Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-10-2019 02
Ran by Tibor (14-10-2019 21:02:22)
Running from C:\Users\Tibor\Desktop
Windows 10 Home Version 1903 18362.356 (X64) (2019-09-27 02:39:24)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2813316739-561623387-2885406294-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2813316739-561623387-2885406294-503 - Limited - Disabled)
Guest (S-1-5-21-2813316739-561623387-2885406294-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2813316739-561623387-2885406294-1003 - Limited - Enabled)
Tibor (S-1-5-21-2813316739-561623387-2885406294-1001 - Administrator - Enabled) => C:\Users\Tibor
WDAGUtilityAccount (S-1-5-21-2813316739-561623387-2885406294-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
FW: COMODO Firewall (Enabled) {A60587C6-B28F-3D1C-0869-12ED515CC3C3}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

ABBYY FineReader 9.0 Sprint (HKLM-x32\...\{F9000000-0018-0000-0000-074957833700}) (Version: 9.01.513.58212 - ABBYY) Hidden
ABBYY FineReader 9.0 Sprint (HKLM-x32\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY)
Adobe Acrobat Reader DC - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-AC0F074E4100}) (Version: 19.012.20040 - Adobe Systems Incorporated)
Adobe Flash Player 31 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 31.0.0.122 - Adobe Systems Incorporated)
Adobe Photoshop CC 2015 (32 Bit) (HKLM-x32\...\{2614BC86-757D-4293-9E25-E4E16F370A9E}) (Version: 16.0 - Adobe Systems Incorporated)
Adobe Photoshop CC 2019 (HKLM-x32\...\PHSP_20_0) (Version: 20.0.0 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Aktualizácie NVIDIA 33.2.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 33.2.0.0 - NVIDIA Corporation) Hidden
Autodesk 123D Catch (HKLM-x32\...\{62939D22-F2E8-44BD-A655-0D1F41D5EBA2}) (Version: 1.0.23.0 - Autodesk)
Autodesk MapGuide(R) Viewer ActiveX Control Release 6.5 (HKLM-x32\...\{E031338C-839D-4EDD-9537-99B653C39D81}) (Version: 6.5.5.24 - Autodesk, Inc.)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.8.2393 - AVAST Software)
Blender (HKLM\...\{E29A1273-2E7A-40E7-AA63-428A11D59429}) (Version: 2.79.2 - Blender Foundation)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 77.0.69.135 - Autori prehliadača Brave)
Burn4Free DVD Burning Software 7.8.0.0 (HKLM-x32\...\Burn4Free DVD Burning Software_is1) (Version:  - Sakysoft s.r.l.)
CCleaner (HKLM\...\CCleaner) (Version: 5.46 - Piriform)
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.7.6282 - CDBurnerXP)
Comodo Dragon (HKLM-x32\...\Comodo Dragon) (Version: 76.0.3809.132 - Comodo)
COMODO Firewall (HKLM\...\{8EA744C0-284B-491A-B97A-1606DE5FDE68}) (Version: 12.0.0.6818 - COMODO Security Solutions Inc.) Hidden
COMODO Firewall (HKLM\...\COMODO Internet Security) (Version: 12.0.0.6818 - COMODO Security Solutions Inc.)
Discord (HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Discord) (Version: 0.0.305 - Discord Inc.)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 416.34 - NVIDIA Corporation) Hidden
Epson Easy Photo Print 2 (HKLM-x32\...\{39F58DDB-B2B8-4B86-AF20-4706A80EB30D}) (Version: 2.2.0.0 - SEIKO EPSON CORPORATION)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM-x32\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION)
Epson Event Manager (HKLM-x32\...\{03B8AA32-F23C-4178-B8E6-09ECD07EAA47}) (Version: 2.40.0001 - SEIKO EPSON CORPORATION)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
EPSON SX420W Series Manuál (HKLM-x32\...\EPSON SX420W Series Manual) (Version:  - )
EPSON SX420W Series Printer Uninstall (HKLM\...\EPSON SX420W Series) (Version:  - SEIKO EPSON Corporation)
EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.4i - SEIKO EPSON CORPORATION)
EpsonNet Setup 3.2 (HKLM-x32\...\{C9D8A041-2963-4B31-8FFC-1500F3DB9293}) (Version: 3.2a - SEIKO EPSON CORPORATION)
Google Earth Pro (HKLM\...\{70A0F34E-564B-4F93-ADD6-3BAEC6E44075}) (Version: 7.3.2.5776 - Google)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 77.0.3865.90 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.301 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.99.0 - Google Inc.) Hidden
HandBrake 1.2.0 (HKLM-x32\...\HandBrake) (Version: 1.2.0 - )
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4703 - Intel Corporation)
Internet Security Essentials (HKLM-x32\...\ComodoIse) (Version: 1.6.472587.185 - Comodo)
IrfanView 4.53 (64-bit) (HKLM\...\IrfanView64) (Version: 4.53 - Irfan Skiljan)
Java 8 Update 191 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180191F0}) (Version: 8.0.1910.12 - Oracle Corporation)
Lightshot-5.4.0.35 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.4.0.35 - Skillbrains)
Loxone Config (HKLM-x32\...\LoxoneConfig_is1) (Version: 10.0 - Loxone Electronics GmbH)
Maxthon Cloud Browser (HKLM-x32\...\Maxthon3) (Version: 4.4.5.1000 - Maxthon International Limited)
MEGAsync (HKLM-x32\...\MEGAsync) (Version:  - Mega Limited)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\OneDriveSetup.exe) (Version: 19.152.0927.0012 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.12.25810 (HKLM-x32\...\{e2ee15e2-a480-4bc5-bfb7-e9803d1d9823}) (Version: 14.12.25810.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.12.25810 (HKLM-x32\...\{56e11d69-7cc9-40a5-a4f9-8f6190c4d84d}) (Version: 14.12.25810.0 - Microsoft Corporation)
Movavi Video Editor 15 (HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Movavi Video Editor 15) (Version: 15.0.1 - Movavi)
Mozilla Firefox 69.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 69.0.1 (x64 en-US)) (Version: 69.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 67.0.4 - Mozilla)
MX5 (HKLM-x32\...\Maxthon5) (Version: 5.2.3.4000 - Maxthon International Limited)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.11 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.15.0.164 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.15.0.164 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.18.0907 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.18.0907 - NVIDIA Corporation)
OpenOffice 4.1.2 (HKLM-x32\...\{EF194FA4-99F4-4C36-AC30-B2C2DE1C170D}) (Version: 4.12.9782 - Apache Software Foundation)
Opera developer 46.0.2556.0 (HKLM-x32\...\Opera 46.0.2556.0) (Version: 46.0.2556.0 - Opera Software)
Opera Stable 63.0.3368.107 (HKLM-x32\...\Opera 63.0.3368.107) (Version: 63.0.3368.107 - Opera Software)
Ovládací panel NVIDIA 416.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 416.34 - NVIDIA Corporation) Hidden
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
PowerISO (HKLM-x32\...\PowerISO) (Version: 6.7 - Power Software Ltd)
PSPad editor (HKLM-x32\...\PSPad editor_is1) (Version: 5.0.0.277 - Jan Fiala)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31222 - Realtek Semiconduct Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7553 - Realtek Semiconductor Corp.)
Sieťová príručka pre EPSON SX420W Series (HKLM-x32\...\EPSON SX420W Series Network Guide) (Version:  - )
Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.151 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Spotify) (Version: 1.1.16.522.g55a4b852 - Spotify AB)
Technitium MAC Address Changer v6.0 (HKLM-x32\...\TMACv6.0) (Version: 6.0 - Technitium)
Telegram Desktop version 1.8.4 (HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 1.8.4 - Telegram FZ-LLC)
UnitSender Demo version 5.0.2.4 (HKLM-x32\...\UnitSender Demo_is1) (Version: 5.0.2.4 - )
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.6 - VideoLAN)
Warkeys 1.21.0.0b (HKLM-x32\...\Warkeys) (Version: 1.21.0.0b - )
WinRAR 5.70 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH)
XiaoMiFlash (HKLM-x32\...\{9AF75396-D38E-4F07-831C-9F78923DC015}) (Version: 1.0.0 - XiaoMi)

Packages:
=========
9 zip -> C:\Program Files\WindowsApps\184MagikHub.9zip_3.2.64.0_x64__hvr7qkvwfhvx6 [2019-09-27] (Magik Hub) [MS Ad]
Adobe Photoshop Express: Image Editor, Adjustments, Filters, Effects, Borders -> C:\Program Files\WindowsApps\AdobeSystemsIncorporated.AdobePhotoshopExpress_3.0.316.0_x64__ynb6jyjzte8ga [2019-05-25] (Adobe Inc.)
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.0.2.0_x64__tf1gferkr813w [2019-09-27] (Autodesk Inc.)
Loxone Smart Home -> C:\Program Files\WindowsApps\LoxoneElectronicsGmbH.LoxoneSmartHome_10.25.174.0_x86__2gyt4x19d6th6 [2019-04-18] (Loxone Electronics GmbH)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-27] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-27] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-11] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.10022.0_x64__8wekyb3d8bbwe [2019-10-14] (Microsoft Studios) [MS Ad]
MSN Money -> C:\Program Files\WindowsApps\Microsoft.BingFinance_4.31.11905.0_x64__8wekyb3d8bbwe [2019-07-20] (Microsoft Corporation) [MS Ad]
MSN Počasie -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-11] (Microsoft Corporation) [MS Ad]
MSN Sports -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.31.11905.0_x64__8wekyb3d8bbwe [2019-07-19] (Microsoft Corporation) [MS Ad]
Open Word -> C:\Program Files\WindowsApps\3538OpenOffice.OpenOfficeWriter_1.20.0.0_neutral__nmw6e14cfhspc [2016-10-12] (Open PDF, Word, Excel)
Opener Pro -> C:\Program Files\WindowsApps\DeviceDoctor.OpenerPro_1.1.0.28_neutral__mkdtfchztkfbm [2016-11-26] (Tiny Opener)
Pošta a kalendár -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe [2019-09-25] (Microsoft Corporation) [MS Ad]
RAR Opener -> C:\Program Files\WindowsApps\DeviceDoctor.RAROpener_1.3.48.0_x64__mkdtfchztkfbm [2017-09-21] (Tiny Opener)
Simple Checklist / To Do List -> C:\Program Files\WindowsApps\26610MateuszUcher.4335181E1686E_1.4.13.0_x64__1jmbar2j73v66 [2018-12-24] (Mateusz Ucher)
TeamViewer: Remote Control -> C:\Program Files\WindowsApps\TeamViewer.31414B719FA93_14.0.100.0_x86__89446h4zmeyyt [2018-10-23] (TeamViewer)
Viber -> C:\Program Files\WindowsApps\2414FC7A.Viber_6.6.21745.1000_x86__p61zvh252yqyr [2018-04-27] (VIBER MEDIA S.à r.l.)
VLC for Windows Store -> C:\Program Files\WindowsApps\VideoLAN.VLCforWindows8_3.1.1.0_x86__paz6r1rewnh0a [2018-08-08] (VideoLAN)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2813316739-561623387-2885406294-1001_Classes\CLSID\{ED90173A-3B4C-4E7E-B9CF-79714425D4B5}\InprocServer32 -> C:\Program Files (x86)\PSPad editor\pspshellx64.dll () [File not signed]
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Tibor\AppData\Local\MEGAsync\ShellExtX64.dll [2019-09-17] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Tibor\AppData\Local\MEGAsync\ShellExtX64.dll [2019-09-17] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Tibor\AppData\Local\MEGAsync\ShellExtX64.dll [2019-09-17] (Mega Limited -> )
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-13] (AVAST Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Tibor\AppData\Local\MEGAsync\ShellExtX64.dll [2019-09-17] (Mega Limited -> )
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Tibor\AppData\Local\MEGAsync\ShellExtX64.dll [2019-09-17] (Mega Limited -> )
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Tibor\AppData\Local\MEGAsync\ShellExtX64.dll [2019-09-17] (Mega Limited -> )
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-13] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [BB FlashBack 2] -> {A8065B9E-193F-4797-B62D-8F6321E7FCCB} =>  -> No File
ContextMenuHandlers1: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2019-04-16] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Tibor\AppData\Local\MEGAsync\ShellExtX64.dll [2019-09-17] (Mega Limited -> )
ContextMenuHandlers1: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files (x86)\PowerISO\PWRISOSH.DLL [2016-10-02] (Power Software Limited -> Power Software Ltd)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2019-04-16] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Tibor\AppData\Local\MEGAsync\ShellExtX64.dll [2019-09-17] (Mega Limited -> )
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-13] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Tibor\AppData\Local\MEGAsync\ShellExtX64.dll [2019-09-17] (Mega Limited -> )
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Tibor\AppData\Local\MEGAsync\ShellExtX64.dll [2019-09-17] (Mega Limited -> )
ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files (x86)\PowerISO\PWRISOSH.DLL [2016-10-02] (Power Software Limited -> Power Software Ltd)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-09-25] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-10-13] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2019-04-16] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files (x86)\PowerISO\PWRISOSH.DLL [2016-10-02] (Power Software Limited -> Power Software Ltd)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-2813316739-561623387-2885406294-1001: [EditWithPSPad] -> {ED90173A-3B4C-4E7E-B9CF-79714425D4B5} => C:\Program Files (x86)\PSPad editor\pspshellx64.dll [2014-11-02] () [File not signed]

==================== Codecs (Whitelisted) ==================


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


ShortcutWithArgument: C:\Users\Tibor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikácie Chrome\Vzdialená plocha Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) ->  --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp

==================== Loaded Modules (Whitelisted) ==============

2018-09-22 12:55 - 2014-11-02 19:45 - 000029184 _____ () [File not signed] C:\Program Files (x86)\PSPad editor\pspshellx64.dll
2008-04-11 11:54 - 2008-04-11 11:54 - 000348160 _____ (Microsoft Corporation) [File not signed] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\MSVCR71.dll
2005-01-13 10:47 - 2005-01-13 10:47 - 000049152 _____ (SEIKO EPSON CORP.) [File not signed] C:\Program Files (x86)\Epson Software\Event Manager\ESPSUTL.dll
2009-11-26 16:53 - 2009-11-26 16:53 - 000055296 _____ (SEIKO EPSON CORP.) [File not signed] C:\Program Files (x86)\Epson Software\Event Manager\ScnMgr10.dll
2009-11-20 10:46 - 2009-11-20 10:46 - 000103936 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Program Files (x86)\Epson Software\Event Manager\epnsm.dll
2009-10-21 17:39 - 2009-10-21 17:39 - 000291328 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Program Files (x86)\Epson Software\Event Manager\LcMgr.dll
2009-11-24 15:18 - 2009-11-24 15:18 - 000142336 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Program Files (x86)\Epson Software\Event Manager\ScanEngine30.dll
2016-06-17 20:00 - 2008-12-01 12:59 - 000558080 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\WINDOWS\System32\enppmon.dll
2016-06-17 20:00 - 2008-06-18 11:49 - 000250880 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\WINDOWS\System32\enpres.dll
2019-07-07 10:51 - 2017-05-23 14:59 - 000494080 _____ (Skillbrains) [File not signed] C:\Program Files (x86)\Skillbrains\lightshot\5.4.0.35\Lightshot.dll
2019-07-07 10:51 - 2017-05-23 14:59 - 000256000 _____ (Skillbrains) [File not signed] C:\Program Files (x86)\Skillbrains\lightshot\5.4.0.35\uploader.dll
2017-09-14 08:37 - 2017-09-14 08:37 - 000026112 _____ (The Qt Company Ltd) [File not signed] C:\Users\Tibor\AppData\Local\MEGAsync\imageformats\qgif.dll
2017-09-14 08:42 - 2017-09-14 08:42 - 000033280 _____ (The Qt Company Ltd) [File not signed] C:\Users\Tibor\AppData\Local\MEGAsync\imageformats\qicns.dll
2017-09-14 08:37 - 2017-09-14 08:37 - 000027648 _____ (The Qt Company Ltd) [File not signed] C:\Users\Tibor\AppData\Local\MEGAsync\imageformats\qico.dll
2017-09-14 08:37 - 2017-09-14 08:37 - 000245760 _____ (The Qt Company Ltd) [File not signed] C:\Users\Tibor\AppData\Local\MEGAsync\imageformats\qjpeg.dll
2017-09-14 08:42 - 2017-09-14 08:42 - 000021504 _____ (The Qt Company Ltd) [File not signed] C:\Users\Tibor\AppData\Local\MEGAsync\imageformats\qsvg.dll
2017-09-14 08:42 - 2017-09-14 08:42 - 000020992 _____ (The Qt Company Ltd) [File not signed] C:\Users\Tibor\AppData\Local\MEGAsync\imageformats\qtga.dll
2017-09-14 08:42 - 2017-09-14 08:42 - 000316416 _____ (The Qt Company Ltd) [File not signed] C:\Users\Tibor\AppData\Local\MEGAsync\imageformats\qtiff.dll
2017-09-14 08:42 - 2017-09-14 08:42 - 000019968 _____ (The Qt Company Ltd) [File not signed] C:\Users\Tibor\AppData\Local\MEGAsync\imageformats\qwbmp.dll
2017-09-14 08:42 - 2017-09-14 08:42 - 000322560 _____ (The Qt Company Ltd) [File not signed] C:\Users\Tibor\AppData\Local\MEGAsync\imageformats\qwebp.dll
2017-09-14 08:37 - 2017-09-14 08:37 - 001010688 _____ (The Qt Company Ltd) [File not signed] C:\Users\Tibor\AppData\Local\MEGAsync\platforms\qwindows.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\localhost -> localhost

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-06-06 23:17 - 2019-01-04 10:29 - 000000066 _____ C:\WINDOWS\system32\drivers\etc\hosts

127.0.0.1       localhost

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Skype\Phone\;C:\WINDOWS\System32\OpenSSH\;C:\Users\Tibor\AppData\Local\Microsoft\WindowsApps;C:\adb;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Tibor\Documents\MOJE\grafika\LP\soul.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\StartupApproved\Run: => "CCleaner Monitoring"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{2E814606-80F8-46DA-AE90-168C8676699B}] => (Allow) C:\Program Files (x86)\Opera\63.0.3368.94\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{B9F73871-5992-40EB-8A29-6E168CBA5556}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{4CFD7627-F1A1-45AC-9F9D-4C77C531B9EF}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
FirewallRules: [TCP Query User{DF24DBA2-E785-4A6C-B538-904CA3B1A9F2}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
FirewallRules: [UDP Query User{FB4A30E8-5D38-4F06-A0F0-9D667B8A5BB0}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{62632210-FDCE-4FC8-A37C-E975CC2A5FB3}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{0D4CA271-898F-4398-8851-AD7809A61464}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerREC\ApowerREC.exe No File
FirewallRules: [{1DFACEDE-E424-4D23-80F9-DA4377B3EDC9}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerREC\ApowerREC.exe No File
FirewallRules: [UDP Query User{FBA94573-917B-4113-95D6-F17DB1BC5103}C:\program files (x86)\loxone\loxoneconfig\loxoneconfig.exe] => (Allow) C:\program files (x86)\loxone\loxoneconfig\loxoneconfig.exe (Loxone Electronics GmbH -> Loxone Electronics GmbH)
FirewallRules: [TCP Query User{715D1C28-EC0D-4F01-B894-756E8411B597}C:\program files (x86)\loxone\loxoneconfig\loxoneconfig.exe] => (Allow) C:\program files (x86)\loxone\loxoneconfig\loxoneconfig.exe (Loxone Electronics GmbH -> Loxone Electronics GmbH)
FirewallRules: [UDP Query User{74DC762E-CE24-48C5-9494-BB6B0B67D4A3}C:\users\tibor\desktop\warcraft iii reign of chaos & the frozen throne\war3.exe] => (Allow) C:\users\tibor\desktop\warcraft iii reign of chaos & the frozen throne\war3.exe No File
FirewallRules: [TCP Query User{256C087A-8E44-4369-8DF6-E3824D12B7E5}C:\users\tibor\desktop\warcraft iii reign of chaos & the frozen throne\war3.exe] => (Allow) C:\users\tibor\desktop\warcraft iii reign of chaos & the frozen throne\war3.exe No File
FirewallRules: [UDP Query User{9A694C48-76B3-43A7-9A22-424AEAA9BCBB}C:\users\tibor\documents\moje\warcraft iii\war3.exe] => (Allow) C:\users\tibor\documents\moje\warcraft iii\war3.exe (Blizzard Entertainment) [File not signed]
FirewallRules: [TCP Query User{1357D0FC-9729-45BE-A671-BBC1DF368FEE}C:\users\tibor\documents\moje\warcraft iii\war3.exe] => (Allow) C:\users\tibor\documents\moje\warcraft iii\war3.exe (Blizzard Entertainment) [File not signed]
FirewallRules: [{BF076903-0EF0-4A5D-BDFB-6D892B0B5073}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{2D88E7CE-B156-485B-ADC1-60D77D0DC589}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{3037E2FF-C0E2-4F1D-9E58-8CDD3777F211}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{6DF008CB-0954-481E-8B55-B4FBCD7534C2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{95109E7C-CA17-44AD-84B7-FBF826BE1DA8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{3707D486-9F89-45FE-9754-B37237F2654F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{92CBE1DC-6815-43F3-B4C0-4F8D7895D5AF}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd -> Piriform Ltd)
FirewallRules: [{17DBBDDE-5287-43E4-B262-188526204690}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd -> Piriform Ltd)
FirewallRules: [{2AA73DAD-8CFD-4F3A-8013-3E5001DDBEC6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe No File
FirewallRules: [{25C0749E-6508-447D-A090-9000D9DF5488}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe No File
FirewallRules: [UDP Query User{8D2DBBBD-8413-412A-952C-D546818392D9}C:\totalcmd\totalcmd64.exe] => (Allow) C:\totalcmd\totalcmd64.exe No File
FirewallRules: [TCP Query User{0A0FECAA-2A27-4C66-B73A-EAAF1B7E000E}C:\totalcmd\totalcmd64.exe] => (Allow) C:\totalcmd\totalcmd64.exe No File
FirewallRules: [{15B69C49-D51A-4A4B-82D0-C3EBEF6B1875}] => (Allow) C:\Program Files (x86)\Maxthon4\Bin\Maxthon.exe (Maxthon Technology Co, Ltd. -> Maxthon International ltd.)
FirewallRules: [{350D8488-1E1C-4F99-9CFB-053DC9DDACCC}] => (Allow) C:\Program Files (x86)\Maxthon4\Bin\Maxthon.exe (Maxthon Technology Co, Ltd. -> Maxthon International ltd.)
FirewallRules: [{44AE9089-5F61-4E93-A3E4-24B87FA4056E}] => (Allow) C:\Users\Tibor\AppData\Roaming\uTorrent\uTorrent.exe No File
FirewallRules: [{6290D120-A7F5-472E-AF92-8DB85D7B9E68}] => (Allow) C:\Users\Tibor\AppData\Roaming\uTorrent\uTorrent.exe No File
FirewallRules: [UDP Query User{6E9CC744-A32A-4ADF-BA0B-D3CF9820F323}C:\users\tibor\appdata\roaming\utorrent\updates\3.5.0_44294.exe] => (Allow) C:\users\tibor\appdata\roaming\utorrent\updates\3.5.0_44294.exe No File
FirewallRules: [TCP Query User{C3FEE831-35D5-49CB-9CDA-88194F30D8A3}C:\users\tibor\appdata\roaming\utorrent\updates\3.5.0_44294.exe] => (Allow) C:\users\tibor\appdata\roaming\utorrent\updates\3.5.0_44294.exe No File
FirewallRules: [UDP Query User{51ED6DDB-893E-41F1-9D49-1C1F56939F99}C:\users\tibor\desktop\warcraft iii\war3.exe] => (Allow) C:\users\tibor\desktop\warcraft iii\war3.exe No File
FirewallRules: [TCP Query User{06DAB347-44F9-4D7C-900A-292AFAB32830}C:\users\tibor\desktop\warcraft iii\war3.exe] => (Allow) C:\users\tibor\desktop\warcraft iii\war3.exe No File
FirewallRules: [{A2E9B5BB-041F-4921-B736-B97B225D30DD}] => (Allow) C:\Program Files (x86)\EpsonNet\EpsonNet Setup\tool10\ENEasyApp.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
FirewallRules: [{A174111D-8E8B-4735-BD9E-588CA8BCEE17}] => (Allow) C:\Program Files (x86)\EpsonNet\EpsonNet Setup\tool10\ENEasyApp.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
FirewallRules: [UDP Query User{467118ED-DF66-40A7-B38E-8F8238A2139B}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{292FE341-9EB5-4AAA-8680-B13B9E7FB04F}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{A326BE9C-A020-4510-9806-69D89946DA6C}C:\users\tibor\desktop\iccup warcraft iii\war3.exe] => (Allow) C:\users\tibor\desktop\iccup warcraft iii\war3.exe No File
FirewallRules: [TCP Query User{49705BBA-76B3-41B5-9185-A9E2928580B2}C:\users\tibor\desktop\iccup warcraft iii\war3.exe] => (Allow) C:\users\tibor\desktop\iccup warcraft iii\war3.exe No File
FirewallRules: [UDP Query User{CF141223-0E01-4CF6-B26D-40E9F85075A8}C:\program files (x86)\maxthon\bin\maxthon.exe] => (Block) C:\program files (x86)\maxthon\bin\maxthon.exe (Maxthon (Asia) Limited. -> Maxthon International ltd.)
FirewallRules: [TCP Query User{F8163553-824A-4CAB-9BC6-32865A309704}C:\program files (x86)\maxthon\bin\maxthon.exe] => (Block) C:\program files (x86)\maxthon\bin\maxthon.exe (Maxthon (Asia) Limited. -> Maxthon International ltd.)
FirewallRules: [UDP Query User{4E541CBC-51E7-4289-8427-074312E70762}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Block) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
FirewallRules: [TCP Query User{32C1C966-0435-4DFA-8FD6-E615CDBABA8A}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Block) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
FirewallRules: [{26BBEECB-5AB5-4A8E-982F-49D1399DC2E9}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe No File
FirewallRules: [{D386FD5B-4DCD-449A-AF10-FB811562DCD0}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe No File
FirewallRules: [{5DCE04F9-644D-4AE9-8B1E-19DC2614E839}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{798C54D3-4EE2-440B-BD88-48D26C0D4433}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{A13509E7-AF06-4DFB-98A2-C84C4EC036DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe No File
FirewallRules: [{F794FD44-7AAB-4BE5-8857-81CF421871A0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe No File
FirewallRules: [TCP Query User{87F6B93B-56AC-49E9-B762-E85DD0E41378}C:\users\tibor\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\tibor\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{7D41D82F-5E01-44D8-8FB9-141B218BB78A}C:\users\tibor\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\tibor\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{79090EF7-5A2C-4806-9707-279528F0C808}C:\users\tibor\appdata\roaming\utorrent\updates\3.5.1_44332.exe] => (Allow) C:\users\tibor\appdata\roaming\utorrent\updates\3.5.1_44332.exe No File
FirewallRules: [UDP Query User{44F910BA-4D23-4352-BD1F-6C98BCD9A36A}C:\users\tibor\appdata\roaming\utorrent\updates\3.5.1_44332.exe] => (Allow) C:\users\tibor\appdata\roaming\utorrent\updates\3.5.1_44332.exe No File
FirewallRules: [{391599D7-7D47-4FC5-87A2-9694EAA01F99}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{C5C6ED57-BF89-4512-8D82-4E0D789214B6}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{6879E78E-3422-4C7E-A6A6-14D2A94EEF77}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{B85075AD-4639-4FB2-AAE3-AA61BE5E7E3F}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{DCE8F2A4-4851-4E67-8700-386F5B77D79E}C:\users\tibor\appdata\roaming\utorrent\updates\3.5.3_44358.exe] => (Block) C:\users\tibor\appdata\roaming\utorrent\updates\3.5.3_44358.exe No File
FirewallRules: [UDP Query User{E8875E9E-207E-434D-A1EE-BCB51658B68B}C:\users\tibor\appdata\roaming\utorrent\updates\3.5.3_44358.exe] => (Block) C:\users\tibor\appdata\roaming\utorrent\updates\3.5.3_44358.exe No File
FirewallRules: [TCP Query User{366DD9B7-3F71-475F-9B97-F6A85C5310CD}C:\program files (x86)\unitsender\demo\unitsenderdemot4.exe] => (Allow) C:\program files (x86)\unitsender\demo\unitsenderdemot4.exe () [File not signed]
FirewallRules: [UDP Query User{69D182A0-C518-4263-A1CC-F95D608F5D3E}C:\program files (x86)\unitsender\demo\unitsenderdemot4.exe] => (Allow) C:\program files (x86)\unitsender\demo\unitsenderdemot4.exe () [File not signed]
FirewallRules: [{F1FD9DCA-7306-4BC4-8FFC-FB23A45726AA}] => (Allow) C:\Program Files (x86)\Opera\63.0.3368.107\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{E59A0049-E377-413A-9491-C153ADFEDE96}] => (Allow) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)

==================== Restore Points =========================

14-10-2019 20:31:05 Windows Update

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/14/2019 08:59:17 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (9508,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (10/14/2019 08:23:59 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (3188,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (10/14/2019 08:16:31 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program StartMenuExperienceHost.exe version 0.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 1554

Start Time: 01d5827c41f2e226

Termination Time: 4294967295

Application Path: C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe

Report Id: 5f467501-711c-49b8-a2ad-49fc4d945e5f

Faulting package full name: Microsoft.Windows.StartMenuExperienceHost_10.0.18362.329_neutral_neutral_cw5n1h2txyewy

Faulting package-relative application ID: App

Hang type: Quiesce

Error: (10/14/2019 12:50:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: cmdagent.exe, verzia: 12.0.0.6818, časová značka: 0x5cb5ae93
Názov chybujúceho modulu: cmdagent.exe, verzia: 12.0.0.6818, časová značka: 0x5cb5ae93
Kód výnimky: 0xc0000005
Odstup chyby: 0x0000000000134bd3
Identifikácia chybujúceho procesu: 0x24dc
Čas spustenia chybujúcej aplikácie: 0x01d5827cd6ec9b21
Cesta chybujúcej aplikácie: C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
Cesta chybujúceho modulu: C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
Identifikácia hlásenia: 6f90bc3f-33d1-4dfc-8c7b-6ea83216764e
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (10/14/2019 12:46:05 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: cmdagent.exe, verzia: 12.0.0.6818, časová značka: 0x5cb5ae93
Názov chybujúceho modulu: cmdagent.exe, verzia: 12.0.0.6818, časová značka: 0x5cb5ae93
Kód výnimky: 0xc0000005
Odstup chyby: 0x0000000000134bd3
Identifikácia chybujúceho procesu: 0x22d4
Čas spustenia chybujúcej aplikácie: 0x01d5827c8f736feb
Cesta chybujúcej aplikácie: C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
Cesta chybujúceho modulu: C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
Identifikácia hlásenia: 06d4cb9f-2a95-44f4-936e-3b731fbb126c
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (10/14/2019 12:45:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: cmdagent.exe, verzia: 12.0.0.6818, časová značka: 0x5cb5ae93
Názov chybujúceho modulu: cmdagent.exe, verzia: 12.0.0.6818, časová značka: 0x5cb5ae93
Kód výnimky: 0xc0000005
Odstup chyby: 0x0000000000134bd3
Identifikácia chybujúceho procesu: 0x918
Čas spustenia chybujúcej aplikácie: 0x01d5827c2e2ed65b
Cesta chybujúcej aplikácie: C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
Cesta chybujúceho modulu: C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
Identifikácia hlásenia: 93eb8056-0bcb-4513-a895-3f6ae4a34872
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (10/14/2019 12:38:40 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (13996,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

Error: (10/13/2019 10:50:50 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (9604,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.


System errors:
=============
Error: (10/14/2019 12:50:06 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba COMODO Internet Security Helper Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 3-krát.

Error: (10/14/2019 12:46:09 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba COMODO Internet Security Helper Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 2-krát.

Error: (10/14/2019 12:45:56 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba COMODO Internet Security Helper Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (10/14/2019 12:45:03 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby NetTcpPortSharing zlyhalo kvôli nasledujúcej chybe: 
The service did not respond to the start or control request in a timely fashion.

Error: (10/14/2019 12:45:03 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby NetTcpPortSharing bol dosiahnutý časový limit (45000 ms).

Error: (10/14/2019 12:44:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby SwitchBoard zlyhalo kvôli nasledujúcej chybe: 
The service did not respond to the start or control request in a timely fashion.

Error: (10/14/2019 12:44:36 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby SwitchBoard bol dosiahnutý časový limit (45000 ms).

Error: (10/14/2019 12:44:22 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba shpamsvc bola ukončená s nasledujúcou chybou: 
Catastrophic failure


Windows Defender:
===================================
Date: 2019-10-14 12:49:24.513
Description: 
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 
Previous security intelligence Version: 1.303.276.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.16400.2
Error code: 0x80072ee7
Error description: The server name or address could not be resolved 

Date: 2019-10-14 12:49:24.512
Description: 
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 
Previous security intelligence Version: 1.303.276.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiSpyware
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.16400.2
Error code: 0x80072ee7
Error description: The server name or address could not be resolved 

Date: 2019-10-14 12:49:24.511
Description: 
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 
Previous security intelligence Version: 1.303.276.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.16400.2
Error code: 0x80072ee7
Error description: The server name or address could not be resolved 

Date: 2019-10-14 12:49:24.490
Description: 
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 
Previous security intelligence Version: 1.303.276.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.16400.2
Error code: 0x80072ee7
Error description: The server name or address could not be resolved 

Date: 2019-10-14 12:49:24.489
Description: 
Windows Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 
Previous security intelligence Version: 1.303.276.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiSpyware
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.16400.2
Error code: 0x80072ee7
Error description: The server name or address could not be resolved 

CodeIntegrity:
===================================

Date: 2019-10-14 20:49:14.968
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-10-14 20:36:04.303
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-10-14 20:30:50.006
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-10-14 20:24:22.540
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-10-14 20:24:22.524
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-10-14 20:24:22.490
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2019-10-14 20:24:22.304
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-10-14 20:24:17.780
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info =========================== 

BIOS: Insyde Corp. V1.11 04/20/2015
Motherboard: Acer ZORO_BH
Processor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz
Percentage of memory in use: 74%
Total physical RAM: 8106.7 MB
Available physical RAM: 2034.52 MB
Total Virtual: 9386.7 MB
Available Virtual: 2013.54 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:814.21 GB) (Free:427.3 GB) NTFS
Drive f: (Záloha) (Fixed) (Total:100 GB) (Free:25.38 GB) NTFS

\\?\Volume{1306b144-0e03-49b6-aed4-69658cf79121}\ (Recovery) (Fixed) (Total:0.59 GB) (Free:0.28 GB) NTFS
\\?\Volume{bb1b77a1-c939-4a61-b2af-a5d42064ba4d}\ (Push Button Reset) (Fixed) (Total:16.29 GB) (Free:1.88 GB) NTFS
\\?\Volume{eeb75141-f900-40d1-b25c-a3cc7b18018f}\ (ESP) (Fixed) (Total:0.29 GB) (Free:0.24 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 4E2DB25E)

Partition: GPT.

==================== End of Addition.txt ============================