP Query User{EA5365C7-57E7-4393-AF9B-F818D1D7920F}C:\program files\java\jdk1.8.0_101\bin\java.exe] => (Block) C:\program files\java\jdk1.8.0_101\bin\java.exe FirewallRules: [TCP Query User{5FC77CC0-7A4A-4140-8874-41C01720F6C6}C:\program files\java\jdk1.8.0_101\jre\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_101\jre\bin\java.exe FirewallRules: [UDP Query User{E191A88F-6CA4-4B64-B6EB-7C014C16B815}C:\program files\java\jdk1.8.0_101\jre\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_101\jre\bin\java.exe FirewallRules: [TCP Query User{45116AA3-0ACB-4737-843B-98CB7D7573D8}C:\program files\jetbrains\intellij idea 2017.2.5\jre64\bin\java.exe] => (Allow) C:\program files\jetbrains\intellij idea 2017.2.5\jre64\bin\java.exe FirewallRules: [UDP Query User{F4CF5D3F-48EE-40F9-A974-F6809D0217C5}C:\program files\jetbrains\intellij idea 2017.2.5\jre64\bin\java.exe] => (Allow) C:\program files\jetbrains\intellij idea 2017.2.5\jre64\bin\java.exe FirewallRules: [TCP Query User{FCF812E0-CE8D-4B92-BADD-A60AEDF6ACFC}C:\program files\jetbrains\intellij idea 2017.2.5\bin\idea64.exe] => (Allow) C:\program files\jetbrains\intellij idea 2017.2.5\bin\idea64.exe FirewallRules: [UDP Query User{C204E85E-7639-4663-94D4-2A0946AFE579}C:\program files\jetbrains\intellij idea 2017.2.5\bin\idea64.exe] => (Allow) C:\program files\jetbrains\intellij idea 2017.2.5\bin\idea64.exe FirewallRules: [TCP Query User{96C75385-BE0D-4DE6-B303-6D625B6DCF59}C:\program files\java\jdk-9\bin\java.exe] => (Allow) C:\program files\java\jdk-9\bin\java.exe FirewallRules: [UDP Query User{2AA35758-ED14-4F9A-8FC2-9D0A250728DF}C:\program files\java\jdk-9\bin\java.exe] => (Allow) C:\program files\java\jdk-9\bin\java.exe FirewallRules: [{5D1C64B6-1CE0-4835-B77D-B01CCD14DF65}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{CA9A5E3F-41F3-4054-8BF1-47BC4A4EA677}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{BC3517A8-4978-4561-9266-C5BEC4D62443}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{5F228854-E33A-4ACC-A10E-F3EEE5103B76}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{0FB9D32F-87CA-4B8D-BD22-23822059D9FF}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{B2263DAE-780E-434F-920B-2BD1E7790C69}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{4005687B-D1F0-4980-B46C-32F0E74614CD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{EAC35FA1-9371-4D11-B856-23A8CF2A5DDE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [TCP Query User{59A98ECD-DB68-4389-9555-11D5219DF6CF}C:\users\eclipse\downloads\bitmessage_x64_0.6.2.exe] => (Block) C:\users\eclipse\downloads\bitmessage_x64_0.6.2.exe FirewallRules: [UDP Query User{C4257BA2-3AA5-442C-930B-11E6F44DC590}C:\users\eclipse\downloads\bitmessage_x64_0.6.2.exe] => (Block) C:\users\eclipse\downloads\bitmessage_x64_0.6.2.exe ==================== Restore Points ========================= 05-11-2017 00:39:25 Windows Update 08-11-2017 09:23:00 Installed PatchCleaner 17-12-2017 18:22:26 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 05-01-2018 22:49:01 Windows Update ==================== Faulty Device Manager Devices ============= Name: Microphone (2- High Definition Audio Device) Description: Audio Endpoint Class Guid: {c166523c-fe0c-4a94-a586-f1a80cfbbf3e} Manufacturer: Microsoft Service: Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Base System Device Description: Base System Device Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: HD WebCam Description: USB Video Device Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f} Manufacturer: Microsoft Service: usbvideo Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Base System Device Description: Base System Device Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (01/13/2018 01:46:27 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: firefox.exe, version: 52.5.2.6242, time stamp: 0x00000000 Faulting module name: mozglue.dll, version: 52.5.2.6242, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x000034a7 Faulting process id: 0x126c Faulting application start time: 0x01d38c6b09863626 Faulting application path: C:\Users\eclipse\Desktop\Tor Browser\Browser\firefox.exe Faulting module path: C:\Users\eclipse\Desktop\Tor Browser\Browser\mozglue.dll Report Id: c4b676f8-f85f-11e7-a215-002710a7bfcc Faulting package full name: Faulting package-relative application ID: Error: (01/13/2018 01:46:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: firefox.exe, version: 52.5.2.6242, time stamp: 0x00000000 Faulting module name: ntdll.dll, version: 6.3.9600.18202, time stamp: 0x569e72c5 Exception code: 0xc0000005 Fault offset: 0x0001dd93 Faulting process id: 0x133c Faulting application start time: 0x01d38c6af2b7fa26 Faulting application path: C:\Users\eclipse\Desktop\Tor Browser\Browser\firefox.exe Faulting module path: C:\Windows\SYSTEM32\ntdll.dll Report Id: bfa587c6-f85f-11e7-a215-002710a7bfcc Faulting package full name: Faulting package-relative application ID: Error: (01/11/2018 02:07:40 PM) (Source: Windows Search Service) (EventID: 7042) (User: ) Description: The Windows Search Service is being stopped because there is a problem with the indexer: The catalog is corrupt. Details: The content index catalog is corrupt. 0xc0041801 (0xc0041801) Error: (01/11/2018 02:07:40 PM) (Source: Windows Search Service) (EventID: 7040) (User: ) Description: The search service has detected corrupted data files in the index {id=4810 - enduser\mssearch2\search\ytrip\tripoli\inverted\invertedindex.cpp (3682)}. The service will attempt to automatically correct this problem by rebuilding the index. Details: The content index catalog is corrupt. 0xc0041801 (0xc0041801) Error: (01/05/2018 10:49:07 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Access is denied. . Error: (12/17/2017 06:22:35 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Access is denied. . Error: (11/25/2017 11:37:13 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: r2d2) Description: Activation of app Microsoft.WindowsAlarms_8wekyb3d8bbwe!App failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (11/23/2017 09:47:29 AM) (Source: sshd) (EventID: 0) (User: NT AUTHORITY) Description: Event-ID 0 Error: (11/23/2017 01:42:10 AM) (Source: sshd) (EventID: 0) (User: NT AUTHORITY) Description: Event-ID 0 Error: (11/22/2017 10:14:24 AM) (Source: sshd) (EventID: 0) (User: NT AUTHORITY) Description: Event-ID 0 System errors: ============= Error: (01/13/2018 04:27:38 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Network Connectivity Assistant service depends on the DNS Client service which failed to start because of the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. Error: (01/13/2018 04:27:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The VMware CPU Microcode Update Driver service failed to start due to the following error: %%2 = The system cannot find the file specified. Error: (01/13/2018 01:06:16 PM) (Source: DCOM) (EventID: 10010) (User: r2d2) Description: The server {1B1F472E-3221-4826-97DB-2C2324D389AE} did not register with DCOM within the required timeout. Error: (01/13/2018 01:05:46 PM) (Source: DCOM) (EventID: 10010) (User: r2d2) Description: The server {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} did not register with DCOM within the required timeout. Error: (01/13/2018 01:00:07 PM) (Source: DCOM) (EventID: 10010) (User: r2d2) Description: The server {1B1F472E-3221-4826-97DB-2C2324D389AE} did not register with DCOM within the required timeout. Error: (01/13/2018 12:59:37 PM) (Source: DCOM) (EventID: 10010) (User: r2d2) Description: The server {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} did not register with DCOM within the required timeout. Error: (01/13/2018 11:50:53 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Network Connectivity Assistant service depends on the DNS Client service which failed to start because of the following error: %%1058 = The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. Error: (01/13/2018 11:50:27 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The VMware CPU Microcode Update Driver service failed to start due to the following error: %%2 = The system cannot find the file specified. Error: (01/12/2018 08:07:47 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Network Connectivity Assistant service depends on the DNS Client service which failed to start because of the following error: %%1058 = The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. Error: (01/12/2018 08:07:25 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The VMware CPU Microcode Update Driver service failed to start due to the following error: %%2 = The system cannot find the file specified. ==================== Memory info =========================== Processor: Intel(R) Pentium(R) CPU B960 @ 2.20GHz Percentage of memory in use: 31% Total physical RAM: 6034.36 MB Available physical RAM: 4144 MB Total Virtual: 6994.36 MB Available Virtual: 5137.22 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:189.92 GB) (Free:6.93 GB) NTFS ==>[system with boot components (obtained from drive)] Drive d: () (Fixed) (Total:165.41 GB) (Free:1.94 GB) NTFS Drive f: (SHARED) (Fixed) (Total:39.92 GB) (Free:2.39 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 7CEC9B6D) Partition 1: (Active) - (Size=80 MB) - (Type=83) Partition 2: (Not Active) - (Size=189.9 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=205.4 GB) - (Type=05) Partition 4: (Not Active) - (Size=70 GB) - (Type=A6) ==================== End of Addition.txt ============================